ComboFix 09-05-05.04 - Acer 05/06/2009 18:11:47.1 - NTFSx86
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1256.965.1033.18.2030.898 [GMT 3:00]
Running from: C:\Users\Acer\Downloads\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Users\Acer\AppData\Roaming\inst.exe
C:\Windows\system32\AutoRun.inf
C:\Windows\system32\x64
C:\Windows\TEMP\logishrd\LVPrcInj01.dll
.
((((((((((((((((((((((((( Files Created from 2009-04-06 to 2009-05-06 )))))))))))))))))))))))))))))))
.
2009-05-04 19:52:22 . 2009-05-06 15:19:30 0 d-----w C:\Users\Acer\AppData\Local\Temp
2009-05-03 10:06:02 . 2009-05-03 10:06:02 0 d-----w C:\Program Files\ADPHONE3
2009-05-03 09:57:34 . 2009-05-03 10:06:02 0 d-----w C:\Users\Acer\AppData\Roaming\ADPHONE
2009-05-02 17:54:59 . 2009-05-02 17:54:59 0 d-----w C:\Program Files\Netlog Music Tool
2009-05-02 17:54:53 . 2009-05-02 17:54:53 0 d-----w C:\Users\Acer\AppData\Local\Netlog
2009-04-29 16:20:23 . 2009-04-29 16:20:23 0 d-----w C:\Users\Acer\AppData\Local\Thinstall
2009-04-29 16:16:43 . 2009-04-29 16:16:43 0 d-----w C:\Users\Acer\AppData\Roaming\Roaming
2009-04-29 16:16:43 . 2009-04-29 16:16:43 0 d-----w C:\Program Files\Sound Normalizer
2009-04-21 20:39:56 . 2009-04-21 20:39:56 29360 ----a-w C:\Windows\_SETUPD_.EXE
2009-04-19 21:46:24 . 2009-04-19 21:46:25 0 d-----w C:\Program Files\Sony Online Entertainment
2009-04-16 14:01:06 . 2009-04-21 20:56:26 0 d-----w C:\Program Files\mFaraj DB viewer4.0.0
2009-04-14 18:56:14 . 2009-04-14 18:57:23 0 d-----w C:\Program Files\مصحف المدينة النبوية
2009-04-14 18:55:34 . 2009-04-14 18:55:34 0 d-----w C:\Users\Acer\AppData\Roaming\AlMAdinahMushaf
2009-04-13 14:14:13 . 2009-04-29 14:23:51 0 d-----w C:\Users\Acer\AppData\Roaming\Metacafe
2009-04-13 14:02:04 . 2009-05-06 15:16:48 0 d-----w C:\Program Files\Common Files\Akamai
2009-04-13 14:01:57 . 2009-04-13 14:01:57 0 d-----w C:\ProgramData\Metacafe
2009-04-13 14:01:57 . 2009-04-13 14:01:57 0 d-----w C:\Users\All Users\Metacafe
2009-04-13 14:01:50 . 2009-04-13 14:01:51 0 d-----w C:\Program Files\Metacafe
2009-04-12 19:53:36 . 2008-02-22 04:47:20 53248 ----a-w C:\Windows\system32\davclnt.dll
2009-04-12 19:17:53 . 2009-04-12 19:17:53 0 d-----w C:\Users\Acer\AppData\Local\Real
2009-04-12 19:17:53 . 2009-04-12 19:17:53 0 d-----w C:\Users\All Users\Real
2009-04-12 19:15:25 . 2009-04-12 19:17:56 0 d-----w C:\Program Files\Real Alternative
2009-04-11 11:34:17 . 2008-04-17 09:12:54 107368 ----a-w C:\Windows\system32\GEARAspi.dll
2009-04-11 11:34:17 . 2009-03-19 13:32:48 23400 ----a-w C:\Windows\system32\drivers\GEARAspiWDM.sys
2009-04-11 11:34:08 . 2009-04-11 11:34:08 0 d-----w C:\Program Files\iPod
2009-04-11 11:34:01 . 2009-04-11 11:34:16 0 d-----w C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-04-11 11:34:01 . 2009-04-11 11:34:16 0 d-----w C:\Users\All Users\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-04-11 11:34:01 . 2009-05-02 17:54:59 0 d-----w C:\Program Files\iTunes
2009-04-09 16:16:37 . 2009-04-09 16:16:37 0 d-----w C:\Program Files\emotion
2009-04-09 16:16:36 . 2009-04-09 16:16:36 549821 ----a-w C:\Windows\system32\hma_Azera.scr
2009-04-09 16:16:28 . 2009-04-16 15:54:20 0 d-----w C:\Users\Acer\AppData\Local\Axialis
2009-04-08 16:33:55 . 2009-04-08 16:33:55 0 d-----w C:\Users\Acer\AppData\Roaming\Avira
2009-04-08 16:28:59 . 2009-04-27 14:41:56 55640 ----a-w C:\Windows\system32\drivers\avgntflt.sys
2009-04-08 16:28:56 . 2009-04-08 16:29:02 0 d-----w C:\ProgramData\Avira
2009-04-08 16:28:56 . 2009-04-08 16:29:02 0 d-----w C:\Users\All Users\Avira
2009-04-08 16:28:56 . 2009-04-08 16:28:56 0 d-----w C:\Program Files\Avira
2009-04-07 17:58:34 . 2009-04-07 17:58:34 0 d-----w C:\ProgramData\SUPERAntiSpyware.com
2009-04-07 17:58:34 . 2009-04-07 17:58:34 0 d-----w C:\Users\All Users\SUPERAntiSpyware.com
2009-04-07 17:21:47 . 2009-05-04 22:06:35 0 d-----w C:\Program Files\SUPERAntiSpyware
2009-04-07 17:21:47 . 2009-04-07 17:21:47 0 d-----w C:\Users\Acer\AppData\Roaming\SUPERAntiSpyware.com
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-05-06 15:15:33 . 2008-08-15 11:03:12 12 ----a-w C:\Windows\bthservsdp.dat
2009-05-04 21:39:55 . 2008-08-10 14:32:05 0 d-----w C:\Program Files\DVDlabPro2
2009-05-03 20:28:42 . 2008-08-09 06:32:10 0 d-----w C:\Program Files\Unlocker
2009-05-02 18:49:34 . 2008-08-06 19:59:40 0 d-----w C:\Program Files\FlashGet
2009-05-02 17:39:01 . 2008-02-02 19:32:32 698272 ----a-w C:\Users\Acer\AppData\Local\GDIPFONTCACHEV1.DAT
2009-05-02 15:14:33 . 2007-03-31 00:18:34 0 d-----w C:\Program Files\Microsoft Works
2009-04-30 14:07:38 . 2008-08-07 21:49:50 0 d-----w C:\Program Files\BitComet
2009-04-21 21:08:29 . 2008-08-06 23:28:22 0 d-----w C:\Program Files\Traduce Gratis
2009-04-21 20:47:41 . 2008-08-16 12:34:36 0 d-----w C:\Program Files\Common Files\BitCtrl
2009-04-16 23:18:31 . 2006-11-02 11:18:33 0 d-----w C:\Program Files\Windows Mail
2009-04-16 14:01:03 . 2009-01-22 16:54:22 73216 ----a-w C:\Windows\ST6UNST.EXE
2009-04-14 18:57:20 . 2007-03-30 23:53:41 0 d--h--w C:\Program Files\InstallShield Installation Information
2009-04-14 18:15:49 . 2008-11-12 12:50:13 0 d-----w C:\Program Files\Common Files\Avid
2009-04-14 18:09:17 . 2008-12-22 16:27:12 0 d-----w C:\Program Files\Common Files\AVSMedia
2009-04-14 18:09:14 . 2008-12-22 16:27:10 0 d-----w C:\Program Files\AVS4YOU
2009-04-14 18:03:39 . 2008-08-09 13:10:22 0 d-----w C:\Program Files\Nero
2009-04-14 18:03:04 . 2007-03-31 00:07:26 0 d-----w C:\Program Files\NewTech Infosystems
2009-04-13 18:39:26 . 2008-08-20 21:35:05 0 d-----w C:\Program Files\Messenger Plus! Live
2009-04-12 19:17:05 . 2008-07-27 08:51:21 0 d-----w C:\Program Files\Common Files\Real
2009-04-12 19:14:49 . 2009-04-12 19:14:33 0 d-----w C:\Program Files\K-Lite Codec Pack
2009-04-11 11:34:04 . 2008-08-26 14:10:29 0 d-----w C:\Program Files\Common Files\Apple
2009-04-11 11:32:47 . 2008-10-04 10:14:17 0 d-----w C:\Program Files\QuickTime
2009-04-11 11:30:51 . 2006-11-02 10:25:05 86016 ----a-w C:\Windows\inf\infstor.dat
2009-04-11 11:30:51 . 2006-11-02 10:25:05 51200 ----a-w C:\Windows\inf\infpub.dat
2009-04-11 11:30:51 . 2006-11-02 10:25:05 143360 ----a-w C:\Windows\inf\infstrng.dat
2009-04-07 17:11:08 . 2006-11-02 12:50:50 174 --sha-w C:\Program Files\desktop.ini
2009-04-07 15:39:41 . 2008-08-09 14:49:13 0 d-----w C:\Program Files\Common Files\Wise Installation Wizard
2009-04-04 15:36:22 . 2009-04-04 15:36:22 0 d-----w C:\Program Files\Clone Shareware
2009-04-04 15:30:45 . 2008-08-10 02:50:59 47360 ----a-w C:\Users\Acer\AppData\Roaming\pcouffin.sys
2009-04-04 15:23:53 . 2008-08-09 06:38:31 0 d-----w C:\Program Files\Google
2009-04-02 21:51:39 . 2008-12-22 16:47:04 0 d-----w C:\Program Files\Microsoft
2009-04-01 18:47:04 . 2008-10-31 21:55:40 0 d-----w C:\Program Files\Microsoft Visual Studio 8
2009-03-30 14:08:59 . 2008-12-14 16:38:51 0 d-----w C:\Program Files\Bandoo
2009-03-25 15:02:41 . 2009-03-06 10:22:47 0 d-----w C:\Program Files\Java
2009-03-17 03:38:46 . 2009-04-16 10:51:18 13824 ----a-w C:\Windows\system32\apilogen.dll
2009-03-17 03:38:44 . 2009-04-16 10:51:18 24064 ----a-w C:\Windows\system32\amxread.dll
2009-03-15 16:54:05 . 2009-03-15 16:54:03 0 d-----w C:\Program Files\Sudoku Epic
2009-03-15 16:46:58 . 2009-03-15 16:44:56 0 d-----w C:\Program Files\Ahead DVD Ripper
2009-03-15 10:25:46 . 2009-03-15 10:25:46 56268 ----a-w C:\Windows\system32\drivers\scdemu.sys
2009-03-11 20:42:22 . 2009-03-11 20:42:22 0 d-----w C:\Program Files\Net Studio
2009-03-10 19:51:05 . 2008-08-10 13:21:52 0 d-----w C:\Program Files\PowerISO
2009-03-09 02:19:08 . 2009-01-31 15:36:29 410984 ----a-w C:\Windows\system32\deploytk.dll
2009-03-08 11:34:57 . 2009-03-21 15:20:52 914944 ----a-w C:\Windows\system32\wininet.dll
2009-03-08 11:34:28 . 2009-03-21 15:20:55 43008 ----a-w C:\Windows\system32\licmgr10.dll
2009-03-08 11:33:38 . 2009-03-21 15:20:57 18944 ----a-w C:\Windows\system32\corpol.dll
2009-03-08 11:33:17 . 2009-03-21 15:20:52 109056 ----a-w C:\Windows\system32\iesysprep.dll
2009-03-08 11:33:16 . 2009-03-21 15:20:52 109568 ----a-w C:\Windows\system32\PDMSetup.exe
2009-03-08 11:33:15 . 2009-03-21 15:20:52 132608 ----a-w C:\Windows\system32\ieUnatt.exe
2009-03-08 11:33:15 . 2009-03-21 15:20:52 107520 ----a-w C:\Windows\system32\RegisterIEPKEYs.exe
2009-03-08 11:33:15 . 2009-03-21 15:20:52 107008 ----a-w C:\Windows\system32\SetIEInstalledDate.exe
2009-03-08 11:33:15 . 2009-03-21 15:20:52 103936 ----a-w C:\Windows\system32\SetDepNx.exe
2009-03-08 11:33:04 . 2009-03-21 15:20:54 420352 ----a-w C:\Windows\system32\vbscript.dll
2009-03-08 11:32:54 . 2009-03-21 15:20:57 72704 ----a-w C:\Windows\system32\admparse.dll
2009-03-08 11:32:49 . 2009-03-21 15:20:55 71680 ----a-w C:\Windows\system32\iesetup.dll
2009-03-08 11:32:38 . 2009-03-21 15:20:55 66560 ----a-w C:\Windows\system32\wextract.exe
2009-03-08 11:32:32 . 2009-03-21 15:20:52 169472 ----a-w C:\Windows\system32\iexpress.exe
2009-03-08 11:31:37 . 2009-03-21 15:20:56 34816 ----a-w C:\Windows\system32\imgutil.dll
2009-03-08 11:31:17 . 2009-03-21 15:20:57 48128 ----a-w C:\Windows\system32\mshtmler.dll
2009-03-08 11:31:00 . 2009-03-21 15:20:52 45568 ----a-w C:\Windows\system32\mshta.exe
2009-03-08 11:22:37 . 2009-03-21 15:20:57 156160 ----a-w C:\Windows\system32\msls31.dll
2009-03-03 10:38:47 . 2009-03-03 10:38:47 128840 ----a-w C:\Windows\system32\Metacafe.scr
2009-03-03 04:46:01 . 2009-04-16 10:51:23 3599328 ----a-w C:\Windows\system32\ntkrnlpa.exe
2009-03-03 04:46:01 . 2009-04-16 10:51:23 3547632 ----a-w C:\Windows\system32\ntoskrnl.exe
2009-03-03 04:39:36 . 2009-04-16 10:51:22 183296 ----a-w C:\Windows\system32\sdohlp.dll
2009-03-03 04:39:32 . 2009-04-16 10:51:23 551424 ----a-w C:\Windows\system32\rpcss.dll
2009-03-03 04:39:22 . 2009-04-16 10:51:22 26112 ----a-w C:\Windows\system32\printfilterpipelineprxy.dll
2009-03-03 04:37:11 . 2009-04-16 10:51:22 98304 ----a-w C:\Windows\system32\iasrecst.dll
2009-03-03 04:37:11 . 2009-04-16 10:51:22 54784 ----a-w C:\Windows\system32\iasads.dll
2009-03-03 04:37:11 . 2009-04-16 10:51:22 44032 ----a-w C:\Windows\system32\iasdatastore.dll
2009-03-03 03:04:59 . 2009-04-16 10:51:22 666624 ----a-w C:\Windows\system32\printfilterpipelinesvc.exe
2009-03-03 02:38:13 . 2009-04-16 10:51:22 17408 ----a-w C:\Windows\system32\iashost.exe
2009-03-02 18:10:48 . 2009-04-12 19:14:34 67584 ----a-w C:\Windows\system32\ff_vfw.dll
2009-02-20 18:58:59 . 2009-02-20 18:59:08 286720 ----a-w C:\Windows\iun506.exe
2009-02-13 08:49:10 . 2009-04-16 10:51:18 72704 ----a-w C:\Windows\system32\secur32.dll
2009-02-13 08:49:09 . 2009-04-16 10:51:18 1255936 ----a-w C:\Windows\system32\lsasrv.dll
2009-02-09 03:10:34 . 2009-03-11 16:32:32 2033152 ----a-w C:\Windows\system32\win32k.sys
2009-02-06 16:43:48 . 2009-02-06 16:43:48 307576 ----a-w C:\Windows\WLXPGSS.SCR
2009-02-06 15:52:40 . 2009-02-06 15:52:40 49504 ----a-w C:\Windows\system32\sirenacm.dll
2009-02-05 21:55:12 . 2009-02-27 02:28:31 31704 ----a-w C:\Windows\system32\drivers\hssdrv.sys
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}]
2009-02-27 02:28:31 204248 ----a-w C:\Program Files\Hotspot Shield\hssie\HssIE.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2008-10-24 06:14:38 79136]
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2008-01-19 07:33:09 125952]
"Google Update"="C:\Users\Acer\AppData\Local\Google\Update\GoogleUpdate.exe" [2009-03-15 16:58:29 133104]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2009-05-04 22:06:35 1830128]
"Netlog Music Tool"="C:\Program Files\Netlog Music Tool\NetlogMusicTool.exe" [2009-05-02 17:54:59 1728456]
"ADPHONE"="C:\Program Files\ADPHONE3\ADPHONE.EXE" [2009-03-18 14:02:26 1839104]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 07:33:39 202240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"="C:\Windows\RtHDVCpl.exe" [2007-02-15 09:07:16 4390912]
"IAAnotif"="C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2006-09-29 19:39:20 151552]
"NMSSupport"="C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe" [2006-09-26 18:56:00 423424]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-11 18:34:40 49152]
"USB Antivirus"="C:\Program Files\USB Disk Security\USBGuard.exe" [2008-09-10 22:01:22 798720]
"RoxWatchTray"="C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe" [2007-08-24 12:52:42 240112]
"DMXLauncher"="C:\Program Files\Roxio\CinePlayer\DMXLauncher.exe" [2007-08-14 00:44:38 113136]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-11-06 17:00:00 86016]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-11-06 17:00:00 8530464]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-11-06 17:00:00 81920]
"Kernel and Hardware Abstraction Layer"="C:\Windows\KHALMNPR.EXE" [2007-11-28 23:17:20 55824]
"AppleSyncNotifier"="C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2009-02-06 13:27:40 177472]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 08:44:34 31072]
"USBFW"="C:\Program Files\Net Studio\USB FireWall\USB FireWall.exe" [2008-09-01 05:44:42 1330688]
"SunJavaUpdateSched"="C:\Program Files\Java\jre6\bin\jusched.exe" [2009-03-09 02:19:17 148888]
"avgnt"="C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" [2009-03-02 09:08:47 209153]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2009-01-05 13:18:48 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2009-04-02 13:11:02 342312]
"Flashget"="C:\Program Files\FlashGet\flashget.exe" [2007-09-25 08:10:50 2007088]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Acer Tour Reminder"="C:\Acer\AcerTour\Reminder.exe" [2007-02-16 01:39:08 151552]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2004-12-14 29696]
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 06:13:36 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2008-12-22 08:05:34 356352 ----a-w C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32
"wave1"= serwvdrv.dll
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Empowering Technology Launcher.lnk]
path=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Empowering Technology Launcher.lnk
backup=C:\Windows\pss\Empowering Technology Launcher.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Metacafe.lnk]
path=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Metacafe.lnk
backup=C:\Windows\pss\Metacafe.lnk.CommonStartup
backupExtension=.CommonStartup
[HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Nokia Ovi Suite.lnk]
path=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Nokia Ovi Suite.lnk
backup=C:\Windows\pss\Nokia Ovi Suite.lnk.CommonStartup
backupExtension=.CommonStartup
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"WinampAgent"="C:\Program Files\Winamp\winampa.exe"
"Flashget"="C:\Program Files\FlashGet\FlashGet.exe" /min
"PWRISOVM.EXE"="C:\Program Files\PowerISO\PWRISOVM.EXE"
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UacDisableNotify"=dword:00000001
"InternetSettingsDisableNotify"=dword:00000001
"AutoUpdateDisableNotify"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{1053DFF5-E138-4B5F-BC8C-8BA678B73337}"= C:\Program Files\Acer Zone\Acer Zone Main Page\MCE Deluxe Suite.exe:CyberLink MCE Deluxe Suite
"{1E7860E4-3234-4FBF-BE4E-E6092D32F127}"= C:\Program Files\Acer Zone\Acer Picture Slide DVD\Component\CLSLDVD.exe:Cyberlink Picture Slide DVD workprocess
"{94C4AEFD-EE71-41DC-94C6-76B6A265413B}"= C:\Program Files\Acer Zone\Acer Plug and Record\Component\ARAWP.exe:Cyberlink Plug and Record ARA workprocess
"{7E643FD2-99CF-4A05-81AA-BF2F12ADA90B}"= C:\Program Files\Acer Zone\Acer Plug and Record\Component\DVAX2Process.exe:Cyberlink Plug and Record AVAX workprocess
"{F03C4793-81D5-4895-B6FB-579619877B60}"= UDP

rofile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\TSHWMDTCP.exe:SPCM
"{15484CC2-531B-413E-A5DA-B2232C2A6318}"= TCP

rofile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\TSHWMDTCP.exe:SPCM
"{CBE9BE10-F3FB-41EB-9EEB-8C73F1808E48}"= UDP

rofile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe:Intel(R) Remoting Service
"{466C5287-45A8-4C30-ABBB-DDA13CC2C0C6}"= TCP

rofile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe:Intel(R) Remoting Service
"{CAC48388-2AEF-409E-B8F0-F09C59B5728F}"= UDP

rofile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe:Intel(R) Viiv(TM) Media Server
"{90139264-C000-4C33-AFDE-CC7109590073}"= TCP

rofile=Private|Profile=Public:LocalSubnet:LocalSubnet|C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe:Intel(R) Viiv(TM) Media Server
"{CE90FDAA-7FFA-4649-AEC2-45F3839C01C5}"= TCP

rofile=Private|Profile=Public|9442:127.0.0.1:Intel(R) Viiv(TM) Media Server Discovery
"{A170B292-5E24-41B0-997F-CA1F7C4E294C}"= TCP

rofile=Private|Profile=Public|1900:LocalSubnet:LocalSubnet:Intel(R) Viiv(TM) Media Server UPnP Discovery
"{B106D399-C3ED-4C15-AB76-19009D51BF92}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:hpqtra08.exe
"{3C9AC329-DEBD-4ADD-9ED4-2ADA8526659E}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:hpqtra08.exe
"{4A8BA47E-4680-49D4-8A88-4F4C855BFFFE}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:hpqste08.exe
"{2A810AED-C107-4987-8E90-B58CA08AF2C1}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:hpqste08.exe
"{8FD8DAD2-3BF6-449B-B15D-17704F11DF89}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:hpofxm08.exe
"{F02B7506-B99A-455A-BAB1-95AEB1843AF8}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:hpofxm08.exe
"{C0FB3CC0-F26C-4950-B26C-9C997678EEF1}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:hposfx08.exe
"{D1AF7255-1E86-45F0-804A-9DFF51CA578D}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:hposfx08.exe
"{9C8A86FB-AF05-4D5A-8141-7BE655E3A663}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:hposid01.exe
"{6559B4BA-7293-43BD-8DB5-18F5AF51C81C}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:hposid01.exe
"{7203793F-A982-4D10-B18B-20B284112313}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:hpqscnvw.exe
"{5AE667EB-C933-461F-97D8-B43D6C011334}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:hpqscnvw.exe
"{0AD37A2F-9605-48B5-9805-59A735783EF6}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:hpqkygrp.exe
"{E9BD7ADF-8AAA-48CD-93B9-B536C1C8E2F5}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:hpqkygrp.exe
"{A88CC258-4E2B-42E9-A4BA-CDB59AE24A9F}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:hpzwiz01.exe
"{3F5CAC99-43BC-4E3D-B6FF-790239D9F6E3}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:hpzwiz01.exe
"{E6E88BA7-B505-4D34-8685-20087720BBEB}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:hpoews01.exe
"{B567B68F-F1D8-4F79-AAAD-6DDF1C8C0B75}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:hpoews01.exe
"{DAE52841-4843-4F66-83F4-516D8823AAB9}"= Disabled:UDP:C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:hpqnrs08.exe
"{43121DBC-09EA-4408-8A84-277B2B36CD07}"= Disabled:TCP:C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:hpqnrs08.exe
"TCP Query User{7976D302-AC8F-488B-972B-D714516D0A8E}C:\\program files\\bitcomet\\bitcomet.exe"= UDP:C:\program files\bitcomet\bitcomet.exe:BitComet - a BitTorrent Client
"UDP Query User{387D67B0-9D4A-4EFB-B063-F2FAE87BFA33}C:\\program files\\bitcomet\\bitcomet.exe"= TCP:C:\program files\bitcomet\bitcomet.exe:BitComet - a BitTorrent Client
"TCP Query User{0700B8F7-93E4-45ED-8C4B-9B2758E7BBD0}C:\\program files\\adphone3\\adphone.exe"= UDP:C:\program files\adphone3\adphone.exe:ADPHONE
"UDP Query User{1E0B4461-6F39-4F4D-B702-A30B2FA9CF50}C:\\program files\\adphone3\\adphone.exe"= TCP:C:\program files\adphone3\adphone.exe:ADPHONE
"TCP Query User{C665B9EA-F58D-4582-B5AF-66EFB5E337A5}C:\\users\\acer\\downloads\\wingrabz.exe"= UDP:C:\users\acer\downloads\wingrabz.exe:wingrabz.exe
"UDP Query User{EC66FC6B-45AC-47AA-9C30-45380ABBDA67}C:\\users\\acer\\downloads\\wingrabz.exe"= TCP:C:\users\acer\downloads\wingrabz.exe:wingrabz.exe
"TCP Query User{2766D08A-2E6D-4FC1-982A-FDD63D96B5C1}C:\\program files\\ngrablite\\ngrablite.exe"= UDP:C:\program files\ngrablite\ngrablite.exe:NGrabLite
"UDP Query User{5B8E6DE4-7D5E-47DC-A46F-C53285E425CE}C:\\program files\\ngrablite\\ngrablite.exe"= TCP:C:\program files\ngrablite\ngrablite.exe:NGrabLite
"TCP Query User{0D9FADC9-CF69-4AD7-B9BE-48B039DC5D93}C:\\program files\\paltalk messenger\\paltalk.exe"= UDP:C:\program files\paltalk messenger\paltalk.exe

altalkScene
"UDP Query User{D30D351A-4F18-4C98-932B-1A3C18062C9E}C:\\program files\\paltalk messenger\\paltalk.exe"= TCP:C:\program files\paltalk messenger\paltalk.exe

altalkScene
"TCP Query User{9C2A9E6C-C8A9-43B7-81CE-7357E235FB73}C:\\program files\\flashget\\flashget.exe"= UDP:C:\program files\flashget\flashget.exe:FlashGet
"UDP Query User{788840DD-FD56-4B1A-B6A8-15E8CC0DAAAB}C:\\program files\\flashget\\flashget.exe"= TCP:C:\program files\flashget\flashget.exe:FlashGet
"TCP Query User{A199448F-43FE-498F-8387-876AC95DF64D}C:\\program files\\tuxvision\\tuxvision.exe"= UDP:C:\program files\tuxvision\tuxvision.exe:TV-Viewing App for the DBOXII
"UDP Query User{6CBC4629-979E-4F2A-8D2B-4FED3836395D}C:\\program files\\tuxvision\\tuxvision.exe"= TCP:C:\program files\tuxvision\tuxvision.exe:TV-Viewing App for the DBOXII
"TCP Query User{EDD0E51A-5EBB-433A-AA71-C8D6F0FA4F5F}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_8\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_8\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"UDP Query User{0325A807-E87C-4C17-9201-EC4DB0E424CF}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_8\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_8\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"TCP Query User{542F0F1F-6AA0-4657-812A-933BF5724604}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_9\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_9\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"UDP Query User{131410C1-B0BB-41F6-A536-5644C66F7521}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_9\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_9\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"TCP Query User{CF70BDD7-24F5-47D1-BA91-DAA3939FA720}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_11\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_11\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"UDP Query User{E5F14073-1A1C-49CD-A1A1-ACB3A2D84D76}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_11\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_11\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"TCP Query User{07D5AD6C-BDBC-4209-B658-AE23B0E650F2}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_13\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_13\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"UDP Query User{2F51BE31-EE94-4AAC-BB59-83ABCF0AEC05}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_13\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_13\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"TCP Query User{96FE212C-626B-4027-8B62-4738BFDE28CD}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_14\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_14\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"UDP Query User{89CBC416-D659-4385-A59E-39123DD4207F}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_14\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_14\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"TCP Query User{04E87450-0E70-4AA6-8B91-3A7F00ACBD51}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_15\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_15\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"UDP Query User{8446BA13-1595-41FE-B626-7B8466D886AC}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_15\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_15\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"TCP Query User{AA119042-4E20-43CA-B1E4-D343A78570A4}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_16\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_16\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"UDP Query User{0F85BD70-F7B9-4454-9F7D-9DB9462090DD}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_16\\autoplay\\docs\\dreambox control center v2.95\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_16\autoplay\docs\dreambox control center v2.95\dcc.exe:dcc.exe
"TCP Query User{CFB72ABA-2D89-42FF-B1EB-AF82149FF998}C:\\program files\\common files\\roxio shared\\10.0\\sharedcom\\roxwatchtray10.exe"= UDP:C:\program files\common files\roxio shared\10.0\sharedcom\roxwatchtray10.exe:RoxMMTrayApp Module
"UDP Query User{65649BED-F3E2-4EE7-B87C-782BDC24D947}C:\\program files\\common files\\roxio shared\\10.0\\sharedcom\\roxwatchtray10.exe"= TCP:C:\program files\common files\roxio shared\10.0\sharedcom\roxwatchtray10.exe:RoxMMTrayApp Module
"{3185FE49-CA86-4ADC-99CA-BB342EA86FF8}"= UDP:C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe:RoxioUpnpService10
"{F79CF698-78F5-4C12-87B4-69F12FACD9EA}"= TCP:C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe:RoxioUpnpService10
"{FFC69932-816E-4A99-ABF0-C43C622FE5AC}"= UDP:C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe:RoxioUpnpService10
"{F5E838F5-D139-4721-BC5F-19615192FE6E}"= TCP:C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe:RoxioUpnpService10
"{86261879-6EE5-4564-8779-988045A0C585}"= UDP:C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe:RoxioUpnpService10
"{2F13E05C-32AC-46DB-851E-C50FCF43F2D3}"= TCP:C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe:RoxioUpnpService10
"TCP Query User{3C751194-83FF-4856-A17C-DFC52B602BB8}C:\\program files\\videolan\\vlc\\vlc.exe"= UDP:C:\program files\videolan\vlc\vlc.exe:VLC media player
"UDP Query User{A7DD9568-BF21-41B7-BB02-6C7606F5D151}C:\\program files\\videolan\\vlc\\vlc.exe"= TCP:C:\program files\videolan\vlc\vlc.exe:VLC media player
"{4175C254-D72D-4F9E-ACAB-029DBBA08C83}"= TCP:6004|C:\Program Files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
"{D80D96D0-CB89-4A5F-B2EE-459B9EE06FAC}"= UDP:C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{E29C0441-3871-4DA5-B67E-D85D873C7DE9}"= TCP:C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:Microsoft Office Groove
"{DF73C997-CB56-4B16-9E26-4CFA27D0C1BF}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{AE032FA3-29B8-4C93-9C8E-3F9C7BC98E89}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"TCP Query User{9DAB4419-2720-4567-A700-6FB6A7EE622A}C:\\program files\\windows sidebar\\sidebar.exe"= UDP:C:\program files\windows sidebar\sidebar.exe:Windows Sidebar
"UDP Query User{AD9B3842-F48D-4233-966F-58486F071825}C:\\program files\\windows sidebar\\sidebar.exe"= TCP:C:\program files\windows sidebar\sidebar.exe:Windows Sidebar
"{FA9D6EA3-350F-4A25-8D77-BA753E077E62}"= Disabled:UDP:C:\Program Files\Sports Interactive\Football Manager 2009 Demo\fm.exe:Football Manager 2009 Demo
"{8B7D26DC-AB09-4C10-9A06-5D9DDB6DBAE8}"= Disabled:TCP:C:\Program Files\Sports Interactive\Football Manager 2009 Demo\fm.exe:Football Manager 2009 Demo
"TCP Query User{6EE72F4D-DD30-4D01-B3D3-8E4A1C3A58BA}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_0\\autoplay\\docs\\dcc295\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_0\autoplay\docs\dcc295\dcc.exe:dcc.exe
"UDP Query User{FD993C77-FEFE-45DB-AE7E-B98FEED98E5F}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_0\\autoplay\\docs\\dcc295\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_0\autoplay\docs\dcc295\dcc.exe:dcc.exe
"TCP Query User{997681C1-5D5F-4A50-80A1-792F61676D67}C:\\program files\\messengerdiscovery\\messengerdiscovery live.exe"= UDP:C:\program files\messengerdiscovery\messengerdiscovery live.exe:MessengerDiscovery Live the Windows Live Messenger addon
"UDP Query User{46CCEE27-5DCB-47B3-81B7-90C9E0ADE5D5}C:\\program files\\messengerdiscovery\\messengerdiscovery live.exe"= TCP:C:\program files\messengerdiscovery\messengerdiscovery live.exe:MessengerDiscovery Live the Windows Live Messenger addon
"TCP Query User{D5558B73-7F53-40A9-81CD-23449F1EB8F6}C:\\downloads\\emule0.49b-xtreme7.1\\emule0.49b-xtreme7.1\\emule.exe"= UDP:C:\downloads\emule0.49b-xtreme7.1\emule0.49b-xtreme7.1\emule.exe:eMule
"UDP Query User{0447ADB6-57D9-420A-BA78-B746ABB999C1}C:\\downloads\\emule0.49b-xtreme7.1\\emule0.49b-xtreme7.1\\emule.exe"= TCP:C:\downloads\emule0.49b-xtreme7.1\emule0.49b-xtreme7.1\emule.exe:eMule
"{13D333C5-F1CC-4F7F-9F5B-5E7D06022E13}"= UDP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
"{667F97C7-12FA-40DC-A570-D22480E01813}"= TCP:C:\Program Files\Bonjour\mDNSResponder.exe:Bonjour
"TCP Query User{B5F4AE35-F8C1-4127-A83D-3C24B403B39A}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_1\\autoplay\\docs\\dcc295\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_1\autoplay\docs\dcc295\dcc.exe:dcc.exe
"UDP Query User{D598AEA1-6720-4605-9A83-3BC2210AE188}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_1\\autoplay\\docs\\dcc295\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_1\autoplay\docs\dcc295\dcc.exe:dcc.exe
"TCP Query User{F4A29513-833E-4F4C-93DF-79CFA605A17A}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_2\\autoplay\\docs\\dreamenum_0.90.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_2\autoplay\docs\dreamenum_0.90.exe:dreamenum_0.90.exe
"UDP Query User{69A730A4-F8D2-4A67-85A6-4A0B422BFE19}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_2\\autoplay\\docs\\dreamenum_0.90.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_2\autoplay\docs\dreamenum_0.90.exe:dreamenum_0.90.exe
"TCP Query User{84315D80-8AB7-4F48-812F-97620E8815C7}C:\\program files\\common files\\nokia\\service layer\\a\\nsl_host_process.exe"= UDP:C:\program files\common files\nokia\service layer\a\nsl_host_process.exe:Nokia Service Layer Host Process
"UDP Query User{43AF7CBE-6ACD-42BF-B62D-DB03C5599296}C:\\program files\\common files\\nokia\\service layer\\a\\nsl_host_process.exe"= TCP:C:\program files\common files\nokia\service layer\a\nsl_host_process.exe:Nokia Service Layer Host Process
"TCP Query User{34FE7251-6C8A-44A2-92F2-64846A6F4D03}C:\\program files\\nokia\\nokia software updater\\nsu_ui_client.exe"= UDP:C:\program files\nokia\nokia software updater\nsu_ui_client.exe:Nokia Software Updater
"UDP Query User{DB411A85-27C7-4F08-9F29-E510BCF6646D}C:\\program files\\nokia\\nokia software updater\\nsu_ui_client.exe"= TCP:C:\program files\nokia\nokia software updater\nsu_ui_client.exe:Nokia Software Updater
"TCP Query User{B82EF62A-3D24-4DAB-A3FC-4182391F8D3C}C:\\users\\acer\\downloads\\winks,moods,muggins,weemees and meegos\\mcoinstall.exe"= UDP:C:\users\acer\downloads\winks,moods,muggins,weemees and meegos\mcoinstall.exe:mcoinstall.exe
"UDP Query User{556EE9BC-4D58-42D1-9FF3-8FFB9E026CAA}C:\\users\\acer\\downloads\\winks,moods,muggins,weemees and meegos\\mcoinstall.exe"= TCP:C:\users\acer\downloads\winks,moods,muggins,weemees and meegos\mcoinstall.exe:mcoinstall.exe
"TCP Query User{CB6FF421-3258-4A2D-A580-4146FAE5ADA4}C:\\program files\\limewire\\limewire.exe"= UDP:C:\program files\limewire\limewire.exe:LimeWire
"UDP Query User{735C1B87-F06E-4278-8C31-ACBFD47CF700}C:\\program files\\limewire\\limewire.exe"= TCP:C:\program files\limewire\limewire.exe:LimeWire
"{3819373F-C868-4D0F-BDC7-ECCE5BF92FB1}"= UDP:C:\Program Files\FreeCall.com\FreeCall\FreeCall.exe:FreeCall
"{F5644BA7-D509-4A79-9238-E5F05EAD17F2}"= TCP:C:\Program Files\FreeCall.com\FreeCall\FreeCall.exe:FreeCall
"{751E9073-E7F2-4F99-AF4A-553C667D402C}"= Disabled:UDP:C:\Program Files\Sports Interactive\Football Manager 2009\fm.exe:Football Manager 2009
"{276B5184-5050-4106-B085-11E499653C08}"= Disabled:TCP:C:\Program Files\Sports Interactive\Football Manager 2009\fm.exe:Football Manager 2009
"{8A16E0E0-3670-4BB5-B68C-C9532AE30C2E}"= UDP:C:\Program Files\iTunes\iTunes.exe:iTunes
"{CE16C30E-279F-49E3-BBB7-D8731A60281F}"= TCP:C:\Program Files\iTunes\iTunes.exe:iTunes
"{90CFB75A-EBD1-47C8-A1B8-9C0F55871F88}"= UDP:50819:Akamai NetSession Interface
"{2D74DBA3-EC06-4221-A20E-F1EEED68D375}"= TCP:5000:Akamai NetSession Interface
"{DDDF2E40-5452-4C51-9FC3-E699640D57AC}"= UDP:57312:Akamai NetSession Interface
"{14EFBA3F-1CBE-44DF-8C4F-A80309E7556F}"= UDP:49168:Akamai NetSession Interface
"{1CBD1ACD-E56D-4510-B1BB-58D343D7D6AF}"= UDP:49163:Akamai NetSession Interface
"{02AAAEF0-F5E9-48CF-8B91-434628B81935}"= UDP:49175:Akamai NetSession Interface
"{6858F0BD-AA68-4B7B-9951-C71CB1AC2195}"= UDP:49999:Akamai NetSession Interface
"{FB01D443-A573-4371-BC32-7D93769B9D14}"= UDP:55663:Akamai NetSession Interface
"TCP Query User{EF48C80F-8C63-4A7F-8043-4F0605BDFACB}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_2\\autoplay\\docs\\dcc295\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_2\autoplay\docs\dcc295\dcc.exe:dcc.exe
"UDP Query User{BB58227F-50C4-4EF4-ADD8-ED2FDEFFF8EE}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_2\\autoplay\\docs\\dcc295\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_2\autoplay\docs\dcc295\dcc.exe:dcc.exe
"{F03E5937-A650-4F94-B4C0-EA79FB3F0CD0}"= UDP:49164:Akamai NetSession Interface
"{A25845BB-57FE-46A8-9014-EF2FA2AB0AD7}"= UDP:51335:Akamai NetSession Interface
"{CCA69879-58E0-416E-8B01-EF2D6FE4F8B4}"= UDP:52818:Akamai NetSession Interface
"{2FB47147-2250-4F2A-A8F0-615CCB00756A}"= UDP:49161:Akamai NetSession Interface
"{1723C670-D855-45D3-A64F-3D60D414670B}"= UDP:55267:Akamai NetSession Interface
"{399A870B-407E-44FF-8C7C-24993B54BB94}"= UDP:49169:Akamai NetSession Interface
"{17FA37C1-1343-4A67-915F-B516040EEA89}"= UDP:49430:Akamai NetSession Interface
"{367CFFBC-68F0-48B1-978F-6AC36D252FC1}"= UDP:49170:Akamai NetSession Interface
"{5A8FD17F-CD86-4918-AEEB-1FF5B24AC22C}"= UDP:49159:Akamai NetSession Interface
"{3D11CF14-2290-4DB0-8074-DDDBD392A8E3}"= UDP:54573:Akamai NetSession Interface
"{E5E168E0-56BE-46E8-A6C9-16386A33AAEC}"= UDP:54387:Akamai NetSession Interface
"{2037785E-9D68-474A-AB38-FB2A6F02445C}"= UDP:54491:Akamai NetSession Interface
"{A8B4F17E-86C5-4579-8935-F6A9D1512C1B}"= UDP:57525:Akamai NetSession Interface
"{1DE42F76-44BC-459B-93E4-97F1D4001006}"= UDP:63566:Akamai NetSession Interface
"{D6AD925D-4473-4B5E-BD57-7A20799F53BA}"= UDP:50372:Akamai NetSession Interface
"TCP Query User{C8EC43DC-D8DB-4FE3-844B-E0982C78C90A}C:\\users\\acer\\desktop\\bm radio v3.0.exe"= UDP:C:\users\acer\desktop\bm radio v3.0.exe:bm radio v3.0.exe
"UDP Query User{85230212-9753-45EB-A665-28823D201883}C:\\users\\acer\\desktop\\bm radio v3.0.exe"= TCP:C:\users\acer\desktop\bm radio v3.0.exe:bm radio v3.0.exe
"{3776F976-E11B-457E-996E-9F76FFD160FC}"= UDP:55723:Akamai NetSession Interface
"{789DC7F4-FD2C-4922-818C-4ED40BAD3BFC}"= UDP:56286:Akamai NetSession Interface
"{C9699A98-71D2-4582-8925-7E6D3EBF6737}"= UDP:19164:BitComet 19164 TCP
"{5A0DBE43-2037-4D6D-8F27-6638FE829D3F}"= TCP:19164:BitComet 19164 UDP
"{36015377-87C6-48EF-9900-06D1DF502B2A}"= UDP:49167:Akamai NetSession Interface
"{88AB653C-1FAA-4736-B6FF-1BA9DD53C27B}"= UDP:63184:Akamai NetSession Interface
"{AE591FFF-606C-447B-B5BD-27FD3653546E}"= UDP:59456:Akamai NetSession Interface
"{3064800C-A936-4AD0-9AE8-B0DB32A763FC}"= UDP:53325:Akamai NetSession Interface
"{49C4347C-1422-4E0D-A51A-BAA29127B137}"= UDP:53379:Akamai NetSession Interface
"{AA1EDCE6-5C30-447F-AE36-DFFB260E51A1}"= UDP:49173:Akamai NetSession Interface
"TCP Query User{C0EE8024-15D5-4BB8-A489-15BDDD2EDF11}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_3\\autoplay\\docs\\dcc295\\dcc.exe"= UDP:C:\users\acer\appdata\local\temp\ir_ext_temp_3\autoplay\docs\dcc295\dcc.exe:dcc.exe
"UDP Query User{8744434C-C888-415E-BD64-135CE9E34442}C:\\users\\acer\\appdata\\local\\temp\\ir_ext_temp_3\\autoplay\\docs\\dcc295\\dcc.exe"= TCP:C:\users\acer\appdata\local\temp\ir_ext_temp_3\autoplay\docs\dcc295\dcc.exe:dcc.exe
"{E25C2EAE-C376-4890-BAF0-80F5F3CFF8A9}"= UDP:50504:Akamai NetSession Interface
"{704CEBD4-08AE-4AF6-A6F5-CC7BBA949FA1}"= UDP:49158:Akamai NetSession Interface
"{622DAF65-9201-45A8-8B22-6DD7CCAB8404}"= UDP:49166:Akamai NetSession Interface
"{1116F76C-DA2E-4C57-811E-B7728B2A1274}"= UDP:56503:Akamai NetSession Interface
"{7152E8DA-5E5A-464D-9568-3EDF1E105DEC}"= UDP:49383:Akamai NetSession Interface
"{A9F87FEA-1A4D-4FA4-8DF7-EF4B0F1A9821}"= UDP:49160:Akamai NetSession Interface
"{D1D782A0-F70B-43E1-B922-C5CAFBA56579}"= UDP:49611:Akamai NetSession Interface
"{7CE6FA3F-BD7E-4EAC-81D2-B05B6430E146}"= UDP:51774:Akamai NetSession Interface
"{420C006C-8FE9-4357-8FA9-638FD41BF883}"= UDP:51955:Akamai NetSession Interface
"{9C3261E7-23DC-44C7-988B-37E7FBF2F882}"= UDP:56688:Akamai NetSession Interface
"{2D9FE37F-8551-4D22-9D3E-827CED62B03C}"= UDP:56088:Akamai NetSession Interface
"{2B9B39B5-8BF3-473E-8754-F596D29D57F4}"= UDP:56127:Akamai NetSession Interface
R1 c2scsi;c2scsi;C:\Windows\System32\drivers\C2SCSI.SYS [8/18/2007 1:34:34 AM 252152]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [2/17/2009 11:43:28 AM 9968]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [2/17/2009 11:43:28 AM 55024]
R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [8/9/2008 4:32:31 PM 21504]
R2 AntiVirMailService;Avira AntiVir MailGuard;C:\Program Files\Avira\AntiVir Desktop\avmailc.exe [4/8/2009 7:28:58 PM 194817]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Program Files\Avira\AntiVir Desktop\sched.exe [4/8/2009 7:28:59 PM 108289]
R2 AntiVirWebService;Avira AntiVir WebGuard;C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe [4/8/2009 7:28:58 PM 432897]
R2 DQLWinService;DQLWinService;C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe [10/29/2006 8:03:30 PM 208896]
R2 HssSrv;Hotspot Shield Helper Service;C:\Program Files\Hotspot Shield\HssWPR\hsssrv.exe [2/6/2009 12:56:14 AM 117208]
R2 nmsgopro;GoProto Protocol Driver for NMS;C:\Windows\System32\drivers\nmsgopro.sys [9/28/2006 3:37:24 AM 28672]
R2 nmsunidr;UniDriver for NMS;C:\Windows\System32\drivers\nmsunidr.sys [10/20/2006 2:49:48 AM 7424]
R2 SeaPort;SeaPort;C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [1/14/2009 5:53:02 PM 226656]
R3 HssDrv;Hotspot Shield Helper Miniport;C:\Windows\System32\drivers\hssdrv.sys [2/27/2009 5:28:31 AM 31704]
R3 IntelDH;IntelDH Driver;C:\Windows\System32\drivers\IntelDH.sys [2/3/2008 7:15:09 AM 5504]
R3 RTL85n86;Realtek 8180/8185 Extensible 802.11 Wireless Device Driver;C:\Windows\System32\drivers\RTL85n86.sys [7/4/2008 11:01:04 AM 366080]
R3 SASENUM;SASENUM;C:\Program Files\SUPERAntiSpyware\SASENUM.SYS [2/17/2009 11:43:30 AM 7408]
S2 Roxio Upnp Server 10;Roxio Upnp Server 10;C:\Program Files\Roxio\Digital Home 10\RoxioUpnpService10.exe [8/24/2007 3:53:16 PM 362992]
S2 RoxLiveShare10;LiveShare P2P Server 10;C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe [8/24/2007 3:52:48 PM 309744]
S2 RoxWatch10;Roxio Hard Drive Watcher 10;C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe [8/24/2007 3:52:46 PM 166384]
S2 SessionLauncher;SessionLauncher;C:\Users\Acer\AppData\Local\Temp\DX9\SessionLauncher.exe --> C:\Users\Acer\AppData\Local\Temp\DX9\SessionLauncher.exe [?]
S3 BthAvrcp;Bluetooth AVRCP Profile;C:\Windows\System32\drivers\BthAvrcp.sys [7/10/2008 3:43:32 PM 15872]
S3 IntelDHSvcConf;IntelDHSvcConf;C:\Program Files\Intel\IntelDH\Intel Media Server\tools\IntelDHSvcConf.exe [11/18/2006 5:59:50 PM 36312]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;C:\Windows\System32\drivers\nmwcdnsu.sys [2/1/2008 3:17:12 PM 138112]
S3 nmwcdnsuc;Nokia USB Flashing Generic;C:\Windows\System32\drivers\nmwcdnsuc.sys [2/1/2008 3:17:06 PM 8320]
S3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10;C:\Program Files\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [8/24/2007 3:53:14 PM 72176]
S3 RoxMediaDB10;RoxMediaDB10;C:\Program Files\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [8/24/2007 3:52:38 PM 1083888]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
bthsvcs REG_MULTI_SZ BthServ
Akamai REG_MULTI_SZ Akamai
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\O]
\shell\AutoRun\command - O:\Setup.exe
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contents of the 'Scheduled Tasks' folder
2009-05-06 C:\Windows\Tasks\1-Click Maintenance.job
- C:\Program Files\TuneUp Utilities 2008\OneClickStarter.exe [2008-06-20 06:09:12 . 2008-06-20 06:09:12]
2009-05-06 C:\Windows\Tasks\Google Software Updater.job
- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-08-20 21:35:33 . 2009-03-25 10:37:06]
2009-05-06 C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2233013701-542082695-146925759-1001.job
- C:\Users\Acer\AppData\Local\Google\Update\GoogleUpdate.exe [2009-03-15 16:58:30 . 2009-03-15 16:58:29]
2009-05-05 C:\Windows\Tasks\NeroLiveEpgUpdate-Acer-PC_Acer.job
- C:\Program Files\Nero\Nero 9\Nero Live\NeroLive.exe [2008-09-18 10:51:06 . 2008-09-18 10:51:06]
2009-05-06 C:\Windows\Tasks\User_Feed_Synchronization-{1EE6B10A-1E8E-42B5-98B0-2FB7185A56B7}.job
- C:\Windows\system32\msfeedssync.exe [2009-03-21 15:20:55 . 2009-03-08 11:31:52]
.
- - - - ORPHANS REMOVED - - - -
WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file)
.
------- Supplementary Scan -------
.
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
mStart Page = hxxp://en.us.acer.yahoo.com
uInternet Settings,ProxyOverride = *.local
IE: &D&ownload &with BitComet - C:\Program Files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
IE: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm
IE: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm
IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: {{88CFA58B-A63F-4A94-9C54-0C7A58E3333E} - {17A84966-F1E9-4645-AA9E-5E771EE1C859} - C:\PROGRA~1\NUCLEA~1\VideoGet\Plugins\VIDEOG~1.DLL
LSP: C:\Program Files\Avira\AntiVir Desktop\avsda.dll
TCP: {5B4A4329-6DD7-47DF-8A5C-696B0363899A} = 192.168.1.254
DPF: Microsoft XML Parser for Java - file:///C:/Windows/Java/classes/xmldso.cab
FF - ProfilePath - C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\y9s6sp64.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.live.com/results.aspx?FORM=IEFM1&q=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://en-US.start2.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:en-US

fficial
FF - prefs.js: keyword.URL - hxxp://search.live.com/results.aspx?FORM=IEFM1&q=
FF - component: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\y9s6sp64.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}\components\IBitCometExtension.dll
FF - component: C:\Users\Acer\AppData\Roaming\Mozilla\Firefox\Profiles\y9s6sp64.default\extensions\speedtest@gotomyhelp.com\components\NetDiag.dll
FF - plugin: C:\PROGRA~1\SONYON~1\npsoe.dll
FF - plugin: C:\Program Files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: C:\Program Files\Microsoft\Office Live\npOLW.dll
FF - plugin: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\Acer\AppData\Local\Google\Update\1.2.141.5\npGoogleOneClick7.dll
.