後学のため、作業ログを残します。
作業開始時刻:15:40
今回行った作業(流れに沿って記載)
イベントビューアーからWindowsログ→アプリケーションを確認→KP41病を発見、BSoDの原因をKP41病と断定。
コマンドプロンプトを管理者で起動させ、sfc /scannowを行う。
その間にアプリケーションログを確認したが、異常は見当たらなかった。
システムスキャンの間を使ってACとMBAMとCCをダウンロード、インストールをし、MBAMでスキャンを行った。
システムスキャンで自動修復を行ったログが確認された。
コマンドプロンプトを管理者で起動させ、chkdsk /fを行い、yで再起動時に読み込む設定にした。
MBAMが終了、箇所の修正が確認された。詳細は以下。
Windows 7 Service Pack 1 x64 NTFS (セーフモード/ネットワーク)
Internet Explorer 10.0.9200.16750
ユーザー名 :: WIN7ユーザー名 [管理者]
2014/02/10 16:12:36
MBAM-log-2014-02-10 (18-42-20).txt
スキャンタイプ: フルスキャン (C:\|)
有効なスキャン領域: メモリ | スタートアップ | レジストリ | ファイルシステム | ヒューリスティック/追加アイテムのスキャン | ヒューリスティック/Shuriken エンジンを使用してスキャン | 不審なプログラム (PUP) | 不審な変更 (PUM)
無効なスキャン領域: ピア・ツー・ピアプログラム(P2P)
スキャンしたアイテム数: 711588
経過時間: 2 時間, 26 分,
メモリプロセスの検出: 0
(悪意のあるアイテムは検出されていません。)
メモリモジュールの検出: 0
(悪意のあるアイテムは検出されていません。)
レジストリキーの検出: 76
HKLM\SYSTEM\CurrentControlSet\Services\Update BringStar (PUP.Optional.BringStar.A)
HKLM\SYSTEM\CurrentControlSet\Services\Util BringStar (PUP.Optional.BringStar.A)
HKCR\CLSID\{6f0d3dec-9246-4b6f-a5e3-c1c169493eef} (PUP.Optional.BringStar.A)
HKCR\TypeLib\{25b75982-a39a-4d49-8b84-5e24443cbd1b} (PUP.Optional.BringStar.A)
HKCR\Interface\{7F729B23-22C4-4C83-9BC8-8B9C59F2A51A} (PUP.Optional.BringStar.A)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6F0D3DEC-9246-4B6F-A5E3-C1C169493EEF} (PUP.Optional.BringStar.A)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{6F0D3DEC-9246-4B6F-A5E3-C1C169493EEF} (PUP.Optional.BringStar.A)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6F0D3DEC-9246-4B6F-A5E3-C1C169493EEF} (PUP.Optional.BringStar.A)
HKCR\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE} (PUP.Optional.Delta)
HKCR\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947} (PUP.Optional.Delta)
HKCR\Interface\{3718D0AF-A3B8-4F5E-86F3-FAD8D02043BE} (PUP.Optional.Delta)
HKCR\escort.escortIEPane.1 (PUP.Optional.Delta)
HKCR\escort.escortIEPane (PUP.Optional.Delta)
HKCR\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta)
HKCR\delta.deltaHlpr.1 (PUP.Optional.Delta)
HKCR\delta.deltaHlpr (PUP.Optional.Delta)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta)
HKCR\AppID\{90A52F08-64AC-4DC6-9D7D-4516670275D3} (Trojan.Downloader)
HKCR\CLSID\{3543619C-D563-43f7-95EA-4DA7E1CC396A} (Trojan.Downloader)
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-4516670275D3} (Trojan.Downloader)
HKCR\Interface\{6C51F7E9-8542-4F25-A30F-2060157752E1} (Trojan.Downloader)
HKCR\OKitSpace.1 (Trojan.Downloader)
HKCR\OKitSpace (Trojan.Downloader)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3543619C-D563-43F7-95EA-4DA7E1CC396A} (Trojan.Downloader)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{3543619C-D563-43F7-95EA-4DA7E1CC396A} (Trojan.Downloader)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3543619C-D563-43F7-95EA-4DA7E1CC396A} (Trojan.Downloader)
HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A)
HKCR\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8} (PUP.Optional.Delta.A)
HKCR\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D} (PUP.Optional.Delta.A)
HKCR\esrv.deltaESrvc.1 (PUP.Optional.Delta.A)
HKCR\esrv.deltaESrvc (PUP.Optional.Delta.A)
HKCR\CLSID\{3543619C-D563-43f7-95EA-4DA7E1CC396A} (PUP.Optional.OfferBox.A)
HKCR\TypeLib\{90A52F08-64AC-4DC6-9D7D-4516670275D3} (PUP.Optional.OfferBox.A)
HKCR\Interface\{6C51F7E9-8542-4F25-A30F-2060157752E1} (PUP.Optional.OfferBox.A)
HKCR\OKitSpace.1 (PUP.Optional.OfferBox.A)
HKCR\OKitSpace (PUP.Optional.OfferBox.A)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3543619C-D563-43F7-95EA-4DA7E1CC396A} (PUP.Optional.OfferBox.A)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{3543619C-D563-43F7-95EA-4DA7E1CC396A} (PUP.Optional.OfferBox.A)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3543619C-D563-43F7-95EA-4DA7E1CC396A} (PUP.Optional.OfferBox.A)
HKCR\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} (PUP.Optional.BrowseFox.A)
HKCR\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A)
HKCR\delta.deltadskBnd.1 (PUP.Optional.Delta.A)
HKCR\delta.deltadskBnd (PUP.Optional.Delta.A)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A)
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A)
HKCR\Typelib\{4599D05A-D545-4069-BB42-5895B4EAE05B} (PUP.Optional.Delta.A)
HKCR\Interface\{1231839B-064E-4788-B865-465A1B5266FD} (PUP.Optional.Delta.A)
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85} (PUP.Optional.Delta.A)
HKCR\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26} (PUP.Optional.Delta)
HKCR\delta.deltaappCore.1 (PUP.Optional.Delta)
HKCR\delta.deltaappCore (PUP.Optional.Delta)
HKCR\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B} (PUP.Optional.Delta)
HKCR\d (PUP.Optional.Delta)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater (PUP.Optional.Vittalia)
HKLM\SYSTEM\CurrentControlSet\Services\SrvUpdater (PUP.Optional.SoftwareUpdater.A)
HKLM\SYSTEM\CurrentControlSet\Services\srvPlgProtect (PUP.Optional.Vittalia)
HKCR\AppID\OKitSpace.DLL (PUP.Optional.OKitSpace.A)
HKCU\SOFTWARE\BabylonToolbar (PUP.Optional.BabylonToolBar.A)
HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr.A)
HKCU\SOFTWARE\DELTA\DELTA (PUP.Optional.Delta.A)
HKCU\Software\BringStar (PUP.Optional.BringStar.A)
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A)
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A)
HKCU\Software\Distromatic\Toolbars (PUP.Optional.AlexaTB.A)
HKCU\Software\InstallCore\1I1T1Q1S (PUP.Optional.InstallCore.A)
HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A)
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings (PUP.Optional.BProtector.A)
HKCU\Software\Systweak\RegClean Pro (PUP.Optional.RegCleanerPro.A)
HKLM\SOFTWARE\FREESOFTTODAY (Adware.EoRezo)
HKLM\SOFTWARE\OKitSpace (PUP.Optional.OKitSpace.A)
HKLM\SOFTWARE\Delta\delta\Instl (PUP.Optional.Delta.A)
HKLM\SOFTWARE\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde (PUP.Optional.Delta.A)
HKLM\SOFTWARE\Vittalia\AxtanInstaller (PUP.Optional.BundleInstaller.A)
HKLM\Software\BringStar (PUP.Optional.BringStar.A)
レジストリ値の検出: 9
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> データ: Delta Toolbar
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> データ:
HKCU\SOFTWARE\Delta\Delta|tlbrSrchUrl (PUP.Optional.Delta.A) -> データ:
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|bProtector Start Page (PUP.BProtector) -> データ:
http://jp.hao123.com/?tn=bbl_hp_hao123_jp&babsrc=HP_ss&mntrId=62F29A9FFA8AF857
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|bProtectorDefaultScope (PUP.BProtector) -> データ: {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
HKCU\Software\Delta\delta|lastB (PUP.Optional.Delta.A) -> データ:
http://jp.hao123.com/?tn=bbl_hp_hao123_jp&babsrc=HP_ss&mntrId=62F29A9FFA8AF857
HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> データ: 0X2O1C0R2R1R
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\srvPlgProtect|ImagePath (PUP.Optional.Vittalia) -> データ: C:\Users\ユーザー名\AppData\Roaming\okitspace\protect\PluginProtect.exe
HKLM\SYSTEM\CurrentControlSet\Services\SrvUpdater|ImagePath (PUP.Optional.SoftwareUpdater.A) -> データ: C:\Program Files (x86)\SoftwareUpdater\UpdaterService.exe
レジストリデータ項目の検出: 0
(悪意のあるアイテムは検出されていません。)
フォルダの検出: 16
C:\Program Files (x86)\BringStar (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\plugins (PUP.Optional.BringStar.A)
C:\Program Files (x86)\SoftwareUpdater (PUP.Optional.SoftwareUpdater.A)
C:\Users\ユーザー名\AppData\Roaming\Delta (PUP.Optional.Delta.A)
C:\Users\ユーザー名\AppData\Local\Temp\mt_ffx\Delta (PUP.Optional.Delta.A)
C:\Users\ユーザー名\AppData\Local\Temp\mt_ffx\Delta\delta (PUP.Optional.Delta.A)
C:\Users\ユーザー名\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.16.16 (PUP.Optional.Delta.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524 (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\plugins (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\Chrome (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\Chrome\tempCRX (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\IE (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\protect (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\protect\files (PUP.Optional.OKitSpace.A)
ファイルの検出: 55
C:\Program Files (x86)\BringStar\updateBringStar.exe (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\utilBringStar.exe (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\BringStarBHO.dll (PUP.Optional.BringStar.A)
C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll (PUP.Optional.Delta)
C:\Users\ユーザー名\AppData\Roaming\okitspace\IE\OkitSpace.dll (Trojan.Downloader)
C:\Program Files (x86)\Delta\delta\1.8.16.16\deltasrv.exe (PUP.Optional.Delta.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\IE\OkitSpace.dll (PUP.Optional.OfferBox.A)
C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll (PUP.Optional.Delta.A)
C:\$Recycle.Bin\S-1-5-21-136295839-1779515312-5249643-1000\$R0JCF4O.exe (PUP.Optional.CoolApp)
C:\$Recycle.Bin\S-1-5-21-136295839-1779515312-5249643-1000\$RDOLU5G.exe (PUP.Optional.VIT)
C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaApp.dll (PUP.Optional.Delta)
C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaEng.dll (PUP.Optional.Delta)
C:\Program Files (x86)\SoftwareUpdater\uninstall.exe (PUP.Optional.Vittalia)
C:\Users\ユーザー名\AppData\Local\Temp\1365916402itinstallerp.exe (PUP.Optional.Vittalia)
C:\Users\ユーザー名\AppData\Local\Temp\instloffer.exe (PUP.Optional.Vittalia)
C:\Users\ユーザー名\AppData\Local\Temp\PCPSetup-8-.exe (Adware.InstallBrain)
C:\Users\ユーザー名\AppData\Local\Temp\82F71AD6-BAB0-7891-BEF8-F5572B4E93F8\CrxInstaller.dll (PUP.Optional.Babylon.A)
C:\Users\ユーザー名\AppData\Local\Temp\82F71AD6-BAB0-7891-BEF8-F5572B4E93F8\MyBabylonTB.exe (PUP.Optional.Delta)
C:\Users\ユーザー名\AppData\Local\Temp\bus3024\BUSolution.dll (PUP.Optional.BabSolution.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\chLogic.exe (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\ctbe.exe (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\statisticsStub.exe (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\stub.exe (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\is1933591475\1193557_stp\rcpsetup_adppi14_adppi14.exe (PUP.Optional.RegCleanPro)
C:\Users\ユーザー名\AppData\Roaming\BabSolution\Shared\BUSolution.dll (PUP.Optional.BabSolution.A)
C:\Users\ユーザー名\その他\DTLite\DTLite4451-0236.exe (PUP.Optional.OpenCandy)
C:\Users\ユーザー名\その他\DTLite\keygen.exe (Trojan.Agent.CK)
C:\Program Files (x86)\BringStar\BringStar.ico (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\7za.exe (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\BringStarUninstall.exe (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\BringStar.BrowserFilter.Helper.dll (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\BringStar.BrowserFilter.Helper.dll.old.94848599-9713-4754-b6b7-9f22eecc9e5a (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\BringStarBrowserFilter.exe (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\plugins\BringStar.BrowserFilterG.dll (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\plugins\BringStar.FFUpdate.dll (PUP.Optional.BringStar.A)
C:\Program Files (x86)\BringStar\bin\plugins\BringStar.IEUpdate.dll (PUP.Optional.BringStar.A)
C:\Program Files (x86)\SoftwareUpdater\KeyGen.dll (PUP.Optional.SoftwareUpdater.A)
C:\Program Files (x86)\SoftwareUpdater\AppsUpdater.exe (PUP.Optional.SoftwareUpdater.A)
C:\Program Files (x86)\SoftwareUpdater\AppsUpdater.exe.config (PUP.Optional.SoftwareUpdater.A)
C:\Program Files (x86)\SoftwareUpdater\Interop.Shell32.dll (PUP.Optional.SoftwareUpdater.A)
C:\Program Files (x86)\SoftwareUpdater\UpdaterService.exe (PUP.Optional.SoftwareUpdater.A)
C:\Users\ユーザー名\AppData\Roaming\Delta\sqlite3.dll (PUP.Optional.Delta.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\protect\PluginProtect.exe (PUP.Optional.Vittalia)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\chromeid.txt (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\CT3312524.txt (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\initdata.json (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\manifest.json (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\setup.ini.txt (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Local\Temp\ct3312524\plugins\TBVerifier.dll (PUP.Optional.Conduit.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\uninstallkit.exe (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\Chrome\tempCRX\background.js (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\protect\Interop.Shell32.dll (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\protect\Newtonsoft.Json.dll (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\protect\sqlite3.exe (PUP.Optional.OKitSpace.A)
C:\Users\ユーザー名\AppData\Roaming\okitspace\protect\utilsDll.dll (PUP.Optional.OKitSpace.A)
(終)
試しに通常モードで再起動を行うも、チェックディスクは動作せず。
起動後BSoD。原因はntoskernel.exeのため、KP41病。
セーフモードで再起動後、GUで掃除を行い、ACを使用した。
以下はそのログ。
# AdwCleaner v3.018 - Report created 09/02/2014 at 17:47:26
# Updated 28/01/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : ユーザー名 - WIN7ユーザー名
# Running from : C:\Users\ユーザー名\Downloads\AdwCleaner.exe
# Option : Scan
***** [ Services ] *****
Service Found : srvPlgProtect
***** [ Files / Folders ] *****
File Found : C:\END
File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\Babylon.xml
File Found : C:\Users\ユーザー名\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
File Found : C:\Users\ユーザー名\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
File Found : C:\Users\ユーザー名\AppData\Local\Temp\Uninstall.exe
File Found : C:\Windows\System32\roboot64.exe
File Found : C:\Windows\System32\Tasks\BrowserProtect
File Found : C:\Windows\System32\Tasks\EPUpdater
Folder Found C:\Program Files (x86)\baidu
Folder Found C:\Program Files (x86)\Conduit
Folder Found C:\Program Files (x86)\RegClean Pro
Folder Found C:\ProgramData\Babylon
Folder Found C:\ProgramData\boost_interprocess
Folder Found C:\ProgramData\IBUpdaterService
Folder Found C:\Users\ユーザー名\AppData\LocalLow\BabylonToolbar
Folder Found C:\Users\ユーザー名\AppData\LocalLow\baidu
Folder Found C:\Users\ユーザー名\AppData\LocalLow\Conduit
Folder Found C:\Users\ユーザー名\AppData\Roaming\Babylon
Folder Found C:\Users\ユーザー名\AppData\Roaming\baidu
Folder Found C:\Users\ユーザー名\AppData\Roaming\dvdvideosoftiehelpers
Folder Found C:\Users\ユーザー名\AppData\Roaming\okitspace
Folder Found C:\Users\ユーザー名\AppData\Roaming\PerformerSoft
Folder Found C:\Users\ユーザー名\AppData\Roaming\Systweak
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Found : HKCU\Software\5d488dbe268ba12
Key Found : HKCU\Software\AppDataLow\Software\Conduit
Key Found : HKCU\Software\AppDataLow\Software\smartbar
Key Found : HKCU\Software\BabSolution
Key Found : HKCU\Software\BabylonToolbar
Key Found : HKCU\Software\DataMngr
Key Found : HKCU\Software\DataMngr_Toolbar
Key Found : HKCU\Software\distromatic
Key Found : HKCU\Software\InstallCore
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3543619C-D563-43F7-95EA-4DA7E1CC396A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3543619C-D563-43F7-95EA-4DA7E1CC396A}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Found : HKCU\Software\Softonic
Key Found : HKCU\Software\systweak
Key Found : HKCU\Software\TutoTag
Key Found : [x64] HKCU\Software\BabSolution
Key Found : [x64] HKCU\Software\BabylonToolbar
Key Found : [x64] HKCU\Software\DataMngr
Key Found : [x64] HKCU\Software\DataMngr_Toolbar
Key Found : [x64] HKCU\Software\distromatic
Key Found : [x64] HKCU\Software\InstallCore
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Found : [x64] HKCU\Software\Softonic
Key Found : [x64] HKCU\Software\systweak
Key Found : [x64] HKCU\Software\TutoTag
Key Found : HKLM\SOFTWARE\5d488dbe268ba12
Key Found : HKLM\Software\Babylon
Key Found : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Found : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Found : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Found : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
Key Found : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
Key Found : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{3543619C-D563-43F7-95EA-4DA7E1CC396A}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\SOFTWARE\Classes\Prod.cap
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{09C554C3-109B-483C-A06B-F14172F1A947}
Key Found : HKLM\Software\DataMngr
Key Found : HKLM\Software\FreeSoftToday
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\dhkplhfnhceodhffomolpfigojocbpcb
Key Found : HKLM\SOFTWARE\Google\Chrome\Extensions\pgafcinpmmpklohkojmllohdhomoefph
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\BabylonToolbarsrv_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_dropbox_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_dropbox_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_windows-7-dreamscene-activator_RASAPI32
Key Found : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_for_windows-7-dreamscene-activator_RASMANCS
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3543619C-D563-43F7-95EA-4DA7E1CC396A}
Key Found : HKLM\Software\SoftwareUpdater
Key Found : HKLM\Software\systweak
Key Found : HKLM\Software\Vittalia
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Key Found : [x64] HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16750
Setting Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [SearchAssistant] - hxxp://search.babylon.com/?babsrc=SP_ss&q={searchTerms}&mntrId=62f2fdfc000000000000889ffa8af857&tlver=1.4.19.19&affID=17160
-\\ Google Chrome v32.0.1700.107
[ File : C:\Users\ユーザー名\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Found : icon_url
Found : search_url
Found : suggest_url
Found : keyword
Found : search_url
Found : icon_url
Found : search_url
Found : suggest_url
Found : keyword
*************************
AdwCleaner[R0].txt - [8232 octets] - [09/02/2014 17:47:26]
########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [8292 octets] ##########