悪代官の伏魔殿掲示板
DMM、偽Flashplayer等の広告が出てきます
dmm、偽Flashplayerの更新、「お使いのPCの性能が低下しています」等の広告が不特定のサイトで出現、ネットがまともに使用できない状態となっております。
自分では解決できないと思いご相談させていただきました。

以下ログとなります

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 6:12:42, on 2015/05/05
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)

FIREFOX: 37.0.2 (x86 ja)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Baidu\IME\3.5.2.45\BaiduIME.exe
C:\Program Files (x86)\Baidu\IME\3.5.2.45\BaiduPlatform.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
C:\Users\kakeru22\Desktop\新しいフォルダー\skype42i_patched.exe
C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\CyberLink\MediaSync\MediaSyncAgent.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
C:\Program Files (x86)\Umtayyznhndq1ntz\mtuyntm5ndy1yjy.exe
C:\Program Files (x86)\Smwyyntm1ndi1zdz\zgi0mzb2mhm3bgz.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\Users\kakeru22\Downloads\HijackThis(1).exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: ifp6toolbar - {BE920B15-1DCA-450e-87D0-C1EEA491F3DD} - C:\Program Files (x86)\Digital Arts\IFP6\app\bin\ifp6toolbar32.dll
O2 - BHO: AliBar BHO - {E4E012DC-1925-48E9-8010-2D195574642A} - C:\Program Files (x86)\Internet Explorer\alitab.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [MediaSyncAgent] "C:\Program Files (x86)\CyberLink\MediaSync\MediaSyncAgent.exe"
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TKRTL] "C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe" -h
O4 - HKLM\..\Run: [TAVLauncher] C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [CrashMon] "C:\Program Files (x86)\Umtayyznhndq1ntz\mtuyntm5ndy1yjy.exe" "UniversalUpdater" "http://log.data-url.com/crash/"
O4 - HKLM\..\Run: [mwyyntm1ndi1zdz] C:\Program Files (x86)\Smwyyntm1ndi1zdz\zgi0mzb2mhm3bgz.exe
O4 - HKLM\..\RunOnce: [Update] C:\Users\kakeru22\AppData\Roaming\VOPackage\VOPackage.exe /runonce
O4 - HKCU\..\Run: [cubepdf-checker] "C:\Program Files (x86)\CubePDF\cubepdf-checker.exe"
O4 - HKCU\..\Run: [Skype] "C:\Users\kakeru22\Desktop\新しいフォルダー\skype42i_patched.exe" /nosplash /minimized
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Global Startup: クライアントユーティリティ.lnk = C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: SunのJavaコンソール - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {1DC420F0-D89A-40D0-B5CC-92B9AD19A1AC} (HGPluginJP28 Class) - http://down.hangame.co.jp/jp/dist/hgstart/HGPluginJP28.cab
O16 - DPF: {255A2E53-D2E3-42DA-9C1D-36B289B8E18B} (DMMLauncherAx Control) - http://dl.app-netgame.dmm.com/launcher/DMMLauncherAx_32.cab
O16 - DPF: {98FFD412-1A12-4BCE-8AB2-247C78E22227} (NCLoaderCtl Class) - https://static.ncsoft.jp/js/login/activex/NCLoader.8.cab
O16 - DPF: {F8160836-0C11-4CA4-AD87-944542C7BCBD} (PubPlugin Class) - http://down.hangame.co.jp/jp/purple/launcher/PubPlugin.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Baidu Inc. - C:\Program Files (x86)\Baidu\IME\3.5.2.45\BaiduJPServ.exe
O23 - Service: CLHNServiceForToshiba - Unknown owner - C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMP\CLHNServiceForToshiba.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Low-res Square Bracket (cunofozu) - Unknown owner - C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343\nsfD2A8.tmp
O23 - Service: CypherGuard cguard Service 32bit Edition - CypherTec Inc. - C:\Program Files (x86)\Common Files\CypherTec\cgrdsrv32.exe
O23 - Service: CypherGuard cguard Service 64bit Edition - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cgrdsrv64.exe
O23 - Service: CypherGuard Info Service - CypherTec Inc. - C:\Program Files\Common Files\CypherTec\cthwsrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OEMRegistrationProgram - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\OEM Registration Program\OEMRegistrationProgram.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: RalinkRegistryWriter - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry.exe
O23 - Service: RalinkRegistryWriter64 - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry64.exe
O23 - Service: Ralink UPnP Media Server (RaMediaServer) - Ralink - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaMediaServer.exe
O23 - Service: RASUService - Unknown owner - C:\Program Files (x86)\TOSHIBA\AVApplication\RASU\TosRASUService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartMenu8 Service (StartMenuService) - IObit - C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Qosmio AV Center Complement Service (TAVComplementService) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Engine\TAVComplementService.exe
O23 - Service: Qosmio AV Center Scheduler Service (TAVScheduler) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVScheduler.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Teco\TecoService.exe
O23 - Service: Toshiba Media Server Monitor Service - CyberLink - C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMS\ToshibaMSMonitorService.exe
O23 - Service: Toshiba Media Server Service - CyberLink - C:\Program Files (x86)\CyberLink\RZ Player\Kernel\DMS\ToshibaMSServer.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Universal Updater Service (UniversalUpdater) - Unknown owner - C:\Program Files (x86)\Umtayyznhndq1ntz\mwmyzjmzngu1mdy.exe
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Technology Font (wivijuji) - Unknown owner - C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343\jnsp9322.tmp
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe

--
End of file - 14495 bytes



CC

+Lhaca 2015/04/21
Adobe AIR Adobe Systems Incorporated 2014/10/25 3.3.0.3650
Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/04/15 6.00 MB 17.0.0.169
Adobe Reader X (10.1.10) - Japanese Adobe Systems Incorporated 2014/06/03 139 MB 10.1.10
Alliance of Valiant Arms 株式会社ゲームオン 2015/04/19 287
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2013/01/08 2.1.0.6
Atheros Driver Installation Program Atheros 2013/01/08 10.0
Baidu IME 3.5 Baidu Japan Inc. 2014/10/25 3.5
Bandisoft MPEG-1 Decoder 2014/10/25
Battlelog Web Plugins EA Digital Illusions CE AB 2014/10/25 2.4.0
BEAT!MusicPlayer 2014/10/25
BookLive! for Toshiba BookLive 2013/11/24 72.1 MB 2.4.00
Buddy Launcher の削除 2015/01/14
CCleaner Piriform 2015/05/04 5.05
CloudAlpaca 1.4.3 Medibang 2015/04/11 156 MB 1.4.3
Common GameOn 2015/04/19 34939144
comono ImageViewer SaradaHouse 2013/10/27 1.00 MB 1.6.1
Corel VideoStudio X5 Corel Corporation 2014/10/25 609 MB 15.0.1.26
CubePDF 1.0.0RC7 CubeSoft 2014/05/13 24.8 MB
CyberLink MediaShow 6 CyberLink Corp. 2013/01/08 672 MB 6.0.4401
CyberLink MediaSync CyberLink Corp. 2012/09/20 187 MB 1.0.0816.04
DigiBookBrowser Version 1.5.1.4 TriWorks Corp.JAPAN 2012/09/20 8.47 MB 1.5.1.4
dynabookランチャー用バナー 2014/10/25
ebi.BookReader4 eBOOK Initiative Japan Co., Ltd. 2012/09/20 11.3 MB 4.01.14
ebi.SampleContents eBOOK Initiative Japan Co., Ltd. 2012/09/20 4.0.1.14_MSI_T
FireAlpaca 1.2.1 firealpaca.com 2015/04/11 35.5 MB 1.2.1
Google Chrome Google Inc. 2014/03/26 42.0.2311.135
Hangame 2014/10/25
Hawken Meteor Entertainment 2014/10/25 2.79 GB
Hounds DMM 2014/02/15 1.0.0
i-フィルター 6.0 デジタルアーツ株式会社 2012/09/20 23.6 MB 6.00.20.0076
Intel(R) Management Engine Components Intel Corporation 2013/08/23 8.1.0.1252
Intel(R) Processor Graphics Intel Corporation 2014/10/24 10.18.10.3345
Intel(R) Rapid Storage Technology Intel Corporation 2015/05/03 11.5.2.1001
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2014/10/25 2.0.0.37149
IObit Uninstaller IObit 2015/05/04 4.3.0.118
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2014/10/25 2.00
Left 4 Dead 2 Valve 2014/10/25
Lhaplus 2014/10/25
Logitecクライアントユーティリィティ Logitec 2014/02/11 1.5.21.0
LogMeIn Hamachi LogMeIn, Inc. 2015/04/01 2.2.0.328
LoiLoScope 2 LoiLo inc 2012/09/20 165 MB 2.5.1.3
Metasequoia Ver3.1 2015/04/13
MetasequoiaLE R3.0 2015/04/13
Microsoft Office 2010 Microsoft Corporation 2014/10/25 14.0.6029.1000
Microsoft SQL Server 2008 R2 Microsoft Corporation 2014/10/25
Microsoft SQL Server 2008 R2 Native Client Microsoft Corporation 2013/01/08 9.00 MB 10.51.2500.0
Microsoft SQL Server 2008 R2 Setup (日本語) Microsoft Corporation 2013/01/08 43.7 MB 10.51.2500.0
Microsoft SQL Server 2008 セットアップ サポート ファイル Microsoft Corporation 2013/01/08 34.6 MB 10.1.2731.0
Microsoft SQL Server Browser Microsoft Corporation 2013/01/08 8.53 MB 10.51.2500.0
Microsoft SQL Server VSS Writer Microsoft Corporation 2013/01/08 7.66 MB 10.51.2500.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2013/01/08 4.39 MB 8.0.59193
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2013/01/08 7.10 MB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/01/08 13.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2014/01/23 13.2 MB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/09/20 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/09/20 10.1 MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2014/01/23 10.1 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/03/09 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/03/09 13.8 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 2015/05/03 17.1 MB 12.0.21005.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/10/25 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN 2012/09/20
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/10/25 10.0.31119
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/03/04 9.44 MB 4.0.20823.0
mine2000 ver2.2.1 mine2000 project 2013/12/17 2.44 MB 2.2.1
MKEditor for Windows 2014/10/25
Mozilla Firefox 37.0.2 (x86 ja) Mozilla 2015/05/04 83.4 MB 37.0.2
Mozilla Maintenance Service Mozilla 2015/05/04 247 KB 37.0.2
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/08/24 2.90 MB 4.30.2117.0
NCLauncher (NCSOFT) NCSOFT 2014/10/25
Niconico Live Encoder niwango, inc. 2015/05/02 2.0.4
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 2.84 MB 8.60.5001
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 8.60.5001
NVIDIA PhysX NVIDIA Corporation 2013/10/13 78.9 MB 9.10.0513
OEM Registration Program TOSHIBA CORPORATION 2013/01/08 516 KB 1.0.0
OpenOffice 4.0.1 Apache Software Foundation 2014/01/23 341 MB 4.01.9714
Origin Electronic Arts, Inc. 2014/10/25 9.4.7.2799
PCあんしん点検ユーティリティ TOSHIBA Corporation 2013/01/08 1.49 MB 1.1.5.0
PlayReady PC Runtime x86 Microsoft Corporation 2012/09/20 1.65 MB 1.3.0
Pmangインストールマネージャー GameOn,Pmang 2015/04/19 1.0.1.1
PunkBuster Services Even Balance, Inc. 2014/10/25 0.991
Qosmio AV Center Toshiba Corporation 2013/01/08 8.0.1.1
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/10/25 6.0.1.6690
Realtek USB 2.0 Card Reader Realtek Semiconductor Corp. 2013/01/08 6.1.8400.39030
Rip!AudiCO FREE Ver 4.03 2014/10/25
Roxio Creator LJ Roxio 2014/10/25 260 MB 12.2.33.5
RZスイート express CyberLink Corp. 2014/10/25 1.7.10403
Skype Click to Call Microsoft Corporation 2015/03/23 9.91 MB 7.3.16540.9015
Skype(TM) 7.2 Skype Technologies S.A. 2015/03/23 78.1 MB 7.2.103
SPECIAL FORCE 2 NHN PlayArt Corp. 2014/10/25 5.32 GB 1.0.0.0
SRS Premium Sound Control Panel SRS Labs, Inc. 2013/01/08 1.73 MB 1.12.5000
Start Menu 8 IObit 2013/10/20 18.2 MB 1.3.0.0
Steam Valve Corporation 2014/10/25
Team Fortress 2 Valve 2014/10/25
theHunter Expansive Worlds 2015/03/09
TOSHIBA Active Display Off Toshiba Corporation 2013/01/08 17.0 MB 1.0.3.0
TOSHIBA Blu-ray Disc Player Toshiba Corporation 2013/01/08 79.4 MB 1.0.5.48
TOSHIBA Desktop Apps Menu Toshiba Corporation 2013/01/08 456 KB 1.00.0007.00002
TOSHIBA eco Utility Toshiba Corporation 2013/01/08 20.3 MB 2.0.0.6415
TOSHIBA Function Key Toshiba Corporation 2013/01/08 32.0 MB 1.00.6625.6402
TOSHIBA Manual TOSHIBA CORPORATION 2013/01/08 27.8 MB 0127.03.3001
TOSHIBA PalaDouga TOSHIBA CORPORATION 2012/09/20 394 MB 2012.0301.0003
TOSHIBA Password Utility TOSHIBA Corporation 2012/09/20 3.36 MB v1.0.0.10
TOSHIBA PC Health Monitor Toshiba Corporation 2013/01/08 44.2 MB 1.8.17.640104
TOSHIBA Recovery Media Creator Toshiba Corporation 2012/09/20 2.2.0.54043005
TOSHIBA Remote Control Manager TOSHIBA CORPORATION 2013/01/08 3.0.1014.2
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2013/01/08 1.2.2.00
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2013/01/08 1.00.5.52-B
TOSHIBA Service Station TOSHIBA 2013/01/08 20.7 MB 2.4.4
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2013/01/08 65.0 MB 1.5.1.7
TOSHIBA System Driver Toshiba Corporation 2013/01/08 5.51 MB 1.00.0013
TOSHIBA System Settings Toshiba Corporation 2013/01/08 10.9 MB 1.00.0002.32002
TOSHIBA Wireless Mouse HScroll Application TOSHIBA 2013/01/08 1.0.0.120326
Unity Web Player Unity Technologies ApS 2014/11/28 12.0 MB 4.6.0f3
Unlocker 1.9.2 Cedrick Collomb 2014/10/25 1.9.2
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2014/10/27 40.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2014/10/27 11.5 MB 15.0.1215
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/04/22 17.0 KB 16.0.1016.1
War Thunder Launcher 1.0.1.467 Gaijin Entertainment 2015/01/01 8.01 GB
WebTablet FB Plugin 32 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
WebTablet FB Plugin 64 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
Windows Media Encoder 9 Series 2014/10/25
World of Tanks Wargaming.net 2013/09/22 16.4 MB
デザインドール Terawell 2014/03/04 42.2 MB 5.6
バトルフィールド 3 Electronic Arts 2014/10/25 1.6.0.0
ワコム タブレット Wacom Technology Corp. 2015/03/16 6.3.11-4
幻想人形演舞 FocasLens 2015/01/14 262 MB
楽しもう!Office ライフ Microsoft Corporation 2013/01/08 772 KB 1.0.0
  • ジョニー沢渡
  • 2015/05/05 (Tue) 06:43:13
あなたもsalusですか
こんばんは。
ここの管理人の悪代官です。
上様への不届きで成敗されるのが嫌なので、ドキドキな美少女戦隊にお仕置きされてます。
この悪代官が、あなたの不届き取り戻して見せる!(謎

説明とログを見せてもらいました。
現在この掲示板だけでなくネット上で大流行中のSalus系にやられてますね。
他にも問題点が見えてますから、落ち着いてひとつずつ確実に進めてください。

まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「GeekUninstaller」(通称:GU)
説明ページ↓
http://www.gigafree.net/system/install/geekuninstaller.html
ダウンロード↓
http://www.geekuninstaller.com/download
「download free」をクリック、保存後、解凍してください。
片付ける時はフォルダごと手動で削除してください。

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

そして下記ページは作業開始前に必ず熟読して、必要な場合が出たらそれに沿って対処してください。この対処が必要な事例が増えています。
http://note.chiebukuro.yahoo.co.jp/detail/n335704

準備できたら作業開始です。
なお、このあとの作業で探しても見つからないものはスルーして進めていいですが、指示した対象外の物は絶対にいじらないようによく見て作業してください。

少なくとも下記のアプリは旧バージョンです。
>Adobe Reader X (10.1.10) - Japanese Adobe Systems Incorporated 2014/06/03 139 MB 10.1.10

>Lhaplus 2014/10/25

>OpenOffice 4.0.1 Apache Software Foundation 2014/01/23 341 MB 4.01.9714

>Skype(TM) 7.2 Skype Technologies S.A. 2015/03/23 78.1 MB 7.2.103

各種アプリの更新を怠っただけでも、脆弱性を悪用されて深刻な感染はあっさり起きます。
使うなら最新版に更新してください。使わないアプリならアンインストールが安全です。
他にも旧バージョンないか調べて、あれば同様に更新するか、アンインストールしてください。
それと、下記のフィルタリングソフトの使用期限も確認してください。
>i-フィルター 6.0 デジタルアーツ株式会社 2012/09/20 23.6 MB 6.00.20.0076

期限がまだあればそのまま使っていていいですが、もし期限切れなら有料で更新するかアンインストールかの2択を判断です。

ここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

今度はPCをセーフモードで起動してください(やり方↓)
http://freesoft.tvbok.com/win8/tips-and-tools/safemode.html

セーフモードでGUを使って、下記をアンインストールしてください。
>Baidu IME 3.5 Baidu Japan Inc. 2014/10/25 3.5

>Bandisoft MPEG-1 Decoder 2014/10/25

続いてセーフモードのままでスタートメニューの「アクセサリ」→「システムツール」から「ディスククリーンアップ」を起動してください。
起動したら対象ドライブでCドライブを選択してスキャンして、表示された中の「ダウンロードされたプログラムファイル」「インターネット一時ファイル」「一時ファイル」の項目だけチェックを入れてから「OK」「ファイルの削除」を押してください。
これを実行すると選択した部分のゴミファイルが掃除されます。

これを実行することで作業時にスキャンで検出される無駄なゴミファイルも減るのでその分かなり時間や解析も楽になるのです。
「ごみ箱」など他の項目にチェックしないのは、間違って正常なファイルを削除しないためと、もし正常なファイルを削除してごみ箱に入れても戻せるようにするための措置です。

HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、こちらが指示した以外のものは絶対にチェックを入れないでください。
>O4 - HKLM\..\Run: [CrashMon] "C:\Program Files (x86)\Umtayyznhndq1ntz\mtuyntm5ndy1yjy.exe" "UniversalUpdater" "http://log.data-url.com/crash/"

>O4 - HKLM\..\Run: [mwyyntm1ndi1zdz] C:\Program Files (x86)\Smwyyntm1ndi1zdz\zgi0mzb2mhm3bgz.exe

>O23 - Service: Baidu Japanese IME Service_3.5.2.45 (BaiduJP_IME_Service_3.5.2.45) - Baidu Inc. - C:\Program Files (x86)\Baidu\IME\3.5.2.45\BaiduJPServ.exe

>O23 - Service: Low-res Square Bracket (cunofozu) - Unknown owner - C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343\nsfD2A8.tmp

>O23 - Service: Universal Updater Service (UniversalUpdater) - Unknown owner - C:\Program Files (x86)\Umtayyznhndq1ntz\mwmyzjmzngu1mdy.exe

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
探しても見つからないものはスルーして進めていいです。

マイコンピュータのCドライブを開いて、下記のフォルダを探して、見つかればゴミ箱に削除してください。
>C:\Program Files (x86)\Umtayyznhndq1ntz

>C:\Program Files (x86)\Smwyyntm1ndi1zdz

>C:\Program Files (x86)\Baidu

>C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343

ここでPCを通常モードで再起動してから、今度はCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

続いて「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。
ただし、「コンテキストメニュー」のログは取らなくていいです。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにHJTとCCでのインストール情報ログを取り直してください。

取り直した両ログと、CCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。
  • 悪代官
  • 2015/05/05 (Tue) 20:47:30
無題
対処方法のご返信ありがとうございます。
数時間PCの状態を様子見したところ、広告等は殆ど出現しなくなりネットがかなり快適になりましたが、ごく一部のサイトではまだ出現するといった具合です。

以下ログとなります。



Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:12:14, on 2015/05/06
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)

FIREFOX: 37.0.2 (x86 ja)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
C:\Users\kakeru22\Desktop\新しいフォルダー\skype42i_patched.exe
C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\Users\kakeru22\Downloads\HijackThis(2).exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: AliBar BHO - {E4E012DC-1925-48E9-8010-2D195574642A} - C:\Program Files (x86)\Internet Explorer\alitab.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TKRTL] "C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe" -h
O4 - HKLM\..\Run: [TAVLauncher] C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [cubepdf-checker] "C:\Program Files (x86)\CubePDF\cubepdf-checker.exe"
O4 - HKCU\..\Run: [Skype] "C:\Users\kakeru22\Desktop\新しいフォルダー\skype42i_patched.exe" /nosplash /minimized
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Global Startup: クライアントユーティリティ.lnk = C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: SunのJavaコンソール - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {1DC420F0-D89A-40D0-B5CC-92B9AD19A1AC} (HGPluginJP28 Class) - http://down.hangame.co.jp/jp/dist/hgstart/HGPluginJP28.cab
O16 - DPF: {255A2E53-D2E3-42DA-9C1D-36B289B8E18B} (DMMLauncherAx Control) - http://dl.app-netgame.dmm.com/launcher/DMMLauncherAx_32.cab
O16 - DPF: {98FFD412-1A12-4BCE-8AB2-247C78E22227} (NCLoaderCtl Class) - https://static.ncsoft.jp/js/login/activex/NCLoader.8.cab
O16 - DPF: {F8160836-0C11-4CA4-AD87-944542C7BCBD} (PubPlugin Class) - http://down.hangame.co.jp/jp/purple/launcher/PubPlugin.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Video Camera Checkout (lydeteku) - Unknown owner - C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343\nskA417.tmp (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OEMRegistrationProgram - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\OEM Registration Program\OEMRegistrationProgram.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: RalinkRegistryWriter - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry.exe
O23 - Service: RalinkRegistryWriter64 - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry64.exe
O23 - Service: Ralink UPnP Media Server (RaMediaServer) - Ralink - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaMediaServer.exe
O23 - Service: RASUService - Unknown owner - C:\Program Files (x86)\TOSHIBA\AVApplication\RASU\TosRASUService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SMITS - Unknown owner - C:\Windows\SysWOW64\SMITSC.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartMenu8 Service (StartMenuService) - IObit - C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Qosmio AV Center Complement Service (TAVComplementService) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Engine\TAVComplementService.exe
O23 - Service: Qosmio AV Center Scheduler Service (TAVScheduler) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVScheduler.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Teco\TecoService.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Universal Updater Service (UniversalUpdater) - Unknown owner - C:\Program Files (x86)\Umtayyznhndq1ntz\mwmyzjmzngu1mdy.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: Technology Font (wivijuji) - Unknown owner - C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343\jnsp9322.tmp (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe

--
End of file - 12718 bytes



CC

+Lhaca 2015/04/21
Adobe AIR Adobe Systems Incorporated 2014/10/25 3.3.0.3650
Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/04/15 6.00 MB 17.0.0.169
Adobe Reader X (10.1.13) - Japanese Adobe Systems Incorporated 2015/05/06 205 MB 10.1.13
Alliance of Valiant Arms 株式会社ゲームオン 2015/04/19 287
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2013/01/08 2.1.0.6
Atheros Driver Installation Program Atheros 2015/05/06 10.0
CCleaner Piriform 2015/05/04 5.05
CloudAlpaca 1.4.3 Medibang 2015/04/11 156 MB 1.4.3
Common GameOn 2015/04/19 34939144
comono ImageViewer SaradaHouse 2013/10/27 1.00 MB 1.6.1
Corel VideoStudio X5 Corel Corporation 2014/10/25 609 MB 15.0.1.26
CubePDF 1.0.0RC7 CubeSoft 2014/05/13 24.8 MB
DigiBookBrowser Version 1.5.1.4 TriWorks Corp.JAPAN 2012/09/20 8.47 MB 1.5.1.4
dynabookランチャー用バナー 2014/10/25
FireAlpaca 1.2.1 firealpaca.com 2015/04/11 35.5 MB 1.2.1
Google Chrome Google Inc. 2014/03/26 42.0.2311.135
Hangame 2014/10/25
Hawken Meteor Entertainment 2014/10/25 2.79 GB
Hounds DMM 2014/02/15 1.0.0
Intel(R) Management Engine Components Intel Corporation 2013/08/23 8.1.0.1252
Intel(R) Processor Graphics Intel Corporation 2014/10/24 10.18.10.3345
Intel(R) Rapid Storage Technology Intel Corporation 2015/05/06 11.5.2.1001
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2014/10/25 2.0.0.37149
IObit Uninstaller IObit 2015/05/04 4.3.0.118
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2014/10/25 2.00
Left 4 Dead 2 Valve 2014/10/25
Logitecクライアントユーティリィティ Logitec 2014/02/11 1.5.21.0
LogMeIn Hamachi LogMeIn, Inc. 2015/04/01 2.2.0.328
Metasequoia Ver3.1 2015/04/13
MetasequoiaLE R3.0 2015/04/13
Microsoft Office 2010 Microsoft Corporation 2014/10/25 14.0.6029.1000
Microsoft SQL Server 2008 R2 Microsoft Corporation 2014/10/25
Microsoft SQL Server 2008 R2 Native Client Microsoft Corporation 2013/01/08 9.00 MB 10.51.2500.0
Microsoft SQL Server 2008 R2 Setup (日本語) Microsoft Corporation 2013/01/08 43.7 MB 10.51.2500.0
Microsoft SQL Server 2008 セットアップ サポート ファイル Microsoft Corporation 2013/01/08 34.6 MB 10.1.2731.0
Microsoft SQL Server Browser Microsoft Corporation 2013/01/08 8.53 MB 10.51.2500.0
Microsoft SQL Server VSS Writer Microsoft Corporation 2013/01/08 7.66 MB 10.51.2500.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2015/05/06 4.84 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2013/01/08 7.10 MB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/01/08 13.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2014/01/23 13.2 MB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/09/20 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/09/20 10.1 MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2014/01/23 10.1 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/03/09 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/03/09 13.8 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 Microsoft Corporation 2015/05/06 20.4 MB 11.0.50727.1
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 Microsoft Corporation 2015/05/06 17.3 MB 11.0.50727.1
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 2015/05/03 17.1 MB 12.0.21005.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/10/25 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN 2012/09/20
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/10/25 10.0.31119
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/03/04 9.44 MB 4.0.20823.0
mine2000 ver2.2.1 mine2000 project 2013/12/17 2.44 MB 2.2.1
Mozilla Firefox 37.0.2 (x86 ja) Mozilla 2015/05/04 83.4 MB 37.0.2
Mozilla Maintenance Service Mozilla 2015/05/04 247 KB 37.0.2
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/08/24 2.90 MB 4.30.2117.0
NCLauncher (NCSOFT) NCSOFT 2014/10/25
Niconico Live Encoder niwango, inc. 2015/05/02 2.0.4
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 8.60.5001
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 2.84 MB 8.60.5001
NVIDIA PhysX NVIDIA Corporation 2013/10/13 78.9 MB 9.10.0513
OEM Registration Program TOSHIBA CORPORATION 2013/01/08 516 KB 1.0.0
Origin Electronic Arts, Inc. 2014/10/25 9.4.7.2799
PCあんしん点検ユーティリティ TOSHIBA Corporation 2013/01/08 1.49 MB 1.1.5.0
PlayReady PC Runtime x86 Microsoft Corporation 2012/09/20 1.65 MB 1.3.0
Pmangインストールマネージャー GameOn,Pmang 2015/04/19 1.0.1.1
PunkBuster Services Even Balance, Inc. 2014/10/25 0.991
Qosmio AV Center Toshiba Corporation 2013/01/08 8.0.1.1
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/10/25 6.0.1.6690
Realtek USB 2.0 Card Reader Realtek Semiconductor Corp. 2013/01/08 6.1.8400.39030
Skype Click to Call Microsoft Corporation 2015/03/23 9.91 MB 7.3.16540.9015
Skype(TM) 7.2 Skype Technologies S.A. 2015/03/23 78.1 MB 7.2.103
SPECIAL FORCE 2 NHN PlayArt Corp. 2014/10/25 5.32 GB 1.0.0.0
Start Menu 8 IObit 2013/10/20 18.2 MB 1.3.0.0
Steam Valve Corporation 2014/10/25
Team Fortress 2 Valve 2014/10/25
theHunter Expansive Worlds 2015/03/09
TOSHIBA Active Display Off Toshiba Corporation 2013/01/08 17.0 MB 1.0.3.0
TOSHIBA Blu-ray Disc Player Toshiba Corporation 2013/01/08 79.4 MB 1.0.5.207
TOSHIBA Desktop Apps Menu Toshiba Corporation 2015/05/06 596 KB 1.02.01.6407
TOSHIBA eco Utility Toshiba Corporation 2013/01/08 20.3 MB 2.0.0.6415
TOSHIBA Function Key Toshiba Corporation 2013/01/08 32.0 MB 1.00.6625.6402
TOSHIBA Manual TOSHIBA CORPORATION 2013/01/08 27.8 MB 0127.03.3001
TOSHIBA PalaDouga TOSHIBA CORPORATION 2012/09/20 394 MB 2012.0301.0003
TOSHIBA Password Utility TOSHIBA Corporation 2012/09/20 3.36 MB v1.0.0.10
TOSHIBA PC Health Monitor Toshiba Corporation 2013/01/08 44.2 MB 1.8.17.640104
TOSHIBA Recovery Media Creator Toshiba Corporation 2012/09/20 2.2.0.54043005
TOSHIBA Remote Control Manager TOSHIBA CORPORATION 2013/01/08 3.0.1014.2
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2013/01/08 1.2.2.00
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2013/01/08 1.00.5.52-B
TOSHIBA Service Station Toshiba Corporation 2015/05/06 2.82 MB 2.6.8
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2013/01/08 65.0 MB 1.5.1.7
TOSHIBA System Driver Toshiba Corporation 2013/01/08 5.51 MB 1.00.0013
TOSHIBA System Settings Toshiba Corporation 2013/01/08 10.9 MB 1.00.0002.32002
TOSHIBA Wireless Mouse HScroll Application TOSHIBA 2013/01/08 1.0.0.120326
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2014/10/27 40.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2014/10/27 11.5 MB 15.0.1215
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/04/22 17.0 KB 16.0.1016.1
War Thunder Launcher 1.0.1.467 Gaijin Entertainment 2015/01/01 8.01 GB
WebTablet FB Plugin 32 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
WebTablet FB Plugin 64 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
Windows Media Encoder 9 Series 2014/10/25
World of Tanks Wargaming.net 2013/09/22 16.4 MB
デザインドール Terawell 2014/03/04 42.2 MB 5.6
ワコム タブレット Wacom Technology Corp. 2015/03/16 6.3.11-4
幻想人形演舞 FocasLens 2015/01/14 262 MB



IE

無効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
無効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
無効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
無効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Helper B1 Empty Tab B1 C:\Program Files (x86)\Internet Explorer\alitab.dll
有効 Helper B1 Empty Tab B1 C:\Program Files (x86)\Internet Explorer\alitab64.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll



Fire fox

有効 Plugin Adobe Acrobat 10.1.13.16 Adobe Systems Inc. default-1430705378557 Firefox 37.0.2 C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
有効 Plugin Google Update 1.3.26.9 Google Inc. default-1430705378557 Firefox 37.0.2 C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll
有効 Plugin Intel® Identity Protection Technology 2.1.42.0 Intel Corporation default-1430705378557 Firefox 37.0.2 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
有効 Plugin Intel® Identity Protection Technology 2.1.42.0 Intel Corporation default-1430705378557 Firefox 37.0.2 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 Microsoft Corporation default-1430705378557 Firefox 37.0.2 C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 Microsoft Corporation default-1430705378557 Firefox 37.0.2 C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
有効 Plugin NCSOFT Login Launcher Module 3.0.0.3 NCSOFT Corporation default-1430705378557 Firefox 37.0.2 C:\Program Files (x86)\NCSOFT\NCPlugin\npncllm3.dll
有効 Plugin Nexon Game Controller 1.0.1.4 Nexon default-1430705378557 Firefox 37.0.2 C:\ProgramData\NexonJP\NGM\npNxGameJP.dll
有効 Plugin pmangdiagnostic 1.0.0.1 gameon default-1430705378557 Firefox 37.0.2 C:\GameOn\Common files\nppmangdiagnostic.dll
有効 Plugin pmangsupport 1.0.0.1 gameon default-1430705378557 Firefox 37.0.2 C:\GameOn\Common files\nppmangsupport.dll
有効 Plugin Shockwave Flash 17.0.0.169 Adobe Systems Incorporated default-1430705378557 Firefox 37.0.2 C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll
有効 Plugin WacomTabletPlugin 2.1.0.7 Wacom default-1430705378557 Firefox 37.0.2 C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll




Google Chrome

有効 App Gmail 8.1 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google スプレッドシート 1.1 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
無効 Extension MSN Homepage & Bing Search Engine 0.0.0.6 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd\0.0.0.6_0
無効 Extension Skype Click to Call 7.3.16540.9015 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0
無効 Extension WebProtector 1.0.0.4 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfecnpmgnlnbmipaogfhoacoioifjgko\1.0.0.4_0



スケジュールされたタスク

有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B} C:\Program Files (x86)\baidu\update\baidujp_update.exe -Update
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task EPUpdater Babylon Ltd. C:\Users\kakeru22\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task HScroll64 TOSHIBA %ProgramFiles(x86)%\Mouse HScroll Application\HScrollFun.exe
有効 Task Jeybg1QPgV C:\Users\kakeru22\AppData\Roaming\Jeybg1QPgV.exe --c=lm1YRu0Ce8E6d46Dt6ZFIyvXBkr+mDvvtxrthqby5gNN5jnk8cI0VCi3P6KpJgELydxBf1awHGGZR16PrbhqUK7RN4rHmkOAzKm7Gw6UmYwN70iu84/yLoFbc4R33HHUdW22hGelTw+H49G3lPfu3gOYVHEc+qeZmNZwGhXs/vuDFwHWPdenk3L4RHK3wLzCw1zGpabUyTGrst3ivsP/tfxNbb3G8Wj92BdkNLvlCcvFGg1RZ/a6urLiRlw4M25VavBg7RysytYd0Kkl7w1fUFJ5Vh/PPaPDYaUa2Gk5g03hbspnEbGD906qGLQYsYYW5yGSR6FhpcYjKo2+Dbh3iQ==
有効 Task Optimize Start Menu Cache Files-S-1-5-21-4092057093-892697119-3552624878-1005
無効 Task Optimize Start Menu Cache Files-S-1-5-21-4092057093-892697119-3552624878-500
有効 Task SmartWeb Upgrade Trigger Task C:\Users\kakeru22\AppData\Local\SmartWeb\SmartWebHelper.exe
有効 Task StartMenuAutoupdate IObit C:\Program Files (x86)\IObit\Start Menu 8\AutoUpdate.exe /AUTORUN
有効 Task StPrsSW C:\Users\kakeru22\AppData\Roaming\StPrsSW\stprss.exe ,-clptsk
有効 Task tYKl8B7ZakexRrO12E3gA C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA.exe --c=X6nAvZ68rbkTy6w6fr8cOa0XhQgiaTDb+jGTHuGeHhs2639AE9qoRTt65jj6SVAlssAeINMN6nE9bTF18U6on6p7NFJJ1fDe7Bfb1FH1JkuJwrpAjatLswwLMju761zuqZqB5cBvz+wpnyf6mU1l1gGIo/qms0jg6ah92swDY3SOe+5QTCT6zQ+n6OFIFtAunTx2W9lLIhaGw9hX1aoS9MSTMFfb2ge4ka3iWR5YSTYaXAwqjdTdc0H3QH4iws1yqVU1X/OCpqmca4pAiWrYROMn25jmbtajCxjVDVuSe8Dz7SqCitgNYUJ5a5d3htMrX1V6U7wDpdaA+QpVrlBQ5g==
有効 Task Uninstaller_SkipUac_kakeru22 IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {57CB8B45-DD14-490B-AC46-653AF019B0C2} Mozilla Corporation "c:\program files (x86)\mozilla firefox\firefox.exe" http://ui.skype.com/ui/0/6.14.0.104/ja/abandoninstall?page=tsMain
有効 Task {8C5F19D3-A7C8-4B11-B9A6-0E8EB690783E} Mozilla Corporation "c:\program files (x86)\mozilla firefox\firefox.exe" http://ui.skype.com/ui/0/7.4.85.102/ja/abandoninstall?page=tsProgressBar
有効 Task {AE743183-B7BB-459A-89A4-7076E65CD80B} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a C:\Users\kakeru22\AppData\Local\Temp\UFDE1.tmp\UNTFDE2.tmp.exe -c -uninstall
有効 Task {B308AD9D-9FE8-4D93-90EC-881F45AE6790} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files\McAfee Security Scan\uninstall.exe"
  • ジョニー沢渡
  • 2015/05/06 (Wed) 18:22:57
色々あぶり出されてきました
レスが遅くなりました。

>数時間PCの状態を様子見したところ、広告等は殆ど出現しなくなりネットがかなり快適になりましたが、ごく一部のサイトではまだ出現するといった具合です。

はい、いくらか沈静化はしたようですがまだ解決にはなりませんね。
ではまた説明に沿って続きの作業をお願いします。

下記はまだ最新になってないので、一度GUでアンインストールしてからディスククリーンアップで一時ファイルの掃除した後にAdobe公式サイトからダウンロードと再インストールしてください。
>Adobe Reader X (10.1.13) - Japanese Adobe Systems Incorporated 2015/05/06 205 MB 10.1.13
それで最新版になるはずです。
下記も同様に更新してください。
>Skype(TM) 7.2 Skype Technologies S.A. 2015/03/23 78.1 MB 7.2.103

次にまたCCを起動して「Chrome」タブ内の下記を右クリックから「エントリの削除」してください。
無効 Extension WebProtector 1.0.0.4 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfecnpmgnlnbmipaogfhoacoioifjgko\1.0.0.4_0

次に「スケジュールされたタスク」タブ内の下記も同様に処置です。
有効 Task BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B} C:\Program Files (x86)\baidu\update\baidujp_update.exe -Update

有効 Task EPUpdater Babylon Ltd. C:\Users\kakeru22\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe

有効 Task Jeybg1QPgV C:\Users\kakeru22\AppData\Roaming\Jeybg1QPgV.exe --c=lm1YRu0Ce8E6d46Dt6ZFIyvXBkr+mDvvtxrthqby5gNN5jnk8cI0VCi3P6KpJgELydxBf1awHGGZR16PrbhqUK7RN4rHmkOAzKm7Gw6UmYwN70iu84/yLoFbc4R33HHUdW22hGelTw+H49G3lPfu3gOYVHEc+qeZmNZwGhXs/vuDFwHWPdenk3L4RHK3wLzCw1zGpabUyTGrst3ivsP/tfxNbb3G8Wj92BdkNLvlCcvFGg1RZ/a6urLiRlw4M25VavBg7RysytYd0Kkl7w1fUFJ5Vh/PPaPDYaUa2Gk5g03hbspnEbGD906qGLQYsYYW5yGSR6FhpcYjKo2+Dbh3iQ==

有効 Task SmartWeb Upgrade Trigger Task C:\Users\kakeru22\AppData\Local\SmartWeb\SmartWebHelper.exe

有効 Task StPrsSW C:\Users\kakeru22\AppData\Roaming\StPrsSW\stprss.exe ,-clptsk

有効 Task tYKl8B7ZakexRrO12E3gA C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA.exe --c=X6nAvZ68rbkTy6w6fr8cOa0XhQgiaTDb+jGTHuGeHhs2639AE9qoRTt65jj6SVAlssAeINMN6nE9bTF18U6on6p7NFJJ1fDe7Bfb1FH1JkuJwrpAjatLswwLMju761zuqZqB5cBvz+wpnyf6mU1l1gGIo/qms0jg6ah92swDY3SOe+5QTCT6zQ+n6OFIFtAunTx2W9lLIhaGw9hX1aoS9MSTMFfb2ge4ka3iWR5YSTYaXAwqjdTdc0H3QH4iws1yqVU1X/OCpqmca4pAiWrYROMn25jmbtajCxjVDVuSe8Dz7SqCitgNYUJ5a5d3htMrX1V6U7wDpdaA+QpVrlBQ5g==

有効 Task {AE743183-B7BB-459A-89A4-7076E65CD80B} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a C:\Users\kakeru22\AppData\Local\Temp\UFDE1.tmp\UNTFDE2.tmp.exe -c -uninstall

有効 Task {B308AD9D-9FE8-4D93-90EC-881F45AE6790} Microsoft Corporation C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files\McAfee Security Scan\uninstall.exe"

CCを終了したら次は下記のツールを準備してください。
「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。
使い方は下記サイト様に詳しい説明があるのでサンショウウオ↓
http://www.japan-secure.com/entry/adwcleaner.html

Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ですが、MBAMは現在安定性や動作でかなり難が出ており、普通に使っても正常にスキャンができないバグまで多発中です。
そのため本家サイトから最新版のダウンロードせず、ここではあえて旧バージョンで作業します。

旧バージョンの説明サイト↓
http://www.japan-secure.com/entry/blog-entry-7.html

以下のURLからMBAMの旧バージョンをダウンロードしてください。
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
ファイル直リンです。保存しておいてください。

注)インストール時に日本語でインストールすると文字化けすることがあります。英語でインストール後に日本語化してください。
MBAM起動して「Settings」タブ→「Language」→「Japanese」で日本語化できます。

準備できたらMBAMをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。
なお、ここでMBAMの更新で「プログラム」自体は更新せず、定義だけ更新しておいてください。
プログラム本体を更新すると、バグ多発中の最新版になってしまうので、せっかく旧バージョンでインストールした意味がなくなります。

続いてここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

両ツールのアップデートができたらPCをセーフモードで再起動してから、ディスククリーンアップを使ってゴミファイルの掃除してください。


続いてPCをセーフモード起動してから、先に一度起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

ACでの作業ができたら次はMBAMの作業です。
セーフモードのままMBAM起動してスキャンしてください。
MBAM起動したら「スキャナー」タブから「フルスキャン」です。
対象ドライブはCを含めて全ドライブを選択してください。
ですが、もし「フルスキャン」というボタンが表示されない場合はMBAMを最新版に更新してしまった可能性があるので、この時は「カスタムスキャン」を選択してください。
この操作が最新版MBAMでのフルスキャンにあたります。
スキャン対象は全ドライブを選択(チェック)してください。時間はかかりますができるだけ細かくスキャンするためです。
順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、「詳細を表示」を押すとその結果が表示されるはずなので、そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

このあとしばらくPC状態を様子見後、作業後に保存したACとMBAMのログを返信に貼り付けて、それを状態報告とともにレスで見せてください。
  • 悪代官
  • 2015/05/06 (Wed) 22:07:29
無題
返信少し遅れました。一通り作業を行った後のネットの様子は、殆ど良好な感じです。見た目は直ってしまったようにも思えます。

以下ログになります。



AdwCleaner v4.203 - ログファイルの作成日 07/05/2015 作成時間 10:33:08
# 更新日 30/04/2015 作成元 Xplode
# データベース : 2015-04-30.2 [ローカル]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : kakeru22 - KAKERU
# 実行場所 : C:\Users\kakeru22\Downloads\adwcleaner_4.203.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : UniversalUpdater
[#] サービス 削除済み項目 : {58e1b688-2ab0-4c17-9961-5d5a7985b662}Gw64

***** [ ファイル / フォルダ ] *****

フォルダ 削除済み項目 : C:\ProgramData\apn
フォルダ 削除済み項目 : C:\ProgramData\Babylon
フォルダ 削除済み項目 : C:\ProgramData\baidu
フォルダ 削除済み項目 : C:\Program Files (x86)\globalUpdate
フォルダ 削除済み項目 : C:\Program Files (x86)\predm
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Local\Temp\apn
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Local\globalUpdate
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Local\onlysearch
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Local\SmartWeb
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Local\MaxiGet Download Manager
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\LocalLow\Delta
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\LocalLow\WebProtector
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Roaming\BabSolution
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Roaming\Babylon
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Roaming\WebExtend
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Roaming\Maxiget
フォルダ 削除済み項目 : C:\Users\kakeru22\AppData\Roaming\Mozilla\Firefox\Profiles\t4e9qokj.default-1430705378557\Extensions\foxcconverter@gmail.com
ファイル 削除済み項目 : C:\WINDOWS\Reimage.ini
ファイル 削除済み項目 : C:\Users\kakeru22\AppData\Local\Temp\Uninstall.exe
ファイル 削除済み項目 : C:\WINDOWS\System32\roboot64.exe
ファイル 削除済み項目 : C:\WINDOWS\System32\drivers\{58e1b688-2ab0-4c17-9961-5d5a7985b662}Gw64.sys
ファイル 削除済み項目 : C:\Users\kakeru22\AppData\Roaming\LiveSupport.exe_log.txt
ファイル 削除済み項目 : C:\Users\kakeru22\AppData\Roaming\regsvr32.exe_log.txt
ファイル 削除済み項目 : C:\Users\kakeru22\Desktop\Continue Live Installation.lnk
ファイル 削除済み項目 : C:\Program Files (x86)\Mozilla Firefox\browser\defaults\preferences\prefs.js
ファイル 削除済み項目 : C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.oursurfing.com_0.localstorage
ファイル 削除済み項目 : C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.oursurfing.com_0.localstorage-journal

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****

ショートカット 駆除済み項目 : C:\Users\Public\Desktop\Google Chrome.lnk
ショートカット 駆除済み項目 : C:\Users\Public\Desktop\WarThunder.lnk
ショートカット 駆除済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
ショートカット 駆除済み項目 : C:\Users\kakeru22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
ショートカット 駆除済み項目 : C:\Users\kakeru22\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder\WarThunder.lnk
ショートカット 駆除済み項目 : C:\Users\kakeru22\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
ショートカット 駆除済み項目 : C:\Users\kakeru22\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
ショートカット 駆除済み項目 : C:\Users\kakeru22\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk

***** [ レジストリ ] *****

値 削除済み項目 : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [sweetsearch@gmail.com]
値 削除済み項目 : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [quick_searchff@gmail.com]
キー 削除済み項目 : HKLM\SOFTWARE\Google\Chrome\Extensions\bmiabdepfhhiieiipmeecdmeljggmfee
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bmiabdepfhhiieiipmeecdmeljggmfee
キー 削除済み項目 : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
キー 削除済み項目 : HKCU\Software\Google\Chrome\Extensions\kfecnpmgnlnbmipaogfhoacoioifjgko
キー 削除済み項目 : HKLM\SOFTWARE\Google\Chrome\Extensions\kfecnpmgnlnbmipaogfhoacoioifjgko
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
キー 削除済み項目 : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\Prod.cap
キー 削除済み項目 : HKCU\Software\Classes\keepmysearch
キー 削除済み項目 : HKCU\Software\Mozilla\Extends
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{E4E012DC-1925-48E9-8010-2D195574642A}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E4E012DC-1925-48E9-8010-2D195574642A}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E4E012DC-1925-48E9-8010-2D195574642A}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E4E012DC-1925-48E9-8010-2D195574642A}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{E4E012DC-1925-48E9-8010-2D195574642A}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E4E012DC-1925-48E9-8010-2D195574642A}
キー 削除済み項目 : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
データ 復元済み項目 : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
データ 復元済み項目 : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : HKCU\Software\BABSOLUTION
キー 削除済み項目 : HKCU\Software\Conduit
キー 削除済み項目 : HKCU\Software\Delta
キー 削除済み項目 : HKCU\Software\GlobalUpdate
キー 削除済み項目 : HKCU\Software\Softonic
キー 削除済み項目 : HKCU\Software\TutoTag
キー 削除済み項目 : HKCU\Software\MaxiGet
キー 削除済み項目 : HKCU\Software\Baidu
キー 削除済み項目 : HKCU\Software\YorkNewCin
キー 削除済み項目 : HKCU\Software\HighDefAction
キー 削除済み項目 : HKCU\Software\ArenaHD
キー 削除済み項目 : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 削除済み項目 : HKCU\Software\AppDataLow\Software\Crossrider
キー 削除済み項目 : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 削除済み項目 : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
キー 削除済み項目 : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
キー 削除済み項目 : HKLM\SOFTWARE\Conduit
キー 削除済み項目 : HKLM\SOFTWARE\Delta
キー 削除済み項目 : HKLM\SOFTWARE\GlobalUpdate
キー 削除済み項目 : HKLM\SOFTWARE\Baidu
キー 削除済み項目 : HKLM\SOFTWARE\luckysearchesSoftware
キー 削除済み項目 : HKLM\SOFTWARE\YorkNewCin
キー 削除済み項目 : HKLM\SOFTWARE\HighDefAction
キー 削除済み項目 : HKLM\SOFTWARE\Universal
キー 削除済み項目 : HKLM\SOFTWARE\WebProtector
キー 削除済み項目 : HKLM\SOFTWARE\ArenaHD
キー 削除済み項目 : HKU\.DEFAULT\Software\AskPartnerNetwork
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage
キー 削除済み項目 : [x64] HKLM\SOFTWARE\MaxiGet
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Baidu
キー 削除済み項目 : [x64] HKLM\SOFTWARE\YorkNewCin
キー 削除済み項目 : [x64] HKLM\SOFTWARE\HighDefAction
キー 削除済み項目 : [x64] HKLM\SOFTWARE\ArenaHD
キー 削除済み項目 : HKLM\SOFTWARE\Classes\Installer\Features\EFEE0228DC83E77358593193D847A0EC
キー 削除済み項目 : HKLM\SOFTWARE\Classes\Installer\Products\EFEE0228DC83E77358593193D847A0EC
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EFEE0228DC83E77358593193D847A0EC
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\hao123.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\jp.hao123.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\oursurfing.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.jp
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.oursurfing.com
データ 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17416

設定 復元済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
設定 復元済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Mozilla Firefox v37.0.2 (x86 ja)


-\\ Google Chrome v42.0.2311.135

[C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - 削除済み項目 [Extension] : fcfenmboojpjinhpgggodefccipikbpd
[C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - 削除済み項目 [Extension] : kfecnpmgnlnbmipaogfhoacoioifjgko

*************************

AdwCleaner[R0].txt - [13289 bytes] - [07/05/2015 10:32:11]
AdwCleaner[S0].txt - [10230 bytes] - [07/05/2015 10:33:08]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [10290 bytes] ##########




Malwarebytes Anti-Malware
www.malwarebytes.org

スキャン日付: 2015/05/07
スキャン時刻: 10:48:33
ログファイル: matu.txt
管理者: はい

バージョン: 2.01.6.1022
マルウェアデータベース: v2015.05.06.06
ルートキットデータベース: v2015.04.21.01
ライセンス: 無料版
マルウェア保護機能: 無効
悪質ウェブサイト保護機能: 無効
自己防衛: 無効

OS: Windows 8.1
CPU: x64
ファイルシステム: NTFS
ユーザー: kakeru22

スキャン形式: カスタムスキャン
結果: 完了しました
スキャンされたオブジェクト数: 637526
経過時間: 1 時間, 10 分, 32 秒

メモリ: 有効
スタートアップ: 有効
ファイルシステム: 有効
アーカイブ: 有効
ルートキット: 無効
ヒューリスティック: 有効
PUP: 有効
PUM: 有効

プロセス: 0
(なし悪意のある項目を検出)

モジュール: 0
(なし悪意のある項目を検出)

レジストリキー: 10
PUP.Optional.Imedia.SID, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\zgi0mzb2mhm3bgz, 隔離, [aec0ccc4bbcf74c22e2ce56a39cd26da],
PUP.Optional.ModGoog, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, 隔離, [214d2f6127637fb7e48b63e50bf708f8],
PUP.Optional.ModGoog, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, 隔離, [214d2f6127637fb7e48b63e50bf708f8],
PUP.Optional.Infonaut.A, HKLM\SOFTWARE\WOW6432NODE\Infonaut_1.10.0.14, 隔離, [3b33266a3b4f72c4d121aa247b888779],
PUP.Optional.CrossRider.C, HKLM\SOFTWARE\WOW6432NODE\APPDATALOW\SOFTWARE\Crossrider, 隔離, [a8c6256bf69486b0cb1ac00d8f748f71],
PUP.Optional.Infonaut.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\innfd_1_10_0_14, 隔離, [4f1f8010e1a9bf779d53577704ff8d73],
PUP.Optional.Cinema.A, HKU\S-1-5-18\SOFTWARE\CinemaP-1.9cV02.05-nv, 隔離, [e38bf59babdf280e90ce9958e61de21e],
PUP.Optional.Cinema.A, HKU\S-1-5-18\SOFTWARE\CinemaP-1.9cV02.05-nv-ie, 隔離, [b5b9b5db9af0cf678dd1658ce023b44c],
PUP.Optional.Crossrider.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\_CrossriderRegNamePlaceHolder_, 隔離, [0e60f7995a30c2744a0b075d679e0000],
PUP.Optional.Cinema.A, HKU\S-1-5-21-4092057093-892697119-3552624878-1005\SOFTWARE\CinemaP-1.9cV02.05-nv-ie, 隔離, [d29ccac6b8d2fd39510d638e798a3bc5],

レジストリ値: 4
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_jp_457, 隔離, [4826761ab3d777bf292982604bb8af51],
PUP.Optional.MultiPlug.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\lydeteku|ImagePath, C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343\nskA417.tmp, 隔離, [6b031a764f3b53e3792166f9f41104fc]
PUP.Optional.MultiPlug.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\wivijuji|ImagePath, C:\Users\kakeru22\AppData\Roaming\F01B9541-1430619572-E211-805F-008CFA351343\jnsp9322.tmp, 隔離, [1e500789bfcbe45292091b44e520857b]
PUP.Optional.Spigot.A, HKU\S-1-5-21-4092057093-892697119-3552624878-1005\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{96A80575-3011-424E-8731-B73E844A0F13}|URL, https://search.yahoo.co.jp/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=227087&p={searchTerms}, 隔離, [7cf26d23315964d2a3fe5e71f60d08f8]

レジストリデータ: 0
(なし悪意のある項目を検出)

フォルダー: 3
PUP.Optional.MultiPlug.A, C:\Users\kakeru22\AppData\Local\F01B9541-1430652185-E211-805F-008CFA351343, 隔離, [8fdf642ccdbd37ff3fd2283914f10df3],
Rogue.Multiple, C:\ProgramData\374311380, 隔離, [f47aaae6a1e969cd0806fe8e40c337c9],
PUP.Optional.GlobalUpdate.A, C:\Users\kakeru22\AppData\Local\Temp\comh.153588, 隔離, [4f1fb4dc7218979fb952fbb550b33dc3],

ファイル: 40
PUP.Optional.Imedia.SID, C:\Windows\System32\drivers\zgi0mzb2mhm3bgz.sys, 隔離, [aec0ccc4bbcf74c22e2ce56a39cd26da],
PUP.Optional.SmartWeb.A, C:\AdwCleaner\Quarantine\C\Users\kakeru22\AppData\Local\SmartWeb\__u.exe.vir, 隔離, [f47a810f800aa294ca64e022fa08da26],
PUP.Optional.Imedia.SID, C:\Users\kakeru22\AppData\Local\Temp\uobnyv04ydl6.exe, 隔離, [ea84870928621d199fbb044bbd49cb35],
PUP.Optional.OutBrowse, C:\Users\kakeru22\AppData\Local\Temp\mytmpinstaller.exe, 隔離, [2f3f761a058566d040c8133fa35f758b],
PUP.Optional.OfferInstaller.C, C:\Users\kakeru22\AppData\Local\Temp\sdfE67.exe, 隔離, [9bd3a9e7e8a2fa3ccecf013ab84a41bf],
PUP.Optional.LuckySearches.A, C:\Users\kakeru22\AppData\Local\Temp\nso455A.tmp, 隔離, [b8b6f39d9eec5bdbf85d81cdc046847c],
PUP.Optional.Tuto4PC.A, C:\Users\kakeru22\AppData\Local\Temp\nso5217.tmp, 隔離, [89e59af6494178be86eb3c130cfaa957],
Trojan.Downloader, C:\Users\kakeru22\AppData\Local\Temp\nsx1DAC.tmp, 隔離, [4f1f682843474fe7a21141fe63a0857b],
PUP.Optional.Bundle, C:\Users\kakeru22\AppData\Local\Temp\nsx1DAD.tmp, 隔離, [9bd3ace4afdb56e02365dc2610f6b34d],
PUP.Optional.OfferInstaller.C, C:\Users\kakeru22\AppData\Local\Temp\besF0FD.exe, 隔離, [aac4365a444680b67d20ba81b84a966a],
PUP.Optional.Spigot.SID, C:\Users\kakeru22\AppData\Local\Temp\~spB17D.tmp, 隔離, [fe706729cdbdc5719cd197b84fb7bc44],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\GoogleCrashHandler.exe, 隔離, [3a34365aacde69cd86e9dc6cdc2618e8],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\GoogleUpdate.exe, 隔離, [214d2f6127637fb7e48b63e50bf708f8],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\GoogleUpdateBroker.exe, 隔離, [6e0010805d2d0b2bb3bc1b2d43bfd12f],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\GoogleUpdateOnDemand.exe, 隔離, [2549bed2b0da1b1b85ea1d2b49b9659b],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\goopdate.dll, 隔離, [5a141b756d1d3ff7bfb093b5ed1523dd],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\goopdateres_en.dll, 隔離, [442af39df6943501d39c074170923dc3],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\npGoogleUpdate4.dll, 隔離, [e18dbcd490faac8adc93e46410f2b44c],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\psmachine.dll, 隔離, [ff6fc3cd6b1fcd69a7c8093fe51dca36],
PUP.Optional.ModGoog, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\psuser.dll, 隔離, [115d810fe8a22a0c2e41c682c63c827e],
PUP.Optional.SkyTech.A, C:\Users\kakeru22\AppData\Local\Temp\tmp-RunningMan\QQBrowserFrame.dll, 隔離, [323c1d73553541f55e2b7f87dd2507f9],
PUP.Optional.Spigot.SID, C:\Users\kakeru22\AppData\Local\Temp\nsdBE4D.tmp\SM.dll, 隔離, [e08ebcd44347dd59fd70ea65bd4937c9],
PUP.Optional.Imedia.SID, C:\Users\kakeru22\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\adv_57.exe, 隔離, [f678315f296164d2134754fbca3c9769],
PUP.Optional.OfferInstaller.C, C:\Users\kakeru22\AppData\Local\Temp\f9626892-7a78-3199-abd2-97bbce96297b\OfferInstaller.exe, 隔離, [c2acb1dff99193a3d7c628130df57e82],
PUP.Optional.CrossRider.A, C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA.exe, 隔離, [016df9973951d363ff664408ed154ab6],
PUP.Optional.4Shared, C:\Users\kakeru22\Downloads\SaveAs.exe, 隔離, [f17d434df79335015ce4d23c9171f010],
PUP.Optional.Softonic.A, C:\Users\kakeru22\Downloads\SoftonicDownloader_for_free-media-converter.exe, 隔離, [e18d37597911ec4afddc6ce6a859728e],
PUP.Optional.Softonic.A, C:\Users\kakeru22\Downloads\SoftonicDownloader_for_free-mp3-cutter-and-editor.exe, 隔離, [cda169276921cd6964751a38e71a0ff1],
PUP.Optional.Imedia.SID, C:\Windows\Temp\E160.tmp, 隔離, [70fe0f81424872c4de7cb996af5758a8],
PUP.Optional.Vitruvian.A, C:\Users\kakeru22\AppData\Local\Temp\vitruvian-installer-install-v0003, 隔離, [9ed07719602a10268d79500a5fa650b0],
PUP.Optional.Vitruvian.A, C:\Users\kakeru22\AppData\Local\Temp\vitruvian-installer-processes-v0002, 隔離, [a5c9424e7416e15553b3de7cd82dd828],
PUP.Optional.Vitruvian.A, C:\Users\kakeru22\AppData\Local\Temp\vitruvian-installer-scheduledtasks-v0001, 隔離, [f07e0c845d2db482a363e7736b9a4bb5],
PUP.Optional.Vitruvian.A, C:\Users\kakeru22\AppData\Local\Temp\vitruvian-installer-softwareregkeys-v0002, 隔離, [e18d6f21a9e13afca85e9dbd8e779e62],
PUP.Optional.Vitruvian.A, C:\Users\kakeru22\AppData\Local\Temp\vitruvian-installer-uninstall-v0002, 隔離, [09658e02d4b638fedd29e872bd4808f8],
PUP.Optional.MultiPlug.A, C:\Users\kakeru22\AppData\Local\F01B9541-1430652185-E211-805F-008CFA351343\onsh7947.tmp, 隔離, [8fdf642ccdbd37ff3fd2283914f10df3],
PUP.Optional.MultiPlug.A, C:\Users\kakeru22\AppData\Local\F01B9541-1430652185-E211-805F-008CFA351343\pnsc7977.exe, 隔離, [8fdf642ccdbd37ff3fd2283914f10df3],
PUP.Optional.MultiPlug.A, C:\Users\kakeru22\AppData\Local\F01B9541-1430652185-E211-805F-008CFA351343\rnsh7946.exe, 隔離, [8fdf642ccdbd37ff3fd2283914f10df3],
PUP.Optional.MultiPlug.A, C:\Users\kakeru22\AppData\Local\F01B9541-1430652185-E211-805F-008CFA351343\snsh7945.tmp, 隔離, [8fdf642ccdbd37ff3fd2283914f10df3],
PUP.Optional.MultiPlug.A, C:\Users\kakeru22\AppData\Local\F01B9541-1430652185-E211-805F-008CFA351343\Uninstall.exe, 隔離, [8fdf642ccdbd37ff3fd2283914f10df3],
PUP.Optional.GlobalUpdate.A, C:\Users\kakeru22\AppData\Local\Temp\comh.153588\GoogleUpdateHelper.msi, 隔離, [4f1fb4dc7218979fb952fbb550b33dc3],

物理セクタ: 0
(なし悪意のある項目を検出)


(end)
  • ジョニー沢渡
  • 2015/05/08 (Fri) 17:10:45
OTLでも解析します
作業と報告、ご苦労様です。

>一通り作業を行った後のネットの様子は、殆ど良好な感じです。見た目は直ってしまったようにも思えます

続きのログを見るとまだ大量の検出ありましたね。
それらも両ツールで隔離処置していればいいです。

処置が済んだら両ツールは準備時の説明に沿って片付けていいです。

では今度は以下のツールを準備してください。
OTL(OldTimer Listit)
ファイル直リンなので、DLしたら保存しておいてください。
http://oldtimer.geekstogo.com/OTL.exe
片付けるときは起動後に「Cleanup」ボタンを押せば自動で削除されます。

他のプログラムを起動しない状態でOTLを起動してください。
起動したら、ウィンドウの上の方にある「Scan All Users」にチェックを入れ、以下のコマンドを「Custom Scan/Fixes」にコピペしてください。

%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
CREATERESTOREPOINT

その後、左上の「Run Scan」を押すとスキャン開始されます。
スキャン開始後、PC環境にもよりますが数分ほどすると、「OTL.txt」と「Extras.txt」がOTL.exeと同じ場所に作成されるはずなので、この2つのファイルをデスクトップあたりに保存しておいてください。
なお、Extras.txtは出ないこともありますが、その場合はOTL.txtだけでもいいです。

このあとOTLログを丸ごと返信に貼り付けてレスで見せてください。
ただしOTLログはかなり長くなるため、一度に送信してもfc2の文字数制限で途切れます。
なのでログも適当なところで分割して、複数回に分けてレス送信してください。

OTLでスキャンしただけでは何も変化は起きません。
この結果を見て、検出されたものを次回以降の作業で処置することになるはずです
  • 悪代官
  • 2015/05/08 (Fri) 21:17:09
無題
すみません遅くなりました。以下OTLログとなります。

OTL logfile created on: 2015/05/09 23:45:21 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\kakeru22\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17728)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.89 Gb Total Physical Memory | 6.15 Gb Available Physical Memory | 78.02% Memory free
9.26 Gb Paging File | 6.55 Gb Available in Paging File | 70.77% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1795.77 Gb Total Space | 972.31 Gb Free Space | 54.14% Space Free | Partition Type: NTFS
Drive E: | 50.00 Gb Total Space | 49.90 Gb Free Space | 99.80% Space Free | Partition Type: NTFS

Computer Name: KAKERU | User Name: kakeru22 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/05/09 23:42:19 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\kakeru22\Downloads\OTL.exe
PRC - [2015/05/04 00:39:19 | 002,585,376 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
PRC - [2015/05/04 00:39:18 | 001,089,312 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
PRC - [2015/03/30 15:29:02 | 003,978,600 | ---- | M] (LogMeIn Inc.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
PRC - [2015/03/24 13:22:24 | 001,543,872 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
PRC - [2015/03/24 13:22:24 | 000,836,288 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
PRC - [2015/03/24 13:22:22 | 002,888,896 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Steam\Steam.exe
PRC - [2015/03/05 15:36:00 | 000,062,752 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe
PRC - [2015/03/05 15:35:52 | 001,055,008 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
PRC - [2015/03/05 15:35:10 | 002,040,096 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
PRC - [2014/07/14 18:21:46 | 001,390,176 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
PRC - [2014/07/14 18:21:06 | 001,767,520 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
PRC - [2014/03/06 12:37:00 | 000,013,312 | ---- | M] () -- C:\Windows\SysWOW64\SMITSC.exe
PRC - [2012/12/26 15:25:56 | 009,232,896 | ---- | M] (Ralink Technology, Corp.) -- C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
PRC - [2012/09/03 13:21:36 | 000,016,880 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\AVApplication\Engine\TAVComplementService.exe
PRC - [2012/09/03 13:21:16 | 000,722,928 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVScheduler.exe
PRC - [2012/09/03 13:21:08 | 000,554,976 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
PRC - [2012/08/27 13:30:58 | 000,751,528 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
PRC - [2012/08/04 15:02:22 | 001,548,952 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
PRC - [2012/08/03 15:38:18 | 000,054,976 | ---- | M] (Intercom, Inc.) -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
PRC - [2012/07/31 11:56:08 | 000,030,392 | ---- | M] (Intercom, Inc.) -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
PRC - [2012/07/17 14:57:22 | 000,365,376 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2012/07/17 14:57:20 | 000,277,824 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2012/07/04 19:10:06 | 000,372,736 | ---- | M] (Ralink Technology, Corp.) -- C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry.exe
PRC - [2012/06/27 12:47:02 | 000,129,856 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
PRC - [2012/06/25 10:57:14 | 000,166,720 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2012/03/26 17:54:26 | 000,068,208 | ---- | M] (TOSHIBA) -- C:\Program Files (x86)\Mouse HScroll Application\HScrollFun.exe
PRC - [2012/03/16 15:17:12 | 000,227,280 | ---- | M] (TOSHIBA Corporation) -- C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
PRC - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2015/04/16 04:20:33 | 000,774,656 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\42668ca5c417ea0facce3297686ace7a\System.Runtime.Remoting.ni.dll
MOD - [2015/03/24 13:22:38 | 002,371,776 | ---- | M] () -- C:\Program Files (x86)\Steam\video.dll
MOD - [2015/03/24 13:22:24 | 000,702,656 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\chromehtml.dll
MOD - [2015/03/10 15:37:24 | 000,775,680 | ---- | M] () -- C:\Program Files (x86)\Steam\SDL2.dll
MOD - [2015/03/05 15:35:10 | 000,268,920 | ---- | M] () -- C:\Program Files (x86)\IObit\Start Menu 8\sqlite3.dll
MOD - [2015/03/05 15:34:16 | 000,622,880 | ---- | M] () -- C:\Program Files (x86)\IObit\Start Menu 8\ProductStatistics.dll
MOD - [2015/03/05 15:34:12 | 000,053,024 | ---- | M] () -- C:\Program Files (x86)\IObit\Start Menu 8\parseAuto.dll
MOD - [2015/03/05 15:34:08 | 000,348,960 | ---- | M] () -- C:\Program Files (x86)\IObit\Start Menu 8\madexcept_.bpl
MOD - [2015/03/05 15:34:02 | 000,050,976 | ---- | M] () -- C:\Program Files (x86)\IObit\Start Menu 8\maddisAsm_.bpl
MOD - [2015/03/05 15:33:38 | 000,180,856 | ---- | M] () -- C:\Program Files (x86)\IObit\Start Menu 8\madbasic_.bpl
MOD - [2015/02/25 10:58:34 | 034,641,288 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\libcef.dll
MOD - [2015/02/25 10:58:32 | 001,709,960 | ---- | M] () -- C:\Program Files (x86)\Steam\bin\ffmpegsumo.dll
MOD - [2014/12/02 09:29:50 | 005,002,752 | ---- | M] () -- C:\Program Files (x86)\Steam\v8.dll
MOD - [2014/12/02 09:29:34 | 001,612,800 | ---- | M] () -- C:\Program Files (x86)\Steam\icui18n.dll
MOD - [2014/12/02 09:29:34 | 001,210,368 | ---- | M] () -- C:\Program Files (x86)\Steam\icuuc.dll
MOD - [2014/12/02 06:31:16 | 002,396,672 | ---- | M] () -- C:\Program Files (x86)\Steam\libavcodec-56.dll
MOD - [2014/12/02 06:31:16 | 000,485,888 | ---- | M] () -- C:\Program Files (x86)\Steam\libswscale-3.dll
MOD - [2014/12/02 06:31:16 | 000,479,744 | ---- | M] () -- C:\Program Files (x86)\Steam\libavformat-56.dll
MOD - [2014/12/02 06:31:16 | 000,442,880 | ---- | M] () -- C:\Program Files (x86)\Steam\libavutil-54.dll
MOD - [2014/12/02 06:31:16 | 000,332,800 | ---- | M] () -- C:\Program Files (x86)\Steam\libavresample-2.dll
MOD - [2014/10/31 01:14:24 | 007,995,904 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\4976746d2f27ea6b60301a84d6c3e4be\System.ni.dll
MOD - [2014/10/31 01:14:16 | 011,500,032 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\5bd3374f05d46ba0563f44d032209f08\mscorlib.ni.dll
MOD - [2014/10/25 02:41:19 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_ja_b77a5c561934e089\System.Runtime.Remoting.resources.dll
MOD - [2014/10/25 02:41:17 | 000,348,160 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_ja_b77a5c561934e089\mscorlib.resources.dll
MOD - [2012/09/03 12:22:12 | 000,084,480 | ---- | M] () -- C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TosRASUAdapterWrapper.dll
MOD - [2011/08/05 10:22:14 | 000,043,008 | ---- | M] () -- C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TosRASUCore.dll
MOD - [2011/08/05 10:22:14 | 000,040,960 | ---- | M] () -- C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TosRASUCommon.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/02/27 07:16:37 | 000,672,024 | ---- | M] (Wacom Technology, Corp.) [Auto | Running] -- C:\Program Files\Tablet\Wacom\WTabletServicePro.exe -- (WTabletServicePro)
SRV:[b]64bit:[/b] - [2015/02/21 08:49:18 | 000,780,800 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:[b]64bit:[/b] - [2015/02/04 08:58:28 | 000,366,520 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc)
SRV:[b]64bit:[/b] - [2015/02/04 08:58:28 | 000,023,792 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2014/12/06 10:35:00 | 000,229,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2014/10/31 13:51:25 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/10/29 12:59:51 | 003,460,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:[b]64bit:[/b] - [2014/10/29 12:50:11 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:19 | 000,026,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:03 | 000,041,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:[b]64bit:[/b] - [2014/10/29 11:34:51 | 000,067,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:[b]64bit:[/b] - [2014/10/29 11:33:55 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:29:22 | 000,121,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:57:05 | 000,324,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthHFSrv.dll -- (BthHFSrv)
SRV:[b]64bit:[/b] - [2014/10/29 10:48:20 | 000,166,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
SRV:[b]64bit:[/b] - [2014/10/29 10:27:21 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:21 | 000,838,656 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:02 | 000,294,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:37 | 000,131,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:40 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2014/10/29 10:20:03 | 000,262,656 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:20 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/10/29 10:16:17 | 000,154,112 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
SRV:[b]64bit:[/b] - [2014/10/29 10:13:24 | 000,374,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:13:02 | 000,260,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:36 | 000,407,040 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:22 | 000,270,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:[b]64bit:[/b] - [2014/10/29 10:11:10 | 001,639,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:09:48 | 000,521,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GeofenceMonitorService.dll -- (lfsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:05:09 | 000,206,848 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:57:18 | 000,074,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:[b]64bit:[/b] - [2014/10/29 09:48:52 | 000,562,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
SRV:[b]64bit:[/b] - [2014/10/29 09:46:48 | 001,348,096 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:35:51 | 001,668,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
SRV:[b]64bit:[/b] - [2013/07/31 12:15:06 | 000,053,864 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo)
SRV:[b]64bit:[/b] - [2012/08/24 17:33:20 | 000,291,240 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Teco\TecoService.exe -- (TOSHIBA eco Utility Service)
SRV:[b]64bit:[/b] - [2012/07/28 09:20:44 | 000,458,152 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe -- (TPCHSrv)
SRV:[b]64bit:[/b] - [2012/04/20 14:16:12 | 000,635,104 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2009/07/28 15:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv)
SRV - [2015/05/04 00:39:19 | 002,585,376 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
SRV - [2015/04/16 08:55:15 | 000,148,080 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2015/04/15 02:17:25 | 000,268,464 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/04/14 09:36:30 | 001,080,120 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2015/03/30 15:29:00 | 002,490,216 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2015/03/30 15:25:28 | 000,417,552 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe -- (LMIGuardianSvc)
SRV - [2015/03/24 13:22:24 | 000,836,288 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2015/03/05 15:35:52 | 001,055,008 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe -- (StartMenuService)
SRV - [2015/02/18 20:11:32 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014/10/29 12:50:11 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2014/10/29 10:51:55 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2014/10/29 10:04:45 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
SRV - [2014/10/29 09:53:11 | 000,367,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GeofenceMonitorService.dll -- (lfsvc)
SRV - [2014/07/14 18:21:46 | 001,390,176 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
SRV - [2014/07/14 18:21:06 | 001,767,520 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
SRV - [2014/03/06 12:37:00 | 000,013,312 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\SMITSC.exe -- (SMITS)
SRV - [2013/12/10 10:32:50 | 000,279,000 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012/09/03 13:30:20 | 000,014,792 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\TOSHIBA\AVApplication\RASU\TosRASUService.exe -- (RASUService)
SRV - [2012/09/03 13:21:36 | 000,016,880 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\AVApplication\Engine\TAVComplementService.exe -- (TAVComplementService)
SRV - [2012/09/03 13:21:16 | 000,722,928 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVScheduler.exe -- (TAVScheduler)
SRV - [2012/08/27 13:25:14 | 000,309,432 | ---- | M] (Intercom, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe -- (LLHDClient)
SRV - [2012/08/10 11:30:42 | 000,015,360 | ---- | M] (TOSHIBA CORPORATION) [Auto | Stopped] -- C:\Program Files (x86)\TOSHIBA\OEM Registration Program\OEMRegistrationProgram.exe -- (OEMRegistrationProgram)
SRV - [2012/07/17 14:57:22 | 000,365,376 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012/07/17 14:57:20 | 000,277,824 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012/07/13 17:02:16 | 002,451,456 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe -- (IconMan_R)
SRV - [2012/07/06 18:20:54 | 001,863,680 | ---- | M] (Ralink) [Auto | Stopped] -- C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaMediaServer.exe -- (RaMediaServer)
SRV - [2012/07/04 19:10:54 | 000,447,488 | ---- | M] (Ralink Technology, Corp.) [Auto | Running] -- C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry64.exe -- (RalinkRegistryWriter64)
SRV - [2012/07/04 19:10:06 | 000,372,736 | ---- | M] (Ralink Technology, Corp.) [Auto | Running] -- C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry.exe -- (RalinkRegistryWriter)
SRV - [2012/06/27 12:47:02 | 000,129,856 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe -- (Intel(R)
SRV - [2012/06/25 10:57:14 | 000,166,720 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2012/03/16 15:17:12 | 000,227,280 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe -- (TPCHKarteSVC)
SRV - [2011/06/29 10:44:04 | 000,008,704 | ---- | M] (Intercom, Inc.) [Auto | Running] -- C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe -- (LLHDCloader)
SRV - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) [Auto | Running] -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)

  • ジョニー沢渡
  • 2015/05/13 (Wed) 06:51:44
無題
[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/04/14 09:38:00 | 000,064,216 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV:[b]64bit:[/b] - [2015/04/14 09:37:42 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2015/03/30 15:28:52 | 000,044,296 | -H-- | M] (LogMeIn Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Hamdrv.sys -- (Hamachi)
DRV:[b]64bit:[/b] - [2015/03/04 19:25:11 | 000,377,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
DRV:[b]64bit:[/b] - [2015/02/04 08:58:33 | 000,264,000 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter)
DRV:[b]64bit:[/b] - [2015/02/04 08:58:33 | 000,114,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv)
DRV:[b]64bit:[/b] - [2015/02/04 08:58:04 | 000,044,024 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot)
DRV:[b]64bit:[/b] - [2014/12/12 09:51:20 | 000,075,776 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
DRV:[b]64bit:[/b] - [2014/10/29 12:59:47 | 000,415,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
DRV:[b]64bit:[/b] - [2014/10/29 12:59:12 | 000,136,512 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
DRV:[b]64bit:[/b] - [2014/10/29 12:57:42 | 000,054,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr)
DRV:[b]64bit:[/b] - [2014/10/29 12:56:04 | 000,027,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:43 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:41 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:09 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc63.sys -- (netvsc)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:54 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:39 | 000,066,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:16 | 000,103,424 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
DRV:[b]64bit:[/b] - [2014/10/26 05:52:20 | 000,100,664 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wachidrouter.sys -- (WacHidRouter)
DRV:[b]64bit:[/b] - [2014/10/26 05:52:20 | 000,015,160 | ---- | M] (Wacom Technology) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wacomrouterfilter.sys -- (wacomrouterfilter)
DRV:[b]64bit:[/b] - [2014/10/26 05:52:20 | 000,014,136 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidkmdf.sys -- (hidkmdf)
DRV:[b]64bit:[/b] - [2014/10/15 17:32:36 | 000,921,920 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refs.sys -- (ReFS)
DRV:[b]64bit:[/b] - [2014/10/13 11:43:17 | 000,238,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2014/10/13 11:43:17 | 000,086,336 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
DRV:[b]64bit:[/b] - [2014/10/13 11:43:17 | 000,039,744 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
DRV:[b]64bit:[/b] - [2014/10/08 18:24:09 | 000,467,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
DRV:[b]64bit:[/b] - [2014/10/07 15:54:45 | 000,324,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
DRV:[b]64bit:[/b] - [2014/10/07 15:54:45 | 000,189,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UCX01000.SYS -- (UCX01000)
DRV:[b]64bit:[/b] - [2014/10/07 15:44:39 | 000,069,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
DRV:[b]64bit:[/b] - [2014/09/24 16:27:11 | 000,157,016 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\WINDOWS\SysNative\drivers\wof.sys -- (Wof)
DRV:[b]64bit:[/b] - [2014/09/24 15:58:01 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:48 | 000,175,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:47 | 000,079,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:47 | 000,057,176 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
DRV:[b]64bit:[/b] - [2014/09/24 15:57:47 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
DRV:[b]64bit:[/b] - [2014/09/24 15:29:18 | 000,037,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:[b]64bit:[/b] - [2014/08/15 09:36:55 | 000,146,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:[b]64bit:[/b] - [2013/12/12 01:10:38 | 003,881,472 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athwbx.sys -- (athr)
DRV:[b]64bit:[/b] - [2013/12/10 10:32:36 | 004,195,840 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2013/11/01 03:22:28 | 000,027,032 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tosrfec.sys -- (tosrfec)
DRV:[b]64bit:[/b] - [2013/10/18 07:41:31 | 000,039,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:[b]64bit:[/b] - [2013/10/18 07:41:31 | 000,027,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:[b]64bit:[/b] - [2013/08/22 22:25:40 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
DRV:[b]64bit:[/b] - [2013/08/22 22:25:40 | 000,030,048 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\WINDOWS\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2013/08/22 21:50:19 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
DRV:[b]64bit:[/b] - [2013/08/22 21:49:54 | 000,079,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
DRV:[b]64bit:[/b] - [2013/08/22 21:49:33 | 000,159,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:49 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:48 | 000,041,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 003,357,024 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,093,536 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:44 | 000,081,760 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3.sys -- (LSI_SAS3)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,782,176 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,108,896 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,079,200 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,114,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,082,784 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,025,952 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:34 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:33 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:32 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,107,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,072,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
DRV:[b]64bit:[/b] - [2013/08/22 21:39:15 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
DRV:[b]64bit:[/b] - [2013/08/22 21:36:12 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:31 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:58 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:48 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:39 | 000,036,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:26 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:23 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:28 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:28 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:14 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:[b]64bit:[/b] - [2013/08/22 20:36:25 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
DRV:[b]64bit:[/b] - [2013/08/22 17:46:33 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fxppm.sys -- (FxPPM)
DRV:[b]64bit:[/b] - [2013/08/13 08:25:46 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
DRV:[b]64bit:[/b] - [2013/08/10 09:39:30 | 000,651,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV)
DRV:[b]64bit:[/b] - [2013/07/31 03:47:35 | 000,024,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
DRV:[b]64bit:[/b] - [2013/07/26 04:05:39 | 000,099,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
DRV:[b]64bit:[/b] - [2013/06/18 23:44:59 | 000,129,224 | ---- | M] (Qualcomm Atheros Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C63x64.sys -- (L1C)
DRV:[b]64bit:[/b] - [2012/09/28 18:55:02 | 001,979,464 | ---- | M] (Ralink Technology Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ucag300nx.sys -- (ucag300n)
DRV:[b]64bit:[/b] - [2012/08/08 14:07:10 | 000,265,936 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tisdb3e64.sys -- (tisdb3e64)
DRV:[b]64bit:[/b] - [2012/07/31 12:28:54 | 000,028,632 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Thotkey.sys -- (Thotkey)
DRV:[b]64bit:[/b] - [2012/07/31 11:22:00 | 000,645,952 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
DRV:[b]64bit:[/b] - [2012/07/25 16:34:42 | 000,032,832 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ)
DRV:[b]64bit:[/b] - [2012/07/25 01:54:00 | 000,031,184 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (TDCMDPST)
DRV:[b]64bit:[/b] - [2012/07/21 15:59:02 | 000,016,768 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL)
DRV:[b]64bit:[/b] - [2012/07/11 15:42:30 | 000,043,944 | ---- | M] (Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
DRV:[b]64bit:[/b] - [2012/07/10 16:35:44 | 000,009,216 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\FwLnk.sys -- (FwLnk)
DRV:[b]64bit:[/b] - [2012/07/02 15:16:02 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2012/06/19 13:58:18 | 000,006,656 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hidshim.sys -- (hidshim)
DRV:[b]64bit:[/b] - [2012/06/19 13:58:12 | 000,032,256 | ---- | M] (Nuvoton Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nuvotonhidcir.sys -- (nuvotonhidcir)
DRV:[b]64bit:[/b] - [2012/06/18 10:30:56 | 000,499,096 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64)
DRV:[b]64bit:[/b] - [2012/06/15 13:50:46 | 000,315,536 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsUVStor.sys -- (RSUSBVSTOR)
DRV:[b]64bit:[/b] - [2010/03/05 20:19:00 | 000,011,296 | ---- | M] (Intercom, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\llhrcmi6.sys -- (llhrcmi6)

[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\URLSearchHook: - No CLSID value found
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-4092057093-892697119-3552624878-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-4092057093-892697119-3552624878-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages =
IE - HKU\S-1-5-21-4092057093-892697119-3552624878-1005\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-4092057093-892697119-3552624878-1005\..\SearchScopes,DefaultScope = {96A80575-3011-424E-8731-B73E844A0F13}
IE - HKU\S-1-5-21-4092057093-892697119-3552624878-1005\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-4092057093-892697119-3552624878-1005\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.countryCode: "JP"
FF - prefs.js..browser.search.region: "JP"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:37.0.2
FF - user.js - File not found

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3: C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.7: C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\wacom.com/WacomTabletPlugin: C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ncsoft.com/Plugin: C:\Program Files (x86)\NCSOFT\NCPlugin\npncllm3.dll (NCSOFT Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.co.jp/NxGame: C:\ProgramData\NexonJP\NGM\npNxGameJP.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.3: C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF - HKLM\Software\MozillaPlugins\@wacom.com/wtPlugin,version=2.1.0.7: C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF - HKLM\Software\MozillaPlugins\pmang.jp/pmangdiagnostic-1: C:\GameOn\Common files\nppmangdiagnostic.dll (gameon)
FF - HKLM\Software\MozillaPlugins\pmang.jp/pmangsupport-1: C:\GameOn\Common files\nppmangsupport.dll (gameon)
FF - HKLM\Software\MozillaPlugins\wacom.com/WacomTabletPlugin: C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF - HKCU\Software\MozillaPlugins\wacom.com/WacomTabletPlugin: C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 37.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 37.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\BingExtension\\BingSearchExtension: removed
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\BingExtension\\DSE: true

[2014/10/29 02:00:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\kakeru22\AppData\Roaming\mozilla\Extensions
[2015/05/07 10:33:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\kakeru22\AppData\Roaming\mozilla\Firefox\Profiles\t4e9qokj.default-1430705378557\extensions
[2015/05/03 11:43:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\kakeru22\AppData\Roaming\mozilla\Firefox\Profiles2w37q6o4.default\extensions
[2015/05/03 11:43:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\kakeru22\AppData\Roaming\mozilla\Firefox\Profiles2w37q6o4.default\extensions\staged
[2015/05/04 10:03:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2015/05/04 10:03:45 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

[color=#E56717]========== Chrome ==========[/color]

CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik\2.2015.506.11355_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\

O1 HOSTS File: ([2013/08/22 22:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
O2:[b]64bit:[/b] - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\WINDOWS\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [HScrollAP] C:\Program Files (x86)\Mouse HScroll Application\HScrollFun.exe (TOSHIBA)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\WINDOWS\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\WINDOWS\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [TCrdMain] C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [TecoResident] C:\Program Files\TOSHIBA\Teco\TecoResident.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TODDMain] C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [TosTogKeyMon] C:\Program Files\TOSHIBA\Hotkey\TosTogKeyMon.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TRCMan] C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe (TOSHIBA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [TSleepSrv] C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [LLHDUSER] C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe (Intercom, Inc.)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [TAVLauncher] C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe (TOSHIBA Corporation)
O4 - HKLM..\Run: [TKRTL] C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe (TOSHIBA Corporation)
O4 - HKU\S-1-5-21-4092057093-892697119-3552624878-1005..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-4092057093-892697119-3552624878-1005..\Run: [cubepdf-checker] C:\Program Files (x86)\CubePDF\cubepdf-checker.exe (株式会社キューブ・ソフト)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O9:[b]64bit:[/b] - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : SunのJavaコンソール - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O9 - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {1DC420F0-D89A-40D0-B5CC-92B9AD19A1AC} http://down.hangame.co.jp/jp/dist/hgstart/HGPluginJP28.cab (HGPluginJP28 Class)
O16 - DPF: {255A2E53-D2E3-42DA-9C1D-36B289B8E18B} http://dl.app-netgame.dmm.com/launcher/DMMLauncherAx_32.cab (DMMLauncherAx Control)
O16 - DPF: {98FFD412-1A12-4BCE-8AB2-247C78E22227} https://static.ncsoft.jp/js/login/activex/NCLoader.8.cab (NCLoaderCtl Class)
O16 - DPF: {F8160836-0C11-4CA4-AD87-944542C7BCBD} http://down.hangame.co.jp/jp/purple/launcher/PubPlugin.cab (PubPlugin Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.84.210.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4E596A9F-4828-4073-92E3-0475B4A1CACB}: DhcpNameServer = 10.84.210.1
O18:[b]64bit:[/b] - Protocol\Handler\skype4com - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\WINDOWS\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\WINDOWS\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{e31896a0-5986-11e2-be6a-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{e31896a0-5986-11e2-be6a-806e6f6e6963}\Shell\AutoRun\command - "" = "D:\setup.exe"
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/05/07 10:38:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 8
[2015/05/07 10:37:59 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\startmenu_2_1_jp
[2015/05/07 09:56:56 | 000,136,408 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys
[2015/05/07 09:56:42 | 000,107,736 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbamchameleon.sys
[2015/05/07 09:56:42 | 000,064,216 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mwac.sys
[2015/05/07 09:56:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2015/05/07 09:54:51 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\Malwarebytes
[2015/05/07 09:54:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/05/07 09:54:45 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbam.sys
[2015/05/07 09:54:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2015/05/07 09:53:41 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015/05/07 09:30:09 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\Skype
[2015/05/07 09:30:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2015/05/07 09:30:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2015/05/07 09:29:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2015/05/06 21:04:48 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\ShanghaiAlice
[2015/05/06 18:45:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\上海アリス幻樂団
[2015/05/06 18:43:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\上海アリス幻樂団
[2015/05/06 08:11:56 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\Geek Uninstaller
[2015/05/06 07:35:10 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\Roxio Log Files
[2015/05/06 07:34:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Roxio
[2015/05/06 07:34:46 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Local\Corel_Corporation
[2015/05/06 07:33:50 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Local\MediaServer
[2015/05/06 07:33:24 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Local\PowerCinema
[2015/05/06 07:30:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
[2015/05/06 06:39:12 | 000,029,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aspnet_counters.dll
[2015/05/06 06:39:11 | 000,028,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\aspnet_counters.dll
[2015/05/06 03:07:31 | 003,881,472 | ---- | C] (Qualcomm Atheros Communications, Inc.) -- C:\WINDOWS\SysNative\drivers\athwbx.sys
[2015/05/06 03:07:09 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\WinBatch
[2015/05/06 02:00:19 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\geek
[2015/05/04 11:09:42 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\Old Firefox Data
[2015/05/04 10:03:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2015/05/04 10:03:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2015/05/04 00:39:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
[2015/05/04 00:38:53 | 015,895,328 | ---- | C] (IObit) -- C:\Users\kakeru22\Desktop\iobituninstaller_4_3.exe
[2015/05/04 00:38:53 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\iobituninstaller_4_3
[2015/05/03 11:22:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Maxiget Software Manager
[2015/05/03 11:22:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2015/05/02 17:59:18 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\niwango, inc
[2015/05/02 17:59:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\niwango
[2015/05/02 17:59:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Niconico Live Encoder
[2015/04/27 18:14:29 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\SCFHDSF041
[2015/04/24 06:54:31 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Local\ShdUpdate
[2015/04/24 06:54:31 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Local\RtbSync
[2015/04/21 03:58:31 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\新しいフォルダー
[2015/04/21 03:53:46 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\全詰め合わせ
[2015/04/21 03:53:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lhaca
[2015/04/21 03:53:11 | 000,000,000 | ---D | C] -- C:\Program Files\Lhaca
[2015/04/21 03:20:31 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\.swt
[2015/04/21 03:19:59 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\jinro_SE
[2015/04/19 03:01:38 | 001,706,984 | ---- | C] (GameOn) -- C:\WINDOWS\PmangDownloader.exe
[2015/04/19 03:01:17 | 000,000,000 | ---D | C] -- C:\GameOn
[2015/04/15 03:49:49 | 002,373,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wucltux.dll
[2015/04/15 03:49:49 | 000,891,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapi.dll
[2015/04/15 03:49:49 | 000,721,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapi.dll
[2015/04/15 03:49:49 | 000,267,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinSetupUI.dll
[2015/04/15 03:49:49 | 000,133,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2015/04/15 03:49:49 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups.dll
[2015/04/15 03:49:49 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wu.upgrade.ps.dll
[2015/04/15 03:49:48 | 000,408,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUSettingsProvider.dll
[2015/04/15 03:49:48 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storewuauth.dll
[2015/04/15 03:49:48 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuwebv.dll
[2015/04/15 03:49:48 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wudriver.dll
[2015/04/15 03:49:48 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wups2.dll
[2015/04/15 03:49:48 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wups.dll
[2015/04/15 03:49:47 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuwebv.dll
[2015/04/15 03:49:47 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wudriver.dll
[2015/04/15 03:49:47 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuapp.exe
[2015/04/15 03:49:47 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wuapp.exe
[2015/04/15 03:49:12 | 007,476,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2015/04/15 03:49:12 | 001,733,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntdll.dll
[2015/04/15 03:49:12 | 000,950,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tdh.dll
[2015/04/15 03:49:11 | 000,749,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tdh.dll
[2015/04/15 03:49:11 | 000,411,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tracerpt.exe
[2015/04/15 03:49:11 | 000,360,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sechost.dll
[2015/04/15 03:49:11 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wow64.dll
[2015/04/15 03:49:11 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\microsoft-windows-system-events.dll
[2015/04/15 03:49:10 | 000,369,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tracerpt.exe
[2015/04/15 03:49:10 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wow64cpu.dll
[2015/04/15 03:49:02 | 001,385,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctf.dll
[2015/04/15 03:49:01 | 000,377,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\clfs.sys
[2015/04/15 03:49:00 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clfsw32.dll
[2015/04/15 03:49:00 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clfsw32.dll
[2015/04/15 03:48:59 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsm.dll
[2015/04/15 03:48:54 | 006,025,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2015/04/15 03:48:51 | 000,720,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ie4uinit.exe
[2015/04/15 03:48:50 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mshtmled.dll
[2015/04/15 03:48:48 | 000,816,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript.dll
[2015/04/15 03:48:48 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msfeeds.dll
[2015/04/15 03:48:48 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2015/04/15 03:48:47 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\jscript.dll
[2015/04/15 03:48:46 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieapfltr.dll
[2015/04/15 03:48:45 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieapfltr.dll
[2015/04/15 03:47:47 | 001,111,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aeinv.dll
[2015/04/15 03:47:46 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\generaltel.dll
[2015/04/15 03:47:45 | 000,957,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appraiser.dll
[2015/04/15 03:47:45 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\acmigration.dll
[2015/04/15 03:47:44 | 000,769,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\invagent.dll
[2015/04/15 03:47:44 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aepdu.dll
[2015/04/15 03:47:43 | 000,419,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\devinv.dll
[2015/04/13 07:18:56 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\MikuMikuDance_v926
[2015/04/13 07:17:00 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\ブルーマグノリア
[2015/04/13 07:06:54 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\MikuMikuDance_v2.02
[2015/04/13 06:55:13 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\キャッパワイヤくん
[2015/04/13 06:33:51 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\bON
[2015/04/13 06:20:28 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\Desktop\PMDEditor_0100b
[2015/04/13 05:02:31 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\Metasequoia
[2015/04/13 05:01:32 | 000,000,000 | ---D | C] -- C:\Users\kakeru22\AppData\Roaming\MetasequoiaLE
[2015/04/13 04:58:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Metasequoia Ver3.1
[2015/04/13 04:58:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Metaseq31
[2015/04/13 04:56:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetasequoiaLE R3.0
[2015/04/13 04:56:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MetaseqLE30
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]
  • ジョニー沢渡
  • 2015/05/13 (Wed) 06:53:11
無題
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/05/09 23:29:00 | 000,000,712 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2015/05/09 23:17:00 | 000,000,626 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2015/05/09 15:31:51 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2015/05/08 20:54:03 | 000,003,418 | -H-- | M] () -- C:\Users\kakeru22\Desktop\PettyCamera.ini
[2015/05/07 12:14:54 | 000,136,408 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys
[2015/05/07 12:11:51 | 000,000,708 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2015/05/07 12:10:41 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2015/05/07 12:10:40 | 2479,869,951 | -HS- | M] () -- C:\hiberfil.sys
[2015/05/07 10:38:24 | 000,001,306 | ---- | M] () -- C:\Users\Public\Desktop\Start Menu 8.lnk
[2015/05/07 10:33:08 | 000,001,327 | ---- | M] () -- C:\Users\kakeru22\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/05/07 10:33:08 | 000,001,303 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2015/05/07 10:33:08 | 000,001,044 | ---- | M] () -- C:\Users\Public\Desktop\WarThunder.lnk
[2015/05/07 10:33:08 | 000,000,956 | ---- | M] () -- C:\Users\kakeru22\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2015/05/07 09:57:35 | 000,001,125 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/05/07 09:30:01 | 000,002,697 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2015/05/06 18:45:19 | 000,001,166 | ---- | M] () -- C:\Users\kakeru22\Desktop\弾幕アマノジャク.lnk
[2015/05/06 07:27:00 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\Uninstaller_SkipUac_kakeru22.job
[2015/05/06 03:21:25 | 000,001,084 | ---- | M] () -- C:\Users\Public\Desktop\Desktop Assist.lnk
[2015/05/06 02:58:29 | 000,431,816 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT
[2015/05/04 11:21:02 | 000,000,845 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/05/04 10:03:49 | 000,001,170 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2015/05/04 10:02:55 | 000,001,731 | ---- | M] () -- C:\Users\Public\Desktop\Reimage Repair のインストールを続行する.lnk
[2015/05/04 00:39:26 | 000,001,255 | ---- | M] () -- C:\Users\Public\Desktop\IObit Uninstaller.lnk
[2015/05/03 12:00:07 | 000,003,003 | ---- | M] () -- C:\Users\kakeru22\Desktop\Reimage2.lnk
[2015/05/03 11:49:21 | 000,001,367 | ---- | M] () -- C:\WINDOWS\SysWow64\SetupComponents.exe
[2015/05/03 11:49:11 | 000,000,004 | ---- | M] () -- C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7
[2015/05/03 11:43:01 | 000,002,125 | ---- | M] () -- C:\Users\kakeru22\Desktop\Continue GamesDesktop Uninstaller.lnk
[2015/05/02 17:59:08 | 000,002,012 | ---- | M] () -- C:\Users\Public\Desktop\Niconico Live Encoder.lnk
[2015/04/21 03:53:13 | 000,000,805 | ---- | M] () -- C:\Users\Public\Desktop\+Lhaca.lnk
[2015/04/21 03:53:13 | 000,000,361 | ---- | M] () -- C:\WINDOWS\Lhaca.ini
[2015/04/19 21:20:16 | 000,005,872 | ---- | M] () -- C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA
[2015/04/19 03:19:03 | 000,000,183 | ---- | M] () -- C:\Users\Public\Desktop\Alliance of Valiant Arms.url
[2015/04/17 10:06:18 | 015,895,328 | ---- | M] (IObit) -- C:\Users\kakeru22\Desktop\iobituninstaller_4_3.exe
[2015/04/15 03:47:35 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuaext.dll
[2015/04/14 09:38:00 | 000,064,216 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mwac.sys
[2015/04/14 09:37:46 | 000,107,736 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbamchameleon.sys
[2015/04/14 09:37:42 | 000,025,816 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mbam.sys
[2015/04/14 08:24:21 | 000,792,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
[2015/04/14 08:24:21 | 000,178,168 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
[2015/04/13 06:52:22 | 000,011,877 | ---- | M] () -- C:\Users\kakeru22\Desktop\キャッパワイヤくん.pmx
[2015/04/13 06:16:17 | 000,016,747 | ---- | M] () -- C:\Users\kakeru22\Desktop\キャッパワイヤくん.x
[2015/04/13 06:13:50 | 000,016,262 | ---- | M] () -- C:\Users\kakeru22\Desktop\キャッパワイヤ.mqo
[2015/04/13 04:58:34 | 000,001,030 | ---- | M] () -- C:\Users\Public\Desktop\Metasequoia.lnk
[2015/04/13 04:57:15 | 000,001,044 | ---- | M] () -- C:\Users\Public\Desktop\MetasequoiaLE R3.0.lnk
[2015/04/11 02:15:04 | 000,001,201 | ---- | M] () -- C:\Users\Public\Desktop\CloudAlpaca.lnk
[2015/04/11 01:42:51 | 000,001,203 | ---- | M] () -- C:\Users\Public\Desktop\FireAlpaca.lnk
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\*.tmp files -> C:\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/05/07 10:38:24 | 000,001,306 | ---- | C] () -- C:\Users\Public\Desktop\Start Menu 8.lnk
[2015/05/07 09:54:49 | 000,001,125 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/05/07 09:30:01 | 000,002,697 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2015/05/06 18:45:19 | 000,001,166 | ---- | C] () -- C:\Users\kakeru22\Desktop\弾幕アマノジャク.lnk
[2015/05/06 03:21:25 | 000,001,084 | ---- | C] () -- C:\Users\Public\Desktop\Desktop Assist.lnk
[2015/05/06 03:20:08 | 000,053,760 | ---- | C] () -- C:\WINDOWS\SysWow64\svccontrol.exe
[2015/05/06 03:20:08 | 000,051,712 | ---- | C] () -- C:\WINDOWS\SysWow64\svcconfig.exe
[2015/05/06 03:20:08 | 000,013,312 | ---- | C] () -- C:\WINDOWS\SysWow64\SMITSC.exe
[2015/05/04 11:21:02 | 000,000,845 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/05/04 10:03:49 | 000,001,182 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2015/05/04 10:03:49 | 000,001,170 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2015/05/04 10:02:55 | 000,001,731 | ---- | C] () -- C:\Users\Public\Desktop\Reimage Repair のインストールを続行する.lnk
[2015/05/04 00:39:26 | 000,001,255 | ---- | C] () -- C:\Users\Public\Desktop\IObit Uninstaller.lnk
[2015/05/03 12:00:07 | 000,003,003 | ---- | C] () -- C:\Users\kakeru22\Desktop\Reimage2.lnk
[2015/05/03 11:49:21 | 000,001,367 | ---- | C] () -- C:\WINDOWS\SysWow64\SetupComponents.exe
[2015/05/03 11:43:43 | 000,000,004 | ---- | C] () -- C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7
[2015/05/03 11:43:01 | 000,002,125 | ---- | C] () -- C:\Users\kakeru22\Desktop\Continue GamesDesktop Uninstaller.lnk
[2015/05/02 17:59:08 | 000,002,012 | ---- | C] () -- C:\Users\Public\Desktop\Niconico Live Encoder.lnk
[2015/04/21 03:53:13 | 000,000,805 | ---- | C] () -- C:\Users\Public\Desktop\+Lhaca.lnk
[2015/04/21 03:53:13 | 000,000,361 | ---- | C] () -- C:\WINDOWS\Lhaca.ini
[2015/04/19 21:20:16 | 000,005,872 | ---- | C] () -- C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA
[2015/04/19 03:19:02 | 000,000,183 | ---- | C] () -- C:\Users\Public\Desktop\Alliance of Valiant Arms.url
[2015/04/15 03:48:45 | 000,016,303 | ---- | C] () -- C:\WINDOWS\SysWow64\ieuinit.inf
[2015/04/15 03:48:45 | 000,016,303 | ---- | C] () -- C:\WINDOWS\SysNative\ieuinit.inf
[2015/04/13 06:59:00 | 000,011,877 | ---- | C] () -- C:\Users\kakeru22\Desktop\キャッパワイヤくん.pmx
[2015/04/13 06:15:41 | 000,016,747 | ---- | C] () -- C:\Users\kakeru22\Desktop\キャッパワイヤくん.x
[2015/04/13 06:13:50 | 000,016,262 | ---- | C] () -- C:\Users\kakeru22\Desktop\キャッパワイヤ.mqo
[2015/04/13 04:58:34 | 000,001,030 | ---- | C] () -- C:\Users\Public\Desktop\Metasequoia.lnk
[2015/04/13 04:56:55 | 000,001,044 | ---- | C] () -- C:\Users\Public\Desktop\MetasequoiaLE R3.0.lnk
[2015/03/12 02:15:21 | 000,107,008 | ---- | C] () -- C:\WINDOWS\SysWow64\OEMLicense.dll
[2015/03/12 02:13:40 | 000,046,080 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2015/03/09 05:33:04 | 000,000,099 | ---- | C] () -- C:\Users\kakeru22\AppData\Roaming\LauncherSettings_live.cfg
[2015/03/09 05:08:10 | 000,000,039 | ---- | C] () -- C:\Users\kakeru22\AppData\Roaming\TheHunterSettings_steam_live.cfg
[2014/10/25 10:06:00 | 000,000,242 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014/09/24 15:58:21 | 000,002,255 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2014/06/02 00:09:36 | 000,280,904 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrB.exe
[2014/06/02 00:09:35 | 000,075,136 | ---- | C] () -- C:\WINDOWS\SysWow64\PnkBstrA.exe
[2014/03/18 14:19:14 | 000,172,032 | ---- | C] () -- C:\WINDOWS\lame_enc.dll
[2014/02/11 07:12:16 | 000,014,119 | ---- | C] () -- C:\WINDOWS\SysWow64\RaCoInst.dat
[2014/02/11 07:12:13 | 000,792,416 | ---- | C] () -- C:\WINDOWS\SysWow64\DiagFunc.dll
[2014/02/11 07:12:13 | 000,000,451 | ---- | C] () -- C:\WINDOWS\SysWow64\DiagFunc.ini
[2013/12/10 10:32:36 | 000,317,440 | ---- | C] () -- C:\WINDOWS\SysWow64\igdmd32.dll
[2013/12/10 10:32:30 | 000,182,272 | ---- | C] () -- C:\WINDOWS\SysWow64\igdde32.dll
[2013/12/10 10:32:30 | 000,142,848 | ---- | C] () -- C:\WINDOWS\SysWow64\igdail32.dll
[2013/12/04 20:22:11 | 000,006,388 | ---- | C] () -- C:\WINDOWS\UN900120.INI
[2013/12/04 19:51:57 | 000,000,993 | ---- | C] () -- C:\WINDOWS\UN900119.INI
[2013/08/23 00:36:43 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2013/08/23 00:36:42 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2013/08/22 23:46:23 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2013/08/22 16:01:23 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
[2013/08/22 08:55:20 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2013/08/22 08:52:39 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2015/03/09 02:57:09 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 02:40:58 | 022,291,584 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 02:34:06 | 019,731,824 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2014/10/29 10:19:43 | 001,013,760 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2014/10/29 09:59:23 | 000,786,944 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2014/10/29 10:16:01 | 000,512,512 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/05/09 23:17:00 | 000,000,626 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2015/05/07 12:11:51 | 000,000,708 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2015/05/09 23:29:00 | 000,000,712 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2015/05/06 07:27:00 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\Uninstaller_SkipUac_kakeru22.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: ST2000DL003-9VT166
Partitions: 6
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 450.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: GPT: System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 260.00MB
Starting Offset: 472907776
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: GPT: Basic Data
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 1,796.00GB
Starting Offset: 879755264
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 456.00MB
Starting Offset: 1929075752960
Hidden sectors: 0


DeviceID: Disk #0, Partition #4
PartitionType: GPT: Basic Data
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 50.00GB
Starting Offset: 1929553903616
Hidden sectors: 0


DeviceID: Disk #0, Partition #5
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 16.00GB
Starting Offset: 1983240994816
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2014/10/29 11:42:20 | 000,214,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:44:33 | 000,110,080 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2014/10/29 10:21:02 | 000,096,768 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:34 | 000,933,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:40 | 000,845,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:40 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV - [2014/10/29 10:01:27 | 000,046,592 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:28 | 000,516,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2014/10/29 09:55:10 | 000,367,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:50 | 000,135,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2014/10/29 10:27:24 | 000,131,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:29 | 000,817,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:06 | 000,365,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2014/10/29 10:05:58 | 000,292,864 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:41 | 000,252,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2014/10/29 10:14:35 | 000,110,592 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (Eaphost)
SRV:[b]64bit:[/b] - [2014/10/29 11:44:23 | 000,033,792 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2014/10/29 10:59:46 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2014/10/29 10:07:58 | 000,452,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2014/10/29 10:08:58 | 000,397,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2014/10/29 10:01:45 | 000,706,048 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:44 | 000,071,168 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2014/10/29 09:51:03 | 000,266,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:20 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 10:41:58 | 000,391,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:16 | 000,028,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2014/10/29 11:45:24 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2014/10/29 09:54:15 | 000,827,392 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
No service found with a name of ProtectedStorage
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2014/10/29 11:34:42 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2014/10/29 09:59:21 | 000,542,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:29 | 000,817,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:25 | 000,031,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2014/10/29 12:51:48 | 000,047,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2014/10/29 09:56:06 | 000,146,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:18:49 | 000,329,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2014/10/29 10:04:06 | 000,640,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2014/10/29 09:49:09 | 000,576,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2014/10/29 09:52:52 | 001,265,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2014/10/29 11:12:14 | 000,313,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2014/10/29 10:34:59 | 000,254,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:29 | 000,059,392 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/09 10:50:34 | 000,225,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:59:28 | 001,454,080 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2014/10/29 10:02:48 | 000,911,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (Audiosrv)
SRV:[b]64bit:[/b] - [2014/12/06 10:35:00 | 000,229,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
No service found with a name of SDRSVC
SRV:[b]64bit:[/b] - [2015/02/04 08:58:28 | 000,023,792 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2014/10/29 10:16:27 | 001,696,256 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (EventLog)
SRV:[b]64bit:[/b] - [2014/10/29 10:02:44 | 000,880,640 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:59:24 | 000,670,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:35:14 | 000,064,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\msiexec.exe -- (msiserver)
SRV - [2014/10/29 10:52:53 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2014/10/29 10:18:13 | 000,230,400 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2015/03/14 09:22:58 | 003,678,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2014/10/29 10:53:17 | 000,262,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2014/10/29 10:03:56 | 001,547,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (WlanSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:29 | 000,289,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

< End of report >
  • ジョニー沢渡
  • 2015/05/13 (Wed) 06:54:14
OTLで続きの掃除を
こんばんは。
今夜も遅くなりました。

OTLのスキャンログも見せていただきました。
では早速作業にかかりましょう。
今度はOTLでの処置になります。
このレスの最後にスクリプトを貼っておくので、それを丸ごとコピーして、それをWindowsのメモ帳ファイルに貼り付けて保存しておいてください。

用意できたらPCをまたセーフモードで再起動してOTL起動してください。
起動したらOTLのウインドウ下部にスクリプトを貼り付けて、今度は「Run fix」(赤字のボタン)を押してください。
これでOTLでの処置が開始されます。

しばらく待って処置ができたらPCを通常モードで再起動すると、またOTLのログが出るはずなので、それを保存してから、しばらく様子見の後、OTLのログとともに状態報告をレスください。
OTLのスクリプトは以下になります。破線(-----)を含まない箇所を丸ごとコピーして、それをOTLに貼って作業してください
------------------------------------------
:OTL
IE - HKU\S-1-5-21-4092057093-892697119-3552624878-1005\..\SearchScopes,DefaultScope = {96A80575-3011-424E-8731-B73E844A0F13}
CHR - Extension: No name found = C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\
[2015/05/03 12:00:07 | 000,003,003 | ---- | M] () -- C:\Users\kakeru22\Desktop\Reimage2.lnk
[2015/05/03 11:49:11 | 000,000,004 | ---- | M] () -- C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7
[2015/04/19 21:20:16 | 000,005,872 | ---- | M] () -- C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA
[2015/05/04 10:02:55 | 000,001,731 | ---- | C] () -- C:\Users\Public\Desktop\Reimage Repair のインストールを続行する.lnk
[2015/05/03 12:00:07 | 000,003,003 | ---- | C] () -- C:\Users\kakeru22\Desktop\Reimage2.lnk
[2015/05/03 11:43:43 | 000,000,004 | ---- | C] () -- C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7
[2015/04/19 21:20:16 | 000,005,872 | ---- | C] () -- C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA

:Files
C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
C:\Users\kakeru22\Desktop\Reimage2.lnk
C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7
C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA
C:\Users\Public\Desktop\Reimage Repair のインストールを続行する.lnk
C:\Users\kakeru22\Desktop\Reimage2.lnk
C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7
C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------------------------------------------
  • 悪代官
  • 2015/05/13 (Wed) 22:19:13
無題
OTLのログになります。
PCは大変調子が良いです。

All processes killed
========== OTL ==========
HKEY_USERS\S-1-5-21-4092057093-892697119-3552624878-1005\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\_platform_specific\x86-64_ja folder moved successfully.
C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\_platform_specific folder moved successfully.
C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\_metadata folder moved successfully.
C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\audio folder moved successfully.
C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0 folder moved successfully.
C:\Users\kakeru22\Desktop\Reimage2.lnk moved successfully.
C:\Windows\SysWOW64\029B560A371F4E00AB32838EBC01B9E7 moved successfully.
C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA moved successfully.
C:\Users\Public\Desktop\Reimage Repair のインストールを続行する.lnk moved successfully.
File C:\Users\kakeru22\Desktop\Reimage2.lnk not found.
File C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7 not found.
File C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA not found.
========== FILES ==========
C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg folder moved successfully.
File\Folder C:\Users\kakeru22\Desktop\Reimage2.lnk not found.
File\Folder C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7 not found.
File\Folder C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA not found.
File\Folder C:\Users\Public\Desktop\Reimage Repair のインストールを続行する.lnk not found.
File\Folder C:\Users\kakeru22\Desktop\Reimage2.lnk not found.
File\Folder C:\WINDOWS\SysWow64\029B560A371F4E00AB32838EBC01B9E7 not found.
File\Folder C:\Users\kakeru22\AppData\Roaming\tYKl8B7ZakexRrO12E3gA not found.
========== COMMANDS ==========
C:\WINDOWS\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56478 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default.migrated

User: kakeru22
->Temp folder emptied: 478416418 bytes
->Temporary Internet Files folder emptied: 50721862 bytes
->Java cache emptied: 355057 bytes
->FireFox cache emptied: 367207271 bytes
->Google Chrome cache emptied: 8454119 bytes
->Flash cache emptied: 336577 bytes

User: Public

%systemdrive% .tmp files removed: 22 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 168635231 bytes
RecycleBin emptied: 65443 bytes

Total Files Cleaned = 1,024.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 05172015_144715

Files\Folders moved on Reboot...
C:\Users\kakeru22\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • ジョニー沢渡
  • 2015/05/21 (Thu) 01:54:31
ログから全体の確認を
おはようございます。

>PCは大変調子が良いです。

はい、ログでもいいみたいですね。OTLで処置できるものはできています。
ではOTLも準備時の説明に沿って片付けたら、ここでログから全体の再確認です。
またCCで各タブのログとインストール情報ログと、HJTのログをとり直して、それをレスで見せてください。
CCでは「コンテキストメニュー」タブのログも見せてください
  • 悪代官
  • 2015/05/21 (Thu) 06:45:05
無題
どうも。こちらログとなります。

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:50:19, on 2015/05/25
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)

FIREFOX: 38.0.1 (x86 ja)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
C:\Users\kakeru22\Desktop\PettyCamera.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
C:\Users\kakeru22\Downloads\HijackThis(1).exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TKRTL] "C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe" -h
O4 - HKLM\..\Run: [TAVLauncher] C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [cubepdf-checker] "C:\Program Files (x86)\CubePDF\cubepdf-checker.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_Plugin.exe -update plugin
O4 - Global Startup: クライアントユーティリティ.lnk = C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: SunのJavaコンソール - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {1DC420F0-D89A-40D0-B5CC-92B9AD19A1AC} (HGPluginJP28 Class) - http://down.hangame.co.jp/jp/dist/hgstart/HGPluginJP28.cab
O16 - DPF: {255A2E53-D2E3-42DA-9C1D-36B289B8E18B} (DMMLauncherAx Control) - http://dl.app-netgame.dmm.com/launcher/DMMLauncherAx_32.cab
O16 - DPF: {98FFD412-1A12-4BCE-8AB2-247C78E22227} (NCLoaderCtl Class) - https://static.ncsoft.jp/js/login/activex/NCLoader.8.cab
O16 - DPF: {F8160836-0C11-4CA4-AD87-944542C7BCBD} (PubPlugin Class) - http://down.hangame.co.jp/jp/purple/launcher/PubPlugin.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Video Camera Checkout (lydeteku) - Unknown owner - (no file)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OEMRegistrationProgram - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\OEM Registration Program\OEMRegistrationProgram.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: RalinkRegistryWriter - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry.exe
O23 - Service: RalinkRegistryWriter64 - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry64.exe
O23 - Service: Ralink UPnP Media Server (RaMediaServer) - Ralink - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaMediaServer.exe
O23 - Service: RASUService - Unknown owner - C:\Program Files (x86)\TOSHIBA\AVApplication\RASU\TosRASUService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SMITS - Unknown owner - C:\Windows\SysWOW64\SMITSC.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartMenu8 Service (StartMenuService) - IObit - C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Qosmio AV Center Complement Service (TAVComplementService) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Engine\TAVComplementService.exe
O23 - Service: Qosmio AV Center Scheduler Service (TAVScheduler) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVScheduler.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Teco\TecoService.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe

--
End of file - 12267 bytes



CC

インストール情報
+Lhaca 2015/04/21
Adobe AIR Adobe Systems Incorporated 2014/10/25 3.3.0.3650
Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/04/15 6.00 MB 17.0.0.169
Alliance of Valiant Arms 株式会社ゲームオン 2015/04/19 287
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2013/01/08 2.1.0.6
Atheros Driver Installation Program Atheros 2015/05/06 10.0
CCleaner Piriform 2015/05/04 5.05
CloudAlpaca 1.4.3 Medibang 2015/04/11 156 MB 1.4.3
Common GameOn 2015/04/19 34939144
comono ImageViewer SaradaHouse 2013/10/27 1.00 MB 1.6.1
Corel VideoStudio X5 Corel Corporation 2014/10/25 609 MB 15.0.1.26
CubePDF 1.0.0RC7 CubeSoft 2014/05/13 24.8 MB
DigiBookBrowser Version 1.5.1.4 TriWorks Corp.JAPAN 2012/09/20 8.47 MB 1.5.1.4
dynabookランチャー用バナー 2014/10/25
FireAlpaca 1.3.0 firealpaca.com 2015/05/24 35.6 MB 1.3.0
Google Chrome Google Inc. 2014/03/26 43.0.2357.65
Hangame 2014/10/25
Hawken Meteor Entertainment 2014/10/25 2.79 GB
Hounds DMM 2014/02/15 1.0.0
Intel(R) Management Engine Components Intel Corporation 2013/08/23 8.1.0.1252
Intel(R) Processor Graphics Intel Corporation 2014/10/24 10.18.10.3345
Intel(R) Rapid Storage Technology Intel Corporation 2015/05/06 11.5.2.1001
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2014/10/25 2.0.0.37149
IObit Uninstaller IObit 2015/05/04 4.3.0.118
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2014/10/25 2.00
Left 4 Dead 2 Valve 2014/10/25
Logitecクライアントユーティリィティ Logitec 2014/02/11 1.5.21.0
LogMeIn Hamachi LogMeIn, Inc. 2015/04/01 2.2.0.328
Malwarebytes Anti-Malware バージョン 2.1.6.1022 Malwarebytes Corporation 2015/05/07 57.6 MB 2.1.6.1022
Metasequoia Ver3.1 2015/04/13
MetasequoiaLE R3.0 2015/04/13
Microsoft Office Home and Business 2010 Microsoft Corporation 2015/05/12 14.0.7015.1000
Microsoft SQL Server 2008 R2 Microsoft Corporation 2014/10/25
Microsoft SQL Server 2008 R2 Native Client Microsoft Corporation 2013/01/08 9.00 MB 10.51.2500.0
Microsoft SQL Server 2008 R2 Setup (日本語) Microsoft Corporation 2013/01/08 43.7 MB 10.51.2500.0
Microsoft SQL Server 2008 セットアップ サポート ファイル Microsoft Corporation 2013/01/08 34.6 MB 10.1.2731.0
Microsoft SQL Server Browser Microsoft Corporation 2013/01/08 8.53 MB 10.51.2500.0
Microsoft SQL Server VSS Writer Microsoft Corporation 2013/01/08 7.66 MB 10.51.2500.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2015/05/06 4.84 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2013/01/08 7.10 MB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2014/01/23 13.2 MB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/09/20 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/09/20 10.1 MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2014/01/23 10.1 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/05/12 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/05/12 13.8 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 Microsoft Corporation 2015/05/06 20.4 MB 11.0.50727.1
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 Microsoft Corporation 2015/05/06 17.3 MB 11.0.50727.1
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 2015/05/03 17.1 MB 12.0.21005.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/05/12 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/05/12 10.0.50903
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/03/04 9.44 MB 4.0.20823.0
mine2000 ver2.2.1 mine2000 project 2013/12/17 2.44 MB 2.2.1
Mozilla Firefox 38.0.1 (x86 ja) Mozilla 2015/05/17 82.4 MB 38.0.1
Mozilla Maintenance Service Mozilla 2015/05/04 247 KB 37.0.2
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/08/24 2.90 MB 4.30.2117.0
NCLauncher (NCSOFT) NCSOFT 2014/10/25
Niconico Live Encoder niwango, inc. 2015/05/02 2.0.4
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 8.60.5001
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 2.84 MB 8.60.5001
NVIDIA PhysX NVIDIA Corporation 2013/10/13 78.9 MB 9.10.0513
OEM Registration Program TOSHIBA CORPORATION 2013/01/08 516 KB 1.0.0
Origin Electronic Arts, Inc. 2014/10/25 9.4.7.2799
PCあんしん点検ユーティリティ TOSHIBA Corporation 2013/01/08 1.49 MB 1.1.5.0
PlayReady PC Runtime x86 Microsoft Corporation 2012/09/20 1.65 MB 1.3.0
Pmangインストールマネージャー GameOn,Pmang 2015/04/19 1.0.1.1
PunkBuster Services Even Balance, Inc. 2014/10/25 0.991
Qosmio AV Center Toshiba Corporation 2013/01/08 8.0.1.1
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/10/25 6.0.1.6690
Realtek USB 2.0 Card Reader Realtek Semiconductor Corp. 2013/01/08 6.1.8400.39030
Skype Click to Call Microsoft Corporation 2015/05/07 12.9 MB 7.3.16540.9015
Skype(TM) 7.4 Skype Technologies S.A. 2015/05/07 48.8 MB 7.4.102
SPECIAL FORCE 2 NHN PlayArt Corp. 2014/10/25 5.32 GB 1.0.0.0
Start Menu 8 IObit 2015/05/07 31.1 MB 2.1.0
Steam Valve Corporation 2014/10/25
Team Fortress 2 Valve 2014/10/25
theHunter Expansive Worlds 2015/03/09
TOSHIBA Active Display Off Toshiba Corporation 2013/01/08 17.0 MB 1.0.3.0
TOSHIBA Blu-ray Disc Player Toshiba Corporation 2013/01/08 79.4 MB 1.0.5.207
TOSHIBA Desktop Apps Menu Toshiba Corporation 2015/05/06 596 KB 1.02.01.6407
TOSHIBA eco Utility Toshiba Corporation 2013/01/08 20.3 MB 2.0.0.6415
TOSHIBA Function Key Toshiba Corporation 2013/01/08 32.0 MB 1.00.6625.6402
TOSHIBA Manual TOSHIBA CORPORATION 2013/01/08 27.8 MB 0127.03.3001
TOSHIBA PalaDouga TOSHIBA CORPORATION 2012/09/20 394 MB 2012.0301.0003
TOSHIBA Password Utility TOSHIBA Corporation 2012/09/20 3.36 MB v1.0.0.10
TOSHIBA PC Health Monitor Toshiba Corporation 2013/01/08 44.2 MB 1.8.17.640104
TOSHIBA Recovery Media Creator Toshiba Corporation 2012/09/20 2.2.0.54043005
TOSHIBA Remote Control Manager TOSHIBA CORPORATION 2013/01/08 3.0.1014.2
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2013/01/08 1.2.2.00
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2013/01/08 1.00.5.52-B
TOSHIBA Service Station Toshiba Corporation 2015/05/06 2.82 MB 2.6.8
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2013/01/08 65.0 MB 1.5.1.7
TOSHIBA System Driver Toshiba Corporation 2013/01/08 5.51 MB 1.00.0013
TOSHIBA System Settings Toshiba Corporation 2013/01/08 10.9 MB 1.00.0002.32002
TOSHIBA Wireless Mouse HScroll Application TOSHIBA 2013/01/08 1.0.0.120326
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2014/10/27 40.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2014/10/27 11.5 MB 15.0.1215
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/04/22 17.0 KB 16.0.1016.1
War Thunder Launcher 1.0.1.467 Gaijin Entertainment 2015/01/01 8.01 GB
WebTablet FB Plugin 32 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
WebTablet FB Plugin 64 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
Windows Media Encoder 9 Series 2014/10/25
World of Tanks Wargaming.net 2013/09/22 16.4 MB
デザインドール Terawell 2014/03/04 42.2 MB 5.6
ワコム タブレット Wacom Technology Corp. 2015/03/16 6.3.11-4
幻想人形演舞 FocasLens 2015/01/14 262 MB
弾幕アマノジャク ver 1.00a 2015/05/06 258 MB
東方深秘録 Ver1.02b 黄昏フロンティア 2015/05/21 16.7 MB

Windows
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run cubepdf-checker 株式会社キューブ・ソフト "C:\Program Files (x86)\CubePDF\cubepdf-checker.exe"
有効 HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
有効 HKCU:RunOnce FlashPlayerUpdate Adobe Systems Incorporated C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_Plugin.exe -update plugin
有効 HKLM:Run HotKeysCmds Intel Corporation "C:\WINDOWS\system32\hkcmd.exe"
有効 HKLM:Run HScrollAP TOSHIBA C:\Program Files (x86)\Mouse HScroll Application\HScrollFun.exe
有効 HKLM:Run IgfxTray Intel Corporation "C:\WINDOWS\system32\igfxtray.exe"
有効 HKLM:Run LLHDUSER Intercom, Inc. "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
有効 HKLM:Run LogMeIn Hamachi Ui LogMeIn Inc. "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
有効 HKLM:Run Persistence Intel Corporation "C:\WINDOWS\system32\igfxpers.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run TAVLauncher TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
有効 HKLM:Run TCrdMain TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Hotkey\TCrdMain_Win8.exe
有効 HKLM:Run TecoResident TOSHIBA Corporation C:\Program Files\TOSHIBA\Teco\TecoResident.exe
無効 HKLM:Run TKRTL TOSHIBA Corporation "C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe" -h
有効 HKLM:Run TODDMain TOSHIBA CORPORATION C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe
有効 HKLM:Run TosTogKeyMon TOSHIBA Corporation %ProgramFiles%\TOSHIBA\Hotkey\TosTogKeyMon.exe /4
有効 HKLM:Run TosWaitSrv TOSHIBA Corporation %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
有効 HKLM:Run TRCMan TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
有効 HKLM:Run TSleepSrv TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
有効 Startup Common クライアントユーティリティ.lnk Ralink Technology, Corp. C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe

IE
無効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
無効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
無効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
無効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
有効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

FX
有効 Plugin Google Update 1.3.27.5 Google Inc. default-1430705378557 Firefox 38.0.1 C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll
有効 Plugin Intel® Identity Protection Technology 2.1.42.0 Intel Corporation default-1430705378557 Firefox 38.0.1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
有効 Plugin Intel® Identity Protection Technology 2.1.42.0 Intel Corporation default-1430705378557 Firefox 38.0.1 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 Microsoft Corporation default-1430705378557 Firefox 38.0.1 C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 Microsoft Corporation default-1430705378557 Firefox 38.0.1 C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
有効 Plugin NCSOFT Login Launcher Module 3.0.0.3 NCSOFT Corporation default-1430705378557 Firefox 38.0.1 C:\Program Files (x86)\NCSOFT\NCPlugin\npncllm3.dll
有効 Plugin Nexon Game Controller 1.0.1.4 Nexon default-1430705378557 Firefox 38.0.1 C:\ProgramData\NexonJP\NGM\npNxGameJP.dll
有効 Plugin pmangdiagnostic 1.0.0.1 gameon default-1430705378557 Firefox 38.0.1 C:\GameOn\Common files\nppmangdiagnostic.dll
有効 Plugin pmangsupport 1.0.0.1 gameon default-1430705378557 Firefox 38.0.1 C:\GameOn\Common files\nppmangsupport.dll
有効 Plugin Shockwave Flash 17.0.0.169 Adobe Systems Incorporated default-1430705378557 Firefox 38.0.1 C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll
有効 Plugin WacomTabletPlugin 2.1.0.7 Wacom default-1430705378557 Firefox 38.0.1 C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll

GC
有効 App Gmail 8.1 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google スプレッドシート 1.1 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
無効 Extension Skype Click to Call 7.3.16540.9015 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0

スケジュールされたタスク
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task HScroll64 TOSHIBA %ProgramFiles(x86)%\Mouse HScroll Application\HScrollFun.exe
無効 Task Optimize Start Menu Cache Files-S-1-5-21-4092057093-892697119-3552624878-1005
無効 Task Optimize Start Menu Cache Files-S-1-5-21-4092057093-892697119-3552624878-500
有効 Task Uninstaller_SkipUac_kakeru22 IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {57CB8B45-DD14-490B-AC46-653AF019B0C2} Mozilla Corporation "c:\program files (x86)\mozilla firefox\firefox.exe" http://ui.skype.com/ui/0/6.14.0.104/ja/abandoninstall?page=tsMain
有効 Task {8C5F19D3-A7C8-4B11-B9A6-0E8EB690783E} Mozilla Corporation "c:\program files (x86)\mozilla firefox\firefox.exe" http://ui.skype.com/ui/0/7.4.85.102/ja/abandoninstall?page=tsProgressBar

コンキテクストメニュー
有効 Directory IobitStartMenu IObit C:\Program Files (x86)\IObit\Start Menu 8\IObitStartMenuExtension.dll
有効 Directory IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 File IobitStartMenu IObit C:\Program Files (x86)\IObit\Start Menu 8\IObitStartMenuExtension.dll
有効 File IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Folder IobitStartMenu IObit C:\Program Files (x86)\IObit\Start Menu 8\IObitStartMenuExtension.dll
有効 Folder IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
  • ジョニー沢渡
  • 2015/05/25 (Mon) 19:02:31
PettyCamera←これの確認です
作業と報告、ご苦労様です。
各ログも見せてもらいました。

ではちょっと確認とともに作業をお願いします。

CCを起動して「Windows」タブ内の下記を「無効」「エントリの削除」してください。
>有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll

次に確認ですが、PettyCameraというアプリをご自身で入れましたか?
その痕跡がログに見えてます。

ご自身で入れて使っているならそのことをレスで教えてください。
入れた覚えもないならそのことをレスで教えてください
  • 悪代官
  • 2015/05/25 (Mon) 20:31:21
無題
指示された作業についてですが、「Windows」タブにその項目はなく、IEタブの中にあります。
IEの方でよろしいでしょうか?

Petty Cameraは自分で入れました。
  • ジョニー沢渡
  • 2015/05/27 (Wed) 09:24:22
自分の指示ミス、お詫びします
レスが遅くなってすみません。

>指示された作業についてですが、「Windows」タブにその項目はなく、IEタブの中にあります。
>IEの方でよろしいでしょうか?

はい、そこは自分が指示を間違えました。
いけねぇ、こいつはうっかりだぁ!(←それ悪代官のセリフじゃないし

仰る通りIEタブのほうで対処してください。

>Petty Cameraは自分で入れました。

はい、ではこれはいいです。

CCで前述の確認後、またCCで「Windows」タブのログだけ取り直して、それを見せてください
  • 悪代官
  • 2015/05/27 (Wed) 21:33:30
無題
CC、Windowsタブのログになります。

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run cubepdf-checker 株式会社キューブ・ソフト "C:\Program Files (x86)\CubePDF\cubepdf-checker.exe"
有効 HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
有効 HKCU:RunOnce FlashPlayerUpdate Adobe Systems Incorporated C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_17_0_0_169_Plugin.exe -update plugin
有効 HKLM:Run HotKeysCmds Intel Corporation "C:\WINDOWS\system32\hkcmd.exe"
有効 HKLM:Run HScrollAP TOSHIBA C:\Program Files (x86)\Mouse HScroll Application\HScrollFun.exe
有効 HKLM:Run IgfxTray Intel Corporation "C:\WINDOWS\system32\igfxtray.exe"
有効 HKLM:Run LLHDUSER Intercom, Inc. "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
有効 HKLM:Run LogMeIn Hamachi Ui LogMeIn Inc. "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
有効 HKLM:Run Persistence Intel Corporation "C:\WINDOWS\system32\igfxpers.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run TAVLauncher TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
有効 HKLM:Run TCrdMain TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Hotkey\TCrdMain_Win8.exe
有効 HKLM:Run TecoResident TOSHIBA Corporation C:\Program Files\TOSHIBA\Teco\TecoResident.exe
無効 HKLM:Run TKRTL TOSHIBA Corporation "C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe" -h
有効 HKLM:Run TODDMain TOSHIBA CORPORATION C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe
有効 HKLM:Run TosTogKeyMon TOSHIBA Corporation %ProgramFiles%\TOSHIBA\Hotkey\TosTogKeyMon.exe /4
有効 HKLM:Run TosWaitSrv TOSHIBA Corporation %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
有効 HKLM:Run TRCMan TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
有効 HKLM:Run TSleepSrv TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
有効 Startup Common クライアントユーティリティ.lnk Ralink Technology, Corp. C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
  • ジョニー沢渡
  • 2015/06/01 (Mon) 09:50:58
手打ちそば食べたくなりました(謎
またもレスが遅くなってすみません。
いい加減もう自分の人生も手遅れなんだろーな…(←悪代官は手打ちがお約束

さてログも見せてもらいましたが、これもよさそうですね。
ただPCのカメラは必要ない時間は確実に無効化か停止させておくのが安全です。
カメラを不正に操作して、ユーザーの顔や部屋の写真を撮影してはそれを外部に漏えいするマルウェアも存在します。
更にマイクまで操作されたらユーザーの声や会話も盗まれて危険度は跳ね上がります。
Skype等でカメラやマイクをお使いなら完全に停止しなくてもいいですが、使わない時間だけは確実に止めておくようお勧めします。

では他に何か異常出ていればその報告をください。

何もなければしばらく様子見してください。
1週間様子見して、そこでまたCCで各タブのログとインストール情報とHJTのログをとって、それらを様子見中の状態報告とともにレスください。

この様子見後のログと状態でどうなっているかが判断の分かれ目になるでしょう
  • 悪代官
  • 2015/06/01 (Mon) 21:56:39
無題
カメラの件了解です。
今のところ異常は無いので様子見させていただきます。
  • ジョニー沢渡
  • 2015/06/05 (Fri) 13:17:47
無題
ネットの状態は良好です。今まで様子見して特に問題は発生しておりません。
以下ログです。

HJT
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 8:51:45, on 2015/06/13
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)

FIREFOX: 38.0.5 (x86 ja)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe
C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe
C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhrcusr.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_188.exe
C:\Users\kakeru22\Downloads\HijackThis(2).exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O4 - HKLM\..\Run: [LLHDUSER] "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
O4 - HKLM\..\Run: [TKRTL] "C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe" -h
O4 - HKLM\..\Run: [TAVLauncher] C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [cubepdf-checker] "C:\Program Files (x86)\CubePDF\cubepdf-checker.exe"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe
O4 - Global Startup: クライアントユーティリティ.lnk = C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: SunのJavaコンソール - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る(&N) - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote リンク ノート(&K) - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {1DC420F0-D89A-40D0-B5CC-92B9AD19A1AC} (HGPluginJP28 Class) - http://down.hangame.co.jp/jp/dist/hgstart/HGPluginJP28.cab
O16 - DPF: {255A2E53-D2E3-42DA-9C1D-36B289B8E18B} (DMMLauncherAx Control) - http://dl.app-netgame.dmm.com/launcher/DMMLauncherAx_32.cab
O16 - DPF: {98FFD412-1A12-4BCE-8AB2-247C78E22227} (NCLoaderCtl Class) - https://static.ncsoft.jp/js/login/activex/NCLoader.8.cab
O16 - DPF: {F8160836-0C11-4CA4-AD87-944542C7BCBD} (PubPlugin Class) - http://down.hangame.co.jp/jp/purple/launcher/PubPlugin.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: IconMan_R - Realsil Microelectronics Inc. - C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LLHDClient - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDClient.exe
O23 - Service: LLHDCloader - Intercom, Inc. - C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\LLHDCldr.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Video Camera Checkout (lydeteku) - Unknown owner - (no file)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: OEMRegistrationProgram - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\OEM Registration Program\OEMRegistrationProgram.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: RalinkRegistryWriter - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry.exe
O23 - Service: RalinkRegistryWriter64 - Ralink Technology, Corp. - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaRegistry64.exe
O23 - Service: Ralink UPnP Media Server (RaMediaServer) - Ralink - C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\RaMediaServer.exe
O23 - Service: RASUService - Unknown owner - C:\Program Files (x86)\TOSHIBA\AVApplication\RASU\TosRASUService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: SMITS - Unknown owner - C:\Windows\SysWOW64\SMITSC.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartMenu8 Service (StartMenuService) - IObit - C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: Qosmio AV Center Complement Service (TAVComplementService) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Engine\TAVComplementService.exe
O23 - Service: Qosmio AV Center Scheduler Service (TAVScheduler) - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVScheduler.exe
O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing)
O23 - Service: TOSHIBA eco Utility Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Teco\TecoService.exe
O23 - Service: TPCHKarteSVC - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TKRTL\TPCHKarteSVC.exe
O23 - Service: TPCH Service (TPCHSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wacom Professional Service (WTabletServicePro) - Wacom Technology, Corp. - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe

--
End of file - 12899 bytes


CC

Windows
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run cubepdf-checker 株式会社キューブ・ソフト "C:\Program Files (x86)\CubePDF\cubepdf-checker.exe"
有効 HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
有効 HKLM:Run HotKeysCmds Intel Corporation "C:\WINDOWS\system32\hkcmd.exe"
有効 HKLM:Run HScrollAP TOSHIBA C:\Program Files (x86)\Mouse HScroll Application\HScrollFun.exe
有効 HKLM:Run IgfxTray Intel Corporation "C:\WINDOWS\system32\igfxtray.exe"
有効 HKLM:Run LLHDUSER Intercom, Inc. "C:\Program Files (x86)\Intercom\LAPLINK HelpDesk Client\llhuser.exe"
有効 HKLM:Run LogMeIn Hamachi Ui LogMeIn Inc. "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
有効 HKLM:Run Persistence Intel Corporation "C:\WINDOWS\system32\igfxpers.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
有効 HKLM:Run TAVLauncher TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\AVApplication\Application\TAVLauncher.exe
有効 HKLM:Run TCrdMain TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Hotkey\TCrdMain_Win8.exe
有効 HKLM:Run TecoResident TOSHIBA Corporation C:\Program Files\TOSHIBA\Teco\TecoResident.exe
無効 HKLM:Run TKRTL TOSHIBA Corporation "C:\Program Files (x86)\TOSHIBA\TKRTL\KarteLite.exe" -h
有効 HKLM:Run TODDMain TOSHIBA CORPORATION C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe
有効 HKLM:Run TosTogKeyMon TOSHIBA Corporation %ProgramFiles%\TOSHIBA\Hotkey\TosTogKeyMon.exe /4
有効 HKLM:Run TosWaitSrv TOSHIBA Corporation %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe
有効 HKLM:Run TRCMan TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\TRCMan\TRCMan.exe
有効 HKLM:Run TSleepSrv TOSHIBA Corporation C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe
有効 Startup Common McAfee Security Scan Plus.lnk McAfee, Inc. C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe
有効 Startup Common クライアントユーティリティ.lnk Ralink Technology, Corp. C:\Program Files (x86)\Logitec\LAN-W150N-U2\Common\ApUI.exe

IE
無効 Extension OneNote に送る Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
無効 Extension OneNote に送る Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
無効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
無効 Extension OneNote リンク ノート(K) Microsoft Corporation C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
有効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll


Fire fox
有効 Plugin Google Update 1.3.27.5 Google Inc. default-1430705378557 Firefox 38.0.5 C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll
有効 Plugin Intel® Identity Protection Technology 2.1.42.0 Intel Corporation default-1430705378557 Firefox 38.0.5 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
有効 Plugin Intel® Identity Protection Technology 2.1.42.0 Intel Corporation default-1430705378557 Firefox 38.0.5 C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
有効 Plugin Java Deployment Toolkit 8.0.450.15 11.45.2.15 Oracle Corporation default-1430705378557 Firefox 38.0.5 C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 8 U45 11.45.2.15 Oracle Corporation default-1430705378557 Firefox 38.0.5 C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll
有効 Plugin Microsoft Office 2010 14.0.4730.1010 Microsoft Corporation default-1430705378557 Firefox 38.0.5 C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
有効 Plugin Microsoft Office 2010 14.0.4761.1000 Microsoft Corporation default-1430705378557 Firefox 38.0.5 C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
有効 Plugin NCSOFT Login Launcher Module 3.0.0.3 NCSOFT Corporation default-1430705378557 Firefox 38.0.5 C:\Program Files (x86)\NCSOFT\NCPlugin\npncllm3.dll
有効 Plugin Nexon Game Controller 1.0.1.4 Nexon default-1430705378557 Firefox 38.0.5 C:\ProgramData\NexonJP\NGM\npNxGameJP.dll
有効 Plugin pmangdiagnostic 1.0.0.1 gameon default-1430705378557 Firefox 38.0.5 C:\GameOn\Common files\nppmangdiagnostic.dll
有効 Plugin pmangsupport 1.0.0.1 gameon default-1430705378557 Firefox 38.0.5 C:\GameOn\Common files\nppmangsupport.dll
有効 Plugin Shockwave Flash 17.0.0.188 Adobe Systems Incorporated default-1430705378557 Firefox 38.0.5 C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll
有効 Plugin Unity Player 5.1.0.28848 Unity Technologies ApS default-1430705378557 Firefox 38.0.5 C:\Users\kakeru22\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
有効 Plugin WacomTabletPlugin 2.1.0.7 Wacom default-1430705378557 Firefox 38.0.5 C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll

Google Chrome
有効 App Gmail 8.1 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google スプレッドシート 1.1 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
無効 Extension Skype Click to Call 7.3.16540.9015 最初のユーザー C:\Users\kakeru22\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0


スケジュールされたタスク
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task HScroll64 TOSHIBA %ProgramFiles(x86)%\Mouse HScroll Application\HScrollFun.exe
無効 Task Optimize Start Menu Cache Files-S-1-5-21-4092057093-892697119-3552624878-1005
無効 Task Optimize Start Menu Cache Files-S-1-5-21-4092057093-892697119-3552624878-500
有効 Task Uninstaller_SkipUac_kakeru22 IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {57CB8B45-DD14-490B-AC46-653AF019B0C2} Mozilla Corporation "c:\program files (x86)\mozilla firefox\firefox.exe" http://ui.skype.com/ui/0/6.14.0.104/ja/abandoninstall?page=tsMain
有効 Task {8C5F19D3-A7C8-4B11-B9A6-0E8EB690783E} Mozilla Corporation "c:\program files (x86)\mozilla firefox\firefox.exe" http://ui.skype.com/ui/0/7.4.85.102/ja/abandoninstall?page=tsProgressBar

コンキテクストメニュー
有効 Directory IobitStartMenu IObit C:\Program Files (x86)\IObit\Start Menu 8\IObitStartMenuExtension.dll
有効 Directory IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 File IobitStartMenu IObit C:\Program Files (x86)\IObit\Start Menu 8\IObitStartMenuExtension.dll
有効 File IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
有効 Folder IobitStartMenu IObit C:\Program Files (x86)\IObit\Start Menu 8\IObitStartMenuExtension.dll
有効 Folder IObitUnstaler IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight64.dll
  • ジョニー沢渡
  • 2015/06/13 (Sat) 08:59:01
あとひとつインストール情報ログも
今日もレスが遅くなってすみません。
昨日から回線障害でネットが使えず、掲示板にも来れませんでした。

>ネットの状態は良好です。今まで様子見して特に問題は発生しておりません。

はい、様子見後のログも見せてもらいましたが、あとひとつインストール情報のログも取り直し分をレスで見せてもらえますか。

最後の最後で見落としがあったら、せっかくここまで頑張ってくれた努力が水の泡になりかねませんので、最後まで気を抜かずにいきましょう
  • 悪代官
  • 2015/06/13 (Sat) 20:56:11
無題
おっとすみません!

インストール情報のログです
+Lhaca 2015/04/21
Adobe AIR Adobe Systems Incorporated 2014/10/25 3.3.0.3650
Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/06/06 6.00 MB 17.0.0.188
Alliance of Valiant Arms 株式会社ゲームオン 2015/04/19 287
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver Atheros Communications Inc. 2013/01/08 2.1.0.6
Atheros Driver Installation Program Atheros 2015/05/06 10.0
CCleaner Piriform 2015/05/04 5.05
CloudAlpaca 1.4.3 Medibang 2015/04/11 156 MB 1.4.3
Common GameOn 2015/04/19 34939144
comono ImageViewer SaradaHouse 2013/10/27 1.00 MB 1.6.1
Corel VideoStudio X5 Corel Corporation 2014/10/25 609 MB 15.0.1.26
CubePDF 1.0.0RC7 CubeSoft 2014/05/13 24.8 MB
DigiBookBrowser Version 1.5.1.4 TriWorks Corp.JAPAN 2012/09/20 8.47 MB 1.5.1.4
dynabookランチャー用バナー 2014/10/25
FireAlpaca 1.3.0 firealpaca.com 2015/05/24 35.6 MB 1.3.0
Google Chrome Google Inc. 2014/03/26 43.0.2357.124
Hangame 2014/10/25
Hawken Meteor Entertainment 2014/10/25 2.79 GB
Hounds DMM 2014/02/15 1.0.0
Intel(R) Management Engine Components Intel Corporation 2013/08/23 8.1.0.1252
Intel(R) Processor Graphics Intel Corporation 2014/10/24 10.18.10.3345
Intel(R) Rapid Storage Technology Intel Corporation 2015/06/13 11.5.2.1001
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2014/10/25 2.0.0.37149
IObit Uninstaller IObit 2015/05/04 4.3.0.118
Java 8 Update 45 Oracle Corporation 2015/06/06 77.1 MB 8.0.450
LAPLINK ヘルプデスク クライアント Intercom, Inc. 2014/10/25 2.00
Left 4 Dead 2 Valve 2014/10/25
Logitecクライアントユーティリィティ Logitec 2014/02/11 1.5.21.0
LogMeIn Hamachi LogMeIn, Inc. 2015/04/01 2.2.0.328
Malwarebytes Anti-Malware バージョン 2.1.6.1022 Malwarebytes Corporation 2015/05/07 57.6 MB 2.1.6.1022
McAfee Security Scan Plus McAfee, Inc. 2015/06/13 10.2 MB 3.8.150.1
Metasequoia Ver3.1 2015/04/13
MetasequoiaLE R3.0 2015/04/13
Microsoft Office Home and Business 2010 Microsoft Corporation 2015/05/12 14.0.7015.1000
Microsoft SQL Server 2008 R2 Microsoft Corporation 2014/10/25
Microsoft SQL Server 2008 R2 Native Client Microsoft Corporation 2013/01/08 9.00 MB 10.51.2500.0
Microsoft SQL Server 2008 R2 Setup (日本語) Microsoft Corporation 2013/01/08 43.7 MB 10.51.2500.0
Microsoft SQL Server 2008 セットアップ サポート ファイル Microsoft Corporation 2013/01/08 34.6 MB 10.1.2731.0
Microsoft SQL Server Browser Microsoft Corporation 2013/01/08 8.53 MB 10.51.2500.0
Microsoft SQL Server VSS Writer Microsoft Corporation 2013/01/08 7.66 MB 10.51.2500.0
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2015/05/06 4.84 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2013/01/08 7.10 MB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2014/01/23 13.2 MB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/09/20 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/09/20 10.1 MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2014/01/23 10.1 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/05/12 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/05/12 13.8 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 Microsoft Corporation 2015/05/06 20.4 MB 11.0.50727.1
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 Microsoft Corporation 2015/05/06 17.3 MB 11.0.50727.1
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 2015/05/03 17.1 MB 12.0.21005.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/05/12 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/05/12 10.0.50903
Microsoft XNA Framework Redistributable 4.0 Microsoft Corporation 2014/03/04 9.44 MB 4.0.20823.0
mine2000 ver2.2.1 mine2000 project 2013/12/17 2.44 MB 2.2.1
Minecraft Mojang 2015/06/13 1.22 MB 1.0.3.0
Mozilla Firefox 38.0.5 (x86 ja) Mozilla 2015/06/07 83.1 MB 38.0.5
Mozilla Maintenance Service Mozilla 2015/05/04 247 KB 37.0.2
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/08/24 2.90 MB 4.30.2117.0
NCLauncher (NCSOFT) NCSOFT 2014/10/25
Niconico Live Encoder niwango, inc. 2015/05/02 2.0.4
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 2.84 MB 8.60.5001
Nuvoton CIR Device Drivers Nuvoton Technology Corporation 2013/01/08 8.60.5001
NVIDIA PhysX NVIDIA Corporation 2013/10/13 78.9 MB 9.10.0513
OEM Registration Program TOSHIBA CORPORATION 2013/01/08 516 KB 1.0.0
Origin Electronic Arts, Inc. 2014/10/25 9.4.7.2799
PCあんしん点検ユーティリティ TOSHIBA Corporation 2013/01/08 1.49 MB 1.1.5.0
PlayReady PC Runtime x86 Microsoft Corporation 2012/09/20 1.65 MB 1.3.0
Pmangインストールマネージャー GameOn,Pmang 2015/04/19 1.0.1.1
PunkBuster Services Even Balance, Inc. 2014/10/25 0.991
Qosmio AV Center Toshiba Corporation 2013/01/08 8.0.1.1
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/10/25 6.0.1.6690
Realtek USB 2.0 Card Reader Realtek Semiconductor Corp. 2013/01/08 6.1.8400.39030
Skype Click to Call Microsoft Corporation 2015/05/27 15.9 MB 7.4.0.9058
Skype(TM) 7.5 Skype Technologies S.A. 2015/06/07 48.8 MB 7.5.102
SPECIAL FORCE 2 NHN PlayArt Corp. 2014/10/25 5.32 GB 1.0.0.0
Start Menu 8 IObit 2015/05/07 31.1 MB 2.1.0
Steam Valve Corporation 2014/10/25
Team Fortress 2 Valve 2014/10/25
theHunter Expansive Worlds 2015/03/09
TOSHIBA Active Display Off Toshiba Corporation 2013/01/08 17.0 MB 1.0.3.0
TOSHIBA Blu-ray Disc Player Toshiba Corporation 2013/01/08 79.4 MB 1.0.5.207
TOSHIBA Desktop Apps Menu Toshiba Corporation 2015/05/06 596 KB 1.02.01.6407
TOSHIBA eco Utility Toshiba Corporation 2013/01/08 20.3 MB 2.0.0.6415
TOSHIBA Function Key Toshiba Corporation 2013/01/08 32.0 MB 1.00.6625.6402
TOSHIBA Manual TOSHIBA CORPORATION 2013/01/08 27.8 MB 0127.03.3001
TOSHIBA PalaDouga TOSHIBA CORPORATION 2012/09/20 394 MB 2012.0301.0003
TOSHIBA Password Utility TOSHIBA Corporation 2012/09/20 3.36 MB v1.0.0.10
TOSHIBA PC Health Monitor Toshiba Corporation 2013/01/08 44.2 MB 1.8.17.640104
TOSHIBA Recovery Media Creator Toshiba Corporation 2012/09/20 2.2.0.54043005
TOSHIBA Remote Control Manager TOSHIBA CORPORATION 2013/01/08 3.0.1014.2
TOSHIBA Resolution+ Plug-in for Windows Media Player TOSHIBA Corporation 2013/01/08 1.2.2.00
TOSHIBA SD-Video PLAYER TOSHIBA Corporation 2013/01/08 1.00.5.52-B
TOSHIBA Service Station Toshiba Corporation 2015/05/06 2.82 MB 2.6.8
TOSHIBA Speech Synthesis TOSHIBA CORPORATION 2013/01/08 65.0 MB 1.5.1.7
TOSHIBA System Driver Toshiba Corporation 2013/01/08 5.51 MB 1.00.0013
TOSHIBA System Settings Toshiba Corporation 2013/01/08 10.9 MB 1.00.0002.32002
TOSHIBA Wireless Mouse HScroll Application TOSHIBA 2013/01/08 1.0.0.120326
Unity Web Player Unity Technologies ApS 2015/06/07 12.0 MB 5.1.0f3
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2014/10/27 40.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2014/10/27 11.5 MB 15.0.1215
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/04/22 17.0 KB 16.0.1016.1
War Thunder Launcher 1.0.1.467 Gaijin Entertainment 2015/01/01 8.01 GB
WebTablet FB Plugin 32 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
WebTablet FB Plugin 64 bit Wacom Technology Corp. 2015/03/16 2.1.0.7
Windows Media Encoder 9 Series 2014/10/25
World of Tanks Wargaming.net 2013/09/22 16.4 MB
デザインドール Terawell 2014/03/04 42.2 MB 5.6
ワコム タブレット Wacom Technology Corp. 2015/03/16 6.3.11-4
幻想人形演舞 FocasLens 2015/01/14 262 MB
弾幕アマノジャク ver 1.00a 2015/05/06 258 MB
東方深秘録 Ver1.02b 黄昏フロンティア 2015/05/21 16.7 MB
  • ジョニー沢渡
  • 2015/06/14 (Sun) 03:50:45
処置はできましたが、以後の自衛はここからが始まりです
おはようございます。
追加の情報ログも見せていただきました。
こちらでも特におかしなものはなさそうですね。

あとはGUを使って下記も削除しておいてください。最後のゴミ掃除です。
>McAfee Security Scan Plus McAfee, Inc. 2015/06/13 10.2 MB 3.8.150.1

これができたら他に異常もなくなってれば本題の処置は終了でいいでしょう。
あとは以後の再被害を防ぐための自衛です。

ブラウザの設定を少し固めるだけでも、セキュリティ上の効果を高めることが可能です。
「インターネットオプション」→「プライバシー」→「詳細設定」と開いて、「自動cookie処理」と「サードパーティのcookieをブロック」にチェックして「適用」して「OK」。
これをやっておくと、多くの危険サイトからの保護にかなり有効です。
が、これもすべての危険サイトに有効でもないし、本物の危険サイトではこの程度ではまったく太刀打ちできないので、過信はしないこと。
また、「すべてのcookieをブロックする」設定にすると、プロバイダのメールボックスなどログイン必要なページに入れなくなる弊害も出るので、これは状況を考えて使い分けるといいでしょう。
安全なサイトでもcookieブロックだと閲覧や投稿ができなくなるところもあるのでこれも注意。

次に、アンチウイルスやファイアウォール等のセキュリティソフトの使い方も注意してください。
セキュリティソフトはただ入れてさえいればそれだけでフル機能を発揮するものではありません。
設定と機能をできるだけ把握して、正しく使うことが重要です。
間違った使い方すると、本来ならブロックできた感染でもあっさりスルーします。

また、いくら高性能なセキュリティソフトがあっても、ユーザーが自分から危険なサイトやファイルにアクセスしてたらまったく保護もできません。
セキュリティソフトは使い方次第でその性能を、倍にも半にも無にも変動させます。

そして百聞は一見にしかず。
現在この掲示板で継続中や解決済みの他スレもできるだけ見ておくことをおすすめします。
同様、類似、別種含めて参考になる部分は多いでしょう。

それと、今回見つけて処置したsalus系は現在ではhades系の名前で暴れているようです。
あまりにもsalusの名前が広まってその対処法もネット上に知られてきたので、対策逃れ狙いで名前も改変してきたようです。
今後は更に別名も使ってまた対策逃れしてくることも予想されます。
こういう風に特定のアプリ名やサイト名だけに注意すれば感染は防げるものでもないことを認識しておいてください。

それとsalus系はまだはっきりした素性や挙動もわかっていない部分があるので、そのPCで入力したことのある各種パスワード等も念のため全部変更しておくことをお勧めします。
特にネットショッピングやネットバンキングしたことがあればその情報は最優先で変更を。
salusがパスワードを盗むかどうかはわかりませんが、それでなくても各種パスワードは定期的に変更しておくのが自衛の上でも重要な対策のひとつです。

自衛の上では覚えておくべきことは多数ありますが、最初から全部頭に入れておく必要もありません。
背伸びせずにわかる範囲から一つずつでも消化しながら、PC環境とセキュリティ意識を再構築していってください。

慣れない作業を頑張ってくれてお疲れ様でした。
以後は安全で快適なPCライフを
  • 悪代官
  • 2015/06/14 (Sun) 09:11:59
無題
はい、今後気を付けていきたいと思います。ありがとうございました。たいへん助かりました。
  • ジョニー沢渡
  • 2015/06/14 (Sun) 19:20:58

返信フォーム






プレビュー (投稿前に内容を確認)