悪代官の伏魔殿掲示板 9310859


ブラウザを勝手に開く広告サイトについて

1:オスカル :

2015/03/18 (Wed) 20:58:46

ブラウザを勝手に開く広告サイトについて困っております。

以下にHJT及びCCのログを添付します。

【HJT】
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 20:45:44, on 2015/03/18
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Program Files (x86)\NEC\HomeLinkManager\HubDriverDriveManager.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\ProgramData\SmartUpdate\SUMAIN\SmartUpdate.exe
C:\Program Files\Microsoft Office 15\root\office15\msosync.exe
C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE
C:\Users\Nobu\Desktop\悪代官の伏魔殿\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [SmartUpdate] "C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [FuncSwitch] C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
O4 - HKLM\..\Run: [HScrollFun] C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [MoviePhotoMenu] C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [mwyyntm1ndi1zdz] C:\Program Files (x86)\Smwyyntm1ndi1zdz\mwiynzm4ndy1yjz.exe
O8 - Extra context menu item: Bluetoothへの送信 - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: IntelR CentrinoR Wireless BluetoothR + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AS ContentsDL - NEC Personal Computers, Ltd. - C:\Program Files\NEC\AtrioSide\AS_ContentsDL.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CyberLink Product - 2012/12/26 17:39:22 (CLKMSVC10_38F51D56) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dejizo Dictionary Search Engine (DejizoDicSearch) - EAST - C:\Program Files (x86)\East\DejizoPC\DejizoDicSearch.exe
O23 - Service: DiXiM Player SDK Service - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCService.exe
O23 - Service: DiXiM Player Service Controller - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCServicecControl.exe
O23 - Service: ECOViewer (ecomonsv) - NEC Personal Computers, Ltd. - C:\Program Files\EcoViewer\ecomonsv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: HubDriver - NEC Personal Computers, Ltd. - C:\Program Files\NEC\HomeLinkManager\HubDriver.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Customise Semicolon (liqewowi) - Unknown owner - C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533\jnsb94FC.tmp
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Blog Discussion Group (luzezibo) - Unknown owner - C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533\nsa8B69.tmp
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: NECBT SERVICE - NEC Personal Computers, Ltd. - C:\Program Files\NECBoot\NECBTSVC.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NT Meter - NEC Personal Computers, Ltd. - c:\windows\syswow64\NTMETER.exe
O23 - Service: PeakShift Service (PeakShiftSvc) - NEC Personal Computers, Ltd. - C:\Program Files\PeakShiftTool\PeakShiftSvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Search Snacks - C:\Program Files (x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe
O23 - Service: SmartVision Admin Service (SVAdminService) - NEC Personal Computers, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision Admin Service 64 (SVAdminService64) - NEC Personal Computers, Ltd. - C:\Program Files\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision MessageManager Service (SVMsgMngService) - NEC Corporation, NEC Personal Products, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVMsgMng.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WSET Info Service (WSET_Info_Service) - NEC Personal Computers, Ltd. - C:\Program Files\NECWSET\WSET_Info.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - IntelR Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 14641 bytes


【CC】
Adblock Plus for IE (32-bit and 64-bit) Eyeo GmbH 2015/03/01 6.66 MB 1.4
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/08 204 MB 11.0.10
Apple Application Support(32 ビット) Apple Inc. 2015/02/25 95.4 MB 3.1.2
Apple Application Support(64 ビット) Apple Inc. 2015/02/25 108 MB 3.1.2
Apple Mobile Device Support Apple Inc. 2015/02/25 29.3 MB 8.1.1.3
Apple Software Update Apple Inc. 2013/06/22 2.38 MB 2.1.3.127
Bonjour Apple Inc. 2013/06/22 2.00 MB 3.0.0.10
Canon MP470 series 2015/01/03
CCleaner Piriform 2015/03/18 5.03
Corel PaintShop Pro X4 Corel Corporation 2015/01/03 323 MB 14.2.0.7
CyberLink MediaShow BD CyberLink Corp. 2012/12/26 1.01 GB 6.0.4923
CyberLink MediaShow向けアドオン NEC Personal Computers, Ltd. 2012/12/26 1.58 MB 1.1.0.1
CyberLink PowerDVD CyberLink Corp. 2012/12/26 181 MB 10.0.4701.52
CyberLink PowerProducer BD CyberLink Corp. 2012/12/26 168 MB 5.5.3.4617
CyberLink YouCam 5 CyberLink Corp. 2013/06/23 247 MB 5.0.2224
DigiBookBrowser Version 1.5.2.70 TriWorks Corp.JAPAN 2012/12/26 8.51 MB 1.5.2.70
DiXiM Player for SmartVision DigiOn 2012/12/26 1.4.0.2
ECOみえグラフ NEC Personal Computers, Ltd. 2012/12/26 5.18 MB 1.5.0
ECOモード設定ツール NEC Personal Computers, Ltd. 2012/12/26 3.52 MB 5.7.0
Google Toolbar for Internet Explorer Google Inc. 2015/03/18 7.5.6227.252
Homeリンクマネージャ(32bit) NEC Personal Computers, Ltd. 2012/12/26 1.85 MB 1.2.0.3
Homeリンクマネージャ(64bit) NEC Personal Computers, Ltd. 2012/12/26 7.75 MB 1.2.0.3
Intel(R) Management Engine Components Intel Corporation 2013/05/14 8.1.0.1252
Intel(R) Processor Graphics Intel Corporation 2015/01/03 10.18.10.3958
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed Intel Corporation 2012/12/26 5.77 MB 15.5.5.0480
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Motorola Solutions, Inc. 2012/12/26 89.4 MB 2.6.1209.0268
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2015/01/03 2.0.0.37149
Intel(R) WiDi Intel Corporation 2012/12/26 121 MB 3.5.41.0
iTunes Apple Inc. 2015/02/25 234 MB 12.1.1.4
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2015/03/18 15.0.4701.1002
Microsoft SkyDrive Microsoft Corporation 2015/01/03 25.1 MB 16.4.6012.0828
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2012/12/26 1.92 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/10/02 4.84 MB 8.0.59193
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2012/10/02 6.83 MB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2012/10/02 13.2 MB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/12/26 9.63 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/10/02 10.1 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2012/12/26 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2012/12/26 15.0 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 2015/01/30 20.5 MB 11.0.61030.0
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 Microsoft Corporation 2015/01/30 17.3 MB 11.0.61030.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/01/03 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/01/03 10.0.31119
music.jp PLAY 4.0 Ventis Media Inc. 2012/12/26 60.9 MB 4.0
NX PAD Driver ALPS 2015/01/03 8.100.909.311
PhotoWizard Microsoft 2012/12/26 338 MB 1.3.0
PlayReady PC Runtime x86 Microsoft Corporation 2012/12/26 1.65 MB 1.3.0
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2015/01/03 6.0.1.6714
Realtek PCIE Card Reader Realtek Semiconductor Corp. 2012/12/26 6.2.8400.28122
Roxio Creator LJ Roxio 2015/01/03 143 MB 12.2.34.10
SiteAdvisor McAfee, Inc. 2015/03/13 3.7.199
Smart Update NECパーソナルコンピュータ株式会社 2012/12/26 14.3 MB 1.2.0.5
SmartVision/PLAYER NEC Personal Computers, Ltd. 2015/01/30 67.7 MB 3.12.2.025
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2015/01/06 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/01/06 40.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2015/01/06 11.5 MB 15.0.1215
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/01/22 17.0 KB 16.0.1016.1
Windows Live Essentials Microsoft Corporation 2012/12/26 16.4.3505.0912
おすすめメニューNavi NEC Personal Computers, Ltd. 2012/12/26 4.00 MB 2.1.0
おてがるバックアップ Roxio 2015/01/03 106 MB 4.6
ぱっと観スライドショー NEC Personal Computers, Ltd. 2012/12/26 43.3 MB 1.4.0.1
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2015/01/22 380 MB 16.11.0
クイックパワーオン NEC Personal Computers, Ltd. 2012/12/26 6.13 MB 1.1.0
ソフト&サポートナビゲーター NEC Personal Computers, Ltd. 2012/12/26 41.2 MB 1.5.2
ディスプレイの切り換え NEC Personal Computers, Ltd. 2012/12/26 1.46 MB 1.1.1
デ辞蔵 PC 2.0 イースト株式会社 2012/12/26 63.0 MB 2.0.7.0
バッテリ・リフレッシュ&診断ツール NEC Personal Computers, Ltd. 2012/12/26 2.25 MB 1.11.0
パソらく設定 NEC Personal Computers, Ltd. 2012/12/26 25.5 MB 3.2.0.0
パソコンのいろは8 NECデザイン&プロモーション株式会社 2012/12/26 113 MB 1.00.0000
パネルオープンパワーオンの設定 NEC Personal Computers, Ltd. 2012/12/26 2.70 MB 1.0.1
パワーオフUSB充電の設定 NEC Personal Computers, Ltd. 2012/12/26 516 KB 2.4.0
ピークシフト設定ツール NEC Personal Computers, Ltd. 2012/12/26 781 KB 1.3.0
ファイナルパソコンデータ引越し 9 plus for NEC AOS Technologies 2012/12/26 63.6 MB 7.00.624.0
マウス・リモコン登録ユーティリティ NEC Personal Computers, Ltd. 2012/12/26 488 KB 2.0.2
マルチアクセス - PCセキュリティセンター McAfee, Inc. 2015/01/03 12.8.992
ムービーフォトメニュー NEC Personal Computers, Ltd. 2012/12/26 17.1 MB 1.6.0.1
ワイヤレスLANの設定 NEC Personal Computers, Ltd. 2012/12/26 805 KB 1.0.2
ワンタッチスタートボタンの設定 NEC Personal Computers, Ltd. 2012/12/26 5.87 MB 1.19.1312
再セットアップメディア作成ツール NEC Personal Computers, Ltd. 2012/12/26 1.22 MB 6.2.0
左右スクロールボタンの設定 Chicony 2012/12/26 3.23 MB 1.04.000
彩りの設定 NEC Personal Computers, Ltd. 2015/01/03
楽しもう!Office ライフ Microsoft Corporation 2012/12/26 636 KB 1.0.0
筆ぐるめ 20 富士ソフト株式会社 2012/12/26 735 MB 20.00.0003
2:悪代官 :

2015/03/18 (Wed) 21:25:04

こんばんは。
ここの管理人の悪代官という非国民です。
見るからに怪しいIDですが、日本語はもっと怪しいので安心してください(←ホントにどこの国の悪代官だよ

説明とログを見せてもらいましたが現在大流行中のSalus系ですね。
では順番に調べていきましょう。

まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「ATF-Cleaner」(通称:ATF)
説明↓
http://freesoft.tvbok.com/freesoft/pc_system/atf-cleaner.html
ダウンロード↓
http://www.atribune.org/index.php?option=com_content&task=view&id=25&Itemid=25
中央の赤い文字がダウンロードリンクです。
片付けるときはファイルを直接削除してください。

Iobit Uninstaller(通称・IU)
公式ページ↓
http://jp.iobit.com/free/iou.html
解説↓
http://www.japan-secure.com/entry/blog-entry-282.html
片付けのときは以下のサイト様の説明を参考に、
http://www.japan-secure.com/entry/blog-entry-396.html
コントロールパネルからアンインストールですが、ポータブル版をお使いの場合はフォルダごと削除してください。
また、2014年ごろからIUはスポンサーサイトの広告も1週間に1度ほどのペースで表示するようになりました。
以下のページのような広告が表示されても慌てずに、一度PC再起動すればあとはまた次の週まで広告も出ないでしょう
http://okwave.jp/qa/q8644647.html

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。
使い方は下記サイト様に詳しい説明があるのでサンショウウオ↓
http://www.japan-secure.com/entry/adwcleaner.html

そして下記ページは作業開始前に必ず熟読して、必要な場合が出たらそれに沿って対処してください。この対処が必要な事例が増えています。
http://note.chiebukuro.yahoo.co.jp/detail/n335704

準備できたら作業開始です。

まずここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

次にここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

今度はPCをセーフモードで起動してください(やり方↓)
http://freesoft.tvbok.com/win8/tips-and-tools/safemode.html

セーフモードのままでATFを起動して、「Recycle bin」(ゴミ箱)以外の箇所全部にチェックしてから、下部の「Empty selected」を押してください。
これでPC内の一時ファイル等のゴミが掃除できます。
ゴミ箱を空にしないのは、もし間違って安全なファイルを削除しても戻せるようにとの対処です。

HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、こちらが指示した以外のものは絶対にチェックを入れないでください。
>O4 - HKLM\..\Run: [mwyyntm1ndi1zdz] C:\Program Files (x86)\Smwyyntm1ndi1zdz\mwiynzm4ndy1yjz.exe
>O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Search Snacks - C:\Program Files (x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
探しても見つからないものはスルーして進めていいです。

マイコンピュータのCドライブを開いて、下記のフォルダを探して、見つかればゴミ箱に削除してください。
>C:\Program Files (x86)\Smwyyntm1ndi1zdz
>C:\Program Files (x86)\SearchSnacks_1.10.0.5

今度は先にも起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

今度はCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

続いて「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。
ただし、「コンテキストメニュー」のログは取らなくていいです。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにHJTとCCでのインストール情報ログを取り直してください。

取り直した両ログと、ACとCCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。
3:オスカル :

2015/03/18 (Wed) 23:43:25

https://bbs7.fc2.com//bbs/img/_767500/767497/full/767497_1426689805.png 迅速なご回答ありがとうございました。
早速ご提示いただいた手順の通りに作業を実施しました。

ブラウザを再起動して1時間程様子を見ましたが、
問題のブラウザが勝手に開く事象は起きていません。

しかし、「Welcome to AnyWhereAccess Setup Wizard」
というウインドウが勝手に表示されます。
(ウインドウの画面は添付ファイルをご参照ください)

ひとまずご依頼のあったログを以下に添付します。


【AC】
# AdwCleaner v4.112 - ログファイルの作成日 18/03/2015 作成時間 22:36:51
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-05.1 [ローカル]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****


***** [ ファイル / フォルダ ] *****

ファイル 削除済み項目 : C:\Users\Nobu\Desktop\Continue Live Installation.lnk

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
キー 削除済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[R3].txt - [1166 bytes] - [17/03/2015 00:01:20]
AdwCleaner[R4].txt - [1451 bytes] - [17/03/2015 08:46:00]
AdwCleaner[R5].txt - [1481 bytes] - [18/03/2015 20:17:13]
AdwCleaner[R6].txt - [1789 bytes] - [18/03/2015 22:34:41]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]
AdwCleaner[S3].txt - [1229 bytes] - [17/03/2015 00:12:16]
AdwCleaner[S4].txt - [1513 bytes] - [17/03/2015 08:49:45]
AdwCleaner[S5].txt - [1543 bytes] - [18/03/2015 20:18:45]
AdwCleaner[S6].txt - [1708 bytes] - [18/03/2015 22:36:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [1767 bytes] ##########


【CC(ブラウザ起動前)】
〔Windows〕
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM

\1.0\AdobeARM.exe"
有効 HKLM:Run Apoint Alps Electric Co., Ltd. C:\Program Files\Apoint2K\Apoint.exe
有効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application

Support\APSDaemon.exe"
有効 HKLM:Run AtrioSide NEC Personal Computers, Ltd. "C:\Program Files\NEC\AtrioSide\AtrioSide.exe"

/Autorun
有効 HKLM:Run AVDM NEC Personal Computers, Ltd. C:\Program Files\AVDm\AVDm.exe /RESIDENT
有効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
有効 HKLM:Run BTMTrayAgent Microsoft Corporation rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth

\btmshellex.dll",TrayApp
有効 HKLM:Run DispSw NEC Personal Computers, Ltd. C:\Program Files\DispSw\DispSw.exe
有効 HKLM:Run FuncSwitch CHICONY C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
有効 HKLM:Run gmsd_jp_313
有効 HKLM:Run HomeLinkManager NEC Personal Computers, Ltd. "C:\Program Files\NEC\HomeLinkManager

\DelayStarter.exe" 120000 "C:\Program Files\NEC\HomeLinkManager\HubDriverTrayApp.exe" "/startup"
有効 HKLM:Run HotKeysCmds C:\windows\system32\hkcmd.exe
有効 HKLM:Run HScrollFun Chicony C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
有効 HKLM:Run MoviePhotoMenu NEC Personal Computers, Ltd. C:\Program Files (x86)\NEC\MoviePhotoMenu

\NECStartStartup.exe
有効 HKLM:Run NECBatt NEC Personal Computers, Ltd. C:\Program Files\NECBatt\nbSched.exe
有効 HKLM:Run NECBTBE NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTBE.exe
有効 HKLM:Run NECBTPB NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTPB.EXE
有効 HKLM:Run NECMFK NEC Personal Computers, Ltd. C:\Program Files\necmfk\necmfk.exe
有効 HKLM:Run NPSpeed NEC Personal Computers, Ltd. C:\Program Files\NPSpeed\NPSpeed.exe
有効 HKLM:Run PeakShiftTool NEC Personal Computers, Ltd. C:\Program Files\PeakShiftTool

\PeakShiftNotifier.exe
有効 HKLM:Run Persistence C:\windows\system32\igfxpers.exe
有効 HKLM:Run RemoteControl10 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3
有効 HKLM:Run RTHDVCPL Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SmartUpdate NEC Personal Computers,Ltd. "C:\Program Files (x86)\NEC\SmartUpdate

\reservesu.exe"
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer

\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer

\5.0"
有効 HKLM:Run YouCam Service CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s

〔Internet Explorer〕
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root

\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root

\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE

\AdblockPlus32.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE

\AdblockPlus64.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root

\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll

〔Opera〕
※ログの中身は空でした

〔スケジュールされたタスク〕
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua

/installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for HOME-PC-Nobu home-PC Microsoft Corporation C:\Program Files

\Microsoft Office 15\Root\Office15\MsoSync.exe
有効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-1001
有効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-500
有効 Task PPXV CinPlusV16.03 C:\Users\Nobu\AppData\Roaming\PPXV.exe

/infocmdline=OILJz3Ckiw5v29PR9Slr835spdoZGHyTyxlCPyetKXu1r5jOEQVkO+59fH9RJg2hYFOUA

+4QJJar8elctYMX3FzcDx5ixcGDNiufUYkWZ2Q7NNaw1B1Zz//XvifVayZg1/CTAycwv4LWFe2g+

+l/QEhwe7HOdFNDwOzBT0IdXytHWexUcfC8aIXmU7SApQkIhYo5Q

+zhfN92OD4tXcjQsQSP7VfHX2iK57uWRSu3A8EnHxjiAbuPEmyQqGgh2FVf21HM9SMkpm4Zv1vORX/18Mjk

+Vymm9s6QBk4/NQDA/L1e0BslLTU7HbkQjQGdd8oburLe3yExSMw+hVzsifVEWJoF7Kbcj4+Tj8cB5g5bH

+zHeOs9dZ6tWHmq0UBYhm74BUViwyuskZ7OXQct/acQ8ony4KaWBnQeiX9RI

+riYCAfZw01BCzTOD5zXfL6Us9wyeUJhgPcO30kwT2JmlCu87zGoI2K0hGyPccfezbo2iOypB9PxXh5auq6R28PXIk
有効 Task SearchSnacks Auto Updater 1.10.0.5 Core C:\Program Files (x86)\SearchSnacks_1.10.0.5\Update

\SearchSnacksAutoUpdateClient.exe checkupdate
有効 Task SearchSnacks Auto Updater 1.10.0.5 Pending Update C:\Program Files

(x86)\SearchSnacks_1.10.0.5\Update\SearchSnacksAutoUpdateClient.exe update
有効 Task {7C8F0339-9DDA-43AE-B43E-E6F57DA33A32} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a C:

\Users\Nobu\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=cmi
有効 Task {8304FCDB-BF0C-4A67-AD18-8EBBB6E19C4B} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a "C:

\Program Files (x86)\VideoLAN\VLC\uninstall.exe"


【HJT】
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 23:34:53, on 2015/03/18
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Program Files (x86)\NEC\HomeLinkManager\HubDriverDriveManager.exe
C:\ProgramData\SmartUpdate\SUMAIN\SmartUpdate.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\Nobu\Desktop\悪代官の伏魔殿\01 作業1(準備作業)\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar

\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock

Plus for IE\AdblockPlus32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee

\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar

\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SmartUpdate] "C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [FuncSwitch] C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
O4 - HKLM\..\Run: [HScrollFun] C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:

\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [MoviePhotoMenu] C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: Bluetoothへの送信 - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root

\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root

\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office

15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office

15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft

Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth

\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel

\Bluetooth\btSendToPage.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) -

http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root

\Office15\MSOSB.DLL
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery

\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common

Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: IntelR CentrinoR Wireless BluetoothR + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program

Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support

\AppleMobileDeviceService.exe
O23 - Service: AS ContentsDL - NEC Personal Computers, Ltd. - C:\Program Files\NEC\AtrioSide\AS_ContentsDL.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R)

Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CyberLink Product - 2012/12/26 17:39:22 (CLKMSVC10_38F51D56) - CyberLink - C:\Program Files

(x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS

\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dejizo Dictionary Search Engine (DejizoDicSearch) - EAST - C:\Program Files (x86)\East\DejizoPC

\DejizoDicSearch.exe
O23 - Service: DiXiM Player SDK Service - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service

\DoDMCService.exe
O23 - Service: DiXiM Player Service Controller - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player

\Service\DoDMCServicecControl.exe
O23 - Service: ECOViewer (ecomonsv) - NEC Personal Computers, Ltd. - C:\Program Files\EcoViewer\ecomonsv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin

\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file

missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update

\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update

\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater

\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost

\McSvHost.exe
O23 - Service: HubDriver - NEC Personal Computers, Ltd. - C:\Program Files\NEC\HomeLinkManager\HubDriver.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS

\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS

\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS

Client\HeciServer.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program

Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Customise Semicolon (liqewowi) - Unknown owner - C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-

88A6-E62895807533\jnsb94FC.tmp
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:

\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Blog Discussion Group (luzezibo) - Unknown owner - C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-

88A6-E62895807533\nsa8B69.tmp
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files

\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform

\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform

\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost

\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore

\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\

\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file

missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform

\McSvcHost\McSvHost.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: NECBT SERVICE - NEC Personal Computers, Ltd. - C:\Program Files\NECBoot\NECBTSVC.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file

missing)
O23 - Service: NT Meter - NEC Personal Computers, Ltd. - c:\windows\syswow64\NTMETER.exe
O23 - Service: PeakShift Service (PeakShiftSvc) - NEC Personal Computers, Ltd. - C:\Program Files\PeakShiftTool

\PeakShiftSvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License

Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files

\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file

missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file

missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file

missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file

missing)
O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Unknown owner - C:\Program Files

(x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe (file missing)
O23 - Service: SmartVision Admin Service (SVAdminService) - NEC Personal Computers, Ltd. - C:\Program Files (x86)\NEC

\SmartVision\SVAdmin.exe
O23 - Service: SmartVision Admin Service 64 (SVAdminService64) - NEC Personal Computers, Ltd. - C:\Program Files\NEC

\SmartVision\SVAdmin.exe
O23 - Service: SmartVision MessageManager Service (SVMsgMngService) - NEC Corporation, NEC Personal Products, Ltd. - C:

\Program Files (x86)\NEC\SmartVision\SVMsgMng.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe

(file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:

\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file

missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe

(file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files

(x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files

(x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem

\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files

(x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WSET Info Service (WSET_Info_Service) - NEC Personal Computers, Ltd. - C:\Program Files\NECWSET

\WSET_Info.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - IntelR Corporation - C:\Program

Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 15208 bytes


【CC(ブラウザ起動後)】
〔Windows〕
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM

\1.0\AdobeARM.exe"
有効 HKLM:Run Apoint Alps Electric Co., Ltd. C:\Program Files\Apoint2K\Apoint.exe
有効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application

Support\APSDaemon.exe"
有効 HKLM:Run AtrioSide NEC Personal Computers, Ltd. "C:\Program Files\NEC\AtrioSide\AtrioSide.exe"

/Autorun
有効 HKLM:Run AVDM NEC Personal Computers, Ltd. C:\Program Files\AVDm\AVDm.exe /RESIDENT
有効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
有効 HKLM:Run BTMTrayAgent Microsoft Corporation rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth

\btmshellex.dll",TrayApp
有効 HKLM:Run DispSw NEC Personal Computers, Ltd. C:\Program Files\DispSw\DispSw.exe
有効 HKLM:Run FuncSwitch CHICONY C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
有効 HKLM:Run gmsd_jp_313
有効 HKLM:Run HomeLinkManager NEC Personal Computers, Ltd. "C:\Program Files\NEC\HomeLinkManager

\DelayStarter.exe" 120000 "C:\Program Files\NEC\HomeLinkManager\HubDriverTrayApp.exe" "/startup"
有効 HKLM:Run HotKeysCmds C:\windows\system32\hkcmd.exe
有効 HKLM:Run HScrollFun Chicony C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
有効 HKLM:Run MoviePhotoMenu NEC Personal Computers, Ltd. C:\Program Files (x86)\NEC\MoviePhotoMenu

\NECStartStartup.exe
有効 HKLM:Run NECBatt NEC Personal Computers, Ltd. C:\Program Files\NECBatt\nbSched.exe
有効 HKLM:Run NECBTBE NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTBE.exe
有効 HKLM:Run NECBTPB NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTPB.EXE
有効 HKLM:Run NECMFK NEC Personal Computers, Ltd. C:\Program Files\necmfk\necmfk.exe
有効 HKLM:Run NPSpeed NEC Personal Computers, Ltd. C:\Program Files\NPSpeed\NPSpeed.exe
有効 HKLM:Run PeakShiftTool NEC Personal Computers, Ltd. C:\Program Files\PeakShiftTool

\PeakShiftNotifier.exe
有効 HKLM:Run Persistence C:\windows\system32\igfxpers.exe
有効 HKLM:Run RemoteControl10 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3
有効 HKLM:Run RTHDVCPL Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SmartUpdate NEC Personal Computers,Ltd. "C:\Program Files (x86)\NEC\SmartUpdate

\reservesu.exe"
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer

\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer

\5.0"
有効 HKLM:Run YouCam Service CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s

〔Internet Explorer〕
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root

\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root

\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE

\AdblockPlus32.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE

\AdblockPlus64.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS

\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root

\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll

〔Opera〕
※ログの中身は空でした

〔スケジュールされたタスク〕
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua

/installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for HOME-PC-Nobu home-PC Microsoft Corporation C:\Program Files

\Microsoft Office 15\Root\Office15\MsoSync.exe
無効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-1001
有効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-500
有効 Task PPXV CinPlusV16.03 C:\Users\Nobu\AppData\Roaming\PPXV.exe

/infocmdline=OILJz3Ckiw5v29PR9Slr835spdoZGHyTyxlCPyetKXu1r5jOEQVkO+59fH9RJg2hYFOUA

+4QJJar8elctYMX3FzcDx5ixcGDNiufUYkWZ2Q7NNaw1B1Zz//XvifVayZg1/CTAycwv4LWFe2g+

+l/QEhwe7HOdFNDwOzBT0IdXytHWexUcfC8aIXmU7SApQkIhYo5Q

+zhfN92OD4tXcjQsQSP7VfHX2iK57uWRSu3A8EnHxjiAbuPEmyQqGgh2FVf21HM9SMkpm4Zv1vORX/18Mjk

+Vymm9s6QBk4/NQDA/L1e0BslLTU7HbkQjQGdd8oburLe3yExSMw+hVzsifVEWJoF7Kbcj4+Tj8cB5g5bH

+zHeOs9dZ6tWHmq0UBYhm74BUViwyuskZ7OXQct/acQ8ony4KaWBnQeiX9RI

+riYCAfZw01BCzTOD5zXfL6Us9wyeUJhgPcO30kwT2JmlCu87zGoI2K0hGyPccfezbo2iOypB9PxXh5auq6R28PXIk
有効 Task SearchSnacks Auto Updater 1.10.0.5 Core C:\Program Files (x86)\SearchSnacks_1.10.0.5\Update

\SearchSnacksAutoUpdateClient.exe checkupdate
有効 Task SearchSnacks Auto Updater 1.10.0.5 Pending Update C:\Program Files

(x86)\SearchSnacks_1.10.0.5\Update\SearchSnacksAutoUpdateClient.exe update
有効 Task {7C8F0339-9DDA-43AE-B43E-E6F57DA33A32} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a C:

\Users\Nobu\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=cmi
有効 Task {8304FCDB-BF0C-4A67-AD18-8EBBB6E19C4B} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a "C:

\Program Files (x86)\VideoLAN\VLC\uninstall.exe"
4:オスカル :

2015/03/19 (Thu) 07:09:57

「Welcome to AnyWhereAccess Setup Wizard」というウインドウですが、
こちらもブラウザを勝手に開く広告サイトが出るのと同時期に出始めているものです。
5:悪代官 :

2015/03/19 (Thu) 07:33:39

おはようございます。
画像も上げてくれてありがとうございます。おかげでまた状況が見えました。

>ブラウザを再起動して1時間程様子を見ましたが、
>問題のブラウザが勝手に開く事象は起きていません。

>しかし、「Welcome to AnyWhereAccess Setup Wizard」
>というウインドウが勝手に表示されます。

>「Welcome to AnyWhereAccess Setup Wizard」というウインドウですが、
>こちらもブラウザを勝手に開く広告サイトが出るのと同時期に出始めているものです。

はい、少しは沈静化したようですが、まだ異常残ってるようですね。
ログを見ると確かにまだ残ってます。

少し説明しておくと、現在ネット上で大暴れしている迷惑広告表示アドウェアの類は削除自体は可能ですが、削除するには特定の手順で処置しないと消えないor消えても復活するような作りになっています。
これは簡単に削除されてはあちらが商売にならないので、削除するためにはひとつずつ正しい手順を踏んで作業する必要があるわけです。
例えて書くと迷路の中の正しいルート一つだけを、それもかなりまわりくどい経路で進まないとゴールにたどり着けないような形ですね。
普通にコントロールパネルからアンインストールしても、また強制削除用のツールで頭から無理に削除しかけても消えないor消えても復活するのが仕様にされています。
悪意の者は常に対策逃れ狙いの薄汚い策を弄しますが、お天道様はすべてお見通しです(←それ悪代官が吐くセリフじゃないから

ではまた説明を読んでから、続きの作業をお願いします。

ACはもういいので、導入時の説明に従って片付けていいです。

作業後のインストール情報ログが出てなかったので、このログはまた次回レスで見せてください。

先の手順でCCを起動して、「Windows」タブ内の下記を右クリックから「無効」にしたあと「エントリの削除」してください。
>有効 HKLM:Run gmsd_jp_313

無効化できないときはそのまま削除でもいいです。

次に「スケジュールされたタスク」内の下記4つも同様に処置です。
>有効 Task PPXV CinPlusV16.03 C:\Users\Nobu\AppData\Roaming\PPXV.exe

/infocmdline=OILJz3Ckiw5v29PR9Slr835spdoZGHyTyxlCPyetKXu1r5jOEQVkO+59fH9RJg2hYFOUA

+4QJJar8elctYMX3FzcDx5ixcGDNiufUYkWZ2Q7NNaw1B1Zz//XvifVayZg1/CTAycwv4LWFe2g+

+l/QEhwe7HOdFNDwOzBT0IdXytHWexUcfC8aIXmU7SApQkIhYo5Q

+zhfN92OD4tXcjQsQSP7VfHX2iK57uWRSu3A8EnHxjiAbuPEmyQqGgh2FVf21HM9SMkpm4Zv1vORX/18Mjk

+Vymm9s6QBk4/NQDA/L1e0BslLTU7HbkQjQGdd8oburLe3yExSMw+hVzsifVEWJoF7Kbcj4+Tj8cB5g5bH

+zHeOs9dZ6tWHmq0UBYhm74BUViwyuskZ7OXQct/acQ8ony4KaWBnQeiX9RI

+riYCAfZw01BCzTOD5zXfL6Us9wyeUJhgPcO30kwT2JmlCu87zGoI2K0hGyPccfezbo2iOypB9PxXh5auq6R28PXIk

>有効 Task SearchSnacks Auto Updater 1.10.0.5 Core C:\Program Files (x86)\SearchSnacks_1.10.0.5\Update

\SearchSnacksAutoUpdateClient.exe checkupdate
>有効 Task SearchSnacks Auto Updater 1.10.0.5 Pending Update C:\Program Files

(x86)\SearchSnacks_1.10.0.5\Update\SearchSnacksAutoUpdateClient.exe update
>有効 Task {7C8F0339-9DDA-43AE-B43E-E6F57DA33A32} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a C:

\Users\Nobu\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=cmi

対象外の正規エントリを間違っていじらないようによく見て作業してください。

CCを終了したら今度は以下のアプリを準備してください。
Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ですが、MBAMは現在安定性や動作でかなり難が出ており、普通に使っても正常にスキャンができないバグまで多発中です。
そのため本家サイトから最新版のダウンロードせず、ここではあえて旧バージョンで作業します。

旧バージョンの説明サイト↓
http://fine.tok2.com/home/heto2/0700SecurityApp/Malwarebytes/0001.htm

以下のURLからMBAMの旧バージョンをダウンロードしてください。
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
ファイル直リンです。保存しておいてください。

注)インストール時に日本語でインストールすると文字化けすることがあります。英語でインストール後に日本語化してください。
MBAM起動して「Settings」タブ→「Language」→「Japanese」で日本語化できます。

準備できたらMBAMをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。
なお、ここでMBAMの更新で「プログラム」自体は更新せず、定義だけ更新しておいてください。
プログラム本体を更新すると、バグ多発中の最新版になってしまうので、せっかく旧バージョンでインストールした意味がなくなります。

アップデートまでできたらPCをセーフモードで再起動してから、ATFを使ってゴミファイルの掃除してください。

続いてセーフモードのままMBAMでスキャンしてください。
MBAM起動したら「スキャナー」タブから「フルスキャン」してください。
対象ドライブはCを含めて全ドライブを選択してください。

スキャン対象は全ドライブを選択(チェック)してください。時間はかかりますができるだけ細かくスキャンするためです。
順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、「詳細を表示」を押すとその結果が表示されるはずなので、そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

このあとMBAMのログとインストール情報ログを返信に貼り付けて、それを状態報告とともにレスで見せてください。
6:オスカル :

2015/03/19 (Thu) 12:59:50

https://bbs7.fc2.com//bbs/img/_767500/767497/full/767497_1426737590.png ご回答ありがとうございます。
今回もご提示いただいた手順の通りに作業を実施しました。

作業後1時間程様子を見ましたが、広告ブラウザが勝手に開くような事象も起きておりません。
「Welcome to AnyWhereAccess Setup Wizard」というウインドウですが、こちらがまだ勝手に
出てくるという事象が起きています。
(前回提示した画面と少し違っていたので、今回出た画面を新たに添付します)

また、もともと導入しているウイルス対策ソフト(McAfee)から「トロイの木馬を検出しました。」
というポップアップが出て再起動を促す旨が表示されたので、PCを再起動しました。
再起動後、McAfeeが自動でスキャンを行い1件のウイルス感染ファイルを修復しました。

MBAMのログと、前回提示し忘れたACの作業後ログを以下に添付します。


【MBAM】
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

定義バージョン: v2013.04.04.07

Windows 8 x64 NTFS (セーフモード)
Internet Explorer 11.0.9600.17690
Nobu :: HOME-PC [管理者]

2015/03/19 10:50:47
mbam-log-2015-03-19 (10-50-47).txt

スキャンタイプ: フルスキャン (C:\|D:\|E:\|)
有効なスキャン領域: メモリ | スタートアップ | レジストリ | ファイルシステム | ヒューリスティック/追加アイテムのスキャン  | ヒューリスティック/Shuriken エンジンを使用してスキャン  | 不審なプログラム (PUP) | 不審な変更 (PUM)
無効なスキャン領域: ピア・ツー・ピアプログラム(P2P)
スキャンしたアイテム数: 440334
経過時間: 45 分, 9 秒

メモリプロセスの検出: 0
(悪意のあるアイテムは検出されていません。)

メモリモジュールの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリキーの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリ値の検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリデータ項目の検出: 0
(悪意のあるアイテムは検出されていません。)

フォルダの検出: 0
(悪意のあるアイテムは検出されていません。)

ファイルの検出: 1
C:\Windows\WinSxS\x86_microsoft-windows-vcm-core-codecs_31bf3856ad364e35_6.3.9600.17415_none_018f2074f3cfcbbe\iccvid.dll (Trojan.FakeAlert) -> 正常に隔離され削除されました。

(終)



【AC】
# AdwCleaner v4.112 - ログファイルの作成日 19/03/2015 作成時間 11:47:46
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : ssnfd_1_10_0_5

***** [ ファイル / フォルダ ] *****

ファイル 削除済み項目 : C:\Users\Nobu\Desktop\Continue Live Installation.lnk

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[R3].txt - [1166 bytes] - [17/03/2015 00:01:20]
AdwCleaner[R4].txt - [1451 bytes] - [17/03/2015 08:46:00]
AdwCleaner[R5].txt - [1481 bytes] - [18/03/2015 20:17:13]
AdwCleaner[R6].txt - [1789 bytes] - [18/03/2015 22:34:41]
AdwCleaner[R7].txt - [1922 bytes] - [19/03/2015 11:45:46]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]
AdwCleaner[S3].txt - [1229 bytes] - [17/03/2015 00:12:16]
AdwCleaner[S4].txt - [1513 bytes] - [17/03/2015 08:49:45]
AdwCleaner[S5].txt - [1543 bytes] - [18/03/2015 20:18:45]
AdwCleaner[S6].txt - [1847 bytes] - [18/03/2015 22:36:51]
AdwCleaner[S7].txt - [1845 bytes] - [19/03/2015 11:47:46]

########## EOF - C:\AdwCleaner\AdwCleaner[S7].txt - [1904 bytes] ##########
7:悪代官 :

2015/03/19 (Thu) 13:30:27

作業と報告、ご苦労様です。

>作業後1時間程様子を見ましたが、広告ブラウザが勝手に開くような事象も起きておりません。
>「Welcome to AnyWhereAccess Setup Wizard」というウインドウですが、こちらがまだ勝手に
>出てくるという事象が起きています。

はい、まだ異常事態は続いてますね。
マカフィーでも反応しているようですが、その動きとすると以前にもほぼ同様のものがありました。
ただこれと全く同じ手順での処置が効く保証もないので、もう少し慎重に進めましょう。

ではまた説明に沿って次の作業をお願いします。

まずACのログで、下記の8つのログを探してから、そのログ内容を次回レスでみな見せてください。
>AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]

>AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]

>AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]

>AdwCleaner[S3].txt - [1229 bytes] - [17/03/2015 00:12:16]

>AdwCleaner[S4].txt - [1513 bytes] - [17/03/2015 08:49:45]

>AdwCleaner[S5].txt - [1543 bytes] - [18/03/2015 20:18:45]

>AdwCleaner[S6].txt - [1847 bytes] - [18/03/2015 22:36:51]

>AdwCleaner[S7].txt - [1845 bytes] - [19/03/2015 11:47:46]

ただし、ログ内容が長いと文字数制限にかかることがあるので、レスも8回に分けて送信するといいでしょう。

それと今度は以下のツールを用意してください。
OTL(OldTimer Listit)
ファイル直リンなので、DLしたら保存しておいてください。
http://oldtimer.geekstogo.com/OTL.exe
片付けるときは起動後に「Cleanup」ボタンを押せば自動で削除されます。

他のプログラムを起動しない状態でOTLを起動してください。
起動したら、ウィンドウの上の方にある「Scan All Users」にチェックを入れ、以下のコマンドを「Custom Scan/Fixes」にコピペしてください。

%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
CREATERESTOREPOINT

その後、左上の「Run Scan」を押すとスキャン開始されます。
スキャン開始後、PC環境にもよりますが数分ほどすると、「OTL.txt」と「Extras.txt」がOTL.exeと同じ場所に作成されるはずなので、この2つのファイルをデスクトップあたりに保存しておいてください。
なお、Extras.txtは出ないこともありますが、その場合はOTL.txtだけでもいいです。

このあとOTLログを丸ごと返信に貼り付けてレスで見せてください。
ただしOTLログはかなり長くなるため、一度に送信してもfc2の文字数制限で途切れます。
なのでログも適当なところで分割して、複数回に分けてレス送信してください。

OTLでスキャンしただけでは何も変化は起きません。
この結果を見て、検出されたものを次回以降の作業で処置することになるはずです
8:オスカル :

2015/03/19 (Thu) 14:40:19

ご依頼のあったAdwCleanerのログを8回に分けて送ります。

# AdwCleaner v4.112 - ログファイルの作成日 16/03/2015 作成時間 19:56:40
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

サービス 削除済み項目 : WindowsMangerProtect
サービス 削除済み項目 : IHProtect Service
[#] サービス 削除済み項目 : ssnfd_1_10_0_5
[#] サービス 削除済み項目 : qrnfd_1_10_0_9

***** [ ファイル / フォルダ ] *****

フォルダ 削除済み項目 : C:\ProgramData\WindowsMangerProtect
フォルダ 削除済み項目 : C:\ProgramData\IHProtectUpDate
フォルダ 削除済み項目 : C:\Program Files (x86)\AnyProtectEx
フォルダ 削除済み項目 : C:\Program Files (x86)\globalUpdate
フォルダ 削除済み項目 : C:\Program Files (x86)\predm
フォルダ 削除済み項目 : C:\Program Files (x86)\Salus
フォルダ 削除済み項目 : C:\Program Files (x86)\XTab
フォルダ 削除済み項目 : C:\Program Files (x86)\ver7BlockAndSurf
フォルダ 削除済み項目 : C:\Program Files (x86)\ver6CheckMeUp
フォルダ 削除済み項目 : C:\Users\Nobu\AppData\Local\Temp\Wild West
フォルダ 削除済み項目 : C:\Users\Nobu\SupTab
フォルダ 削除済み項目 : C:\Users\Nobu\AppData\Local\globalUpdate
フォルダ 削除済み項目 : C:\Users\Nobu\AppData\Local\SmartWeb
フォルダ 削除済み項目 : C:\Users\Nobu\AppData\LocalLow\SmartWeb
フォルダ 削除済み項目 : C:\Users\Nobu\AppData\Roaming\AnyProtectEx
フォルダ 削除済み項目 : C:\Users\Nobu\AppData\Roaming\baidu
フォルダ 削除済み項目 : C:\Users\Nobu\AppData\Roaming\Systweak
ファイル 削除済み項目 : C:\WINDOWS\patsearch.bin
ファイル 削除済み項目 : C:\Users\Nobu\AppData\Local\Temp\Uninstall.exe
ファイル 削除済み項目 : C:\WINDOWS\System32\roboot64.exe
ファイル 削除済み項目 : C:\Users\Nobu\Desktop\Continue Live Installation.lnk

***** [ スケジュールタスク ] *****

タスク 削除済み項目 : SmartWeb Upgrade Trigger Task

***** [ ショートカット ] *****

ショートカット 駆除済み項目 : C:\Users\Public\Desktop\ワントゥワンウェア.lnk
ショートカット 駆除済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EAST\デ辞蔵 PC 2.0.lnk
ショートカット 駆除済み項目 : C:\Users\Nobu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
ショートカット 駆除済み項目 : C:\Users\Nobu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk

***** [ レジストリ ] *****

キー 削除済み項目 : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
キー 削除済み項目 : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
値 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SmartWeb]
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{F343045E-E20A-46E1-82D8-9962C43EFC9E}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
データ 復元済み項目 : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2A5A85FA-F03E-4444-9F0D-FBCA599F8D17}
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : HKCU\Software\AnyProtect
キー 削除済み項目 : HKCU\Software\APN PIP
キー 削除済み項目 : HKCU\Software\GlobalUpdate
キー 削除済み項目 : HKCU\Software\HomeTab
キー 削除済み項目 : HKCU\Software\Popajar
キー 削除済み項目 : HKCU\Software\simplytech
キー 削除済み項目 : HKCU\Software\SmileysWeLove
キー 削除済み項目 : HKCU\Software\systweak
キー 削除済み項目 : HKCU\Software\Baidu
キー 削除済み項目 : HKCU\Software\TNT2
キー 削除済み項目 : HKCU\Software\WajIntEnhance
キー 削除済み項目 : HKCU\Software\SearchProtectWS
キー 削除済み項目 : HKCU\Software\Squeaky
キー 削除済み項目 : HKCU\Software\AppDataLow\Software\Crossrider
キー 削除済み項目 : HKCU\Software\AppDataLow\Software\SmartWeb
キー 削除済み項目 : HKCU\Software\AppDataLow\Software\TheBestDeals
キー 削除済み項目 : HKLM\SOFTWARE\AskPartnerNetwork
キー 削除済み項目 : HKLM\SOFTWARE\Conduit
キー 削除済み項目 : HKLM\SOFTWARE\GlobalUpdate
キー 削除済み項目 : HKLM\SOFTWARE\Iminent
キー 削除済み項目 : HKLM\SOFTWARE\SearchProtect
キー 削除済み項目 : HKLM\SOFTWARE\SupDp
キー 削除済み項目 : HKLM\SOFTWARE\SupTab
キー 削除済み項目 : HKLM\SOFTWARE\systweak
キー 削除済み項目 : HKLM\SOFTWARE\Tutorials
キー 削除済み項目 : HKLM\SOFTWARE\Salus
キー 削除済み項目 : HKLM\SOFTWARE\GAMESDESKTOP
キー 削除済み項目 : HKLM\SOFTWARE\IHProtect
キー 削除済み項目 : HKLM\SOFTWARE\WajIntEnhance
キー 削除済み項目 : HKLM\SOFTWARE\QuickRef_1.10.0.9
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IMBoosterARP
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IminentToolbar
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Salus
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WajIntEnhance
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Vosteran.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\hao123.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\jp.hao123.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\mystartsearch.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.mystartsearch.com

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416

設定 復元済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
設定 復元済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[S0].txt - [8724 bytes] - [16/03/2015 19:56:40]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8783 bytes] ##########
9:オスカル :

2015/03/19 (Thu) 14:41:22

# AdwCleaner v4.112 - ログファイルの作成日 16/03/2015 作成時間 20:24:45
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : ssnfd_1_10_0_5

***** [ ファイル / フォルダ ] *****


***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****


***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [855 bytes] - [16/03/2015 20:24:45]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [913 bytes] ##########
10:オスカル :

2015/03/19 (Thu) 14:42:03

# AdwCleaner v4.112 - ログファイルの作成日 16/03/2015 作成時間 21:53:29
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

サービス 削除済み項目 : ssnfd_1_10_0_5

***** [ ファイル / フォルダ ] *****


***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****


***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [968 bytes] - [16/03/2015 21:53:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1026 bytes] ##########
11:オスカル :

2015/03/19 (Thu) 14:43:05

# AdwCleaner v4.112 - ログファイルの作成日 17/03/2015 作成時間 00:12:16
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : ssnfd_1_10_0_5

***** [ ファイル / フォルダ ] *****


***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****


***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[R3].txt - [1166 bytes] - [17/03/2015 00:01:20]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]
AdwCleaner[S3].txt - [1090 bytes] - [17/03/2015 00:12:16]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1149 bytes] ##########
12:オスカル :

2015/03/19 (Thu) 14:43:55

# AdwCleaner v4.112 - ログファイルの作成日 17/03/2015 作成時間 08:49:45
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : ssnfd_1_10_0_5

***** [ ファイル / フォルダ ] *****

ファイル 削除済み項目 : C:\Users\Nobu\Desktop\Continue Live Installation.lnk

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[R3].txt - [1166 bytes] - [17/03/2015 00:01:20]
AdwCleaner[R4].txt - [1451 bytes] - [17/03/2015 08:46:00]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]
AdwCleaner[S3].txt - [1229 bytes] - [17/03/2015 00:12:16]
AdwCleaner[S4].txt - [1374 bytes] - [17/03/2015 08:49:45]

########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [1433 bytes] ##########
13:オスカル :

2015/03/19 (Thu) 14:45:02

# AdwCleaner v4.112 - ログファイルの作成日 18/03/2015 作成時間 20:18:45
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : ssnfd_1_10_0_5

***** [ ファイル / フォルダ ] *****

ファイル 削除済み項目 : C:\Users\Nobu\Desktop\Continue Live Installation.lnk

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****


***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[R3].txt - [1166 bytes] - [17/03/2015 00:01:20]
AdwCleaner[R4].txt - [1451 bytes] - [17/03/2015 08:46:00]
AdwCleaner[R5].txt - [1481 bytes] - [18/03/2015 20:17:13]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]
AdwCleaner[S3].txt - [1229 bytes] - [17/03/2015 00:12:16]
AdwCleaner[S4].txt - [1513 bytes] - [17/03/2015 08:49:45]
AdwCleaner[S5].txt - [1404 bytes] - [18/03/2015 20:18:45]

########## EOF - C:\AdwCleaner\AdwCleaner[S5].txt - [1463 bytes] ##########
14:オスカル :

2015/03/19 (Thu) 14:45:42

# AdwCleaner v4.112 - ログファイルの作成日 18/03/2015 作成時間 22:36:51
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-05.1 [ローカル]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****


***** [ ファイル / フォルダ ] *****

ファイル 削除済み項目 : C:\Users\Nobu\Desktop\Continue Live Installation.lnk

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
キー 削除済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[R3].txt - [1166 bytes] - [17/03/2015 00:01:20]
AdwCleaner[R4].txt - [1451 bytes] - [17/03/2015 08:46:00]
AdwCleaner[R5].txt - [1481 bytes] - [18/03/2015 20:17:13]
AdwCleaner[R6].txt - [1789 bytes] - [18/03/2015 22:34:41]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]
AdwCleaner[S3].txt - [1229 bytes] - [17/03/2015 00:12:16]
AdwCleaner[S4].txt - [1513 bytes] - [17/03/2015 08:49:45]
AdwCleaner[S5].txt - [1543 bytes] - [18/03/2015 20:18:45]
AdwCleaner[S6].txt - [1708 bytes] - [18/03/2015 22:36:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [1767 bytes] ##########
15:オスカル :

2015/03/19 (Thu) 14:46:21

# AdwCleaner v4.112 - ログファイルの作成日 19/03/2015 作成時間 11:47:46
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-15.1 [サーバー]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : Nobu - HOME-PC
# 実行場所 : C:\Users\Nobu\Desktop\adwcleaner_4.112\adwcleaner_4.112.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : ssnfd_1_10_0_5

***** [ ファイル / フォルダ ] *****

ファイル 削除済み項目 : C:\Users\Nobu\Desktop\Continue Live Installation.lnk

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [10855 bytes] - [16/03/2015 19:55:12]
AdwCleaner[R1].txt - [931 bytes] - [16/03/2015 20:23:25]
AdwCleaner[R2].txt - [1047 bytes] - [16/03/2015 21:43:24]
AdwCleaner[R3].txt - [1166 bytes] - [17/03/2015 00:01:20]
AdwCleaner[R4].txt - [1451 bytes] - [17/03/2015 08:46:00]
AdwCleaner[R5].txt - [1481 bytes] - [18/03/2015 20:17:13]
AdwCleaner[R6].txt - [1789 bytes] - [18/03/2015 22:34:41]
AdwCleaner[R7].txt - [1922 bytes] - [19/03/2015 11:45:46]
AdwCleaner[S0].txt - [8883 bytes] - [16/03/2015 19:56:40]
AdwCleaner[S1].txt - [992 bytes] - [16/03/2015 20:24:45]
AdwCleaner[S2].txt - [1106 bytes] - [16/03/2015 21:53:29]
AdwCleaner[S3].txt - [1229 bytes] - [17/03/2015 00:12:16]
AdwCleaner[S4].txt - [1513 bytes] - [17/03/2015 08:49:45]
AdwCleaner[S5].txt - [1543 bytes] - [18/03/2015 20:18:45]
AdwCleaner[S6].txt - [1847 bytes] - [18/03/2015 22:36:51]
AdwCleaner[S7].txt - [1845 bytes] - [19/03/2015 11:47:46]

########## EOF - C:\AdwCleaner\AdwCleaner[S7].txt - [1904 bytes] ##########
16:オスカル :

2015/03/19 (Thu) 14:48:57

OTL logfile created on: 2015/03/19 14:22:19 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Nobu\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17690)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.88 Gb Total Physical Memory | 5.73 Gb Available Physical Memory | 72.72% Memory free
9.13 Gb Paging File | 6.91 Gb Available in Paging File | 75.65% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 846.68 Gb Total Space | 754.21 Gb Free Space | 89.08% Space Free | Partition Type: NTFS
Drive D: | 65.19 Gb Total Space | 65.09 Gb Free Space | 99.85% Space Free | Partition Type: NTFS

Computer Name: HOME-PC | User Name: Nobu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/03/19 14:08:06 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Nobu\Desktop\OTL.exe
PRC - [2015/03/16 13:47:38 | 000,170,496 | ---- | M] () -- C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533\jnsb94FC.tmp
PRC - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012/10/31 09:16:32 | 000,495,784 | ---- | M] (NEC Personal Computers,Ltd.) -- C:\ProgramData\SmartUpdate\SUMAIN\SmartUpdate.exe
PRC - [2012/10/24 13:16:42 | 000,250,384 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
PRC - [2012/10/19 04:02:00 | 000,023,696 | ---- | M] () -- C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
PRC - [2012/10/15 19:43:08 | 000,078,352 | ---- | M] (cyberlink) -- C:\Program Files (x86)\CyberLink\Shared files\brs.exe
PRC - [2012/10/11 09:00:58 | 000,116,144 | ---- | M] (NEC Personal Computers, Ltd.) -- C:\Program Files (x86)\NEC\SmartVision\SVAdmin.exe
PRC - [2012/09/06 14:09:38 | 000,061,440 | ---- | M] (Chicony) -- C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
PRC - [2012/09/06 04:50:40 | 001,124,288 | ---- | M] (Motorola Solutions, Inc.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
PRC - [2012/08/27 08:45:56 | 001,112,000 | ---- | M] (Motorola Solutions, Inc.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
PRC - [2012/08/16 14:23:36 | 000,055,968 | ---- | M] (NEC Personal Computers, Ltd.) -- C:\Program Files (x86)\NEC\HomeLinkManager\HubDriverDriveManager.exe
PRC - [2012/07/23 15:22:20 | 001,348,096 | ---- | M] (CHICONY) -- C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
PRC - [2012/07/17 17:10:32 | 000,364,416 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2012/07/17 17:10:30 | 000,276,864 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2012/07/17 17:10:16 | 000,165,760 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2012/07/11 20:41:44 | 000,094,088 | ---- | M] (EAST) -- C:\Program Files (x86)\East\DejizoPC\DejizoDicSearch.exe
PRC - [2012/06/07 20:12:44 | 000,097,208 | ---- | M] (NEC Personal Computers, Ltd.) -- c:\Windows\SysWOW64\NTMETER.exe
PRC - [2011/08/02 20:23:08 | 000,050,736 | ---- | M] (DigiOn, Inc.) -- C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCServicecControl.exe
PRC - [2011/03/30 14:01:10 | 000,087,336 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
PRC - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2009/08/20 11:52:12 | 000,132,416 | ---- | M] (NEC Corporation, NEC Personal Products, Ltd.) -- C:\Program Files (x86)\NEC\SmartVision\SVMsgMng.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2015/01/26 15:23:49 | 000,228,864 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Foundation\16c3eb7650767d95d002c998d0c73eb5\Windows.Foundation.ni.dll
MOD - [2015/01/26 15:23:49 | 000,008,704 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtbff93e24#\5ac014f734f4e1c3627201ed4eb563d2\System.Runtime.InteropServices.WindowsRuntime.ni.dll
MOD - [2015/01/26 15:23:48 | 000,960,000 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.UI\8ddd8ad15fe3fb05a871ef0115fb84e2\Windows.UI.ni.dll
MOD - [2015/01/26 15:23:48 | 000,018,944 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime\6dd333c4d9129ba8ae919e55de4b63e5\System.Runtime.ni.dll
MOD - [2015/01/22 23:17:03 | 007,787,008 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\9a349fb029581f4752d2c6cfcfeab816\System.Xml.ni.dll
MOD - [2015/01/22 23:16:58 | 012,895,232 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\a4d2243df4af8ab65ff74d436d449789\System.Windows.Forms.ni.dll
MOD - [2015/01/22 23:16:37 | 001,639,936 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Drawing\d91798a9a9fcb450351fe8e49026a69f\System.Drawing.ni.dll
MOD - [2015/01/22 23:16:37 | 001,169,920 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\fadd99ca6318632b3f3d4f31eb91db7a\System.Management.ni.dll
MOD - [2015/01/22 23:16:31 | 000,967,680 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\b5b80f1284dfa1b883da48ed58ecbc47\System.Configuration.ni.dll
MOD - [2015/01/22 23:16:10 | 010,069,504 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\1a6b5095c4416a37f9ca4cf4436d1311\System.ni.dll
MOD - [2014/04/16 08:34:56 | 017,223,344 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\d03a3ddcd6a395878751c5e90fa16915\mscorlib.ni.dll
MOD - [2012/07/23 14:28:10 | 000,086,016 | ---- | M] () -- C:\Program Files (x86)\MouseSideScroll\fsHid.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/02/10 03:55:42 | 002,714,800 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc)
SRV:[b]64bit:[/b] - [2015/02/04 08:58:28 | 000,366,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc)
SRV:[b]64bit:[/b] - [2015/02/04 08:58:28 | 000,023,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2015/01/03 16:56:27 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/12/06 10:35:00 | 000,229,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2014/10/29 12:59:51 | 003,460,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:[b]64bit:[/b] - [2014/10/29 12:50:11 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:19 | 000,026,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:03 | 000,041,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:[b]64bit:[/b] - [2014/10/29 11:34:51 | 000,067,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:[b]64bit:[/b] - [2014/10/29 11:33:55 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:29:22 | 000,121,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:57:05 | 000,324,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthHFSrv.dll -- (BthHFSrv)
SRV:[b]64bit:[/b] - [2014/10/29 10:48:36 | 000,780,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:[b]64bit:[/b] - [2014/10/29 10:48:20 | 000,166,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
SRV:[b]64bit:[/b] - [2014/10/29 10:27:21 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:21 | 000,838,656 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:02 | 000,294,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:37 | 000,131,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:40 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2014/10/29 10:20:03 | 000,262,656 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:20 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/10/29 10:16:17 | 000,154,112 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
SRV:[b]64bit:[/b] - [2014/10/29 10:13:24 | 000,374,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:13:02 | 000,260,608 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:36 | 000,407,040 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:22 | 000,270,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:[b]64bit:[/b] - [2014/10/29 10:11:10 | 001,639,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:09:48 | 000,521,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GeofenceMonitorService.dll -- (lfsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:05:09 | 000,206,848 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:57:18 | 000,074,752 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:[b]64bit:[/b] - [2014/10/29 09:48:52 | 000,562,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
SRV:[b]64bit:[/b] - [2014/10/29 09:46:48 | 001,348,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:35:51 | 001,668,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
SRV:[b]64bit:[/b] - [2014/10/01 19:54:24 | 000,319,376 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService1.0.0.0)
SRV:[b]64bit:[/b] - [2014/09/04 04:09:02 | 000,603,424 | ---- | M] (McAfee, Inc.) [On_Demand | Running] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV:[b]64bit:[/b] - [2014/08/20 08:16:12 | 001,041,192 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe -- (mfecore)
SRV:[b]64bit:[/b] - [2014/06/20 10:30:38 | 000,189,912 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Windows\SysNative\mfevtps.exe -- (mfevtp)
SRV:[b]64bit:[/b] - [2014/06/20 10:23:12 | 000,219,752 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:[b]64bit:[/b] - [2014/04/25 18:34:42 | 000,178,528 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MSC\McAPExe.exe -- (McAPExe)
SRV:[b]64bit:[/b] - [2014/01/08 11:53:32 | 003,674,864 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe -- (ZeroConfigService)
SRV:[b]64bit:[/b] - [2014/01/08 11:53:06 | 000,284,912 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV:[b]64bit:[/b] - [2014/01/08 11:52:50 | 000,631,024 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:[b]64bit:[/b] - [2014/01/08 11:52:22 | 000,154,864 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:[b]64bit:[/b] - [2013/07/30 11:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (MSK80Service)
SRV:[b]64bit:[/b] - [2013/07/30 11:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McProxy)
SRV:[b]64bit:[/b] - [2013/07/30 11:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (mcpltsvc)
SRV:[b]64bit:[/b] - [2013/07/30 11:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:[b]64bit:[/b] - [2013/07/30 11:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:[b]64bit:[/b] - [2013/07/30 11:45:02 | 000,328,928 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (HomeNetSvc)
SRV:[b]64bit:[/b] - [2012/11/26 17:54:08 | 000,070,080 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- C:\Program Files\NEC\AtrioSide\AS_ContentsDL.exe -- (AS ContentsDL)
SRV:[b]64bit:[/b] - [2012/11/13 08:25:42 | 000,755,240 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe -- (AMPPALR3)
SRV:[b]64bit:[/b] - [2012/10/11 09:08:32 | 000,110,512 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- C:\Program Files\NEC\SmartVision\SVAdmin.exe -- (SVAdminService64)
SRV:[b]64bit:[/b] - [2012/10/09 11:36:42 | 000,280,496 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- C:\Program Files\EcoViewer\ecomonsv.exe -- (ecomonsv)
SRV:[b]64bit:[/b] - [2012/10/05 10:44:18 | 000,237,496 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- C:\Program Files\NECBoot\NECBTSVC.exe -- (NECBT SERVICE)
SRV:[b]64bit:[/b] - [2012/10/05 10:04:54 | 000,489,912 | ---- | M] (NEC Personal Computers, Ltd.) [On_Demand | Running] -- C:\Program Files\NEC\HomeLinkManager\HubDriver.exe -- (HubDriver)
SRV:[b]64bit:[/b] - [2012/08/28 14:17:26 | 000,191,416 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- C:\Program Files\PeakShiftTool\PeakShiftSvc.exe -- (PeakShiftSvc)
SRV:[b]64bit:[/b] - [2012/08/15 14:09:30 | 000,135,984 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe -- (BTHSSecurityMgr)
SRV:[b]64bit:[/b] - [2012/04/20 14:16:12 | 000,635,104 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2011/12/28 14:24:38 | 000,055,184 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- C:\Program Files\NECWSET\WSET_Info.exe -- (WSET_Info_Service)
SRV - [2015/03/16 13:47:38 | 000,170,496 | ---- | M] () [Auto | Running] -- C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533\jnsb94FC.tmp -- (liqewowi)
SRV - [2015/03/11 15:48:54 | 000,154,856 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe -- (McAfee SiteAdvisor Service)
SRV - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/10/29 12:50:11 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2014/10/29 10:51:55 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2014/10/29 10:04:45 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
SRV - [2014/10/29 09:53:11 | 000,367,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GeofenceMonitorService.dll -- (lfsvc)
SRV - [2014/10/01 19:54:28 | 000,281,488 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2013/09/09 15:32:42 | 000,050,056 | ---- | M] (DigiOn, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCService.exe -- (DiXiM Player SDK Service)
SRV - [2012/10/19 04:02:00 | 000,023,696 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe -- (BOT4Service)
SRV - [2012/10/15 19:43:10 | 000,243,728 | ---- | M] (CyberLink) [Auto | Stopped] -- C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe -- (CLKMSVC10_38F51D56)
SRV - [2012/10/11 09:00:58 | 000,116,144 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- C:\Program Files (x86)\NEC\SmartVision\SVAdmin.exe -- (SVAdminService)
SRV - [2012/09/06 04:50:40 | 001,124,288 | ---- | M] (Motorola Solutions, Inc.) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe -- (Bluetooth OBEX Service)
SRV - [2012/08/27 08:45:56 | 001,112,000 | ---- | M] (Motorola Solutions, Inc.) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe -- (Bluetooth Device Monitor)
SRV - [2012/07/17 17:10:32 | 000,364,416 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012/07/17 17:10:30 | 000,276,864 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012/07/17 17:10:16 | 000,165,760 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2012/07/11 20:41:44 | 000,094,088 | ---- | M] (EAST) [Auto | Running] -- C:\Program Files (x86)\East\DejizoPC\DejizoDicSearch.exe -- (DejizoDicSearch)
SRV - [2012/06/07 20:12:44 | 000,097,208 | ---- | M] (NEC Personal Computers, Ltd.) [Auto | Running] -- c:\Windows\SysWOW64\NTMETER.exe -- (NT Meter)
SRV - [2011/08/02 20:23:08 | 000,050,736 | ---- | M] (DigiOn, Inc.) [Auto | Running] -- C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCServicecControl.exe -- (DiXiM Player Service Controller)
SRV - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2009/08/20 11:52:12 | 000,132,416 | ---- | M] (NEC Corporation, NEC Personal Products, Ltd.) [Auto | Running] -- C:\Program Files (x86)\NEC\SmartVision\SVMsgMng.exe -- (SVMsgMngService)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/03/15 14:11:52 | 000,080,264 | ---- | M] (NetFilterSDK.com) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwiynzm4ndy1yjz.sys -- (mwiynzm4ndy1yjz)
DRV:[b]64bit:[/b] - [2015/02/04 08:58:33 | 000,264,000 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter)
DRV:[b]64bit:[/b] - [2015/02/04 08:58:33 | 000,114,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv)
DRV:[b]64bit:[/b] - [2015/02/04 08:58:04 | 000,044,024 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot)
DRV:[b]64bit:[/b] - [2015/01/03 16:57:55 | 000,238,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2015/01/03 16:57:55 | 000,086,336 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
DRV:[b]64bit:[/b] - [2015/01/03 16:57:55 | 000,039,744 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
DRV:[b]64bit:[/b] - [2014/12/12 09:51:20 | 000,075,776 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
DRV:[b]64bit:[/b] - [2014/10/29 12:59:47 | 000,415,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
DRV:[b]64bit:[/b] - [2014/10/29 12:59:12 | 000,136,512 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
DRV:[b]64bit:[/b] - [2014/10/29 12:57:42 | 000,054,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr)
DRV:[b]64bit:[/b] - [2014/10/29 12:56:04 | 000,027,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:43 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:41 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:09 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc63.sys -- (netvsc)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:54 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:39 | 000,066,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:16 | 000,103,424 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
DRV:[b]64bit:[/b] - [2014/10/15 17:32:36 | 000,921,920 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refs.sys -- (ReFS)
DRV:[b]64bit:[/b] - [2014/10/08 18:24:09 | 000,467,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
DRV:[b]64bit:[/b] - [2014/10/07 15:54:45 | 000,324,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
DRV:[b]64bit:[/b] - [2014/10/07 15:54:45 | 000,189,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UCX01000.SYS -- (UCX01000)
DRV:[b]64bit:[/b] - [2014/10/07 15:44:39 | 000,069,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
DRV:[b]64bit:[/b] - [2014/10/01 19:54:16 | 003,828,152 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2014/09/24 16:27:11 | 000,157,016 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\WINDOWS\SysNative\drivers\wof.sys -- (Wof)
DRV:[b]64bit:[/b] - [2014/09/24 16:27:06 | 000,376,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
DRV:[b]64bit:[/b] - [2014/09/24 15:58:01 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:48 | 000,175,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:47 | 000,226,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthLEEnum.sys -- (BthLEEnum)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:47 | 000,079,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:47 | 000,057,176 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:47 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
DRV:[b]64bit:[/b] - [2014/09/24 15:29:18 | 000,037,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:[b]64bit:[/b] - [2014/08/20 08:06:14 | 000,096,592 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfencrk.sys -- (mfencrk)
DRV:[b]64bit:[/b] - [2014/08/20 08:05:28 | 000,445,512 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfencbdc.sys -- (mfencbdc)
DRV:[b]64bit:[/b] - [2014/08/15 23:35:00 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2014/08/15 09:36:55 | 000,146,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:[b]64bit:[/b] - [2014/08/02 05:18:33 | 000,038,296 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:[b]64bit:[/b] - [2014/08/02 05:18:33 | 000,027,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:[b]64bit:[/b] - [2014/06/20 10:38:22 | 000,072,128 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:[b]64bit:[/b] - [2014/06/20 10:31:06 | 000,348,552 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:[b]64bit:[/b] - [2014/06/20 10:26:02 | 000,786,296 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:[b]64bit:[/b] - [2014/06/20 10:23:40 | 000,523,792 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:[b]64bit:[/b] - [2014/06/20 10:21:48 | 000,313,544 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:[b]64bit:[/b] - [2014/06/20 10:20:54 | 000,181,704 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeapfk.sys -- (mfeapfk)
DRV:[b]64bit:[/b] - [2014/06/20 10:09:34 | 000,070,600 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mfeelamk.sys -- (mfeelamk)
DRV:[b]64bit:[/b] - [2014/04/17 23:03:44 | 003,349,984 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwew00.sys -- (NETwNe64)
DRV:[b]64bit:[/b] - [2013/09/23 13:49:22 | 000,197,704 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HipShieldK.sys -- (HipShieldK)
DRV:[b]64bit:[/b] - [2013/08/22 22:25:40 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
DRV:[b]64bit:[/b] - [2013/08/22 22:25:40 | 000,030,048 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\WINDOWS\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2013/08/22 21:50:19 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
DRV:[b]64bit:[/b] - [2013/08/22 21:49:54 | 000,079,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
DRV:[b]64bit:[/b] - [2013/08/22 21:49:33 | 000,159,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:49 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:48 | 000,041,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 003,357,024 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,093,536 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:44 | 000,081,760 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3.sys -- (LSI_SAS3)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,782,176 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,108,896 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,079,200 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,114,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,082,784 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,025,952 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:34 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:33 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:32 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,107,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,072,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
DRV:[b]64bit:[/b] - [2013/08/22 21:39:15 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
DRV:[b]64bit:[/b] - [2013/08/22 21:36:12 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:31 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:58 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:48 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:39 | 000,036,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:26 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:23 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:28 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:28 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:14 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:[b]64bit:[/b] - [2013/08/22 20:36:25 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
DRV:[b]64bit:[/b] - [2013/08/22 17:46:33 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fxppm.sys -- (FxPPM)
DRV:[b]64bit:[/b] - [2013/08/13 08:25:46 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
DRV:[b]64bit:[/b] - [2013/08/10 09:39:30 | 000,651,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV)
DRV:[b]64bit:[/b] - [2013/07/31 03:47:35 | 000,024,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
DRV:[b]64bit:[/b] - [2013/07/26 04:05:39 | 000,099,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
DRV:[b]64bit:[/b] - [2013/06/18 23:46:17 | 000,591,360 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt630x64.sys -- (RTL8168)
DRV:[b]64bit:[/b] - [2012/12/11 09:30:02 | 000,652,344 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
DRV:[b]64bit:[/b] - [2012/11/29 15:27:34 | 000,188,896 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\xHCIPort.sys -- (XHCIPort)
DRV:[b]64bit:[/b] - [2012/11/29 15:27:34 | 000,047,072 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usb3Hub.sys -- (usb3Hub)
DRV:[b]64bit:[/b] - [2012/11/13 08:22:16 | 000,156,160 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
DRV:[b]64bit:[/b] - [2012/10/24 18:24:54 | 000,091,976 | ---- | M] (NEC Personal Computers, Ltd.) [File_System | Disabled | Running] -- C:\Windows\SysNative\drivers\flyfs.sys -- (flyfs)
DRV:[b]64bit:[/b] - [2012/08/29 08:36:54 | 000,857,472 | ---- | M] (Motorola Solutions, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btmhsf.sys -- (btmhsf)
DRV:[b]64bit:[/b] - [2012/08/24 15:35:02 | 000,019,456 | ---- | M] (NEC Personal Computers, Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RadioSwitchHID.sys -- (RadioSwitchHID)
DRV:[b]64bit:[/b] - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/08/06 11:07:08 | 000,068,136 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iBtFltCoex.sys -- (iBtFltCoex)
DRV:[b]64bit:[/b] - [2012/07/13 18:02:52 | 000,384,888 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Apfiltr.sys -- (ApfiltrService)
DRV:[b]64bit:[/b] - [2012/07/02 15:16:02 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2012/06/27 15:37:52 | 000,341,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:[b]64bit:[/b] - [2012/06/22 03:01:00 | 000,056,336 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2012/06/20 01:00:00 | 000,028,304 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\Sahdad64.sys -- (Sahdad64)
DRV:[b]64bit:[/b] - [2012/06/20 01:00:00 | 000,027,792 | ---- | M] (Corel Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SaibVdAd64.sys -- (SaibVdAd64)
DRV:[b]64bit:[/b] - [2012/06/20 01:00:00 | 000,020,112 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\Saibad64.sys -- (Saibad64)
DRV:[b]64bit:[/b] - [2012/06/19 06:40:50 | 000,342,528 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2012/06/02 21:25:29 | 000,009,728 | ---- | M] (NEC Personal Computers, Ltd.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\Ps2LedIF.sys -- (Ps2LedIF)
DRV:[b]64bit:[/b] - [2012/06/01 16:42:44 | 000,016,896 | ---- | M] (NEC Personal Computers, Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nececfil.sys -- (Nececfilter)
DRV:[b]64bit:[/b] - [2012/05/30 15:20:56 | 000,012,288 | ---- | M] (NEC Personal Computers, Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Ps2Led.sys -- (Ps2Led)
DRV:[b]64bit:[/b] - [2012/05/30 11:47:06 | 000,013,824 | ---- | M] (NEC Personal Computers, Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\necbatt.sys -- (necbatt)
DRV:[b]64bit:[/b] - [2011/08/22 19:31:02 | 000,020,480 | ---- | M] (NEC Personal Computers, Ltd.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mfkgtkey.sys -- (MFKGTKEY)
DRV:[b]64bit:[/b] - [2009/07/08 15:55:10 | 000,018,704 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\diximdd.sys -- (DiximDd)

[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALNJS
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALNJS
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\..\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3505.0912: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}: C:\Program Files (x86)\McAfee\SiteAdvisor [2015/03/16 13:49:17 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK [2015/02/15 12:31:46 | 000,000,000 | ---D | M]


O1 HOSTS File: ([2013/08/22 22:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:[b]64bit:[/b] - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll (McAfee, Inc.)
O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Adblock Plus for IE Browser Helper Object) - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Eyeo GmbH)
O2 - BHO: (McAfee SiteAdvisor BHO) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll (McAfee, Inc.)
O2 - BHO: (Adblock Plus for IE Browser Helper Object) - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll (Eyeo GmbH)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll (McAfee, Inc.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3 - HKLM\..\Toolbar: (McAfee SiteAdvisor Toolbar) - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll (McAfee, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [AtrioSide] C:\Program Files\NEC\AtrioSide\AtrioSide.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [AVDM] C:\Program Files\AVDm\AVDm.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll (Motorola Solutions, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [DispSw] C:\Program Files\DispSw\DispSw.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [HomeLinkManager] C:\Program Files\NEC\HomeLinkManager\DelayStarter.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\windows\system32\hkcmd.exe File not found
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxTray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [NECBatt] C:\Program Files\NECBatt\nbSched.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [NECBTBE] C:\Program Files\NECBoot\NECBTBE.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [NECBTPB] C:\Program Files\NECBoot\NECBTPB.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [NECMFK] C:\Program Files\NECMFK\necmfk.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [NPSpeed] C:\Program Files\NPSpeed\NPSpeed.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [PeakShiftTool] C:\Program Files\PeakShiftTool\PeakShiftNotifier.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\windows\system32\igfxpers.exe File not found
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [BDRegion] C:\Program Files (x86)\CyberLink\Shared files\brs.exe (cyberlink)
O4 - HKLM..\Run: [FuncSwitch] C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe (CHICONY)
O4 - HKLM..\Run: [HScrollFun] C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe (Chicony)
O4 - HKLM..\Run: [mcpltui_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc.)
O4 - HKLM..\Run: [MoviePhotoMenu] C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe (NEC Personal Computers, Ltd.)
O4 - HKLM..\Run: [RemoteControl10] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (CyberLink Corp.)
O4 - HKLM..\Run: [SmartUpdate] C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe (NEC Personal Computers,Ltd.)
O4 - HKLM..\Run: [UpdatePPShortCut] C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [YouCam Service] C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe (CyberLink Corp.)
O4 - HKU\S-1-5-21-2724061903-427220060-254295731-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O8:[b]64bit:[/b] - Extra context menu item: Bluetoothへの送信 - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm ()
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: Bluetoothへの送信 - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm ()
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\SysWow64\BDL.dll (BD Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\SysWow64\BDL.dll (BD Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\SysWow64\BDL.dll (BD Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\SysWow64\BDL.dll (BD Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\SysWow64\BDL.dll (BD Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab (DMM Downloader)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 220.152.38.201 220.152.38.233
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{15DB6319-123C-4087-A4C0-4934FB7A5726}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{78CAD97C-BC69-43EB-B9B9-9E7375A740B4}: DhcpNameServer = 220.152.38.201 220.152.38.233
O18:[b]64bit:[/b] - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll (McAfee, Inc.)
O18:[b]64bit:[/b] - Protocol\Handler\osf - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll (McAfee, Inc.)
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\dssrequest {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll (McAfee, Inc.)
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\msosb.dll (Microsoft Corporation)
O18 - Protocol\Handler\sacore {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll (McAfee, Inc.)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\WINDOWS\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/03/19 13:56:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\マカフィー
[2015/03/19 10:31:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2015/03/19 10:31:30 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbam.sys
[2015/03/19 10:31:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2015/03/19 10:03:30 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Roaming\Malwarebytes
[2015/03/19 10:03:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/03/18 20:48:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/03/18 20:48:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/03/18 20:48:17 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2015/03/18 20:48:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2015/03/18 20:48:08 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Local\Google
[2015/03/18 20:48:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2015/03/18 20:44:09 | 000,000,000 | ---D | C] -- C:\Users\Nobu\Desktop\悪代官の伏魔殿
[2015/03/16 19:54:21 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015/03/16 19:54:08 | 000,000,000 | ---D | C] -- C:\Users\Nobu\Desktop\adwcleaner_4.112
[2015/03/16 14:05:37 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Roaming\EAC31800-1426482337-B34A-88A6-E62895807533
[2015/03/16 13:52:48 | 000,319,392 | ---- | C] (BD Inc.) -- C:\WINDOWS\SysWow64\BDL.dll
[2015/03/16 13:47:12 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533
[2015/03/16 13:45:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\日本hao123
[2015/03/16 13:41:57 | 002,035,200 | ---- | C] (CinPlusV16.03) -- C:\Users\Nobu\AppData\Roaming\PPXV.exe
[2015/03/16 13:40:39 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Local\Opera Software
[2015/03/16 13:40:38 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Roaming\Opera Software
[2015/03/16 13:40:37 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Roaming\smileyswelove
[2015/03/16 13:40:30 | 000,000,000 | ---D | C] -- C:\Users\Nobu\Documents\Add-in Express
[2015/03/16 13:40:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera
[2015/03/16 13:39:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
[2015/03/16 13:39:20 | 000,000,000 | ---D | C] -- C:\Users\Nobu\Documents\vlc
[2015/03/15 14:11:52 | 000,080,264 | ---- | C] (NetFilterSDK.com) -- C:\WINDOWS\SysNative\drivers\mwiynzm4ndy1yjz.sys
[2015/03/11 06:11:11 | 000,792,032 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
[2015/03/11 06:11:11 | 000,178,144 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
[2015/03/11 04:48:49 | 000,723,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SHCore.dll
[2015/03/11 04:48:49 | 000,560,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SHCore.dll
[2015/03/11 04:48:37 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\calc.exe
[2015/03/11 04:48:36 | 000,816,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\calc.exe
[2015/03/11 04:48:32 | 000,264,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdFilter.sys
[2015/03/11 04:48:31 | 000,114,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdNisDrv.sys
[2015/03/11 04:48:31 | 000,044,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\WdBoot.sys
[2015/03/11 04:48:29 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winshfhc.dll
[2015/03/11 04:48:29 | 000,012,800 | ---- | C]
17:オスカル :

2015/03/19 (Thu) 14:52:47

OTLログその2

[2015/03/11 04:48:29 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winshfhc.dll
[2015/03/11 04:47:53 | 000,358,912 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysNative\atmfd.dll
[2015/03/11 04:47:53 | 000,301,056 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\atmfd.dll
[2015/03/11 04:47:53 | 000,044,032 | ---- | C] (Adobe Systems) -- C:\WINDOWS\SysNative\atmlib.dll
[2015/03/11 04:47:53 | 000,035,840 | ---- | C] (Adobe Systems) -- C:\WINDOWS\SysWow64\atmlib.dll
[2015/03/11 04:47:52 | 003,547,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
[2015/03/11 04:47:51 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
[2015/03/11 04:47:49 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ubpm.dll
[2015/03/11 04:47:48 | 000,347,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\photowiz.dll
[2015/03/11 04:47:48 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\photowiz.dll
[2015/03/11 04:47:29 | 007,472,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2015/03/11 04:47:29 | 001,733,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll
[2015/03/11 04:47:26 | 001,091,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localspl.dll
[2015/03/11 04:47:26 | 000,864,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2015/03/11 04:47:25 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StorageContextHandler.dll
[2015/03/11 04:47:25 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\StorageContextHandler.dll
[2015/03/11 04:47:24 | 003,097,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll
[2015/03/11 04:47:24 | 002,484,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll
[2015/03/11 04:47:22 | 002,773,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authui.dll
[2015/03/11 04:47:22 | 002,459,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authui.dll
[2015/03/11 04:47:20 | 000,971,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSShared.dll
[2015/03/11 04:47:19 | 000,811,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSShared.dll
[2015/03/11 04:47:19 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2015/03/11 04:47:19 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2015/03/11 04:47:04 | 002,257,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
[2015/03/11 04:47:04 | 001,943,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
[2015/03/11 04:47:00 | 004,298,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3DCompiler_47.dll
[2015/03/11 04:46:59 | 003,551,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3DCompiler_47.dll
[2015/03/11 04:46:59 | 001,488,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfc42u.dll
[2015/03/11 04:46:59 | 001,464,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfc42.dll
[2015/03/11 04:46:59 | 001,230,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfc42u.dll
[2015/03/11 04:46:59 | 001,204,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfc42.dll
[2015/03/11 04:46:59 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\atlthunk.dll
[2015/03/11 04:46:58 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eappcfg.dll
[2015/03/11 04:46:58 | 000,339,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapphost.dll
[2015/03/11 04:46:58 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapp3hst.dll
[2015/03/11 04:46:58 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eappcfg.dll
[2015/03/11 04:46:58 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eapphost.dll
[2015/03/11 04:46:58 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eapp3hst.dll
[2015/03/11 04:46:58 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eappgnui.dll
[2015/03/11 04:46:58 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eappgnui.dll
[2015/03/11 04:46:52 | 006,035,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2015/03/11 04:46:47 | 002,865,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\actxprxy.dll
[2015/03/11 04:46:47 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2015/03/11 04:46:47 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2015/03/11 04:46:47 | 000,816,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript.dll
[2015/03/11 04:46:47 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9diag.dll
[2015/03/11 04:46:47 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msfeeds.dll
[2015/03/11 04:46:47 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieapfltr.dll
[2015/03/11 04:46:47 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieapfltr.dll
[2015/03/11 04:46:47 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript.dll
[2015/03/11 04:46:47 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2015/03/11 04:46:47 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxtrans.dll
[2015/03/11 04:46:47 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iepeers.dll
[2015/03/11 04:46:47 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iepeers.dll
[2015/03/11 04:46:47 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mshtmled.dll
[2015/03/11 04:46:47 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MshtmlDac.dll
[2015/03/11 04:46:47 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mshtmled.dll
[2015/03/11 04:46:47 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MshtmlDac.dll
[2015/03/11 04:46:42 | 001,763,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsCodecs.dll
[2015/03/11 04:46:40 | 002,501,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2015/03/11 04:46:40 | 002,207,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
[2015/03/11 04:46:40 | 001,090,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmCoreR.dll
[2015/03/11 04:46:40 | 000,402,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPhoto.dll
[2015/03/11 04:46:40 | 000,357,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPhoto.dll
[2015/03/11 04:46:40 | 000,046,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockScreenContentServer.exe
[2015/03/11 04:46:39 | 001,384,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctf.dll
[2015/03/11 04:46:39 | 000,791,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmCoreR.dll
[2015/03/05 03:39:38 | 004,840,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncEngine.dll
[2015/03/05 03:39:37 | 001,154,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SkyDrive.exe
[2015/03/05 03:39:37 | 000,733,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SkyDriveTelemetry.dll
[2015/03/05 03:39:36 | 000,291,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SkyDriveShell.dll
[2015/03/05 03:39:36 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SkyDriveShell.dll
[2015/03/05 03:39:36 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winbici.dll
[2015/03/05 03:39:36 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BulkOperationHost.exe
[2015/03/05 03:37:53 | 018,822,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2015/03/05 03:37:51 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msihnd.dll
[2015/03/05 03:37:51 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msihnd.dll
[2015/03/05 03:37:50 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\packager.dll
[2015/03/05 03:37:49 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\packager.dll
[2015/03/05 03:37:48 | 003,320,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msi.dll
[2015/03/05 03:37:48 | 000,116,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\consent.exe
[2015/03/05 03:37:47 | 000,186,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dpapisrv.dll
[2015/03/05 03:37:45 | 015,157,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2015/03/05 03:37:44 | 015,432,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmp.dll
[2015/03/05 03:37:35 | 013,318,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmp.dll
[2015/03/05 03:37:26 | 014,354,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
[2015/03/05 03:37:25 | 009,530,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Search.dll
[2015/03/05 03:37:24 | 012,749,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2015/03/05 03:37:24 | 003,460,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSService.dll
[2015/03/05 03:37:23 | 007,032,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2015/03/05 03:37:21 | 007,784,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Data.Pdf.dll
[2015/03/05 03:37:21 | 007,075,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\glcndFilter.dll
[2015/03/05 03:37:21 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\atlthunk.dll
[2015/03/05 03:37:19 | 006,386,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Search.dll
[2015/03/05 03:37:19 | 006,213,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2015/03/05 03:37:18 | 003,307,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msmpeg2vdec.dll
[2015/03/05 03:37:17 | 005,267,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\glcndFilter.dll
[2015/03/05 03:37:15 | 005,264,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Data.Pdf.dll
[2015/03/05 03:37:15 | 003,820,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcore.dll
[2015/03/05 03:37:15 | 000,360,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpclip.exe
[2015/03/05 03:37:15 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpinput.exe
[2015/03/05 03:37:14 | 004,709,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d2d1.dll
[2015/03/05 03:37:14 | 004,483,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbon.dll
[2015/03/05 03:37:14 | 002,890,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msmpeg2vdec.dll
[2015/03/05 03:37:13 | 002,334,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll
[2015/03/05 03:37:12 | 003,633,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tquery.dll
[2015/03/05 03:37:11 | 000,941,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsFilt.dll
[2015/03/05 03:37:10 | 004,690,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsrchvw.exe
[2015/03/05 03:37:10 | 002,554,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll
[2015/03/05 03:37:09 | 003,138,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVCORE.DLL
[2015/03/05 03:37:09 | 002,324,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll
[2015/03/05 03:37:08 | 004,418,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbgeng.dll
[2015/03/05 03:37:06 | 003,561,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbon.dll
[2015/03/05 03:37:05 | 002,896,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\esent.dll
[2015/03/05 03:37:05 | 001,919,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsPrint.dll
[2015/03/05 03:37:04 | 003,056,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsservices.dll
[2015/03/05 03:37:04 | 002,542,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\esent.dll
[2015/03/05 03:37:03 | 003,273,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdpcore.dll
[2015/03/05 03:37:03 | 003,109,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll
[2015/03/05 03:37:02 | 001,540,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\user32.dll
[2015/03/05 03:37:01 | 001,286,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSAudDecMFT.dll
[2015/03/05 03:37:00 | 002,464,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10warp.dll
[2015/03/05 03:36:59 | 002,749,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tquery.dll
[2015/03/05 03:36:59 | 001,922,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssrch.dll
[2015/03/05 03:36:58 | 003,118,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcMon.exe
[2015/03/05 03:36:58 | 002,174,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\combase.dll
[2015/03/05 03:36:57 | 003,256,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wpc.dll
[2015/03/05 03:36:57 | 002,706,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll
[2015/03/05 03:36:56 | 002,314,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d11.dll
[2015/03/05 03:36:55 | 002,229,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d9.dll
[2015/03/05 03:36:54 | 002,984,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbgeng.dll
[2015/03/05 03:36:53 | 002,745,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVDECOD.DLL
[2015/03/05 03:36:53 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rfxvmt.dll
[2015/03/05 03:36:52 | 002,924,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcndmgr.dll
[2015/03/05 03:36:51 | 002,941,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebSync.dll
[2015/03/05 03:36:50 | 001,999,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll
[2015/03/05 03:36:48 | 002,528,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVDECOD.DLL
[2015/03/05 03:36:48 | 001,660,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ole32.dll
[2015/03/05 03:36:47 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuwebv.dll
[2015/03/05 03:36:47 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuwebv.dll
[2015/03/05 03:36:47 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wudriver.dll
[2015/03/05 03:36:47 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wudriver.dll
[2015/03/05 03:36:47 | 000,055,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2015/03/05 03:36:47 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapp.exe
[2015/03/05 03:36:47 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapp.exe
[2015/03/05 03:36:46 | 001,714,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wucltux.dll
[2015/03/05 03:36:46 | 000,894,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll
[2015/03/05 03:36:46 | 000,723,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
[2015/03/05 03:36:46 | 000,407,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUSettingsProvider.dll
[2015/03/05 03:36:46 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuaext.dll
[2015/03/05 03:36:45 | 001,275,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchFolder.dll
[2015/03/05 03:36:44 | 001,564,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\combase.dll
[2015/03/05 03:36:43 | 002,487,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storagewmi.dll
[2015/03/05 03:36:43 | 001,518,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmde.dll
[2015/03/05 03:36:43 | 001,509,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpmde.dll
[2015/03/05 03:36:43 | 001,310,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpcrt4.dll
[2015/03/05 03:36:42 | 001,822,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dui70.dll
[2015/03/05 03:36:42 | 001,348,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2015/03/05 03:36:42 | 001,024,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSAudDecMFT.dll
[2015/03/05 03:36:41 | 002,072,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OpcServices.dll
[2015/03/05 03:36:41 | 001,668,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\workfolderssvc.dll
[2015/03/05 03:36:40 | 001,946,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3d11.dll
[2015/03/05 03:36:39 | 002,635,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertEnroll.dll
[2015/03/05 03:36:39 | 001,288,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetsrc.dll
[2015/03/05 03:36:38 | 001,639,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll
[2015/03/05 03:36:38 | 001,165,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfasfsrcsnk.dll
[2015/03/05 03:36:37 | 002,317,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertEnroll.dll
[2015/03/05 03:36:37 | 002,162,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SRH.dll
[2015/03/05 03:36:36 | 000,785,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\blackbox.dll
[2015/03/05 03:36:35 | 001,816,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\taskschd.dll
[2015/03/05 03:36:35 | 001,490,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
[2015/03/05 03:36:35 | 001,221,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll
[2015/03/05 03:36:34 | 001,725,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Immersive.dll
[2015/03/05 03:36:34 | 001,544,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Immersive.dll
[2015/03/05 03:36:34 | 001,461,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dui70.dll
[2015/03/05 03:36:33 | 002,469,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Wpc.dll
[2015/03/05 03:36:33 | 002,364,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcndmgr.dll
[2015/03/05 03:36:32 | 002,450,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVENCOD.DLL
[2015/03/05 03:36:32 | 002,447,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVENCOD.DLL
[2015/03/05 03:36:32 | 001,543,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webservices.dll
[2015/03/05 03:36:31 | 001,753,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
[2015/03/05 03:36:31 | 001,500,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\quartz.dll
[2015/03/05 03:36:30 | 001,321,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmde.dll
[2015/03/05 03:36:29 | 001,250,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll
[2015/03/05 03:36:28 | 001,482,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\storagewmi.dll
[2015/03/05 03:36:27 | 003,553,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsrchvw.exe
[2015/03/05 03:36:27 | 002,003,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmc.exe
[2015/03/05 03:36:26 | 001,697,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\quartz.dll
[2015/03/05 03:36:25 | 002,880,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpccpl.dll
[2015/03/05 03:36:25 | 001,317,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Streaming.dll
[2015/03/05 03:36:24 | 001,540,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagperf.dll
[2015/03/05 03:36:24 | 001,115,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetsrc.dll
[2015/03/05 03:36:24 | 001,028,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll
[2015/03/05 03:36:23 | 001,337,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.dll
[2015/03/05 03:36:23 | 001,064,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drmv2clt.dll
[2015/03/05 03:36:22 | 000,959,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfasfsrcsnk.dll
[2015/03/05 03:36:22 | 000,952,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmp4srcsnk.dll
[2015/03/05 03:36:21 | 001,705,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comsvcs.dll
[2015/03/05 03:36:21 | 001,502,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpssvcs.dll
[2015/03/05 03:36:20 | 002,104,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsservices.dll
[2015/03/05 03:36:20 | 001,080,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sbe.dll
[2015/03/05 03:36:20 | 000,988,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsrcsnk.dll
[2015/03/05 03:36:19 | 000,954,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.appcore.dll
[2015/03/05 03:36:19 | 000,618,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\blackbox.dll
[2015/03/05 03:36:18 | 001,178,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webservices.dll
[2015/03/05 03:36:17 | 001,812,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SRH.dll
[2015/03/05 03:36:17 | 001,289,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMNetMgr.dll
[2015/03/05 03:36:16 | 003,724,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSAT.exe
[2015/03/05 03:36:15 | 001,402,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OpcServices.dll
[2015/03/05 03:36:15 | 001,021,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIAutomationCore.dll
[2015/03/05 03:36:15 | 000,821,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmpeg2srcsnk.dll
[2015/03/05 03:36:14 | 001,843,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPDMC.exe
[2015/03/05 03:36:14 | 001,001,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MsSpellCheckingFacility.dll
[2015/03/05 03:36:14 | 000,857,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsrcsnk.dll
[2015/03/05 03:36:13 | 001,576,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\propsys.dll
[2015/03/05 03:36:13 | 001,385,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gdi32.dll
[2015/03/05 03:36:13 | 000,971,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqlceqp40.dll
[2015/03/05 03:36:13 | 000,747,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StructuredQuery.dll
[2015/03/05 03:36:12 | 000,850,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetcore.dll
[2015/03/05 03:36:12 | 000,785,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmp4srcsnk.dll
[2015/03/05 03:36:11 | 000,962,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfplat.dll
[2015/03/05 03:36:09 | 001,192,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uxtheme.dll
[2015/03/05 03:36:08 | 001,563,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmc.exe
[2015/03/05 03:36:08 | 001,133,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
[2015/03/05 03:36:08 | 000,890,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drmv2clt.dll
[2015/03/05 03:36:07 | 001,710,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtctm.dll
[2015/03/05 03:36:07 | 001,335,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mispace.dll
[2015/03/05 03:36:06 | 001,262,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsPrint.dll
[2015/03/05 03:36:06 | 001,248,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NaturalLanguage6.dll
[2015/03/05 03:36:06 | 001,056,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WebcamUi.dll
[2015/03/05 03:36:06 | 000,887,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
[2015/03/05 03:36:05 | 001,492,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbghelp.dll
[2015/03/05 03:36:05 | 001,102,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.dll
[2015/03/05 03:36:04 | 001,247,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.Http.dll
[2015/03/05 03:36:04 | 001,101,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdvidcrl.dll
[2015/03/05 03:36:03 | 001,344,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsvcs.dll
[2015/03/05 03:36:03 | 001,015,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.dll
[2015/03/05 03:36:02 | 001,478,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPDMC.exe
[2015/03/05 03:36:02 | 000,705,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmpeg2srcsnk.dll
[2015/03/05 03:36:01 | 001,636,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RacEngn.dll
[2015/03/05 03:36:01 | 000,843,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uDWM.dll
[2015/03/05 03:36:01 | 000,634,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll
[2015/03/05 03:36:00 | 000,829,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sbe.dll
[2015/03/05 03:36:00 | 000,780,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsm.dll
18:オスカル :

2015/03/19 (Thu) 14:55:03

OTLログその3

[2015/03/05 03:35:59 | 001,092,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdosys.dll
[2015/03/05 03:35:59 | 001,050,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMNetMgr.dll
[2015/03/05 03:35:59 | 000,801,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfplat.dll
[2015/03/05 03:35:58 | 001,210,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMADMOD.DLL
[2015/03/05 03:35:58 | 001,063,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mispace.dll
[2015/03/05 03:35:58 | 001,037,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSWorkspace.dll
[2015/03/05 03:35:58 | 000,700,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetcore.dll
[2015/03/05 03:35:57 | 000,801,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.dll
[2015/03/05 03:35:57 | 000,742,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqlceqp40.dll
[2015/03/05 03:35:57 | 000,580,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdrmdev.dll
[2015/03/05 03:35:56 | 001,246,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ogldrv.dll
[2015/03/05 03:35:56 | 000,105,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptsslp.dll
[2015/03/05 03:35:55 | 000,881,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\printfilterpipelinesvc.exe
[2015/03/05 03:35:55 | 000,841,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncCore.dll
[2015/03/05 03:35:55 | 000,603,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfds.dll
[2015/03/05 03:35:54 | 006,692,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspaint.exe
[2015/03/05 03:35:54 | 001,037,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMADMOD.DLL
[2015/03/05 03:35:54 | 000,724,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe
[2015/03/05 03:35:53 | 001,265,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RacEngn.dll
[2015/03/05 03:35:53 | 001,207,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbghelp.dll
[2015/03/05 03:35:53 | 000,685,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\riched20.dll
[2015/03/05 03:35:51 | 000,772,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmIndexer.dll
[2015/03/05 03:35:49 | 000,881,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WebcamUi.dll
[2015/03/05 03:35:49 | 000,734,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\evr.dll
[2015/03/05 03:35:49 | 000,717,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comdlg32.dll
[2015/03/05 03:35:49 | 000,551,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mf.dll
[2015/03/05 03:35:48 | 000,771,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbc32.dll
[2015/03/05 03:35:48 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msTextPrediction.dll
[2015/03/05 03:35:47 | 001,396,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartcardCredentialProvider.dll
[2015/03/05 03:35:47 | 000,658,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\duser.dll
[2015/03/05 03:35:47 | 000,626,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWAHost.exe
[2015/03/05 03:35:46 | 000,898,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CPFilters.dll
[2015/03/05 03:35:45 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSMPEG2ENC.DLL
[2015/03/05 03:35:44 | 000,848,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\taskschd.dll
[2015/03/05 03:35:44 | 000,740,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.OnlineId.dll
[2015/03/05 03:35:44 | 000,657,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsapi.dll
[2015/03/05 03:35:44 | 000,651,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSync.dll
[2015/03/05 03:35:43 | 000,713,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSync.dll
[2015/03/05 03:35:43 | 000,653,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncHost.exe
[2015/03/05 03:35:43 | 000,584,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\evr.dll
[2015/03/05 03:35:42 | 001,497,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RecoveryDrive.exe
[2015/03/05 03:35:41 | 001,436,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wdc.dll
[2015/03/05 03:35:41 | 001,096,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ogldrv.dll
[2015/03/05 03:35:40 | 001,950,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setupapi.dll
[2015/03/05 03:35:40 | 001,065,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3d8.dll
[2015/03/05 03:35:40 | 000,737,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapi.dll
[2015/03/05 03:35:39 | 000,955,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.dll
[2015/03/05 03:35:39 | 000,719,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceApi.dll
[2015/03/05 03:35:39 | 000,482,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdrmdev.dll
[2015/03/05 03:35:39 | 000,478,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mcupdate_GenuineIntel.dll
[2015/03/05 03:35:38 | 002,067,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpdshext.dll
[2015/03/05 03:35:38 | 000,873,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provcore.dll
[2015/03/05 03:35:37 | 006,465,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mspaint.exe
[2015/03/05 03:35:37 | 000,852,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PurchaseWindowsLicense.dll
[2015/03/05 03:35:37 | 000,670,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\qedit.dll
[2015/03/05 03:35:37 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
[2015/03/05 03:35:37 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WavDest.dll
[2015/03/05 03:35:36 | 001,323,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wdc.dll
[2015/03/05 03:35:36 | 001,008,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\reseteng.dll
[2015/03/05 03:35:36 | 000,643,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.appcore.dll
[2015/03/05 03:35:36 | 000,458,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdrmnet.dll
[2015/03/05 03:35:35 | 001,574,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vssapi.dll
[2015/03/05 03:35:35 | 001,103,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Taskmgr.exe
[2015/03/05 03:35:35 | 001,063,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinTypes.dll
[2015/03/05 03:35:35 | 000,870,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcprx.dll
[2015/03/05 03:35:35 | 000,833,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samsrv.dll
[2015/03/05 03:35:34 | 001,070,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSMPEG2ENC.DLL
[2015/03/05 03:35:34 | 001,060,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certutil.exe
[2015/03/05 03:35:34 | 000,854,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cdosys.dll
[2015/03/05 03:35:33 | 001,239,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Taskmgr.exe
[2015/03/05 03:35:33 | 000,925,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autoconv.exe
[2015/03/05 03:35:33 | 000,730,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clbcatq.dll
[2015/03/05 03:35:32 | 000,672,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbc32.dll
[2015/03/05 03:35:31 | 000,809,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TSWorkspace.dll
[2015/03/05 03:35:31 | 000,740,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10level9.dll
[2015/03/05 03:35:31 | 000,654,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.dll
[2015/03/05 03:35:31 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.dll
[2015/03/05 03:35:31 | 000,602,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmIndexer.dll
[2015/03/05 03:35:31 | 000,562,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppReadiness.dll
[2015/03/05 03:35:30 | 001,145,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perftrack.dll
[2015/03/05 03:35:30 | 000,858,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comuid.dll
[2015/03/05 03:35:29 | 000,838,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netlogon.dll
[2015/03/05 03:35:29 | 000,827,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Http.dll
[2015/03/05 03:35:29 | 000,609,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdrmsdk.dll
[2015/03/05 03:35:29 | 000,497,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll
[2015/03/05 03:35:28 | 000,899,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFx.dll
[2015/03/05 03:35:28 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MsSpellCheckingFacility.dll
[2015/03/05 03:35:28 | 000,654,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comuid.dll
[2015/03/05 03:35:28 | 000,606,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
[2015/03/05 03:35:28 | 000,484,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfds.dll
[2015/03/05 03:35:27 | 001,010,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMSPDMOD.DLL
[2015/03/05 03:35:27 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.SmartCards.dll
[2015/03/05 03:35:27 | 000,734,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSWB70804.dll
[2015/03/05 03:35:27 | 000,734,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSWB70404.dll
[2015/03/05 03:35:27 | 000,734,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSWB7001E.dll
[2015/03/05 03:35:27 | 000,734,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSWB70011.dll
[2015/03/05 03:35:27 | 000,702,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CPFilters.dll
[2015/03/05 03:35:27 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSync.dll
[2015/03/05 03:35:26 | 000,799,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqlsrv32.dll
[2015/03/05 03:35:26 | 000,524,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncHost.exe
[2015/03/05 03:35:26 | 000,444,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MMDevAPI.dll
[2015/03/05 03:35:25 | 000,982,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpssvcs.dll
[2015/03/05 03:35:25 | 000,914,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMADMOE.DLL
[2015/03/05 03:35:25 | 000,561,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\qedit.dll
[2015/03/05 03:35:24 | 000,887,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMSPDMOD.DLL
[2015/03/05 03:35:24 | 000,856,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdvidcrl.dll
[2015/03/05 03:35:24 | 000,688,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Bluetooth.dll
[2015/03/05 03:35:23 | 001,207,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\printui.dll
[2015/03/05 03:35:23 | 000,832,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\autoconv.exe
[2015/03/05 03:35:23 | 000,546,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqlcese40.dll
[2015/03/05 03:35:22 | 000,720,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcprx.dll
[2015/03/05 03:35:22 | 000,711,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqlsrv32.dll
[2015/03/05 03:35:22 | 000,591,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.Printing.dll
[2015/03/05 03:35:22 | 000,544,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxgi.dll
[2015/03/05 03:35:22 | 000,532,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EncDec.dll
[2015/03/05 03:35:22 | 000,409,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfreadwrite.dll
[2015/03/05 03:35:21 | 000,980,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imapi2fs.dll
[2015/03/05 03:35:21 | 000,591,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Connectivity.dll
[2015/03/05 03:35:21 | 000,557,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVSDECD.DLL
[2015/03/05 03:35:21 | 000,492,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.appcore.dll
[2015/03/05 03:35:20 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasapi32.dll
[2015/03/05 03:35:20 | 000,636,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFx02000.dll
[2015/03/05 03:35:20 | 000,405,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfreadwrite.dll
[2015/03/05 03:35:20 | 000,391,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdrmnet.dll
[2015/03/05 03:35:19 | 000,632,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psisdecd.dll
[2015/03/05 03:35:19 | 000,578,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinSync.dll
[2015/03/05 03:35:19 | 000,529,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
[2015/03/05 03:35:19 | 000,521,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GeofenceMonitorService.dll
[2015/03/05 03:35:19 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdrmsdk.dll
[2015/03/05 03:35:19 | 000,379,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcomp.dll
[2015/03/05 03:35:18 | 001,278,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usercpl.dll
[2015/03/05 03:35:18 | 001,085,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\printui.dll
[2015/03/05 03:35:18 | 000,783,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.dll
[2015/03/05 03:35:18 | 000,589,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Authentication.OnlineId.dll
[2015/03/05 03:35:18 | 000,557,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\untfs.dll
[2015/03/05 03:35:17 | 001,252,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werconcpl.dll
[2015/03/05 03:35:17 | 000,620,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsound.dll
[2015/03/05 03:35:16 | 002,764,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gameux.dll
[2015/03/05 03:35:16 | 001,038,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aclui.dll
[2015/03/05 03:35:16 | 000,784,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lpksetup.exe
[2015/03/05 03:35:16 | 000,608,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.dll
[2015/03/05 03:35:16 | 000,468,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsGdiConverter.dll
[2015/03/05 03:35:16 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vpnike.dll
[2015/03/05 03:35:16 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsRasterService.dll
[2015/03/05 03:35:15 | 000,652,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSCOMEX.dll
[2015/03/05 03:35:15 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hgcpl.dll
[2015/03/05 03:35:14 | 007,558,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NL7Data0011.dll
[2015/03/05 03:35:14 | 000,781,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidcli.dll
[2015/03/05 03:35:14 | 000,585,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintDialogs.dll
[2015/03/05 03:35:14 | 000,506,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\untfs.dll
[2015/03/05 03:35:13 | 001,197,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usercpl.dll
[2015/03/05 03:35:13 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\secproc.dll
[2015/03/05 03:35:13 | 000,389,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\secproc_isv.dll
[2015/03/05 03:35:12 | 002,236,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certmgr.dll
[2015/03/05 03:35:12 | 001,479,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsecedit.dll
[2015/03/05 03:35:12 | 000,426,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tsmf.dll
[2015/03/05 03:35:11 | 000,945,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tdh.dll
[2015/03/05 03:35:11 | 000,761,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\imapi2fs.dll
[2015/03/05 03:35:11 | 000,433,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqlcese40.dll
[2015/03/05 03:35:10 | 001,091,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\opengl32.dll
[2015/03/05 03:35:10 | 000,610,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sxs.dll
[2015/03/05 03:35:10 | 000,492,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVSDECD.DLL
[2015/03/05 03:35:09 | 001,309,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernel32.dll
[2015/03/05 03:35:09 | 000,399,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll
[2015/03/05 03:35:08 | 001,150,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMADMOE.DLL
[2015/03/05 03:35:07 | 002,334,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncCenter.dll
[2015/03/05 03:35:07 | 001,054,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SmartcardCredentialProvider.dll
[2015/03/05 03:35:07 | 000,787,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkfoldersControl.dll
[2015/03/05 03:35:06 | 002,597,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gameux.dll
[2015/03/05 03:35:06 | 001,106,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpedit.dll
[2015/03/05 03:35:06 | 000,573,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdrm.dll
[2015/03/05 03:35:06 | 000,550,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netprofmsvc.dll
[2015/03/05 03:35:05 | 000,902,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aclui.dll
[2015/03/05 03:35:05 | 000,488,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmpeffects.dll
[2015/03/05 03:35:05 | 000,411,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\services.exe
[2015/03/05 03:35:05 | 000,391,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssph.dll
[2015/03/05 03:35:04 | 001,335,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsecedit.dll
[2015/03/05 03:35:04 | 001,001,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\HelpPane.exe
[2015/03/05 03:35:04 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidprov.dll
[2015/03/05 03:35:03 | 000,512,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\psisdecd.dll
[2015/03/05 03:35:03 | 000,477,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\puiobj.dll
[2015/03/05 03:35:03 | 000,389,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\dxgmms1.sys
[2015/03/05 03:35:02 | 000,679,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiaaut.dll
[2015/03/05 03:35:02 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tpmvsc.dll
[2015/03/05 03:35:02 | 000,332,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAnimation.dll
[2015/03/05 03:35:01 | 001,058,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gpedit.dll
[2015/03/05 03:35:01 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EncDec.dll
[2015/03/05 03:35:00 | 000,522,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\catsrvut.dll
[2015/03/05 03:35:00 | 000,356,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFCaptureEngine.dll
[2015/03/05 03:34:59 | 000,470,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.dll
[2015/03/05 03:34:58 | 000,754,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FirewallAPI.dll
[2015/03/05 03:34:58 | 000,534,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.dll
[2015/03/05 03:34:58 | 000,512,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winspool.drv
[2015/03/05 03:34:58 | 000,468,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssph.dll
[2015/03/05 03:34:58 | 000,432,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msscp.dll
[2015/03/05 03:34:57 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartCardSimulator.dll
[2015/03/05 03:34:57 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wldap32.dll
[2015/03/05 03:34:56 | 000,543,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hnetcfg.dll
[2015/03/05 03:34:56 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mswmdm.dll
[2015/03/05 03:34:56 | 000,366,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDEServer.exe
[2015/03/05 03:34:55 | 000,685,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\advapi32.dll
[2015/03/05 03:34:55 | 000,539,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hgcpl.dll
[2015/03/05 03:34:55 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSAC3ENC.DLL
[2015/03/05 03:34:54 | 001,984,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certmgr.dll
[2015/03/05 03:34:54 | 000,510,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webio.dll
[2015/03/05 03:34:54 | 000,390,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\difxapi.dll
[2015/03/05 03:34:53 | 000,777,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\opengl32.dll
[2015/03/05 03:34:53 | 000,565,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.dll
[2015/03/05 03:34:53 | 000,524,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSWB70404.dll
[2015/03/05 03:34:53 | 000,524,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSWB70011.dll
[2015/03/05 03:34:53 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\qdvd.dll
[2015/03/05 03:34:53 | 000,403,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netcfgx.dll
[2015/03/05 03:34:52 | 001,291,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certutil.exe
[2015/03/05 03:34:52 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msra.exe
[2015/03/05 03:34:52 | 000,524,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSWB70804.dll
[2015/03/05 03:34:52 | 000,524,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSWB7001E.dll
[2015/03/05 03:34:52 | 000,430,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.Connectivity.dll
[2015/03/05 03:34:51 | 002,829,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netshell.dll
[2015/03/05 03:34:51 | 001,861,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Display.dll
[2015/03/05 03:34:51 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ddraw.dll
[2015/03/05 03:34:50 | 002,213,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncCenter.dll
[2015/03/05 03:34:50 | 000,662,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DMRServer.exe
[2015/03/05 03:34:50 | 000,451,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.Printing.dll
[2015/03/05 03:34:50 | 000,412,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oleacc.dll
[2015/03/05 03:34:49 | 004,616,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData001d.dll
[2015/03/05 03:34:49 | 000,455,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanconn.dll
[2015/03/05 03:34:49 | 000,430,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wevtapi.dll
[2015/03/05 03:34:48 | 004,621,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0414.dll
[2015/03/05 03:34:48 | 004,621,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0010.dll
[2015/03/05 03:34:48 | 004,620,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0816.dll
[2015/03/05 03:34:48 | 004,616,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0416.dll
[2015/03/05 03:34:47 | 000,498,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcfgx.dll
[2015/03/05 03:34:47 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\catsrv.dll
[2015/03/05 03:34:47 | 000,463,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Usb.dll
[2015/03/05 03:34:47 | 000,020,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompPkgSup.dll
[2015/03/05 03:34:46 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RMActivate_isv.exe
[2015/03/05 03:34:46 | 000,590,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wvc.dll
[2015/03/05 03:34:46 | 000,524,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxApplicabilityEngine.dll
[2015/03/05 03:34:46 | 000,517,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wbemcomn.dll
[2015/03/05 03:34:45 | 002,592,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themecpl.dll
[2015/03/05 03:34:45 | 000,563,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdohlp.dll
[2015/03/05 03:34:45 | 000,414,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\catsrvut.dll
[2015/03/05 03:34:44 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tdh.dll
[2015/03/05 03:34:44 | 000,569,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxPackaging.dll
[2015/03/05 03:34:43 | 002,902,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themeui.dll
[2015/03/05 03:34:43 | 000,367,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tsmf.dll
[2015/03/05 03:34:43 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\secproc.dll
[2015/03/05 03:34:43 | 000,346,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\secproc_isv.dll
[2015/03/05 03:34:42 | 000,995,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tapi3.dll
[2015/03/05 03:34:42 | 000,536,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hhctrl.ocx
[2015/03/05 03:34:42 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSAC3ENC.DLL
[2015/03/05 03:34:41 | 000,546,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.PointOfService.dll
[2015/03/05 03:34:41 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll
[2015/03/05 03:34:41 | 000,367,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GeofenceMonitorService.dll
[2015/03/05 03:34:41 | 000,353,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mswmdm.dll
[2015/03/05 03:34:41 | 000,324,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wintrust.dll
[2015/03/05 03:34:40 | 000,569,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RMActivate.exe
[2015/03/05 03:34:40 | 000,557,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ipsmsnap.dll
[2015/03/05 03:34:40 | 000,393,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ninput.dll
[2015/03/05 03:34:39 | 000,464,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll
[2015/03/05 03:34:39 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vmrdvcore.dll
[2015/03/05 03:34:39 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdvvmtransport.dll
[2015/03/05 03:34:38 | 000,809,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fvewiz.dll
[2015/03/05 03:34:38 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncInfrastructure.dll
[2015/03/05 03:34:38 | 000,397,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcryptprimitives.dll
[2015/03/05 03:34:38 | 000,320,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFCaptureEngine.dll
[2015/03/05 03:34:38 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSNP.ax
[2015/03/05 03:34:37 | 002,848,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\themeui.dll
[2015/03/05 03:34:37 | 000,454,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hnetcfg.dll
[2015/03/05 03:34:37 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webio.dll
[2015/03/05 03:34:36 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.SmartCards.dll
[2015/03/05 03:34:36 | 000,516,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PrintDialogs.dll
[2015/03/05 03:34:36 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sysmon.ocx
[2015/03/05 03:34:36 | 000,401,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\catsrv.dll
[2015/03/05 03:34:35 | 000,725,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpeffects.dll
[2015/03/05 03:34:35 | 000,547,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imapi2.dll
[2015/03/05 03:34:35 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\upnp.dll
[2015/03/05 03:34:34 | 002,140,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0007.dll
[2015/03/05 03:34:34 | 000,943,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WFS.exe
[2015/03/05 03:34:34 | 000,809,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ReAgent.dll
[2015/03/05 03:34:34 | 000,547,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinTypes.dll
[2015/03/05 03:34:34 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ReInfo.dll
[2015/03/05 03:34:33 | 000,589,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhotoScreensaver.scr
[2015/03/05 03:34:33 | 000,375,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.dll
[2015/03/05 03:34:33 | 000,367,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\puiobj.dll
[2015/03/05 03:34:32 | 006,259,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0009.dll
[2015/03/05 03:34:32 | 002,480,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData000d.dll
[2015/03/05 03:34:32 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BCP47Langs.dll
[2015/03/05 03:34:31 | 002,714,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netshell.dll
[2015/03/05 03:34:31 | 001,411,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMSPDMOE.DLL
[2015/03/05 03:34:31 | 000,872,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tapi3.dll
[2015/03/05 03:34:31 | 000,746,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntshrui.dll
[2015/03/05 03:34:31 | 000,479,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StikyNot.exe
[2015/03/05 03:34:30 | 002,551,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\themecpl.dll
[2015/03/05 03:34:30 | 000,920,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\azroles.dll
19:オスカル :

2015/03/19 (Thu) 14:57:53

OTLログその4

[2015/03/05 03:34:29 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorsApi.dll
[2015/03/05 03:34:29 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIAnimation.dll
[2015/03/05 03:34:28 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssvp.dll
[2015/03/05 03:34:28 | 000,612,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\provcore.dll
[2015/03/05 03:34:28 | 000,361,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidprov.dll
[2015/03/05 03:34:28 | 000,292,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wisp.dll
[2015/03/05 03:34:28 | 000,254,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msls31.dll
[2015/03/05 03:34:27 | 001,826,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Display.dll
[2015/03/05 03:34:27 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usbmon.dll
[2015/03/05 03:34:27 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemEventsBrokerServer.dll
[2015/03/05 03:34:27 | 000,251,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dcomp.dll
[2015/03/05 03:34:27 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DscCore.dll
[2015/03/05 03:34:26 | 000,633,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserLanguagesCpl.dll
[2015/03/05 03:34:26 | 000,579,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wiaaut.dll
[2015/03/05 03:34:26 | 000,562,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RMActivate_isv.exe
[2015/03/05 03:34:25 | 002,403,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData000c.dll
[2015/03/05 03:34:25 | 000,477,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlangpui.dll
[2015/03/05 03:34:25 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msscp.dll
[2015/03/05 03:34:24 | 009,732,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData000a.dll
[2015/03/05 03:34:24 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxApplicabilityEngine.dll
[2015/03/05 03:34:24 | 000,289,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ksproxy.ax
[2015/03/05 03:34:23 | 001,242,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10.dll
[2015/03/05 03:34:23 | 001,171,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstsc.exe
[2015/03/05 03:34:23 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sysmon.ocx
[2015/03/05 03:34:23 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsGdiConverter.dll
[2015/03/05 03:34:23 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ninput.dll
[2015/03/05 03:34:23 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsRasterService.dll
[2015/03/05 03:34:22 | 002,329,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NL7Data0404.dll
[2015/03/05 03:34:22 | 000,327,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\upnp.dll
[2015/03/05 03:34:22 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offfilt.dll
[2015/03/05 03:34:21 | 001,086,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstsc.exe
[2015/03/05 03:34:21 | 000,680,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\objsel.dll
[2015/03/05 03:34:21 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxPackaging.dll
[2015/03/05 03:34:20 | 007,331,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NL7Data0011.dll
[2015/03/05 03:34:20 | 000,564,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apphelp.dll
[2015/03/05 03:34:20 | 000,360,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Proximity.dll
[2015/03/05 03:34:20 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mpg2splt.ax
[2015/03/05 03:34:19 | 000,548,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\glmf32.dll
[2015/03/05 03:34:19 | 000,543,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RMActivate.exe
[2015/03/05 03:34:19 | 000,439,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ipsmsnap.dll
[2015/03/05 03:34:18 | 003,438,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NL7Data0804.dll
[2015/03/05 03:34:18 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll
[2015/03/05 03:34:18 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\framedynos.dll
[2015/03/05 03:34:18 | 000,286,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsCodecsExt.dll
[2015/03/05 03:34:17 | 000,833,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\osk.exe
[2015/03/05 03:34:17 | 000,520,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWanAPI.dll
[2015/03/05 03:34:17 | 000,320,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wevtapi.dll
[2015/03/05 03:34:17 | 000,298,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.dll
[2015/03/05 03:34:16 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mscms.dll
[2015/03/05 03:34:16 | 000,278,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winsku.dll
[2015/03/05 03:34:15 | 000,981,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdt.exe
[2015/03/05 03:34:15 | 000,794,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\azroles.dll
[2015/03/05 03:34:15 | 000,669,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hhctrl.ocx
[2015/03/05 03:34:15 | 000,399,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlangpui.dll
[2015/03/05 03:34:15 | 000,287,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\qasf.dll
[2015/03/05 03:34:15 | 000,280,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpencom.dll
[2015/03/05 03:34:14 | 000,887,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3dim700.dll
[2015/03/05 03:34:14 | 000,522,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VAN.dll
[2015/03/05 03:34:14 | 000,360,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sechost.dll
[2015/03/05 03:34:13 | 000,795,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasdlg.dll
[2015/03/05 03:34:13 | 000,453,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\azroleui.dll
[2015/03/05 03:34:13 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\imapi2.dll
[2015/03/05 03:34:13 | 000,295,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMASF.DLL
[2015/03/05 03:34:12 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wvc.dll
[2015/03/05 03:34:12 | 000,374,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmsvc.dll
[2015/03/05 03:34:12 | 000,367,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WPDSp.dll
[2015/03/05 03:34:12 | 000,331,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DaOtpCredentialProvider.dll
[2015/03/05 03:34:12 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmWmiPl.dll
[2015/03/05 03:34:12 | 000,256,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.MediaControl.dll
[2015/03/05 03:34:11 | 000,521,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdri.dll
[2015/03/05 03:34:11 | 000,359,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsta.dll
[2015/03/05 03:34:11 | 000,345,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationApi.dll
[2015/03/05 03:34:11 | 000,311,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFPlay.dll
[2015/03/05 03:34:10 | 000,468,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\taskeng.exe
[2015/03/05 03:34:10 | 000,463,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MP4SDECD.DLL
[2015/03/05 03:34:10 | 000,430,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSCOMPOSE.dll
[2015/03/05 03:34:09 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PhotoScreensaver.scr
[2015/03/05 03:34:09 | 000,505,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WLanConn.dll
[2015/03/05 03:34:09 | 000,306,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFHost.exe
[2015/03/05 03:34:09 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ksproxy.ax
[2015/03/05 03:34:09 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSNP.ax
[2015/03/05 03:34:08 | 000,621,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsFilt.dll
[2015/03/05 03:34:08 | 000,587,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\filemgmt.dll
[2015/03/05 03:34:08 | 000,374,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WmpDui.dll
[2015/03/05 03:34:08 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TetheringMgr.dll
[2015/03/05 03:34:07 | 000,508,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmicmiplugin.dll
[2015/03/05 03:34:07 | 000,499,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdelta.dll
[2015/03/05 03:34:07 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlansec.dll
[2015/03/05 03:34:07 | 000,422,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efscore.dll
[2015/03/05 03:34:07 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wisp.dll
[2015/03/05 03:34:06 | 000,963,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasgcw.dll
[2015/03/05 03:34:06 | 000,699,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssvp.dll
[2015/03/05 03:34:06 | 000,408,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DfpCommon.dll
[2015/03/05 03:34:05 | 000,560,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wimgapi.dll
[2015/03/05 03:34:04 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0026.dll
[2015/03/05 03:34:04 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0024.dll
[2015/03/05 03:34:04 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0003.dll
[2015/03/05 03:34:04 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0002.dll
[2015/03/05 03:34:04 | 000,527,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rastls.dll
[2015/03/05 03:34:03 | 002,075,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0027.dll
[2015/03/05 03:34:03 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0c1a.dll
[2015/03/05 03:34:03 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData081a.dll
[2015/03/05 03:34:03 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData001b.dll
[2015/03/05 03:34:03 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData001a.dll
[2015/03/05 03:34:03 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0018.dll
[2015/03/05 03:34:03 | 002,073,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData000f.dll
[2015/03/05 03:34:02 | 000,350,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncryptprov.dll
[2015/03/05 03:34:02 | 000,332,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsku.dll
[2015/03/05 03:34:01 | 003,235,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0039.dll
[2015/03/05 03:34:01 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\taskcomp.dll
[2015/03/05 03:34:01 | 000,445,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhotoMetadataHandler.dll
[2015/03/05 03:34:01 | 000,363,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ws2_32.dll
[2015/03/05 03:34:00 | 003,231,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData004b.dll
[2015/03/05 03:34:00 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData004a.dll
[2015/03/05 03:34:00 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0047.dll
[2015/03/05 03:34:00 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0046.dll
[2015/03/05 03:34:00 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0020.dll
[2015/03/05 03:33:59 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData004e.dll
[2015/03/05 03:33:59 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData004c.dll
[2015/03/05 03:33:59 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0049.dll
[2015/03/05 03:33:59 | 003,209,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0045.dll
[2015/03/05 03:33:58 | 000,687,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcrt.dll
[2015/03/05 03:33:58 | 000,476,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xwizards.dll
[2015/03/05 03:33:58 | 000,361,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\conhost.exe
[2015/03/05 03:33:58 | 000,335,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncInfrastructure.dll
[2015/03/05 03:33:57 | 001,926,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0022.dll
[2015/03/05 03:33:57 | 000,628,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnidui.dll
[2015/03/05 03:33:57 | 000,429,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sdohlp.dll
[2015/03/05 03:33:57 | 000,340,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcryptprimitives.dll
[2015/03/05 03:33:57 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ProximityService.dll
[2015/03/05 03:33:57 | 000,225,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mftranscode.dll
[2015/03/05 03:33:57 | 000,089,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptsslp.dll
[2015/03/05 03:33:56 | 001,904,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData003e.dll
[2015/03/05 03:33:56 | 001,904,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData002a.dll
[2015/03/05 03:33:56 | 001,904,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0021.dll
[2015/03/05 03:33:56 | 000,894,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActionCenter.dll
[2015/03/05 03:33:56 | 000,302,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcsvDevice.dll
[2015/03/05 03:33:55 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
[2015/03/05 03:33:55 | 000,252,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\framedynos.dll
[2015/03/05 03:33:55 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Profile.HardwareId.dll
[2015/03/05 03:33:54 | 000,342,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diskraid.exe
[2015/03/05 03:33:54 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\qdv.dll
[2015/03/05 03:33:54 | 000,230,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xmllite.dll
[2015/03/05 03:33:54 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfdvdec.dll
[2015/03/05 03:33:53 | 001,041,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdt.exe
[2015/03/05 03:33:53 | 000,856,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasgcw.dll
[2015/03/05 03:33:53 | 000,336,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\stobject.dll
[2015/03/05 03:33:53 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SensorsApi.dll
[2015/03/05 03:33:52 | 002,036,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0007.dll
[2015/03/05 03:33:52 | 000,572,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winlogon.exe
[2015/03/05 03:33:52 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchProtocolHost.exe
[2015/03/05 03:33:52 | 000,336,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drmmgrtn.dll
[2015/03/05 03:33:52 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netdiagfx.dll
[2015/03/05 03:33:52 | 000,233,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mpg2splt.ax
[2015/03/05 03:33:51 | 001,431,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DxpTaskSync.dll
[2015/03/05 03:33:51 | 000,712,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhcfg.dll
[2015/03/05 03:33:51 | 000,604,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcp60.dll
[2015/03/05 03:33:51 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.PointOfService.dll
[2015/03/05 03:33:51 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sti.dll
[2015/03/05 03:33:50 | 000,422,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PCPTpm12.dll
[2015/03/05 03:33:50 | 000,422,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FWPUCLNT.DLL
[2015/03/05 03:33:50 | 000,393,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\taskcomp.dll
[2015/03/05 03:33:50 | 000,336,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msvproc.dll
[2015/03/05 03:33:50 | 000,310,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Usb.dll
[2015/03/05 03:33:49 | 000,960,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ReAgent.dll
[2015/03/05 03:33:49 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\filemgmt.dll
[2015/03/05 03:33:49 | 000,473,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\prnfldr.dll
[2015/03/05 03:33:49 | 000,415,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\spaceport.sys
[2015/03/05 03:33:49 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TimeBrokerServer.dll
[2015/03/05 03:33:49 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offfilt.dll
[2015/03/05 03:33:49 | 000,204,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ReInfo.dll
[2015/03/05 03:33:48 | 001,664,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMSPDMOE.DLL
[2015/03/05 03:33:48 | 000,770,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ipsecsnp.dll
[2015/03/05 03:33:48 | 000,431,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\termmgr.dll
[2015/03/05 03:33:48 | 000,348,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mprapi.dll
[2015/03/05 03:33:47 | 000,795,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanpref.dll
[2015/03/05 03:33:47 | 000,550,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserLanguagesCpl.dll
[2015/03/05 03:33:47 | 000,489,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dlnashext.dll
[2015/03/05 03:33:47 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVSENCD.DLL
[2015/03/05 03:33:47 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sharemediacpl.dll
[2015/03/05 03:33:47 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Vpn.dll
[2015/03/05 03:33:47 | 000,202,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mftranscode.dll
[2015/03/05 03:33:46 | 000,743,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFWMAAEC.DLL
[2015/03/05 03:33:46 | 000,542,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FXSCOMEX.dll
[2015/03/05 03:33:46 | 000,435,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\glmf32.dll
[2015/03/05 03:33:46 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PhotoMetadataHandler.dll
[2015/03/05 03:33:45 | 000,412,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WLanConn.dll
[2015/03/05 03:33:45 | 000,316,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mscandui.dll
[2015/03/05 03:33:45 | 000,249,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\qdv.dll
[2015/03/05 03:33:45 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfdvdec.dll
[2015/03/05 03:33:44 | 000,494,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RMActivate_ssp_isv.exe
[2015/03/05 03:33:44 | 000,371,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnapps.dll
[2015/03/05 03:33:44 | 000,337,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\Classpnp.sys
[2015/03/05 03:33:44 | 000,336,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\azroleui.dll
[2015/03/05 03:33:44 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncryptprov.dll
[2015/03/05 03:33:43 | 009,604,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData000a.dll
[2015/03/05 03:33:43 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VAN.dll
[2015/03/05 03:33:43 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wincorlib.dll
[2015/03/05 03:33:43 | 000,388,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10_1core.dll
[2015/03/05 03:33:43 | 000,349,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10core.dll
[2015/03/05 03:33:43 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmime.dll
[2015/03/05 03:33:42 | 000,493,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RMActivate_ssp.exe
[2015/03/05 03:33:42 | 000,471,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srcore.dll
[2015/03/05 03:33:42 | 000,374,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanmsm.dll
[2015/03/05 03:33:42 | 000,217,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rsaenh.dll
[2015/03/05 03:33:42 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Profile.HardwareId.dll
[2015/03/05 03:33:41 | 000,736,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVXENCD.DLL
[2015/03/05 03:33:41 | 000,559,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidcli.dll
[2015/03/05 03:33:41 | 000,463,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DXP.dll
[2015/03/05 03:33:41 | 000,370,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.dll
[2015/03/05 03:33:41 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.Proximity.dll
[2015/03/05 03:33:41 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll
[2015/03/05 03:33:40 | 000,755,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\osk.exe
[2015/03/05 03:33:40 | 000,524,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icsvc.dll
[2015/03/05 03:33:40 | 000,433,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\P2PGraph.dll
[2015/03/05 03:33:40 | 000,416,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWanAPI.dll
[2015/03/05 03:33:40 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinSATAPI.dll
[2015/03/05 03:33:40 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasppp.dll
[2015/03/05 03:33:39 | 004,531,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0416.dll
[2015/03/05 03:33:39 | 001,156,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanmm.dll
[2015/03/05 03:33:38 | 004,530,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData001d.dll
[2015/03/05 03:33:38 | 004,530,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0010.dll
[2015/03/05 03:33:38 | 004,530,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0414.dll
[2015/03/05 03:33:38 | 004,529,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0816.dll
[2015/03/05 03:33:37 | 000,839,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActionCenter.dll
[2015/03/05 03:33:37 | 000,397,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdelta.dll
[2015/03/05 03:33:37 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wups.dll
[2015/03/05 03:33:36 | 001,913,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DisplaySwitch.exe
[2015/03/05 03:33:36 | 000,924,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nettrace.dll
[2015/03/05 03:33:36 | 000,644,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMVXENCD.DLL
[2015/03/05 03:33:36 | 000,401,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3dim.dll
[2015/03/05 03:33:36 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdpencom.dll
[2015/03/05 03:33:35 | 001,797,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMALFXGFXDSP.dll
[2015/03/05 03:33:35 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Geolocation.dll
[2015/03/05 03:33:35 | 000,289,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToDevice.dll
[2015/03/05 03:33:35 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mscandui.dll
[2015/03/05 03:33:35 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\qasf.dll
[2015/03/05 03:33:34 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\energy.dll
[2015/03/05 03:33:34 | 000,402,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMVSENCD.DLL
[2015/03/05 03:33:34 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\P2PGraph.dll
[2015/03/05 03:33:34 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bisrv.dll
[2015/03/05 03:33:34 | 000,260,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFPlay.dll
[2015/03/05 03:33:34 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhengine.dll
[2015/03/05 03:33:34 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Graphics.dll
[2015/03/05 03:33:33 | 002,387,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData000d.dll
[2015/03/05 03:33:33 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comsnap.dll
[2015/03/05 03:33:33 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BCP47Langs.dll
[2015/03/05 03:33:32 | 000,475,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spwizeng.dll
[2015/03/05 03:33:32 | 000,432,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clusapi.dll
[2015/03/05 03:33:32 | 000,387,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvproc.dll
[2015/03/05 03:33:32 | 000,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSATAPI.dll
[2015/03/05 03:33:32 | 000,357,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmd.exe
[2015/03/05 03:33:32 | 000,280,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LocationApi.dll
[2015/03/05 03:33:31 | 000,846,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ipsecsnp.dll
[2015/03/05 03:33:31 | 000,339,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shlwapi.dll
[2015/03/05 03:33:31 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorsClassExtension.dll
[2015/03/05 03:33:30 | 000,819,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmsys.cpl
[2015/03/05 03:33:30 | 000,608,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drvstore.dll
[2015/03/05 03:33:30 | 000,558,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\objsel.dll
[2015/03/05 03:33:30 | 000,205,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpchttp.dll
[2015/03/05 03:33:30 | 000,191,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.MediaControl.dll
[2015/03/05 03:33:29 | 001,024,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlanMM.dll
[2015/03/05 03:33:29 | 000,305,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpendp.dll
[2015/03/05 03:33:29 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
[2015/03/05 03:33:29 | 000,205,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmvdspa.dll
[2015/03/05 03:33:28 | 000,217,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSVideoDSP.dll
[2015/03/05 03:33:28 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqlceoledb40.dll
[2015/03/05 03:33:27 | 000,273,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mbsmsapi.dll
[2015/03/05 03:33:27 | 000,031,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CameraSettingsUIHost.exe
[2015/03/05 03:33:27 | 000,027,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsRemoveDevice.exe
[2015/03/05 03:33:26 | 002,307,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData000c.dll
[2015/03/05 03:33:26 | 000,920,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FirewallControlPanel.dll
[2015/03/05 03:33:26 | 000,763,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmsys.cpl
[2015/03/05 03:33:26 | 000,361,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApiPublic.dll
[2015/03/05 03:33:26 | 000,294,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bdeunlock.exe
[2015/03/05 03:33:25 | 000,553,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfh264enc.dll
[2015/03/05 03:33:25 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authfwcfg.dll
[2015/03/05 03:33:25 | 000,434,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dlnashext.dll
[2015/03/05 03:33:25 | 000,417,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mprapi.dll
[2015/03/05 03:33:25 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DaOtpCredentialProvider.dll
[2015/03/05 03:33:25 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resutils.dll
[2015/03/05 03:33:24 | 000,483,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RMActivate_ssp_isv.exe
[2015/03/05 03:33:24 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RMActivate_ssp.exe
[2015/03/05 03:33:24 | 000,315,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.dll
[2015/03/05 03:33:24 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scecli.dll
[2015/03/05 03:33:24 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PackageStateRoaming.dll
[2015/03/05 03:33:23 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msutb.dll
[2015/03/05 03:33:23 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\termmgr.dll
[2015/03/05 03:33:23 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Dxpserver.exe
[2015/03/05 03:33:23 | 000,278,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\activeds.dll
[2015/03/05 03:33:23 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptnet.dll
[2015/03/05 03:33:23 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmredir.dll
[2015/03/05 03:33:22 | 000,865,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FirewallControlPanel.dll
[2015/03/05 03:33:22 | 000,517,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devmgr.dll
[2015/03/05 03:33:22 | 000,380,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spwizeng.dll
[2015/03/05 03:33:22 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netjoin.dll
[2015/03/05 03:33:22 | 000,315,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cfgmgr32.dll
[2015/03/05 03:33:22 | 000,240,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hgprint.dll
[2015/03/05 03:33:22 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prncache.dll
[2015/03/05 03:33:21 | 000,515,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfh264enc.dll
[2015/03/05 03:33:21 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netjoin.dll
[2015/03/05 03:33:21 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppXDeploymentClient.dll
[2015/03/05 03:33:21 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lltdapi.dll
[2015/03/05 03:33:20 | 000,629,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MP4SDECD.DLL
[2015/03/05 03:33:20 | 000,520,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localsec.dll
[2015/03/05 03:33:20 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\devmgr.dll
[2015/03/05 03:33:20 | 000,397,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xwizards.dll
[2015/03/05 03:33:20 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wdscore.dll
[2015/03/05 03:33:19 | 000,860,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NL7Data001E.dll
[2015/03/05 03:33:19 | 000,771,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appwiz.cpl
[2015/03/05 03:33:19 | 000,561,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nshwfp.dll
[2015/03/05 03:33:19 | 000,423,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msutb.dll
[2015/03/05 03:33:19 | 000,316,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certreq.exe
[2015/03/05 03:33:18 | 000,312,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WPDSp.dll
[2015/03/05 03:33:18 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanmsm.dll
[2015/03/05 03:33:18 | 000,283,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drmmgrtn.dll
[2015/03/05 03:33:18 | 000,262,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pdh.dll
[2015/03/05 03:33:17 | 001,389,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DxpTaskSync.dll
[2015/03/05 03:33:17 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DafPrintProvider.dll
[2015/03/05 03:33:17 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scecli.dll
[2015/03/05 03:33:17 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmvdspa.dll
[2015/03/05 03:33:16 | 002,238,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NL7Data0404.dll
[2015/03/05 03:33:16 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\appwiz.cpl
[2015/03/05 03:33:16 | 000,603,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rastls.dll
[2015/03/05 03:33:16 | 000,289,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WmpDui.dll
[2015/03/05 03:33:16 | 000,250,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FXSAPI.dll
[2015/03/05 03:33:16 | 000,246,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CryptoWinRT.dll
[2015/03/05 03:33:16 | 000,224,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adsldp.dll
[2015/03/05 03:33:15 | 001,906,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DisplaySwitch.exe
[2015/03/05 03:33:15 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidcredprov.dll
[2015/03/05 03:33:15 | 000,260,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vaultsvc.dll
[2015/03/05 03:33:15 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.SpeechSynthesis.dll
[2015/03/05 03:33:14 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\qdvd.dll
[2015/03/05 03:33:14 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\efscore.dll
[2015/03/05 03:33:14 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cdd.dll
[2015/03/05 03:33:14 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmvdsitf.dll
[2015/03/05 03:33:13 | 001,305,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcnwiz.dll
[2015/03/05 03:33:13 | 000,364,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PCPTpm12.dll
[2015/03/05 03:33:13 | 000,320,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clusapi.dll
[2015/03/05 03:33:13 | 000,315,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mprddm.dll
[2015/03/05 03:33:13 | 000,302,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanapi.dll
[2015/03/05 03:33:13 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diskraid.exe
[2015/03/05 03:33:13 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputSwitch.dll
[2015/03/05 03:33:12 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfuimanager.dll
[2015/03/05 03:33:12 | 000,767,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iuilp.dll
[2015/03/05 03:33:12 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\activeds.dll
[2015/03/05 03:33:12 | 000,171,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\thumbcache.dll
[2015/03/05 03:33:11 | 003,355,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NL7Data0804.dll
[2015/03/05 03:33:11 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msoeacct.dll
[2015/03/05 03:33:11 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Scanners.dll
[2015/03/05 03:33:10 | 000,957,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WlanMM.dll
[2015/03/05 03:33:10 | 000,732,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanpref.dll
[2015/03/05 03:33:10 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdprint.dll
[2015/03/05 03:33:10 | 000,286,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wpnapps.dll
[2015/03/05 03:33:10 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSAPI.dll
[2015/03/05 03:33:10 | 000,282,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhcat.dll
[2015/03/05 03:33:10 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dhcpcore6.dll
[2015/03/05 03:33:10 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSCard.dll
[2015/03/05 03:33:09 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.dll
[2015/03/05 03:33:09 | 000,272,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\framedyn.dll
[2015/03/05 03:33:09 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\framedyn.dll
[2015/03/05 03:33:09 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToDevice.dll
[2015/03/05 03:33:09 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasman.dll
[2015/03/05 03:33:09 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\riched32.dll
[2015/03/05 03:33:08 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0c1a.dll
[2015/03/05 03:33:08 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0018.dll
[2015/03/05 03:33:08 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0002.dll
[2015/03/05 03:33:08 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prnfldr.dll
[2015/03/05 03:33:08 | 000,309,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TtlsCfg.dll
[2015/03/05 03:33:08 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adsldp.dll
[2015/03/05 03:33:07 | 002,012,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0026.dll
[2015/03/05 03:33:07 | 002,012,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData000f.dll
[2015/03/05 03:33:07 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData081a.dll
[2015/03/05 03:33:07 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData001b.dll
[2015/03/05 03:33:07 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData001a.dll
[2015/03/05 03:33:07 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0003.dll
[2015/03/05 03:33:06 | 001,999,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0027.dll
[2015/03/05 03:33:06 | 001,997,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0024.dll
[2015/03/05 03:33:06 | 000,347,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XAudio2_8.dll
[2015/03/05 03:33:06 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rascustom.dll
[2015/03/05 03:33:06 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssha.dll
[2015/03/05 03:33:05 | 000,364,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authfwcfg.dll
[2015/03/05 03:33:05 | 000,315,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmd.exe
[2015/03/05 03:33:05 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NAPMONTR.DLL
[2015/03/05 03:33:05 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dhcpcore6.dll
[2015/03/05 03:33:05 | 000,214,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.ApplicationData.dll
[2015/03/05 03:33:04 | 000,484,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmdial32.dll
[2015/03/05 03:33:04 | 000,371,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msinfo32.exe
[2015/03/05 03:33:04 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wevtutil.exe
[2015/03/05 03:33:04 | 000,200,192 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\WINDOWS\SysNative\DscCoreConfProv.dll
[2015/03/05 03:33:03 | 000,653,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comctl32.dll
[2015/03/05 03:33:03 | 000,515,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceCenter.dll
[2015/03/05 03:33:03 | 000,467,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBHUB3.SYS
[2015/03/05 03:33:03 | 000,306,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pdh.dll
[2015/03/05 03:33:03 | 000,236,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsnap.dll
[2015/03/05 03:33:03 | 000,179,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sspicli.dll
[2015/03/05 03:33:03 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rpchttp.dll
[2015/03/05 03:33:02 | 000,713,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nshwfp.dll
[2015/03/05 03:33:02 | 000,303,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\migflt.dll
[2015/03/05 03:33:02 | 000,272,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdpendp.dll
[2015/03/05 03:33:02 | 000,234,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\miutils.dll
[2015/03/05 03:33:02 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WwaApi.dll
[2015/03/05 03:33:01 | 001,364,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\connect.dll
[2015/03/05 03:33:01 | 000,565,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptui.dll
[2015/03/05 03:33:01 | 000,306,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtcuiu.dll
[2015/03/05 03:33:01 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.HumanInterfaceDevice.dll
[2015/03/05 03:33:01 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssphtb.dll
[2015/03/05 03:33:01 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanapi.dll
[2015/03/05 03:33:01 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\miutils.dll
[2015/03/05 03:33:01 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ulib.dll
[2015/03/05 03:33:00 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msinfo32.exe
[2015/03/05 03:33:00 | 000,292,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adsnt.dll
[2015/03/05 03:33:00 | 000,233,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ProximityUxHost.exe
[2015/03/05 03:33:00 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpresult.exe
[2015/03/05 03:33:00 | 000,034,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserAccountBroker.exe
[2015/03/05 03:33:00 | 000,029,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PickerHost.exe
[2015/03/05 03:33:00 | 000,018,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SlideToShutDown.exe
[2015/03/05 03:32:59 | 003,814,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\accessibilitycpl.dll
[2015/03/05 03:32:59 | 000,796,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mblctr.exe
[2015/03/05 03:32:59 | 000,280,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hotspotauth.dll
[2015/03/05 03:32:59 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dinput8.dll
[2015/03/05 03:32:58 | 003,149,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0039.dll
[2015/03/05 03:32:58 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData004b.dll
[2015/03/05 03:32:58 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0047.dll
[2015/03/05 03:32:58 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0020.dll
[2015/03/05 03:32:57 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData004e.dll
[2015/03/05 03:32:57 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData004c.dll
[2015/03/05 03:32:57 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData004a.dll
[2015/03/05 03:32:57 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0049.dll
[2015/03/05 03:32:57 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0046.dll
[2015/03/05 03:32:57 | 003,132,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0045.dll
[2015/03/05 03:32:56 | 000,672,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wimgapi.dll
[2015/03/05 03:32:56 | 000,517,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wimserv.exe
[2015/03/05 03:32:56 | 000,370,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srchadmin.dll
[2015/03/05 03:32:56 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasmontr.dll
[2015/03/05 03:32:56 | 000,201,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ifsutil.dll
[2015/03/05 03:32:56 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafWfdProvider.dll
[2015/03/05 03:32:56 | 000,187,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSVideoDSP.dll
[2015/03/05 03:32:55 | 001,609,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsData0000.dll
[2015/03/05 03:32:55 | 000,624,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdbui.dll
[2015/03/05 03:32:55 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spp.dll
[2015/03/05 03:32:55 | 000,236,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmWmiPl.dll
[2015/03/05 03:32:55 | 000,223,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.dll
[2015/03/05 03:32:55 | 000,203,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DafPrintProvider.dll
[2015/03/05 03:32:54 | 001,829,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData003e.dll
[2015/03/05 03:32:54 | 001,829,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData002a.dll
[2015/03/05 03:32:54 | 001,829,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0022.dll
[2015/03/05 03:32:54 | 001,829,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0021.dll
[2015/03/05 03:32:54 | 000,263,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xwtpdui.dll
[2015/03/05 03:32:54 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveapibase.dll
[2015/03/05 03:32:54 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deviceaccess.dll
[2015/03/05 03:32:54 | 000,161,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmmbase.dll
[2015/03/05 03:32:53 | 000,433,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wksprt.exe
[2015/03/05 03:32:53 | 000,225,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFPlatform.dll
[2015/03/05 03:32:53 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PackageStateRoaming.dll
[2015/03/05 03:32:50 | 000,269,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cewmdm.dll
[2015/03/05 03:32:50 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdtcuiu.dll
[2015/03/05 03:32:49 | 000,222,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceTypes.dll
[2015/03/05 03:32:48 | 000,724,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfuimanager.dll
[2015/03/05 03:32:48 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shacct.dll
[2015/03/05 03:32:48 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Input.Inking.dll
[2015/03/05 03:32:47 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nshipsec.dll
[2015/03/05 03:32:47 | 000,306,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasmontr.dll
[2015/03/05 03:32:47 | 000,216,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SndVol.exe
[2015/03/05 03:32:47 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mbsmsapi.dll
[2015/03/05 03:32:47 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqlceoledb40.dll
[2015/03/05 03:32:46 | 000,332,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhcpl.dll
[2015/03/05 03:32:46 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdmregistration.dll
[2015/03/05 03:32:46 | 000,289,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmdskmgr.dll
[2015/03/05 03:32:46 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Geolocation.dll
[2015/03/05 03:32:46 | 000,136,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncrypt.dll
[2015/03/05 03:32:45 | 000,263,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wavemsp.dll
[2015/03/05 03:32:45 | 000,234,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cewmdm.dll
[2015/03/05 03:32:45 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sbeio.dll
[2015/03/05 03:32:45 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepsync.dll
[2015/03/05 03:32:44 | 000,244,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfps.dll
[2015/03/05 03:32:44 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSyncMetastore.dll
[2015/03/05 03:32:44 | 000,181,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthHost.exe
[2015/03/05 03:32:43 | 000,269,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApiPublic.dll
[2015/03/05 03:32:43 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToManager.dll
[2015/03/05 03:32:43 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diskpart.exe
[2015/03/05 03:32:42 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Vault.dll
[2015/03/05 03:32:42 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InkEd.dll
[2015/03/05 03:32:42 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gpresult.exe
[2015/03/05 03:32:42 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSSync.dll
[2015/03/05 03:32:42 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srumsvc.dll
[2015/03/05 03:32:41 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RADCUI.dll
[2015/03/05 03:32:41 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iprtrmgr.dll
[2015/03/05 03:32:41 | 000,272,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FWPUCLNT.DLL
[2015/03/05 03:32:41 | 000,190,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SndVol.exe
[2015/03/05 03:32:41 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmvdsitf.dll
[2015/03/05 03:32:41 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IDStore.dll
[2015/03/05 03:32:41 | 000,142,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxva2.dll
[2015/03/05 03:32:41 | 000,134,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmmbase.dll
[2015/03/05 03:32:40 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\srchadmin.dll
[2015/03/05 03:32:40 | 000,315,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msieftp.dll
[2015/03/05 03:32:40 | 000,259,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fdprint.dll
[2015/03/05 03:32:40 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NAPMONTR.DLL
[2015/03/05 03:32:40 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netdiagfx.dll
[2015/03/05 03:32:40 | 000,211,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deviceregistration.dll
[2015/03/05 03:32:40 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msrdc.dll
[2015/03/05 03:32:39 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxdiagn.dll
[2015/03/05 03:32:39 | 000,241,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqmapi.dll
[2015/03/05 03:32:38 | 001,232,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wcnwiz.dll
[2015/03/05 03:32:38 | 000,317,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcjt32.dll
[2015/03/05 03:32:38 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scrobj.dll
[2015/03/05 03:32:38 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmdskmgr.dll
[2015/03/05 03:32:38 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VBICodec.ax
[2015/03/05 03:32:38 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\deviceaccess.dll
[2015/03/05 03:32:37 | 000,487,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DeviceCenter.dll
[2015/03/05 03:32:37 | 000,373,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\storport.sys
[2015/03/05 03:32:37 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSWB7.dll
[2015/03/05 03:32:37 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scrobj.dll
[2015/03/05 03:32:37 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ulib.dll
[2015/03/05 03:32:36 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasdlg.dll
[2015/03/05 03:32:36 | 000,782,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NL7Data001E.dll
[2015/03/05 03:32:36 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adsnt.dll
[2015/03/05 03:32:36 | 000,297,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqmapi.dll
[2015/03/05 03:32:36 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wevtutil.exe
[2015/03/05 03:32:36 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mibincodec.dll
[2015/03/05 03:32:35 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSDMon.dll
[2015/03/05 03:32:35 | 000,267,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apds.dll
[2015/03/05 03:32:35 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sbeio.dll
[2015/03/05 03:32:34 | 002,134,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorsCpl.dll
[2015/03/05 03:32:34 | 000,774,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TabletPC.cpl
[2015/03/05 03:32:34 | 000,309,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\provthrd.dll
[2015/03/05 03:32:34 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dinput8.dll
[2015/03/05 03:32:34 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\srumsvc.dll
[2015/03/05 03:32:33 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvstore.dll
[2015/03/05 03:32:33 | 000,475,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SnippingTool.exe
[2015/03/05 03:32:33 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSCOVER.exe
[2015/03/05 03:32:33 | 000,201,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Enumeration.dll
[2015/03/05 03:32:33 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appidpolicyconverter.exe
[2015/03/05 03:32:33 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Scanners.dll
[2015/03/05 03:32:33 | 000,159,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IPHLPAPI.DLL
[2015/03/05 03:32:33 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psisrndr.ax
[2015/03/05 03:32:32 | 000,447,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpps.dll
[2015/03/05 03:32:32 | 000,224,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpdMtp.dll
[2015/03/05 03:32:32 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputSwitch.dll
[2015/03/05 03:32:32 | 000,172,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSClient.dll
[2015/03/05 03:32:32 | 000,164,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Storage.ApplicationData.dll
[2015/03/05 03:32:32 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups.dll
[2015/03/05 03:32:32 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups2.dll
[2015/03/05 03:32:31 | 000,585,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\recimg.exe
[2015/03/05 03:32:31 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmdlgs.dll
[2015/03/05 03:32:31 | 000,323,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertEnrollUI.dll
[2015/03/05 03:32:31 | 000,211,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QSHVHOST.DLL
[2015/03/05 03:32:31 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wdscore.dll
[2015/03/05 03:32:31 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\prntvpt.dll
[2015/03/05 03:32:30 | 003,788,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\accessibilitycpl.dll
[2015/03/05 03:32:30 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertEnrollUI.dll
[2015/03/05 03:32:30 | 000,214,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xwtpdui.dll
[2015/03/05 03:32:30 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidcredprov.dll
[2015/03/05 03:32:30 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinSyncMetastore.dll
[2015/03/05 03:32:30 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingMonitor.dll
[2015/03/05 03:32:30 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WwaApi.dll
[2015/03/05 03:32:29 | 001,047,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DiagCpl.dll
[2015/03/05 03:32:29 | 000,468,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFWMAAEC.DLL
[2015/03/05 03:32:29 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XAudio2_8.dll
[2015/03/05 03:32:29 | 000,272,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\esentutl.exe
[2015/03/05 03:32:29 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmidx.dll
[2015/03/05 03:32:29 | 000,175,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.SpeechSynthesis.dll
[2015/03/05 03:32:28 | 000,831,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certca.dll
[2015/03/05 03:32:28 | 000,384,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certreq.exe
[2015/03/05 03:32:28 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mprddm.dll
[2015/03/05 03:32:28 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dskquoui.dll
[2015/03/05 03:32:28 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CryptoWinRT.dll
[2015/03/05 03:32:27 | 000,425,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\raschap.dll
[2015/03/05 03:32:27 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msieftp.dll
[2015/03/05 03:32:27 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcorehc.dll
[2015/03/05 03:32:27 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prntvpt.dll
[2015/03/05 03:32:27 | 000,169,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netiohlp.dll
[2015/03/05 03:32:27 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceSyncProvider.dll
[2015/03/05 03:32:27 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmidx.dll
[2015/03/05 03:32:27 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msnetobj.dll
[2015/03/05 03:32:26 | 001,548,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NlsData0000.dll
[2015/03/05 03:32:26 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\itircl.dll
[2015/03/05 03:32:26 | 000,193,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DAFWSD.dll
[2015/03/05 03:32:26 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\itircl.dll
[2015/03/05 03:32:26 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diskpart.exe
[2015/03/05 03:32:25 | 000,445,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msvcp60.dll
[2015/03/05 03:32:25 | 000,348,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\verifier.dll
[2015/03/05 03:32:25 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wincorlib.dll
[2015/03/05 03:32:25 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcpmon.dll
[2015/03/05 03:32:25 | 000,132,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RTWorkQ.dll
[2015/03/05 03:32:24 | 000,846,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Magnify.exe
[2015/03/05 03:32:24 | 000,454,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\localsec.dll
[2015/03/05 03:32:24 | 000,407,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\das.dll
[2015/03/05 03:32:24 | 000,322,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fvecpl.dll
[2015/03/05 03:32:24 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scansetting.dll
[2015/03/05 03:32:24 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mdmregistration.dll
[2015/03/05 03:32:24 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.dll
[2015/03/05 03:32:23 | 000,253,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scansetting.dll
[2015/03/05 03:32:23 | 000,236,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TtlsCfg.dll
[2015/03/05 03:32:23 | 000,206,848 | ---- |
20:オスカル :

2015/03/19 (Thu) 15:00:25

OTLログその5

[2015/03/05 03:32:23 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmitomi.dll
[2015/03/05 03:32:23 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rascfg.dll
[2015/03/05 03:32:23 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToManager.dll
[2015/03/05 03:32:23 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\IDStore.dll
[2015/03/05 03:32:22 | 000,449,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shwebsvc.dll
[2015/03/05 03:32:22 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dxdiagn.dll
[2015/03/05 03:32:22 | 000,183,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VIDRESZR.DLL
[2015/03/05 03:32:22 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ufat.dll
[2015/03/05 03:32:21 | 000,779,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Magnify.exe
[2015/03/05 03:32:21 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wiadefui.dll
[2015/03/05 03:32:21 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tracerpt.exe
[2015/03/05 03:32:21 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSClient.dll
[2015/03/05 03:32:21 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uudf.dll
[2015/03/05 03:32:20 | 000,347,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxclu.dll
[2015/03/05 03:32:20 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsadmin.exe
[2015/03/05 03:32:20 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ifsutil.dll
[2015/03/05 03:32:20 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uudf.dll
[2015/03/05 03:32:20 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shacct.dll
[2015/03/05 03:32:20 | 000,145,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cabinet.dll
[2015/03/05 03:32:20 | 000,017,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psapi.dll
[2015/03/05 03:32:19 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanui.dll
[2015/03/05 03:32:19 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mcbuilder.exe
[2015/03/05 03:32:19 | 000,196,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntmarta.dll
[2015/03/05 03:32:19 | 000,184,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\COLORCNV.DLL
[2015/03/05 03:32:19 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.DeviceEncryptionHandlers.dll
[2015/03/05 03:32:19 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psmsrv.dll
[2015/03/05 03:32:19 | 000,122,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmstyle.dll
[2015/03/05 03:32:18 | 001,207,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
[2015/03/05 03:32:18 | 000,278,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wkspbroker.exe
[2015/03/05 03:32:18 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.HumanInterfaceDevice.dll
[2015/03/05 03:32:18 | 000,157,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fundisc.dll
[2015/03/05 03:32:18 | 000,120,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\userenv.dll
[2015/03/05 03:32:18 | 000,116,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dxva2.dll
[2015/03/05 03:32:18 | 000,022,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PurchaseWindowsLicense.exe
[2015/03/05 03:32:17 | 000,378,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SysFxUI.dll
[2015/03/05 03:32:16 | 000,849,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontext.dll
[2015/03/05 03:32:16 | 000,514,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicePairing.dll
[2015/03/05 03:32:16 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\schtasks.exe
[2015/03/05 03:32:16 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mibincodec.dll
[2015/03/05 03:32:15 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\psr.exe
[2015/03/05 03:32:15 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IdListen.dll
[2015/03/05 03:32:15 | 000,155,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devobj.dll
[2015/03/05 03:32:15 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CloudStorageWizard.exe
[2015/03/05 03:32:14 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxdiag.exe
[2015/03/05 03:32:14 | 000,288,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dxdiag.exe
[2015/03/05 03:32:14 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wavemsp.dll
[2015/03/05 03:32:14 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cic.dll
[2015/03/05 03:32:14 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\biwinrt.dll
[2015/03/05 03:32:13 | 001,296,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\connect.dll
[2015/03/05 03:32:13 | 000,371,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\verifier.dll
[2015/03/05 03:32:13 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authz.dll
[2015/03/05 03:32:13 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sdiageng.dll
[2015/03/05 03:32:13 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSyncProviders.dll
[2015/03/05 03:32:13 | 000,137,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msched.dll
[2015/03/05 03:32:12 | 000,812,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontext.dll
[2015/03/05 03:32:12 | 000,402,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsquery.dll
[2015/03/05 03:32:12 | 000,280,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3gpui.dll
[2015/03/05 03:32:12 | 000,209,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nlhtml.dll
[2015/03/05 03:32:12 | 000,111,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RTWorkQ.dll
[2015/03/05 03:32:11 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NAPSTAT.EXE
[2015/03/05 03:32:11 | 000,230,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InkEd.dll
[2015/03/05 03:32:11 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdiageng.dll
[2015/03/05 03:32:11 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\softkbd.dll
[2015/03/05 03:32:11 | 000,119,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfui.dll
[2015/03/05 03:32:10 | 000,275,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MPG4DECD.DLL
[2015/03/05 03:32:10 | 000,274,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MP43DECD.DLL
[2015/03/05 03:32:10 | 000,255,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QAGENT.DLL
[2015/03/05 03:32:10 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingMonitor.dll
[2015/03/05 03:32:10 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efswrt.dll
[2015/03/05 03:32:10 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmusic.dll
[2015/03/05 03:32:10 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.immersiveshell.serviceprovider.dll
[2015/03/05 03:32:10 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Management.Workplace.WorkplaceSettings.dll
[2015/03/05 03:32:09 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mcbuilder.exe
[2015/03/05 03:32:09 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceWiaCompat.dll
[2015/03/05 03:32:09 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SPInf.dll
[2015/03/05 03:32:09 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkStatus.dll
[2015/03/05 03:32:08 | 000,291,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RADCUI.dll
[2015/03/05 03:32:08 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msrdc.dll
[2015/03/05 03:32:08 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlancfg.dll
[2015/03/05 03:32:08 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\psisrndr.ax
[2015/03/05 03:32:07 | 002,118,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SensorsCpl.dll
[2015/03/05 03:32:07 | 000,250,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MPG4DECD.DLL
[2015/03/05 03:32:07 | 000,248,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MP43DECD.DLL
[2015/03/05 03:32:07 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxAllUserStore.dll
[2015/03/05 03:32:07 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ufat.dll
[2015/03/05 03:32:06 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActionQueue.dll
[2015/03/05 03:32:06 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\provthrd.dll
[2015/03/05 03:32:06 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.Compression.dll
[2015/03/05 03:32:06 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\httpprxm.dll
[2015/03/05 03:32:06 | 000,122,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevPropMgr.dll
[2015/03/05 03:32:06 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msnetobj.dll
[2015/03/05 03:32:05 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BioCredProv.dll
[2015/03/05 03:32:05 | 000,240,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\elshyph.dll
[2015/03/05 03:32:05 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFoldersShell.dll
[2015/03/05 03:32:05 | 000,138,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\softkbd.dll
[2015/03/05 03:32:05 | 000,118,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AltTab.dll
[2015/03/05 03:32:05 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfui.dll
[2015/03/05 03:32:04 | 000,425,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shwebsvc.dll
[2015/03/05 03:32:04 | 000,211,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TetheringStation.dll
[2015/03/05 03:32:04 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imapi.dll
[2015/03/05 03:32:03 | 000,601,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\psr.exe
[2015/03/05 03:32:03 | 000,382,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsqmcons.exe
[2015/03/05 03:32:03 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssha.dll
[2015/03/05 03:32:03 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmitomi.dll
[2015/03/05 03:32:03 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxAllUserStore.dll
[2015/03/05 03:32:03 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbnetlib.dll
[2015/03/05 03:32:02 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\difxapi.dll
[2015/03/05 03:32:02 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\esentutl.exe
[2015/03/05 03:32:02 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windowslivelogin.dll
[2015/03/05 03:32:02 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\auditcse.dll
[2015/03/05 03:32:02 | 000,171,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wscinterop.dll
[2015/03/05 03:32:01 | 000,433,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsquery.dll
[2015/03/05 03:32:01 | 000,281,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drt.dll
[2015/03/05 03:32:01 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnprv.dll
[2015/03/05 03:32:01 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dskquoui.dll
[2015/03/05 03:32:00 | 000,460,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiadefui.dll
[2015/03/05 03:32:00 | 000,396,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtxclu.dll
[2015/03/05 03:32:00 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\schtasks.exe
[2015/03/05 03:32:00 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scrrun.dll
[2015/03/05 03:32:00 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxSip.dll
[2015/03/05 03:32:00 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinSyncProviders.dll
[2015/03/05 03:31:59 | 001,197,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcenter.dll
[2015/03/05 03:31:59 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\els.dll
[2015/03/05 03:31:59 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TtlsAuth.dll
[2015/03/05 03:31:59 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prnntfy.dll
[2015/03/05 03:31:59 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsprop.dll
[2015/03/05 03:31:58 | 000,184,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetSetupApi.dll
[2015/03/05 03:31:58 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsprop.dll
[2015/03/05 03:31:58 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockScreenContent.dll
[2015/03/05 03:31:58 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\negoexts.dll
[2015/03/05 03:31:58 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\atl.dll
[2015/03/05 03:31:58 | 000,105,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mpr.dll
[2015/03/05 03:31:57 | 000,591,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vdsdyn.dll
[2015/03/05 03:31:57 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveui.dll
[2015/03/05 03:31:57 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unattend.dll
[2015/03/05 03:31:57 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3gpui.dll
[2015/03/05 03:31:57 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Enumeration.dll
[2015/03/05 03:31:57 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vssadmin.exe
[2015/03/05 03:31:57 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sqlcecompact40.dll
[2015/03/05 03:31:57 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\negoexts.dll
[2015/03/05 03:31:56 | 000,324,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BthHFSrv.dll
[2015/03/05 03:31:56 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netcorehc.dll
[2015/03/05 03:31:56 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\immersivetpmvscmgrsvr.exe
[2015/03/05 03:31:56 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tpmvscmgrsvr.exe
[2015/03/05 03:31:56 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rmttpmvscmgrsvr.exe
[2015/03/05 03:31:56 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmusic.dll
[2015/03/05 03:31:55 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rastapi.dll
[2015/03/05 03:31:55 | 000,184,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\els.dll
[2015/03/05 03:31:55 | 000,137,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PortableDeviceSyncProvider.dll
[2015/03/05 03:31:55 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSTPager.ax
[2015/03/05 03:31:54 | 003,317,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bootux.dll
[2015/03/05 03:31:54 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eudcedit.exe
[2015/03/05 03:31:54 | 000,279,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mycomput.dll
[2015/03/05 03:31:54 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSWB7.dll
[2015/03/05 03:31:54 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fdWSD.dll
[2015/03/05 03:31:53 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairing.dll
[2015/03/05 03:31:53 | 000,299,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VIDRESZR.DLL
[2015/03/05 03:31:53 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ndfapi.dll
[2015/03/05 03:31:53 | 000,238,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mlang.dll
[2015/03/05 03:31:53 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\txflog.dll
[2015/03/05 03:31:52 | 000,392,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\intl.cpl
[2015/03/05 03:31:52 | 000,228,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drt.dll
[2015/03/05 03:31:52 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdWSD.dll
[2015/03/05 03:31:52 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Tabbtn.dll
[2015/03/05 03:31:52 | 000,153,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcrypt.dll
[2015/03/05 03:31:52 | 000,125,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmapi.dll
[2015/03/05 03:31:52 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmcsp.dll
[2015/03/05 03:31:51 | 000,229,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RESAMPLEDMO.DLL
[2015/03/05 03:31:51 | 000,204,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netiohlp.dll
[2015/03/05 03:31:51 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceWMDRM.dll
[2015/03/05 03:31:51 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsadmin.exe
[2015/03/05 03:31:51 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhshl.dll
[2015/03/05 03:31:51 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
[2015/03/05 03:31:51 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VBICodec.ax
[2015/03/05 03:31:50 | 000,234,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SndVolSSO.dll
[2015/03/05 03:31:50 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CloudStorageWizard.exe
[2015/03/05 03:31:50 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BitLockerDeviceEncryption.exe
[2015/03/05 03:31:49 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rstrui.exe
[2015/03/05 03:31:49 | 000,246,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RESAMPLEDMO.DLL
[2015/03/05 03:31:49 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ssText3d.scr
[2015/03/05 03:31:49 | 000,178,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SimCfg.dll
[2015/03/05 03:31:49 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cca.dll
[2015/03/05 03:31:48 | 000,440,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\zipfldr.dll
[2015/03/05 03:31:48 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpdxm.dll
[2015/03/05 03:31:48 | 000,210,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imm32.dll
[2015/03/05 03:31:48 | 000,135,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpapi.dll
[2015/03/05 03:31:48 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BrokerLib.dll
[2015/03/05 03:31:47 | 001,157,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netcenter.dll
[2015/03/05 03:31:47 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSSync.dll
[2015/03/05 03:31:47 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tpmvscmgr.exe
[2015/03/05 03:31:47 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Kswdmcap.ax
[2015/03/05 03:31:46 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easwrt.dll
[2015/03/05 03:31:46 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ConfigureExpandedStorage.dll
[2015/03/05 03:31:45 | 000,209,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\powercfg.cpl
[2015/03/05 03:31:45 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\biwinrt.dll
[2015/03/05 03:31:45 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RMapi.dll
[2015/03/05 03:31:44 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\notepad.exe
[2015/03/05 03:31:44 | 000,181,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tcpipcfg.dll
[2015/03/05 03:31:44 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSDvbNP.ax
[2015/03/05 03:31:43 | 000,407,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanui.dll
[2015/03/05 03:31:43 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcpipcfg.dll
[2015/03/05 03:31:43 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rgb9rast.dll
[2015/03/05 03:31:43 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cscript.exe
[2015/03/05 03:31:43 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Mpeg2Data.ax
[2015/03/05 03:31:42 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rastapi.dll
[2015/03/05 03:31:42 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\imapi.dll
[2015/03/05 03:31:42 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\efswrt.dll
[2015/03/05 03:31:42 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\amstream.dll
[2015/03/05 03:31:42 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Management.Workplace.WorkplaceSettings.dll
[2015/03/05 03:31:41 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcbase.dll
[2015/03/05 03:31:41 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ssText3d.scr
[2015/03/05 03:31:41 | 000,199,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\prnntfy.dll
[2015/03/05 03:31:41 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\puiapi.dll
[2015/03/05 03:31:41 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SSShim.dll
[2015/03/05 03:31:40 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\polstore.dll
[2015/03/05 03:31:40 | 000,203,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\COLORCNV.DLL
[2015/03/05 03:31:40 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmidcom.dll
[2015/03/05 03:31:40 | 000,126,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmm.dll
[2015/03/05 03:31:40 | 000,110,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WPDShServiceObj.dll
[2015/03/05 03:31:39 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\globinputhost.dll
[2015/03/05 03:31:39 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Credentials.UI.UserConsentVerifier.dll
[2015/03/05 03:31:39 | 000,111,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RestoreOptIn.exe
[2015/03/05 03:31:38 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cic.dll
[2015/03/05 03:31:38 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profsvcext.dll
[2015/03/05 03:31:38 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Robocopy.exe
[2015/03/05 03:31:38 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bdaplgin.ax
[2015/03/05 03:31:37 | 000,675,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Vault.dll
[2015/03/05 03:31:37 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasppp.dll
[2015/03/05 03:31:37 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twext.dll
[2015/03/05 03:31:37 | 000,148,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wscapi.dll
[2015/03/05 03:31:36 | 000,483,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\powercpl.dll
[2015/03/05 03:31:36 | 000,458,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\powercpl.dll
[2015/03/05 03:31:36 | 000,202,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\powercfg.cpl
[2015/03/05 03:31:36 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtxoci.dll
[2015/03/05 03:31:36 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdeploy.dll
[2015/03/05 03:31:36 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtstocom.exe
[2015/03/05 03:31:36 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\txflog.dll
[2015/03/05 03:31:35 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apds.dll
[2015/03/05 03:31:35 | 000,205,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scrrun.dll
[2015/03/05 03:31:35 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dinput.dll
[2015/03/05 03:31:35 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\easwrt.dll
[2015/03/05 03:31:35 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\amstream.dll
[2015/03/05 03:31:34 | 000,154,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncbservice.dll
[2015/03/05 03:31:34 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dinput.dll
[2015/03/05 03:31:34 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rshx32.dll
[2015/03/05 03:31:34 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comrepl.dll
[2015/03/05 03:31:34 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbnetlib.dll
[2015/03/05 03:31:34 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wscinterop.dll
[2015/03/05 03:31:34 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppxSip.dll
[2015/03/05 03:31:33 | 000,251,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adsldpc.dll
[2015/03/05 03:31:33 | 000,159,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mimofcodec.dll
[2015/03/05 03:31:33 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\chartv.dll
[2015/03/05 03:31:33 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSTPager.ax
[2015/03/05 03:31:32 | 000,239,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vdsbas.dll
[2015/03/05 03:31:32 | 000,177,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wscapi.dll
[2015/03/05 03:31:32 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\puiapi.dll
[2015/03/05 03:31:32 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtstocom.exe
[2015/03/05 03:31:32 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\olethk32.dll
[2015/03/05 03:31:32 | 000,089,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\taskhost.exe
[2015/03/05 03:31:31 | 000,286,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wbadmin.exe
[2015/03/05 03:31:31 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmpdxm.dll
[2015/03/05 03:31:31 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nlhtml.dll
[2015/03/05 03:31:31 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSetupUI.dll
[2015/03/05 03:31:31 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WiFiDisplay.dll
[2015/03/05 03:31:30 | 000,512,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpaceControl.dll
[2015/03/05 03:31:30 | 000,428,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\FWPKCLNT.SYS
[2015/03/05 03:31:30 | 000,272,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\portcls.sys
[2015/03/05 03:31:30 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msaatext.dll
[2015/03/05 03:31:30 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwm.exe
[2015/03/05 03:31:30 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Robocopy.exe
[2015/03/05 03:31:29 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Winlangdb.dll
[2015/03/05 03:31:29 | 000,219,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstask.dll
[2015/03/05 03:31:29 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xwtpw32.dll
[2015/03/05 03:31:29 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wevtfwd.dll
[2015/03/05 03:31:28 | 000,196,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\elshyph.dll
[2015/03/05 03:31:28 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\logoncli.dll
[2015/03/05 03:31:28 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rshx32.dll
[2015/03/05 03:31:28 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comrepl.dll
[2015/03/05 03:31:28 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmcompos.dll
[2015/03/05 03:31:27 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dskquota.dll
[2015/03/05 03:31:27 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sqlcecompact40.dll
[2015/03/05 03:31:27 | 000,099,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MP3DMOD.DLL
[2015/03/05 03:31:27 | 000,094,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RestoreOptIn.exe
[2015/03/05 03:31:27 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dllhst3g.exe
[2015/03/05 03:31:26 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fde.dll
[2015/03/05 03:31:26 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rtm.dll
[2015/03/05 03:31:26 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Kswdmcap.ax
[2015/03/05 03:31:26 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cca.dll
[2015/03/05 03:31:25 | 000,469,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmdlgs.dll
[2015/03/05 03:31:25 | 000,400,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasplap.dll
[2015/03/05 03:31:25 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fms.dll
[2015/03/05 03:31:25 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinRtTracing.dll
[2015/03/05 03:31:25 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.WiFiDirect.dll
[2015/03/05 03:31:25 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Mpeg2Data.ax
[2015/03/05 03:31:25 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msasn1.dll
[2015/03/05 03:31:24 | 000,472,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\timedate.cpl
[2015/03/05 03:31:24 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\p2pnetsh.dll
[2015/03/05 03:31:24 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BootMenuUX.dll
[2015/03/05 03:31:23 | 000,264,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BioCredProv.dll
[2015/03/05 03:31:23 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\p2pnetsh.dll
[2015/03/05 03:31:23 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PortableDeviceWiaCompat.dll
[2015/03/05 03:31:22 | 000,615,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpd_ci.dll
[2015/03/05 03:31:22 | 000,605,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptui.dll
[2015/03/05 03:31:22 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\QAGENT.DLL
[2015/03/05 03:31:22 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SimCfg.dll
[2015/03/05 03:31:22 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSDvbNP.ax
[2015/03/05 03:31:21 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mycomput.dll
[2015/03/05 03:31:21 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fde.dll
[2015/03/05 03:31:21 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmidcom.dll
[2015/03/05 03:31:21 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twext.dll
[2015/03/05 03:31:21 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\oledlg.dll
[2015/03/05 03:31:20 | 000,311,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcbase.dll
[2015/03/05 03:31:20 | 000,306,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ntprint.dll
[2015/03/05 03:31:20 | 000,273,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NAPSTAT.EXE
[2015/03/05 03:31:20 | 000,119,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wkspbrokerAx.dll
[2015/03/05 03:31:20 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdprov.dll
[2015/03/05 03:31:20 | 000,081,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\devenum.dll
[2015/03/05 03:31:19 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sud.dll
[2015/03/05 03:31:19 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SndVolSSO.dll
[2015/03/05 03:31:19 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.HostName.dll
[2015/03/05 03:31:19 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TtlsAuth.dll
[2015/03/05 03:31:19 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiadss.dll
[2015/03/05 03:31:18 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nlmgp.dll
[2015/03/05 03:31:18 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SoundRecorder.exe
[2015/03/05 03:31:18 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\advpack.dll
[2015/03/05 03:31:17 | 000,241,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\logoncli.dll
[2015/03/05 03:31:17 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\QSHVHOST.DLL
[2015/03/05 03:31:17 | 000,129,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtclog.dll
[2015/03/05 03:31:17 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxoci.dll
[2015/03/05 03:31:17 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CallButtons.dll
[2015/03/05 03:31:16 | 000,517,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmdial32.dll
[2015/03/05 03:31:16 | 000,223,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ndfapi.dll
[2015/03/05 03:31:16 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\remotepg.dll
[2015/03/05 03:31:16 | 000,165,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ntasn1.dll
[2015/03/05 03:31:16 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\advpack.dll
[2015/03/05 03:31:16 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BdeHdCfgLib.dll
[2015/03/05 03:31:16 | 000,089,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfvdsp.dll
[2015/03/05 03:31:15 | 000,224,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntasn1.dll
[2015/03/05 03:31:15 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cscript.exe
[2015/03/05 03:31:15 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fdeploy.dll
[2015/03/05 03:31:15 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmscript.dll
[2015/03/05 03:31:15 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafBth.dll
[2015/03/05 03:31:14 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sud.dll
[2015/03/05 03:31:14 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\input.dll
[2015/03/05 03:31:14 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\net1.exe
[2015/03/05 03:31:14 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wiadss.dll
[2015/03/05 03:31:13 | 000,177,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\P2P.dll
[2015/03/05 03:31:13 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\desk.cpl
[2015/03/05 03:31:13 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sdiagprv.dll
[2015/03/05 03:31:13 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\chartv.dll
[2015/03/05 03:31:13 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
[2015/03/05 03:31:13 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\loadperf.dll
[2015/03/05 03:31:13 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\radardt.dll
[2015/03/05 03:31:12 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptuiwizard.dll
[2015/03/05 03:31:12 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rekeywiz.exe
[2015/03/05 03:31:12 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdWCN.dll
[2015/03/05 03:31:11 | 000,546,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActionCenterCPL.dll
[2015/03/05 03:31:11 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storewuauth.dll
[2015/03/05 03:31:11 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xwtpw32.dll
[2015/03/05 03:31:11 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msoert2.dll
[2015/03/05 03:31:11 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vaultcli.dll
[2015/03/05 03:31:11 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kstvtune.ax
[2015/03/05 03:31:11 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\avifil32.dll
[2015/03/05 03:31:11 | 000,090,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devenum.dll
21:オスカル :

2015/03/19 (Thu) 15:03:13

OTLログその6

[2015/03/05 03:31:10 | 000,426,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\intl.cpl
[2015/03/05 03:31:10 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PortableDeviceWMDRM.dll
[2015/03/05 03:31:10 | 000,138,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpdMtpUS.dll
[2015/03/05 03:31:10 | 000,113,664 | ---- | C] (Microsoft) -- C:\WINDOWS\SysNative\SMBHelperClass.dll
[2015/03/05 03:31:10 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Sockets.PushEnabledApplication.dll
[2015/03/05 03:31:09 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iprtrmgr.dll
[2015/03/05 03:31:09 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WLanHC.dll
[2015/03/05 03:31:09 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bthprops.cpl
[2015/03/05 03:31:09 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlancfg.dll
[2015/03/05 03:31:09 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rgb9rast.dll
[2015/03/05 03:31:09 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafupnp.dll
[2015/03/05 03:31:09 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Storage.Compression.dll
[2015/03/05 03:31:08 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstask.dll
[2015/03/05 03:31:08 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsicpl.dll
[2015/03/05 03:31:08 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dskquota.dll
[2015/03/05 03:31:08 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adsmsext.dll
[2015/03/05 03:31:07 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\unregmp2.exe
[2015/03/05 03:31:07 | 000,176,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdiagprv.dll
[2015/03/05 03:31:07 | 000,092,672 | ---- | C] (Microsoft) -- C:\WINDOWS\SysNative\VaultRoaming.dll
[2015/03/05 03:31:06 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wusa.exe
[2015/03/05 03:31:06 | 000,292,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3ui.dll
[2015/03/05 03:31:06 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adsldpc.dll
[2015/03/05 03:31:06 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windowslivelogin.dll
[2015/03/05 03:31:06 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QSVRMGMT.DLL
[2015/03/05 03:31:05 | 000,968,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certca.dll
[2015/03/05 03:31:05 | 000,528,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActionCenterCPL.dll
[2015/03/05 03:31:05 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceSetupManager.dll
[2015/03/05 03:31:05 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XPSSHHDR.dll
[2015/03/05 03:31:05 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TabbtnEx.dll
[2015/03/05 03:31:05 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bdaplgin.ax
[2015/03/05 03:31:05 | 000,076,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfvdsp.dll
[2015/03/05 03:31:04 | 000,468,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RASMM.dll
[2015/03/05 03:31:04 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tracerpt.exe
[2015/03/05 03:31:04 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchFilterHost.exe
[2015/03/05 03:31:04 | 000,191,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\systemreset.exe
[2015/03/05 03:31:04 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\avifil32.dll
[2015/03/05 03:31:04 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
[2015/03/05 03:31:04 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adhsvc.dll
[2015/03/05 03:31:03 | 000,685,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsuiext.dll
[2015/03/05 03:31:03 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\prncache.dll
[2015/03/05 03:31:03 | 000,116,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MP3DMOD.DLL
[2015/03/05 03:31:03 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adsmsext.dll
[2015/03/05 03:31:03 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ndishc.dll
[2015/03/05 03:31:03 | 000,093,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Credentials.UI.CredentialPicker.dll
[2015/03/05 03:31:02 | 000,671,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsuiext.dll
[2015/03/05 03:31:02 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\raschap.dll
[2015/03/05 03:31:02 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\newdev.dll
[2015/03/05 03:31:02 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icsigd.dll
[2015/03/05 03:31:02 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fvenotify.exe
[2015/03/05 03:31:02 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\verifier.exe
[2015/03/05 03:31:02 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\taskkill.exe
[2015/03/05 03:31:01 | 000,205,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\remotepg.dll
[2015/03/05 03:31:01 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnshc.dll
[2015/03/05 03:31:00 | 000,898,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdclt.exe
[2015/03/05 03:31:00 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmTasks.dll
[2015/03/05 03:31:00 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthBroker.dll
[2015/03/05 03:31:00 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbccp32.dll
[2015/03/05 03:30:59 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\discan.dll
[2015/03/05 03:30:59 | 000,179,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nlmgp.dll
[2015/03/05 03:30:59 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ProximityCommon.dll
[2015/03/05 03:30:59 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceClassExtension.dll
[2015/03/05 03:30:59 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msaatext.dll
[2015/03/05 03:30:58 | 000,518,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\timedate.cpl
[2015/03/05 03:30:58 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceMetadataRetrievalClient.dll
[2015/03/05 03:30:58 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SSShim.dll
[2015/03/05 03:30:58 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\kstvtune.ax
[2015/03/05 03:30:58 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fdSSDP.dll
[2015/03/05 03:30:57 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msrahc.dll
[2015/03/05 03:30:57 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncobjapi.dll
[2015/03/05 03:30:56 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\P2P.dll
[2015/03/05 03:30:56 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsrv.dll
[2015/03/05 03:30:56 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptcatsvc.dll
[2015/03/05 03:30:56 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\oleprn.dll
[2015/03/05 03:30:56 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmifw.dll
[2015/03/05 03:30:56 | 000,080,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\imagehlp.dll
[2015/03/05 03:30:56 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AepRoam.dll
[2015/03/05 03:30:55 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msvfw32.dll
[2015/03/05 03:30:55 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhsvc.dll
[2015/03/05 03:30:55 | 000,119,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ndfhcdiscovery.dll
[2015/03/05 03:30:55 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ndfetw.dll
[2015/03/05 03:30:54 | 000,644,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dccw.exe
[2015/03/05 03:30:54 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountTokenProvider.dll
[2015/03/05 03:30:54 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wkspbrokerAx.dll
[2015/03/05 03:30:54 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmifw.dll
[2015/03/05 03:30:54 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ddrawex.dll
[2015/03/05 03:30:53 | 000,441,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceStatus.dll
[2015/03/05 03:30:53 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oleprn.dll
[2015/03/05 03:30:53 | 000,110,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icfupgd.dll
[2015/03/05 03:30:53 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wecapi.dll
[2015/03/05 03:30:52 | 000,467,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiashext.dll
[2015/03/05 03:30:52 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmstp.exe
[2015/03/05 03:30:52 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uexfat.dll
[2015/03/05 03:30:52 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uexfat.dll
[2015/03/05 03:30:52 | 000,073,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Security.Credentials.UI.CredentialPicker.dll
[2015/03/05 03:30:52 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spoolss.dll
[2015/03/05 03:30:51 | 000,446,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wiashext.dll
[2015/03/05 03:30:51 | 000,342,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eudcedit.exe
[2015/03/05 03:30:51 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EhStorShell.dll
[2015/03/05 03:30:51 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\smbwmiv2.dll
[2015/03/05 03:30:50 | 000,179,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RstrtMgr.dll
[2015/03/05 03:30:50 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rekeywiz.exe
[2015/03/05 03:30:50 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fms.dll
[2015/03/05 03:30:50 | 000,084,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\taskhostex.exe
[2015/03/05 03:30:50 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ksxbar.ax
[2015/03/05 03:30:50 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devrtl.dll
[2015/03/05 03:30:49 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shdocvw.dll
[2015/03/05 03:30:49 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthBroker.dll
[2015/03/05 03:30:49 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IdCtrls.dll
[2015/03/05 03:30:49 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ELSCore.dll
[2015/03/05 03:30:49 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ssdpapi.dll
[2015/03/05 03:30:48 | 000,197,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PkgMgr.exe
[2015/03/05 03:30:48 | 000,124,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\raserver.exe
[2015/03/05 03:30:48 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinMsoIrmProtector.dll
[2015/03/05 03:30:48 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinOpcIrmProtector.dll
[2015/03/05 03:30:48 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FXSXP32.dll
[2015/03/05 03:30:48 | 000,097,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptdll.dll
[2015/03/05 03:30:48 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shsetup.dll
[2015/03/05 03:30:47 | 000,355,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Winlangdb.dll
[2015/03/05 03:30:47 | 000,145,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wininit.exe
[2015/03/05 03:30:47 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\davclnt.dll
[2015/03/05 03:30:47 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SPInf.dll
[2015/03/05 03:30:47 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prvdmofcomp.dll
[2015/03/05 03:30:47 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CallButtons.dll
[2015/03/05 03:30:46 | 000,099,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptxml.dll
[2015/03/05 03:30:46 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDSAppXHelper.dll
[2015/03/05 03:30:46 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Devices.dll
[2015/03/05 03:30:46 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Custom.dll
[2015/03/05 03:30:46 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BthRadioMedia.dll
[2015/03/05 03:30:46 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ELSCore.dll
[2015/03/05 03:30:45 | 000,320,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3ui.dll
[2015/03/05 03:30:45 | 000,197,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dssenh.dll
[2015/03/05 03:30:45 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsdmo.dll
[2015/03/05 03:30:45 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Devices.dll
[2015/03/05 03:30:45 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontsub.dll
[2015/03/05 03:30:44 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfmjpegdec.dll
[2015/03/05 03:30:44 | 000,090,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfAACEnc.dll
[2015/03/05 03:30:44 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncobjapi.dll
[2015/03/05 03:30:43 | 000,287,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\modemui.dll
[2015/03/05 03:30:43 | 000,168,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\desk.cpl
[2015/03/05 03:30:43 | 000,168,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\basecsp.dll
[2015/03/05 03:30:43 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\raserver.exe
[2015/03/05 03:30:42 | 000,280,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\unimdm.tsp
[2015/03/05 03:30:42 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SNTSearch.dll
[2015/03/05 03:30:42 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlandlg.dll
[2015/03/05 03:30:42 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\manage-bde.exe
[2015/03/05 03:30:42 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.HostName.dll
[2015/03/05 03:30:42 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinRtTracing.dll
[2015/03/05 03:30:42 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fmapi.dll
[2015/03/05 03:30:42 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\l2gpstore.dll
[2015/03/05 03:30:41 | 000,427,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasplap.dll
[2015/03/05 03:30:41 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PortableDeviceClassExtension.dll
[2015/03/05 03:30:41 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafWCN.dll
[2015/03/05 03:30:41 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\globinputhost.dll
[2015/03/05 03:30:41 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\taskkill.exe
[2015/03/05 03:30:41 | 000,018,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CompPkgSup.dll
[2015/03/05 03:30:40 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10_1.dll
[2015/03/05 03:30:40 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fphc.dll
[2015/03/05 03:30:40 | 000,110,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfps.dll
[2015/03/05 03:30:40 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinMsoIrmProtector.dll
[2015/03/05 03:30:40 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinOpcIrmProtector.dll
[2015/03/05 03:30:40 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ssdpapi.dll
[2015/03/05 03:30:39 | 000,430,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PortableDeviceStatus.dll
[2015/03/05 03:30:39 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdart.dll
[2015/03/05 03:30:39 | 000,101,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfAACEnc.dll
[2015/03/05 03:30:39 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wevtfwd.dll
[2015/03/05 03:30:39 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.WiFiDirect.dll
[2015/03/05 03:30:38 | 000,329,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pwlauncher.dll
[2015/03/05 03:30:38 | 000,209,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicePairingFolder.dll
[2015/03/05 03:30:38 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msorcl32.dll
[2015/03/05 03:30:38 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3mm.dll
[2015/03/05 03:30:38 | 000,136,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wfplwfs.sys
[2015/03/05 03:30:38 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\logagent.exe
[2015/03/05 03:30:37 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdBth.dll
[2015/03/05 03:30:37 | 000,098,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OpenWith.exe
[2015/03/05 03:30:37 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\systeminfo.exe
[2015/03/05 03:30:37 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Background.dll
[2015/03/05 03:30:36 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepapi.dll
[2015/03/05 03:30:36 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WcnApi.dll
[2015/03/05 03:30:36 | 000,119,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceSetupManagerAPI.dll
[2015/03/05 03:30:36 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceElementSource.dll
[2015/03/05 03:30:36 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\setupugc.exe
[2015/03/05 03:30:36 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\correngine.dll
[2015/03/05 03:30:35 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rascfg.dll
[2015/03/05 03:30:35 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ProximityCommon.dll
[2015/03/05 03:30:35 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\systeminfo.exe
[2015/03/05 03:30:35 | 000,085,504 | ---- | C] (Microsoft) -- C:\WINDOWS\SysWow64\SMBHelperClass.dll
[2015/03/05 03:30:35 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhsrchapi.dll
[2015/03/05 03:30:35 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhsrchph.dll
[2015/03/05 03:30:35 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\playlistfolder.dll
[2015/03/05 03:30:34 | 000,561,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dfrgui.exe
[2015/03/05 03:30:34 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmAuto.dll
[2015/03/05 03:30:34 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmview.ocx
[2015/03/05 03:30:34 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\l2gpstore.dll
[2015/03/05 03:30:33 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msconfig.exe
[2015/03/05 03:30:33 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApi.dll
[2015/03/05 03:30:33 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\glu32.dll
[2015/03/05 03:30:33 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdart.dll
[2015/03/05 03:30:33 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vssadmin.exe
[2015/03/05 03:30:33 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.Sockets.PushEnabledApplication.dll
[2015/03/05 03:30:33 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ksxbar.ax
[2015/03/05 03:30:32 | 000,201,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\icsigd.dll
[2015/03/05 03:30:32 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uxlib.dll
[2015/03/05 03:30:32 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rtm.dll
[2015/03/05 03:30:32 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mimofcodec.dll
[2015/03/05 03:30:32 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wecutil.exe
[2015/03/05 03:30:32 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ConsentUX.dll
[2015/03/05 03:30:31 | 000,196,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\basecsp.dll
[2015/03/05 03:30:31 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\threadpoolwinrt.dll
[2015/03/05 03:30:30 | 000,788,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Bubbles.scr
[2015/03/05 03:30:30 | 000,154,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usbceip.dll
[2015/03/05 03:30:30 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdSSDP.dll
[2015/03/05 03:30:30 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winethc.dll
[2015/03/05 03:30:30 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fdBth.dll
[2015/03/05 03:30:30 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EAPQEC.DLL
[2015/03/05 03:30:30 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbccu32.dll
[2015/03/05 03:30:30 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbccr32.dll
[2015/03/05 03:30:30 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\logagent.exe
[2015/03/05 03:30:29 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tapi32.dll
[2015/03/05 03:30:29 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairingFolder.dll
[2015/03/05 03:30:29 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\IdCtrls.dll
[2015/03/05 03:30:29 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vaultcli.dll
[2015/03/05 03:30:29 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WABSyncProvider.dll
[2015/03/05 03:30:28 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cttune.exe
[2015/03/05 03:30:28 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmAuto.dll
[2015/03/05 03:30:28 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Mystify.scr
[2015/03/05 03:30:28 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Ribbons.scr
[2015/03/05 03:30:28 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidfdp.dll
[2015/03/05 03:30:28 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QUTIL.DLL
[2015/03/05 03:30:28 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samcli.dll
[2015/03/05 03:30:28 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\colbact.dll
[2015/03/05 03:30:28 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\g711codc.ax
[2015/03/05 03:30:28 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpninprc.dll
[2015/03/05 03:30:27 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wshom.ocx
[2015/03/05 03:30:27 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApi.dll
[2015/03/05 03:30:27 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbccu32.dll
[2015/03/05 03:30:27 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbccr32.dll
[2015/03/05 03:30:27 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsiwmi.dll
[2015/03/05 03:30:27 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cscapi.dll
[2015/03/05 03:30:26 | 000,293,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EaseOfAccessDialog.exe
[2015/03/05 03:30:26 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sethc.exe
[2015/03/05 03:30:26 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\glu32.dll
[2015/03/05 03:30:26 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RstrtMgr.dll
[2015/03/05 03:30:26 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DAMM.dll
[2015/03/05 03:30:26 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmview.ocx
[2015/03/05 03:30:26 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Utilman.exe
[2015/03/05 03:30:26 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BluetoothApis.dll
[2015/03/05 03:30:25 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SimAuth.dll
[2015/03/05 03:30:25 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eqossnap.dll
[2015/03/05 03:30:24 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unimdm.tsp
[2015/03/05 03:30:24 | 000,172,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kd_02_8086.dll
[2015/03/05 03:30:23 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\verifier.exe
[2015/03/05 03:30:23 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ScDeviceEnum.dll
[2015/03/05 03:30:23 | 000,091,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OpenWith.exe
[2015/03/05 03:30:23 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scripto.dll
[2015/03/05 03:30:22 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\L2SecHC.dll
[2015/03/05 03:30:22 | 000,153,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netplwiz.dll
[2015/03/05 03:30:22 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NdisImPlatform.dll
[2015/03/05 03:30:22 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scavengeui.dll
[2015/03/05 03:30:22 | 000,106,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msacm32.dll
[2015/03/05 03:30:22 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tasklist.exe
[2015/03/05 03:30:21 | 000,122,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptsp.dll
[2015/03/05 03:30:21 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmpshell.dll
[2015/03/05 03:30:21 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nlahc.dll
[2015/03/05 03:30:21 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\logman.exe
[2015/03/05 03:30:21 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\networkitemfactory.dll
[2015/03/05 03:30:20 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bthprops.cpl
[2015/03/05 03:30:20 | 000,070,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profapi.dll
[2015/03/05 03:30:20 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xcopy.exe
[2015/03/05 03:30:20 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xcopy.exe
[2015/03/05 03:30:19 | 001,678,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\networkexplorer.dll
[2015/03/05 03:30:19 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Bubbles.scr
[2015/03/05 03:30:19 | 000,330,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\polstore.dll
[2015/03/05 03:30:19 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\QSVRMGMT.DLL
[2015/03/05 03:30:19 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\colbact.dll
[2015/03/05 03:30:19 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtxdm.dll
[2015/03/05 03:30:18 | 000,153,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\syncui.dll
[2015/03/05 03:30:18 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdadiag.dll
[2015/03/05 03:30:18 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mi.dll
[2015/03/05 03:30:18 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmstp.exe
[2015/03/05 03:30:17 | 000,660,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dccw.exe
[2015/03/05 03:30:17 | 000,289,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\compstui.dll
[2015/03/05 03:30:17 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\korwbrkr.dll
[2015/03/05 03:30:17 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setupugc.exe
[2015/03/05 03:30:17 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdsdwmdr.dll
[2015/03/05 03:30:17 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ConfigureExpandedStorage.dll
[2015/03/05 03:30:16 | 000,327,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cttune.exe
[2015/03/05 03:30:16 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfmjpegdec.dll
[2015/03/05 03:30:16 | 000,121,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Mystify.scr
[2015/03/05 03:30:16 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Ribbons.scr
[2015/03/05 03:30:16 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fphc.dll
[2015/03/05 03:30:16 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TpmInit.exe
[2015/03/05 03:30:16 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netprovisionsp.dll
[2015/03/05 03:30:16 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Syncreg.dll
[2015/03/05 03:30:15 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autoplay.dll
[2015/03/05 03:30:15 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TapiMigPlugin.dll
[2015/03/05 03:30:14 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshom.ocx
[2015/03/05 03:30:14 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\t2embed.dll
[2015/03/05 03:30:14 | 000,076,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sessionmsg.exe
[2015/03/05 03:30:14 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsigd.dll
[2015/03/05 03:30:14 | 000,030,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintDialogHost.exe
[2015/03/05 03:30:13 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SimAuth.dll
[2015/03/05 03:30:13 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oledlg.dll
[2015/03/05 03:30:13 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\secproc_ssp_isv.dll
[2015/03/05 03:30:13 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\secproc_ssp.dll
[2015/03/05 03:30:13 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\igdDiag.dll
[2015/03/05 03:30:13 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFoldersGPExt.dll
[2015/03/05 03:30:13 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nduprov.dll
[2015/03/05 03:30:12 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlandlg.dll
[2015/03/05 03:30:12 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\korwbrkr.dll
[2015/03/05 03:30:12 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertPolEng.dll
[2015/03/05 03:30:12 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Custom.dll
[2015/03/05 03:30:11 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nshipsec.dll
[2015/03/05 03:30:11 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profprov.dll
[2015/03/05 03:30:11 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiascanprofiles.dll
[2015/03/05 03:30:11 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\getmac.exe
[2015/03/05 03:30:10 | 001,129,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wscui.cpl
[2015/03/05 03:30:10 | 000,277,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\powrprof.dll
[2015/03/05 03:30:10 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mi.dll
[2015/03/05 03:30:10 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsockhc.dll
[2015/03/05 03:30:10 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3hc.dll
[2015/03/05 03:30:10 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tsgqec.dll
[2015/03/05 03:30:09 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\secproc_ssp_isv.dll
[2015/03/05 03:30:09 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\secproc_ssp.dll
[2015/03/05 03:30:09 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertPolEng.dll
[2015/03/05 03:30:09 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Syncreg.dll
[2015/03/05 03:30:09 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gacinstall.dll
[2015/03/05 03:30:08 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netid.dll
[2015/03/05 03:30:08 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3api.dll
[2015/03/05 03:30:08 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Query.dll
[2015/03/05 03:30:08 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\prvdmofcomp.dll
[2015/03/05 03:30:08 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sfc_os.dll
[2015/03/05 03:30:07 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\logman.exe
[2015/03/05 03:30:07 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MsSpellCheckingHost.exe
[2015/03/05 03:30:07 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbisurf.ax
[2015/03/05 03:30:06 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\charmap.exe
[2015/03/05 03:30:06 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpshell.dll
[2015/03/05 03:30:06 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\getmac.exe
[2015/03/05 03:30:06 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ndishc.dll
[2015/03/05 03:30:06 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scripto.dll
[2015/03/05 03:30:06 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\g711codc.ax
[2015/03/05 03:30:05 | 001,152,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wscui.cpl
[2015/03/05 03:30:05 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsdmo.dll
[2015/03/05 03:30:05 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WfHC.dll
[2015/03/05 03:30:05 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\QCLIPROV.DLL
[2015/03/05 03:30:05 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntlanman.dll
[2015/03/05 03:30:05 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WABSyncProvider.dll
[2015/03/05 03:30:04 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\input.dll
[2015/03/05 03:30:04 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetpp.dll
[2015/03/05 03:30:04 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EhStorAPI.dll
[2015/03/05 03:30:03 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\colorui.dll
[2015/03/05 03:30:03 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\synceng.dll
[2015/03/05 03:30:03 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\drmk.sys
[2015/03/05 03:30:03 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\synceng.dll
[2015/03/05 03:30:02 | 000,169,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\net1.exe
[2015/03/05 03:30:02 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\autoplay.dll
[2015/03/05 03:30:02 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\olecli32.dll
[2015/03/05 03:30:02 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PortableDeviceConnectApi.dll
[2015/03/05 03:30:02 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fmifs.dll
[2015/03/05 03:30:01 | 000,124,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptxml.dll
[2015/03/05 03:30:01 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usbceip.dll
[2015/03/05 03:30:01 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BluetoothApis.dll
[2015/03/05 03:30:01 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ndfhcdiscovery.dll
[2015/03/05 03:30:01 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\driverquery.exe
[2015/03/05 03:30:01 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\udhisapi.dll
[2015/03/05 03:30:01 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mbussdapi.dll
[2015/03/05 03:30:00 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\systemcpl.dll
[2015/03/05 03:30:00 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wshext.dll
[2015/03/05 03:30:00 | 000,067,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RpcRtRemote.dll
[2015/03/05 03:30:00 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wecapi.dll
[2015/03/05 03:30:00 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netprovisionsp.dll
22:オスカル :

2015/03/19 (Thu) 15:06:06

OTLログその7

[2015/03/05 03:29:59 | 000,383,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlansec.dll
[2015/03/05 03:29:59 | 000,244,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scksp.dll
[2015/03/05 03:29:59 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Dsui.dll
[2015/03/05 03:29:59 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\racpldlg.dll
[2015/03/05 03:29:59 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Renewal.dll
[2015/03/05 03:29:59 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Background.dll
[2015/03/05 03:29:58 | 000,287,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\systemcpl.dll
[2015/03/05 03:29:58 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tasklist.exe
[2015/03/05 03:29:58 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WcnApi.dll
[2015/03/05 03:29:58 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\loghours.dll
[2015/03/05 03:29:58 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\threadpoolwinrt.dll
[2015/03/05 03:29:58 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TapiMigPlugin.dll
[2015/03/05 03:29:57 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\taskbarcpl.dll
[2015/03/05 03:29:57 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fsutil.exe
[2015/03/05 03:29:57 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wiascanprofiles.dll
[2015/03/05 03:29:57 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cliconfg.dll
[2015/03/05 03:29:57 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\playlistfolder.dll
[2015/03/05 03:29:57 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dssec.dll
[2015/03/05 03:29:56 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ocsetapi.dll
[2015/03/05 03:29:56 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MicrosoftAccountTokenProvider.dll
[2015/03/05 03:29:56 | 000,086,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wkscli.dll
[2015/03/05 03:29:56 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XPSSHHDR.dll
[2015/03/05 03:29:56 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fveskybackup.dll
[2015/03/05 03:29:56 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ConnectedAccountState.dll
[2015/03/05 03:29:55 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepsync.dll
[2015/03/05 03:29:55 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fwcfg.dll
[2015/03/05 03:29:55 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSManMigrationPlugin.dll
[2015/03/05 03:29:55 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\makecab.exe
[2015/03/05 03:29:55 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlanRadioManager.dll
[2015/03/05 03:29:55 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WwanRadioManager.dll
[2015/03/05 03:29:55 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\udhisapi.dll
[2015/03/05 03:29:54 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlgpclnt.dll
[2015/03/05 03:29:54 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmsynth.dll
[2015/03/05 03:29:54 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlgpclnt.dll
[2015/03/05 03:29:54 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pautoenr.dll
[2015/03/05 03:29:54 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Storprop.dll
[2015/03/05 03:29:54 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\net.exe
[2015/03/05 03:29:53 | 000,151,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\L2SecHC.dll
[2015/03/05 03:29:53 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dab.dll
[2015/03/05 03:29:53 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSROUTE.dll
[2015/03/05 03:29:53 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winsockhc.dll
[2015/03/05 03:29:53 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3hc.dll
[2015/03/05 03:29:53 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vbisurf.ax
[2015/03/05 03:29:52 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mciavi32.dll
[2015/03/05 03:29:52 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eqossnap.dll
[2015/03/05 03:29:52 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\powercfg.exe
[2015/03/05 03:29:52 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhcleanup.dll
[2015/03/05 03:29:52 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ustprov.dll
[2015/03/05 03:29:52 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mbussdapi.dll
[2015/03/05 03:29:52 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\devrtl.dll
[2015/03/05 03:29:52 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SetNetworkLocation.dll
[2015/03/05 03:29:51 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeParserTask.exe
[2015/03/05 03:29:51 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DHCPQEC.DLL
[2015/03/05 03:29:51 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\frprov.dll
[2015/03/05 03:29:51 | 000,064,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wtsapi32.dll
[2015/03/05 03:29:51 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3cfg.dll
[2015/03/05 03:29:51 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tsgqec.dll
[2015/03/05 03:29:51 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ustprov.dll
[2015/03/05 03:29:51 | 000,022,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ksuser.dll
[2015/03/05 03:29:50 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\compstui.dll
[2015/03/05 03:29:50 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\loghours.dll
[2015/03/05 03:29:50 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EAPQEC.DLL
[2015/03/05 03:29:50 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\frprov.dll
[2015/03/05 03:29:50 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\umpowmi.dll
[2015/03/05 03:29:50 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssign32.dll
[2015/03/05 03:29:50 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmloader.dll
[2015/03/05 03:29:49 | 000,269,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scksp.dll
[2015/03/05 03:29:49 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdadiag.dll
[2015/03/05 03:29:49 | 000,130,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsiwmiv2.dll
[2015/03/05 03:29:49 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\unimdmat.dll
[2015/03/05 03:29:48 | 000,184,832 | ---- | C] (Microsoft Corp.) -- C:\WINDOWS\SysNative\Defrag.exe
[2015/03/05 03:29:48 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mapistub.dll
[2015/03/05 03:29:48 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wecutil.exe
[2015/03/05 03:29:48 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usbui.dll
[2015/03/05 03:29:48 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Groupinghc.dll
[2015/03/05 03:29:48 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wkscli.dll
[2015/03/05 03:29:48 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSManMigrationPlugin.dll
[2015/03/05 03:29:48 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dssec.dll
[2015/03/05 03:29:48 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Shell.Search.UriHandler.dll
[2015/03/05 03:29:48 | 000,021,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsrole.dll
[2015/03/05 03:29:47 | 000,186,368 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\SysWow64\l3codecp.acm
[2015/03/05 03:29:47 | 000,170,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netplwiz.dll
[2015/03/05 03:29:47 | 000,160,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\werui.dll
[2015/03/05 03:29:47 | 000,149,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srvcli.dll
[2015/03/05 03:29:47 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshext.dll
[2015/03/05 03:29:47 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\makecab.exe
[2015/03/05 03:29:47 | 000,080,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcd.dll
[2015/03/05 03:29:47 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MsSpellCheckingHost.exe
[2015/03/05 03:29:46 | 000,578,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dfrgui.exe
[2015/03/05 03:29:46 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitagent.exe
[2015/03/05 03:29:46 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sxproxy.dll
[2015/03/05 03:29:46 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidfdp.dll
[2015/03/05 03:29:45 | 000,624,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\colorui.dll
[2015/03/05 03:29:45 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Dsui.dll
[2015/03/05 03:29:45 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmsynth.dll
[2015/03/05 03:29:45 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drvinst.exe
[2015/03/05 03:29:45 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\basesrv.dll
[2015/03/05 03:29:45 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xmlfilter.dll
[2015/03/05 03:29:45 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ftp.exe
[2015/03/05 03:29:44 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uxlib.dll
[2015/03/05 03:29:44 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnpclean.dll
[2015/03/05 03:29:44 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmInit.exe
[2015/03/05 03:29:44 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\driverquery.exe
[2015/03/05 03:29:44 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SMSRouter.dll
[2015/03/05 03:29:43 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mydocs.dll
[2015/03/05 03:29:43 | 000,089,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\vmbkmcl.sys
[2015/03/05 03:29:43 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Pnrphc.dll
[2015/03/05 03:29:43 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bootcfg.exe
[2015/03/05 03:29:43 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Utilman.exe
[2015/03/05 03:29:43 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdvvmtransport.dll
[2015/03/05 03:29:43 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DfsShlEx.dll
[2015/03/05 03:29:43 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\energyprov.dll
[2015/03/05 03:29:42 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\splwow64.exe
[2015/03/05 03:29:42 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\remotesp.tsp
[2015/03/05 03:29:42 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WfHC.dll
[2015/03/05 03:29:42 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\l2nacp.dll
[2015/03/05 03:29:42 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ConnectedAccountState.dll
[2015/03/05 03:29:41 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\onexui.dll
[2015/03/05 03:29:41 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhtask.dll
[2015/03/05 03:29:41 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PortableDeviceConnectApi.dll
[2015/03/05 03:29:41 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxSysprep.dll
[2015/03/05 03:29:41 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msisip.dll
[2015/03/05 03:29:40 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\isoburn.exe
[2015/03/05 03:29:40 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsiwmiv2.dll
[2015/03/05 03:29:40 | 000,085,504 | ---- | C] (Radius Inc.) -- C:\WINDOWS\SysWow64\iccvid.dll
[2015/03/05 03:29:40 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DfsShlEx.dll
[2015/03/05 03:29:40 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MaintenanceUI.dll
[2015/03/05 03:29:40 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vfwwdm32.dll
[2015/03/05 03:29:39 | 000,201,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mdminst.dll
[2015/03/05 03:29:39 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gcdef.dll
[2015/03/05 03:29:39 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\recovery.dll
[2015/03/05 03:29:39 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\QUTIL.DLL
[2015/03/05 03:29:39 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MsRdpWebAccess.dll
[2015/03/05 03:29:38 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\remotesp.tsp
[2015/03/05 03:29:38 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3dxof.dll
[2015/03/05 03:29:38 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\format.com
[2015/03/05 03:29:38 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmloader.dll
[2015/03/05 03:29:37 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\radardt.dll
[2015/03/05 03:29:37 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PNPXAssoc.dll
[2015/03/05 03:29:37 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FXSCOM.dll
[2015/03/05 03:29:37 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eappprxy.dll
[2015/03/05 03:29:36 | 000,277,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EaseOfAccessDialog.exe
[2015/03/05 03:29:36 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\credui.dll
[2015/03/05 03:29:36 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\regapi.dll
[2015/03/05 03:29:36 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nslookup.exe
[2015/03/05 03:29:36 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWanHC.dll
[2015/03/05 03:29:36 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\QCLIPROV.DLL
[2015/03/05 03:29:36 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Printers.Extensions.dll
[2015/03/05 03:29:35 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\onex.dll
[2015/03/05 03:29:35 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netid.dll
[2015/03/05 03:29:35 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fwcfg.dll
[2015/03/05 03:29:35 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dispdiag.exe
[2015/03/05 03:29:35 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\net.exe
[2015/03/05 03:29:35 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\httpapi.dll
[2015/03/05 03:29:34 | 001,086,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\onexui.dll
[2015/03/05 03:29:34 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winrscmd.dll
[2015/03/05 03:29:34 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DHCPQEC.DLL
[2015/03/05 03:29:34 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\avicap32.dll
[2015/03/05 03:29:34 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xmlfilter.dll
[2015/03/05 03:29:34 | 000,044,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netutils.dll
[2015/03/05 03:29:33 | 000,305,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wusa.exe
[2015/03/05 03:29:33 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\racpldlg.dll
[2015/03/05 03:29:33 | 000,054,272 | ---- | C] (Twain Working Group) -- C:\WINDOWS\twain_32.dll
[2015/03/05 03:29:33 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\luainstall.dll
[2015/03/05 03:29:33 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bidispl.dll
[2015/03/05 03:29:33 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mimefilt.dll
[2015/03/05 03:29:32 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\keymgr.dll
[2015/03/05 03:29:32 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\McxDriv.dll
[2015/03/05 03:29:32 | 000,138,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DWWIN.EXE
[2015/03/05 03:29:32 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xwreg.dll
[2015/03/05 03:29:32 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvcirt.dll
[2015/03/05 03:29:32 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SortWindows6Compat.dll
[2015/03/05 03:29:32 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DAConn.dll
[2015/03/05 03:29:31 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepapi.dll
[2015/03/05 03:29:31 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winbio.dll
[2015/03/05 03:29:31 | 000,090,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\isoburn.exe
[2015/03/05 03:29:31 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSCOM.dll
[2015/03/05 03:29:31 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\findnetprinters.dll
[2015/03/05 03:29:31 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ftp.exe
[2015/03/05 03:29:30 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gcdef.dll
[2015/03/05 03:29:30 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\efsadu.dll
[2015/03/05 03:29:30 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserAccountControlSettings.dll
[2015/03/05 03:29:30 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\umb.dll
[2015/03/05 03:29:30 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HelpPaneProxy.dll
[2015/03/05 03:29:30 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdiagschd.dll
[2015/03/05 03:29:29 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mydocs.dll
[2015/03/05 03:29:29 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontsub.dll
[2015/03/05 03:29:29 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spfileq.dll
[2015/03/05 03:29:29 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\l2nacp.dll
[2015/03/05 03:29:29 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bidispl.dll
[2015/03/05 03:29:28 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dasHost.exe
[2015/03/05 03:29:28 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sendmail.dll
[2015/03/05 03:29:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RegCtrl.dll
[2015/03/05 03:29:28 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmband.dll
[2015/03/05 03:29:28 | 000,034,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredentialUIBroker.exe
[2015/03/05 03:29:28 | 000,030,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserAccountBroker.exe
[2015/03/05 03:29:28 | 000,028,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CameraSettingsUIHost.exe
[2015/03/05 03:29:28 | 000,026,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PickerHost.exe
[2015/03/05 03:29:27 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vdsutil.dll
[2015/03/05 03:29:27 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcshext.dll
[2015/03/05 03:29:27 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netsh.exe
[2015/03/05 03:29:27 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhlisten.dll
[2015/03/05 03:29:27 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MsRdpWebAccess.dll
[2015/03/05 03:29:26 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\syncui.dll
[2015/03/05 03:29:26 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\stclient.dll
[2015/03/05 03:29:26 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mciqtz32.dll
[2015/03/05 03:29:26 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Shell.Search.UriHandler.dll
[2015/03/05 03:29:25 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsiwmi.dll
[2015/03/05 03:29:25 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasdiag.dll
[2015/03/05 03:29:25 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncHost.exe
[2015/03/05 03:29:25 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pdhui.dll
[2015/03/05 03:29:25 | 000,045,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CloudNotifications.exe
[2015/03/05 03:29:25 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToStatusProvider.dll
[2015/03/05 03:29:24 | 000,188,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\irftp.exe
[2015/03/05 03:29:24 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wiaacmgr.exe
[2015/03/05 03:29:24 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RoamingSecurity.dll
[2015/03/05 03:29:23 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uireng.dll
[2015/03/05 03:29:23 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiaacmgr.exe
[2015/03/05 03:29:23 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevDispItemProvider.dll
[2015/03/05 03:29:23 | 000,064,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\appidapi.dll
[2015/03/05 03:29:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ucmhc.dll
[2015/03/05 03:29:23 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\stclient.dll
[2015/03/05 03:29:23 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cfgbkend.dll
[2015/03/05 03:29:23 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cnvfat.dll
[2015/03/05 03:29:22 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcshext.dll
[2015/03/05 03:29:22 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasdiag.dll
[2015/03/05 03:29:22 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\w32tm.exe
[2015/03/05 03:29:22 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offreg.dll
[2015/03/05 03:29:22 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RegCtrl.dll
[2015/03/05 03:29:22 | 000,040,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CloudNotifications.exe
[2015/03/05 03:29:22 | 000,038,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredentialUIBroker.exe
[2015/03/05 03:29:22 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vidcap.ax
[2015/03/05 03:29:21 | 000,921,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\refs.sys
[2015/03/05 03:29:21 | 000,700,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\elslad.dll
[2015/03/05 03:29:21 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cabview.dll
[2015/03/05 03:29:21 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\findnetprinters.dll
[2015/03/05 03:29:21 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncHost.exe
[2015/03/05 03:29:20 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werui.dll
[2015/03/05 03:29:20 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapistub.dll
[2015/03/05 03:29:20 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapi32.dll
[2015/03/05 03:29:20 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserAccountControlSettings.dll
[2015/03/05 03:29:20 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\btpanui.dll
[2015/03/05 03:29:20 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sendmail.dll
[2015/03/05 03:29:20 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdPnp.dll
[2015/03/05 03:29:20 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fmifs.dll
[2015/03/05 03:29:20 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\luainstall.dll
[2015/03/05 03:29:20 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FdDevQuery.dll
[2015/03/05 03:29:20 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Printers.Extensions.dll
[2015/03/05 03:29:19 | 000,393,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shrpubw.exe
[2015/03/05 03:29:19 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spbcd.dll
[2015/03/05 03:29:19 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\printfilterpipelineprxy.dll
[2015/03/05 03:29:19 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cnvfat.dll
[2015/03/05 03:29:18 | 000,241,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fsquirt.exe
[2015/03/05 03:29:18 | 000,150,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmpps.dll
[2015/03/05 03:29:18 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcwutl.dll
[2015/03/05 03:29:18 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3api.dll
[2015/03/05 03:29:18 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\acppage.dll
[2015/03/05 03:29:18 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fdPnp.dll
[2015/03/05 03:29:17 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msvfw32.dll
[2015/03/05 03:29:17 | 000,131,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easinvoker.exe
[2015/03/05 03:29:17 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\console.dll
[2015/03/05 03:29:17 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\keyiso.dll
[2015/03/05 03:29:17 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ucmhc.dll
[2015/03/05 03:29:17 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\HelpPaneProxy.dll
[2015/03/05 03:29:17 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mciqtz32.dll
[2015/03/05 03:29:17 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ndfetw.dll
[2015/03/05 03:29:16 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spfileq.dll
[2015/03/05 03:29:16 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\openfiles.exe
[2015/03/05 03:29:16 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3dlg.dll
[2015/03/05 03:29:16 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pautoenr.dll
[2015/03/05 03:29:16 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AtBroker.exe
[2015/03/05 03:29:16 | 000,038,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\svchost.exe
[2015/03/05 03:29:16 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rrinstaller.exe
[2015/03/05 03:29:16 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceDisplayStatusManager.dll
[2015/03/05 03:29:16 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mimefilt.dll
[2015/03/05 03:29:15 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offreg.dll
[2015/03/05 03:29:15 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rrinstaller.exe
[2015/03/05 03:29:14 | 000,177,152 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\SysNative\l3codecp.acm
[2015/03/05 03:29:14 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDSPnf.exe
[2015/03/05 03:29:14 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\takeown.exe
[2015/03/05 03:29:14 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UXInit.dll
[2015/03/05 03:29:14 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msimtf.dll
[2015/03/05 03:29:14 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmdl32.exe
[2015/03/05 03:29:14 | 000,039,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdmo.dll
[2015/03/05 03:29:14 | 000,038,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\utildll.dll
[2015/03/05 03:29:13 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srclient.dll
[2015/03/05 03:29:13 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptext.dll
[2015/03/05 03:29:13 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bderepair.dll
[2015/03/05 03:29:13 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\signdrv.dll
[2015/03/05 03:29:13 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RemoveDeviceContextHandler.dll
[2015/03/05 03:29:12 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfmon.exe
[2015/03/05 03:29:12 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cabview.dll
[2015/03/05 03:29:12 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EhStorAuthn.exe
[2015/03/05 03:29:12 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthExt.dll
[2015/03/05 03:29:11 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSUTILITY.dll
[2015/03/05 03:29:11 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xwreg.dll
[2015/03/05 03:29:11 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EhStorPwdMgr.dll
[2015/03/05 03:29:11 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winbio.dll
[2015/03/05 03:29:11 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\signdrv.dll
[2015/03/05 03:29:11 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\docprop.dll
[2015/03/05 03:29:10 | 000,231,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\onex.dll
[2015/03/05 03:29:10 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msvcirt.dll
[2015/03/05 03:29:10 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acppage.dll
[2015/03/05 03:29:10 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Globalization.Fontgroups.dll
[2015/03/05 03:29:10 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthExt.dll
[2015/03/05 03:29:10 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DeviceDisplayStatusManager.dll
[2015/03/05 03:29:10 | 000,029,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfpmp.exe
[2015/03/05 03:29:09 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlaySndSrv.dll
[2015/03/05 03:29:09 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vsstrace.dll
[2015/03/05 03:29:09 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PSModuleDiscoveryProvider.dll
[2015/03/05 03:29:09 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mskeyprotect.dll
[2015/03/05 03:29:09 | 000,044,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wldp.dll
[2015/03/05 03:29:09 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lpkinstall.exe
[2015/03/05 03:29:09 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WcnNetsh.dll
[2015/03/05 03:29:09 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToStatusProvider.dll
[2015/03/05 03:29:08 | 000,133,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssprxy.dll
[2015/03/05 03:29:08 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vdsvd.dll
[2015/03/05 03:29:08 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sxssrv.dll
[2015/03/05 03:29:08 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\traffic.dll
[2015/03/05 03:29:07 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winrscmd.dll
[2015/03/05 03:29:07 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasmbmgr.dll
[2015/03/05 03:29:07 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eappprxy.dll
[2015/03/05 03:29:07 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\setx.exe
[2015/03/05 03:29:07 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hhsetup.dll
[2015/03/05 03:29:07 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dataclen.dll
[2015/03/05 03:29:07 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserLanguageProfileCallback.dll
[2015/03/05 03:29:06 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Streaming.ps.dll
[2015/03/05 03:29:06 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cngprovider.dll
[2015/03/05 03:29:06 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\capiprovider.dll
[2015/03/05 03:29:06 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdchange.exe
[2015/03/05 03:29:06 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dpapiprovider.dll
[2015/03/05 03:29:06 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wincredprovider.dll
[2015/03/05 03:29:06 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FdDevQuery.dll
[2015/03/05 03:29:06 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredentialMigrationHandler.dll
[2015/03/05 03:29:05 | 002,013,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\batmeter.dll
[2015/03/05 03:29:05 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeXmlParser.dll
[2015/03/05 03:29:05 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Portable.dll
[2015/03/05 03:29:05 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ThumbnailExtractionHost.exe
[2015/03/05 03:29:05 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vidcap.ax
[2015/03/05 03:29:04 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\samlib.dll
[2015/03/05 03:29:04 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhevents.dll
[2015/03/05 03:29:04 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssign32.dll
[2015/03/05 03:29:04 | 000,069,120 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\SysWow64\l3codeca.acm
[2015/03/05 03:29:04 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rtutils.dll
[2015/03/05 03:29:03 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevDispItemProvider.dll
[2015/03/05 03:29:03 | 000,080,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netapi32.dll
[2015/03/05 03:29:03 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BdeUISrv.exe
[2015/03/05 03:29:03 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pcaui.dll
[2015/03/05 03:29:03 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tlscsp.dll
[2015/03/05 03:29:03 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hcproviders.dll
[2015/03/05 03:29:02 | 000,466,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\main.cpl
[2015/03/05 03:29:02 | 000,232,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hdwwiz.cpl
[2015/03/05 03:29:02 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3dlg.dll
[2015/03/05 03:29:02 | 000,035,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\avrt.dll
[2015/03/05 03:29:01 | 002,022,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\batmeter.dll
[2015/03/05 03:29:01 | 000,250,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srrstr.dll
[2015/03/05 03:29:01 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcaui.dll
[2015/03/05 03:29:01 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbcbcp.dll
[2015/03/05 03:29:00 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\t2embed.dll
[2015/03/05 03:29:00 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usbui.dll
[2015/03/05 03:29:00 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RdpSa.exe
[2015/03/05 03:29:00 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msisip.dll
[2015/03/05 03:28:58 | 000,248,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfp.dll
[2015/03/05 03:28:58 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xolehlp.dll
[2015/03/05 03:28:57 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tcpmonui.dll
[2015/03/05 03:28:57 | 000,051,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wwapi.dll
[2015/03/05 03:28:57 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RemoveDeviceContextHandler.dll
[2015/03/05 03:28:57 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hid.dll
[2015/03/05 03:28:57 | 000,031,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PasswordOnWakeSettingFlyout.exe
[2015/03/05 03:28:57 | 000,029,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PasswordOnWakeSettingFlyout.exe
[2015/03/05 03:28:56 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbccp32.dll
[2015/03/05 03:28:56 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vmictimeprovider.dll
[2015/03/05 03:28:56 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Portable.dll
[2015/03/05 03:28:55 | 000,589,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\elslad.dll
[2015/03/05 03:28:55 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NcaSvc.dll
[2015/03/05 03:28:55 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdProxy.dll
[2015/03/05 03:28:55 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SCardDlg.dll
[2015/03/05 03:28:55 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\whoami.exe
[2015/03/05 03:28:55 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ndiscapCfg.dll
[2015/03/05 03:28:54 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certCredProvider.dll
[2015/03/05 03:28:54 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdsapi.dll
[2015/03/05 03:28:54 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhmanagew.exe
[2015/03/05 03:28:54 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\btpanui.dll
[2015/03/05 03:28:54 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tvratings.dll
[2015/03/05 03:28:54 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dataclen.dll
[2015/03/05 03:28:54 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hcproviders.dll
[2015/03/05 03:28:54 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pwsso.dll
[2015/03/05 03:28:54 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserLanguageProfileCallback.dll
[2015/03/05 03:28:53 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\EhStorPwdMgr.dll
[2015/03/05 03:28:53 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efsadu.dll
[2015/03/05 03:28:53 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hbaapi.dll
[2015/03/05 03:28:53 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\auditpol.exe
[2015/03/05 03:28:53 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msports.dll
[2015/03/05 03:28:53 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ProximityServicePal.dll
[2015/03/05 03:28:52 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cfgbkend.dll
[2015/03/05 03:28:52 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlrmdr.exe
[2015/03/05 03:28:52 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wwanpref.dll
[2015/03/05 03:28:52 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ndiscapCfg.dll
[2015/03/05 03:28:52 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockScreenContentHost.dll
[2015/03/05 03:28:52 | 000,028,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SysResetErr.exe
[2015/03/05 03:28:51 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dhcpsapi.dll
[2015/03/05 03:28:51 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\powercfg.exe
[2015/03/05 03:28:51 | 000,063,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwapi.dll
[2015/03/05 03:28:51 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintIsolationProxy.dll
[2015/03/05 03:28:51 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adprovider.dll
[2015/03/05 03:28:50 | 000,095,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcd.dll
[2015/03/05 03:28:50 | 000,082,432 | ---- | C] (Fraunhofer Institut Integrierte Schaltungen IIS) -- C:\WINDOWS\SysNative\l3codeca.acm
[2015/03/05 03:28:50 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\reg.exe
[2015/03/05 03:28:50 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sdchange.exe
[2015/03/05 03:28:50 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pwlauncher.exe
[2015/03/05 03:28:50 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceDriverRetrievalClient.dll
[2015/03/05 03:28:50 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredentialMigrationHandler.dll
[2015/03/05 03:28:49 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3cfg.dll
[2015/03/05 03:28:49 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SortServer2003Compat.dll
[2015/03/05 03:28:49 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\olesvr32.dll
[2015/03/05 03:28:49 | 000,029,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\version.dll
[2015/03/05 03:28:49 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ThumbnailExtractionHost.exe
[2015/03/05 03:28:49 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dswave.dll
[2015/03/05 03:28:48 | 000,345,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntprint.dll
[2015/03/05 03:28:48 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mciavi32.dll
[2015/03/05 03:28:48 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SCardDlg.dll
[2015/03/05 03:28:48 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\avicap32.dll
[2015/03/05 03:28:48 | 000,073,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appidapi.dll
[2015/03/05 03:28:48 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tlscsp.dll
[2015/03/05 03:28:48 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mf3216.dll
[2015/03/05 03:28:48 | 000,033,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RuntimeBroker.exe
[2015/03/05 03:28:48 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rtffilt.dll
[2015/03/05 03:28:48 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\elsTrans.dll
[2015/03/05 03:28:47 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsidsc.dll
[2015/03/05 03:28:47 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Globalization.Fontgroups.dll
[2015/03/05 03:28:47 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TSTheme.exe
[2015/03/05 03:28:47 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dimsroam.dll
[2015/03/05 03:28:47 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sxsstore.dll
[2015/03/05 03:28:47 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\secur32.dll
[2015/03/05 03:28:46 | 000,403,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shrpubw.exe
[2015/03/05 03:28:46 | 000,115,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shsetup.dll
[2015/03/05 03:28:46 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhautoplay.dll
[2015/03/05 03:28:46 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmmon32.exe
[2015/03/05 03:28:46 | 000,027,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\rdpvideominiport.sys
[2015/03/05 03:28:46 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AzSqlExt.dll
[2015/03/05 03:28:46 | 000,026,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfpmp.exe
[2015/03/05 03:28:45 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSDPrintProxy.DLL
[2015/03/05 03:28:45 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PSModuleDiscoveryProvider.dll
[2015/03/05 03:28:45 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dtsh.dll
[2015/03/05 03:28:45 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winbrand.dll
[2015/03/05 03:28:45 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nshhttp.dll
[2015/03/05 03:28:45 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\elsTrans.dll
[2015/03/05 03:28:45 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sxsstore.dll
[2015/03/05 03:28:44 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3msm.dll
[2015/03/05 03:28:44 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unimdmat.dll
[2015/03/05 03:28:44 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cttunesvr.exe
[2015/03/05 03:28:44 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpprnext.dll
[2015/03/05 03:28:44 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cttunesvr.exe
[2015/03/05 03:28:43 | 000,333,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\newdev.dll
[2015/03/05 03:28:43 | 000,258,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sethc.exe
[2015/03/05 03:28:43 | 000,212,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cleanmgr.exe
[2015/03/05 03:28:43 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlaySndSrv.dll
[2015/03/05 03:28:43 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmutil.dll
[2015/03/05 03:28:43 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msscntrs.dll
[2015/03/05 03:28:43 | 000,033,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winnsi.dll
[2015/03/05 03:28:43 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sspisrv.dll
[2015/03/05 03:28:43 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MsCtfMonitor.dll
[2015/03/05 03:28:42 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppnp.dll
[2015/03/05 03:28:42 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\joy.cpl
[2015/03/05 03:28:42 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\auditpol.exe
[2015/03/05 03:28:42 | 000,061,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\winhv.sys
[2015/03/05 03:28:42 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clfsw32.dll
[2015/03/05 03:28:42 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\feclient.dll
[2015/03/05 03:28:42 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmiprop.dll
[2015/03/05 03:28:41 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EhStorAuthn.exe
[2015/03/05 03:28:41 | 000,069,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\vpci.sys
[2015/03/05 03:28:41 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uicom.dll
[2015/03/05 03:28:41 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\htui.dll
[2015/03/05 03:28:41 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcfg.exe
[2015/03/05 03:28:40 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certCredProvider.dll
[2015/03/05 03:28:40 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSDScanProxy.dll
[2015/03/05 03:28:40 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lpremove.exe
[2015/03/05 03:28:40 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msident.dll
[2015/03/05 03:28:40 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xolehlp.dll
[2015/03/05 03:28:40 | 000,043,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\utildll.dll
[2015/03/05 03:28:40 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tvratings.dll
[2015/03/05 03:28:40 | 000,027,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vmbuspipe.dll
[2015/03/05 03:28:39 | 000,416,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\irprops.cpl
[2015/03/05 03:28:39 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSTheme.exe
[2015/03/05 03:28:39 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eventcreate.exe
[2015/03/05 03:28:38 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\NdisImPlatform.sys
[2015/03/05 03:28:38 | 000,068,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptext.dll
[2015/03/05 03:28:38 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uicom.dll
[2015/03/05 03:28:38 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\forfiles.exe
[2015/03/05 03:28:38 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MirrorDrvCompat.dll
[2015/03/05 03:28:38 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winbrand.dll
[2015/03/05 03:28:38 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mode.com
[2015/03/05 03:28:37 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfctrs.dll
[2015/03/05 03:28:37 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sfc.exe
[2015/03/05 03:28:37 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gpprnext.dll
[2015/03/05 03:28:37 | 000,031,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptbase.dll
[2015/03/05 03:28:37 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rtffilt.dll
[2015/03/05 03:28:37 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\more.com
[2015/03/05 03:28:36 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\repair-bde.exe
[2015/03/05 03:28:36 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiarpc.dll
[2015/03/05 03:28:36 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfos.dll
[2015/03/05 03:28:36 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msscntrs.dll
[2015/03/05 03:28:36 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hidphone.tsp
[2015/03/05 03:28:35 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsicli.exe
[2015/03/05 03:28:35 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3gpclnt.dll
[2015/03/05 03:28:35 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsnmp32.dll
[2015/03/05 03:28:35 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FXSEXT32.dll
[2015/03/05 03:28:35 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dimsjob.dll
[2015/03/05 03:28:35 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Dot3Conn.dll
[2015/03/05 03:28:34 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drttransport.dll
[2015/03/05 03:28:34 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RdpSa.exe
[2015/03/05 03:28:34 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\where.exe
[2015/03/05 03:28:34 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AzSqlExt.dll
[2015/03/05 03:28:34 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fc.exe
[2015/03/05 03:28:33 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ddodiag.exe
[2015/03/05 03:28:33 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cipher.exe
[2015/03/05 03:28:33 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\format.com
[2015/03/05 03:28:33 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Background.SystemEventsBroker.dll
[2015/03/05 03:28:33 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BthMtpContextHandler.dll
[2015/03/05 03:28:33 | 000,024,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nsi.dll
[2015/03/05 03:28:33 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshcon.dll
[2015/03/05 03:28:33 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Background.TimeBroker.dll
[2015/03/05 03:28:32 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthFWGP.dll
[2015/03/05 03:28:32 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sti_ci.dll
[2015/03/05 03:28:32 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drttransport.dll
[2015/03/05 03:28:32 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Magnification.dll
[2015/03/05 03:28:32 | 000,025,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsrole.dll
[2015/03/05 03:28:32 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\more.com
[2015/03/05 03:28:32 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dswave.dll
[2015/03/05 03:28:31 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfmon.exe
[2015/03/05 03:28:31 | 000,160,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWWIN.EXE
[2015/03/05 03:28:31 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mspatchc.dll
[2015/03/05 03:28:31 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3gpclnt.dll
[2015/03/05 03:28:31 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RotMgr.dll
[2015/03/05 03:28:31 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncPolicy.dll
[2015/03/05 03:28:31 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LldpNotify.dll
[2015/03/05 03:28:31 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storagewmi_passthru.dll
[2015/03/05 03:28:31 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comp.exe
[2015/03/05 03:28:30 | 000,423,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\irprops.cpl
[2015/03/05 03:28:30 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthFWGP.dll
23:オスカル :

2015/03/19 (Thu) 15:08:21

OTLログその8

[2015/03/05 03:28:30 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasphone.exe
[2015/03/05 03:28:29 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3msm.dll
[2015/03/05 03:28:29 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MirrorDrvCompat.dll
[2015/03/05 03:28:29 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmiprop.dll
[2015/03/05 03:28:29 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\choice.exe
[2015/03/05 03:28:29 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\timeout.exe
[2015/03/05 03:28:29 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comp.exe
[2015/03/05 03:28:29 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clip.exe
[2015/03/05 03:28:28 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdsrv.dll
[2015/03/05 03:28:28 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanprotdim.dll
[2015/03/05 03:28:28 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdrleakdiag.exe
[2015/03/05 03:28:28 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fc.exe
[2015/03/05 03:28:28 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MsCtfMonitor.dll
[2015/03/05 03:28:27 | 000,181,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uireng.dll
[2015/03/05 03:28:27 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PCPKsp.dll
[2015/03/05 03:28:27 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\typeperf.exe
[2015/03/05 03:28:27 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\kmddsp.tsp
[2015/03/05 03:28:27 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ByteCodeGenerator.exe
[2015/03/05 03:28:27 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bthpanapi.dll
[2015/03/05 03:28:27 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ByteCodeGenerator.exe
[2015/03/05 03:28:26 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srhelper.dll
[2015/03/05 03:28:26 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\napdsnap.dll
[2015/03/05 03:28:26 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\capiprovider.dll
[2015/03/05 03:28:26 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dpapiprovider.dll
[2015/03/05 03:28:26 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wincredprovider.dll
[2015/03/05 03:28:26 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dialer.exe
[2015/03/05 03:28:26 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxlegih.dll
[2015/03/05 03:28:26 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxdm.dll
[2015/03/05 03:28:26 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmsDeviceAccessRevocation.dll
[2015/03/05 03:28:25 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\joy.cpl
[2015/03/05 03:28:25 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cngprovider.dll
[2015/03/05 03:28:25 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mskeyprotect.dll
[2015/03/05 03:28:25 | 000,043,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdmo.dll
[2015/03/05 03:28:25 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sxshared.dll
[2015/03/05 03:28:25 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\runonce.exe
[2015/03/05 03:28:25 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wshcon.dll
[2015/03/05 03:28:24 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.ps.dll
[2015/03/05 03:28:24 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NcdAutoSetup.dll
[2015/03/05 03:28:24 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\radarrs.dll
[2015/03/05 03:28:24 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcadm.dll
[2015/03/05 03:28:23 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RelPost.exe
[2015/03/05 03:28:23 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspatchc.dll
[2015/03/05 03:28:23 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adprovider.dll
[2015/03/05 03:28:23 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Magnification.dll
[2015/03/05 03:28:23 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\waitfor.exe
[2015/03/05 03:28:23 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
[2015/03/05 03:28:23 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Background.TimeBroker.dll
[2015/03/05 03:28:22 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msauserext.dll
[2015/03/05 03:28:22 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Enumeration.ps.dll
[2015/03/05 03:28:22 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\expand.exe
[2015/03/05 03:28:22 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pwrshplugin.dll
[2015/03/05 03:28:21 | 000,217,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cleanmgr.exe
[2015/03/05 03:28:21 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetmib1.dll
[2015/03/05 03:28:21 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cfmifs.dll
[2015/03/05 03:28:20 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfp.dll
[2015/03/05 03:28:20 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\drtprov.dll
[2015/03/05 03:28:20 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rundll32.exe
[2015/03/05 03:28:20 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mcicda.dll
[2015/03/05 03:28:20 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdmlog.dll
[2015/03/05 03:28:20 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WPDShextAutoplay.exe
[2015/03/05 03:28:19 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdmps.dll
[2015/03/05 03:28:19 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scext.dll
[2015/03/05 03:28:19 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\profext.dll
[2015/03/05 03:28:19 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\docprop.dll
[2015/03/05 03:28:19 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\relog.exe
[2015/03/05 03:28:19 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\srumapi.dll
[2015/03/05 03:28:19 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mode.com
[2015/03/05 03:28:18 | 000,103,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssitlb.dll
[2015/03/05 03:28:18 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srumapi.dll
[2015/03/05 03:28:18 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certenc.dll
[2015/03/05 03:28:18 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dfscli.dll
[2015/03/05 03:28:18 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmlua.dll
[2015/03/05 03:28:18 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmcfg32.dll
[2015/03/05 03:28:18 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ureg.dll
[2015/03/05 03:28:17 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dhcpcsvc6.dll
[2015/03/05 03:28:17 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sfc.exe
[2015/03/05 03:28:17 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcbcp.dll
[2015/03/05 03:28:17 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SetProxyCredential.dll
[2015/03/05 03:28:17 | 000,033,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernel.appcore.dll
[2015/03/05 03:28:17 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Display.dll
[2015/03/05 03:28:17 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncPolicy.dll
[2015/03/05 03:28:16 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sc.exe
[2015/03/05 03:28:16 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\crypttpmeksvc.dll
[2015/03/05 03:28:16 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wfdprov.dll
[2015/03/05 03:28:16 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\w32topl.dll
[2015/03/05 03:28:16 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wscisvif.dll
[2015/03/05 03:28:16 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmpbk32.dll
[2015/03/05 03:28:15 | 000,301,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modemui.dll
[2015/03/05 03:28:15 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winrs.exe
[2015/03/05 03:28:15 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sxproxy.dll
[2015/03/05 03:28:15 | 000,029,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\kernel.appcore.dll
[2015/03/05 03:28:15 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easconsent.dll
[2015/03/05 03:28:14 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dhcpsapi.dll
[2015/03/05 03:28:14 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PkgMgr.exe
[2015/03/05 03:28:14 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssitlb.dll
[2015/03/05 03:28:14 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\napdsnap.dll
[2015/03/05 03:28:14 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pwrshplugin.dll
[2015/03/05 03:28:14 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dimsroam.dll
[2015/03/05 03:28:14 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wfapigp.dll
[2015/03/05 03:28:14 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\chkwudrv.dll
[2015/03/05 03:28:13 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icm32.dll
[2015/03/05 03:28:13 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fsutil.exe
[2015/03/05 03:28:13 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\feclient.dll
[2015/03/05 03:28:13 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmocx.dll
[2015/03/05 03:28:13 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\browcli.dll
[2015/03/05 03:28:13 | 000,033,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ploptin.dll
[2015/03/05 03:28:13 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\storagewmi_passthru.dll
[2015/03/05 03:28:12 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanext.exe
[2015/03/05 03:28:12 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dfp.exe
[2015/03/05 03:28:12 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wscisvif.dll
[2015/03/05 03:28:11 | 000,108,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bootsect.exe
[2015/03/05 03:28:11 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\expand.exe
[2015/03/05 03:28:11 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pid.dll
[2015/03/05 03:28:11 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sxstrace.exe
[2015/03/05 03:28:11 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Display.dll
[2015/03/05 03:28:10 | 000,857,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSST.dll
[2015/03/05 03:28:10 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unregmp2.exe
[2015/03/05 03:28:10 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\w32tm.exe
[2015/03/05 03:28:10 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwancfg.dll
[2015/03/05 03:28:10 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\findstr.exe
[2015/03/05 03:28:10 | 000,025,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\streamci.dll
[2015/03/05 03:28:10 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\convert.exe
[2015/03/05 03:28:09 | 000,324,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\USBXHCI.SYS
[2015/03/05 03:28:09 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\keymgr.dll
[2015/03/05 03:28:09 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\wpcfltr.sys
[2015/03/05 03:28:09 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\datusage.dll
[2015/03/05 03:28:09 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shutdown.exe
[2015/03/05 03:28:09 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdWNet.dll
[2015/03/05 03:28:09 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\chkdsk.exe
[2015/03/05 03:28:09 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\serwvdrv.dll
[2015/03/05 03:28:08 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\charmap.exe
[2015/03/05 03:28:08 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\setupcln.dll
[2015/03/05 03:28:08 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmci.dll
[2015/03/05 03:28:08 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XInput1_4.dll
[2015/03/05 03:28:08 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbcconf.dll
[2015/03/05 03:28:08 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dimsjob.dll
[2015/03/05 03:28:08 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\efsutil.dll
[2015/03/05 03:28:08 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tbs.dll
[2015/03/05 03:28:07 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netsh.exe
[2015/03/05 03:28:07 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsepno.dll
[2015/03/05 03:28:07 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tbs.dll
[2015/03/05 03:28:07 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WPDShextAutoplay.exe
[2015/03/05 03:28:07 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.Profile.SystemManufacturers.dll
[2015/03/05 03:28:06 | 000,380,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptuiwizard.dll
[2015/03/05 03:28:06 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SrTasks.exe
[2015/03/05 03:28:06 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\profext.dll
[2015/03/05 03:28:06 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AtBroker.exe
[2015/03/05 03:28:06 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Websocket.dll
[2015/03/05 03:28:05 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MuiUnattend.exe
[2015/03/05 03:28:05 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\delegatorprovider.dll
[2015/03/05 03:28:05 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vdsldr.exe
[2015/03/05 03:28:05 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsdchngr.dll
[2015/03/05 03:28:05 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsperf.dll
[2015/03/05 03:28:05 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wfapigp.dll
[2015/03/05 03:28:04 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\deskmon.dll
[2015/03/05 03:28:04 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mspatcha.dll
[2015/03/05 03:28:04 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cfmifs.dll
[2015/03/05 03:28:04 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NETSTAT.EXE
[2015/03/05 03:28:04 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shgina.dll
[2015/03/05 03:28:04 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eapprovp.dll
[2015/03/05 03:28:03 | 000,189,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\UCX01000.SYS
[2015/03/05 03:28:03 | 000,165,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdboot.exe
[2015/03/05 03:28:03 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UXInit.dll
[2015/03/05 03:28:03 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certenc.dll
[2015/03/05 03:28:03 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsdchngr.dll
[2015/03/05 03:28:03 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.Profile.SystemManufacturers.dll
[2015/03/05 03:28:03 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DefaultPrinterProvider.dll
[2015/03/05 03:28:02 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\findstr.exe
[2015/03/05 03:28:02 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sscore.dll
[2015/03/05 03:28:02 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptdlg.dll
[2015/03/05 03:28:02 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NcdProp.dll
[2015/03/05 03:28:02 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shimgvw.dll
[2015/03/05 03:28:02 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tree.com
[2015/03/05 03:28:01 | 001,497,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diskcopy.dll
[2015/03/05 03:28:01 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\whoami.exe
[2015/03/05 03:28:01 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MsiCofire.dll
[2015/03/05 03:28:01 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\icacls.exe
[2015/03/05 03:28:01 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapprovp.dll
[2015/03/05 03:28:01 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsium.dll
[2015/03/05 03:28:01 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\serwvdrv.dll
[2015/03/05 03:28:00 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cngcredui.dll
[2015/03/05 03:28:00 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmocx.dll
[2015/03/05 03:28:00 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmiclnt.dll
[2015/03/05 03:28:00 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DefaultPrinterProvider.dll
[2015/03/05 03:28:00 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RdpSaProxy.exe
[2015/03/05 03:28:00 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tree.com
[2015/03/05 03:27:59 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sscore.dll
[2015/03/05 03:27:59 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSManHTTPConfig.exe
[2015/03/05 03:27:59 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tcpmib.dll
[2015/03/05 03:27:59 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\userinit.exe
[2015/03/05 03:27:59 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\encapi.dll
[2015/03/05 03:27:59 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\convert.exe
[2015/03/05 03:27:59 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\replace.exe
[2015/03/05 03:27:59 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hnetmon.dll
[2015/03/05 03:27:58 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\runonce.exe
[2015/03/05 03:27:58 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdmlog.dll
[2015/03/05 03:27:58 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SecEdit.exe
[2015/03/05 03:27:58 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\witnesswmiv2provider.dll
[2015/03/05 03:27:58 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfdisk.dll
[2015/03/05 03:27:58 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\brdgcfg.dll
[2015/03/05 03:27:58 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsparse.dll
[2015/03/05 03:27:58 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shimgvw.dll
[2015/03/05 03:27:57 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hbaapi.dll
[2015/03/05 03:27:57 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clfsw32.dll
[2015/03/05 03:27:57 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deskmon.dll
[2015/03/05 03:27:57 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetEvtFwdr.exe
[2015/03/05 03:27:57 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rpcnsh.dll
[2015/03/05 03:27:57 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\icmui.dll
[2015/03/05 03:27:57 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmutil.dll
[2015/03/05 03:27:56 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmlua.dll
[2015/03/05 03:27:56 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cacls.exe
[2015/03/05 03:27:56 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.System.RemoteDesktop.dll
[2015/03/05 03:27:56 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\doskey.exe
[2015/03/05 03:27:55 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PrintIsolationHost.exe
[2015/03/05 03:27:55 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcpmonui.dll
[2015/03/05 03:27:55 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hhsetup.dll
[2015/03/05 03:27:55 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ddodiag.exe
[2015/03/05 03:27:55 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XInput1_4.dll
[2015/03/05 03:27:55 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsperf.dll
[2015/03/05 03:27:55 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\attrib.exe
[2015/03/05 03:27:54 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vds_ps.dll
[2015/03/05 03:27:54 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fsutilext.dll
[2015/03/05 03:27:54 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSManHTTPConfig.exe
[2015/03/05 03:27:54 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shgina.dll
[2015/03/05 03:27:54 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\delegatorprovider.dll
[2015/03/05 03:27:54 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icsunattend.exe
[2015/03/05 03:27:53 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\regapi.dll
[2015/03/05 03:27:53 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidnsp.dll
[2015/03/05 03:27:53 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\esentprf.dll
[2015/03/05 03:27:53 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Websocket.dll
[2015/03/05 03:27:53 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bridgeunattend.exe
[2015/03/05 03:27:53 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shpafact.dll
[2015/03/05 03:27:53 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shpafact.dll
[2015/03/05 03:27:52 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cngcredui.dll
[2015/03/05 03:27:52 | 000,090,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CompMgmtLauncher.exe
[2015/03/05 03:27:52 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drtprov.dll
[2015/03/05 03:27:52 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NcdProp.dll
[2015/03/05 03:27:52 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\chkdsk.exe
[2015/03/05 03:27:52 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wfdprov.dll
[2015/03/05 03:27:52 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlansvcpal.dll
[2015/03/05 03:27:51 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setupcln.dll
[2015/03/05 03:27:51 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mcicda.dll
[2015/03/05 03:27:51 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winrshost.exe
[2015/03/05 03:27:51 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbnmpntw.dll
[2015/03/05 03:27:51 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\compact.exe
[2015/03/05 03:27:51 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiatrace.dll
[2015/03/05 03:27:50 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcpmib.dll
[2015/03/05 03:27:50 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasmxs.dll
[2015/03/05 03:27:50 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\proquota.exe
[2015/03/05 03:27:50 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmAgent.dll
[2015/03/05 03:27:50 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\httpapi.dll
[2015/03/05 03:27:50 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netiougc.exe
[2015/03/05 03:27:50 | 000,021,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\tbs.sys
[2015/03/05 03:27:50 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\chkntfs.exe
[2015/03/05 03:27:50 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\find.exe
[2015/03/05 03:27:49 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xwizard.exe
[2015/03/05 03:27:49 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfos.dll
[2015/03/05 03:27:49 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\encapi.dll
[2015/03/05 03:27:49 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CheckNetIsolation.exe
[2015/03/05 03:27:49 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.System.RemoteDesktop.dll
[2015/03/05 03:27:48 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WinFax.dll
[2015/03/05 03:27:48 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\snmpapi.dll
[2015/03/05 03:27:48 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcconf.dll
[2015/03/05 03:27:48 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dvdupgrd.exe
[2015/03/05 03:27:48 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\replace.exe
[2015/03/05 03:27:48 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\prevhost.exe
[2015/03/05 03:27:47 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efslsaext.dll
[2015/03/05 03:27:47 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\deskadp.dll
[2015/03/05 03:27:47 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsmprovhost.exe
[2015/03/05 03:27:47 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ipconfig.exe
[2015/03/05 03:27:47 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ifmon.dll
[2015/03/05 03:27:47 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ReAgentc.exe
[2015/03/05 03:27:46 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\qmgrprxy.dll
[2015/03/05 03:27:46 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\lodctr.exe
[2015/03/05 03:27:46 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\w32topl.dll
[2015/03/05 03:27:46 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\linkinfo.dll
[2015/03/05 03:27:46 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dsauth.dll
[2015/03/05 03:27:46 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ureg.dll
[2015/03/05 03:27:46 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prevhost.exe
[2015/03/05 03:27:45 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbonRes.dll
[2015/03/05 03:27:45 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xwizard.exe
[2015/03/05 03:27:45 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deskadp.dll
[2015/03/05 03:27:45 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnpui.dll
[2015/03/05 03:27:45 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EventAggregation.dll
[2015/03/05 03:27:45 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RpcPing.exe
[2015/03/05 03:27:45 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hnetmon.dll
[2015/03/05 03:27:45 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\icsunattend.exe
[2015/03/05 03:27:44 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hidphone.tsp
[2015/03/05 03:27:44 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfproc.dll
[2015/03/05 03:27:44 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcsubs.dll
[2015/03/05 03:27:44 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BackgroundTransferHost.exe
[2015/03/05 03:27:44 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\credwiz.exe
[2015/03/05 03:27:44 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bi.dll
[2015/03/05 03:27:43 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmmon32.exe
[2015/03/05 03:27:43 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sxstrace.exe
[2015/03/05 03:27:43 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcconf.exe
[2015/03/05 03:27:43 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
[2015/03/05 03:27:42 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsidsc.dll
[2015/03/05 03:27:42 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hotplug.dll
[2015/03/05 03:27:42 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmdl32.exe
[2015/03/05 03:27:42 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vds_ps.dll
[2015/03/05 03:27:42 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dfdts.dll
[2015/03/05 03:27:42 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\regini.exe
[2015/03/05 03:27:42 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xmlprovi.dll
[2015/03/05 03:27:41 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\napipsec.dll
[2015/03/05 03:27:41 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcsubs.dll
[2015/03/05 03:27:41 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netbtugc.exe
[2015/03/05 03:27:41 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sisbkup.dll
[2015/03/05 03:27:40 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msports.dll
[2015/03/05 03:27:40 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\FwRemoteSvr.dll
[2015/03/05 03:27:40 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\traffic.dll
[2015/03/05 03:27:40 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tapilua.dll
[2015/03/05 03:27:40 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sysntfy.dll
[2015/03/05 03:27:40 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RdpSaProxy.exe
[2015/03/05 03:27:40 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\chkntfs.exe
[2015/03/05 03:27:40 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FileAppxStreamingDataSource.dll
[2015/03/05 03:27:39 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\loadperf.dll
[2015/03/05 03:27:39 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\djoin.exe
[2015/03/05 03:27:39 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmAgent.dll
[2015/03/05 03:27:39 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsparse.dll
[2015/03/05 03:27:39 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IconCodecService.dll
[2015/03/05 03:27:38 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidnsp.dll
[2015/03/05 03:27:38 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsmprovhost.exe
[2015/03/05 03:27:38 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\attrib.exe
[2015/03/05 03:27:38 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshqos.dll
[2015/03/05 03:27:38 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wshqos.dll
[2015/03/05 03:27:37 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmpbk32.dll
[2015/03/05 03:27:37 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\StorSvc.dll
[2015/03/05 03:27:36 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WorkFolders.exe
[2015/03/05 03:27:36 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpaceAgent.exe
[2015/03/05 03:27:36 | 000,104,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fontview.exe
[2015/03/05 03:27:36 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\browcli.dll
[2015/03/05 03:27:36 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kmddsp.tsp
[2015/03/05 03:27:36 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\extrac32.exe
[2015/03/05 03:27:36 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xmlprovi.dll
[2015/03/05 03:27:35 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ocsetapi.dll
[2015/03/05 03:27:35 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winipsec.dll
[2015/03/05 03:27:35 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sdbinst.exe
[2015/03/05 03:27:35 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\regsvr32.exe
[2015/03/05 03:27:34 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cipher.exe
[2015/03/05 03:27:34 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\crypttpmeksvc.dll
[2015/03/05 03:27:34 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WofTasks.dll
[2015/03/05 03:27:34 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MemoryDiagnostic.dll
[2015/03/05 03:27:34 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mgmtapi.dll
[2015/03/05 03:27:34 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ProximityCommonPal.dll
[2015/03/05 03:27:33 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXST30.dll
[2015/03/05 03:27:33 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Storprop.dll
[2015/03/05 03:27:33 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmutil.dll
[2015/03/05 03:27:33 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmcfg32.dll
[2015/03/05 03:27:33 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\davhlpr.dll
[2015/03/05 03:27:33 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlaninst.dll
[2015/03/05 03:27:32 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efsutil.dll
[2015/03/05 03:27:32 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BackgroundTransferHost.exe
[2015/03/05 03:27:32 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ARP.EXE
[2015/03/05 03:27:32 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sdiagnhost.exe
[2015/03/05 03:27:32 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mskeyprotcli.dll
[2015/03/05 03:27:31 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\syskey.exe
[2015/03/05 03:27:31 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winrshost.exe
[2015/03/05 03:27:31 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\capisp.dll
[2015/03/05 03:27:31 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wshelper.dll
[2015/03/05 03:27:30 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DFDWiz.exe
[2015/03/05 03:27:30 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnppolicy.dll
[2015/03/05 03:27:30 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinFax.dll
[2015/03/05 03:27:30 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Apphlpdm.dll
[2015/03/05 03:27:30 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmstplua.dll
[2015/03/05 03:27:30 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pstask.dll
[2015/03/05 03:27:30 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ProximityCommonPal.dll
[2015/03/05 03:27:29 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fsutilext.dll
[2015/03/05 03:27:29 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnsruprov.dll
[2015/03/05 03:27:29 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ARP.EXE
[2015/03/05 03:27:29 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sxshared.dll
[2015/03/05 03:27:29 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diskcomp.com
[2015/03/05 03:27:29 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
[2015/03/05 03:27:29 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diskcopy.com
[2015/03/05 03:27:28 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasphone.exe
[2015/03/05 03:27:28 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bdeui.dll
[2015/03/05 03:27:28 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RdpSaUacHelper.exe
[2015/03/05 03:27:28 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\find.exe
[2015/03/05 03:27:27 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\regsvr32.exe
[2015/03/05 03:27:27 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\print.exe
[2015/03/05 03:27:25 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nci.dll
[2015/03/05 03:27:25 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fixmapi.exe
[2015/03/05 03:27:24 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsmproxy.dll
[2015/03/05 03:27:24 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertEnrollCtrl.exe
[2015/03/05 03:27:24 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\srwmi.dll
[2015/03/05 03:27:24 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\at.exe
[2015/03/05 03:27:24 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RdpSaUacHelper.exe
[2015/03/05 03:27:24 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernelceip.dll
[2015/03/05 03:27:23 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wephostsvc.dll
[2015/03/05 03:27:23 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasser.dll
[2015/03/05 03:27:23 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fixmapi.exe
[2015/03/05 03:27:23 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmstplua.dll
[2015/03/05 03:27:22 | 015,784,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DDORes.dll
[2015/03/05 03:27:22 | 000,349,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcdedit.exe
[2015/03/05 03:27:22 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SubscriptionMgr.dll
[2015/03/05 03:27:22 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DefaultDeviceManager.dll
[2015/03/05 03:27:21 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvinst.exe
[2015/03/05 03:27:21 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ifmon.dll
[2015/03/05 03:27:21 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\virtdisk.dll
[2015/03/05 03:27:21 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\qmgrprxy.dll
[2015/03/05 03:27:21 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\doskey.exe
[2015/03/05 03:27:21 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ntlanui2.dll
[2015/03/05 03:27:21 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\userinitext.dll
[2015/03/05 03:27:20 | 001,502,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diskcopy.dll
[2015/03/05 03:27:20 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BthSQM.dll
[2015/03/05 03:27:20 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\upnpcont.exe
[2015/03/05 03:27:20 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ReAgentTask.dll
[2015/03/05 03:27:20 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TimeSyncTask.dll
[2015/03/05 03:27:20 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\label.exe
[2015/03/05 03:27:20 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clb.dll
[2015/03/05 03:27:20 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\regidle.dll
[2015/03/05 03:27:19 | 000,475,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\main.cpl
[2015/03/05 03:27:19 | 000,212,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mdminst.dll
[2015/03/05 03:27:19 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eventvwr.exe
[2015/03/05 03:27:19 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmutil.dll
[2015/03/05 03:27:19 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uniplat.dll
[2015/03/05 03:27:19 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diskcomp.com
[2015/03/05 03:27:19 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\slpts.dll
[2015/03/05 03:27:18 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bthci.dll
[2015/03/05 03:27:18 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsnmp32.dll
[2015/03/05 03:27:18 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\htui.dll
[2015/03/05 03:27:18 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OnDemandConnRouteHelper.dll
[2015/03/05 03:27:18 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WcnEapAuthProxy.dll
[2015/03/05 03:27:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\userinitext.dll
[2015/03/05 03:27:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\energytask.dll
[2015/03/05 03:27:18 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasctrs.dll
[2015/03/05 03:27:17 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\openfiles.exe
[2015/03/05 03:27:17 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\napipsec.dll
[2015/03/05 03:27:17 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\deviceassociation.dll
[2015/03/05 03:27:17 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\schedcli.dll
[2015/03/05 03:27:17 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\uniplat.dll
[2015/03/05 03:27:17 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TtlsExt.dll
[2015/03/05 03:27:16 | 000,240,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hdwwiz.cpl
[2015/03/05 03:27:16 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dfscli.dll
[2015/03/05 03:27:16 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mskeyprotcli.dll
[2015/03/05 03:27:16 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wksprtPS.dll
[2015/03/05 03:27:16 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msshooks.dll
[2015/03/05 03:27:16 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ifsutilx.dll
[2015/03/05 03:27:16 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CHxReadingStringIME.dll
[2015/03/05 03:27:15 | 015,789,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DDORes.dll
[2015/03/05 03:27:15 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pid.dll
[2015/03/05 03:27:15 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aecache.dll
[2015/03/05 03:27:15 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsium.dll
[2015/03/05 03:27:14 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\console.dll
[2015/03/05 03:27:14 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasmxs.dll
[2015/03/05 03:27:14 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CHxReadingStringIME.dll
[2015/03/05 03:27:13 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MuiUnattend.exe
[2015/03/05 03:27:13 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\umpoext.dll
[2015/03/05 03:27:13 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vpnikeapi.dll
[2015/03/05 03:27:13 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OnDemandConnRouteHelper.dll
[2015/03/05 03:27:13 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pots.dll
[2015/03/05 03:27:13 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msiltcfg.dll
[2015/03/05 03:27:13 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\print.exe
[2015/03/05 03:27:12 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PnPUnattend.exe
[2015/03/05 03:27:12 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmiclnt.dll
[2015/03/05 03:27:12 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ReAgentc.exe
[2015/03/05 03:27:11 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbctrac.dll
[2015/03/05 03:27:11 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setbcdlocale.dll
[2015/03/05 03:27:11 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dispex.dll
[2015/03/05 03:27:11 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shunimpl.dll
[2015/03/05 03:27:11 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntlanui2.dll
[2015/03/05 03:27:11 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pcaui.exe
[2015/03/05 03:27:11 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eventcls.dll
[2015/03/05 03:27:10 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spbcd.dll
[2015/03/05 03:27:10 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetVscCoinstall.dll
[2015/03/05 03:27:10 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PCPKsp.dll
[2015/03/05 03:27:10 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\pcacli.dll
[2015/03/05 03:27:10 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PING.EXE
[2015/03/05 03:27:10 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TtlsExt.dll
[2015/03/05 03:27:09 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sc.exe
[2015/03/05 03:27:09 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dispci.dll
[2015/03/05 03:27:09 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wdiasqmmodule.dll
[2015/03/05 03:27:09 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netiougc.exe
[2015/03/05 03:27:09 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ROUTE.EXE
[2015/03/05 03:27:09 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spopk.dll
[2015/03/05 03:27:09 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dciman32.dll
[2015/03/05 03:27:09 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ifsutilx.dll
[2015/03/05 03:27:08 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vss_ps.dll
[2015/03/05 03:27:08 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TimeBrokerClient.dll
[2015/03/05 03:27:08 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CSystemEventsBrokerClient.dll
[2015/03/05 03:27:08 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ktmutil.exe
[2015/03/05 03:27:08 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\finger.exe
[2015/03/05 03:27:08 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dhcpcmonitor.dll
[2015/03/05 03:27:08 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\HOSTNAME.EXE
[2015/03/05 03:27:07 | 000,138,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbctrac.dll
[2015/03/05 03:27:07 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnscacheugc.exe
[2015/03/05 03:27:07 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wcmapi.dll
[2015/03/05 03:27:07 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdiagnhost.exe
[2015/03/05 03:27:07 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\irclass.dll
[2015/03/05 03:27:07 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eventcls.dll
[2015/03/05 03:27:06 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winipsec.dll
[2015/03/05 03:27:06 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NETSTAT.EXE
[2015/03/05 03:27:06 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gptext.dll
[2015/03/05 03:27:06 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vdmdbg.dll
[2015/03/05 03:27:06 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\syssetup.dll
[2015/03/05 03:27:06 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\subst.exe
[2015/03/05 03:27:05 | 000,468,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nltest.exe
[2015/03/05 03:27:05 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cliconfg.dll
[2015/03/05 03:27:05 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tpmcompc.dll
[2015/03/05 03:27:05 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\snmpapi.dll
[2015/03/05 03:27:05 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptdlg.dll
[2015/03/05 03:27:05 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WINSRPC.DLL
[2015/03/05 03:27:04 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winlogonext.dll
[2015/03/05 03:27:04 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspatcha.dll
[2015/03/05 03:27:04 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WcnEapPeerProxy.dll
[2015/03/05 03:27:04 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mciwave.dll
[2015/03/05 03:27:04 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sscoreext.dll
[2015/03/05 03:27:04 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\panmap.dll
[2015/03/05 03:27:04 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msshooks.dll
[2015/03/05 03:27:03 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3dramp.dll
[2015/03/05 03:27:03 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deviceassociation.dll
[2015/03/05 03:27:03 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dvdupgrd.exe
[2015/03/05 03:27:03 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasctrs.dll
[2015/03/05 03:27:03 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TimeBrokerClient.dll
[2015/03/05 03:27:03 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nlmsprep.dll
[2015/03/05 03:27:02 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bootcfg.exe
[2015/03/05 03:27:02 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WINSRPC.DLL
[2015/03/05 03:27:02 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcaui.exe
[2015/03/05 03:27:02 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\diskperf.exe
[2015/03/05 03:27:02 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\grpconv.exe
[2015/03/05 03:27:01 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSTIFF.dll
[2015/03/05 03:27:01 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mobsync.exe
[2015/03/05 03:27:01 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsprx5.dll
[2015/03/05 03:27:01 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Nlsdl.dll
[2015/03/05 03:27:01 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncuprov.dll
[2015/03/05 03:27:01 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dispex.dll
[2015/03/05 03:27:00 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pdhui.dll
[2015/03/05 03:27:00 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\idndl.dll
[2015/03/05 03:27:00 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cscdll.dll
[2015/03/05 03:27:00 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vpnikeapi.dll
[2015/03/05 03:27:00 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\grpconv.exe
[2015/03/05 03:27:00 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\slpts.dll
24:オスカル :

2015/03/19 (Thu) 15:10:23

OTLログその9

[2015/03/05 03:26:59 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsicpl.dll
[2015/03/05 03:26:59 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mobsync.exe
[2015/03/05 03:26:59 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvcfg.exe
[2015/03/05 03:26:59 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\catsrvps.dll
[2015/03/05 03:26:59 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSMON.dll
[2015/03/05 03:26:58 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SortWindows61.dll
[2015/03/05 03:26:58 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmapi.dll
[2015/03/05 03:26:58 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DDACLSys.dll
[2015/03/05 03:26:58 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\serialui.dll
[2015/03/05 03:26:58 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcico.dll
[2015/03/05 03:26:57 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxpps.dll
[2015/03/05 03:26:57 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncInfrastructureps.dll
[2015/03/05 03:26:57 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\osbaseln.dll
[2015/03/05 03:26:57 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rastlsext.dll
[2015/03/05 03:26:56 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\virtdisk.dll
[2015/03/05 03:26:56 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RpcPing.exe
[2015/03/05 03:26:56 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbcconf.exe
[2015/03/05 03:26:56 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dpapi.dll
[2015/03/05 03:26:56 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\raschapext.dll
[2015/03/05 03:26:55 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\catsrvps.dll
[2015/03/05 03:26:55 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mscpxl32.dLL
[2015/03/05 03:26:55 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsprx2.dll
[2015/03/05 03:26:55 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsprx3.dll
[2015/03/05 03:26:54 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VmdCoinstall.dll
[2015/03/05 03:26:54 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ksetup.exe
[2015/03/05 03:26:54 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shutdown.exe
[2015/03/05 03:26:54 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NcaApi.dll
[2015/03/05 03:26:54 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsprx5.dll
[2015/03/05 03:26:54 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsprx6.dll
[2015/03/05 03:26:54 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsprx7.dll
[2015/03/05 03:26:54 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bitsprx4.dll
[2015/03/05 03:26:53 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dpapimig.exe
[2015/03/05 03:26:53 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\schedcli.dll
[2015/03/05 03:26:53 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfnet.dll
[2015/03/05 03:26:53 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\recover.exe
[2015/03/05 03:26:52 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KdsCli.dll
[2015/03/05 03:26:52 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetmib1.dll
[2015/03/05 03:26:52 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mountvol.exe
[2015/03/05 03:26:52 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\smphost.dll
[2015/03/05 03:26:51 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hwrcomp.exe
[2015/03/05 03:26:51 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\userinit.exe
[2015/03/05 03:26:51 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gpupdate.exe
[2015/03/05 03:26:51 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RmClient.exe
[2015/03/05 03:26:50 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\control.exe
[2015/03/05 03:26:50 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicePairingWizard.exe
[2015/03/05 03:26:50 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\umdmxfrm.dll
[2015/03/05 03:26:50 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\muifontsetup.dll
[2015/03/05 03:26:49 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efssvc.dll
[2015/03/05 03:26:49 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbnmpntw.dll
[2015/03/05 03:26:49 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasadhlp.dll
[2015/03/05 03:26:49 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\subst.exe
[2015/03/05 03:26:49 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Startupscan.dll
[2015/03/05 03:26:49 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Register-CimProvider.exe
[2015/03/05 03:26:48 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\newdev.exe
[2015/03/05 03:26:48 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ndadmin.exe
[2015/03/05 03:26:48 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfdisk.dll
[2015/03/05 03:26:48 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drprov.dll
[2015/03/05 03:26:48 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icmui.dll
[2015/03/05 03:26:48 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winusb.dll
[2015/03/05 03:26:48 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\verclsid.exe
[2015/03/05 03:26:47 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FwRemoteSvr.dll
[2015/03/05 03:26:47 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\esentprf.dll
[2015/03/05 03:26:47 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TaskSchdPS.dll
[2015/03/05 03:26:47 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\umdmxfrm.dll
[2015/03/05 03:26:47 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PATHPING.EXE
[2015/03/05 03:26:47 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasautou.exe
[2015/03/05 03:26:47 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mscat32.dll
[2015/03/05 03:26:47 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\softpub.dll
[2015/03/05 03:26:47 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmdext.dll
[2015/03/05 03:26:47 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssip32.dll
[2015/03/05 03:26:46 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSCollect.exe
[2015/03/05 03:26:46 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sisbkup.dll
[2015/03/05 03:26:46 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wksprtPS.dll
[2015/03/05 03:26:46 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmsgapi.dll
[2015/03/05 03:26:46 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\verclsid.exe
[2015/03/05 03:26:45 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\klist.exe
[2015/03/05 03:26:45 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jnwmon.dll
[2015/03/05 03:26:45 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\httpprxp.dll
[2015/03/05 03:26:45 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\label.exe
[2015/03/05 03:26:45 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcwrun.exe
[2015/03/05 03:26:45 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DefaultDeviceManager.dll
[2015/03/05 03:26:45 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TapiSysprep.dll
[2015/03/05 03:26:44 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\at.exe
[2015/03/05 03:26:44 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fvecerts.dll
[2015/03/05 03:26:44 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcacli.dll
[2015/03/05 03:26:44 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VscMgrPS.dll
[2015/03/05 03:26:44 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tcmsetup.exe
[2015/03/05 03:26:44 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Register-CimProvider.exe
[2015/03/05 03:26:44 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\whhelper.dll
[2015/03/05 03:26:43 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\blb_ps.dll
[2015/03/05 03:26:43 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wininitext.dll
[2015/03/05 03:26:43 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Background.ps.dll
[2015/03/05 03:26:43 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncInfrastructureps.dll
[2015/03/05 03:26:43 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\keepaliveprovider.dll
[2015/03/05 03:26:43 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnpts.dll
[2015/03/05 03:26:42 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmintf.dll
[2015/03/05 03:26:42 | 000,054,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setx.exe
[2015/03/05 03:26:42 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\upnpcont.exe
[2015/03/05 03:26:42 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ndproxystub.dll
[2015/03/05 03:26:42 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netbios.dll
[2015/03/05 03:26:42 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ndproxystub.dll
[2015/03/05 03:26:42 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmdext.dll
[2015/03/05 03:26:42 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spwinsat.dll
[2015/03/05 03:26:41 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nslookup.exe
[2015/03/05 03:26:41 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\newdev.exe
[2015/03/05 03:26:41 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tpmcompc.dll
[2015/03/05 03:26:41 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfproc.dll
[2015/03/05 03:26:41 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\npmproxy.dll
[2015/03/05 03:26:41 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\osbaseln.dll
[2015/03/05 03:26:41 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\davhlpr.dll
[2015/03/05 03:26:41 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfnet.dll
[2015/03/05 03:26:41 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsprx6.dll
[2015/03/05 03:26:40 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tabcal.exe
[2015/03/05 03:26:40 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\unlodctr.exe
[2015/03/05 03:26:40 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\montr_ci.dll
[2015/03/05 03:26:40 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\defragproxy.dll
[2015/03/05 03:26:39 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairingWizard.exe
[2015/03/05 03:26:39 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\takeown.exe
[2015/03/05 03:26:39 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdmps.dll
[2015/03/05 03:26:39 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dmintf.dll
[2015/03/05 03:26:39 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthHostProxy.dll
[2015/03/05 03:26:39 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WofUtil.dll
[2015/03/05 03:26:39 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wshrm.dll
[2015/03/05 03:26:39 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RdpSaPs.dll
[2015/03/05 03:26:38 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icacls.exe
[2015/03/05 03:26:38 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nlmproxy.dll
[2015/03/05 03:26:38 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mgmtapi.dll
[2015/03/05 03:26:38 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\lsmproxy.dll
[2015/03/05 03:26:38 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshelper.dll
[2015/03/05 03:26:38 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\perfts.dll
[2015/03/05 03:26:38 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tapiperf.dll
[2015/03/05 03:26:37 | 000,222,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\C_G18030.DLL
[2015/03/05 03:26:37 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserAccountControlSettings.exe
[2015/03/05 03:26:37 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nlmproxy.dll
[2015/03/05 03:26:37 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VscMgrPS.dll
[2015/03/05 03:26:37 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\chcp.com
[2015/03/05 03:26:37 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\oleacchooks.dll
[2015/03/05 03:26:36 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winrs.exe
[2015/03/05 03:26:36 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceEject.exe
[2015/03/05 03:26:36 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwaninst.dll
[2015/03/05 03:26:36 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\chcp.com
[2015/03/05 03:26:35 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hdwwiz.exe
[2015/03/05 03:26:35 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cofiredm.dll
[2015/03/05 03:26:35 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nci.dll
[2015/03/05 03:26:35 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nrpsrv.dll
[2015/03/05 03:26:35 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasdial.exe
[2015/03/05 03:26:35 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msidle.dll
[2015/03/05 03:26:35 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nddeapi.dll
[2015/03/05 03:26:34 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pots.dll
[2015/03/05 03:26:34 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CheckNetIsolation.exe
[2015/03/05 03:26:34 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NcaApi.dll
[2015/03/05 03:26:34 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fltMC.exe
[2015/03/05 03:26:34 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spopk.dll
[2015/03/05 03:26:34 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nbtstat.exe
[2015/03/05 03:26:34 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RemoveDeviceElevated.dll
[2015/03/05 03:26:34 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TSChannel.dll
[2015/03/05 03:26:34 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msidle.dll
[2015/03/05 03:26:33 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\vss_ps.dll
[2015/03/05 03:26:33 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d8thk.dll
[2015/03/05 03:26:33 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usbperf.dll
[2015/03/05 03:26:33 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wshirda.dll
[2015/03/05 03:26:32 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MdRes.exe
[2015/03/05 03:26:32 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicePairingProxy.dll
[2015/03/05 03:26:32 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhsvcctl.dll
[2015/03/05 03:26:32 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairingProxy.dll
[2015/03/05 03:26:32 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsmplpxy.dll
[2015/03/05 03:26:32 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncHostps.dll
[2015/03/05 03:26:32 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RdpSaPs.dll
[2015/03/05 03:26:32 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncHostps.dll
[2015/03/05 03:26:32 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RemoveDeviceElevated.dll
[2015/03/05 03:26:32 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmcodecdspps.dll
[2015/03/05 03:26:32 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LAPRXY.DLL
[2015/03/05 03:26:31 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ncpa.cpl
[2015/03/05 03:26:31 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adhapi.dll
[2015/03/05 03:26:31 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasautou.exe
[2015/03/05 03:26:31 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dnsext.dll
[2015/03/05 03:26:31 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VmApplicationHealthMonitorProxy.dll
[2015/03/05 03:26:31 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mprext.dll
[2015/03/05 03:26:31 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ProximityRtapiPal.dll
[2015/03/05 03:26:30 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemEventsBrokerClient.dll
[2015/03/05 03:26:30 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsprx2.dll
[2015/03/05 03:26:30 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsmplpxy.dll
[2015/03/05 03:26:30 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cfmifsproxy.dll
[2015/03/05 03:26:30 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winrssrv.dll
[2015/03/05 03:26:30 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fdBthProxy.dll
[2015/03/05 03:26:29 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MultiDigiMon.exe
[2015/03/05 03:26:29 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\secinit.exe
[2015/03/05 03:26:29 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diskcopy.com
[2015/03/05 03:26:29 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\efsui.exe
[2015/03/05 03:26:29 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spnet.dll
[2015/03/05 03:26:28 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\radarrs.dll
[2015/03/05 03:26:28 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dsauth.dll
[2015/03/05 03:26:28 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsprx7.dll
[2015/03/05 03:26:28 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XInput9_1_0.dll
[2015/03/05 03:26:28 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ir50_32.dll
[2015/03/05 03:26:28 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ir41_32.ax
[2015/03/05 03:26:28 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\acledit.dll
[2015/03/05 03:26:28 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OskSupport.dll
[2015/03/05 03:26:28 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ir32_32.dll
[2015/03/05 03:26:28 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\getuname.dll
[2015/03/05 03:26:28 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mtxex.dll
[2015/03/05 03:26:27 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ncpa.cpl
[2015/03/05 03:26:27 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSChannel.dll
[2015/03/05 03:26:27 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cfmifsproxy.dll
[2015/03/05 03:26:27 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsprx4.dll
[2015/03/05 03:26:27 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\C_IS2022.DLL
[2015/03/05 03:26:27 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WlS0WndH.dll
[2015/03/05 03:26:27 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TimeDateMUICallback.dll
[2015/03/05 03:26:27 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ir50_qcx.dll
[2015/03/05 03:26:27 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ir50_qc.dll
[2015/03/05 03:26:27 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ir41_qcx.dll
[2015/03/05 03:26:27 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ir41_qc.dll
[2015/03/05 03:26:26 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wininitext.dll
[2015/03/05 03:26:26 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dhcpcmonitor.dll
[2015/03/05 03:26:26 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmcodecdspps.dll
[2015/03/05 03:26:26 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\smphost.dll
[2015/03/05 03:26:26 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wscproxystub.dll
[2015/03/05 03:26:25 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf3216.dll
[2015/03/05 03:26:25 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfctrs.dll
[2015/03/05 03:26:25 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dpapi.dll
[2015/03/05 03:26:25 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\svsvc.dll
[2015/03/05 03:26:25 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LAPRXY.DLL
[2015/03/05 03:26:25 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sas.dll
[2015/03/05 03:26:24 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserAccountControlSettings.exe
[2015/03/05 03:26:24 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\telephon.cpl
[2015/03/05 03:26:24 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PNPXAssocPrx.dll
[2015/03/05 03:26:24 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasser.dll
[2015/03/05 03:26:24 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wscproxystub.dll
[2015/03/05 03:26:24 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshirda.dll
[2015/03/05 03:26:24 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcji32.dll
[2015/03/05 03:26:24 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iprtprio.dll
[2015/03/05 03:26:23 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TsUsbGDCoInstaller.dll
[2015/03/05 03:26:23 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netbtugc.exe
[2015/03/05 03:26:23 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\sort.exe
[2015/03/05 03:26:23 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\compact.exe
[2015/03/05 03:26:23 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tapiperf.dll
[2015/03/05 03:26:23 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XInput9_1_0.dll
[2015/03/05 03:26:22 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MdSched.exe
[2015/03/05 03:26:22 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ndadmin.exe
[2015/03/05 03:26:22 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Nlsdl.dll
[2015/03/05 03:26:22 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxgwdi.dll
[2015/03/05 03:26:22 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winrssrv.dll
[2015/03/05 03:26:22 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bitsprx3.dll
[2015/03/05 03:26:22 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\recover.exe
[2015/03/05 03:26:22 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlS0WndH.dll
[2015/03/05 03:26:22 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nddeapi.dll
[2015/03/05 03:26:22 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\riched32.dll
[2015/03/05 03:26:21 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\netvsc63.sys
[2015/03/05 03:26:21 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nshhttp.dll
[2015/03/05 03:26:21 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TaskSchdPS.dll
[2015/03/05 03:26:21 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnpinst.exe
[2015/03/05 03:26:21 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fltLib.dll
[2015/03/05 03:26:21 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\serialui.dll
[2015/03/05 03:26:21 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsock32.dll
[2015/03/05 03:26:21 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensApi.dll
[2015/03/05 03:26:21 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdBthProxy.dll
[2015/03/05 03:26:20 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ntprint.exe
[2015/03/05 03:26:20 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertEnrollCtrl.exe
[2015/03/05 03:26:20 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appsruprov.dll
[2015/03/05 03:26:20 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemEventsBrokerClient.dll
[2015/03/05 03:26:20 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\runas.exe
[2015/03/05 03:26:20 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wowreg32.exe
[2015/03/05 03:26:20 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsied.dll
[2015/03/05 03:26:19 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\typeperf.exe
[2015/03/05 03:26:19 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecEdit.exe
[2015/03/05 03:26:19 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ipconfig.exe
[2015/03/05 03:26:19 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshrm.dll
[2015/03/05 03:26:19 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmsgapi.dll
[2015/03/05 03:26:18 | 000,113,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mprmsg.dll
[2015/03/05 03:26:18 | 000,110,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fontview.exe
[2015/03/05 03:26:18 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\telephon.cpl
[2015/03/05 03:26:18 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rpcnsh.dll
[2015/03/05 03:26:18 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setspn.exe
[2015/03/05 03:26:18 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Eap3Host.exe
[2015/03/05 03:26:18 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oleacchooks.dll
[2015/03/05 03:26:17 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Fondue.exe
[2015/03/05 03:26:17 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fthsvc.dll
[2015/03/05 03:26:17 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetppui.dll
[2015/03/05 03:26:17 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DDACLSys.dll
[2015/03/05 03:26:17 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MRINFO.EXE
[2015/03/05 03:26:17 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sas.dll
[2015/03/05 03:26:17 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msiwer.dll
[2015/03/05 03:26:16 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\miguiresource.dll
[2015/03/05 03:26:16 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Narrator.exe
[2015/03/05 03:26:16 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmci.dll
[2015/03/05 03:26:16 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SortServer2003Compat.dll
[2015/03/05 03:26:16 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clb.dll
[2015/03/05 03:26:16 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PATHPING.EXE
[2015/03/05 03:26:15 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acledit.dll
[2015/03/05 03:26:15 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\spwmp.dll
[2015/03/05 03:26:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odtext32.dll
[2015/03/05 03:26:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odpdx32.dll
[2015/03/05 03:26:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odfox32.dll
[2015/03/05 03:26:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfime.ime
[2015/03/05 03:26:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comcat.dll
[2015/03/05 03:26:15 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\osuninst.dll
[2015/03/05 03:26:15 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odexl32.dll
[2015/03/05 03:26:14 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hwrreg.exe
[2015/03/05 03:26:14 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SortWindows61.dll
[2015/03/05 03:26:14 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\relog.exe
[2015/03/05 03:26:14 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\waitfor.exe
[2015/03/05 03:26:14 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msidcrl40.dll
[2015/03/05 03:26:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\oddbse32.dll
[2015/03/05 03:26:13 | 000,071,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SortWindows6Compat.dll
[2015/03/05 03:26:13 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hdwwiz.exe
[2015/03/05 03:26:13 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\where.exe
[2015/03/05 03:26:13 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\choice.exe
[2015/03/05 03:26:13 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\capisp.dll
[2015/03/05 03:26:13 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\finger.exe
[2015/03/05 03:26:13 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcfgex.dll
[2015/03/05 03:26:12 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\printui.exe
[2015/03/05 03:26:12 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\forfiles.exe
[2015/03/05 03:26:12 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eventcreate.exe
[2015/03/05 03:26:12 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\extrac32.exe
[2015/03/05 03:26:12 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gptext.dll
[2015/03/05 03:26:12 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PING.EXE
[2015/03/05 03:26:12 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\muifontsetup.dll
[2015/03/05 03:26:12 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcico.dll
[2015/03/05 03:26:11 | 000,155,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sysclass.dll
[2015/03/05 03:26:11 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mprmsg.dll
[2015/03/05 03:26:11 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sccls.dll
[2015/03/05 03:26:11 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\timeout.exe
[2015/03/05 03:26:11 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\irclass.dll
[2015/03/05 03:26:11 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\syssetup.dll
[2015/03/05 03:26:11 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MUILanguageCleanup.dll
[2015/03/05 03:26:11 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wshnetbs.dll
[2015/03/05 03:26:11 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\whhelper.dll
[2015/03/05 03:26:10 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SmartScreenSettings.exe
[2015/03/05 03:26:10 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clip.exe
[2015/03/05 03:26:10 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TRACERT.EXE
[2015/03/05 03:26:10 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usbperf.dll
[2015/03/05 03:26:10 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iprtprio.dll
[2015/03/05 03:26:10 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfime.ime
[2015/03/05 03:26:10 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shfolder.dll
[2015/03/05 03:26:10 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comcat.dll
[2015/03/05 03:26:10 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AutoWorkplaceN.dll
[2015/03/05 03:26:10 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\osuninst.dll
[2015/03/05 03:26:09 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Apphlpdm.dll
[2015/03/05 03:26:09 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sort.exe
[2015/03/05 03:26:09 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpupdate.exe
[2015/03/05 03:26:09 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localui.dll
[2015/03/05 03:26:09 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\txfw32.dll
[2015/03/05 03:26:09 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TetheringIeProvider.dll
[2015/03/05 03:26:09 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\regedt32.exe
[2015/03/05 03:26:09 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OskSupport.dll
[2015/03/05 03:26:09 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mtxex.dll
[2015/03/05 03:26:09 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msimg32.dll
[2015/03/05 03:26:08 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\reg.exe
[2015/03/05 03:26:08 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFCoinstaller.dll
[2015/03/05 03:26:08 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tzutil.exe
[2015/03/05 03:26:08 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\syskey.exe
[2015/03/05 03:26:08 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Startupscan.dll
[2015/03/05 03:26:08 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\C_IS2022.DLL
[2015/03/05 03:26:08 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msiwer.dll
[2015/03/05 03:26:08 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TimeDateMUICallback.dll
[2015/03/05 03:26:08 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsied.dll
[2015/03/05 03:26:07 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdhcinst.dll
[2015/03/05 03:26:07 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DDOIProxy.dll
[2015/03/05 03:26:07 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlaninst.dll
[2015/03/05 03:26:07 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LangCleanupSysprepAction.dll
[2015/03/05 03:26:07 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ProximityRtapiPal.dll
[2015/03/05 03:26:07 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\txfw32.dll
[2015/03/05 03:26:07 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InfDefaultInstall.exe
[2015/03/05 03:26:06 | 000,224,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\C_G18030.DLL
[2015/03/05 03:26:06 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cliconfg.exe
[2015/03/05 03:26:06 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Netplwiz.exe
[2015/03/05 03:26:06 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mpnotify.exe
[2015/03/05 03:26:06 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ktmutil.exe
[2015/03/05 03:26:06 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TapiSysprep.dll
[2015/03/05 03:26:06 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rastlsext.dll
[2015/03/05 03:26:06 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LogonUI.exe
[2015/03/05 03:26:06 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\getuname.dll
[2015/03/05 03:26:05 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Narrator.exe
[2015/03/05 03:26:05 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSReset.exe
[2015/03/05 03:26:05 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\perfts.dll
[2015/03/05 03:26:05 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msidcrl40.dll
[2015/03/05 03:26:05 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spnet.dll
[2015/03/05 03:26:05 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spwmp.dll
[2015/03/05 03:26:04 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eventvwr.exe
[2015/03/05 03:26:04 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ComputerDefaults.exe
[2015/03/05 03:26:04 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appidcertstorecheck.exe
[2015/03/05 03:26:04 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nlmsprep.dll
[2015/03/05 03:26:04 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spwinsat.dll
[2015/03/05 03:26:04 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\raschapext.dll
[2015/03/05 03:26:04 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acproxy.dll
[2015/03/05 03:26:04 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CIRCoInst.dll
[2015/03/05 03:26:03 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\miguiresource.dll
[2015/03/05 03:26:03 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iscsicpl.exe
[2015/03/05 03:26:03 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RunLegacyCPLElevated.exe
[2015/03/05 03:26:03 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Custom.ps.dll
[2015/03/05 03:26:03 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\panmap.dll
[2015/03/05 03:26:03 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TapiUnattend.exe
[2015/03/05 03:26:03 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spmpm.dll
[2015/03/05 03:26:03 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\procinst.dll
[2015/03/05 03:26:02 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LocationNotifications.exe
[2015/03/05 03:26:02 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcad32.exe
[2015/03/05 03:26:02 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mscat32.dll
[2015/03/05 03:26:02 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\softpub.dll
[2015/03/05 03:26:02 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\regedt32.exe
[2015/03/05 03:26:02 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssip32.dll
[2015/03/05 03:26:01 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DpiScaling.exe
[2015/03/05 03:26:01 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dpapimig.exe
[2015/03/05 03:26:01 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\printui.exe
[2015/03/05 03:26:01 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winver.exe
[2015/03/05 03:26:01 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mciseq.dll
[2015/03/05 03:26:01 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasdial.exe
[2015/03/05 03:26:01 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FXSUNATD.exe
[2015/03/05 03:26:01 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hh.exe
[2015/03/05 03:26:00 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsicpl.exe
[2015/03/05 03:26:00 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DpiScaling.exe
[2015/03/05 03:26:00 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tzutil.exe
[2015/03/05 03:26:00 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Enumeration.ps.dll
[2015/03/05 03:26:00 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fsavailux.exe
[2015/03/05 03:26:00 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TCPSVCS.EXE
[2015/03/05 03:25:59 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntprint.exe
[2015/03/05 03:25:59 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\credwiz.exe
[2015/03/05 03:25:59 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wowreg32.exe
[2015/03/05 03:25:59 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Background.ps.dll
[2015/03/05 03:25:59 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dvdplay.exe
[2015/03/05 03:25:59 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\backgroundTaskHost.exe
[2015/03/05 03:25:58 | 000,182,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LaunchTM.exe
[2015/03/05 03:25:58 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AxInstUI.exe
[2015/03/05 03:25:58 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cliconfg.exe
[2015/03/05 03:25:58 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CallButtons.ProxyStub.dll
[2015/03/05 03:25:58 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\secinit.exe
[2015/03/05 03:25:58 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mprext.dll
[2015/03/05 03:25:57 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartScreenSettings.exe
[2015/03/05 03:25:57 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msra.exe
[2015/03/05 03:25:57 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easinvoker.proxystub.dll
[2015/03/05 03:25:56 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resmon.exe
[2015/03/05 03:25:56 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemPropertiesRemote.exe
[2015/03/05 03:25:56 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemPropertiesProtection.exe
[2015/03/05 03:25:56 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemPropertiesHardware.exe
[2015/03/05 03:25:56 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemPropertiesDataExecutionPrevention.exe
[2015/03/05 03:25:56 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemPropertiesComputerName.exe
[2015/03/05 03:25:56 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SystemPropertiesAdvanced.exe
[2015/03/05 03:25:56 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbcad32.exe
[2015/03/05 03:25:55 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\colorcpl.exe
[2015/03/05 03:25:55 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Netplwiz.exe
[2015/03/05 03:25:55 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdbinst.exe
[2015/03/05 03:25:55 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Custom.ps.dll
[2015/03/05 03:25:55 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\systray.exe
[2015/03/05 03:25:54 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Fondue.exe
[2015/03/05 03:25:54 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bthudtask.exe
[2015/03/05 03:25:54 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cacls.exe
[2015/03/05 03:25:54 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DsmUserTask.exe
[2015/03/05 03:25:54 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\write.exe
[2015/03/05 03:25:53 | 005,120,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthFWSnapin.dll
[2015/03/05 03:25:53 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iscsicli.exe
[2015/03/05 03:25:53 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\regini.exe
[2015/03/05 03:25:53 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\scrnsave.scr
[2015/03/05 03:25:52 | 005,120,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthFWSnapin.dll
[2015/03/05 03:25:52 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sigverif.exe
[2015/03/05 03:25:52 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winver.exe
[2015/03/05 03:25:52 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdrleakdiag.exe
[2015/03/05 03:25:52 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dialer.exe
[2015/03/05 03:25:52 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TCPSVCS.EXE
[2015/03/05 03:25:51 | 000,099,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OptionalFeatures.exe
[2015/03/05 03:25:51 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ComputerDefaults.exe
[2015/03/05 03:25:51 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pcalua.exe
[2015/03/05 03:25:51 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WallpaperHost.exe
[2015/03/05 03:25:51 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\plasrv.exe
[2015/03/05 03:25:50 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RunLegacyCPLElevated.exe
[2015/03/05 03:25:50 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unlodctr.exe
[2015/03/05 03:25:50 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fltMC.exe
[2015/03/05 03:25:50 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VaultCmd.exe
[2015/03/05 03:25:50 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MRINFO.EXE
[2015/03/05 03:25:50 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\backgroundTaskHost.exe
[2015/03/05 03:25:49 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DeviceProperties.exe
[2015/03/05 03:25:49 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSchedExe.exe
[2015/03/05 03:25:49 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lodctr.exe
[2015/03/05 03:25:49 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cmdkey.exe
[2015/03/05 03:25:49 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DDOIProxy.dll
[2015/03/05 03:25:49 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scrnsave.scr
[2015/03/05 03:25:49 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\write.exe
[2015/03/05 03:25:49 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\write.exe
[2015/03/05 03:25:48 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\colorcpl.exe
[2015/03/05 03:25:48 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemPropertiesRemote.exe
[2015/03/05 03:25:48 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemPropertiesHardware.exe
[2015/03/05 03:25:48 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mciseq.dll
[2015/03/05 03:25:48 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ktmw32.dll
[2015/03/05 03:25:47 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LaunchTM.exe
[2015/03/05 03:25:47 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resmon.exe
[2015/03/05 03:25:47 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceProperties.exe
[2015/03/05 03:25:47 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemPropertiesProtection.exe
[2015/03/05 03:25:47 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemPropertiesDataExecutionPrevention.exe
[2015/03/05 03:25:47 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemPropertiesComputerName.exe
[2015/03/05 03:25:47 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemPropertiesAdvanced.exe
[2015/03/05 03:25:47 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PnPutil.exe
[2015/03/05 03:25:47 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RmClient.exe
[2015/03/05 03:25:46 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\proquota.exe
[2015/03/05 03:25:46 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\runas.exe
[2015/03/05 03:25:46 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmdkey.exe
[2015/03/05 03:25:46 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bootim.exe
[2015/03/05 03:25:46 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CallButtons.ProxyStub.dll
[2015/03/05 03:25:45 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LocationNotifications.exe
[2015/03/05 03:25:45 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cofire.exe
[2015/03/05 03:25:45 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dllhst3g.exe
[2015/03/05 03:25:44 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BitLockerWizardElev.exe
[2015/03/05 03:25:44 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diskperf.exe
[2015/03/05 03:25:44 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mountvol.exe
[2015/03/05 03:25:44 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tcmsetup.exe
[2015/03/05 03:25:44 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TapiUnattend.exe
[2015/03/05 03:25:44 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dvdplay.exe
[2015/03/05 03:25:44 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\help.exe
[2015/03/05 03:25:43 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ROUTE.EXE
[2015/03/05 03:25:43 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TRACERT.EXE
[2015/03/05 03:25:43 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcomcnfg.exe
[2015/03/05 03:25:43 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ctfmon.exe
[2015/03/05 03:25:43 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\help.exe
[2015/03/05 03:25:43 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dcomcnfg.exe
[2015/03/05 03:25:42 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\HOSTNAME.EXE
[2015/03/05 03:25:42 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\systray.exe
[2015/03/05 03:25:38 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AuthFWWizFwk.dll
[2015/03/05 03:25:38 | 000,114,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AuthFWWizFwk.dll
[2015/03/05 03:25:38 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bthudtask.exe
[2015/03/05 03:25:38 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ktmw32.dll
[2015/03/05 03:25:38 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efsui.exe
[2015/03/05 03:25:38 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TcpipSetup.dll
[2015/03/05 03:25:37 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxStreamingDataSourcePS.dll
[2015/03/05 03:25:37 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InfDefaultInstall.exe
[2015/03/05 03:25:37 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lpksetupproxyserv.dll
[2015/03/05 03:25:36 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2015/03/05 03:25:36 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wship6.dll
[2015/03/05 03:25:35 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSHTCPIP.DLL
[2015/03/05 03:25:34 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mciwave.dll
[2015/03/05 03:25:32 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usp10.dll
[2015/03/05 03:25:32 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dabapi.dll
[2015/03/05 03:25:32 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RpcNs4.dll
[2015/03/05 03:25:31 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OobeFldr.dll
[2015/03/05 03:25:31 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dabapi.dll
[2015/03/05 03:25:30 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pstorec.dll
[2015/03/05 03:25:30 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RpcNs4.dll
[2015/03/05 03:25:29 | 000,629,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OobeFldr.dll
[2015/03/05 03:25:28 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\C_ISCII.DLL
[2015/03/05 03:25:24 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\C_ISCII.DLL
[2015/03/05 03:25:24 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\normaliz.dll
[2015/03/05 03:25:23 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DeviceUxRes.dll
[2015/03/05 03:25:23 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shimeng.dll
[2015/03/05 03:25:23 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Firewall.cpl
[2015/03/05 03:25:23 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdxm.ocx
[2015/03/05 03:25:23 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxmasf.dll
[2015/03/05 03:25:22 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\rmcast.sys
[2015/03/05 03:25:22 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\mslldp.sys
[2015/03/05 03:25:21 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\bthhfenum.sys
[2015/03/05 03:25:21 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DeviceUxRes.dll
[2015/03/05 03:25:21 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msdxm.ocx
[2015/03/05 03:25:21 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dxmasf.dll
[2015/03/05 03:25:20 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\Ndu.sys
[2015/03/05 03:25:20 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\rootmdm.sys
[2015/03/05 03:25:19 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbonRes.dll
[2015/03/05 03:25:19 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\TsUsbGD.sys
[2015/03/05 03:25:19 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\workerdd.dll
[2015/03/05 03:25:18 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlanhlp.dll
[2015/03/05 03:25:18 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanhlp.dll
[2015/03/05 03:25:17 | 002,628,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NlsLexicons0009.dll
[2015/03/05 03:25:17 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ws2help.dll
[2015/03/05 03:25:17 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ws2help.dll
[2015/03/05 03:25:17 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lpk.dll
[2015/03/05 03:25:17 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iprop.dll
[2015/03/05 03:25:16 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rnr20.dll
[2015/03/05 03:25:16 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rnr20.dll
[2015/03/04 08:49:21 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallShield
[2015/02/25 18:13:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2015/02/25 18:12:57 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2015/02/25 18:12:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2015/02/25 18:12:57 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2015/02/25 18:12:57 | 000,000,000 | ---D | C] -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
[2015/02/25 07:40:36 | 001,200,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Globalization.dll
[2015/02/25 07:40:36 | 000,868,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Globalization.dll
[2015/02/25 07:40:35 | 000,323,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GlobCollationHost.dll
[2015/02/25 07:40:35 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GlobCollationHost.dll
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Users\Nobu\AppData\Local\*.tmp files -> C:\Users\Nobu\AppData\Local\*.tmp -> ]
25:オスカル :

2015/03/19 (Thu) 15:11:32

OTLログその10

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/03/19 13:58:00 | 000,000,714 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2015/03/19 13:57:25 | 000,001,137 | ---- | M] () -- C:\Users\Nobu\Desktop\Continue Live Installation.lnk
[2015/03/19 13:55:02 | 000,000,710 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2015/03/19 13:54:08 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2015/03/19 12:54:09 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2015/03/19 12:54:07 | 2475,708,415 | -HS- | M] () -- C:\hiberfil.sys
[2015/03/18 21:59:30 | 001,496,524 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
[2015/03/18 21:59:30 | 000,722,476 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
[2015/03/18 21:59:30 | 000,500,892 | ---- | M] () -- C:\WINDOWS\SysNative\perfh011.dat
[2015/03/18 21:59:30 | 000,135,664 | ---- | M] () -- C:\WINDOWS\SysNative\perfc011.dat
[2015/03/18 21:59:30 | 000,135,592 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
[2015/03/16 19:56:43 | 000,001,016 | ---- | M] () -- C:\Users\Public\Desktop\ワントゥワンウェア.lnk
[2015/03/16 19:56:43 | 000,000,946 | ---- | M] () -- C:\Users\Nobu\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2015/03/16 14:04:47 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\SysNative\drivers\Msft_Kernel_webTinstMKTN_01009.Wdf
[2015/03/16 14:00:50 | 000,008,728 | ---- | M] () -- C:\WINDOWS\SysNative\BasementDusterOff.ini
[2015/03/16 13:41:57 | 002,035,200 | ---- | M] (CinPlusV16.03) -- C:\Users\Nobu\AppData\Roaming\PPXV.exe
[2015/03/15 14:11:52 | 000,080,264 | ---- | M] (NetFilterSDK.com) -- C:\WINDOWS\SysNative\drivers\mwiynzm4ndy1yjz.sys
[2015/03/12 17:59:06 | 000,319,392 | ---- | M] (BD Inc.) -- C:\WINDOWS\SysWow64\BDL.dll
[2015/03/11 06:08:39 | 000,467,664 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
[2015/03/10 06:30:14 | 000,005,487 | ---- | M] () -- C:\Users\Nobu\AppData\Roaming\PPXV
[2015/03/05 10:44:38 | 000,195,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msclmd.dll
[2015/03/05 10:44:35 | 000,215,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msclmd.dll
[2015/03/05 06:24:42 | 000,792,032 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
[2015/03/05 06:24:42 | 000,178,144 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
[2015/02/25 18:13:42 | 000,001,774 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2015/02/21 09:27:45 | 000,128,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\iepeers.dll
[2015/02/21 08:58:53 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mshtmled.dll
[2015/02/21 08:32:48 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mshtmled.dll
[2015/02/20 12:03:49 | 000,358,912 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysNative\atmfd.dll
[2015/02/20 11:58:26 | 000,044,032 | ---- | M] (Adobe Systems) -- C:\WINDOWS\SysNative\atmlib.dll
[2015/02/20 11:49:19 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2015/02/20 11:47:56 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MshtmlDac.dll
[2015/02/20 11:35:01 | 000,816,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript.dll
[2015/02/20 11:34:24 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9diag.dll
[2015/02/20 11:32:34 | 006,035,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2015/02/20 11:20:15 | 000,301,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\atmfd.dll
[2015/02/20 11:15:32 | 000,035,840 | ---- | M] (Adobe Systems) -- C:\WINDOWS\SysWow64\atmlib.dll
[2015/02/20 11:07:24 | 000,145,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\iepeers.dll
[2015/02/20 11:06:44 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MshtmlDac.dll
[2015/02/20 11:05:05 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dxtrans.dll
[2015/02/20 10:56:47 | 000,664,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript.dll
[2015/02/20 10:49:28 | 000,801,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msfeeds.dll
[2015/02/20 10:46:45 | 002,125,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2015/02/20 10:29:00 | 002,865,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\actxprxy.dll
[2015/02/20 10:24:21 | 002,052,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2015/02/20 10:03:34 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieapfltr.dll
[2015/02/20 09:55:38 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieapfltr.dll
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\Users\Nobu\AppData\Local\*.tmp files -> C:\Users\Nobu\AppData\Local\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/03/19 12:09:13 | 000,001,137 | ---- | C] () -- C:\Users\Nobu\Desktop\Continue Live Installation.lnk
[2015/03/18 20:48:09 | 000,000,714 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2015/03/18 20:48:08 | 000,000,710 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2015/03/16 14:04:47 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\SysNative\drivers\Msft_Kernel_webTinstMKTN_01009.Wdf
[2015/03/16 13:52:56 | 000,008,728 | ---- | C] () -- C:\WINDOWS\SysNative\BasementDusterOff.ini
[2015/03/11 04:47:55 | 000,396,419 | ---- | C] () -- C:\WINDOWS\SysNative\ApnDatabase.xml
[2015/03/10 06:30:14 | 000,005,487 | ---- | C] () -- C:\Users\Nobu\AppData\Roaming\PPXV
[2015/03/05 03:31:27 | 000,142,848 | ---- | C] () -- C:\WINDOWS\SysNative\OEMLicense.dll
[2015/03/05 03:31:27 | 000,107,008 | ---- | C] () -- C:\WINDOWS\SysWow64\OEMLicense.dll
[2015/03/05 03:30:43 | 000,096,256 | ---- | C] () -- C:\WINDOWS\SysNative\BthpanContextHandler.dll
[2015/03/05 03:29:36 | 000,053,248 | ---- | C] () -- C:\WINDOWS\SysNative\BWContextHandler.dll
[2015/03/05 03:29:35 | 000,046,080 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2015/02/25 18:13:42 | 000,001,774 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2015/01/06 23:16:16 | 000,000,242 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014/10/01 19:54:10 | 000,183,808 | ---- | C] () -- C:\WINDOWS\SysWow64\igdde32.dll
[2014/10/01 19:54:10 | 000,143,360 | ---- | C] () -- C:\WINDOWS\SysWow64\igdail32.dll
[2014/09/24 15:58:21 | 000,002,255 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2013/08/23 00:36:43 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2013/08/23 00:36:42 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2013/08/22 23:46:23 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2013/08/22 16:01:23 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
[2013/08/22 08:55:20 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2013/08/22 08:52:39 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2013/06/22 22:28:17 | 000,000,036 | ---- | C] () -- C:\Users\Nobu\AppData\Local\housecall.guid.cache

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2015/01/22 17:50:14 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 02:40:58 | 022,291,584 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 02:34:06 | 019,731,824 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2014/10/29 10:19:43 | 001,013,760 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2014/10/29 09:59:23 | 000,786,944 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2014/10/29 10:16:01 | 000,512,512 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/03/19 13:55:02 | 000,000,710 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2015/03/19 13:58:00 | 000,000,714 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: SCSI
Media Type: Fixed hard disk media
Model: TOSHIBA MQ01ABD100
Partitions: 6
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE1 -
Interface type: USB
Media Type:
Model: Canon MP470 series USB Device
Partitions: 0
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 953.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: GPT: System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 260.00MB
Starting Offset: 1000341504
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: GPT: Basic Data
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 847.00GB
Starting Offset: 1407188992
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 456.00MB
Starting Offset: 910520483840
Hidden sectors: 0


DeviceID: Disk #0, Partition #4
PartitionType: GPT: Basic Data
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 65.00GB
Starting Offset: 910998634496
Hidden sectors: 0


DeviceID: Disk #0, Partition #5
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 18.00GB
Starting Offset: 980998422528
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2014/10/29 11:42:20 | 000,214,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:44:33 | 000,110,080 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2014/10/29 10:21:02 | 000,096,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:34 | 000,933,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:40 | 000,845,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:40 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV - [2014/10/29 10:01:27 | 000,046,592 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:28 | 000,516,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2014/10/29 09:55:10 | 000,367,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:50 | 000,135,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2014/10/29 10:27:24 | 000,131,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:29 | 000,817,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:06 | 000,365,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2014/10/29 10:05:58 | 000,292,864 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:41 | 000,252,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2014/10/29 10:14:35 | 000,110,592 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (Eaphost)
SRV:[b]64bit:[/b] - [2014/10/29 11:44:23 | 000,033,792 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2014/10/29 10:59:46 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2014/10/29 10:07:58 | 000,452,608 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2014/10/29 10:08:58 | 000,397,312 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2014/10/29 10:01:45 | 000,706,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:44 | 000,071,168 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2014/10/29 09:51:03 | 000,266,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:20 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 10:41:58 | 000,391,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:16 | 000,028,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2014/10/29 11:45:24 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2014/10/29 09:54:15 | 000,827,392 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
No service found with a name of ProtectedStorage
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2014/10/29 11:34:42 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2014/10/29 09:59:21 | 000,542,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:29 | 000,817,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:25 | 000,031,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2014/10/29 12:51:48 | 000,047,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2014/10/29 09:56:06 | 000,146,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:18:49 | 000,329,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2014/10/29 10:04:06 | 000,640,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2014/10/29 09:49:09 | 000,576,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2014/10/29 09:52:52 | 001,265,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2014/10/29 11:12:14 | 000,313,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2014/10/29 10:34:59 | 000,254,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:29 | 000,059,392 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/09 10:50:34 | 000,225,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:59:28 | 001,454,080 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2014/10/29 10:02:48 | 000,911,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (Audiosrv)
SRV:[b]64bit:[/b] - [2014/12/06 10:35:00 | 000,229,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
No service found with a name of SDRSVC
SRV:[b]64bit:[/b] - [2015/02/04 08:58:28 | 000,023,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2014/10/29 10:16:27 | 001,696,256 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (EventLog)
SRV:[b]64bit:[/b] - [2014/10/29 10:02:44 | 000,880,640 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:59:24 | 000,670,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:35:14 | 000,064,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\msiexec.exe -- (msiserver)
SRV - [2014/10/29 10:52:53 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2014/10/29 10:18:13 | 000,230,400 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2014/10/29 10:09:46 | 003,557,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2014/10/29 10:53:17 | 000,262,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2014/10/29 10:03:56 | 001,547,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (WlanSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:29 | 000,289,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 237 bytes -> C:\Users\Nobu\OneDrive:ms-properties

< End of report >
26:オスカル :

2015/03/19 (Thu) 15:15:09

OTL Extras logfile created on: 2015/03/19 14:22:19 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Nobu\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17690)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.88 Gb Total Physical Memory | 5.73 Gb Available Physical Memory | 72.72% Memory free
9.13 Gb Paging File | 6.91 Gb Available in Paging File | 75.65% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 846.68 Gb Total Space | 754.21 Gb Free Space | 89.08% Space Free | Partition Type: NTFS
Drive D: | 65.19 Gb Total Space | 65.09 Gb Free Space | 99.85% Space Free | Partition Type: NTFS

Computer Name: HOME-PC | User Name: Nobu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- C:\WINDOWS\SysWow64\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [Corel PaintShop Pro X4 で参照します] -- "c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\Corel PaintShop Pro.exe" "%L" (Corel, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- C:\WINDOWS\SysWow64\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [Corel PaintShop Pro X4 で参照します] -- "c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\Corel PaintShop Pro.exe" "%L" (Corel, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0FA09E2A-7BA3-4E28-AD4A-9B92CEC6D50D}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{14BA28F1-F574-4D13-8238-05DD48CFAC78}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{21DF693B-189C-45EA-BE01-466192501C57}" = lport=445 | protocol=6 | dir=in | app=system |
"{237198AA-DB93-4ECF-9665-157996ED0AE6}" = rport=139 | protocol=6 | dir=out | app=system |
"{2F3DB3AD-9501-4DDD-B9A5-FB7A82CD1C16}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{317963AC-DF8F-4AA8-9E22-E3120872668C}" = lport=10243 | protocol=6 | dir=in | app=system |
"{4233475E-0B58-402A-B68A-9593C58F3808}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{501B10A6-2A78-443C-B53B-11D9CD29C439}" = rport=445 | protocol=6 | dir=out | app=system |
"{51224157-AB62-4AA9-9A64-0C72719C93B6}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{56784D23-B818-47B9-A8B4-9E4D4BBC25A0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{607DBB54-6C22-49BE-B0FF-39CB9E46B3D0}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6646BE41-816F-48BD-8CF3-D51D3C57A5DF}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{70F83F88-37BF-4BFB-B3DE-6B91E4C68797}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{80EA32AE-F616-4E18-BD02-AD9BA175C712}" = rport=138 | protocol=17 | dir=out | app=system |
"{8FCD6CC9-3633-4919-8D61-BC1FABE99F9A}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{9B816537-41CB-477D-BD2E-3496A227A649}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{ADD026D5-6204-449D-B1BF-80FE47803DF0}" = rport=10243 | protocol=6 | dir=out | app=system |
"{AE559D5A-9313-4190-A5EA-40D1AB6428A8}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{BBF13C7E-45B3-45FC-A350-09C95C04418E}" = lport=137 | protocol=17 | dir=in | app=system |
"{BCF7BCE9-4A4E-490C-9682-1DF3A28D3858}" = lport=2869 | protocol=6 | dir=in | app=system |
"{BD499E24-0BF5-4BCF-BC38-F1B3E06F8FD8}" = lport=139 | protocol=6 | dir=in | app=system |
"{BF61C2B8-BC57-4A3C-A16E-CD39170C821D}" = lport=138 | protocol=17 | dir=in | app=system |
"{E68D1055-FF42-41C4-B3AC-A76A99D4E89D}" = rport=137 | protocol=17 | dir=out | app=system |
"{EBC0FFEA-F376-4C83-9F09-F3E3CF538F3E}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04C421AB-EF8D-4F62-B52D-989E6F3EA6B7}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd10.exe |
"{07B43F11-FB07-4961-BB57-1BD03B9617C9}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{09F25306-38E3-4D82-8F75-766DDA343884}" = dir=out | name=onenote |
"{0B982CB3-A575-4D34-8B72-2F7FE4F6D5A9}" = dir=in | app=c:\program files (x86)\nec\smartvision\svui.exe |
"{0C109D7B-16E5-464B-BB33-D0D6FD9D878E}" = dir=out | name=@{microsoft.bingweather_1.5.1.245_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} |
"{0F71B879-258E-4072-8884-79A248B57225}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{1143AAE3-C183-41C3-88F2-349E3106CE26}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{120E0C79-FC39-48CF-864C-170279B18FCC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{14CDD858-1154-4CD0-A37E-0183FC6DA44A}" = dir=out | name=@{microsoft.zunevideo_2.6.434.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{14F55304-1BBC-4561-943C-734335603D25}" = dir=out | name=@{microsoft.reader_6.2.9200.20523_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{15B2102C-D9E7-4687-8A7D-A18A3388D30E}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{165C67A2-61E5-4D51-A4AC-190403126DA3}" = dir=out | name=@{microsoft.skypeapp_1.1.0.25_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} |
"{190887AE-9A0A-44E8-BDF6-A115AA6C1740}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{1C81C1D2-CB4B-4730-822E-81363EB4AA13}" = dir=in | app=c:\program files\intel corporation\intel widi\widiapp.exe |
"{1E66305A-F5D9-4AB1-AE5E-967F0C3982CC}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{1EA8C80F-8458-4BF2-BA8B-4EA3C03BA371}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{1F751A4F-7D52-4539-B460-94C56C31F107}" = dir=out | name=microsoft minesweeper |
"{1F81459C-4F11-43FE-87D7-A482F06393A3}" = dir=in | name=check point vpn |
"{20EE58EF-5069-4C6C-AE18-44D4DF0D0F0F}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{217B6D6C-B482-4DBD-A222-8BC1D75767B6}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{245C7599-2A43-41AF-897E-D86EB321A575}" = dir=out | name=skype |
"{26B4BE9F-1C45-4845-A8B9-E0D1A74437FF}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{28205B34-D2CC-4639-8262-099CD1A77EBC}" = dir=out | name=@{microsoft.zunemusic_2.6.672.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{2E4087C1-68B0-4905-8D0B-661F27E7778A}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{2E6C7ADB-5034-4F45-8A7B-E37555AE6721}" = dir=out | name=microsoft mahjong |
"{3196D54F-193B-4FE0-BEC8-2479E77026F5}" = dir=in | name=microsoft minesweeper |
"{33BACF55-B5F5-4E26-8781-4BAA2335C7CB}" = dir=out | name=@{microsoft.zunevideo_1.1.134.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} |
"{3689450B-869D-40C6-88E0-B467820A5B5F}" = dir=out | name=@{e0469642.2164478cd4c7b_1.5.0.20_x86__9t6e0p3002swr?ms-resource://e0469642.2164478cd4c7b/resources/app/name} |
"{3DFB4165-F5A2-4705-A2A3-AAB23BDBA962}" = dir=out | name=@{microsoft.bingweather_3.0.4.298_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} |
"{411DF073-37FD-40A3-AD6C-EBA045C43126}" = protocol=58 | dir=in | app=system |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{4550A850-6B05-4A6F-ABBD-9574357BAD54}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{46485A72-2078-43A3-8D8F-9D6B807BC21A}" = dir=in | name=@{e0469642.2164478cd4c7b_1.5.0.20_x86__9t6e0p3002swr?ms-resource://e0469642.2164478cd4c7b/resources/app/name} |
"{48037EE4-4AC2-4C19-A500-BFB453AC9285}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{4AC6D6CA-C6D6-4DFD-B177-B1087718755A}" = dir=out | name=@{microsoft.bingsports_1.5.1.249_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} |
"{4CD156DE-9106-494A-ADC9-6C64F0E17850}" = dir=in | name=@{e0469642.2164478cd4c7b_1.5.0.20_x86__9t6e0p3002swr?ms-resource://e0469642.2164478cd4c7b/resources/app/name} |
"{50B85BAD-2451-47FE-9134-9CE55E88A3DB}" = dir=out | name=@{microsoft.bingmaps_1.5.1.240_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{57E10BA1-E675-49D7-9BD3-3FD34D28BA4F}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{5898DA4D-1BD1-4C06-BF72-2C9CEA4976FB}" = dir=in | name=juniper networks junos pulse |
"{5A2C7F37-C536-43F7-BB10-4C7F61FBABEC}" = dir=out | name=@{microsoft.bingsports_3.0.4.298_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{62A6BEE5-D0ED-45EA-8E64-9829D33271BF}" = dir=out | name=ホットペッパー グルメ |
"{687E7C5D-87B6-46F6-BF72-9A034675896F}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.4.253_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{68BA6497-E822-4AC0-94AE-F9489C8314EB}" = dir=out | name=youcam for nec |
"{68D28B02-A1FD-4C62-A509-BFD0BEB4AA72}" = dir=out | name=windows_ie_ac_001 |
"{6C4E7642-4CCB-4D78-B1F7-13A02D4A1650}" = dir=out | name=check point vpn |
"{6C92B862-2840-439C-8E6D-262C10DE0260}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{6CE266C2-19FB-4C02-A539-B47657760986}" = dir=in | name=@{e0469642.2164478cd4c7b_1.5.0.20_x86__9t6e0p3002swr?ms-resource://e0469642.2164478cd4c7b/resources/app/name} |
"{6F2E0302-9F23-4CE4-B836-BA94B531FC46}" = dir=in | name=@{microsoft.reader_6.2.9200.20523_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} |
"{73D49FEA-E60C-450A-8BFC-036019FDD158}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{7777B05B-CF19-4A78-97AD-3C5F183FF79E}" = dir=out | name=sonicwall mobile connect |
"{78F4D03D-4747-47B9-B99F-C3281BF22FCC}" = dir=out | name=@{microsoft.bingnews_3.0.4.268_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{7A2A0C63-0563-474E-8631-49367115E94B}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{83F67DAE-31A0-44E6-AEB8-25F979D95E53}" = dir=out | name=@{microsoft.bingtravel_1.5.1.248_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} |
"{84C53BD5-7725-48B8-BF45-4FBDA348338D}" = dir=in | name=sonicwall mobile connect |
"{85E41891-6C96-428D-A6E7-3EE2EFFF0F78}" = dir=out | name=music.jp for nec |
"{8990FEA6-3A91-457E-B508-02E7A74C1EEA}" = dir=out | name=microsoft solitaire collection |
"{8ECD7328-42CF-4C9E-99A2-CD1E6BFFCA01}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{95A31980-D746-4EBF-90A3-7A9754940263}" = dir=out | name=@{microsoft.bingtravel_3.0.4.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{9645710E-3FF0-44C3-8149-0F5209658567}" = dir=in | name=@{14c78905.trendmicromalwaremap_6.5.0.1049_x86__y1xsffnhj35f6?ms-resource://14c78905.trendmicromalwaremap/resources/productname} |
"{9668D38B-48D8-4C5C-A8AE-DC46780A1B67}" = dir=in | name=microsoft solitaire collection |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{A3301654-F5F6-4642-BA9B-F1A6BDB08D35}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{A3B56263-C220-4F2A-BFE6-0F16C06E0AD3}" = dir=out | name=windows_ie_ac_001 |
"{A47F8597-C554-43BF-85EA-C9D0D560F57D}" = dir=out | name=juniper networks junos pulse |
"{A57F4810-E33D-48B9-8CD6-F41DC29CE35A}" = dir=out | name=windows_ie_ac_001 |
"{A58A8E13-3495-42D3-9098-07B909DB905A}" = dir=in | name=onenote |
"{A6280685-0118-499C-8E17-53BF2EA3D955}" = dir=out | name=navitime for nec |
"{A7DD13C2-8A07-471B-BAED-DC2C99ACECBF}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{A9E9EA66-E712-4B85-8A75-E6E4A040A664}" = dir=out | name=@{microsoft.bingfinance_3.0.4.298_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{ACFB80D1-ACAF-42E5-B310-55DD35C310C5}" = dir=out | name=@{microsoft.xboxlivegames_1.1.134.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{AE743691-F794-4A29-80E1-574890973983}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{AE8553E1-84E8-45D8-AF2F-991D63AB3F6E}" = dir=out | name=f5 vpn |
"{AF983A7E-96FB-4552-92A9-682F9B193929}" = dir=out | name=@{e0469642.2164478cd4c7b_1.5.0.20_x86__9t6e0p3002swr?ms-resource://e0469642.2164478cd4c7b/resources/app/name} |
"{AF9BB235-7447-4136-A48A-DAC772B260BA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B2871A84-84F9-4898-9E14-2BE598148C9E}" = dir=out | name=fresh paint |
"{B7DD0BB7-A608-4049-A76E-06D1EE641AE4}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{C0F8E04C-2300-42DE-959C-8B1F80E666D1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{C19B5F4D-B1C8-4CCF-A0C0-1528B4AB4BBF}" = dir=out | name=@{14c78905.trendmicromalwaremap_6.5.0.1049_x86__y1xsffnhj35f6?ms-resource://14c78905.trendmicromalwaremap/resources/productname} |
"{C245F1A2-6699-4550-A997-A8B9FEB814CB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{C648462C-0583-447D-A293-56B0867CA97D}" = dir=out | name=ついっぷるトレンド |
"{C6AE89E4-54F9-483C-BCC8-2D2813B30C3E}" = protocol=6 | dir=out | app=system |
"{C72C715D-D5F1-4F23-9FE6-7D669EA82B79}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{C9CA0A24-C54F-4B92-808E-11DA0AC2E8BE}" = dir=out | name=@{microsoft.zunemusic_1.1.134.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} |
"{C9DFDC0C-964A-4D89-9F10-9480146630D7}" = dir=out | name=@{microsoft.bingfinance_1.5.1.406_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} |
"{CAA16517-13B2-4CAC-A2FB-67F4D9751467}" = dir=in | app=c:\program files (x86)\aos technologies\ファイナルパソコンデータ引越し 9 plus for nec\pcmover.exe |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D6E8F624-89EC-4F93-98CE-E0CE7B16E141}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{DA2B2ABD-C5E5-4E98-89CC-8C751CEC12D2}" = dir=in | name=@{microsoft.skypeapp_1.1.0.25_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DDE94E7A-4AC8-4240-8998-E66F8823BFE7}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.4.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{DE505745-F83F-47E7-950B-BDABE41A90D9}" = dir=out | name=@{microsoft.bingnews_1.5.1.409_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} |
"{DEAA807C-C77F-47AE-9542-4AB65654AF77}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{DEEA423E-A089-4959-BCFC-C3C9337AA59A}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{E2F87576-DB95-4927-B395-E2CD16C27CC5}" = dir=out | name=じゃらん |
"{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{E880B6A9-45CB-4118-8CF0-0A04A55DF00F}" = dir=in | name=skype |
"{EBACA06B-3529-492E-B9E1-9DA3BE48E6FD}" = dir=in | name=f5 vpn |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{EDA6A43D-0B57-4845-89D7-C7EBBF8911BC}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{EE5DB539-2BE1-43A6-A4F6-40F4327B046B}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{F1DB1599-E55F-4073-A93E-CD61EA290EDB}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{F2A9B0B8-88A7-4040-988F-C85BEA6EC5AE}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F3F6924E-F8F9-4606-AAD3-6FDCA4AA4EA6}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{F9FC14F5-9606-4087-BC36-DBC0BE077B17}" = dir=in | name=microsoft mahjong |
"{FB0FB19C-34E8-4339-AB4F-3B12AA860FD3}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0015DE8E-8D9F-403E-8E5A-4098410E6125}" = PSPPro64
"{01F84262-DBC2-4B4D-8C4A-1C82D2CD88AA}" = ECOみえグラフ
"{0728A184-F899-4356-B93D-8228674F0DEB}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology
"{0D1DA58B-0C63-42FE-9A75-63AB78A24F64}" = ワイヤレスLANの設定
"{0DF7096B-715A-4233-8633-C7A16ED6D616}" = Apple Application Support(64 ビット)
"{10AAED5B-1575-3EA3-97D0-C5E514DE777C}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP470_series" = Canon MP470 series
"{12f53c5a-08b1-4534-a370-49c076e2656d}" = Intel(R) PRO/Wireless Driver
"{16A71293-831A-4ACD-B09A-332A33C6A3DB}" = ピークシフト・ECOモード用モジュール
"{19DD6053-BDE2-4297-B8D3-ABFD9F2C2BE0}" = マウス・リモコン登録ユーティリティ
"{1B2C85A0-2B9E-4291-8B37-468D57503E98}" = Update for Japanese Microsoft IME Postal Code Dictionary
"{1C03A416-D8D5-42F6-87CE-4874A383EBEB}" = Intel® PROSet/Wireless WiFi Software
"{1D2AF0E5-3B07-4B0F-98BD-03F0918BC367}" = ECOモード設定ツール
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{23D486D4-FBE0-40F3-A245-E4D56D094764}" = Intel(R) WiDi
"{2DC6DE6F-ABAF-410D-B0A9-C67117E60EC7}" = ディスプレイの切り換え
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{4DF9BC73-D405-4C3B-A0EA-1E390A8AFC73}" = Update for Japanese Microsoft IME Standard Dictionary
"{4F3E3604-F81F-4768-BD87-6A692338A847}" = ピークシフト設定ツール
"{50E1D8B9-26E5-4755-B8BB-73167F17C466}" = 彩りの設定
"{51DD369A-40BD-44FD-A810-0BA1C2ABA8ED}" = ワンタッチスタートボタンの設定
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{69561DE9-373F-4273-AE2D-BD076E552C0C}" = おすすめメニューNavi
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8F93181D-5C91-4FE4-B2CB-D2AB8F0EDE27}" = Homeリンクマネージャ(64bit)
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{98916919-5ACD-415A-AA04-7B7B0A425BE6}" = クイックパワーオン
"{9C19D76B-A55F-4EAE-8EC4-4D9F10D8C80E}" = SmartVision/PLAYER
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = NX PAD Driver
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B3806CF1-829E-4280-BC3E-1636035908FD}" = バッテリ・リフレッシュ&診断ツール
"{B939BFEB-824F-4456-A4EE-2B86ED04033D}" = Update for Japanese Microsoft IME Trending Words Dictionary
"{C3600AE6-93A0-3DB7-B7AA-45BD58F133B5}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{C4123106-B685-48E6-B9BD-E4F911841EB4}" = Apple Mobile Device Support
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{D227565A-0033-40AD-89BA-653A205CDC11}" = iTunes
"{D4619504-5AAA-410D-BCFE-38F29DF3834B}" = Adblock Plus for IE (32-bit and 64-bit)
"{D637EF1B-3B6A-4680-A2F2-ACB6BF464DFA}" = パネルオープンパワーオンの設定
"{DF5EEEE3-A2F1-464A-8157-64BA751943AB}" = ワンタッチスタートボタンの設定
"{DFA0E609-8481-4E32-828E-7311E4936F99}" = パワーオフUSB充電の設定
"{E9F0BCD8-6BD5-1ED7-EDA3-9FCF2A478AA1}" = Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64)
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F13921D6-AE6D-41BF-807A-17BD99C0A4FD}" = Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed
"{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client
"AVDm" = 彩りの設定
"CCleaner" = CCleaner
"HomeBusinessRetail - ja-jp" = Microsoft Office Home and Business 2013 - ja-jp
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{00580795-581C-4587-B9F2-37320D7AB37F}" = Corel PaintShop Pro X4
"{00580795-581C-4587-B9F2-37320D7AB37F}" = ICA
"{006CAAEF-CA96-4181-AC22-FE56D61432E4}" = PSPPContent
"{00AE1A2D-7BC2-4359-A0EC-E19F36E391BB}" = Corel PaintShop Pro X4
"{00BEE329-BAAB-49FF-9B66-55E4B12B9ADD}" = IPM_PSP_COM
"{00D13418-7DDF-4D3D-A237-E297B103BB6B}" = Setup
"{00D74A7A-F7AD-4D00-ABD2-0973836292C7}" = PSPPHelp
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam 5
"{02D371DE-95DC-4F6F-A1A6-4C957D6721A9}" = 筆ぐるめ 20
"{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform
"{15015752-9990-4516-A2B1-93823281FB8E}" = Update for Japanese Microsoft IME Postal Code Dictionary
"{157C8082-2627-4236-A6CC-B797CF91D576}" = 再セットアップメディア作成ツール
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1C01168A-B749-4A23-92F3-44EA477F3207}" = Homeリンクマネージャ(32bit)
"{21357E10-BDCB-4CDD-B2A3-905DD7ED653D}_is1" = DigiBookBrowser Version 1.5.2.70
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{26902F5B-A017-4117-A6CD-5389865DE8E2}" = CyberLink MediaShow向けアドオン
"{2749c485-3a8b-4533-92ff-7cf6e8221cff}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{2CC90FB4-B402-4816-831B-C35CEF2FC5A3}" = ファイナルパソコンデータ引越し 9 plus for NEC
"{300CBB5E-4649-4FBB-A333-A82E8F36387A}" = SideScroll
"{30F99474-EBE3-4134-A02B-F6CD38CFE243}" = Photo Gallery
"{31704E73-FB79-4C79-A4CE-4E6477EFA383}" =
"{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}" = SiteAdvisor
"{3C100F93-4F0E-4C32-9AEB-EFB3E2CA34F8}" = PhotoWizard
"{3C886FA8-C569-43F7-A035-C964FED22D66}" = Photo Common
"{43027AA7-65D3-4D23-8CFD-74A92A3F1857}" = ムービーフォトメニュー
"{447CDCE5-F555-429B-BFA6-642C3C6D684F}" = Apple Application Support(32 ビット)
"{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform
"{4F81D311-FA20-4AB1-AF18-28B428731AAD}" = Windows Live Essentials
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{619133A5-48DE-4A54-AE4E-9CD480E4D2D7}" = 楽しもう!Office ライフ
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform
"{6EA74C3B-9A6E-45A5-9BD4-ABDC6B07A577}" = Windows Live UX Platform Language Pack
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{72549011-E698-4A05-A989-4509217D6189}" = パソらく設定
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{729B89D0-946A-407E-A121-343BD3320C40}" = Roxio BackOnTrack
"{74DC8A26-4E05-40B6-AD11-C9428A1AE150}" = Roxio Creator LJ
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78CE66A9-85AF-4BD8-8FB7-35B5F3846C00}" = Update for Japanese Microsoft IME Standard Extended Dictionary
"{7A5D09F9-8E44-482F-849E-8D203D78BD33}" = Roxio Creator LJ
"{7DB71278-9AD7-4480-AB08-8649C5010B17}" = Update for Japanese Microsoft IME Standard Dictionary
"{80E158EA-7181-40FE-A701-301CE6BE64AB}" = CyberLink MediaShow BD
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{88EC93C9-D3D7-4371-AA2D-84386E1ED9D1}" = ぱっと観スライドショー
"{89A15676-78AE-4D51-BF5B-DEE3E0D46C94}" = Roxio Creator LJ
"{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions
"{8AF94405-08BB-4CF6-8856-84C88EAA7ECA}" = ソフト&サポートナビゲーター
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8e41467d-297e-496d-8b0f-e771b6c87c06}" = インテル® PROSet/Wireless ソフトウェア
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0411-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{970F982A-E889-486B-BB26-B8598280D924}" = Movie Maker
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{AC76BA86-7AD7-1041-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Japanese
"{AD2DAD95-2A19-4A7B-91C5-52FEAFBD5206}" = パソコンのいろは8
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = CyberLink PowerProducer BD
"{B998F909-2F6B-46EF-B4CD-730AF38A376C}" = DiXiM Player for SmartVision
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer
"{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common
"{CAF46B72-12E2-4FE7-A348-45999E69E1FE}" = フォト ギャラリー
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{d07b0db5-8dad-40e1-be90-88026298a46b}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{EA65772D-1999-462B-BFC0-480A9515ABCC}" = Smart Update
"{ED5FB3AA-DCA2-4A6D-9ED9-ED6955AEEEF6}" = デ辞蔵 PC 2.0
"{ED6C77F9-4D7E-447C-9EC0-9A212D075535}" = Movie Maker
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F353F974-64FF-44F5-AE2D-D079964C5685}" = おてがるバックアップ
"{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package
"{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam 5
"InstallShield_{300CBB5E-4649-4FBB-A333-A82E8F36387A}" = 左右スクロールボタンの設定
"InstallShield_{31704E73-FB79-4C79-A4CE-4E6477EFA383}" =
"InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}" = CyberLink MediaShow BD
"InstallShield_{AD2DAD95-2A19-4A7B-91C5-52FEAFBD5206}" = パソコンのいろは8
"InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = CyberLink PowerProducer BD
"InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = CyberLink PowerDVD
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"MSC" = マルチアクセス - PCセキュリティセンター
"music.jp PLAY_is1" = music.jp PLAY 4.0
"WinLiveSuite" = Windows Live Essentials

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-2724061903-427220060-254295731-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"SkyDriveSetup.exe" = Microsoft SkyDrive

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2014/11/01 2:53:27 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

Error - 2014/11/01 2:53:27 | Computer Name = home-PC | Source = Perflib | ID = 1023
Description =

Error - 2014/11/01 2:53:28 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

Error - 2014/11/02 2:22:50 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

Error - 2014/11/02 2:22:50 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

Error - 2014/11/02 2:22:50 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

Error - 2014/11/02 2:22:50 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

Error - 2014/11/02 2:22:50 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

Error - 2014/11/02 2:22:50 | Computer Name = home-PC | Source = Perflib | ID = 1023
Description =

Error - 2014/11/02 2:22:50 | Computer Name = home-PC | Source = Perflib | ID = 1008
Description =

[ System Events ]
Error - 2015/03/18 23:12:47 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/18 23:12:47 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/18 23:54:29 | Computer Name = home-PC | Source = Service Control Manager | ID = 7000
Description = Search Snacks 1.10.0.5 Client Service サービスを、次のエラーが原因で開始できませんでした: %%2

Error - 2015/03/18 23:54:44 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/18 23:54:44 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/18 23:54:44 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/18 23:54:44 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/18 23:54:45 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/18 23:54:45 | Computer Name = home-PC | Source = DCOM | ID = 10016
Description =

Error - 2015/03/19 0:55:15 | Computer Name = home-PC | Source = DCOM | ID = 10010
Description =


< End of report >
27:オスカル :

2015/03/19 (Thu) 15:17:05

AdwCleaner、OTL、Extrasのログをすべて投稿しました。

お手数ですが、ご確認宜しくお願い致します。
28:悪代官 :

2015/03/19 (Thu) 15:21:36

作業と報告、ご苦労様です。
ACで検出処置されたものはログでわかりました。
ほとんどは最初の1回目で片付いてますね。
ではこれはいいです。

本題のほうはOTLでだいぶ見えてきました。
では今度はOTLで処置しましょう。

このレスの最後にスクリプトを貼っておくので、それを丸ごとコピーして、それをWindowsのメモ帳ファイルに貼り付けて保存しておいてください。

用意できたらPCをまたセーフモードで再起動してOTL起動してください。
起動したらOTLのウインドウ下部にスクリプトを貼り付けて、今度は「Run fix」(赤字のボタン)を押してください。
これでOTLでの処置が開始されます。

しばらく待って処置ができたらPCを通常モードで再起動すると、またOTLのログが出るはずなので、それを保存してから、しばらく様子見の後、OTLのログとともに状態報告をレスください。
OTLのスクリプトは以下になります。破線(-----)を含まない箇所を丸ごとコピーして、それをOTLに貼って作業してください
------------------------------------------
:OTL
SRV - [2015/03/16 13:47:38 | 000,170,496 | ---- | M] () [Auto | Running] -- C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533\jnsb94FC.tmp -- (liqewowi)
DRV:[b]64bit:[/b] - [2015/03/15 14:11:52 | 000,080,264 | ---- | M] (NetFilterSDK.com) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\mwiynzm4ndy1yjz.sys -- (mwiynzm4ndy1yjz)
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALNJS
IE - HKLM\..\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALNJS
IE - HKU\S-1-5-21-2724061903-427220060-254295731-1001\..\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
[2015/03/16 14:05:37 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Roaming\EAC31800-1426482337-B34A-88A6-E62895807533
[2015/03/16 13:45:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\日本hao123
[2015/03/16 13:41:57 | 002,035,200 | ---- | C] (CinPlusV16.03) -- C:\Users\Nobu\AppData\Roaming\PPXV.exe
[2015/03/16 13:40:37 | 000,000,000 | ---D | C] -- C:\Users\Nobu\AppData\Roaming\smileyswelove
[2015/03/16 13:40:30 | 000,000,000 | ---D | C] -- C:\Users\Nobu\Documents\Add-in Express
[2015/02/25 18:12:57 | 000,000,000 | ---D | C] -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
[2015/03/19 13:57:25 | 000,001,137 | ---- | M] () -- C:\Users\Nobu\Desktop\Continue Live Installation.lnk
[2015/03/16 19:56:43 | 000,001,016 | ---- | M] () -- C:\Users\Public\Desktop\ワントゥワンウェア.lnk
[2015/03/15 14:11:52 | 000,080,264 | ---- | M] (NetFilterSDK.com) -- C:\WINDOWS\SysNative\drivers\mwiynzm4ndy1yjz.sys

:Files
C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533\jnsb94FC.tmp
C:\Windows\SysNative\drivers\mwiynzm4ndy1yjz.sys
C:\Users\Nobu\AppData\Roaming\EAC31800-1426482337-B34A-88A6-E62895807533
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\日本hao123
C:\Users\Nobu\AppData\Roaming\PPXV.exe
C:\Users\Nobu\AppData\Roaming\smileyswelove
C:\Users\Nobu\Documents\Add-in Express
C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
C:\Users\Nobu\Desktop\Continue Live Installation.lnk
C:\Users\Public\Desktop\ワントゥワンウェア.lnk

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------------------------------------------
29:オスカル :

2015/03/19 (Thu) 16:40:43

ご回答ありがとうございます。
ご指示の通りにOTLを実施しました。

1時間程様子を見ましたが、広告ブラウザや「Welcome to AnyWhereAccess Setup Wizard」というウインドウは
出ておりません。
McAfeeからのポップアップ注意もありません。

OTLのログを以下に添付します。

【OTLログ】
All processes killed
========== OTL ==========
Service liqewowi stopped successfully!
Service liqewowi deleted successfully!
C:\Users\Nobu\AppData\Roaming\EAC31800-1426481232-B34A-88A6-E62895807533\jnsb94FC.tmp moved successfully.
Service mwiynzm4ndy1yjz stopped successfully!
Service mwiynzm4ndy1yjz deleted successfully!
C:\Windows\SysNative\drivers\mwiynzm4ndy1yjz.sys moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}\ not found.
Registry key HKEY_USERS\S-1-5-21-2724061903-427220060-254295731-1001\Software\Microsoft\Internet Explorer\SearchScopes\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{00707C0A-A654-4A1F-8DBC-0B9CF1F7E04B}\ not found.
C:\Users\Nobu\AppData\Roaming\EAC31800-1426482337-B34A-88A6-E62895807533 folder moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\日本hao123 folder moved successfully.
C:\Users\Nobu\AppData\Roaming\PPXV.exe moved successfully.
C:\Users\Nobu\AppData\Roaming\smileyswelove folder moved successfully.
C:\Users\Nobu\Documents\Add-in Express folder moved successfully.
C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64\x64 folder moved successfully.
C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\x64 folder moved successfully.
C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 folder moved successfully.
C:\Users\Nobu\Desktop\Continue Live Installation.lnk moved successfully.
C:\Users\Public\Desktop\ワントゥワンウェア.lnk moved successfully.
File C:\WINDOWS\SysNative\drivers\mwiynzm4ndy1yjz.sys not found.
File rity] not found.
File sethosts] not found.
File ptytemp] not found.
File eaterestorepoint] not found.
File boot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 03192015_153515

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
30:悪代官 :

2015/03/19 (Thu) 18:05:27

作業と報告、ご苦労様です。

>1時間程様子を見ましたが、広告ブラウザや「Welcome to AnyWhereAccess Setup Wizard」というウインドウは
>出ておりません。
>McAfeeからのポップアップ注意もありません。

はい、OTLでの処置成功ですね。ログも見ましたがSalus等も片付いてるようです。
ではOTLも導入時の説明に沿って片付けてください。

では全体の再確認しましょうか。
またHJTとインストール情報と、CCでの各タブのログを取り直して、それらをレスで見せてください。

現在異常もないようですが念のため明日まで待って、その時点でも異常再発ないかを確認後にレスしたほうがいいでしょう。
Salusの根性と往生際の悪さは筋金入りですから、一度処置しても台所の隅や冷蔵庫の裏からまた這い出してくる可能性もありますので
31:オスカル :

2015/03/20 (Fri) 17:01:44

1日様子を見ましたが、広告ブラウザ等は出ておりません。
McAfeeからのポップアップ注意も特にありません。

以下にHJT及びCC各のログを添付します。


【HJT】
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 16:47:35, on 2015/03/20
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Program Files (x86)\NEC\HomeLinkManager\HubDriverDriveManager.exe
C:\ProgramData\SmartUpdate\SUMAIN\SmartUpdate.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Users\Nobu\Desktop\悪代官の伏魔殿\01 準備作業\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SmartUpdate] "C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [FuncSwitch] C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
O4 - HKLM\..\Run: [HScrollFun] C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [MoviePhotoMenu] C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: Bluetoothへの送信 - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: McAfee Application Installer Cleanup (0101961426758763) (0101961426758763mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\010196~1.EXE (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: IntelR CentrinoR Wireless BluetoothR + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AS ContentsDL - NEC Personal Computers, Ltd. - C:\Program Files\NEC\AtrioSide\AS_ContentsDL.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CyberLink Product - 2012/12/26 17:39:22 (CLKMSVC10_38F51D56) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dejizo Dictionary Search Engine (DejizoDicSearch) - EAST - C:\Program Files (x86)\East\DejizoPC\DejizoDicSearch.exe
O23 - Service: DiXiM Player SDK Service - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCService.exe
O23 - Service: DiXiM Player Service Controller - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCServicecControl.exe
O23 - Service: ECOViewer (ecomonsv) - NEC Personal Computers, Ltd. - C:\Program Files\EcoViewer\ecomonsv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: HubDriver - NEC Personal Computers, Ltd. - C:\Program Files\NEC\HomeLinkManager\HubDriver.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: NECBT SERVICE - NEC Personal Computers, Ltd. - C:\Program Files\NECBoot\NECBTSVC.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NT Meter - NEC Personal Computers, Ltd. - c:\windows\syswow64\NTMETER.exe
O23 - Service: PeakShift Service (PeakShiftSvc) - NEC Personal Computers, Ltd. - C:\Program Files\PeakShiftTool\PeakShiftSvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Unknown owner - C:\Program Files (x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe (file missing)
O23 - Service: SmartVision Admin Service (SVAdminService) - NEC Personal Computers, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision Admin Service 64 (SVAdminService64) - NEC Personal Computers, Ltd. - C:\Program Files\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision MessageManager Service (SVMsgMngService) - NEC Corporation, NEC Personal Products, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVMsgMng.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WSET Info Service (WSET_Info_Service) - NEC Personal Computers, Ltd. - C:\Program Files\NECWSET\WSET_Info.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - IntelR Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 15030 bytes


【CC】
〔インストール情報〕
Adblock Plus for IE (32-bit and 64-bit) Eyeo GmbH 2015/03/01 6.66 MB 1.4
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/08 204 MB 11.0.10
Apple Application Support(32 ビット) Apple Inc. 2015/02/25 95.4 MB 3.1.2
Apple Application Support(64 ビット) Apple Inc. 2015/02/25 108 MB 3.1.2
Apple Mobile Device Support Apple Inc. 2015/02/25 29.3 MB 8.1.1.3
Apple Software Update Apple Inc. 2013/06/22 2.38 MB 2.1.3.127
Bonjour Apple Inc. 2013/06/22 2.00 MB 3.0.0.10
Canon MP470 series 2015/01/03
CCleaner Piriform 2015/03/19 5.03
Corel PaintShop Pro X4 Corel Corporation 2015/01/03 323 MB 14.2.0.7
CyberLink MediaShow BD CyberLink Corp. 2012/12/26 1.01 GB 6.0.4923
CyberLink MediaShow向けアドオン NEC Personal Computers, Ltd. 2012/12/26 1.58 MB 1.1.0.1
CyberLink PowerDVD CyberLink Corp. 2012/12/26 181 MB 10.0.4701.52
CyberLink PowerProducer BD CyberLink Corp. 2012/12/26 168 MB 5.5.3.4617
CyberLink YouCam 5 CyberLink Corp. 2013/06/23 247 MB 5.0.2224
DigiBookBrowser Version 1.5.2.70 TriWorks Corp.JAPAN 2012/12/26 8.51 MB 1.5.2.70
DiXiM Player for SmartVision DigiOn 2012/12/26 1.4.0.2
ECOみえグラフ NEC Personal Computers, Ltd. 2012/12/26 5.18 MB 1.5.0
ECOモード設定ツール NEC Personal Computers, Ltd. 2012/12/26 3.52 MB 5.7.0
Google Toolbar for Internet Explorer Google Inc. 2015/03/18 7.5.6227.252
Google Update Helper 2012/10/02
Homeリンクマネージャ(32bit) NEC Personal Computers, Ltd. 2012/12/26 1.85 MB 1.2.0.3
Homeリンクマネージャ(64bit) NEC Personal Computers, Ltd. 2012/12/26 7.75 MB 1.2.0.3
Intel(R) Management Engine Components Intel Corporation 2013/05/14 8.1.0.1252
Intel(R) Processor Graphics Intel Corporation 2015/01/03 10.18.10.3958
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed Intel Corporation 2012/12/26 5.77 MB 15.5.5.0480
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Motorola Solutions, Inc. 2012/12/26 89.4 MB 2.6.1209.0268
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2015/01/03 2.0.0.37149
Intel(R) WiDi Intel Corporation 2012/12/26 121 MB 3.5.41.0
iTunes Apple Inc. 2015/02/25 234 MB 12.1.1.4
Malwarebytes Anti-Malware version 1.75.0.1300 Malwarebytes Corporation 2015/03/19 19.3 MB 1.75.0.1300
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2015/03/18 15.0.4701.1002
Microsoft SkyDrive Microsoft Corporation 2015/01/03 25.1 MB 16.4.6012.0828
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2012/12/26 1.92 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/10/02 4.84 MB 8.0.59193
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2012/10/02 6.83 MB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2012/10/02 13.2 MB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/12/26 9.63 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/10/02 10.1 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2012/12/26 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2012/12/26 15.0 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 2015/01/30 20.5 MB 11.0.61030.0
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 Microsoft Corporation 2015/01/30 17.3 MB 11.0.61030.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/01/03 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/01/03 10.0.31119
music.jp PLAY 4.0 Ventis Media Inc. 2012/12/26 60.9 MB 4.0
NX PAD Driver ALPS 2015/01/03 8.100.909.311
PhotoWizard Microsoft 2012/12/26 338 MB 1.3.0
PlayReady PC Runtime x86 Microsoft Corporation 2012/12/26 1.65 MB 1.3.0
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2015/01/03 6.0.1.6714
Realtek PCIE Card Reader Realtek Semiconductor Corp. 2012/12/26 6.2.8400.28122
Roxio Creator LJ Roxio 2015/01/03 143 MB 12.2.34.10
SiteAdvisor McAfee, Inc. 2015/03/13 3.7.199
Smart Update NECパーソナルコンピュータ株式会社 2012/12/26 14.3 MB 1.2.0.5
SmartVision/PLAYER NEC Personal Computers, Ltd. 2015/01/30 67.7 MB 3.12.2.025
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2015/01/06 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/01/06 40.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2015/01/06 11.5 MB 15.0.1215
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/01/22 17.0 KB 16.0.1016.1
Windows Live Essentials Microsoft Corporation 2012/12/26 16.4.3505.0912
おすすめメニューNavi NEC Personal Computers, Ltd. 2012/12/26 4.00 MB 2.1.0
おてがるバックアップ Roxio 2015/01/03 106 MB 4.6
ぱっと観スライドショー NEC Personal Computers, Ltd. 2012/12/26 43.3 MB 1.4.0.1
インテルR PROSet/Wireless ソフトウェア Intel Corporation 2015/01/22 380 MB 16.11.0
クイックパワーオン NEC Personal Computers, Ltd. 2012/12/26 6.13 MB 1.1.0
ソフト&サポートナビゲーター NEC Personal Computers, Ltd. 2012/12/26 41.2 MB 1.5.2
ディスプレイの切り換え NEC Personal Computers, Ltd. 2012/12/26 1.46 MB 1.1.1
デ辞蔵 PC 2.0 イースト株式会社 2012/12/26 63.0 MB 2.0.7.0
バッテリ・リフレッシュ&診断ツール NEC Personal Computers, Ltd. 2012/12/26 2.25 MB 1.11.0
パソらく設定 NEC Personal Computers, Ltd. 2012/12/26 25.5 MB 3.2.0.0
パソコンのいろは8 NECデザイン&プロモーション株式会社 2012/12/26 113 MB 1.00.0000
パネルオープンパワーオンの設定 NEC Personal Computers, Ltd. 2012/12/26 2.70 MB 1.0.1
パワーオフUSB充電の設定 NEC Personal Computers, Ltd. 2012/12/26 516 KB 2.4.0
ピークシフト設定ツール NEC Personal Computers, Ltd. 2012/12/26 781 KB 1.3.0
ファイナルパソコンデータ引越し 9 plus for NEC AOS Technologies 2012/12/26 63.6 MB 7.00.624.0
マウス・リモコン登録ユーティリティ NEC Personal Computers, Ltd. 2012/12/26 488 KB 2.0.2
マルチアクセス - PCセキュリティセンター McAfee, Inc. 2015/01/03 12.8.992
ムービーフォトメニュー NEC Personal Computers, Ltd. 2012/12/26 17.1 MB 1.6.0.1
ワイヤレスLANの設定 NEC Personal Computers, Ltd. 2012/12/26 805 KB 1.0.2
ワンタッチスタートボタンの設定 NEC Personal Computers, Ltd. 2012/12/26 5.87 MB 1.19.1312
再セットアップメディア作成ツール NEC Personal Computers, Ltd. 2012/12/26 1.22 MB 6.2.0
左右スクロールボタンの設定 Chicony 2012/12/26 3.23 MB 1.04.000
彩りの設定 NEC Personal Computers, Ltd. 2015/01/03
楽しもう!Office ライフ Microsoft Corporation 2012/12/26 636 KB 1.0.0
筆ぐるめ 20 富士ソフト株式会社 2012/12/26 735 MB 20.00.0003

〔Windows〕
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run Apoint Alps Electric Co., Ltd. C:\Program Files\Apoint2K\Apoint.exe
有効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run AtrioSide NEC Personal Computers, Ltd. "C:\Program Files\NEC\AtrioSide\AtrioSide.exe" /Autorun
有効 HKLM:Run AVDM NEC Personal Computers, Ltd. C:\Program Files\AVDm\AVDm.exe /RESIDENT
有効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
有効 HKLM:Run BTMTrayAgent Microsoft Corporation rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
有効 HKLM:Run DispSw NEC Personal Computers, Ltd. C:\Program Files\DispSw\DispSw.exe
有効 HKLM:Run FuncSwitch CHICONY C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
有効 HKLM:Run HomeLinkManager NEC Personal Computers, Ltd. "C:\Program Files\NEC\HomeLinkManager\DelayStarter.exe" 120000 "C:\Program Files\NEC\HomeLinkManager\HubDriverTrayApp.exe" "/startup"
有効 HKLM:Run HotKeysCmds C:\windows\system32\hkcmd.exe
有効 HKLM:Run HScrollFun Chicony C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
有効 HKLM:Run MoviePhotoMenu NEC Personal Computers, Ltd. C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe
有効 HKLM:Run NECBatt NEC Personal Computers, Ltd. C:\Program Files\NECBatt\nbSched.exe
有効 HKLM:Run NECBTBE NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTBE.exe
有効 HKLM:Run NECBTPB NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTPB.EXE
有効 HKLM:Run NECMFK NEC Personal Computers, Ltd. C:\Program Files\necmfk\necmfk.exe
有効 HKLM:Run NPSpeed NEC Personal Computers, Ltd. C:\Program Files\NPSpeed\NPSpeed.exe
有効 HKLM:Run PeakShiftTool NEC Personal Computers, Ltd. C:\Program Files\PeakShiftTool\PeakShiftNotifier.exe
有効 HKLM:Run Persistence C:\windows\system32\igfxpers.exe
有効 HKLM:Run RemoteControl10 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3
有効 HKLM:Run RTHDVCPL Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SmartUpdate NEC Personal Computers,Ltd. "C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe"
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
有効 HKLM:Run YouCam Service CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s

〔Internet Explorer〕
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll

〔Opera〕
※ログの中身は空でした

〔スケジュールされたタスク〕
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for HOME-PC-Nobu home-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
無効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-1001
有効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-500
有効 Task {8304FCDB-BF0C-4A67-AD18-8EBBB6E19C4B} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe"
32:悪代官 :

2015/03/20 (Fri) 19:10:42

作業と報告、ご苦労様です。

こんばんは。
一晩たっても再発は出ないようですね。
気分も楽になったでしょうか。

ただログを見ると少し気になるところも残ってるので、もう少し確認と作業をお願いし案す。

まずセーフモードでHJTを起動して、スキャン後に表示された中の下記をfixしてください。
>O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Unknown owner - C:\Program Files (x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe (file missing)

これがまだ残ってますが、(file missing)となっているので既に動くことはないです。
いわば名前だけ張り付いた残骸ですね。
名前だけなので実害はないですが掃除できるならそれに越したこともないでしょう。

HJT終了後にPCを通常モードで再起動したら、そこでまたHJTでスキャンだけしてそのログをとってください。

次にCCで「コンテキストメニュー」タブを開いて、そのログもとってください。
他のタブのログは今回はなくていいです。

この2つのログをまたレスで見せてください
33:オスカル :

2015/03/20 (Fri) 20:50:30

ご回答ありがとうございます。
問題の事象が現れなくなって。気持ち的にかなり楽になりました。

今回もご指示の通りに作業しましたので、ご依頼のログを以下に添付します。

【HJT】
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 20:38:12, on 2015/03/20
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)


Boot mode: Normal

Running processes:
C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe
C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Users\Nobu\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SmartUpdate] "C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [FuncSwitch] C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
O4 - HKLM\..\Run: [HScrollFun] C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [MoviePhotoMenu] C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: Bluetoothへの送信 - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: IntelR CentrinoR Wireless BluetoothR + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AS ContentsDL - NEC Personal Computers, Ltd. - C:\Program Files\NEC\AtrioSide\AS_ContentsDL.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CyberLink Product - 2012/12/26 17:39:22 (CLKMSVC10_38F51D56) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dejizo Dictionary Search Engine (DejizoDicSearch) - EAST - C:\Program Files (x86)\East\DejizoPC\DejizoDicSearch.exe
O23 - Service: DiXiM Player SDK Service - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCService.exe
O23 - Service: DiXiM Player Service Controller - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCServicecControl.exe
O23 - Service: ECOViewer (ecomonsv) - NEC Personal Computers, Ltd. - C:\Program Files\EcoViewer\ecomonsv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: HubDriver - NEC Personal Computers, Ltd. - C:\Program Files\NEC\HomeLinkManager\HubDriver.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: NECBT SERVICE - NEC Personal Computers, Ltd. - C:\Program Files\NECBoot\NECBTSVC.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NT Meter - NEC Personal Computers, Ltd. - c:\windows\syswow64\NTMETER.exe
O23 - Service: PeakShift Service (PeakShiftSvc) - NEC Personal Computers, Ltd. - C:\Program Files\PeakShiftTool\PeakShiftSvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Unknown owner - C:\Program Files (x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe (file missing)
O23 - Service: SmartVision Admin Service (SVAdminService) - NEC Personal Computers, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision Admin Service 64 (SVAdminService64) - NEC Personal Computers, Ltd. - C:\Program Files\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision MessageManager Service (SVMsgMngService) - NEC Corporation, NEC Personal Products, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVMsgMng.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WSET Info Service (WSET_Info_Service) - NEC Personal Computers, Ltd. - C:\Program Files\NECWSET\WSET_Info.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - IntelR Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 14797 bytes


【CC(コンテキストメニュー)】
有効 Directory Corel PaintShop Pro X4 Corel Software, Inc. c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\PSPContextMenu64.dll
有効 Directory Corel PaintShop Pro X4 で参照します Corel, Inc. "c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\Corel PaintShop Pro.exe" "%L"
有効 Drive Corel PaintShop Pro X4 Corel Software, Inc. c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\PSPContextMenu64.dll
有効 Drive Corel PaintShop Pro X4 で参照します Corel, Inc. "c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\Corel PaintShop Pro.exe" "%L"
有効 File Corel PaintShop Pro X4 Corel Software, Inc. c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\PSPContextMenu64.dll
有効 File MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 File McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
有効 Folder MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 Folder McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
34:悪代官 :

2015/03/20 (Fri) 21:09:11

早速のレスありがとうございます。

作業後のHJTログを見ましたが、下記はまだ残ってますね。
>O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Unknown owner - C:\Program Files (x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe (file missing)

では再度下記の確認だけしてみてください。

Cドライブを開いて、下記のフォルダを探してみてください。
>C:\Program Files (x86)\SearchSnacks_1.10.0.5

探しても見つからなければプログラムも既に消えているということです、
ですが見つかったらそれを手動で削除してください。

ここで見つかったのに削除できないようなら、まだプログラムが動いているということになります。

この確認作業後、その報告をレスください
35:オスカル :

2015/03/21 (Sat) 07:02:20

おはようございます。
ご回答ありがとうございました。

ご指示の通り確認作業を行いましたが、当該フォルダは見つかりませんでした。
36:悪代官 :

2015/03/21 (Sat) 18:25:10

今日もレスが遅くなってすみません。

>ご指示の通り確認作業を行いましたが、当該フォルダは見つかりませんでした。

はい、それならやはりプログラム自体は復活することもないのでいいでしょう。
では異常も治まっているようなので、様子見に入りまでょうか。

そのまま普通にPCを使いながら1週間様子見してください。

1週間後にまたHJTとインストール情報ログと、CCでの各タブのログを取り直して、それらを様子見中の状態報告とともにレスください。

この時点でログにも状態にも異常なくなってれば「解決」にいけるかもしれませんが、なにか再発あったら1週間待たなくていいのでそこで報告ください
37:オスカル :

2015/03/28 (Sat) 10:01:19

1週間経ちましたが、その間特に異常は見られませんでした。

今回もご指示の通りに作業しましたので、ご依頼のログを以下に添付します。

【HJT】
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 9:50:29, on 2015/03/28
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
C:\Program Files (x86)\NEC\HomeLinkManager\HubDriverDriveManager.exe
C:\ProgramData\SmartUpdate\SUMAIN\SmartUpdate.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
c:\PROGRA~2\mcafee\SITEAD~1\saui.exe
C:\Users\Nobu\Documents\n\悪代官の伏魔殿(アドウェア削除)\01 作業1(準備作業)\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Adblock Plus for IE Browser Helper Object - {FFCB3198-32F3-4E8B-9539-4324694ED664} - C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [SmartUpdate] "C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [FuncSwitch] C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
O4 - HKLM\..\Run: [HScrollFun] C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [MoviePhotoMenu] C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [YouCam Service] "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: Bluetoothへの送信 - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Bluetoothへの送信 - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\bdl.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O23 - Service: McAfee Application Installer Cleanup (0070651427420072) (0070651427420072mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\007065~1.EXE (file missing)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: IntelR CentrinoR Wireless BluetoothR + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AS ContentsDL - NEC Personal Computers, Ltd. - C:\Program Files\NEC\AtrioSide\AS_ContentsDL.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CyberLink Product - 2012/12/26 17:39:22 (CLKMSVC10_38F51D56) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dejizo Dictionary Search Engine (DejizoDicSearch) - EAST - C:\Program Files (x86)\East\DejizoPC\DejizoDicSearch.exe
O23 - Service: DiXiM Player SDK Service - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCService.exe
O23 - Service: DiXiM Player Service Controller - DigiOn, Inc. - C:\Program Files (x86)\NEC\SmartVision\DiXiM Player\Service\DoDMCServicecControl.exe
O23 - Service: ECOViewer (ecomonsv) - NEC Personal Computers, Ltd. - C:\Program Files\EcoViewer\ecomonsv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: HubDriver - NEC Personal Computers, Ltd. - C:\Program Files\NEC\HomeLinkManager\HubDriver.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: NECBT SERVICE - NEC Personal Computers, Ltd. - C:\Program Files\NECBoot\NECBTSVC.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NT Meter - NEC Personal Computers, Ltd. - c:\windows\syswow64\NTMETER.exe
O23 - Service: PeakShift Service (PeakShiftSvc) - NEC Personal Computers, Ltd. - C:\Program Files\PeakShiftTool\PeakShiftSvc.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Search Snacks 1.10.0.5 Client Service (sssvc_1.10.0.5) - Unknown owner - C:\Program Files (x86)\SearchSnacks_1.10.0.5\Service\sssvc.exe (file missing)
O23 - Service: SmartVision Admin Service (SVAdminService) - NEC Personal Computers, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision Admin Service 64 (SVAdminService64) - NEC Personal Computers, Ltd. - C:\Program Files\NEC\SmartVision\SVAdmin.exe
O23 - Service: SmartVision MessageManager Service (SVMsgMngService) - NEC Corporation, NEC Personal Products, Ltd. - C:\Program Files (x86)\NEC\SmartVision\SVMsgMng.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: WSET Info Service (WSET_Info_Service) - NEC Personal Computers, Ltd. - C:\Program Files\NECWSET\WSET_Info.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - IntelR Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 15029 bytes

【インストール情報】
Adblock Plus for IE (32-bit and 64-bit) Eyeo GmbH 2015/03/01 6.66 MB 1.4
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/08 204 MB 11.0.10
Apple Application Support(32 ビット) Apple Inc. 2015/02/25 95.4 MB 3.1.2
Apple Application Support(64 ビット) Apple Inc. 2015/02/25 108 MB 3.1.2
Apple Mobile Device Support Apple Inc. 2015/02/25 29.3 MB 8.1.1.3
Apple Software Update Apple Inc. 2013/06/22 2.38 MB 2.1.3.127
Bonjour Apple Inc. 2013/06/22 2.00 MB 3.0.0.10
Canon MP470 series 2015/01/03
CCleaner Piriform 2015/03/19 5.03
Corel PaintShop Pro X4 Corel Corporation 2015/01/03 323 MB 14.2.0.7
CyberLink MediaShow BD CyberLink Corp. 2012/12/26 1.01 GB 6.0.4923
CyberLink MediaShow向けアドオン NEC Personal Computers, Ltd. 2012/12/26 1.58 MB 1.1.0.1
CyberLink PowerDVD CyberLink Corp. 2012/12/26 181 MB 10.0.4701.52
CyberLink PowerProducer BD CyberLink Corp. 2012/12/26 168 MB 5.5.3.4617
CyberLink YouCam 5 CyberLink Corp. 2013/06/23 247 MB 5.0.2224
DigiBookBrowser Version 1.5.2.70 TriWorks Corp.JAPAN 2012/12/26 8.51 MB 1.5.2.70
DiXiM Player for SmartVision DigiOn 2012/12/26 1.4.0.2
ECOみえグラフ NEC Personal Computers, Ltd. 2012/12/26 5.18 MB 1.5.0
ECOモード設定ツール NEC Personal Computers, Ltd. 2012/12/26 3.52 MB 5.7.0
Google Toolbar for Internet Explorer Google Inc. 2015/03/18 7.5.6227.252
Google Update Helper 2012/10/02
Homeリンクマネージャ(32bit) NEC Personal Computers, Ltd. 2012/12/26 1.85 MB 1.2.0.3
Homeリンクマネージャ(64bit) NEC Personal Computers, Ltd. 2012/12/26 7.75 MB 1.2.0.3
Intel(R) Management Engine Components Intel Corporation 2013/05/14 8.1.0.1252
Intel(R) Processor Graphics Intel Corporation 2015/01/03 10.18.10.3958
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed Intel Corporation 2012/12/26 5.77 MB 15.5.5.0480
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Motorola Solutions, Inc. 2012/12/26 89.4 MB 2.6.1209.0268
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2015/01/03 2.0.0.37149
Intel(R) WiDi Intel Corporation 2012/12/26 121 MB 3.5.41.0
iTunes Apple Inc. 2015/02/25 234 MB 12.1.1.4
Malwarebytes Anti-Malware version 1.75.0.1300 Malwarebytes Corporation 2015/03/19 19.3 MB 1.75.0.1300
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2015/03/18 15.0.4701.1002
Microsoft SkyDrive Microsoft Corporation 2015/01/03 25.1 MB 16.4.6012.0828
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2012/12/26 1.92 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/10/02 4.84 MB 8.0.59193
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2012/10/02 6.83 MB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2012/10/02 13.2 MB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/12/26 9.63 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/10/02 10.1 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2012/12/26 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2012/12/26 15.0 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 2015/01/30 20.5 MB 11.0.61030.0
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 Microsoft Corporation 2015/01/30 17.3 MB 11.0.61030.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/01/03 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/01/03 10.0.31119
music.jp PLAY 4.0 Ventis Media Inc. 2012/12/26 60.9 MB 4.0
NX PAD Driver ALPS 2015/01/03 8.100.909.311
PhotoWizard Microsoft 2012/12/26 338 MB 1.3.0
PlayReady PC Runtime x86 Microsoft Corporation 2012/12/26 1.65 MB 1.3.0
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2015/01/03 6.0.1.6714
Realtek PCIE Card Reader Realtek Semiconductor Corp. 2012/12/26 6.2.8400.28122
Roxio Creator LJ Roxio 2015/01/03 143 MB 12.2.34.10
SiteAdvisor McAfee, Inc. 2015/03/13 3.7.199
Smart Update NECパーソナルコンピュータ株式会社 2012/12/26 14.3 MB 1.2.0.5
SmartVision/PLAYER NEC Personal Computers, Ltd. 2015/01/30 67.7 MB 3.12.2.025
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2015/01/06 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/01/06 40.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2015/01/06 11.5 MB 15.0.1215
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/01/22 17.0 KB 16.0.1016.1
Windows Live Essentials Microsoft Corporation 2012/12/26 16.4.3505.0912
おすすめメニューNavi NEC Personal Computers, Ltd. 2012/12/26 4.00 MB 2.1.0
おてがるバックアップ Roxio 2015/01/03 106 MB 4.6
ぱっと観スライドショー NEC Personal Computers, Ltd. 2012/12/26 43.3 MB 1.4.0.1
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2015/01/22 380 MB 16.11.0
クイックパワーオン NEC Personal Computers, Ltd. 2012/12/26 6.13 MB 1.1.0
ソフト&サポートナビゲーター NEC Personal Computers, Ltd. 2012/12/26 41.2 MB 1.5.2
ディスプレイの切り換え NEC Personal Computers, Ltd. 2012/12/26 1.46 MB 1.1.1
デ辞蔵 PC 2.0 イースト株式会社 2012/12/26 63.0 MB 2.0.7.0
バッテリ・リフレッシュ&診断ツール NEC Personal Computers, Ltd. 2012/12/26 2.25 MB 1.11.0
パソらく設定 NEC Personal Computers, Ltd. 2012/12/26 25.5 MB 3.2.0.0
パソコンのいろは8 NECデザイン&プロモーション株式会社 2012/12/26 113 MB 1.00.0000
パネルオープンパワーオンの設定 NEC Personal Computers, Ltd. 2012/12/26 2.70 MB 1.0.1
パワーオフUSB充電の設定 NEC Personal Computers, Ltd. 2012/12/26 516 KB 2.4.0
ピークシフト設定ツール NEC Personal Computers, Ltd. 2012/12/26 781 KB 1.3.0
ファイナルパソコンデータ引越し 9 plus for NEC AOS Technologies 2012/12/26 63.6 MB 7.00.624.0
マウス・リモコン登録ユーティリティ NEC Personal Computers, Ltd. 2012/12/26 488 KB 2.0.2
マルチアクセス - PCセキュリティセンター McAfee, Inc. 2015/01/03 12.8.992
ムービーフォトメニュー NEC Personal Computers, Ltd. 2012/12/26 17.1 MB 1.6.0.1
ワイヤレスLANの設定 NEC Personal Computers, Ltd. 2012/12/26 805 KB 1.0.2
ワンタッチスタートボタンの設定 NEC Personal Computers, Ltd. 2012/12/26 5.87 MB 1.19.1312
再セットアップメディア作成ツール NEC Personal Computers, Ltd. 2012/12/26 1.22 MB 6.2.0
左右スクロールボタンの設定 Chicony 2012/12/26 3.23 MB 1.04.000
彩りの設定 NEC Personal Computers, Ltd. 2015/01/03
楽しもう!Office ライフ Microsoft Corporation 2012/12/26 636 KB 1.0.0
筆ぐるめ 20 富士ソフト株式会社 2012/12/26 735 MB 20.00.0003

【CC_windows】
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run Apoint Alps Electric Co., Ltd. C:\Program Files\Apoint2K\Apoint.exe
有効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run AtrioSide NEC Personal Computers, Ltd. "C:\Program Files\NEC\AtrioSide\AtrioSide.exe" /Autorun
有効 HKLM:Run AVDM NEC Personal Computers, Ltd. C:\Program Files\AVDm\AVDm.exe /RESIDENT
有効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
有効 HKLM:Run BTMTrayAgent Microsoft Corporation rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
有効 HKLM:Run DispSw NEC Personal Computers, Ltd. C:\Program Files\DispSw\DispSw.exe
有効 HKLM:Run FuncSwitch CHICONY C:\Program Files (x86)\MouseSideScroll\FuncSwitch.exe
有効 HKLM:Run HomeLinkManager NEC Personal Computers, Ltd. "C:\Program Files\NEC\HomeLinkManager\DelayStarter.exe" 120000 "C:\Program Files\NEC\HomeLinkManager\HubDriverTrayApp.exe" "/startup"
有効 HKLM:Run HotKeysCmds C:\windows\system32\hkcmd.exe
有効 HKLM:Run HScrollFun Chicony C:\Program Files (x86)\MouseSideScroll\HScrollFun.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
有効 HKLM:Run MoviePhotoMenu NEC Personal Computers, Ltd. C:\Program Files (x86)\NEC\MoviePhotoMenu\NECStartStartup.exe
有効 HKLM:Run NECBatt NEC Personal Computers, Ltd. C:\Program Files\NECBatt\nbSched.exe
有効 HKLM:Run NECBTBE NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTBE.exe
有効 HKLM:Run NECBTPB NEC Personal Computers, Ltd. C:\Program Files\NECBoot\NECBTPB.EXE
有効 HKLM:Run NECMFK NEC Personal Computers, Ltd. C:\Program Files\necmfk\necmfk.exe
有効 HKLM:Run NPSpeed NEC Personal Computers, Ltd. C:\Program Files\NPSpeed\NPSpeed.exe
有効 HKLM:Run PeakShiftTool NEC Personal Computers, Ltd. C:\Program Files\PeakShiftTool\PeakShiftNotifier.exe
有効 HKLM:Run Persistence C:\windows\system32\igfxpers.exe
有効 HKLM:Run RemoteControl10 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3
有効 HKLM:Run RTHDVCPL Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SmartUpdate NEC Personal Computers,Ltd. "C:\Program Files (x86)\NEC\SmartUpdate\reservesu.exe"
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
有効 HKLM:Run YouCam Service CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe" /s

【CC_Internet Explorer】
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll
有効 Helper Adblock Plus for IE Browser Helper Object Eyeo GmbH C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Helper McAfee SiteAdvisor BHO McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
有効 Toolbar McAfee SiteAdvisor Toolbar McAfee, Inc. c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll

【CC_opera】
 ※ログの中身は空でした

【CC_スケジュールされたタスク】
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for HOME-PC-Nobu home-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
無効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-1001
有効 Task Optimize Start Menu Cache Files-S-1-5-21-2724061903-427220060-254295731-500
有効 Task {8304FCDB-BF0C-4A67-AD18-8EBBB6E19C4B} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe"

【CC_コンテキストメニュー】
有効 Directory Corel PaintShop Pro X4 Corel Software, Inc. c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\PSPContextMenu64.dll
有効 Directory Corel PaintShop Pro X4 で参照します Corel, Inc. "c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\Corel PaintShop Pro.exe" "%L"
有効 Drive Corel PaintShop Pro X4 Corel Software, Inc. c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\PSPContextMenu64.dll
有効 Drive Corel PaintShop Pro X4 で参照します Corel, Inc. "c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\Corel PaintShop Pro.exe" "%L"
有効 File Corel PaintShop Pro X4 Corel Software, Inc. c:\Program Files (x86)\Corel\Corel PaintShop Pro X4\PSPContextMenu64.dll
有効 File MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 File McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
有効 Folder MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 Folder McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
38:オスカル :

2015/03/28 (Sat) 10:42:29

度々のレスすみません。

相談なのですが、McAfeeのウイルススキャンで以下の2つが怪しいプログラムとして
検出されました。
・Generic PUP.x
・Artemis!6CB8EEB079B2

対応としては、見覚えのないものでしたので2つとも隔離しましたが、
これらは今回のSearch SnacksやSalusと関係があるものでしょうか。

もしわかったらで結構ですので、ご回答お願いします。
39:悪代官 :

2015/03/28 (Sat) 18:36:38

こんばんは。
様子見でも再発や異常は出なかったようですね。
各ログも見せてもらいましたが、こちらも怪しいものはなさそうです。

それではヤマは越えたと思われますが、今回見つかって処置したSalusは、見てのとおりこの掲示板で現在最多の相談が来ている大流行中のアドウェアです。
これについては面倒ながらじっくり手動目視での作業してくれれば何とか削除できる対処法も見つかってきてます。
しかし肝心のSalusの素性や、ログに出ていないおかしな挙動等のデータははっきりつかめていないところもあります。
自分の解析や情報収集からでは、Salusはそれを削除してしまえば解決とは思わないほうが安全かもしれないとの可能性があります。

今回の作業が終わった所で、そのPCで入力したことのある各種パスワード等は全部変更しておくことも推奨します。
特にネットショッピングやネットバンキングしたことがあればその情報は最優先で変更必須ですが、単純にプロバイダのメール等のログインパスも変更しておいてください。
Salusがパスワード等を盗み取る性質を持つかどうかはわかりませんが、現在のネット上でこれの相談が毎日多発していることから、安易に「解決」とは思いこまないよう頭に入れておいてください。

では本題の作業については終了ですが、これで「解決」ということではありません。
以後の再被害を防ぐための自衛はここから始まるのです。
ブラウザの設定を少し固めるだけでも、セキュリティ上の効果を高めることが可能です。
「インターネットオプション」→「プライバシー」→「詳細設定」と開いて、「自動cookie処理」と「サードパーティのcookieをブロック」にチェックして「適用」して「OK」。
これをやっておくと、多くの危険サイトからの保護にかなり有効です。
が、これもすべての危険サイトに有効でもないし、本物の危険サイトではこの程度ではまったく太刀打ちできないので、過信はしないこと。
また、「すべてのcookieをブロックする」設定にすると、プロバイダのメールボックスなどログイン必要なページに入れなくなる弊害も出るので、これは状況を考えて使い分けるといいでしょう。
安全なサイトでもcookieブロックだと閲覧や投稿ができなくなるところもあるのでこれも注意。

次に、アンチウイルスやファイアウォール等のセキュリティソフトの使い方も注意してください。
セキュリティソフトはただ入れてさえいればそれだけでフル機能を発揮するものではありません。
設定と機能をできるだけ把握して、正しく使うことが重要です。
間違った使い方すると、本来ならブロックできた感染でもあっさりスルーします。

また、いくら高性能なセキュリティソフトがあっても、ユーザーが自分から危険なサイトやファイルにアクセスしてたらまったく保護もできません。
セキュリティソフトは使い方次第でその性能を、倍にも半にも無にも変動させます。

そして百聞は一見にしかず。
現在この掲示板で継続中や解決済みの他スレもできるだけ見ておくことをおすすめします。
同様、類似、別種含めて参考になる部分は多いでしょう。

実際、せっかく苦労して作業して「解決」にたどり着いても、その後再被害や別口の感染受けてしまう方がどうも増えています。
解決後に油断したというより、一般ユーザーの予想を上回る罠がネット上には日々新たに湧いているので、特定のサイトやファイルにだけ注意すればそれで安全とは思いこまないように。

慣れない作業を頑張ってくれてお疲れ様でした。
以後は安全で快適なPCライフを
40:オスカル :

2015/03/29 (Sun) 22:07:04

ご回答ありがとうございました。

ご指示いただいた設定を早速行いました。

最後に確認なのですが、今回の作業で使用したツール(HJT,CC,ATF,IU,AC,MBAM,OTL)は
全て片づけてしまっても大丈夫でしょうか。
41:悪代官 :

2015/03/29 (Sun) 22:43:38

こんばんは。

今回の作業が片付いたら、作業ツールはみな削除をお勧めしています。
これらは高性能ですがそれゆえ誤った使い方すると逆にPCに深刻な不具合起こす恐れもあるのです。
なのでどうしても使うなら設定と機能を十分把握して、正しく使ってください。
たとえばHJTでも間違ったエントリをfixしただけで、PCが正常起動できなくなる不具合もあっさり起きますので

  • 名前: E-mail(省略可):
  • 画像:

Copyright © 1999- FC2, inc All Rights Reserved.