悪代官の伏魔殿掲示板
yourserching に感染してしまったようです
yourserching に感染してしまったようです。
今後の対応についてご教授願えれば幸いです。
申し訳ありませんが,よろしくお願いします。

<HJTのログ>

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 0:55:48, on 2016/02/28
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Fujitsu\F-LINK\WSDMAIN.exe
C:\Windows\System32\TiltWheelMouse.exe
C:\Program Files (x86)\sMedio\AirGet\AirGet.exe
C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsecurity.exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files (x86)\BlueStacks\HD-Frontend.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SysMon.Exe
C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\sfbrun32.exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Statistics.exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Message.exe
C:\Program Files (x86)\Fujitsu\FJAgent\Engines\CheckCdsEngine\CheckCdsEngine.exe
C:\Program Files (x86)\Corel\MLE2\MLEngine.exe
C:\Users\M\Downloads\IObitUninstallerPortable\IObitUninstallerPortable.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\M\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: K7 Web Protection - {08B3B4B6-02DA-4658-8BA6-5974E3EBB03D} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O2 - BHO: RoboForm BHO - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: K7 Web Protection - {8551D65A-13A9-4e63-8472-9325B1B928C0} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O4 - HKLM\..\Run: [CorelDA] C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
O4 - HKLM\..\Run: [K7TSStart] C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSecurity.exe
O4 - HKLM\..\Run: [Sourcenext.SSS.Launcher] "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [BlueStacks Frontend] C:\Program Files (x86)\BlueStacks\HD-Frontend.exe Android hidemode
O4 - HKLM\..\Run: [FUJ02B1_Apps] "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411
O4 - HKCU\..\Run: [AirGet] "C:\Program Files (x86)\sMedio\AirGet\AirGet.exe" silent
O4 - HKCU\..\Run: [DriveStudio] "C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe" silent
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: F-Launcher.lnk = C:\Program Files\Fujitsu\F-Launcher\F-Launcher.exe
O4 - Global Startup: My Cloud リモートアクセス設定スタートアップ.lnk = C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCRemoteAccess.exe
O4 - Global Startup: PointGrab Hand Gesture Control.lnk = C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
O4 - Global Startup: 驚速 for Windows 8 スタート.lnk = ?
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: 保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DataExchangeUtilityService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\DEUService.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FJAgentSVC - 富士通株式会社 - C:\Program Files (x86)\Fujitsu\FJAgent\Core\bin\FJAgentSVC.exe
O23 - Service: FJAutoSignIn - FUJITSU LIMITED - C:\Program Files\Fujitsu\AutoSignIn\AutoSignInService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: K7Carnivore Service (K7CrvSvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7CrvSvc.exe
O23 - Service: K7Computng - EMail Proxy Server (K7EmlPxy) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7EmlPxy.exe
O23 - Service: K7Firewall Services (K7FWSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7FWSrvc.exe
O23 - Service: K7Privacy Services (K7PSSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7PSSrvc.exe
O23 - Service: K7RealTime AntiVirus Services (K7RTScan) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7RTScan.exe
O23 - Service: K7SpmSrc - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SpmSrc.exe
O23 - Service: K7TotalSecurity Manager (K7TSMngr) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSMngr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Kyosoku-Defrag - Unknown owner - C:\Program Files\SOURCENEXT\ソースネクスト 驚速デフラグ\defrag.service.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: My Cloud ビデオ サーバー - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\VDMS\dms_svc.exe
O23 - Service: My Cloud ビデオ サーバー+ - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\Cindy\dms_sync_svc.exe
O23 - Service: My Cloud Eco DX Service (MyCloudEcoSvc) - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\MCEco\MyCloudEchoSvc.exe
O23 - Service: MyCloudRemoteAccessConnectSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCTunnel.exe
O23 - Service: MyCloudRemoteAccessSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\svcMPPFclient.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PG_Service_Launcher - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Service_Launcher.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Performance Tweak Agent (PTAgent) - SOURCENEXT CORPORATION - C:\Program Files\SOURCENEXT\Kyosoku-Memory Next Basic\Performance Tweak Agent.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PCカルテ スケジュール サービス (SKARUTE) - FUJITSU LIMITED - C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SSPF HGW Service (SSPFHGWService) - Unknown owner - C:\Program Files (x86)\Fujitsu\MCEcoUty\MCEcoUty.exe
O23 - Service: UDSS - Unknown owner - C:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13858 bytes


<CCのログ>
@niftyでブロードバンド ニフティ株式会社 2013/09/02 1.00.000
Battery Utility FUJITSU LIMITED 2013/09/02 4.01.22.004
BlueStacks App Player BlueStack Systems, Inc. 2015/03/28 0.9.18.5107
BlueStacks Notification Center BlueStack Systems, Inc. 2015/03/28 168 MB 0.9.18.5107
BooksV FUJITSU 2014/05/01 1.1.7.0
CCleaner Piriform 2016/02/28 5.15
Corel Digital Studio for FUJITSU Corel Corporation 2014/04/29 637 MB 1.5.25.156.2
Corel WinDVD Corel Inc. 2014/04/06 244 MB 10.9.0.155
DigiBookBrowser Version 1.5.3.87 LECRE Inc. 2013/09/02 8.53 MB 1.5.3.87
Drive Studio設定Utility FUJITSU LIMITED 2014/06/24 126 MB 1.00.0003
F-Launcher FUJITSU LIMITED 2013/09/02 2.02 MB 2.2.1.0
F-LINK FUJITSU LIMITED 2014/04/29 7.89 MB 3.3.0.0
Fresh Paint Microsoft Corporation 2016/01/12 2.0.15133.0
Fujitsu BIOS Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.1.0
Fujitsu MobilityCenter Extension Utility FUJITSU LIMITED 2013/09/02 4.01.00.000
Google Chrome Google Inc. 2014/04/30 48.0.2564.116
Inspirium辞書検索ライブラリ Fujitsu 2013/09/02 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 2013/08/22 9.0.20.1447
Intel(R) Processor Graphics Intel Corporation 2015/07/24 10.18.14.4170
Intel(R) Rapid Storage Technology Intel Corporation 2014/04/06 12.8.2.1000
IObit Uninstaller IObit 2016/02/04 5.2.5.126
LINE LINE Corporation 2015/06/22 4.0.3.369
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/02/24 15.0.4797.1003
Microsoft SkyDrive Microsoft Corporation 2014/04/29 25.1 MB 16.4.6013.0910
Microsoft SQL Server Compact 3.5 SP2 JPN Microsoft Corporation 2013/09/02 4.89 MB 3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 JPN Microsoft Corporation 2013/09/02 7.08 MB 3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 JPN Microsoft Corporation 2015/10/03 20.8 MB 4.0.8876.1
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2014/12/18 4.47 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2014/05/19 4.69 MB 8.0.56336
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/25 13.1 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2014/04/06 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/02/20 1.29 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 11.1 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 Microsoft Corporation 2014/04/06 17.4 MB 11.0.51106.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/04/06 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/04/06 10.0.31119
MSN スポーツ Microsoft Corporation 2015/07/15 3.0.4.336
MSN トラベル Microsoft Corporation 2015/07/15 3.0.4.336
MSN ニュース Microsoft Corporation 2015/07/15 3.0.4.336
MSN フード&レシピ Microsoft Corporation 2015/07/15 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2015/07/15 3.0.4.336
MSN マネー Microsoft Corporation 2015/07/15 3.0.4.336
MSN 天気 Microsoft Corporation 2015/10/24 3.0.4.337
music.jp  for FUJITSU MTI LTD 2015/03/27 2.11.0.1
My Cloud エコDX FUJITSU 2015/07/17 2.2.0.2
My Cloud エコDX Utility FUJITSU LIMITED 2015/07/24 168 MB 2.1.1.0
My Cloud エコDX設定Utility FUJITSU LIMITED 2015/10/03 1.75 MB 2.2.0.1
My Cloud スタート FUJITSU 2014/06/14 2.3.0.2
My Cloud データ連携Utility 富士通株式会社 2014/04/29 29.9 MB 1.00.03.006
My Cloud ビデオ サーバー DigiOn 2015/07/24 34.5 MB 3.3.30.0
My Cloud ビデオ2 DigiOn 2015/07/11 1.2.1.9
My Cloud フォト CYBERLINK.COM CORPORATION. 2014/09/10 1.0.3219.33373
My Cloud ホーム FUJITSU 2014/05/01 1.1.1.1
My Cloud ミュージック sMedio Inc 2015/02/15 1.0.0.110
My Cloud モバイルアクセス sMedio Inc 2014/05/01 2.3.0.42
My Cloud モバイルアクセス設定Utility FUJITSU LIMITED 2014/06/24 132 MB 2.03.0008
My Cloud リモートアクセス設定Utility FUJITSU LIMITED 2014/04/29 1.25 MB 1.0.000.008
NAVITIME for FUJITSU NAVITIMEJAPAN 2014/05/14 2.0.3.0
nissen Smart Catalog Nissen.Co.,LTD 2014/04/27 1.2.0.27
Office タッチ リボン Microsoft Corporation 2014/04/06 740 KB 1.0.0
PCカルテ FUJITSU LIMITED 2013/09/02 6.97 MB 2.0.0.1
Peakshift setting FUJITSU LIMITED 2013/09/02 2.01.00.001
PhotoWizard Microsoft 2014/04/06 335 MB 1.5.0
Plugfree NETWORK 富士通株式会社 2013/09/02 7.1.0.1
PointGrab Hand Gesture Control PointGrab 2014/04/29 124 MB 03.12.00.03786
Pointing Device Utility FUJITSU LIMITED 2013/09/02 3.52 MB 2.1.0.0
Qualcomm Atheros Bluetooth Suite (64) Qualcomm Atheros Communications 2014/04/06 93.9 MB 8.0.1.305
Qualcomm Atheros Client Installation Program Qualcomm Atheros 2014/04/06 10.0
Realtek Card Reader Realtek Semiconductor Corp. 2013/09/02 6.2.9200.39048
Realtek Ethernet Controller Driver Realtek 2013/09/02 8.18.621.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/04/29 6.0.1.7059
RoboForm 7-9-9-1 (All Users) Siber Systems 2014/08/22 20.0 MB 7-9-9-1
Roxio Creator LJ Roxio 2014/04/06 121 MB 12.2.37.11
Sense YOU Technology 設定 FUJITSU LIMITED 2014/04/06 3.0.0.2
SetPoint 6.60 2015/03/25 39.0 MB 6.60.170
Skype Skype 2015/06/21 3.1.0.1016
Skype(TM) 7.14 Skype Technologies S.A. 2015/11/23 78.5 MB 7.14.106
Synaptics Pointing Device Driver Synaptics Incorporated 2014/01/29 46.4 MB 17.0.9.1
Timepiece Ensemble GLace 2015/05/02 4.37 GB 1.00.0000
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/09/07 41.7 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2015/09/07 11.6 MB 15.0.2013
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/07/05 9.00 KB 16.0.1515.1
Windows アラーム Microsoft Corporation 2014/05/01 6.3.9654.20335
Windows サウンド レコーダー Microsoft Corporation 2014/05/01 6.3.9600.20280
Windows スキャン Microsoft Corporation 2014/11/05 6.3.9654.17133
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02B1) System (06/26/2013 1.23) FUJITSU LIMITED 2014/04/06 06/26/2013 1.23
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02E3) System (07/02/2013 1.30.1.0) FUJITSU LIMITED 2014/04/06 07/02/2013 1.30.1.0
Windows ヘルプ+使い方 Microsoft Corporation 2014/08/07 6.3.9654.20559
Windows リーディング リスト Microsoft Corporation 2015/08/13 6.3.9654.20947
Windows 電卓 Microsoft Corporation 2014/05/01 6.3.9600.20278
Wireless Radio Switch Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.0.0
Yahoo!オークション (ft) Yahoo! JAPAN 2014/04/27 2.0.0.4
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2014/04/28
アップデートナビ FUJITSU LIMITED 2015/09/06 14.8 MB 1.2.0071
ウイルスセキュリティ ソースネクスト株式会社 2014/04/30 12.00
エレコム マウスアシスタント4 ELECOM 2014/05/02 4.01.00000
カメラセンサー機能ON/OFFツール FUJITSU LIMITED 2014/04/06 V1.02
クロノクロック 2015/12/19
ゲーム Microsoft Corporation 2014/05/01 2.0.139.0
ココロ@ファンクション! WILLPLUS 2016/02/20 1.00.0000
ココロ@ファンクション! NEO WILLPLUS 2016/02/20 1.00.0000
サポートツール 「パソコンの情報」と「トラブル解決ナビの起動」 FUJITSU LIMITED 2013/09/02 3.31 MB 1.2.0.0
シュフーチラシアプリ for FUJITSU TOPPAN PRINTING CO., LTD. 2016/02/10 1.4.0.0
ステータスパネルスイッチ FUJITSU LIMITED 2013/09/02 5.32 MB 1.0.0.0
ソフトウェアディスク検索 FUJITSU LIMITED 2013/09/02 1.86 MB 2.0.0.0
ソースネクスト アップデート 4.0 SOURCENEXT 2014/06/07 26.5 MB 9.09.0000
ソースネクスト 驚速 for Windows 8 SOURCENEXT 2014/05/19 30.4 MB 1.0.0
ソースネクスト 驚速デフラグ SOURCENEXT CORPORATION 2014/05/19 138 MB 1.1.0
ソースネクスト 驚速メモリ SOURCENEXT CORPORATION 2014/05/19 25.3 MB 1.1.0
チケットメーカー FUJITSU LIMITED 2013/09/02 833 KB 3.1.0.0
バックアップナビ FUJITSU LIMITED 2013/09/02 24.7 MB 2.3.0.0
パソコン乗換ガイド 株式会社富士通ソフトウェアテクノロジーズ 2013/09/02 15.2 MB 1.1.0.1
ビデオ Microsoft Corporation 2015/11/06 2.6.446.0
マイミュージアム FUJITSU 2014/05/01 1.2.0.3
ミュージック Microsoft Corporation 2015/03/14 2.6.672.0
メール、カレンダー、People 2015/07/03
リーダー Microsoft Corporation 2016/02/10 6.4.9926.18190
ワンタッチボタン設定 FUJITSU LIMITED 2013/09/02 3.21 MB 8.5.3.0
健康生活日記 FUJITSU 2015/02/15 2.0.1.4
地図 Microsoft Corporation 2014/09/11 2.1.3230.2048
宿探 for FUJITSU 繝舌Μ繝・繝シ繧ウ繝槭・繧ケ繹ア 2014/04/27 1.3.0.3
富士通PC 辞書セット(広辞苑第六版+リーダーズ英和辞典+新和英中辞典+現代用語の基礎知識+学研パーソナル統合辞典) 富士通株式会社 2013/09/02 513 KB 2.0.0
富士通アドバイザー FUJITSU LIMITED 2013/09/02 21.8 MB 4.3.0.0
富士通パソコン お客様サポート FUJITSU 2015/07/17 1.0.0.2
富士通拡張機能ユーティリティ FUJITSU LIMITED 2013/09/02 2.88 MB 3.6.0.0
恋色マリアージュ ま~まれぇど 2015/08/08 1.01
書き込み機能拡張ユーティリティ FUJITSU LIMITED 2013/09/02 2.3.0.0
楽しもう!Office ライフ Microsoft Corporation 2014/04/06 636 KB 1.0.0
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/01/06 2.2.2.4
楽天レシピ 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2014/05/01 1.2.0.0
省電力ユーティリティ FUJITSU LIMITED 2013/09/02 3.20 MB 143.0.1.0 (00.003)
筆ぐるめ 20 富士ソフト株式会社 2013/09/02 719 MB 20.00.0008
自動サインイン設定 FUJITSU LIMITED 2013/09/02 410 KB 1.0.2.0
電子辞書 FUJITSU LIMITED 2013/09/02 22.5 MB 5.0.2.0
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2013/09/02 203 KB 3.0.0.0
@メニュー 2013/08/22 V7.0
@メニュー FUJITSU LIMITED 2013/09/02 3.23 MB 7.2.0.0
  • nanashi
  • 2016/02/28 (Sun) 01:07:53
驚速シリーズは注意を
おはようございます。
ここの管理人の悪代官です。
夜8時45分頃に成敗されるのが嫌なので、日アサ8時45分頃の美少女戦隊にお仕置きされてます(←あっちへ逝きなさーい!

yourserchingでの異常ですか。
ログも見せてもらいましたが、本題の主因はまだ見えないものの、それ以外にちょっと問題点が見えてますね。
慎重に調べながら進めていきましょう。

まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「GeekUninstaller」(通称:GU)
説明ページ↓
http://www.gigafree.net/system/install/geekuninstaller.html
ダウンロード↓
http://www.geekuninstaller.com/download
「download free」をクリック、保存後、解凍してください。
片付ける時はフォルダごと手動で削除してください。

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

そして下記ページは作業開始前に必ず熟読して、必要な場合が出たらそれに沿って対処してください。この対処が必要な事例が増えています。
http://note.chiebukuro.yahoo.co.jp/detail/n335704

準備できたら作業開始です。
なお、このあとの作業で探しても見つからないものはスルーして進めていいですが、指示した対象外の物は絶対にいじらないようによく見て作業してください。

また、作業のうえで削除指示するものもあるはずですが、ご自身で必要として入れたものがあればそれの削除は保留して、次のレスでその旨を教えてください。

最初にWindowsUpdateの確認して、必要な更新があればそれを全部更新してください。
ですがそこで更新ができないようならこの後に説明する作業はせずに更新失敗の旨をレスで教えてください。
WUが正常にできなくすることで、感染の解析処置を阻害してくる危険なマルウェアが激増しているためです。
Windowsの各種更新(WindowsUpdate)は常に最新に適用しておかないと、それだけで危険な感染はすぐにでも起きますよ。

少なくとも下記のアプリは旧バージョンです。
>Skype(TM) 7.14 Skype Technologies S.A. 2015/11/23 78.5 MB 7.14.106

各種アプリの更新を怠っただけでも、脆弱性を悪用されて深刻な感染はあっさり起きます。
使うなら最新版に更新してください。使わないアプリならアンインストールが安全です。
他にも旧バージョンないか調べて、あれば同様に更新するか、アンインストールしてください。

ここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

ここでスタートメニューの「アクセサリ」→「システムツール」から「ディスククリーンアップ」を起動してください。
起動したら対象ドライブでCドライブを選択してスキャンして、表示された中の「ダウンロードされたプログラムファイル」「インターネット一時ファイル」「一時ファイル」の項目だけチェックを入れてから「OK」「ファイルの削除」を押してください。
これを実行すると選択した部分のゴミファイルが掃除されます。

これを実行することで作業時にスキャンで検出される無駄なゴミファイルも減るのでその分かなり時間や解析も楽になるのです。
「ごみ箱」など他の項目にチェックしないのは、間違って正常なファイルを削除しないためと、もし正常なファイルを削除してごみ箱に入れても戻せるようにするための措置です。

続いてCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

次に「スケジュールされたタスク」タブと「コンテキストメニュー」タブのログも同じ要領で保存してください。

続いて今度はCC画面の左側にある「Browser Plugin」の項目から「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにCCでのインストール情報ログを取り直してください。

取り直した情報ログと、CCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。

それと下記アプリには注意しておいてください。
>ソースネクスト 驚速 for Windows 8 SOURCENEXT 2014/05/19 30.4 MB 1.0.0
>ソースネクスト 驚速デフラグ SOURCENEXT CORPORATION 2014/05/19 138 MB 1.1.0
>ソースネクスト 驚速メモリ SOURCENEXT CORPORATION 2014/05/19 25.3 MB 1.1.0

驚速シリーズはPCの動作を早くすると謳う製品ですが、ネット上ではかなり昔からよくない評価を集めている製品です。
よければ「驚速 評価」のキーワードでweb検索してみてください。

現在安定して使えているならそれに越したことはないので継続使用の可否の判断はお任せしますが、もし何か動作上の異常起きたら上記3つはアンインストールして動作確認も考えておいてください。
せっかく有償で購入した商品ならアンインストールはもったいないでしょうが、以後はどんな商品でも購入前にはその評価を検索してから判断をお勧めします
  • 悪代官
  • 2016/02/28 (Sun) 07:54:19
Re: yourserching に感染してしまったようです
返信ありがとうございます。

驚速についての情報,ありがとうございます。
状況を見てアンインストールも考えたいと思います。

現在の状態ですが,以下のような症状が出ています。(報告が遅れて申し訳ありません)

・IEのホームページを変更できない。
・IEを使っていると,途中で違うページが開いてしまう。

Chromeでもホームページの変更ができなかったのですが,設定をリセットしたら
変更できるようになりました。(IEでもリセットしましたが症状が改善されませんでした)

お忙しいと思いますが,よろしくお願いします.

以下,ログです。
<HJTのログ>
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 21:12:56, on 2016/02/28
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Fujitsu\F-LINK\WSDMAIN.exe
C:\Windows\System32\TiltWheelMouse.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsecurity.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SysMon.Exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files (x86)\BlueStacks\HD-Frontend.exe
C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\sfbrun32.exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Statistics.exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Message.exe
C:\Program Files (x86)\Fujitsu\FJAgent\Engines\CheckCdsEngine\CheckCdsEngine.exe
C:\Program Files (x86)\Corel\MLE2\MLEngine.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\M\AppData\Local\Microsoft\Windows\INetCache\IE\NEIT8DXY\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: K7 Web Protection - {08B3B4B6-02DA-4658-8BA6-5974E3EBB03D} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O2 - BHO: RoboForm BHO - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: K7 Web Protection - {8551D65A-13A9-4e63-8472-9325B1B928C0} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O4 - HKLM\..\Run: [CorelDA] C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
O4 - HKLM\..\Run: [K7TSStart] C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSecurity.exe
O4 - HKLM\..\Run: [Sourcenext.SSS.Launcher] "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [BlueStacks Frontend] C:\Program Files (x86)\BlueStacks\HD-Frontend.exe Android hidemode
O4 - HKLM\..\Run: [FUJ02B1_Apps] "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411
O4 - HKCU\..\Run: [AirGet] "C:\Program Files (x86)\sMedio\AirGet\AirGet.exe" silent
O4 - HKCU\..\Run: [DriveStudio] "C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe" silent
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: F-Launcher.lnk = C:\Program Files\Fujitsu\F-Launcher\F-Launcher.exe
O4 - Global Startup: My Cloud リモートアクセス設定スタートアップ.lnk = C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCRemoteAccess.exe
O4 - Global Startup: PointGrab Hand Gesture Control.lnk = C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
O4 - Global Startup: 驚速 for Windows 8 スタート.lnk = ?
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: 保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DataExchangeUtilityService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\DEUService.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FJAgentSVC - 富士通株式会社 - C:\Program Files (x86)\Fujitsu\FJAgent\Core\bin\FJAgentSVC.exe
O23 - Service: FJAutoSignIn - FUJITSU LIMITED - C:\Program Files\Fujitsu\AutoSignIn\AutoSignInService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: K7Carnivore Service (K7CrvSvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7CrvSvc.exe
O23 - Service: K7Computng - EMail Proxy Server (K7EmlPxy) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7EmlPxy.exe
O23 - Service: K7Firewall Services (K7FWSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7FWSrvc.exe
O23 - Service: K7Privacy Services (K7PSSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7PSSrvc.exe
O23 - Service: K7RealTime AntiVirus Services (K7RTScan) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7RTScan.exe
O23 - Service: K7SpmSrc - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SpmSrc.exe
O23 - Service: K7TotalSecurity Manager (K7TSMngr) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSMngr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Kyosoku-Defrag - Unknown owner - C:\Program Files\SOURCENEXT\ソースネクスト 驚速デフラグ\defrag.service.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: My Cloud ビデオ サーバー - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\VDMS\dms_svc.exe
O23 - Service: My Cloud ビデオ サーバー+ - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\Cindy\dms_sync_svc.exe
O23 - Service: My Cloud Eco DX Service (MyCloudEcoSvc) - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\MCEco\MyCloudEchoSvc.exe
O23 - Service: MyCloudRemoteAccessConnectSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCTunnel.exe
O23 - Service: MyCloudRemoteAccessSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\svcMPPFclient.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PG_Service_Launcher - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Service_Launcher.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Performance Tweak Agent (PTAgent) - SOURCENEXT CORPORATION - C:\Program Files\SOURCENEXT\Kyosoku-Memory Next Basic\Performance Tweak Agent.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PCカルテ スケジュール サービス (SKARUTE) - FUJITSU LIMITED - C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SSPF HGW Service (SSPFHGWService) - Unknown owner - C:\Program Files (x86)\Fujitsu\MCEcoUty\MCEcoUty.exe
O23 - Service: UDSS - Unknown owner - C:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13460 bytes


<CCのログ>
@niftyでブロードバンド ニフティ株式会社 2013/09/02 1.00.000
Battery Utility FUJITSU LIMITED 2013/09/02 4.01.22.004
BlueStacks App Player BlueStack Systems, Inc. 2015/03/28 0.9.18.5107
BlueStacks Notification Center BlueStack Systems, Inc. 2015/03/28 168 MB 0.9.18.5107
BooksV FUJITSU 2014/05/01 1.1.7.0
CCleaner Piriform 2016/02/28 5.15
Corel Digital Studio for FUJITSU Corel Corporation 2014/04/29 637 MB 1.5.25.156.2
Corel WinDVD Corel Inc. 2014/04/06 244 MB 10.9.0.155
DigiBookBrowser Version 1.5.3.87 LECRE Inc. 2013/09/02 8.53 MB 1.5.3.87
Drive Studio設定Utility FUJITSU LIMITED 2014/06/24 126 MB 1.00.0003
F-Launcher FUJITSU LIMITED 2013/09/02 2.02 MB 2.2.1.0
F-LINK FUJITSU LIMITED 2014/04/29 7.89 MB 3.3.0.0
Fresh Paint Microsoft Corporation 2016/01/12 2.0.15133.0
Fujitsu BIOS Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.1.0
Fujitsu MobilityCenter Extension Utility FUJITSU LIMITED 2013/09/02 4.01.00.000
Google Chrome Google Inc. 2014/04/30 48.0.2564.116
Inspirium辞書検索ライブラリ Fujitsu 2013/09/02 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 2013/08/22 9.0.20.1447
Intel(R) Processor Graphics Intel Corporation 2015/07/24 10.18.14.4170
Intel(R) Rapid Storage Technology Intel Corporation 2014/04/06 12.8.2.1000
LINE LINE Corporation 2015/06/22 4.0.3.369
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/02/24 15.0.4797.1003
Microsoft SkyDrive Microsoft Corporation 2014/04/29 25.1 MB 16.4.6013.0910
Microsoft SQL Server Compact 3.5 SP2 JPN Microsoft Corporation 2013/09/02 4.89 MB 3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 JPN Microsoft Corporation 2013/09/02 7.08 MB 3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 JPN Microsoft Corporation 2015/10/03 20.8 MB 4.0.8876.1
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2014/12/18 4.47 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2014/05/19 4.69 MB 8.0.56336
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/25 13.1 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2014/04/06 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/02/20 1.29 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 11.1 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 Microsoft Corporation 2014/04/06 17.4 MB 11.0.51106.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/04/06 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/04/06 10.0.31119
MSN スポーツ Microsoft Corporation 2015/07/15 3.0.4.336
MSN トラベル Microsoft Corporation 2015/07/15 3.0.4.336
MSN ニュース Microsoft Corporation 2015/07/15 3.0.4.336
MSN フード&レシピ Microsoft Corporation 2015/07/15 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2015/07/15 3.0.4.336
MSN マネー Microsoft Corporation 2015/07/15 3.0.4.336
MSN 天気 Microsoft Corporation 2015/10/24 3.0.4.337
music.jp  for FUJITSU MTI LTD 2015/03/27 2.11.0.1
My Cloud エコDX FUJITSU 2015/07/17 2.2.0.2
My Cloud エコDX Utility FUJITSU LIMITED 2015/07/24 168 MB 2.1.1.0
My Cloud エコDX設定Utility FUJITSU LIMITED 2015/10/03 1.75 MB 2.2.0.1
My Cloud スタート FUJITSU 2014/06/14 2.3.0.2
My Cloud データ連携Utility 富士通株式会社 2014/04/29 29.9 MB 1.00.03.006
My Cloud ビデオ サーバー DigiOn 2015/07/24 34.5 MB 3.3.30.0
My Cloud ビデオ2 DigiOn 2015/07/11 1.2.1.9
My Cloud フォト CYBERLINK.COM CORPORATION. 2014/09/10 1.0.3219.33373
My Cloud ホーム FUJITSU 2014/05/01 1.1.1.1
My Cloud ミュージック sMedio Inc 2015/02/15 1.0.0.110
My Cloud モバイルアクセス sMedio Inc 2014/05/01 2.3.0.42
My Cloud モバイルアクセス設定Utility FUJITSU LIMITED 2014/06/24 132 MB 2.03.0008
My Cloud リモートアクセス設定Utility FUJITSU LIMITED 2014/04/29 1.25 MB 1.0.000.008
NAVITIME for FUJITSU NAVITIMEJAPAN 2014/05/14 2.0.3.0
nissen Smart Catalog Nissen.Co.,LTD 2014/04/27 1.2.0.27
Office タッチ リボン Microsoft Corporation 2014/04/06 740 KB 1.0.0
PCカルテ FUJITSU LIMITED 2013/09/02 6.97 MB 2.0.0.1
Peakshift setting FUJITSU LIMITED 2013/09/02 2.01.00.001
PhotoWizard Microsoft 2014/04/06 335 MB 1.5.0
Plugfree NETWORK 富士通株式会社 2013/09/02 7.1.0.1
PointGrab Hand Gesture Control PointGrab 2014/04/29 124 MB 03.12.00.03786
Pointing Device Utility FUJITSU LIMITED 2013/09/02 3.52 MB 2.1.0.0
Qualcomm Atheros Bluetooth Suite (64) Qualcomm Atheros Communications 2014/04/06 93.9 MB 8.0.1.305
Qualcomm Atheros Client Installation Program Qualcomm Atheros 2014/04/06 10.0
Realtek Card Reader Realtek Semiconductor Corp. 2013/09/02 6.2.9200.39048
Realtek Ethernet Controller Driver Realtek 2013/09/02 8.18.621.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/04/29 6.0.1.7059
RoboForm 7-9-9-1 (All Users) Siber Systems 2014/08/22 20.0 MB 7-9-9-1
Roxio Creator LJ Roxio 2014/04/06 121 MB 12.2.37.11
Sense YOU Technology 設定 FUJITSU LIMITED 2014/04/06 3.0.0.2
SetPoint 6.60 2015/03/25 39.0 MB 6.60.170
Skype Skype 2015/06/21 3.1.0.1016
Skype(TM) 7.18 Skype Technologies S.A. 2016/02/28 79.9 MB 7.18.112
Synaptics Pointing Device Driver Synaptics Incorporated 2014/01/29 46.4 MB 17.0.9.1
Timepiece Ensemble GLace 2015/05/02 4.37 GB 1.00.0000
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/09/07 41.7 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2015/09/07 11.6 MB 15.0.2013
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/07/05 9.00 KB 16.0.1515.1
Windows アラーム Microsoft Corporation 2014/05/01 6.3.9654.20335
Windows サウンド レコーダー Microsoft Corporation 2014/05/01 6.3.9600.20280
Windows スキャン Microsoft Corporation 2014/11/05 6.3.9654.17133
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02B1) System (06/26/2013 1.23) FUJITSU LIMITED 2014/04/06 06/26/2013 1.23
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02E3) System (07/02/2013 1.30.1.0) FUJITSU LIMITED 2014/04/06 07/02/2013 1.30.1.0
Windows ヘルプ+使い方 Microsoft Corporation 2014/08/07 6.3.9654.20559
Windows リーディング リスト Microsoft Corporation 2015/08/13 6.3.9654.20947
Windows 電卓 Microsoft Corporation 2014/05/01 6.3.9600.20278
Wireless Radio Switch Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.0.0
Yahoo!オークション (ft) Yahoo! JAPAN 2014/04/27 2.0.0.4
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2014/04/28
アップデートナビ FUJITSU LIMITED 2015/09/06 14.8 MB 1.2.0071
ウイルスセキュリティ ソースネクスト株式会社 2014/04/30 12.00
エレコム マウスアシスタント4 ELECOM 2014/05/02 4.01.00000
カメラセンサー機能ON/OFFツール FUJITSU LIMITED 2014/04/06 V1.02
クロノクロック 2015/12/19
ゲーム Microsoft Corporation 2014/05/01 2.0.139.0
ココロ@ファンクション! WILLPLUS 2016/02/20 1.00.0000
ココロ@ファンクション! NEO WILLPLUS 2016/02/20 1.00.0000
サポートツール 「パソコンの情報」と「トラブル解決ナビの起動」 FUJITSU LIMITED 2013/09/02 3.31 MB 1.2.0.0
シュフーチラシアプリ for FUJITSU TOPPAN PRINTING CO., LTD. 2016/02/10 1.4.0.0
ステータスパネルスイッチ FUJITSU LIMITED 2013/09/02 5.32 MB 1.0.0.0
ソフトウェアディスク検索 FUJITSU LIMITED 2013/09/02 1.86 MB 2.0.0.0
ソースネクスト アップデート 4.0 SOURCENEXT 2014/06/07 26.5 MB 9.09.0000
ソースネクスト 驚速 for Windows 8 SOURCENEXT 2014/05/19 30.4 MB 1.0.0
ソースネクスト 驚速デフラグ SOURCENEXT CORPORATION 2014/05/19 138 MB 1.1.0
ソースネクスト 驚速メモリ SOURCENEXT CORPORATION 2014/05/19 25.3 MB 1.1.0
チケットメーカー FUJITSU LIMITED 2013/09/02 833 KB 3.1.0.0
バックアップナビ FUJITSU LIMITED 2013/09/02 24.7 MB 2.3.0.0
パソコン乗換ガイド 株式会社富士通ソフトウェアテクノロジーズ 2013/09/02 15.2 MB 1.1.0.1
ビデオ Microsoft Corporation 2015/11/06 2.6.446.0
マイミュージアム FUJITSU 2014/05/01 1.2.0.3
ミュージック Microsoft Corporation 2015/03/14 2.6.672.0
メール、カレンダー、People 2015/07/03
リーダー Microsoft Corporation 2016/02/10 6.4.9926.18190
ワンタッチボタン設定 FUJITSU LIMITED 2013/09/02 3.21 MB 8.5.3.0
健康生活日記 FUJITSU 2015/02/15 2.0.1.4
地図 Microsoft Corporation 2014/09/11 2.1.3230.2048
宿探 for FUJITSU 繝舌Μ繝・繝シ繧ウ繝槭・繧ケ繹ア 2014/04/27 1.3.0.3
富士通PC 辞書セット(広辞苑第六版+リーダーズ英和辞典+新和英中辞典+現代用語の基礎知識+学研パーソナル統合辞典) 富士通株式会社 2013/09/02 513 KB 2.0.0
富士通アドバイザー FUJITSU LIMITED 2013/09/02 21.8 MB 4.3.0.0
富士通パソコン お客様サポート FUJITSU 2015/07/17 1.0.0.2
富士通拡張機能ユーティリティ FUJITSU LIMITED 2013/09/02 2.88 MB 3.6.0.0
恋色マリアージュ ま~まれぇど 2015/08/08 1.01
書き込み機能拡張ユーティリティ FUJITSU LIMITED 2013/09/02 2.3.0.0
楽しもう!Office ライフ Microsoft Corporation 2014/04/06 636 KB 1.0.0
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/01/06 2.2.2.4
楽天レシピ 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2014/05/01 1.2.0.0
省電力ユーティリティ FUJITSU LIMITED 2013/09/02 3.20 MB 143.0.1.0 (00.003)
筆ぐるめ 20 富士ソフト株式会社 2013/09/02 719 MB 20.00.0008
自動サインイン設定 FUJITSU LIMITED 2013/09/02 410 KB 1.0.2.0
電子辞書 FUJITSU LIMITED 2013/09/02 22.5 MB 5.0.2.0
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2013/09/02 203 KB 3.0.0.0
@メニュー 2013/08/22 V7.0
@メニュー FUJITSU LIMITED 2013/09/02 3.23 MB 7.2.0.0



<CC(Windouws)のログ>
有効 HKCU:Run AirGet sMedio Inc "C:\Program Files (x86)\sMedio\AirGet\AirGet.exe" silent
有効 HKCU:Run DriveStudio FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe" silent
有効 HKCU:Run RoboForm Siber Systems "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
有効 HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
有効 HKLM:Run BlueStacks Agent BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Agent.exe
有効 HKLM:Run BlueStacks Frontend BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Frontend.exe Android hidemode
有効 HKLM:Run CorelDA COREL TW CORP. C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
有効 HKLM:Run ElcMouse C:\Program Files\ELECOM_Mouse_Driver\ElcMouseApl.exe
有効 HKLM:Run EvtMgr6 Logicool, Inc. C:\Program Files\SetPointP\SetPoint.exe /launchGaming
有効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
有効 HKLM:Run FUJ02B1_Apps "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411
有効 HKLM:Run K7TSStart K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSecurity.exe
有効 HKLM:Run MouseDriver Pixart Imaging Inc TiltWheelMouse.exe
有効 HKLM:Run RtHDVBg_DTS Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSU2P
有効 HKLM:Run RtHDVBg_DTS_SWVOL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSSWVOL
有効 HKLM:Run RTHDVCPL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
有効 HKLM:Run Sourcenext.SSS.Launcher SOURCENEXT CORPORATION "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup Common My Cloud リモートアクセス設定スタートアップ.lnk FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCRemoteAccess.exe
有効 Startup Common PointGrab Hand Gesture Control.lnk PointGrab LTD C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
有効 Startup Common 驚速 for Windows 8 スタート.lnk SOURCENEXT C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\SFBRun.exe
有効 Startup User F-Launcher.lnk FUJITSU C:\Program Files\Fujitsu\F-Launcher\F-Launcher.exe


<CC(スケジュールされたタスク)のログ>
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Open URL by RoboForm Microsoft Corporation C:\windows\system32\rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMOJGMNJKMNJPMNJMMCNKMLJOJJJCNLMMMPMKMCNHMJJLMJMCNJJIMLJMMHMOMIMNJLMHMLJLJJNJICMIMCNGMCNGMFMOMOMCNPMCNGMJMPMPMFMJMCNMMCNGMJMPMPMCNNMJNPICMPMFMEKMICNJJCKFMOMOMMMJNHICMJIKJNIKIPIJNBJCMCLOJMIOJMIHJGJPNLKMIKIEJOJHJOJNIOJJNKJCMJNNICMJNDJCMFJPIJNMJCMOMFMOMPMFMPMJNFICMGJLJKJBJLIGJLIGJKJMIBNKJHIKJ"
無効 Task Optimize Start Menu Cache Files-S-1-5-21-3620435610-4091346163-423542706-1001
有効 Task Optimize Start Menu Cache Files-S-1-5-21-3620435610-4091346163-423542706-500
有効 Task Run RoboForm TaskBar Icon Siber Systems C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
有効 Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"


<CC(コンテキストメニュー)のログ>
有効 File Atheros Atheros Commnucations C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll
有効 File FTShellContext Qualcomm®Atheros® C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll
有効 File K7Computing.K7AVScanner K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSSExt64.dll
有効 Folder K7Computing.K7AVScanner K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSSExt64.dll


<CC(IE)のログ>
無効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
無効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
無効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
無効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Extension ツールバー表示 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension ツールバー表示 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Extension フォーム記入 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension フォーム記入 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Extension 保存 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension 保存 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Helper K7 Web Protection K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
無効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper RoboForm Toolbar Helper Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Helper RoboForm Toolbar Helper Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Toolbar K7 Web Protection K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
無効 Toolbar RoboForm Toolbar Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Toolbar RoboForm Toolbar Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll


<CC(Chorme)のログ>
有効 App Gmail 8.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.60 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.60_0
有効 App Google ドライブ 14.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0
有効 App YouTube 4.2.8 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0
無効 Extension BIGLOBE トップページ 1.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\laimjpeeadmiichdephknpklpjkllkih\1.1_0
有効 Extension ECナビツールバー 1.1.4 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocfdalfbgbepcfcjkbgfnjloddeejnff\1.1.4_0
有効 Extension Google オフライン ドキュメント 1.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.1_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
無効 Extension K7 WebProtection 3.8 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlpfamleaodfgmfnggonbfljhjggbdbe\3.8_0
有効 Extension RoboForm Password Manager 7.9.16.9 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob\7.9.16.9_0

  • nanashi
  • 2016/02/28 (Sun) 21:52:39
次は2つのツールでスキャンです
作業と報告、ご苦労様です。

応急処置作業で少し沈静化したようですが、まだ完全ではないですね。

また説明に沿って次の作業をお願いします。

次は下記のツールを準備してください。
「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。
使い方は下記サイト様に詳しい説明があるのでサンショウウオ↓
http://www.japan-secure.com/entry/adwcleaner.html

Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ダウンロード
https://www.malwarebytes.org/mwb-download/thankyou/
ファイル直リンです。保存しておいてください。

使い方の説明サイト
http://www.gigafree.net/security/MalwarebytesAnti-MalwareFree.html

準備できたらMBAMをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。
なお、ここでMBAMの更新で「プログラム」自体は更新せず、定義だけ更新しておいてください。
プログラム本体を更新すると、バグ多発中の最新版になってしまうので、せっかく旧バージョンでインストールした意味がなくなります。

続いてここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

次にMBAMも起動して定義のアップデートだけしてから、MBAMも終了しておいてください。

両ツールのアップデートができたらディスククリーンアップを使ってゴミファイルの掃除したあと、PCをセーフモードで再起動してしてください。

続いてPCをセーフモード起動してから、先に一度起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

ACでの作業ができたら次はMBAMの作業です。
またセーフモード起動してからMBAM起動してスキャンしてください。
MBAM起動したら「スキャン」タブで「カスタムスキャン」選択後、Cドライブを含む全ドライブを選択してください。
それとルートキットスキャンの項目もチェック入れておいてください。

この形でスキャンすると時間はかかりますができるだけ細かくスキャンするためです。

両ツールのスキャンの順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、画面右下にその結果を知らせるメッセージが出るので、それを押すとその結果が表示されるはずです。
そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

このあとしばらくPC状態を様子見後、作業後に保存したACとMBAMのログを返信に貼り付けて、それを状態報告とともにレスで見せてください。
  • 悪代官
  • 2016/02/28 (Sun) 22:51:45
スキャン終了しました
お世話になっています。
2つのツールでのスキャンしてみました。

状況報告です。
IEでホームページの設定ができるようになりました。
ほかのページに飛んでしまう症状はまだ残っているようです。

スキャンしたログですが,MBAMので自分のミスで取得に失敗してしまいました。
一応、スキャンした結果のほうは出力できたので、そちらを載せておきます。
ご指示いただいたのに申し訳ありません。

お忙しいと思いますが、よろしくお願いします。


<ACのログ>
# AdwCleaner v5.037 - ログファイルの作成日 01/03/2016 作成時間 23:00:43
# 更新日 28/02/2016 作成元 Xplode
# データベース : 2016-02-28.2 [ローカル]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : M - USER
# 実行場所 : C:\Users\M\Downloads\adwcleaner_5.037.exe
# オプション : 削除
# サポート : http://toolslib.net/forum

***** [ サービス ] *****


***** [ フォルダ ] *****

[-] フォルダ 削除済み項目 : C:\Program Files (x86)\RayDld
[-] フォルダ 削除済み項目 : C:\Users\M\AppData\RoaMing\yoursearching

***** [ ファイル ] *****

[-] ファイル 削除済み項目 : C:\windows\SysNative\roboot64.exe

***** [ DLLs ] *****


***** [ ショートカット ] *****

[-] ショートカット 駆除済み項目 : C:\Users\Public\Desktop\Google Chrome.lnk
[-] ショートカット 駆除済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[-] ショートカット 駆除済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SOURCENEXT\ソースネクスト アップデート\ソースネクスト アップデート.lnk
[-] ショートカット 駆除済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GLace\Timepiece Ensemble\Timepiece Ensemble の削除.lnk
[-] ショートカット 駆除済み項目 : C:\Users\M\AppData\RoaMing\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[-] ショートカット 駆除済み項目 : C:\Users\M\AppData\RoaMing\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[-] ショートカット 駆除済み項目 : C:\Users\M\AppData\RoaMing\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk

***** [ スケジュールタスク ] *****


***** [ レジストリ ] *****

[-] キー 削除済み項目 : HKLM\SOFTWARE\RayDld
[-] キー 削除済み項目 : HKLM\SOFTWARE\yoursearchingSoftware
[-] キー 削除済み項目 : HKLM\SOFTWARE\SprgFiles
[-] キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\chatango.com
[-] キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\st.chatango.com

***** [ Webブラウザ ] *****


*************************

:: "Tracing"キーは削除します
:: Winsock設定を初期化しました

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [2478 バイト] - [01/03/2016 23:00:43]
C:\AdwCleaner\AdwCleaner[S1].txt - [3042 バイト] - [27/02/2016 23:14:20]
C:\AdwCleaner\AdwCleaner[S2].txt - [3389 バイト] - [01/03/2016 22:58:51]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2709 バイト] ##########


<ACのログ2>
# AdwCleaner v5.037 - ログファイルの作成日 01/03/2016 作成時間 22:58:51
# 更新日 28/02/2016 作成元 Xplode
# データベース : 2016-02-28.2 [ローカル]
# オペレーティングシステム : Windows 8.1 (x64)
# ユーザー名 : M - USER
# 実行場所 : C:\Users\M\Downloads\adwcleaner_5.037.exe
# オプション : スキャン
# サポート : http://toolslib.net/forum

***** [ サービス ] *****


***** [ フォルダ ] *****

フォルダ 検出済み項目 : C:\Program Files (x86)\RayDld
フォルダ 検出済み項目 : C:\Users\M\AppData\RoaMing\yoursearching

***** [ ファイル ] *****

ファイル 検出済み項目 : C:\windows\SysNative\roboot64.exe

***** [ DLL ] *****


***** [ ショートカット ] *****

ショートカット 感染します : C:\Users\Public\Desktop\Google Chrome.lnk ( hxxp://www.yoursearching.com/?type=sc&ts=1456568476&z=f2b77bc68183e506519fce4g0z4waq8w1qab4z4m1q&from=exp1&uid=toshibaxmq01abd075_343mp2nmtxx343mp2nmt )
ショートカット 感染します : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk ( hxxp://www.yoursearching.com/?type=sc&ts=1456568476&z=f2b77bc68183e506519fce4g0z4waq8w1qab4z4m1q&from=exp1&uid=toshibaxmq01abd075_343mp2nmtxx343mp2nmt )
ショートカット 感染します : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SOURCENEXT\ソースネクスト アップデート\ソースネクスト アップデート.lnk ( "hxxp://esurf.biz/?ssid=1456568447&a=1024132&src=sh&uuid=1ad00c89-926f-45ef-baa8-ae3b288bb210" )
ショートカット 感染します : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GLace\Timepiece Ensemble\Timepiece Ensemble の削除.lnk ( hxxp://www.yoursearching.com/?type=sc&ts=1456568476&z=f2b77bc68183e506519fce4g0z4waq8w1qab4z4m1q&from=exp1&uid=toshibaxmq01abd075_343mp2nmtxx343mp2nmt )
ショートカット 感染します : C:\Users\M\AppData\RoaMing\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ( "hxxp://esurf.biz/?ssid=1456568447&a=1024132&src=sh&uuid=1ad00c89-926f-45ef-baa8-ae3b288bb210" )
ショートカット 感染します : C:\Users\M\AppData\RoaMing\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ( "hxxp://esurf.biz/?ssid=1456568447&a=1024132&src=sh&uuid=1ad00c89-926f-45ef-baa8-ae3b288bb210" )
ショートカット 感染します : C:\Users\M\AppData\RoaMing\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk ( "hxxp://esurf.biz/?ssid=1456568447&a=1024132&src=sh&uuid=1ad00c89-926f-45ef-baa8-ae3b288bb210" )

***** [ スケジュールタスク ] *****


***** [ レジストリ ] *****

キー 検出済み項目 : HKLM\SOFTWARE\RayDld
キー 検出済み項目 : HKLM\SOFTWARE\yoursearchingSoftware
キー 検出済み項目 : HKLM\SOFTWARE\SprgFiles
キー 検出済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\chatango.com
キー 検出済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\st.chatango.com

***** [ Webブラウザ ] *****

<MBAMの結果>
Malwarebytes Anti-Malware
www.malwarebytes.org

スキャン日付: 2016/03/01
スキャン時刻: 23:11
ログファイル: mbam_log.txt
管理者: はい

バージョン: 2.2.0.1024
マルウェアデータベース: v2016.03.01.04
ルートキットデータベース: v2016.02.27.01
ライセンス: 無料版
マルウェア保護機能: 無効
悪質ウェブサイト保護機能: 無効
自己防衛: 無効

OS: Windows 8.1
CPU: x64
ファイルシステム: NTFS
ユーザー: M

スキャン形式: カスタムスキャン
結果: 完了しました
スキャンされたオブジェクト数: 575440
経過時間: 1 時間, 49 分, 17 秒

メモリ: 有効
スタートアップ: 有効
ファイルシステム: 有効
アーカイブ: 有効
ルートキット: 有効
ヒューリスティック: 有効
PUP: 有効
PUM: 有効

プロセス: 0
(なし悪意のある項目を検出)

モジュール: 0
(なし悪意のある項目を検出)

レジストリキー: 0
(なし悪意のある項目を検出)

レジストリ値: 0
(なし悪意のある項目を検出)

レジストリデータ: 0
(なし悪意のある項目を検出)

フォルダー: 0
(なし悪意のある項目を検出)

ファイル: 6
PUP.Optional.Elex, C:\ProgramData\K7 Computing\K7TSecurity\K7AntiVirus\Quarantine\100A76090E37203A3F5EAE238010400E.k7v, , [f2a6fd8577224beb8cf42e9442bf0bf5],
PUP.Optional.Elex, C:\ProgramData\K7 Computing\K7TSecurity\K7AntiVirus\Quarantine\CE5F75B4FD64ADA0B8E15E09AEAB1F7A.k7v, , [a7f16a18a3f6330383004082c23f31cf],
PUP.Optional.YourSearching.ShrtCln, C:\Users\M\AppData\Local\Temp\J4tzykiLsB.exe, , [b9dfadd5b5e40a2c19cd44ddad5818e8],
Adware.EoRezo, C:\Users\M\AppData\Local\Temp\YG7T1bfdDE.exe, , [eaae7f035940191d75a811c3847d55ab],
PUP.Optional.Elex, C:\Users\M\AppData\Local\Temp\tmp7z_0\Ray_1.0.0.30.exe, , [02960b77b1e8b87e2261fcc6af52d32d],
PUP.Optional.TerraClicks.ShrtCln, C:\Users\M\AppData\Local\Microsoft\Windows\INetCookies\Low\RDUQPGSM.txt, , [3d5bbfc3badf48ee8016ee3e2dd8dc24],

物理セクタ: 0
(なし悪意のある項目を検出)


(end)


*************************

C:\AdwCleaner\AdwCleaner[S1].txt - [3042 バイト] - [27/02/2016 23:14:20]
C:\AdwCleaner\AdwCleaner[S2].txt - [3229 バイト] - [01/03/2016 22:58:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [3306 バイト] ##########

  • nanashi
  • 2016/03/02 (Wed) 22:50:50
今度はOTLで踏み込んで解析です
作業と報告、ご苦労様です。

ログは見せてくれたものでいいです。

>IEでホームページの設定ができるようになりました。
>ほかのページに飛んでしまう症状はまだ残っているようです。

沈静化はしているようですがまだ完全ではないですね。
両ツールで検出されたものは全部ツール上から隔離処置していればいいです。

今度は別のツールで更に踏み込んで解析します。
以下のツールを準備してください。
OTL(OldTimer Listit)
「Download」ボタンからDLしたら保存しておいてください。
http://oldtimer.geekstogo.com/OTL.exe
片付けるときは起動後に「Cleanup」ボタンを押せば自動で削除されます。

他のプログラムを起動しない状態でOTLを起動してください。
起動したら、ウィンドウの上の方にある「Scan All Users」にチェックを入れ、以下のコマンドを「Custom Scan/Fixes」にコピペしてください。

SHOWHIDDEN
%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
ACTIVEX
CREATERESTOREPOINT

その後、左上の「Run Scan」を押すとスキャン開始されます。
スキャン開始後、PC環境にもよりますが数分ほどすると、「OTL.txt」と「Extras.txt」がOTL.exeと同じ場所に作成されるはずなので、この2つのファイルをデスクトップあたりに保存しておいてください。
なお、Extras.txtは出ないこともありますが、その場合はOTL.txtだけでもいいです。

このあとOTLログを丸ごと返信に貼り付けてレスで見せてください。
ただしOTLログはかなり長くなるため、一度に送信してもfc2の文字数制限で途切れます。
なのでログも適当なところで分割して、複数回に分けてレス送信してください。

OTLでスキャンしただけでは何も変化は起きません。
この結果を見て、検出されたものを次回以降の作業で処置することになるはずです
  • 悪代官
  • 2016/03/03 (Thu) 09:00:06
OTL.txt ①
お世話になっております。

OTLでのスキャンか終了しました。

以下にログを張り付けておきます。

OTL logfile created on: 2016/03/05 13:01:50 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\M\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.18205)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.91 Gb Total Physical Memory | 5.87 Gb Available Physical Memory | 74.15% Memory free
9.16 Gb Paging File | 6.59 Gb Available in Paging File | 71.92% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 338.38 Gb Total Space | 227.32 Gb Free Space | 67.18% Space Free | Partition Type: NTFS
Drive D: | 338.38 Gb Total Space | 338.24 Gb Free Space | 99.96% Space Free | Partition Type: NTFS

Computer Name: USER | User Name: M | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - File not found --
PRC - [2016/03/05 12:57:06 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\M\Downloads\OTL.exe
PRC - [2015/11/30 22:07:34 | 000,287,968 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7fwsrvc.exe
PRC - [2015/11/17 14:22:40 | 000,291,064 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsmngr.exe
PRC - [2015/10/23 13:45:00 | 000,154,136 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7emlpxy.exe
PRC - [2015/10/02 17:53:44 | 001,908,320 | ---- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Message.exe
PRC - [2015/10/02 17:53:44 | 000,314,464 | ---- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Statistics.exe
PRC - [2015/07/10 19:36:50 | 000,208,704 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsecurity.exe
PRC - [2015/07/09 19:39:32 | 000,255,000 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7rtscan.exe
PRC - [2015/04/14 20:45:38 | 000,580,416 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7pssrvc.exe
PRC - [2015/03/24 16:54:32 | 000,798,424 | ---- | M] (BlueStack Systems, Inc.) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
PRC - [2015/03/24 16:53:46 | 000,872,152 | ---- | M] (BlueStack Systems, Inc.) -- C:\Program Files (x86)\BlueStacks\HD-Agent.exe
PRC - [2015/03/24 16:53:18 | 001,003,224 | ---- | M] (BlueStack Systems, Inc.) -- C:\Program Files (x86)\BlueStacks\HD-Frontend.exe
PRC - [2015/03/24 16:52:28 | 000,388,824 | ---- | M] (BlueStack Systems, Inc.) -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
PRC - [2014/08/22 00:35:00 | 000,111,320 | ---- | M] (Siber Systems) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
PRC - [2014/05/16 14:14:38 | 000,123,160 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe
PRC - [2014/05/16 14:13:20 | 000,032,024 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudioService.exe
PRC - [2014/04/28 14:09:40 | 000,032,536 | ---- | M] (sMedio Inc) -- C:\Program Files (x86)\sMedio\AirGet\AirGetService.exe
PRC - [2014/04/28 14:08:56 | 000,108,824 | ---- | M] (sMedio Inc) -- C:\Program Files (x86)\sMedio\AirGet\AirGet.exe
PRC - [2014/04/22 15:07:34 | 000,323,584 | ---- | M] () -- C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\Cindy\dms_sync_svc.exe
PRC - [2014/04/22 15:07:32 | 000,208,896 | ---- | M] () -- C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\VDMS\dms_svc.exe
PRC - [2014/02/04 11:18:10 | 001,125,104 | ---- | M] (Fujitsu) -- C:\Program Files (x86)\Fujitsu\F-LINK\WSDMAIN.exe
PRC - [2014/02/04 11:17:44 | 000,261,872 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\F-LINK\DEUService.exe
PRC - [2013/10/15 15:34:30 | 000,223,056 | ---- | M] (富士通株式会社) -- C:\Program Files (x86)\Fujitsu\FJAgent\Engines\CheckCdsEngine\CheckCdsEngine.exe
PRC - [2013/10/14 18:31:38 | 000,037,176 | ---- | M] (COREL TW CORP.) -- C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
PRC - [2013/10/11 19:48:22 | 001,892,712 | ---- | M] (Corel) -- C:\Program Files (x86)\Corel\MLE2\MLEngine.exe
PRC - [2013/10/10 21:24:08 | 000,095,056 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\MCRemoteAccess\svcMPPFclient.exe
PRC - [2013/10/02 09:09:56 | 000,142,120 | ---- | M] (PointGrab LTD) -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Logon.exe
PRC - [2013/10/02 09:09:54 | 001,257,792 | ---- | M] (PointGrab LTD) -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\WebcamSplitterServer.exe
PRC - [2013/10/02 09:09:40 | 000,457,512 | ---- | M] (PointGrab LTD) -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
PRC - [2013/10/02 09:09:38 | 000,365,376 | ---- | M] (PointGrab LTD) -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Service_Launcher.exe
PRC - [2013/08/10 03:12:36 | 000,030,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
PRC - [2013/08/08 13:27:26 | 000,390,616 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2013/08/08 13:27:18 | 000,169,432 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
PRC - [2013/07/19 10:59:00 | 000,237,976 | ---- | M] (富士通株式会社) -- C:\Program Files (x86)\Fujitsu\FJAgent\Core\bin\FJAgentSVC.exe
PRC - [2012/11/07 11:55:56 | 000,485,008 | ---- | M] (SOURCENEXT) -- C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\SFBRun32.exe
PRC - [2011/12/21 23:16:54 | 000,262,752 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\K7CrvSvc.exe
PRC - [2011/11/05 20:50:19 | 000,072,800 | ---- | M] (K7 Computing Pvt Ltd) -- C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SysMon.Exe
PRC - [2010/05/20 16:15:00 | 000,110,736 | R--- | M] (InterVideo) -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2010/03/11 14:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2016/02/13 19:58:35 | 001,443,328 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\NAudio\e3ec21426c56764646effa0850b48079\NAudio.ni.dll
MOD - [2016/02/13 19:58:33 | 002,002,944 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\HD-Frontend\c1a920427c3ec0f787e53fd117b9dd42\HD-Frontend.ni.exe
MOD - [2016/02/13 19:58:24 | 001,051,136 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\f4e62008aaa96dfba7abe16415e7e956\System.Management.ni.dll
MOD - [2016/02/13 19:58:22 | 000,155,136 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\JSON\2596a880c5953a3ade1f9dbaabda3f00\JSON.ni.dll
MOD - [2016/02/13 19:58:21 | 000,212,992 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\840d64495a8ecaed5788774b6a3ecf42\System.ServiceProcess.ni.dll
MOD - [2016/02/13 19:57:59 | 011,926,528 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\7c29a9d813f768b711a2135b02bd02c4\System.Web.ni.dll
MOD - [2016/02/13 19:57:03 | 000,978,432 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\62f3c7d7dc9bb083a3dbb2047daf1bc0\System.Configuration.ni.dll
MOD - [2016/02/13 19:57:02 | 001,530,368 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\HD-Agent\5e874f92f103f6756d43d71e628ff450\HD-Agent.ni.exe
MOD - [2016/02/13 19:56:58 | 005,467,136 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\e8be17ab564b4be546388e7d64bd9102\System.Xml.ni.dll
MOD - [2016/02/13 19:56:48 | 012,438,528 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\58eb2a233c4da61a1d505a8d274757b8\System.Windows.Forms.ni.dll
MOD - [2016/02/13 19:56:28 | 001,593,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\de389326a55ab544a1c06a340826c9ce\System.Drawing.ni.dll
MOD - [2016/02/13 19:55:01 | 007,995,904 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\e8b6b00e45a0e6a75a1b7aeb142cd8c9\System.ni.dll
MOD - [2016/02/13 19:52:18 | 007,787,008 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\1bc5f5d790d9ef39b06c0d987c5f9e6d\System.Xml.ni.dll
MOD - [2016/02/13 19:52:05 | 001,873,408 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\cefedeb81dc162ac90922e2f5e376bbd\System.Xaml.ni.dll
MOD - [2016/02/13 19:52:01 | 012,897,280 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\2c72c55e30a9e74d325497099eac1210\System.Windows.Forms.ni.dll
MOD - [2016/02/13 19:51:37 | 000,218,112 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\3e05d4d835697f507247cf983c8314f0\System.ServiceProcess.ni.dll
MOD - [2016/02/13 19:50:41 | 000,797,184 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runt73a1fc9d#\dc09a52206ddef481cf78d964e063f78\System.Runtime.Remoting.ni.dll
MOD - [2016/02/13 19:50:36 | 001,639,936 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\f9ac9ac932a0fbdb5d47e459256e6e7c\System.Drawing.ni.dll
MOD - [2016/02/13 19:50:18 | 000,967,680 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\42468680923ab20df063477bc7b3b2ae\System.Configuration.ni.dll
MOD - [2016/02/13 19:50:16 | 000,463,360 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\Presentatioaec034ca#\4603735bde239120c963db7954cc5a0d\PresentationFramework.Aero2.ni.dll
MOD - [2016/02/13 19:50:15 | 018,753,024 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\db8223dd901c7c261c1345ee7a9d9ce3\PresentationFramework.ni.dll
MOD - [2016/02/13 19:49:40 | 011,014,144 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\6bde490a2bddd01567ba127cd025dc30\PresentationCore.ni.dll
MOD - [2016/02/13 19:49:18 | 003,904,000 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\a9cf5fee58c1f30224efee910c0eec00\WindowsBase.ni.dll
MOD - [2016/02/13 19:49:06 | 006,982,656 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Core\148ff30040b5785141fc013491ddb7e3\System.Core.ni.dll
MOD - [2016/02/13 19:48:49 | 010,069,504 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System\ac12146d9e15d339043098cbc5e1762a\System.ni.dll
MOD - [2015/10/17 18:28:42 | 000,196,096 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\CustomMarshalers\efe1a616cf971c89560db51569a62ca7\CustomMarshalers.ni.dll
MOD - [2014/08/15 00:47:40 | 011,500,032 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\5bd3374f05d46ba0563f44d032209f08\mscorlib.ni.dll
MOD - [2014/04/16 08:34:56 | 017,223,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d03a3ddcd6a395878751c5e90fa16915\mscorlib.ni.dll
MOD - [2013/10/02 09:09:50 | 000,160,568 | ---- | M] () -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\StringProviderLib.dll
MOD - [2013/08/23 08:14:17 | 000,348,160 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_ja_b77a5c561934e089\mscorlib.resources.dll
MOD - [2013/08/23 08:14:17 | 000,233,472 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\System.resources\2.0.0.0_ja_b77a5c561934e089\System.resources.dll
MOD - [2012/11/07 11:55:48 | 000,579,216 | ---- | M] () -- C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\MgHook32.dll
MOD - [2012/11/07 11:55:43 | 000,079,504 | ---- | M] () -- C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\apihk32.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2016/01/20 02:23:18 | 002,809,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc)
SRV:[b]64bit:[/b] - [2015/12/20 23:57:54 | 000,839,168 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:[b]64bit:[/b] - [2015/07/22 22:52:08 | 001,633,792 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
SRV:[b]64bit:[/b] - [2015/07/17 07:17:33 | 000,015,872 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\chitose\updnvsrv.exe -- (UpdateNaviInstallService)
SRV:[b]64bit:[/b] - [2015/07/17 03:58:34 | 000,074,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:[b]64bit:[/b] - [2015/07/07 18:39:32 | 000,366,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc)
SRV:[b]64bit:[/b] - [2015/07/07 18:39:32 | 000,023,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2015/05/31 04:36:24 | 000,230,400 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2015/05/12 22:19:37 | 000,294,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:[b]64bit:[/b] - [2015/05/08 00:21:51 | 000,522,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GeofenceMonitorService.dll -- (lfsvc)
SRV:[b]64bit:[/b] - [2015/04/13 12:51:02 | 000,344,168 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService1.0.0.0)
SRV:[b]64bit:[/b] - [2015/02/21 08:49:18 | 000,780,800 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:[b]64bit:[/b] - [2014/10/31 13:51:25 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/10/29 12:59:51 | 003,460,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:[b]64bit:[/b] - [2014/10/29 12:50:12 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:19 | 000,026,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:03 | 000,041,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:[b]64bit:[/b] - [2014/10/29 11:34:51 | 000,067,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:[b]64bit:[/b] - [2014/10/29 11:33:55 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:29:22 | 000,121,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:57:05 | 000,324,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthHFSrv.dll -- (BthHFSrv)
SRV:[b]64bit:[/b] - [2014/10/29 10:48:20 | 000,166,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
SRV:[b]64bit:[/b] - [2014/10/29 10:27:21 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:37 | 000,131,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:40 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2014/10/29 10:20:03 | 000,262,656 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:20 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/10/29 10:16:17 | 000,154,112 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
SRV:[b]64bit:[/b] - [2014/10/29 10:13:24 | 000,374,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:13:02 | 000,260,608 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:36 | 000,407,040 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:22 | 000,270,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:[b]64bit:[/b] - [2014/10/29 10:11:10 | 001,639,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:05:09 | 000,206,848 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:48:52 | 000,562,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
SRV:[b]64bit:[/b] - [2014/10/29 09:46:48 | 001,348,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
SRV:[b]64bit:[/b] - [2014/10/29 09:35:51 | 001,668,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
SRV:[b]64bit:[/b] - [2013/10/07 18:47:00 | 000,240,576 | ---- | M] (DTS, Inc) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe -- (DTSAudioSvc)
SRV:[b]64bit:[/b] - [2013/08/21 13:52:26 | 002,219,520 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe -- (PFNService)
SRV:[b]64bit:[/b] - [2013/08/19 17:01:42 | 000,051,608 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\PSUtility\PSUService.exe -- (PowerSavingUtilityService)
SRV:[b]64bit:[/b] - [2013/08/08 17:10:46 | 000,084,888 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\AutoSignIn\AutoSignInService.exe -- (FJAutoSignIn)
SRV:[b]64bit:[/b] - [2013/08/08 13:22:54 | 000,042,352 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe -- (SKARUTE)
SRV:[b]64bit:[/b] - [2013/07/18 17:07:44 | 000,074,448 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe -- (FUJ02E3Service)
SRV:[b]64bit:[/b] - [2013/06/14 04:31:10 | 000,357,144 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:54 | 000,822,232 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:38 | 000,733,696 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2009/09/07 22:35:46 | 000,024,576 | ---- | M] (SOURCENEXT CORPORATION) [Auto | Running] -- C:\Program Files\SOURCENEXT\Kyosoku-Memory Next Basic\Performance Tweak Agent.exe -- (PTAgent)
SRV:[b]64bit:[/b] - [2009/09/06 18:26:26 | 000,016,384 | ---- | M] (BJIT LIMITED) [Auto | Running] -- C:\Program Files\SOURCENEXT\ソースネクスト 驚速デフラグ\defrag.service.exe -- (Kyosoku-Defrag)
SRV - [2015/11/30 22:07:34 | 000,287,968 | ---- | M] (K7 Computing Pvt Ltd) [Auto | Running] -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7fwsrvc.exe -- (K7FWSrvc)
SRV - [2015/11/17 14:22:40 | 000,291,064 | ---- | M] (K7 Computing Pvt Ltd) [Auto | Running] -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsmngr.exe -- (K7TSMngr)
SRV - [2015/10/23 13:45:00 | 000,154,136 | ---- | M] (K7 Computing Pvt Ltd) [Auto | Running] -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7emlpxy.exe -- (K7EmlPxy)
SRV - [2015/10/05 09:48:46 | 001,135,416 | ---- | M] (Malwarebytes) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2015/07/09 19:39:32 | 000,255,000 | ---- | M] (K7 Computing Pvt Ltd) [Auto | Running] -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7rtscan.exe -- (K7RTScan)
SRV - [2015/07/09 12:14:04 | 000,327,296 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2015/05/18 11:15:16 | 000,028,424 | ---- | M] (FUJITSU LIMITED) [On_Demand | Stopped] -- C:\Program Files (x86)\Fujitsu\MCEco\MyCloudEchoSvc.exe -- (MyCloudEcoSvc)
SRV - [2015/05/08 00:05:40 | 000,367,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GeofenceMonitorService.dll -- (lfsvc)
SRV - [2015/04/14 20:45:38 | 000,580,416 | ---- | M] (K7 Computing Pvt Ltd) [Auto | Running] -- C:\Program Files (x86)\K7 Computing\K7TSecurity\k7pssrvc.exe -- (K7PSSrvc)
SRV - [2015/04/13 12:51:04 | 000,279,144 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2015/03/24 16:54:32 | 000,798,424 | ---- | M] (BlueStack Systems, Inc.) [Auto | Running] -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe -- (BstHdUpdaterSvc)
SRV - [2015/03/24 16:52:28 | 000,388,824 | ---- | M] (BlueStack Systems, Inc.) [Auto | Running] -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe -- (BstHdLogRotatorSvc)
SRV - [2015/03/24 16:51:54 | 000,433,880 | ---- | M] (BlueStack Systems, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\BlueStacks\HD-Service.exe -- (BstHdAndroidSvc)
SRV - [2014/10/29 12:50:12 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2014/10/29 10:51:55 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2014/10/29 10:04:45 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
SRV - [2014/04/22 15:07:34 | 000,323,584 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\Cindy\dms_sync_svc.exe -- (My Cloud ビデオ サーバー+)
SRV - [2014/04/22 15:07:32 | 000,208,896 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\VDMS\dms_svc.exe -- (My Cloud ビデオ サーバー)
SRV - [2014/02/04 11:17:44 | 000,261,872 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files (x86)\Fujitsu\F-LINK\DEUService.exe -- (DataExchangeUtilityService)
SRV - [2013/10/10 21:24:08 | 000,095,056 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Fujitsu\MCRemoteAccess\svcMPPFclient.exe -- (MyCloudRemoteAccessSvc)
SRV - [2013/10/10 21:24:08 | 000,084,304 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCTunnel.exe -- (MyCloudRemoteAccessConnectSvc)
SRV - [2013/10/02 09:09:38 | 000,365,376 | ---- | M] (PointGrab LTD) [Auto | Running] -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Service_Launcher.exe -- (PG_Service_Launcher)
SRV - [2013/10/02 09:09:34 | 000,061,224 | ---- | M] (PointGrab LTD) [Auto | Running] -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe -- (PGService)
SRV - [2013/09/07 01:52:20 | 000,312,448 | ---- | M] (Windows (R) Win 7 DDK provider) [Auto | Running] -- C:\Program Files (x86)\Bluetooth Suite\AdminService.exe -- (AtherosSvc)
SRV - [2013/08/10 03:12:36 | 000,030,536 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe -- (UDSS)
SRV - [2013/08/08 13:27:26 | 000,390,616 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2013/08/08 13:27:18 | 000,169,432 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
SRV - [2013/07/19 10:59:00 | 000,237,976 | ---- | M] (富士通株式会社) [Auto | Running] -- C:\Program Files (x86)\Fujitsu\FJAgent\Core\bin\FJAgentSVC.exe -- (FJAgentSVC)
SRV - [2012/06/21 20:45:52 | 000,281,216 | ---- | M] (K7 Computing Pvt Ltd) [On_Demand | Stopped] -- C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SpmSrc.exe -- (K7SpmSrc)
SRV - [2011/12/21 23:16:54 | 000,262,752 | ---- | M] (K7 Computing Pvt Ltd) [Auto | Running] -- C:\Program Files (x86)\K7 Computing\K7TSecurity\K7CrvSvc.exe -- (K7CrvSvc)
SRV - [2010/05/20 16:15:00 | 000,110,736 | R--- | M] (InterVideo) [Auto | Running] -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
SRV - [2010/03/11 14:06:06 | 000,193,824 | ---- | M] (Protexis Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2016/02/02 01:21:42 | 000,033,096 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\fuj02b1.sys -- (FUJ02B1)
DRV:[b]64bit:[/b] - [2016/01/25 03:19:09 | 000,419,160 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
DRV:[b]64bit:[/b] - [2015/10/11 15:34:30 | 000,468,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
DRV:[b]64bit:[/b] - [2015/10/05 09:50:22 | 000,064,216 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV:[b]64bit:[/b] - [2015/10/05 09:50:06 | 000,025,816 | ---- | M] (Malwarebytes) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2015/09/29 21:24:42 | 000,155,480 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:[b]64bit:[/b] - [2015/07/07 18:40:12 | 000,044,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot)
DRV:[b]64bit:[/b] - [2015/07/07 18:40:05 | 000,270,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter)
DRV:[b]64bit:[/b] - [2015/07/07 18:40:05 | 000,114,520 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv)
DRV:[b]64bit:[/b] - [2015/06/12 14:58:20 | 000,149,760 | ---- | M] (K7 Computing Pvt Ltd) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\K7Sentry.sys -- (K7Sentry)
DRV:[b]64bit:[/b] - [2015/04/16 15:17:07 | 000,325,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
DRV:[b]64bit:[/b] - [2015/04/13 12:50:58 | 004,888,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2015/04/13 12:50:50 | 000,460,048 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2015/03/20 10:56:10 | 000,080,384 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
DRV:[b]64bit:[/b] - [2015/03/13 13:03:31 | 000,239,424 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2015/03/09 11:02:51 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
DRV:[b]64bit:[/b] - [2015/03/05 06:08:34 | 000,042,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:[b]64bit:[/b] - [2015/03/05 06:08:34 | 000,030,512 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:[b]64bit:[/b] - [2015/03/04 19:25:11 | 000,377,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
DRV:[b]64bit:[/b] - [2015/01/22 14:39:00 | 000,110,544 | ---- | M] (K7 Computing Pvt Ltd) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\K7FWHlpr.sys -- (K7FWHlpr)
DRV:[b]64bit:[/b] - [2014/11/11 03:06:59 | 000,136,512 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
DRV:[b]64bit:[/b] - [2014/11/05 04:33:40 | 000,058,176 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
DRV:[b]64bit:[/b] - [2014/10/29 12:57:42 | 000,054,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr)
DRV:[b]64bit:[/b] - [2014/10/29 12:56:04 | 000,027,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2014/10/29 11:47:48 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDScan.sys -- (WSDScan)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:43 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2014/10/29 11:46:09 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc63.sys -- (netvsc)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:54 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:39 | 000,066,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
DRV:[b]64bit:[/b] - [2014/10/29 11:45:16 | 000,103,424 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
DRV:[b]64bit:[/b] - [2014/10/17 13:56:23 | 000,039,744 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
DRV:[b]64bit:[/b] - [2014/10/17 12:35:04 | 000,086,336 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
DRV:[b]64bit:[/b] - [2014/10/15 17:32:36 | 000,921,920 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\windows\SysNative\drivers\refs.sys -- (ReFS)
DRV:[b]64bit:[/b] - [2014/10/07 15:54:45 | 000,189,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UCX01000.SYS -- (UCX01000)
DRV:[b]64bit:[/b] - [2014/10/07 15:44:39 | 000,069,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
DRV:[b]64bit:[/b] - [2014/08/15 09:36:55 | 000,146,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:[b]64bit:[/b] - [2014/03/13 21:35:24 | 000,157,016 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\windows\SysNative\drivers\wof.sys -- (Wof)
DRV:[b]64bit:[/b] - [2014/02/23 00:49:49 | 000,079,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
DRV:[b]64bit:[/b] - [2014/02/22 21:14:02 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
DRV:[b]64bit:[/b] - [2013/12/05 03:41:54 | 000,226,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthLEEnum.sys -- (BthLEEnum)
DRV:[b]64bit:[/b] - [2013/10/26 10:54:32 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
DRV:[b]64bit:[/b] - [2013/10/06 00:25:54 | 000,057,176 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
DRV:[b]64bit:[/b] - [2013/09/14 23:06:57 | 000,175,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,594,120 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,338,120 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,179,432 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,137,928 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,116,424 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_avdt.sys -- (btath_avdt)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,089,800 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,077,464 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_lwflt.sys -- (BTATH_LWFLT)
DRV:[b]64bit:[/b] - [2013/09/07 01:29:14 | 000,034,384 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS)
DRV:[b]64bit:[/b] - [2013/09/02 17:30:37 | 000,020,736 | ---- | M] (DigiOn, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\diximdd.sys -- (DiximDd)
DRV:[b]64bit:[/b] - [2013/08/30 21:18:02 | 000,644,968 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
DRV:[b]64bit:[/b] - [2013/08/23 07:50:08 | 000,037,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:[b]64bit:[/b] - [2013/08/22 22:25:40 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
DRV:[b]64bit:[/b] - [2013/08/22 22:25:40 | 000,030,048 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2013/08/22 21:49:54 | 000,079,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:49 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:48 | 000,041,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 003,357,024 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,093,536 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:45 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:44 | 000,081,760 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3.sys -- (LSI_SAS3)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,782,176 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,108,896 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:41 | 000,079,200 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,114,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,082,784 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:40 | 000,025,952 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:34 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:33 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:32 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,107,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,072,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
DRV:[b]64bit:[/b] - [2013/08/22 21:43:31 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
DRV:[b]64bit:[/b] - [2013/08/22 21:39:15 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
DRV:[b]64bit:[/b] - [2013/08/22 21:36:12 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:58 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:31 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
DRV:[b]64bit:[/b] - [2013/08/22 20:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:58 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:48 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:39 | 000,036,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:26 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:23 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
DRV:[b]64bit:[/b] - [2013/08/22 20:38:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:28 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:28 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
DRV:[b]64bit:[/b] - [2013/08/22 20:37:14 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:[b]64bit:[/b] - [2013/08/22 20:36:25 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
DRV:[b]64bit:[/b] - [2013/08/22 17:46:33 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fxppm.sys -- (FxPPM)
DRV:[b]64bit:[/b] - [2013/08/14 15:01:22 | 000,527,600 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2013/08/13 08:25:46 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
DRV:[b]64bit:[/b] - [2013/08/12 18:57:16 | 000,021,200 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\fuj02e3.sys -- (FUJ02E3)
DRV:[b]64bit:[/b] - [2013/08/10 09:39:30 | 000,651,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV)
DRV:[b]64bit:[/b] - [2013/08/09 11:25:20 | 000,020,176 | ---- | M] (FUJITSU LIMITED) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\FBIOSDRV.sys -- (FBIOSDRV)
DRV:[b]64bit:[/b] - [2013/08/08 13:27:20 | 000,099,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2013/08/07 15:23:22 | 000,018,432 | ---- | M] (ELECOM) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ElcMouLFlt.sys -- (ElcMouLFlt)
DRV:[b]64bit:[/b] - [2013/08/07 15:23:22 | 000,017,408 | ---- | M] (ELECOM) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ElcMouUFlt.sys -- (ElcMouUFlt)
DRV:[b]64bit:[/b] - [2013/07/31 03:47:35 | 000,024,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
DRV:[b]64bit:[/b] - [2013/07/26 04:05:39 | 000,099,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
DRV:[b]64bit:[/b] - [2013/07/19 03:01:00 | 000,056,336 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2013/07/15 00:29:52 | 003,837,440 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athwbx.sys -- (athr)
DRV:[b]64bit:[/b] - [2013/07/09 14:35:38 | 000,329,944 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUVStor.sys -- (RSUSBVSTOR)
DRV:[b]64bit:[/b] - [2013/06/21 18:35:14 | 000,816,344 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt630x64.sys -- (RTL8168)
DRV:[b]64bit:[/b] - [2013/04/09 10:42:06 | 000,006,144 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\t_mouse.sys -- (t_mouse.sys)
DRV:[b]64bit:[/b] - [2011/03/07 17:02:54 | 000,140,920 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ddrv.sys -- (ddrv)
DRV - [2015/03/24 16:52:18 | 000,144,600 | ---- | M] (BlueStack Systems) [Kernel | Auto | Running] -- C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys -- (BstHdDrv)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {D194B330-A674-48F4-9677-4DED6827C301}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{D194B330-A674-48F4-9677-4DED6827C301}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=FSJB
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {D194B330-A674-48F4-9677-4DED6827C301}
IE - HKLM\..\SearchScopes\{D194B330-A674-48F4-9677-4DED6827C301}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=FSJB


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-3620435610-4091346163-423542706-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKU\S-1-5-21-3620435610-4091346163-423542706-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.co.jp/
IE - HKU\S-1-5-21-3620435610-4091346163-423542706-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3620435610-4091346163-423542706-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
IE - HKU\S-1-5-21-3620435610-4091346163-423542706-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[color=#E56717]========== FireFox ==========[/color]

FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@k7computing.com/k7webprotection: C:\Program Files (x86)\\K7 Computing\K7TSecurity\npK7SRNPExt.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\k7srff_jaJP@k7computing.com: C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SR\K7WebProtection.xpi [2016/01/05 20:11:02 | 000,107,246 | ---- | M] ()


[color=#E56717]========== Chrome ==========[/color]

CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.60_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlpfamleaodfgmfnggonbfljhjggbdbe\3.8_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.1_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\laimjpeeadmiichdephknpklpjkllkih\1.1_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocfdalfbgbepcfcjkbgfnjloddeejnff\1.1.4_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
CHR - Extension: No name found = C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob\7.9.16.9_0\

O1 HOSTS File: ([2013/08/22 22:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Skype for Business Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (RoboForm Toolbar Helper) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
O2 - BHO: (K7 Web Protection) - {08B3B4B6-02DA-4658-8BA6-5974E3EBB03D} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll (K7 Computing Pvt Ltd)
O2 - BHO: (RoboForm Toolbar Helper) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (&RoboForm Toolbar) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O3 - HKLM\..\Toolbar: (&RoboForm Toolbar) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKLM\..\Toolbar: (K7 Web Protection) - {8551D65A-13A9-4e63-8472-9325B1B928C0} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll (K7 Computing Pvt Ltd)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3:[b]64bit:[/b] - HKU\S-1-5-21-3620435610-4091346163-423542706-1001\..\Toolbar\WebBrowser: (&RoboForm Toolbar) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O3 - HKU\S-1-5-21-3620435610-4091346163-423542706-1001\..\Toolbar\WebBrowser: (&RoboForm Toolbar) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [ElcMouse] C:\Program Files\ELECOM_Mouse_Driver\ElcMouseApl.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [EvtMgr6] C:\Program Files\SetPointP\SetPoint.exe (Logicool, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\chitose\updatenv.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [MouseDriver] C:\windows\SysNative\TiltWheelMouse.exe (Pixart Imaging Inc)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg_DTS] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg_DTS_SWVOL] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (BlueStack Systems, Inc.)
O4 - HKLM..\Run: [BlueStacks Frontend] C:\Program Files (x86)\BlueStacks\HD-Frontend.exe (BlueStack Systems, Inc.)
O4 - HKLM..\Run: [CorelDA] C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe (COREL TW CORP.)
O4 - HKLM..\Run: [FUJ02B1_Apps] "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411 File not found
O4 - HKLM..\Run: [K7TSStart] C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsecurity.exe (K7 Computing Pvt Ltd)
O4 - HKLM..\Run: [Sourcenext.SSS.Launcher] "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe File not found
O4 - HKU\S-1-5-21-3620435610-4091346163-423542706-1001..\Run: [AirGet] C:\Program Files (x86)\sMedio\AirGet\AirGet.exe (sMedio Inc)
O4 - HKU\S-1-5-21-3620435610-4091346163-423542706-1001..\Run: [DriveStudio] C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe (FUJITSU LIMITED)
O4 - HKU\S-1-5-21-3620435610-4091346163-423542706-1001..\Run: [RoboForm] C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - Startup: C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\F-Launcher.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: BtvStack = "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" (Atheros Communications)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : RF フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O9:[b]64bit:[/b] - Extra Button: 保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : RF フォーム保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O9:[b]64bit:[/b] - Extra Button: ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : RF ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform-x64.dll (Siber Systems Inc.)
O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O9 - Extra 'Tools' menuitem : RF フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O9 - Extra Button: 保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O9 - Extra 'Tools' menuitem : RF フォーム保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O9 - Extra Button: ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O9 - Extra 'Tools' menuitem : RF ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab (DMM Downloader)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{ABFE9759-AD2A-4D48-B52B-E6222F251D32}: DhcpNameServer = 192.168.0.1
O18:[b]64bit:[/b] - Protocol\Handler\osf - No CLSID value found
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\msosb.dll (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

ActiveX:[b]64bit:[/b] {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
ActiveX:[b]64bit:[/b] {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX:[b]64bit:[/b] {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX:[b]64bit:[/b] {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX:[b]64bit:[/b] {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX:[b]64bit:[/b] {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX:[b]64bit:[/b] {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX:[b]64bit:[/b] {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX:[b]64bit:[/b] {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} - C:\windows\System32\ie4uinit.exe -EnableTLS
ActiveX:[b]64bit:[/b] {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX:[b]64bit:[/b] {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX:[b]64bit:[/b] {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX:[b]64bit:[/b] {78E345F7-E
  • nanashi
  • 2016/03/05 (Sat) 13:53:20
OTL.txt ②
OTL.txt 2つ目です。
1つ目の途中で切れている行からになります。


ActiveX:[b]64bit:[/b] {78E345F7-E976-3595-9C30-2458D6A8EC32} - .NET Framework
ActiveX:[b]64bit:[/b] {7D715857-A67C-4C2F-A929-038448584D63} - C:\windows\System32\ie4uinit.exe -DisableSSL3
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4340} - U
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig
ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
ActiveX:[b]64bit:[/b] {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX:[b]64bit:[/b] {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX:[b]64bit:[/b] {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX:[b]64bit:[/b] {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX:[b]64bit:[/b] {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
ActiveX:[b]64bit:[/b] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {23A20C3C-2ADD-4A80-AFB4-C146F8847D79} - .NET Framework
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} -
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
ActiveX: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: {EC43E638-09F0-38CC-A585-72FCCDDF035C} - .NET Framework
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2016/03/05 12:47:29 | 000,000,000 | R--D | C] -- C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
[2016/03/01 21:06:50 | 000,192,216 | ---- | C] (Malwarebytes) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2016/03/01 21:04:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2016/03/01 21:04:00 | 000,109,272 | ---- | C] (Malwarebytes) -- C:\windows\SysNative\drivers\mbamchameleon.sys
[2016/03/01 21:04:00 | 000,064,216 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
[2016/03/01 21:04:00 | 000,025,816 | ---- | C] (Malwarebytes) -- C:\windows\SysNative\drivers\mbam.sys
[2016/03/01 21:03:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2016/03/01 21:03:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2016/02/28 21:52:55 | 000,000,000 | ---D | C] -- C:\Users\M\Desktop\ログ_20160228
[2016/02/28 15:31:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2016/02/28 15:31:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2016/02/28 15:31:21 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2016/02/28 15:18:41 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rascfg.dll
[2016/02/28 15:18:41 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rascfg.dll
[2016/02/28 15:17:11 | 001,200,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Globalization.dll
[2016/02/28 15:17:11 | 000,868,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Globalization.dll
[2016/02/28 15:16:59 | 001,335,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mispace.dll
[2016/02/28 15:16:59 | 001,063,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mispace.dll
[2016/02/28 15:16:59 | 000,419,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\spaceport.sys
[2016/02/28 15:16:59 | 000,378,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\storport.sys
[2016/02/28 15:16:59 | 000,331,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\Classpnp.sys
[2016/02/28 15:15:54 | 000,218,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rsaenh.dll
[2016/02/28 15:15:54 | 000,177,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wscapi.dll
[2016/02/28 15:15:54 | 000,148,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wscapi.dll
[2016/02/28 15:15:51 | 001,707,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\comsvcs.dll
[2016/02/28 15:15:51 | 001,344,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\comsvcs.dll
[2016/02/28 15:15:48 | 002,171,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettingsAdminFlowUI.dll
[2016/02/28 15:15:48 | 000,463,872 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettings.Handlers.dll
[2016/02/28 15:15:47 | 000,672,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MDMAgent.exe
[2016/02/28 15:15:47 | 000,273,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SystemSettingsAdminFlows.exe
[2016/02/28 15:15:22 | 000,994,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ucrtbase.dll
[2016/02/28 15:15:22 | 000,922,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ucrtbase.dll
[2016/02/28 15:15:10 | 000,470,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\netio.sys
[2016/02/28 15:14:33 | 001,488,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppobjs.dll
[2016/02/28 15:14:32 | 000,261,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sppwinob.dll
[2016/02/28 15:14:11 | 004,837,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SyncEngine.dll
[2016/02/28 15:14:10 | 001,154,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SkyDrive.exe
[2016/02/28 15:14:10 | 001,027,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\MFMediaEngine.dll
[2016/02/28 15:14:10 | 000,962,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfplat.dll
[2016/02/28 15:14:10 | 000,952,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mfmp4srcsnk.dll
[2016/02/28 15:14:10 | 000,801,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfplat.dll
[2016/02/28 15:14:10 | 000,786,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mfmp4srcsnk.dll
[2016/02/28 15:14:09 | 000,885,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\MFMediaEngine.dll
[2016/02/28 15:14:09 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vpnike.dll
[2016/02/28 15:14:09 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WSDMon.dll
[2016/02/28 15:14:09 | 000,242,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSCard.dll
[2016/02/28 15:14:09 | 000,166,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\AppxAllUserStore.dll
[2016/02/28 15:14:09 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\AppxAllUserStore.dll
[2016/02/28 15:14:09 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\QSVRMGMT.DLL
[2016/02/28 15:14:09 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\QSVRMGMT.DLL
[2016/02/28 15:14:09 | 000,086,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\pdc.sys
[2016/02/28 15:14:09 | 000,058,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\dam.sys
[2016/02/28 15:14:09 | 000,039,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\intelpep.sys
[2016/02/28 15:14:08 | 001,574,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vssapi.dll
[2016/02/28 15:14:08 | 000,733,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\SkyDriveTelemetry.dll
[2016/02/28 15:14:08 | 000,702,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rasapi32.dll
[2016/02/28 15:14:08 | 000,657,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dnsapi.dll
[2016/02/28 15:14:08 | 000,514,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\DevicePairing.dll
[2016/02/28 15:14:08 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\DevicePairing.dll
[2016/02/28 15:14:08 | 000,211,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\QSHVHOST.DLL
[2016/02/28 15:14:08 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\QSHVHOST.DLL
[2016/02/28 15:14:08 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vsstrace.dll
[2016/02/28 15:14:08 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kmddsp.tsp
[2016/02/28 15:14:08 | 000,039,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\kmddsp.tsp
[2016/02/28 15:14:07 | 000,128,512 | ---- | C] (Microsoft Corporation) -- C:\windows\splwow64.exe
[2016/02/28 15:14:07 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rasdiag.dll
[2016/02/28 15:14:07 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rasdiag.dll
[2016/02/28 15:14:07 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rasmxs.dll
[2016/02/28 15:14:07 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rasmxs.dll
[2016/02/28 15:14:07 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rasser.dll
[2016/02/28 15:14:07 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\rasser.dll
[2016/02/28 15:14:07 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\eventcls.dll
[2016/02/28 15:14:07 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\eventcls.dll
[2016/02/28 15:13:56 | 000,839,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\netlogon.dll
[2016/02/28 15:13:34 | 000,616,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msra.exe
[2016/02/28 15:12:17 | 000,570,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winlogon.exe
[2016/02/28 15:12:08 | 002,487,296 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\storagewmi.dll
[2016/02/28 15:12:08 | 001,482,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\storagewmi.dll
[2016/02/28 00:35:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2016/02/28 00:35:42 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2016/02/28 00:05:31 | 000,000,000 | ---D | C] -- C:\Users\M\AppData\Roaming\Geek Uninstaller
[2016/02/27 23:13:40 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2016/02/27 23:10:06 | 000,000,000 | ---D | C] -- C:\Users\M\AppData\Roaming\IObit
[2016/02/21 18:28:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP480 series マニュアル
[2016/02/21 18:28:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Canon
[2016/02/20 21:55:22 | 000,000,000 | ---D | C] -- C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ココロ@ファンクション! NEO
[2016/02/20 21:23:58 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_7.dll
[2016/02/20 21:23:58 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_7.dll
[2016/02/20 21:23:58 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_5.dll
[2016/02/20 21:23:58 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_5.dll
[2016/02/20 21:23:56 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_7.dll
[2016/02/20 21:23:56 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_7.dll
[2016/02/20 21:23:55 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_43.dll
[2016/02/20 21:23:55 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_43.dll
[2016/02/20 21:23:54 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dcsx_43.dll
[2016/02/20 21:23:54 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dcsx_43.dll
[2016/02/20 21:23:53 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx11_43.dll
[2016/02/20 21:23:53 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx11_43.dll
[2016/02/20 21:23:52 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_43.dll
[2016/02/20 21:23:52 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_43.dll
[2016/02/20 21:23:51 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_43.dll
[2016/02/20 21:23:51 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_43.dll
[2016/02/20 21:23:50 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_4.dll
[2016/02/20 21:23:50 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_4.dll
[2016/02/20 21:23:49 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_6.dll
[2016/02/20 21:23:49 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_6.dll
[2016/02/20 21:23:49 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_6.dll
[2016/02/20 21:23:49 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_6.dll
[2016/02/20 21:23:48 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_7.dll
[2016/02/20 21:23:48 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_7.dll
[2016/02/20 21:23:46 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_5.dll
[2016/02/20 21:23:46 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_5.dll
[2016/02/20 21:23:45 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_5.dll
[2016/02/20 21:23:45 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_5.dll
[2016/02/20 21:23:43 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_42.dll
[2016/02/20 21:23:43 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_42.dll
[2016/02/20 21:23:41 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dcsx_42.dll
[2016/02/20 21:23:41 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dcsx_42.dll
[2016/02/20 21:23:40 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx11_42.dll
[2016/02/20 21:23:40 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx11_42.dll
[2016/02/20 21:23:39 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_42.dll
[2016/02/20 21:23:39 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_42.dll
[2016/02/20 21:23:36 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_41.dll
[2016/02/20 21:23:36 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_41.dll
[2016/02/20 21:23:35 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_41.dll
[2016/02/20 21:23:35 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_41.dll
[2016/02/20 21:23:34 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_41.dll
[2016/02/20 21:23:34 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_41.dll
[2016/02/20 21:23:33 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_3.dll
[2016/02/20 21:23:33 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_3.dll
[2016/02/20 21:23:32 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_4.dll
[2016/02/20 21:23:32 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_4.dll
[2016/02/20 21:23:29 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_4.dll
[2016/02/20 21:23:29 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_4.dll
[2016/02/20 21:23:28 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_6.dll
[2016/02/20 21:23:28 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_6.dll
[2016/02/20 21:23:27 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_40.dll
[2016/02/20 21:23:27 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_40.dll
[2016/02/20 21:23:26 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_40.dll
[2016/02/20 21:23:26 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_40.dll
[2016/02/20 21:23:25 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_40.dll
[2016/02/20 21:23:25 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_40.dll
[2016/02/20 21:23:24 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_2.dll
[2016/02/20 21:23:24 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_2.dll
[2016/02/20 21:23:23 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_3.dll
[2016/02/20 21:23:23 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_3.dll
[2016/02/20 21:23:22 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_3.dll
[2016/02/20 21:23:22 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_3.dll
[2016/02/20 21:23:21 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_5.dll
[2016/02/20 21:23:21 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_5.dll
[2016/02/20 21:23:19 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_2.dll
[2016/02/20 21:23:19 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_2.dll
[2016/02/20 21:23:19 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_1.dll
[2016/02/20 21:23:19 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_1.dll
[2016/02/20 21:23:18 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_2.dll
[2016/02/20 21:23:18 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_2.dll
[2016/02/20 21:23:16 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_39.dll
[2016/02/20 21:23:16 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_39.dll
[2016/02/20 21:23:16 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_39.dll
[2016/02/20 21:23:16 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_39.dll
[2016/02/20 21:23:15 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_39.dll
[2016/02/20 21:23:15 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_39.dll
[2016/02/20 21:23:13 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAPOFX1_0.dll
[2016/02/20 21:23:13 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAPOFX1_0.dll
[2016/02/20 21:23:12 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_1.dll
[2016/02/20 21:23:12 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_1.dll
[2016/02/20 21:23:10 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_1.dll
[2016/02/20 21:23:10 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_1.dll
[2016/02/20 21:23:09 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_4.dll
[2016/02/20 21:23:09 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_4.dll
[2016/02/20 21:23:08 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_38.dll
[2016/02/20 21:23:08 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_38.dll
[2016/02/20 21:23:07 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_38.dll
[2016/02/20 21:23:07 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_38.dll
[2016/02/20 21:23:05 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_38.dll
[2016/02/20 21:23:05 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_38.dll
[2016/02/20 21:23:04 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\XAudio2_0.dll
[2016/02/20 21:23:04 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\XAudio2_0.dll
[2016/02/20 21:23:03 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine3_0.dll
[2016/02/20 21:23:03 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine3_0.dll
[2016/02/20 21:23:02 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_3.dll
[2016/02/20 21:23:02 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_3.dll
[2016/02/20 21:23:00 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_37.dll
[2016/02/20 21:23:00 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_37.dll
[2016/02/20 21:22:59 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_37.dll
[2016/02/20 21:22:59 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_37.dll
[2016/02/20 21:22:57 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DX9_37.dll
[2016/02/20 21:22:57 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DX9_37.dll
[2016/02/20 21:22:56 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_10.dll
[2016/02/20 21:22:56 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_10.dll
[2016/02/20 21:22:53 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_36.dll
[2016/02/20 21:22:53 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_36.dll
[2016/02/20 21:22:52 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_36.dll
[2016/02/20 21:22:52 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_36.dll
[2016/02/20 21:22:51 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_36.dll
[2016/02/20 21:22:49 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_9.dll
[2016/02/20 21:22:49 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_9.dll
[2016/02/20 21:22:46 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_35.dll
[2016/02/20 21:22:46 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_35.dll
[2016/02/20 21:22:46 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_35.dll
[2016/02/20 21:22:46 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_35.dll
[2016/02/20 21:22:44 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_35.dll
[2016/02/20 21:22:44 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_35.dll
[2016/02/20 21:22:43 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_8.dll
[2016/02/20 21:22:43 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_8.dll
[2016/02/20 21:22:42 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\X3DAudio1_2.dll
[2016/02/20 21:22:42 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\X3DAudio1_2.dll
[2016/02/20 21:22:41 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_34.dll
[2016/02/20 21:22:41 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_34.dll
[2016/02/20 21:22:40 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_34.dll
[2016/02/20 21:22:40 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_34.dll
[2016/02/20 21:22:38 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_34.dll
[2016/02/20 21:22:38 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_34.dll
[2016/02/20 21:22:37 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_3.dll
[2016/02/20 21:22:37 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_3.dll
[2016/02/20 21:22:36 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_7.dll
[2016/02/20 21:22:36 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_7.dll
[2016/02/20 21:22:34 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10_33.dll
[2016/02/20 21:22:34 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10_33.dll
[2016/02/20 21:22:33 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\D3DCompiler_33.dll
[2016/02/20 21:22:33 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\D3DCompiler_33.dll
[2016/02/20 21:22:31 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_33.dll
[2016/02/20 21:22:31 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_33.dll
[2016/02/20 21:22:30 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_6.dll
[2016/02/20 21:22:30 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_6.dll
[2016/02/20 21:22:28 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_5.dll
[2016/02/20 21:22:28 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_5.dll
[2016/02/20 21:22:27 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx10.dll
[2016/02/20 21:22:27 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx10.dll
[2016/02/20 21:22:25 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_32.dll
[2016/02/20 21:22:25 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_32.dll
[2016/02/20 21:22:24 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_4.dll
[2016/02/20 21:22:24 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_4.dll
[2016/02/20 21:22:23 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\x3daudio1_1.dll
[2016/02/20 21:22:23 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\x3daudio1_1.dll
[2016/02/20 21:22:22 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_31.dll
[2016/02/20 21:22:22 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_31.dll
[2016/02/20 21:22:20 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_3.dll
[2016/02/20 21:22:20 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_3.dll
[2016/02/20 21:22:19 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_2.dll
[2016/02/20 21:22:19 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_2.dll
[2016/02/20 21:22:18 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_2.dll
[2016/02/20 21:22:18 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_2.dll
[2016/02/20 21:22:17 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xinput1_1.dll
[2016/02/20 21:22:17 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xinput1_1.dll
[2016/02/20 21:22:16 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_1.dll
[2016/02/20 21:22:16 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_1.dll
[2016/02/20 21:21:54 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_30.dll
[2016/02/20 21:21:54 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_30.dll
[2016/02/20 21:21:52 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\xactengine2_0.dll
[2016/02/20 21:21:52 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\xactengine2_0.dll
[2016/02/20 21:21:51 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\x3daudio1_0.dll
[2016/02/20 21:21:51 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\x3daudio1_0.dll
[2016/02/20 21:21:50 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_29.dll
[2016/02/20 21:21:48 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_28.dll
[2016/02/20 21:21:48 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_28.dll
[2016/02/20 21:21:47 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_27.dll
[2016/02/20 21:21:47 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_27.dll
[2016/02/20 21:21:45 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_26.dll
[2016/02/20 21:21:45 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_26.dll
[2016/02/20 21:21:43 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_25.dll
[2016/02/20 21:21:43 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_25.dll
[2016/02/20 21:21:41 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\d3dx9_24.dll
[2016/02/20 21:21:41 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\d3dx9_24.dll
[2016/02/20 20:39:22 | 000,000,000 | ---D | C] -- C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ココロ@ファンクション!
[2016/02/13 15:16:24 | 002,243,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wucltux.dll
[2016/02/13 15:16:24 | 000,897,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapi.dll
[2016/02/13 15:16:24 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapi.dll
[2016/02/13 15:16:24 | 000,409,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WUSettingsProvider.dll
[2016/02/13 15:16:24 | 000,136,912 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuauclt.exe
[2016/02/13 15:16:23 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuwebv.dll
[2016/02/13 15:16:23 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuwebv.dll
[2016/02/13 15:16:23 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wudriver.dll
[2016/02/13 15:16:23 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wudriver.dll
[2016/02/13 15:16:23 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapp.exe
[2016/02/13 15:16:23 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapp.exe
[2016/02/13 15:15:17 | 014,467,072 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\twinui.dll
[2016/02/13 15:15:14 | 012,879,360 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\twinui.dll
[2016/02/13 15:15:10 | 002,778,624 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\authui.dll
[2016/02/13 15:15:09 | 002,464,256 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\authui.dll
[2016/02/13 15:12:05 | 001,362,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\appraiser.dll
[2016/02/13 15:12:05 | 001,162,240 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
[2016/02/13 15:12:05 | 000,696,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\invagent.dll
[2016/02/13 15:12:05 | 000,677,376 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
[2016/02/13 15:12:05 | 000,499,200 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll
[2016/02/13 15:12:05 | 000,033,472 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CompatTelRunner.exe
[2016/02/13 15:12:04 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\acmigration.dll
[2016/02/13 14:40:56 | 001,442,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll
[2016/02/13 14:40:56 | 000,445,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\certcli.dll
[2016/02/13 14:40:56 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\certcli.dll
[2016/02/13 14:40:55 | 000,186,880 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dpapisrv.dll
[2016/02/12 06:51:40 | 007,453,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2016/02/12 06:51:40 | 001,133,744 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll
[2016/02/12 06:51:39 | 002,175,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\combase.dll
[2016/02/12 06:51:39 | 001,737,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll
[2016/02/12 06:51:39 | 001,564,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\combase.dll
[2016/02/12 06:51:38 | 001,063,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinTypes.dll
[2016/02/12 06:51:38 | 000,548,024 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WinTypes.dll
[2016/02/12 06:51:38 | 000,246,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\microsoft-windows-system-events.dll
[2016/02/12 06:51:37 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wincorlib.dll
[2016/02/12 06:51:25 | 000,713,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSync.dll
[2016/02/12 06:51:24 | 000,578,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\WinSync.dll
[2016/02/12 06:51:20 | 000,898,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\CPFilters.dll
[2016/02/12 06:51:20 | 000,702,976 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\CPFilters.dll
[2016/02/12 06:51:20 | 000,532,480 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\EncDec.dll
[2016/02/12 06:51:20 | 000,443,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\EncDec.dll
[2016/02/12 06:51:19 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mtxoci.dll
[2016/02/12 06:51:19 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msorcl32.dll
[2016/02/12 06:51:19 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mtxoci.dll
[2016/02/12 06:51:18 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\cfgbkend.dll
[2016/02/12 06:51:18 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\cfgbkend.dll
[2016/02/12 06:51:17 | 007,075,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\glcndFilter.dll
[2016/02/12 06:51:16 | 007,783,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\Windows.Data.Pdf.dll
[2016/02/12 06:51:15 | 005,267,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\glcndFilter.dll
[2016/02/12 06:51:15 | 005,264,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\Windows.Data.Pdf.dll
[2016/02/12 06:51:00 | 006,052,352 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
[2016/02/12 06:50:52 | 002,123,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
[2016/02/12 06:50:52 | 000,798,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
[2016/02/12 06:50:52 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\hlink.dll
[2016/02/12 06:50:51 | 002,880,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\actxprxy.dll
[2016/02/12 06:50:51 | 002,050,560 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
[2016/02/12 06:50:50 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript.dll
[2016/02/12 06:50:50 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieapfltr.dll
[2016/02/12 06:50:50 | 000,718,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ie4uinit.exe
[2016/02/12 06:50:50 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieapfltr.dll
[2016/02/12 06:50:50 | 000,663,552 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript.dll
[2016/02/12 06:50:50 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
[2016/02/12 06:50:33 | 003,547,648 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpcorets.dll
[2016/02/12 06:50:32 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rdpudd.dll

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2016/03/05 12:50:52 | 001,496,524 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2016/03/05 12:50:52 | 000,722,476 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2016/03/05 12:50:52 | 000,500,892 | ---- | M] () -- C:\windows\SysNative\perfh011.dat
[2016/03/05 12:50:52 | 000,135,664 | ---- | M] () -- C:\windows\SysNative\perfc011.dat
[2016/03/05 12:50:52 | 000,135,592 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2016/03/05 12:47:59 | 000,000,704 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2016/03/05 12:47:22 | 000,001,187 | ---- | M] () -- C:\Users\M\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\F-Launcher.lnk
[2016/03/05 12:46:26 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2016/03/05 01:32:00 | 000,000,708 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2016/03/02 21:47:31 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2016/03/02 21:47:28 | 2499,678,207 | -HS- | M] () -- C:\hiberfil.sys
[2016/03/02 19:55:53 | 000,192,216 | ---- | M] (Malwarebytes) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2016/03/02 06:40:17 | 000,002,194 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PointGrab Hand Gesture Control.lnk
[2016/03/02 06:40:17 | 000,002,185 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\驚速 for Windows 8 スタート.lnk
[2016/03/02 06:40:17 | 000,002,112 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\My Cloud リモートアクセス設定スタートアップ.lnk
[2016/03/02 06:39:57 | 000,002,691 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2016/03/02 06:39:57 | 000,002,683 | ---- | M] () -- C:\Users\Public\Desktop\楽しもう!Office ライフ.lnk
[2016/03/02 06:39:57 | 000,002,403 | ---- | M] () -- C:\Users\Public\Desktop\楽しもう!PCライフ.lnk
[2016/03/02 06:39:57 | 000,002,173 | ---- | M] () -- C:\Users\Public\Desktop\驚速 for Windows 8.lnk
[2016/03/02 06:39:57 | 000,002,138 | ---- | M] () -- C:\Users\Public\Desktop\ウイルスセキュリティ.lnk
[2016/03/02 06:39:57 | 000,001,813 | ---- | M] () -- C:\Users\Public\Desktop\Start BlueStacks.lnk
[2016/03/02 06:39:57 | 000,000,753 | ---- | M] () -- C:\Users\Public\Desktop\エレコム マウスアシスタント4.lnk
[2016/03/02 06:39:57 | 000,000,698 | ---- | M] () -- C:\Users\Public\Desktop\インターネット接続 - ショートカット.lnk
[2016/03/02 06:39:56 | 000,002,328 | ---- | M] () -- C:\Users\Public\Desktop\MP480 series 電子マニュアル(取扱説明書).lnk
[2016/03/02 06:39:56 | 000,002,182 | ---- | M] () -- C:\Users\Public\Desktop\PointGrab Hand Gesture Control.lnk
[2016/03/02 06:39:56 | 000,002,059 | ---- | M] () -- C:\Users\Public\Desktop\i-フィルター 6.0のセットアップ.lnk
[2016/03/02 06:39:56 | 000,001,868 | ---- | M] () -- C:\Users\Public\Desktop\Apps.lnk
[2016/03/02 06:39:56 | 000,001,286 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2016/03/02 06:39:56 | 000,001,108 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2016/03/02 06:39:56 | 000,001,012 | ---- | M] () -- C:\Users\Public\Desktop\F-Launcher.lnk
[2016/03/02 06:39:56 | 000,000,872 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2016/03/02 06:39:56 | 000,000,706 | ---- | M] () -- C:\Users\Public\Desktop\Intel(R) HD Graphics Control Panel.lnk
[2016/03/02 06:39:10 | 000,000,334 | ---- | M] () -- C:\Users\M\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2016/03/02 06:39:09 | 000,002,285 | ---- | M] () -- C:\Users\M\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2016/03/02 06:39:09 | 000,001,116 | ---- | M] () -- C:\Users\M\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk
[2016/03/02 06:39:09 | 000,000,975 | ---- | M] () -- C:\Users\M\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2016/03/02 06:39:09 | 000,000,352 | ---- | M] () -- C:\Users\M\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2016/03/01 22:47:32 | 000,482,416 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2016/02/23 21:54:17 | 000,001,682 | -HS- | M] () -- C:\ProgramData\KGyGaAvL.sys
  • nanashi
  • 2016/03/05 (Sat) 14:00:12
OTL.txt ③
OTL.txt 3つ目です。


[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2016/03/01 21:04:09 | 000,001,108 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2016/02/28 00:35:44 | 000,000,872 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2016/02/21 19:05:31 | 000,339,101 | ---- | C] () -- C:\Users\M\Documents\SCN_0003.pdf
[2016/02/21 18:28:55 | 000,002,328 | ---- | C] () -- C:\Users\Public\Desktop\MP480 series 電子マニュアル(取扱説明書).lnk
[2015/08/24 22:27:00 | 000,000,000 | ---- | C] () -- C:\Users\M\AppData\Local\{35211E61-1D20-4861-8FC9-4751CF93F5D7}
[2015/04/15 13:22:28 | 000,187,904 | ---- | C] () -- C:\windows\SysWow64\igdde32.dll
[2015/04/15 13:22:27 | 017,289,048 | ---- | C] () -- C:\windows\SysWow64\igd11dxva32.dll
[2015/04/06 23:27:13 | 000,107,008 | ---- | C] () -- C:\windows\SysWow64\OEMLicense.dll
[2015/04/06 23:25:01 | 000,046,080 | ---- | C] () -- C:\windows\SysWow64\BWContextHandler.dll
[2014/05/17 22:05:44 | 000,002,255 | ---- | C] () -- C:\windows\SysWow64\WimBootCompress.ini
[2014/05/16 22:52:06 | 000,001,682 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2014/04/30 02:33:40 | 000,000,242 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013/09/02 16:54:37 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2016/02/20 21:19:55 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2016/01/22 17:01:44 | 022,365,992 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2016/01/22 16:11:11 | 019,794,896 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2014/10/29 10:19:43 | 001,013,760 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2014/10/29 09:59:23 | 000,786,944 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2014/10/29 10:16:01 | 000,512,512 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]
[2016/03/01 21:03:59 | 000,000,000 | -H-D | M] -- C:\ProgramData
[2015/05/02 12:52:09 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\InstallShield Installation Information
[2014/04/29 00:15:05 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\Temp
[2016/02/10 22:57:26 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsApps
[2015/03/13 01:51:40 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ
[2015/03/13 01:51:40 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ\IJPrinter
[2016/01/01 14:59:16 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ\IJPrinter\CNMwindows
[2016/01/01 15:00:21 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ\IJPrinter\CNMwindows\Canon MG3100 series Printer
[2015/05/23 01:42:30 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ\IJPrinter\CNMwindows\Canon MP480 series Printer
[2013/08/23 00:36:30 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\WwanSvc
[2015/12/30 19:52:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\Windows\DeviceMetadataCache\dmrccache\downloads
[2013/08/23 07:50:22 | 000,000,000 | RH-D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
[2013/08/23 00:36:30 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\WwanSvc\Profiles
[2014/04/27 23:38:55 | 000,000,000 | RH-D | M] -- C:\Users\Default
[2015/03/13 01:51:40 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ
[2015/03/13 01:51:40 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ\IJPrinter
[2016/01/01 14:59:16 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ\IJPrinter\CNMwindows
[2016/01/01 15:00:21 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ\IJPrinter\CNMwindows\Canon MG3100 series Printer
[2015/05/23 01:42:30 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ\IJPrinter\CNMwindows\Canon MP480 series Printer
[2013/08/23 00:36:30 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\WwanSvc
[2015/12/30 19:52:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\Windows\DeviceMetadataCache\dmrccache\downloads
[2013/08/23 07:50:22 | 000,000,000 | RH-D | M] -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Tablet PC
[2013/08/23 00:36:30 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\WwanSvc\Profiles
[2013/08/23 00:36:30 | 000,000,000 | -H-D | M] -- C:\Users\Default\AppData
[2014/04/27 23:51:25 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData
[2016/02/27 22:01:47 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
[2016/02/27 22:01:47 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~
[2014/05/16 22:57:42 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Media Player\アート キャッシュ
[2014/09/23 00:41:43 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Media Player\ダウンロード ファイルの同期
[2014/04/27 23:51:36 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\PrivacIE
[2015/09/25 06:32:32 | 000,000,000 | RH-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\Burn\Burn
[2016/02/27 19:09:43 | 000,000,000 | RH-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\Burn\Burn1
[2016/02/27 19:12:02 | 000,000,000 | RH-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\Burn\Burn2
[2016/02/27 19:19:03 | 000,000,000 | RH-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\Burn\Burn3
[2016/02/27 19:21:04 | 000,000,000 | RH-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\Burn\Burn4
[2016/02/27 22:45:25 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\DNTException\Low
[2015/06/07 19:34:53 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\INetCache\Content.MSO
[2016/02/21 19:09:02 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\INetCache\Content.Word
[2014/04/28 03:13:55 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\INetCache\Virtualized
[2014/04/27 23:51:36 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Local\Microsoft\Windows\PrivacIE\Low
[2014/04/27 23:52:23 | 000,000,000 | -H-D | M] -- C:\Users\M\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2014/02/27 10:22:08 | 001,768,520 | -H-- | M] () -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\Installer.exe
[2012/12/25 21:58:22 | 002,289,376 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SSSBootstrap.exe
[2014/02/27 10:22:36 | 001,859,144 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\VirusSecurity.exe
[2014/03/26 15:30:04 | 180,796,472 | -H-- | M] (K7 Computing Pvt. Ltd.) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\Setup\vs.exe
[2014/02/27 10:21:58 | 001,749,064 | -H-- | M] (TODO: <会社名>) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\ActivationPageURLGen.exe
[2014/02/27 10:22:00 | 001,689,672 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\Deactivate.exe
[2014/02/27 10:22:01 | 000,125,000 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\IECookie.exe
[2014/02/27 10:22:10 | 001,678,408 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\LCFiler.exe
[2014/02/27 10:22:14 | 001,620,552 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\RemoveLicenseTool.exe
[2014/02/27 10:22:23 | 001,701,448 | -H-- | M] () -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\SnrmUpdater.exe
[2014/02/27 10:22:24 | 001,711,176 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\SnrmUpdaterExec.exe
[2014/02/27 10:22:35 | 000,258,120 | -H-- | M] (SOURCENEXT CORPORATION) -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SNRM\Unziproc.exe
[2012/12/06 20:19:12 | 006,375,992 | -H-- | M] () -- C:\Users\M\Downloads\ウイルスセキュリティ\InstallData\InstallData\SSS\setup.exe
[2014/04/27 23:53:56 | 000,000,000 | -H-D | M] -- C:\Users\M\Music\Corel
[2014/04/29 00:07:39 | 000,000,000 | -H-D | M] -- C:\Users\M\Music\My Cloud DB
[2015/06/15 22:46:59 | 000,000,000 | -H-D | M] -- C:\Users\M\Pictures\My Cloud DB
[2014/04/29 00:07:39 | 000,000,000 | -H-D | M] -- C:\Users\M\Videos\My Cloud DB
[2014/04/27 23:42:32 | 000,000,000 | RH-D | M] -- C:\Users\Public\AccountPictures
[2016/03/01 23:00:44 | 000,000,000 | RH-D | M] -- C:\Users\Public\Desktop
[2015/03/28 22:23:48 | 000,000,000 | RH-D | M] -- C:\Users\Public\Libraries
[2014/04/30 02:19:41 | 000,000,000 | -H-D | M] -- C:\Windows\ELAMBKUP
[2014/11/29 20:58:58 | 000,000,000 | -H-D | M] -- C:\Windows\ServiceProfiles\LocalService\AppData
[2014/04/30 02:33:00 | 000,000,000 | -H-D | M] -- C:\Windows\ServiceProfiles\NetworkService\AppData
[2014/04/30 02:33:38 | 000,000,000 | -H-D | M] -- C:\windows\SysNative\GroupPolicy

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2016/03/05 12:47:59 | 000,000,704 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2016/03/05 01:32:00 | 000,000,708 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: TOSHIBA MQ01ABD075
Partitions: 6
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 768.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 768.00MB
Starting Offset: 806354944
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: GPT: System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 260.00MB
Starting Offset: 1611661312
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: GPT: Basic Data
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 338.00GB
Starting Offset: 2018508800
Hidden sectors: 0


DeviceID: Disk #0, Partition #4
PartitionType: GPT: Basic Data
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 338.00GB
Starting Offset: 365348965888
Hidden sectors: 0


DeviceID: Disk #0, Partition #5
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 20.00GB
Starting Offset: 728679422976
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2014/10/29 11:42:20 | 000,214,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2014/10/29 11:44:33 | 000,110,080 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2014/10/29 10:21:02 | 000,096,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2014/10/29 10:43:34 | 000,933,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2015/08/11 03:15:56 | 000,845,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:40 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV - [2014/10/29 10:01:27 | 000,046,592 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2014/10/29 10:12:28 | 000,516,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2014/10/29 09:55:10 | 000,367,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:50 | 000,135,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2014/10/29 10:27:24 | 000,131,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:29 | 000,817,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:06 | 000,365,056 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2014/10/29 10:05:58 | 000,292,864 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2014/11/05 10:43:48 | 000,252,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2014/10/29 10:14:35 | 000,110,592 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (Eaphost)
SRV:[b]64bit:[/b] - [2014/10/29 11:44:23 | 000,033,792 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2014/10/29 10:59:46 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2014/10/29 10:07:58 | 000,452,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2014/10/29 10:08:58 | 000,397,312 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2014/10/29 10:01:45 | 000,706,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2014/10/29 10:22:44 | 000,071,168 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2014/10/29 09:51:03 | 000,266,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:20 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 10:41:58 | 000,391,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:29:16 | 000,028,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2014/10/29 11:45:24 | 000,116,736 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2014/11/04 14:01:49 | 000,827,392 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
No service found with a name of ProtectedStorage
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2014/10/29 11:34:42 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2014/10/29 09:59:21 | 000,542,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2014/10/29 10:19:29 | 000,817,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2014/10/29 11:42:25 | 000,031,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2014/10/29 12:51:48 | 000,047,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2016/01/07 01:47:23 | 000,146,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:18:49 | 000,329,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2014/10/29 10:04:06 | 000,640,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2014/10/29 09:49:09 | 000,576,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2015/08/01 12:38:35 | 001,265,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2014/10/29 11:12:14 | 000,313,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2014/10/29 10:34:59 | 000,254,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2014/10/29 10:26:29 | 000,059,392 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2015/07/10 01:14:45 | 000,228,864 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2014/10/21 09:30:29 | 001,454,080 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2015/05/31 04:35:47 | 000,911,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (Audiosrv)
SRV:[b]64bit:[/b] - [2015/05/31 04:36:24 | 000,230,400 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
No service found with a name of SDRSVC
SRV:[b]64bit:[/b] - [2015/07/07 18:39:32 | 000,023,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2015/03/06 11:47:37 | 001,696,256 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (EventLog)
SRV:[b]64bit:[/b] - [2014/10/29 10:02:44 | 000,880,640 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:59:24 | 000,670,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2015/06/16 07:41:04 | 000,065,024 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2015/06/16 06:16:41 | 000,059,904 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2014/10/29 10:18:13 | 000,230,400 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2016/01/11 01:51:54 | 003,707,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2014/10/29 10:53:17 | 000,262,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2014/10/29 10:03:56 | 001,547,264 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (WlanSvc)
SRV:[b]64bit:[/b] - [2014/10/29 10:24:29 | 000,289,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 220 bytes -> C:\Users\M\OneDrive:ms-properties

< End of report >
  • nanashi
  • 2016/03/05 (Sat) 14:03:11
Extras.txtです
Extras.txt です。

OTL Extras logfile created on: 2016/03/05 13:01:50 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\M\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.18205)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.91 Gb Total Physical Memory | 5.87 Gb Available Physical Memory | 74.15% Memory free
9.16 Gb Paging File | 6.59 Gb Available in Paging File | 71.92% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 338.38 Gb Total Space | 227.32 Gb Free Space | 67.18% Space Free | Partition Type: NTFS
Drive D: | 338.38 Gb Total Space | 338.24 Gb Free Space | 99.96% Space Free | Partition Type: NTFS

Computer Name: USER | User Name: M | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-3620435610-4091346163-423542706-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04629206-3CCE-4729-AEA8-587313597E7B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{4191EC4A-3DD9-43FF-AD12-020FA7D1D7AC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{49578D76-4B92-43C0-B433-D8BA8894BF80}" = lport=445 | protocol=6 | dir=in | app=system |
"{70D3BC36-5B7E-4276-A561-940BBDDABE62}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{7B538B4D-343E-45CC-B896-D71D09350685}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{87D5B643-D576-4211-B051-705EC7769E11}" = rport=137 | protocol=17 | dir=out | app=system |
"{9D7262CD-1399-4C1F-BCCE-38B249CB12BF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9F6C5CA9-DCE3-4C72-AABA-58DEB5E29672}" = rport=139 | protocol=6 | dir=out | app=system |
"{A9316C63-BED8-4082-A36E-EAEFAAD998F9}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{AFE42535-3DD0-4BBA-ACAB-09C744E5DF54}" = lport=137 | protocol=17 | dir=in | app=system |
"{BA9EFCB5-7ADB-4D01-A26F-A8A39ED87629}" = rport=445 | protocol=6 | dir=out | app=system |
"{BD2CAC03-91E8-449E-8DBA-F38331ED07BA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{C4232201-46E5-4FF7-9CB1-523C058E3B08}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{CF85929C-DE5B-4C10-98A3-75D0532C8C96}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{D2C7803C-426A-48D1-B6F5-1015B4555DCB}" = lport=138 | protocol=17 | dir=in | app=system |
"{DF2D6D71-8E65-4076-9A90-1FDFF989ECB1}" = lport=139 | protocol=6 | dir=in | app=system |
"{F689B02D-5E15-4F56-8913-737D97763629}" = rport=138 | protocol=17 | dir=out | app=system |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{054269F7-A144-4F20-9B92-86A0BB983BDA}" = dir=out | name=my cloud ホーム |
"{09CFF006-3E59-43CA-8D4B-A942E859F358}" = protocol=17 | dir=in | app=c:\program files (x86)\smedio\airget\airgetservice.exe |
"{0D96FA8E-CE1C-45F6-B41D-47596A1291B8}" = protocol=6 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{0E041A2F-B514-4756-89E2-18F7A4367F5C}" = dir=out | name=yahoo!オークション (ft) |
"{104AE334-2F39-45BC-9088-1B50E74CE753}" = dir=out | name=@{microsoft.bingfinance_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{148AD89E-77C1-4B5F-AC30-C7D03D6934D7}" = dir=out | name=my cloud エコdx |
"{1B18A50E-2C0D-4322-95BB-A333125A085D}" = protocol=17 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{1B91BEF9-0F89-495D-8DAD-A07FE47BCAAE}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{1FDCD87B-D55C-40E5-859D-6E3632FB15E9}" = protocol=6 | dir=in | app=c:\program files (x86)\smedio\airget\airgetservice.exe |
"{230D6830-9255-4E87-BEE9-704EC299EEEA}" = protocol=17 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{23265A70-D9EF-447D-9D6A-2551B707DA40}" = dir=out | name=楽天gateway |
"{24453A3D-832D-49B0-AA82-716835D1CFFB}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{2466BCE9-CE41-4EEE-9941-5E16FD9855E6}" = dir=out | name=my cloud ビデオ2 |
"{270BE779-A708-4BDF-B6CE-DBCA95172A7D}" = dir=out | name=@{microsoft.zunemusic_2.6.672.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{291D3FE3-4AFB-43C3-96F7-276C4FB4E4CE}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{2CF0867A-2BF5-4745-80DA-9DF66C1B5052}" = dir=out | name=@{microsoft.bingnews_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{372F235D-CE3B-4960-ACEF-8CC098D8D683}" = dir=out | name=宿探 for fujitsu |
"{392BA9F2-F4F4-4124-B8D0-9223A002B1F9}" = dir=out | name=nissen smart catalog |
"{39F73059-9174-47FF-A842-460368516420}" = dir=in | app=c:\users\m\appdata\local\microsoft\skydrive\skydrive.exe |
"{3F6C3FBA-1164-436C-9AB3-CC7C6EF52901}" = dir=in | app=c:\program files (x86)\fujitsu\mcecouty\jre\bin\java.exe |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{42B05AFB-8358-4E1E-A84A-9A5C3C679BC5}" = protocol=6 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{481B7266-B50E-4311-9832-393E7DE4C9AB}" = dir=out | name=マイミュージアム |
"{482CFA40-8A67-4EBB-B74B-2BC64863B8BC}" = dir=out | name=楽天レシピ |
"{4C744E36-8BB2-40E0-A320-02B345FF2166}" = dir=in | app=c:\program files (x86)\digion\dixim vdms for fujitsu\vdms\dms_svc.exe |
"{4D37081C-9E33-4601-A7F5-43C4C8C208FF}" = protocol=6 | dir=in | app=c:\program files (x86)\smedio\airget\airgetservice.exe |
"{50B77186-56DA-42E6-95DB-56B27FFE25E8}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{5118D0B9-F0FB-4B23-BB73-4CA415A22E4B}" = dir=out | name=booksv |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{56D878A1-E65C-4F3A-BD43-24732C3A69B0}" = protocol=6 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{5AB74845-6A81-475C-8042-3DB8ED4E94D6}" = dir=in | name=skype |
"{5C7611D0-08C8-4B07-AA66-6F4941E525E1}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{5EBF1326-0116-4F11-A3F2-99ECDB735832}" = dir=out | name=my cloud ミュージック |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{6180C43A-C3E0-4D3A-8C28-CEA17F1D03EB}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20947_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{6609FFAE-29A4-485B-8BFB-344DC7552424}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{6F876F93-3547-4994-8EB8-B3C850DFDBDB}" = dir=out | name=富士通アドバイザー |
"{718F6675-7785-42B6-B628-30D9F4A2A96F}" = dir=out | name=windows_ie_ac_001 |
"{7233214A-2C1E-45DB-B47B-82D72DAEB2A8}" = protocol=17 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{729B3FB3-12B2-4721-AAF5-0128120E91A8}" = dir=out | name=@{microsoft.bingtravel_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{75743A25-3367-4BBB-B1EF-4A9A8FC207BF}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{808BE626-493F-4D50-AE7E-604B961E356A}" = dir=in | name=my cloud モバイルアクセス |
"{86801D9F-5E4C-436A-B01A-78CD1CCFF363}" = protocol=6 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{88DE31A2-6984-4C80-85AC-34F51ABB9D07}" = dir=out | name=skype |
"{90336987-3146-4754-BB5F-B5B1EED18CB5}" = dir=in | name=富士通アドバイザー |
"{915A5D8A-CEA4-49E7-B05A-C2D0F4E7FEAF}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{931CC465-EB27-4914-9338-80A5E7020B1F}" = protocol=17 | dir=in | app=c:\program files (x86)\smedio\airget\airgetservice.exe |
"{970FB2D7-5AFA-4271-B44F-29CC3239EE00}" = dir=out | name=music.jp store for fujitsu |
"{98765DA2-A030-45BA-B6AD-B0CF2E9248DF}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{98E47170-5C7E-4135-8C83-90CC1066D682}" = dir=out | name=健康生活日記 |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{9E3D9141-C240-439D-8C1D-6BDBC3A5369C}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{A18B172D-2CCC-4840-8EFB-BF65A91CD43F}" = protocol=17 | dir=in | app=c:\program files (x86)\smedio\airget\airgetservice.exe |
"{A73ED520-A2C3-4B9D-AD4A-09F715CF1E8D}" = dir=out | name=楽天gateway |
"{AB278832-7DA2-41DC-9D7A-A488A32F2C45}" = dir=out | name=@{microsoft.bingweather_3.0.4.337_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} |
"{AF7A042E-65EF-4076-9743-B66E8987B73C}" = dir=out | name=富士通パソコン お客様サポート |
"{AFA80016-6AB3-4AA6-93F4-6142CCEAE4E6}" = protocol=17 | dir=in | app=c:\program files (x86)\fujitsu\drivestudio\drivestudioservice.exe |
"{B36FE74D-21CB-45A1-A34C-194EBE5C6EC9}" = dir=out | name=navitime for fujitsu |
"{B59917B5-D122-4B10-8FF6-F50FF65F899D}" = dir=in | app=c:\program files (x86)\fujitsu\f-link\f-link.exe |
"{BC6641A4-28F7-4F78-8984-47FE7797C1FE}" = dir=out | name=my cloud スタート |
"{BDD7BCCB-4671-441B-9A85-A8733E2CF281}" = dir=out | name=fresh paint |
"{BE8F5839-E32F-454B-ABA8-A774D2C8196E}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{BFC8254A-470E-48EB-BA74-22395692A304}" = dir=out | name=my cloud フォト |
"{CAC92CF5-BAE4-49D0-9D72-21D2F6A3A2C3}" = dir=out | name=@{microsoft.bingsports_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} |
"{CF0B3BC5-F1FD-4C1D-A581-AAEFB486DF42}" = dir=out | name=@{microsoft.zunevideo_2.6.446.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{D1603E16-FE9E-4293-9693-53261360AA54}" = dir=in | name=健康生活日記 |
"{D4CD4BC5-5B64-4C32-9C7B-6401CC19E5AC}" = dir=in | app=c:\program files (x86)\digion\dixim vdms for fujitsu\cindy\dms_sync_svc.exe |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D73E0C2E-CECD-4528-9A06-E65E5763AAFE}" = dir=out | name=my cloud モバイルアクセス |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DCFCB326-96D0-40E2-83F4-FBDAFDA5DAC4}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20947_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{DDA3BCB4-8CA0-4507-A658-3508F7951F7C}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{DF02BD10-E8E0-4686-9F46-D73C761CA24D}" = dir=out | name=line |
"{E01B84CC-74F5-456E-AF11-77B6FCDD9F18}" = dir=in | app=c:\program files\nec\atermwrex\wrstexv.exe |
"{E45E0AA4-3A66-4BF5-9B80-BEB646C45148}" = dir=in | name=my cloud スタート |
"{E8D40F5C-D42C-4F55-8979-DD5B3A2B4071}" = protocol=6 | dir=in | app=c:\program files (x86)\smedio\airget\airgetservice.exe |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{F85EC96C-EDF1-41ED-8ED4-CF818774D7E7}" = dir=in | app=c:\program files (x86)\fujitsu\f-link\deuservice.exe |
"{FA270858-871B-42A5-9003-BB5B358741BB}" = dir=in | name=my cloud ビデオ2 |
"{FCCB132C-9DFC-4950-9AA5-FC3A5A2D3DBA}" = dir=out | name=シュフーチラシアプリ for fujitsu |
"{FE5FD1FE-8F40-4CE0-A938-529BA023767C}" = dir=in | name=my cloud ミュージック |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{06B24B6B-4B44-4C94-B1F9-40474597D645}" = Microsoft SQL Server Compact 4.0 SP1 x64 JPN
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{10AAED5B-1575-3EA3-97D0-C5E514DE777C}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
"{13031CDF-00D2-4FCE-AB13-8430D8733574}" = Wireless Radio Switch Driver
"{1B2C85A0-2B9E-4291-8B37-468D57503E98}" = Update for Japanese Microsoft IME Postal Code Dictionary
"{1C2B207A-F103-4D0B-B264-0D3282D1ACBB}" = PCカルテ
"{1C725459-5053-42A5-B22A-F3E91484DF65}" = @メニュー
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{20CA9527-15AD-4D95-815B-414BD1CF1A44}" = Function Manager
"{3256AFF4-BF40-41A9-AE43-FF3F4A9A3E94}" = Plugfree NETWORK
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{47BC37A3-35C8-484A-8CBD-851914EB095E}" = アップデートナビ
"{4DF9BC73-D405-4C3B-A0EA-1E390A8AFC73}" = Update for Japanese Microsoft IME Standard Dictionary
"{4FFF5818-2CAA-4CF2-93BE-5F3D428E969C}" = F-Launcher
"{54233B7A-6467-4AF9-9D3C-967022D84C8D}" = 自動サインイン設定
"{5DA6F56A-5E2D-4FB4-88CB-E9EE2B790A14}" = Microsoft SQL Server Compact 3.5 SP2 x64 JPN
"{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = LIFEBOOK Application Panel
"{7292FFCF-FA9A-4585-AB80-A71961F931AF}" = Fujitsu BIOS Driver
"{7BA64D21-EE46-4a9a-8145-52B0175C3F86}" = Plugfree NETWORK
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89AFB053-A343-46EF-97E4-D593AD7184E6}" = Intel® Trusted Connect Service Client
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{96714280-14E6-4DF7-BACD-F797C0F17C3D}" = Intel(R) Rapid Storage Technology
"{A794229E-401E-44D4-A8B5-B21E975676DE}" = 電源オフUSB充電ユーティリティ
"{A84A4FB1-D703-48DB-89E0-68B6499D2801}" = Qualcomm Atheros Bluetooth Suite (64)
"{BCC8CBC4-0F36-4F2A-B9C6-717FDF266C90}" = Battery Utility
"{C3600AE6-93A0-3DB7-B7AA-45BD58F133B5}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{CB0EA768-62F2-450E-88BC-74182237F564}" = 省電力ユーティリティ
"{CF6398CB-0B6D-461D-861E-1A3ACD591950}" = Peakshift setting
"{DDC49774-40B9-47AE-9C63-5569C08C4082}" = Pointing Device Utility
"{DE89B0B7-A1D5-4258-9BBC-374728754F33}" = ソースネクスト 驚速 for Windows 8
"{E2C24FE1-C6BB-4A4B-8B7F-BF2521DEB91E}" = Share64
"{E51D1614-8FEB-4157-81BB-4453E36F81C8}" = ソースネクスト 驚速メモリ
"{E72A5113-653E-4A3D-927D-D51FE7C536EA}" = ソースネクスト 驚速デフラグ
"{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = Fujitsu System Extension Utility
"{EC314CDF-3521-482B-A21C-65AC95664814}" = Fujitsu MobilityCenter Extension Utility
"{F3F11FF1-4EF7-4012-A0D7-BC89442FCA4F}" = Update for Japanese Microsoft IME Trending Words Dictionary
"068FEFD9ECB0E04D17792AACEDA1D0A43CD7F82C" = Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02B1) System (06/26/2013 1.23)
"39B67640DB636F6D78D660BE574C0C5DC39D08CF" = Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02E3) System (07/02/2013 1.30.1.0)
"CCleaner" = CCleaner
"HomeBusinessRetail - ja-jp" = Microsoft Office Home and Business 2013 - ja-jp
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語
"sp6" = SetPoint 6.60
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"クロノクロック" = クロノクロック

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{E185BD5C-0E10-479F-AF44-63D3A068446A}" = Corel Digital Studio for FUJITSU
"{01E87699-A49D-413A-B75B-7C434FEF979C}" = Update for Japanese Microsoft IME Standard Extended Dictionary
"{02D371DE-95DC-4F6F-A1A6-4C957D6721A9}" = 筆ぐるめ 20
"{0EC4C219-98F6-41F8-9B37-2D08D8A074B0}" = エレコム マウスアシスタント4
"{1367CB1E-62B9-4D0D-BD8C-2EFD6DB1F64D}" = My Cloud モバイルアクセス設定Utility
"{15015752-9990-4516-A2B1-93823281FB8E}" = Update for Japanese Microsoft IME Postal Code Dictionary
"{1E0EE5F4-C6C4-491C-B5C1-EB8FB3872621}" = FaceEngine
"{1E474357-A5A1-43EB-97C8-58A11EB2BEE7}" = PointGrab Hand Gesture Control
"{21357E10-BDCB-4CDD-B2A3-905DD7ED653D}_is1" = DigiBookBrowser Version 1.5.3.87
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros Client Installation Program
"{2C12184B-F547-455E-8B36-D81ED4E17C46}" = Roxio Creator LJ
"{31DD46C2-DAF6-464A-A6B8-E7D53B5EA9A5}" = ELECOM MouseAssistant4
"{3A1D830F-0785-46CE-903C-3877B58A9D0E}" = F-LINK
"{3C100F93-4F0E-4C32-9AEB-EFB3E2CA34F8}" = PhotoWizard
"{44F23264-7A6D-47D4-9351-91A926A0ACA3}" = @!
"{4942BA6A-A230-40FA-AE95-E29D548F08C5}" = Office タッチ リボン
"{49830DFB-7C40-4AFD-A703-8599D856B65D}" = ソフトウェアディスク検索
"{4F969DB4-EBC1-4A39-B913-090A630C55FC}" = パソコン乗換ガイド
"{5679ba8c-3ec1-426c-89af-e2dd9877d34f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader
"{5C1F18D2-F6B7-4242-B803-B5A78648185D}" = Corel WinDVD
"{5CE03DAA-0C56-479C-AEB1-61BE74DCEE37}" = MLE2
"{5FD7182E-37F9-4BBA-85D6-C4A414AB2BC9}" = 富士通PC 辞書セット(広辞苑第六版+リーダーズ英和辞典+新和英中辞典+現代用語の基礎知識+学研パーソナル統合辞典)
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{619133A5-48DE-4A54-AE4E-9CD480E4D2D7}" = 楽しもう!Office ライフ
"{624FDAA9-ACB0-4BCC-B1D3-CBA885863726}" = Bestshot
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{6A83C341-85CB-4816-8844-5A3E36D48D82}" = 電子辞書
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{70140D68-13DF-427D-8FD8-F8C8EEF8A641}" = バックアップナビ
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74DC8A26-4E05-40B6-AD11-C9428A1AE150}" = Roxio Creator LJ
"{82F4EA7F-BBBD-4860-A347-5EC89897C7A4}" = Inspirium辞書検索ライブラリ
"{8561077B-55BB-4B47-8B90-6C744B12F7C0}" = チケットメーカー
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{89A15676-78AE-4D51-BF5B-DEE3E0D46C94}" = Roxio Creator LJ
"{89E9AB79-7914-4B67-8D4E-A8B1E39C3D89}" = Microsoft SQL Server Compact 3.5 SP2 JPN
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0411-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{92DB6D98-63FE-47EC-A331-5CFD283581BA}" = ソースネクスト アップデート 4.0
"{95669DE5-9CAA-45BF-B5CC-3B74CAE20455}" = My Cloud ビデオ サーバー
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{ABA1AD05-E9B8-4BC8-AA41-AAA5032DF110}" = MLSDK
"{BBDE36A2-E5F2-4230-983E-1D67F776DB46}" = @! NEO
"{C19F91D1-36F8-4FB0-84D2-764C0E707881}" = Drive Studio設定Utility
"{C5DEA189-ADE3-477C-85AC-9A3F1637394A}" = 書き込み機能拡張ユーティリティ
"{C65ACE72-280B-4A28-8C00-AA0FBEBEEA79}" = My Cloud データ連携Utility
"{D8FA8D84-7CB7-46D9-B773-F7B83B42DA31}" = Timepiece Ensemble
"{E1754ED2-CD39-4F5F-AC98-0271EAE1C116}" = Setup
"{E185BD5C-0E10-479F-AF44-63D3A068446A}" = ICA
"{E24A5C1E-8647-43FD-838B-DF7149D492E4}" = DeviceIO
"{E2C2F547-4C5B-45F9-8445-C59E223CCB08}" = ContentHD
"{E3C1C994-CA69-4B3C-A290-C311617DE271}" = Contents
"{E544790D-30AD-450F-97B0-E26071962915}" = My Cloud エコDX設定Utility
"{E5636C06-A318-4CF3-803B-5BD9F5C10822}" = PureHD
"{E5D50A9A-B973-46DE-89E4-8BDDD8A9F988}" = Share
"{E6ABA0E9-65E7-4366-9770-514ED4341611}" = VIO
"{E75B82FD-B6FD-4653-8685-F3A97BDFEA6E}" = Update for Japanese Microsoft IME Standard Dictionary
"{E7EFA8C8-4CDE-4466-8E0E-01C04589ED90}" = ISCOM
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{E902DA50-B519-4820-81C2-694226E23B2E}" = @niftyでブロードバンド
"{E91C1011-2083-4DD6-858D-11753DCDFF2D}" = Corel Direct DiscRecorder
"{EA6625D5-E563-4FE3-8D98-B3F5B64CBC67}" = IPM_OEM
"{EC21317F-0016-4C4D-A315-25AC62F7B78B}" = BlueStacks Notification Center
"{EDD9E0C4-B402-40DF-B33D-405CA1E23BA6}" = DFPro
"{EFE7D443-2131-404C-AC2E-7592EDB32C92}" = My Cloud エコDX Utility
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F37A2CB1-90B7-4AF9-BFFE-9B6DB8431E07}" = 富士通アドバイザー
"{FC965A47-4839-40CA-B618-18F486F042C6}" = Skype(TM) 7.18
"{FF82C3B2-D3AB-4C82-B2FF-0ACBC53247EA}" = My Cloud リモートアクセス設定Utility
"AI RoboForm" = RoboForm 7-9-9-1 (All Users)
"BlueStacks App Player" = BlueStacks App Player
"CamSensorAppsCtrl" = カメラセンサー機能ON/OFFツール
"FaceSave" = Sense YOU Technology 設定
"Google Chrome" = Google Chrome
"InstallShield_{13031CDF-00D2-4FCE-AB13-8430D8733574}" = Wireless Radio Switch Driver
"InstallShield_{1C725459-5053-42A5-B22A-F3E91484DF65}" = @メニュー
"InstallShield_{1E474357-A5A1-43EB-97C8-58A11EB2BEE7}" = PointGrab Hand Gesture Control
"InstallShield_{20CA9527-15AD-4D95-815B-414BD1CF1A44}" = ステータスパネルスイッチ
"InstallShield_{3A1D830F-0785-46CE-903C-3877B58A9D0E}" = F-LINK
"InstallShield_{49830DFB-7C40-4AFD-A703-8599D856B65D}" = ソフトウェアディスク検索
"InstallShield_{4F969DB4-EBC1-4A39-B913-090A630C55FC}" = パソコン乗換ガイド
"InstallShield_{4FFF5818-2CAA-4CF2-93BE-5F3D428E969C}" = F-Launcher
"InstallShield_{54233B7A-6467-4AF9-9D3C-967022D84C8D}" = 自動サインイン設定
"InstallShield_{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = ワンタッチボタン設定
"InstallShield_{6A83C341-85CB-4816-8844-5A3E36D48D82}" = 電子辞書
"InstallShield_{70140D68-13DF-427D-8FD8-F8C8EEF8A641}" = バックアップナビ
"InstallShield_{7292FFCF-FA9A-4585-AB80-A71961F931AF}" = Fujitsu BIOS Driver
"InstallShield_{8561077B-55BB-4B47-8B90-6C744B12F7C0}" = チケットメーカー
"InstallShield_{88E68070-10DE-479B-89D0-0E654F8763A0}" = サポートツール 「パソコンの情報」と「トラブル解決ナビの起動」
"InstallShield_{A794229E-401E-44D4-A8B5-B21E975676DE}" = 電源オフUSB充電ユーティリティ
"InstallShield_{BCC8CBC4-0F36-4F2A-B9C6-717FDF266C90}" = Battery Utility
"InstallShield_{C65ACE72-280B-4A28-8C00-AA0FBEBEEA79}" = My Cloud データ連携Utility
"InstallShield_{CB0EA768-62F2-450E-88BC-74182237F564}" = 省電力ユーティリティ
"InstallShield_{CF6398CB-0B6D-461D-861E-1A3ACD591950}" = Peakshift setting
"InstallShield_{D8FA8D84-7CB7-46D9-B773-F7B83B42DA31}" = Timepiece Ensemble
"InstallShield_{DDC49774-40B9-47AE-9C63-5569C08C4082}" = Pointing Device Utility
"InstallShield_{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = 富士通拡張機能ユーティリティ
"InstallShield_{E91C1011-2083-4DD6-858D-11753DCDFF2D}" = Corel Direct DiscRecorder 3.7
"InstallShield_{EC314CDF-3521-482B-A21C-65AC95664814}" = Fujitsu MobilityCenter Extension Utility
"InstallShield_{F37A2CB1-90B7-4AF9-BFFE-9B6DB8431E07}" = 富士通アドバイザー
"LINE" = LINE
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware バージョン 2.2.0.1024
"ウイルスセキュリティ" = ウイルスセキュリティ
"らくらく無線スタートEX" = らくらく無線スタートEX
"恋色マリアージュ" = 恋色マリアージュ

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-3620435610-4091346163-423542706-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0CE2C453-8F5F-4F22-8D49-A4ED25BD46AF}" = ココロ@ファンクション! NEO
"{39A5D2B1-BA10-4C56-BF78-73717FD21578}" = ココロ@ファンクション!
"SkyDriveSetup.exe" = Microsoft SkyDrive

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2016/03/02 6:07:47 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/02 6:18:07 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/02 6:29:34 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/02 6:30:17 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/02 8:48:36 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/02 8:56:22 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/02 17:37:54 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/03 17:38:53 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/04 7:56:58 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error - 2016/03/04 23:49:38 | Computer Name = user | Source = BstHdAndroidSvc | ID = 0
Description = サービスを開始できません。System.ApplicationException: Cannot start service. Service
did not stop gracefully the last time it was run. 場所 BlueStacks.hyperDroid.Service.Service.OnStart(String[]
args) 場所 System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

[ System Events ]
Error - 2015/11/26 10:11:05 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/11/26 10:11:35 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/11/28 10:56:20 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/11/28 10:56:50 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/12/01 10:14:22 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/12/01 10:14:52 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/12/02 10:07:07 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/12/02 10:07:37 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/12/04 10:14:50 | Computer Name = user | Source = DCOM | ID = 10010
Description =

Error - 2015/12/04 10:15:20 | Computer Name = user | Source = DCOM | ID = 10010
Description =


< End of report >
  • nanashi
  • 2016/03/05 (Sat) 14:05:33
今度はOTLで掃除です
作業と報告、ご苦労様です。
OTLスキャンログも見せてもらいました。
では早速次の作業です。
今度は見つかったものをOTL上から処置します。

このレスの最後にスクリプトを貼っておくので、それを丸ごとコピーして、それをWindowsのメモ帳ファイルに貼り付けて保存しておいてください。

用意できたらPCをまたセーフモードで再起動してOTL起動してください。
起動したらOTLのウインドウ下部にスクリプトを貼り付けて、今度は「Run fix」(赤字のボタン)を押してください。
これでOTLでの処置が開始されます。

しばらく待って処置ができたらPCを通常モードで再起動すると、またOTLのログが出るはずなので、それを保存してから、しばらく様子見の後、OTLのログとともに状態報告をレスください。
OTLのスクリプトは以下になります。破線(-----)を含まない箇所を丸ごとコピーして、それをOTLに貼って作業してください
------------------------------------------
:OTL
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {D194B330-A674-48F4-9677-4DED6827C301}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{D194B330-A674-48F4-9677-4DED6827C301}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=FSJB
IE - HKLM\..\SearchScopes,DefaultScope = {D194B330-A674-48F4-9677-4DED6827C301}
IE - HKLM\..\SearchScopes\{D194B330-A674-48F4-9677-4DED6827C301}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=FSJB
ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
ActiveX:[b]64bit:[/b] {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} - C:\windows\System32\ie4uinit.exe -EnableTLS
ActiveX:[b]64bit:[/b] {7D715857-A67C-4C2F-A929-038448584D63} - C:\windows\System32\ie4uinit.exe -DisableSSL3
ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
"{04629206-3CCE-4729-AEA8-587313597E7B}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{BD2CAC03-91E8-449E-8DBA-F38331ED07BA}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |
"{CF85929C-DE5B-4C10-98A3-75D0532C8C96}" = lport=4000 | protocol=6 | dir=out | app=c:\program files (x86)\dll-files.com fixer\dllfixer.exe |

:Files
c:\program files (x86)\dll-files.com fixer

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------------------------------------------
  • 悪代官
  • 2016/03/05 (Sat) 21:42:36
OTLでの処理が終わりました
お世話になっております。
そろそろ花粉が怖い季節になりましたね。
管理人さんは大丈夫でしょうか。

OTLでの処理が終わりました。
現状報告ですが、以前出ていた症状も治まってきているようです。

下にログを載せておきます。

お忙しいところ恐縮ですが、よろしくお願いします。


<OTLログ>
All processes killed
========== OTL ==========
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D194B330-A674-48F4-9677-4DED6827C301}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D194B330-A674-48F4-9677-4DED6827C301}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{D194B330-A674-48F4-9677-4DED6827C301}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D194B330-A674-48F4-9677-4DED6827C301}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {66C64F22-FC60-4E6C-A6B5-F0D580E680CE}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {66C64F22-FC60-4E6C-A6B5-F0D580E680CE}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {7D715857-A67C-4C2F-A929-038448584D63}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {7D715857-A67C-4C2F-A929-038448584D63}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
File rity] not found.
File sethosts] not found.
File ptytemp] not found.
File eaterestorepoint] not found.
File boot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 03052016_233723

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • nanashi
  • 2016/03/06 (Sun) 12:20:41
それでは全体の見直しします
作業と報告、ご苦労様です。

処置後は異常も出てないみたいですね。
ログも見せてもらいましたがOTLでの掃除もできたようです。
OTLは準備時の説明に沿って片付けていいです。

それではここで全体の状態を見直しましょうか。
またCCでの各タブとインストール情報とHJTログも取り直して、それらをレスください。

何か取りこぼしがないかを含めて全体を洗い直します
  • 悪代官
  • 2016/03/06 (Sun) 19:39:58
各ログです
お世話になっております。
各ログを張り付けておきます。

お忙しいとお思いですが、よろしくお願いします。


<HJTログ>
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 6:44:19, on 2016/03/07
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Fujitsu\F-LINK\WSDMAIN.exe
C:\Windows\System32\TiltWheelMouse.exe
C:\Program Files (x86)\sMedio\AirGet\AirGet.exe
C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsecurity.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SysMon.Exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files (x86)\BlueStacks\HD-Frontend.exe
C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\sfbrun32.exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Statistics.exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Message.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Fujitsu\FJAgent\Engines\CheckCdsEngine\CheckCdsEngine.exe
C:\Program Files (x86)\Corel\MLE2\MLEngine.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\M\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: K7 Web Protection - {08B3B4B6-02DA-4658-8BA6-5974E3EBB03D} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O2 - BHO: RoboForm BHO - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: K7 Web Protection - {8551D65A-13A9-4e63-8472-9325B1B928C0} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O4 - HKLM\..\Run: [CorelDA] C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
O4 - HKLM\..\Run: [K7TSStart] C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSecurity.exe
O4 - HKLM\..\Run: [Sourcenext.SSS.Launcher] "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [BlueStacks Frontend] C:\Program Files (x86)\BlueStacks\HD-Frontend.exe Android hidemode
O4 - HKLM\..\Run: [FUJ02B1_Apps] "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411
O4 - HKCU\..\Run: [AirGet] "C:\Program Files (x86)\sMedio\AirGet\AirGet.exe" silent
O4 - HKCU\..\Run: [DriveStudio] "C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe" silent
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: F-Launcher.lnk = C:\Program Files\Fujitsu\F-Launcher\F-Launcher.exe
O4 - Global Startup: My Cloud リモートアクセス設定スタートアップ.lnk = C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCRemoteAccess.exe
O4 - Global Startup: PointGrab Hand Gesture Control.lnk = C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
O4 - Global Startup: 驚速 for Windows 8 スタート.lnk = ?
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: 保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DataExchangeUtilityService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\DEUService.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FJAgentSVC - 富士通株式会社 - C:\Program Files (x86)\Fujitsu\FJAgent\Core\bin\FJAgentSVC.exe
O23 - Service: FJAutoSignIn - FUJITSU LIMITED - C:\Program Files\Fujitsu\AutoSignIn\AutoSignInService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: K7Carnivore Service (K7CrvSvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7CrvSvc.exe
O23 - Service: K7Computng - EMail Proxy Server (K7EmlPxy) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7EmlPxy.exe
O23 - Service: K7Firewall Services (K7FWSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7FWSrvc.exe
O23 - Service: K7Privacy Services (K7PSSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7PSSrvc.exe
O23 - Service: K7RealTime AntiVirus Services (K7RTScan) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7RTScan.exe
O23 - Service: K7SpmSrc - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SpmSrc.exe
O23 - Service: K7TotalSecurity Manager (K7TSMngr) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSMngr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Kyosoku-Defrag - Unknown owner - C:\Program Files\SOURCENEXT\ソースネクスト 驚速デフラグ\defrag.service.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: My Cloud ビデオ サーバー - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\VDMS\dms_svc.exe
O23 - Service: My Cloud ビデオ サーバー+ - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\Cindy\dms_sync_svc.exe
O23 - Service: My Cloud Eco DX Service (MyCloudEcoSvc) - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\MCEco\MyCloudEchoSvc.exe
O23 - Service: MyCloudRemoteAccessConnectSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCTunnel.exe
O23 - Service: MyCloudRemoteAccessSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\svcMPPFclient.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PG_Service_Launcher - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Service_Launcher.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Performance Tweak Agent (PTAgent) - SOURCENEXT CORPORATION - C:\Program Files\SOURCENEXT\Kyosoku-Memory Next Basic\Performance Tweak Agent.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PCカルテ スケジュール サービス (SKARUTE) - FUJITSU LIMITED - C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SSPF HGW Service (SSPFHGWService) - Unknown owner - C:\Program Files (x86)\Fujitsu\MCEcoUty\MCEcoUty.exe
O23 - Service: UDSS - Unknown owner - C:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13690 bytes


<CC(インストール)ログ>
@niftyでブロードバンド ニフティ株式会社 2013/09/02 1.00.000
Battery Utility FUJITSU LIMITED 2013/09/02 4.01.22.004
BlueStacks App Player BlueStack Systems, Inc. 2015/03/28 0.9.18.5107
BlueStacks Notification Center BlueStack Systems, Inc. 2015/03/28 168 MB 0.9.18.5107
BooksV FUJITSU 2014/05/01 1.1.7.0
CCleaner Piriform 2016/02/28 5.15
Corel Digital Studio for FUJITSU Corel Corporation 2014/04/29 637 MB 1.5.25.156.2
Corel WinDVD Corel Inc. 2014/04/06 244 MB 10.9.0.155
DigiBookBrowser Version 1.5.3.87 LECRE Inc. 2013/09/02 8.53 MB 1.5.3.87
Drive Studio設定Utility FUJITSU LIMITED 2014/06/24 126 MB 1.00.0003
F-Launcher FUJITSU LIMITED 2013/09/02 2.02 MB 2.2.1.0
F-LINK FUJITSU LIMITED 2014/04/29 7.89 MB 3.3.0.0
Fresh Paint Microsoft Corporation 2016/01/12 2.0.15133.0
Fujitsu BIOS Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.1.0
Fujitsu MobilityCenter Extension Utility FUJITSU LIMITED 2013/09/02 4.01.00.000
Google Chrome Google Inc. 2014/04/30 48.0.2564.116
Inspirium辞書検索ライブラリ Fujitsu 2013/09/02 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 2013/08/22 9.0.20.1447
Intel(R) Processor Graphics Intel Corporation 2015/07/24 10.18.14.4170
Intel(R) Rapid Storage Technology Intel Corporation 2014/04/06 12.8.2.1000
LINE LINE Corporation 2015/06/22 4.0.3.369
Malwarebytes Anti-Malware バージョン 2.2.0.1024 Malwarebytes 2016/03/01 66.1 MB 2.2.0.1024
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/02/24 15.0.4797.1003
Microsoft SkyDrive Microsoft Corporation 2014/04/29 25.1 MB 16.4.6013.0910
Microsoft SQL Server Compact 3.5 SP2 JPN Microsoft Corporation 2013/09/02 4.89 MB 3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 JPN Microsoft Corporation 2013/09/02 7.08 MB 3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 JPN Microsoft Corporation 2015/10/03 20.8 MB 4.0.8876.1
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2014/12/18 4.47 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2014/05/19 4.69 MB 8.0.56336
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/25 13.1 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2014/04/06 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/02/20 1.29 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 11.1 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 Microsoft Corporation 2014/04/06 17.4 MB 11.0.51106.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/04/06 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/04/06 10.0.31119
MSN スポーツ Microsoft Corporation 2015/07/15 3.0.4.336
MSN トラベル Microsoft Corporation 2015/07/15 3.0.4.336
MSN ニュース Microsoft Corporation 2015/07/15 3.0.4.336
MSN フード&レシピ Microsoft Corporation 2015/07/15 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2015/07/15 3.0.4.336
MSN マネー Microsoft Corporation 2015/07/15 3.0.4.336
MSN 天気 Microsoft Corporation 2015/10/24 3.0.4.337
music.jp for FUJITSU MTI LTD 2015/03/27 2.11.0.1
My Cloud エコDX FUJITSU 2015/07/17 2.2.0.2
My Cloud エコDX Utility FUJITSU LIMITED 2015/07/24 168 MB 2.1.1.0
My Cloud エコDX設定Utility FUJITSU LIMITED 2015/10/03 1.75 MB 2.2.0.1
My Cloud スタート FUJITSU 2014/06/14 2.3.0.2
My Cloud データ連携Utility 富士通株式会社 2014/04/29 29.9 MB 1.00.03.006
My Cloud ビデオ サーバー DigiOn 2015/07/24 34.5 MB 3.3.30.0
My Cloud ビデオ2 DigiOn 2015/07/11 1.2.1.9
My Cloud フォト CYBERLINK.COM CORPORATION. 2014/09/10 1.0.3219.33373
My Cloud ホーム FUJITSU 2014/05/01 1.1.1.1
My Cloud ミュージック sMedio Inc 2015/02/15 1.0.0.110
My Cloud モバイルアクセス sMedio Inc 2014/05/01 2.3.0.42
My Cloud モバイルアクセス設定Utility FUJITSU LIMITED 2014/06/24 132 MB 2.03.0008
My Cloud リモートアクセス設定Utility FUJITSU LIMITED 2014/04/29 1.25 MB 1.0.000.008
NAVITIME for FUJITSU NAVITIMEJAPAN 2014/05/14 2.0.3.0
nissen Smart Catalog Nissen.Co.,LTD 2014/04/27 1.2.0.27
Office タッチ リボン Microsoft Corporation 2014/04/06 740 KB 1.0.0
PCカルテ FUJITSU LIMITED 2013/09/02 6.97 MB 2.0.0.1
Peakshift setting FUJITSU LIMITED 2013/09/02 2.01.00.001
PhotoWizard Microsoft 2014/04/06 335 MB 1.5.0
Plugfree NETWORK 富士通株式会社 2013/09/02 7.1.0.1
PointGrab Hand Gesture Control PointGrab 2014/04/29 124 MB 03.12.00.03786
Pointing Device Utility FUJITSU LIMITED 2013/09/02 3.52 MB 2.1.0.0
Qualcomm Atheros Bluetooth Suite (64) Qualcomm Atheros Communications 2014/04/06 93.9 MB 8.0.1.305
Qualcomm Atheros Client Installation Program Qualcomm Atheros 2014/04/06 10.0
Realtek Card Reader Realtek Semiconductor Corp. 2013/09/02 6.2.9200.39048
Realtek Ethernet Controller Driver Realtek 2013/09/02 8.18.621.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/04/29 6.0.1.7059
RoboForm 7-9-9-1 (All Users) Siber Systems 2014/08/22 20.0 MB 7-9-9-1
Roxio Creator LJ Roxio 2014/04/06 121 MB 12.2.37.11
Sense YOU Technology 設定 FUJITSU LIMITED 2014/04/06 3.0.0.2
SetPoint 6.60 2015/03/25 39.0 MB 6.60.170
Skype Skype 2015/06/21 3.1.0.1016
Skype(TM) 7.18 Skype Technologies S.A. 2016/02/28 79.9 MB 7.18.112
Synaptics Pointing Device Driver Synaptics Incorporated 2014/01/29 46.4 MB 17.0.9.1
Timepiece Ensemble GLace 2015/05/02 4.37 GB 1.00.0000
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/09/07 41.7 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2015/09/07 11.6 MB 15.0.2013
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/07/05 9.00 KB 16.0.1515.1
Windows アラーム Microsoft Corporation 2014/05/01 6.3.9654.20335
Windows サウンド レコーダー Microsoft Corporation 2014/05/01 6.3.9600.20280
Windows スキャン Microsoft Corporation 2014/11/05 6.3.9654.17133
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02B1) System (06/26/2013 1.23) FUJITSU LIMITED 2014/04/06 06/26/2013 1.23
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02E3) System (07/02/2013 1.30.1.0) FUJITSU LIMITED 2014/04/06 07/02/2013 1.30.1.0
Windows ヘルプ+使い方 Microsoft Corporation 2014/08/07 6.3.9654.20559
Windows リーディング リスト Microsoft Corporation 2015/08/13 6.3.9654.20947
Windows 電卓 Microsoft Corporation 2014/05/01 6.3.9600.20278
Wireless Radio Switch Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.0.0
Yahoo!オークション (ft) Yahoo! JAPAN 2014/04/27 2.0.0.4
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2014/04/28
アップデートナビ FUJITSU LIMITED 2015/09/06 14.8 MB 1.2.0071
ウイルスセキュリティ ソースネクスト株式会社 2014/04/30 12.00
エレコム マウスアシスタント4 ELECOM 2014/05/02 4.01.00000
カメラセンサー機能ON/OFFツール FUJITSU LIMITED 2014/04/06 V1.02
クロノクロック 2015/12/19
ゲーム Microsoft Corporation 2014/05/01 2.0.139.0
ココロ@ファンクション! WILLPLUS 2016/02/20 1.00.0000
ココロ@ファンクション! NEO WILLPLUS 2016/02/20 1.00.0000
サポートツール 「パソコンの情報」と「トラブル解決ナビの起動」 FUJITSU LIMITED 2013/09/02 3.31 MB 1.2.0.0
シュフーチラシアプリ for FUJITSU TOPPAN PRINTING CO., LTD. 2016/02/10 1.4.0.0
ステータスパネルスイッチ FUJITSU LIMITED 2013/09/02 5.32 MB 1.0.0.0
ソフトウェアディスク検索 FUJITSU LIMITED 2013/09/02 1.86 MB 2.0.0.0
ソースネクスト アップデート 4.0 SOURCENEXT 2014/06/07 26.5 MB 9.09.0000
ソースネクスト 驚速 for Windows 8 SOURCENEXT 2014/05/19 30.4 MB 1.0.0
ソースネクスト 驚速デフラグ SOURCENEXT CORPORATION 2014/05/19 138 MB 1.1.0
ソースネクスト 驚速メモリ SOURCENEXT CORPORATION 2014/05/19 25.3 MB 1.1.0
チケットメーカー FUJITSU LIMITED 2013/09/02 833 KB 3.1.0.0
バックアップナビ FUJITSU LIMITED 2013/09/02 24.7 MB 2.3.0.0
パソコン乗換ガイド 株式会社富士通ソフトウェアテクノロジーズ 2013/09/02 15.2 MB 1.1.0.1
ビデオ Microsoft Corporation 2015/11/06 2.6.446.0
マイミュージアム FUJITSU 2014/05/01 1.2.0.3
ミュージック Microsoft Corporation 2015/03/14 2.6.672.0
メール、カレンダー、People 2015/07/03
リーダー Microsoft Corporation 2016/02/10 6.4.9926.18190
ワンタッチボタン設定 FUJITSU LIMITED 2013/09/02 3.21 MB 8.5.3.0
健康生活日記 FUJITSU 2015/02/15 2.0.1.4
地図 Microsoft Corporation 2014/09/11 2.1.3230.2048
宿探 for FUJITSU 繝舌Μ繝・繝シ繧ウ繝槭・繧ケ繹ア 2014/04/27 1.3.0.3
富士通PC 辞書セット(広辞苑第六版+リーダーズ英和辞典+新和英中辞典+現代用語の基礎知識+学研パーソナル統合辞典) 富士通株式会社 2013/09/02 513 KB 2.0.0
富士通アドバイザー FUJITSU LIMITED 2013/09/02 21.8 MB 4.3.0.0
富士通パソコン お客様サポート FUJITSU 2015/07/17 1.0.0.2
富士通拡張機能ユーティリティ FUJITSU LIMITED 2013/09/02 2.88 MB 3.6.0.0
恋色マリアージュ ま~まれぇど 2015/08/08 1.01
書き込み機能拡張ユーティリティ FUJITSU LIMITED 2013/09/02 2.3.0.0
楽しもう!Office ライフ Microsoft Corporation 2014/04/06 636 KB 1.0.0
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/01/06 2.2.2.4
楽天レシピ 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2014/05/01 1.2.0.0
省電力ユーティリティ FUJITSU LIMITED 2013/09/02 3.20 MB 143.0.1.0 (00.003)
筆ぐるめ 20 富士ソフト株式会社 2013/09/02 719 MB 20.00.0008
自動サインイン設定 FUJITSU LIMITED 2013/09/02 410 KB 1.0.2.0
電子辞書 FUJITSU LIMITED 2013/09/02 22.5 MB 5.0.2.0
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2013/09/02 203 KB 3.0.0.0
@メニュー FUJITSU LIMITED 2013/09/02 3.23 MB 7.2.0.0
@メニュー 2013/08/22 V7.0


<CC(タスク)ログ>
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Open URL by RoboForm Microsoft Corporation C:\windows\system32\rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMOJGMNJKMNJPMNJMMCNKMLJOJJJCNLMMMPMKMCNHMJJLMJMCNJJIMLJMMHMOMIMNJLMHMLJLJJNJICMIMCNGMCNGMFMOMOMCNPMCNGMJMPMPMFMJMCNMMCNGMJMPMPMCNNMJNPICMPMFMEKMICNJJCKFMOMOMMMJNHICMJIKJNIKIPIJNBJCMCLOJMIOJMIHJGJPNLKMIKIEJOJHJOJNIOJJNKJCMJNNICMJNDJCMFJPIJNMJCMOMFMOMPMFMPMJNFICMGJLJKJBJLIGJLIGJKJMIBNKJHIKJ"
無効 Task Optimize Start Menu Cache Files-S-1-5-21-3620435610-4091346163-423542706-1001
有効 Task Optimize Start Menu Cache Files-S-1-5-21-3620435610-4091346163-423542706-500
有効 Task Run RoboForm TaskBar Icon Siber Systems C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
有効 Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"


<CC(windows)ログ>
有効 HKCU:Run AirGet sMedio Inc "C:\Program Files (x86)\sMedio\AirGet\AirGet.exe" silent
有効 HKCU:Run DriveStudio FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe" silent
有効 HKCU:Run RoboForm Siber Systems "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
有効 HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
有効 HKLM:Run BlueStacks Agent BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Agent.exe
有効 HKLM:Run BlueStacks Frontend BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Frontend.exe Android hidemode
有効 HKLM:Run CorelDA COREL TW CORP. C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
有効 HKLM:Run ElcMouse C:\Program Files\ELECOM_Mouse_Driver\ElcMouseApl.exe
有効 HKLM:Run EvtMgr6 Logicool, Inc. C:\Program Files\SetPointP\SetPoint.exe /launchGaming
有効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
有効 HKLM:Run FUJ02B1_Apps "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411
有効 HKLM:Run K7TSStart K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSecurity.exe
有効 HKLM:Run MouseDriver Pixart Imaging Inc TiltWheelMouse.exe
有効 HKLM:Run RtHDVBg_DTS Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSU2P
有効 HKLM:Run RtHDVBg_DTS_SWVOL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSSWVOL
有効 HKLM:Run RTHDVCPL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
有効 HKLM:Run Sourcenext.SSS.Launcher SOURCENEXT CORPORATION "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup Common My Cloud リモートアクセス設定スタートアップ.lnk FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCRemoteAccess.exe
有効 Startup Common PointGrab Hand Gesture Control.lnk PointGrab LTD C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
有効 Startup Common 驚速 for Windows 8 スタート.lnk SOURCENEXT C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\SFBRun.exe
有効 Startup User F-Launcher.lnk FUJITSU C:\Program Files\Fujitsu\F-Launcher\F-Launcher.exe


<CC(コンテキスト)ログ>
有効 File Atheros Atheros Commnucations C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll
有効 File FTShellContext Qualcomm®Atheros® C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll
有効 File K7Computing.K7AVScanner K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSSExt64.dll
有効 Folder K7Computing.K7AVScanner K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSSExt64.dll


<CC(IE)ログ>
無効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
無効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
無効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
無効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Extension ツールバー表示 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension ツールバー表示 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Extension フォーム記入 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension フォーム記入 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Extension 保存 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension 保存 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Helper K7 Web Protection K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
無効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper RoboForm Toolbar Helper Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Helper RoboForm Toolbar Helper Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Toolbar K7 Web Protection K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
無効 Toolbar RoboForm Toolbar Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Toolbar RoboForm Toolbar Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll


<CC(chrome)ログ>
有効 App Gmail 8.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.60 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.60_0
有効 App Google ドライブ 14.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0
有効 App YouTube 4.2.8 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0
無効 Extension BIGLOBE トップページ 1.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\laimjpeeadmiichdephknpklpjkllkih\1.1_0
有効 Extension ECナビツールバー 1.1.4 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocfdalfbgbepcfcjkbgfnjloddeejnff\1.1.4_0
有効 Extension Google オフライン ドキュメント 1.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.1_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
無効 Extension K7 WebProtection 3.8 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlpfamleaodfgmfnggonbfljhjggbdbe\3.8_0
有効 Extension RoboForm Password Manager 7.9.16.9 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob\7.9.16.9_0
  • nanashi
  • 2016/03/09 (Wed) 21:40:55
洗い直しにきました
おはようございます。
状態の見直しにきた「あらいぐま悪代官」です(←森に帰れ

現在のログを見せてもらいました。
いまのところはおかしな痕跡も見えないですね。

ではここからしばらく様子見に入りましょう。
普通にPCを使いながらでいいので1週間様子見してください。

1週間後にまた今回と同じCCとHJTの各ログを取り直して、それらを様子見中の状態報告とともにレスください。

この時点でのログと状態がどうなっているかがおそらく最後のヤマになりそうです
  • あらいぐま悪代官
  • 2016/03/10 (Thu) 07:29:36
1週間ぶりのログです
1週間ぶりですね。

状況報告としては、各症状は落ち着いている状況です。

また各ログを載せておきます。

よろしくお願いします。

<HJTログ>
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 22:18:19, on 2016/03/16
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Fujitsu\F-LINK\WSDMAIN.exe
C:\Windows\System32\TiltWheelMouse.exe
C:\Program Files (x86)\sMedio\AirGet\AirGet.exe
C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\k7tsecurity.exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files (x86)\BlueStacks\HD-Frontend.exe
C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SysMon.Exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Statistics.exe
C:\Users\M\AppData\Local\SOURCENEXT\SSS3\4.00.20\Message.exe
C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\sfbrun32.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Fujitsu\FJAgent\Engines\CheckCdsEngine\CheckCdsEngine.exe
C:\Program Files (x86)\Corel\MLE2\MLEngine.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\M\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: K7 Web Protection - {08B3B4B6-02DA-4658-8BA6-5974E3EBB03D} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O2 - BHO: RoboForm BHO - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: K7 Web Protection - {8551D65A-13A9-4e63-8472-9325B1B928C0} - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
O4 - HKLM\..\Run: [CorelDA] C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
O4 - HKLM\..\Run: [K7TSStart] C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSecurity.exe
O4 - HKLM\..\Run: [Sourcenext.SSS.Launcher] "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe
O4 - HKLM\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKLM\..\Run: [BlueStacks Frontend] C:\Program Files (x86)\BlueStacks\HD-Frontend.exe Android hidemode
O4 - HKLM\..\Run: [FUJ02B1_Apps] "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411
O4 - HKCU\..\Run: [AirGet] "C:\Program Files (x86)\sMedio\AirGet\AirGet.exe" silent
O4 - HKCU\..\Run: [DriveStudio] "C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe" silent
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - Startup: F-Launcher.lnk = C:\Program Files\Fujitsu\F-Launcher\F-Launcher.exe
O4 - Global Startup: My Cloud リモートアクセス設定スタートアップ.lnk = C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCRemoteAccess.exe
O4 - Global Startup: PointGrab Hand Gesture Control.lnk = C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
O4 - Global Startup: 驚速 for Windows 8 スタート.lnk = ?
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム記入 - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: 保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF フォーム保存 - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra 'Tools' menuitem: RF ツールバー表示 - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0725D9DE-4CB8-4BC3-8219-3E74C0D544F7} (DMM Downloader) - http://sample3.dmm.co.jp/downloader5/DMMDownloader.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AtherosSvc - Windows (R) Win 7 DDK provider - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: DataExchangeUtilityService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\DEUService.exe
O23 - Service: DTSAudioSvc - DTS, Inc - C:\Program Files\Realtek\Audio\HDA\DTSU2PAuSrv64.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: FJAgentSVC - 富士通株式会社 - C:\Program Files (x86)\Fujitsu\FJAgent\Core\bin\FJAgentSVC.exe
O23 - Service: FJAutoSignIn - FUJITSU LIMITED - C:\Program Files\Fujitsu\AutoSignIn\AutoSignInService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\windows\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: K7Carnivore Service (K7CrvSvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7CrvSvc.exe
O23 - Service: K7Computng - EMail Proxy Server (K7EmlPxy) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7EmlPxy.exe
O23 - Service: K7Firewall Services (K7FWSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7FWSrvc.exe
O23 - Service: K7Privacy Services (K7PSSrvc) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7PSSrvc.exe
O23 - Service: K7RealTime AntiVirus Services (K7RTScan) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7RTScan.exe
O23 - Service: K7SpmSrc - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SpmSrc.exe
O23 - Service: K7TotalSecurity Manager (K7TSMngr) - K7 Computing Pvt Ltd - C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSMngr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Kyosoku-Defrag - Unknown owner - C:\Program Files\SOURCENEXT\ソースネクスト 驚速デフラグ\defrag.service.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: My Cloud ビデオ サーバー - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\VDMS\dms_svc.exe
O23 - Service: My Cloud ビデオ サーバー+ - Unknown owner - C:\Program Files (x86)\DigiOn\DiXiM VDMS for FUJITSU\Cindy\dms_sync_svc.exe
O23 - Service: My Cloud Eco DX Service (MyCloudEcoSvc) - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\MCEco\MyCloudEchoSvc.exe
O23 - Service: MyCloudRemoteAccessConnectSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCTunnel.exe
O23 - Service: MyCloudRemoteAccessSvc - Unknown owner - C:\Program Files (x86)\Fujitsu\MCRemoteAccess\svcMPPFclient.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PG_Service_Launcher - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Service_Launcher.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: Performance Tweak Agent (PTAgent) - SOURCENEXT CORPORATION - C:\Program Files\SOURCENEXT\Kyosoku-Memory Next Basic\Performance Tweak Agent.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PCカルテ スケジュール サービス (SKARUTE) - FUJITSU LIMITED - C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: SSPF HGW Service (SSPFHGWService) - Unknown owner - C:\Program Files (x86)\Fujitsu\MCEcoUty\MCEcoUty.exe
O23 - Service: UDSS - Unknown owner - C:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13691 bytes


<CC(インストール)ログ>
@niftyでブロードバンド ニフティ株式会社 2013/09/02 1.00.000
Battery Utility FUJITSU LIMITED 2013/09/02 4.01.22.004
BlueStacks App Player BlueStack Systems, Inc. 2015/03/28 0.9.18.5107
BlueStacks Notification Center BlueStack Systems, Inc. 2015/03/28 168 MB 0.9.18.5107
BooksV FUJITSU 2014/05/01 1.1.7.0
CCleaner Piriform 2016/02/28 5.15
Corel Digital Studio for FUJITSU Corel Corporation 2014/04/29 637 MB 1.5.25.156.2
Corel WinDVD Corel Inc. 2014/04/06 244 MB 10.9.0.155
DigiBookBrowser Version 1.5.3.87 LECRE Inc. 2013/09/02 8.53 MB 1.5.3.87
Drive Studio設定Utility FUJITSU LIMITED 2014/06/24 126 MB 1.00.0003
F-Launcher FUJITSU LIMITED 2013/09/02 2.02 MB 2.2.1.0
F-LINK FUJITSU LIMITED 2014/04/29 7.89 MB 3.3.0.0
Fresh Paint Microsoft Corporation 2016/01/12 2.0.15133.0
Fujitsu BIOS Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.1.0
Fujitsu MobilityCenter Extension Utility FUJITSU LIMITED 2013/09/02 4.01.00.000
Google Chrome Google Inc. 2014/04/30 49.0.2623.87
Inspirium辞書検索ライブラリ Fujitsu 2013/09/02 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 2013/08/22 9.0.20.1447
Intel(R) Processor Graphics Intel Corporation 2015/07/24 10.18.14.4170
Intel(R) Rapid Storage Technology Intel Corporation 2014/04/06 12.8.2.1000
LINE LINE Corporation 2015/06/22 4.0.3.369
Malwarebytes Anti-Malware バージョン 2.2.0.1024 Malwarebytes 2016/03/01 66.1 MB 2.2.0.1024
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/03/16 15.0.4805.1003
Microsoft SkyDrive Microsoft Corporation 2014/04/29 25.1 MB 16.4.6013.0910
Microsoft SQL Server Compact 3.5 SP2 JPN Microsoft Corporation 2013/09/02 4.89 MB 3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 JPN Microsoft Corporation 2013/09/02 7.08 MB 3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 JPN Microsoft Corporation 2015/10/03 20.8 MB 4.0.8876.1
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2014/12/18 4.47 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2014/05/19 4.69 MB 8.0.56336
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/25 13.1 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2014/04/06 10.2 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/02/20 1.29 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2013/09/02 11.1 MB 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 Microsoft Corporation 2014/04/06 17.4 MB 11.0.51106.1
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2014/04/06 10.0.31119
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2014/04/06 10.0.31119
MSN スポーツ Microsoft Corporation 2015/07/15 3.0.4.336
MSN トラベル Microsoft Corporation 2015/07/15 3.0.4.336
MSN ニュース Microsoft Corporation 2015/07/15 3.0.4.336
MSN フード&レシピ Microsoft Corporation 2015/07/15 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2015/07/15 3.0.4.336
MSN マネー Microsoft Corporation 2015/07/15 3.0.4.336
MSN 天気 Microsoft Corporation 2015/10/24 3.0.4.337
music.jp  for FUJITSU MTI LTD 2015/03/27 2.11.0.1
My Cloud エコDX FUJITSU 2015/07/17 2.2.0.2
My Cloud エコDX Utility FUJITSU LIMITED 2015/07/24 168 MB 2.1.1.0
My Cloud エコDX設定Utility FUJITSU LIMITED 2015/10/03 1.75 MB 2.2.0.1
My Cloud スタート FUJITSU 2014/06/14 2.3.0.2
My Cloud データ連携Utility 富士通株式会社 2014/04/29 29.9 MB 1.00.03.006
My Cloud ビデオ サーバー DigiOn 2015/07/24 34.5 MB 3.3.30.0
My Cloud ビデオ2 DigiOn 2015/07/11 1.2.1.9
My Cloud フォト CYBERLINK.COM CORPORATION. 2014/09/10 1.0.3219.33373
My Cloud ホーム FUJITSU 2014/05/01 1.1.1.1
My Cloud ミュージック sMedio Inc 2015/02/15 1.0.0.110
My Cloud モバイルアクセス sMedio Inc 2014/05/01 2.3.0.42
My Cloud モバイルアクセス設定Utility FUJITSU LIMITED 2014/06/24 132 MB 2.03.0008
My Cloud リモートアクセス設定Utility FUJITSU LIMITED 2014/04/29 1.25 MB 1.0.000.008
NAVITIME for FUJITSU NAVITIMEJAPAN 2014/05/14 2.0.3.0
nissen Smart Catalog Nissen.Co.,LTD 2014/04/27 1.2.0.27
Office タッチ リボン Microsoft Corporation 2014/04/06 740 KB 1.0.0
PCカルテ FUJITSU LIMITED 2013/09/02 6.97 MB 2.0.0.1
Peakshift setting FUJITSU LIMITED 2013/09/02 2.01.00.001
PhotoWizard Microsoft 2014/04/06 335 MB 1.5.0
Plugfree NETWORK 富士通株式会社 2013/09/02 7.1.0.1
PointGrab Hand Gesture Control PointGrab 2014/04/29 124 MB 03.12.00.03786
Pointing Device Utility FUJITSU LIMITED 2013/09/02 3.52 MB 2.1.0.0
Qualcomm Atheros Bluetooth Suite (64) Qualcomm Atheros Communications 2014/04/06 93.9 MB 8.0.1.305
Qualcomm Atheros Client Installation Program Qualcomm Atheros 2014/04/06 10.0
Realtek Card Reader Realtek Semiconductor Corp. 2013/09/02 6.2.9200.39048
Realtek Ethernet Controller Driver Realtek 2013/09/02 8.18.621.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/04/29 6.0.1.7059
RoboForm 7-9-9-1 (All Users) Siber Systems 2014/08/22 20.0 MB 7-9-9-1
Roxio Creator LJ Roxio 2014/04/06 121 MB 12.2.37.11
Sense YOU Technology 設定 FUJITSU LIMITED 2014/04/06 3.0.0.2
SetPoint 6.60 2015/03/25 39.0 MB 6.60.170
Skype Skype 2015/06/21 3.1.0.1016
Skype(TM) 7.18 Skype Technologies S.A. 2016/02/28 79.9 MB 7.18.112
Synaptics Pointing Device Driver Synaptics Incorporated 2014/01/29 46.4 MB 17.0.9.1
Timepiece Ensemble GLace 2015/05/02 4.37 GB 1.00.0000
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2014/10/31 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/09/07 41.7 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2015/09/07 11.6 MB 15.0.2013
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/07/05 9.00 KB 16.0.1515.1
Windows アラーム Microsoft Corporation 2014/05/01 6.3.9654.20335
Windows サウンド レコーダー Microsoft Corporation 2014/05/01 6.3.9600.20280
Windows スキャン Microsoft Corporation 2014/11/05 6.3.9654.17133
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02B1) System (06/26/2013 1.23) FUJITSU LIMITED 2014/04/06 06/26/2013 1.23
Windows ドライバ パッケージ - FUJITSU LIMITED (FUJ02E3) System (07/02/2013 1.30.1.0) FUJITSU LIMITED 2014/04/06 07/02/2013 1.30.1.0
Windows ヘルプ+使い方 Microsoft Corporation 2014/08/07 6.3.9654.20559
Windows リーディング リスト Microsoft Corporation 2015/08/13 6.3.9654.20947
Windows 電卓 Microsoft Corporation 2014/05/01 6.3.9600.20278
Wireless Radio Switch Driver FUJITSU LIMITED 2013/09/02 1.34 MB 1.1.0.0
Yahoo!オークション (ft) Yahoo! JAPAN 2014/04/27 2.0.0.4
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2014/04/28
アップデートナビ FUJITSU LIMITED 2015/09/06 14.8 MB 1.2.0071
ウイルスセキュリティ ソースネクスト株式会社 2014/04/30 12.00
エレコム マウスアシスタント4 ELECOM 2014/05/02 4.01.00000
カメラセンサー機能ON/OFFツール FUJITSU LIMITED 2014/04/06 V1.02
クロノクロック 2015/12/19
ゲーム Microsoft Corporation 2014/05/01 2.0.139.0
ココロ@ファンクション! WILLPLUS 2016/02/20 1.00.0000
ココロ@ファンクション! NEO WILLPLUS 2016/02/20 1.00.0000
サポートツール 「パソコンの情報」と「トラブル解決ナビの起動」 FUJITSU LIMITED 2013/09/02 3.31 MB 1.2.0.0
シュフーチラシアプリ for FUJITSU TOPPAN PRINTING CO., LTD. 2016/02/10 1.4.0.0
ステータスパネルスイッチ FUJITSU LIMITED 2013/09/02 5.32 MB 1.0.0.0
ソフトウェアディスク検索 FUJITSU LIMITED 2013/09/02 1.86 MB 2.0.0.0
ソースネクスト アップデート 4.0 SOURCENEXT 2014/06/07 26.5 MB 9.09.0000
ソースネクスト 驚速 for Windows 8 SOURCENEXT 2014/05/19 30.4 MB 1.0.0
ソースネクスト 驚速デフラグ SOURCENEXT CORPORATION 2014/05/19 138 MB 1.1.0
ソースネクスト 驚速メモリ SOURCENEXT CORPORATION 2014/05/19 25.3 MB 1.1.0
チケットメーカー FUJITSU LIMITED 2013/09/02 833 KB 3.1.0.0
バックアップナビ FUJITSU LIMITED 2013/09/02 24.7 MB 2.3.0.0
パソコン乗換ガイド 株式会社富士通ソフトウェアテクノロジーズ 2013/09/02 15.2 MB 1.1.0.1
ビデオ Microsoft Corporation 2015/11/06 2.6.446.0
マイミュージアム FUJITSU 2014/05/01 1.2.0.3
ミュージック Microsoft Corporation 2015/03/14 2.6.672.0
メール、カレンダー、People 2015/07/03
リーダー Microsoft Corporation 2016/03/09 6.4.9926.18228
ワンタッチボタン設定 FUJITSU LIMITED 2013/09/02 3.21 MB 8.5.3.0
健康生活日記 FUJITSU 2015/02/15 2.0.1.4
地図 Microsoft Corporation 2014/09/11 2.1.3230.2048
宿探 for FUJITSU 繝舌Μ繝・繝シ繧ウ繝槭・繧ケ繹ア 2014/04/27 1.3.0.3
富士通PC 辞書セット(広辞苑第六版+リーダーズ英和辞典+新和英中辞典+現代用語の基礎知識+学研パーソナル統合辞典) 富士通株式会社 2013/09/02 513 KB 2.0.0
富士通アドバイザー FUJITSU LIMITED 2013/09/02 21.8 MB 4.3.0.0
富士通パソコン お客様サポート FUJITSU 2015/07/17 1.0.0.2
富士通拡張機能ユーティリティ FUJITSU LIMITED 2013/09/02 2.88 MB 3.6.0.0
恋色マリアージュ ま~まれぇど 2015/08/08 1.01
書き込み機能拡張ユーティリティ FUJITSU LIMITED 2013/09/02 2.3.0.0
楽しもう!Office ライフ Microsoft Corporation 2014/04/06 636 KB 1.0.0
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/01/06 2.2.2.4
楽天レシピ 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2014/05/01 1.2.0.0
省電力ユーティリティ FUJITSU LIMITED 2013/09/02 3.20 MB 143.0.1.0 (00.003)
筆ぐるめ 20 富士ソフト株式会社 2013/09/02 719 MB 20.00.0008
自動サインイン設定 FUJITSU LIMITED 2013/09/02 410 KB 1.0.2.0
電子辞書 FUJITSU LIMITED 2013/09/02 22.5 MB 5.0.2.0
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2013/09/02 203 KB 3.0.0.0
@メニュー 2013/08/22 V7.0
@メニュー FUJITSU LIMITED 2013/09/02 3.23 MB 7.2.0.0


<CC(windows)ログ>
有効 HKCU:Run AirGet sMedio Inc "C:\Program Files (x86)\sMedio\AirGet\AirGet.exe" silent
有効 HKCU:Run DriveStudio FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\DriveStudio\DriveStudio.exe" silent
有効 HKCU:Run RoboForm Siber Systems "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
有効 HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
有効 HKLM:Run BlueStacks Agent BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Agent.exe
有効 HKLM:Run BlueStacks Frontend BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Frontend.exe Android hidemode
有効 HKLM:Run CorelDA COREL TW CORP. C:\Program Files (x86)\Corel\MLSDK\CorelDesktopAgent.exe
有効 HKLM:Run ElcMouse C:\Program Files\ELECOM_Mouse_Driver\ElcMouseApl.exe
有効 HKLM:Run EvtMgr6 Logicool, Inc. C:\Program Files\SetPointP\SetPoint.exe /launchGaming
有効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
有効 HKLM:Run FUJ02B1_Apps "%PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe" -ViewTarget -langid 0x411
有効 HKLM:Run K7TSStart K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSecurity.exe
有効 HKLM:Run MouseDriver Pixart Imaging Inc TiltWheelMouse.exe
有効 HKLM:Run RtHDVBg_DTS Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSU2P
有効 HKLM:Run RtHDVBg_DTS_SWVOL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /DTSSWVOL
有効 HKLM:Run RTHDVCPL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
有効 HKLM:Run Sourcenext.SSS.Launcher SOURCENEXT CORPORATION "C:\Program Files (x86)\SOURCENEXT\ソースネクスト アップデート4\Launcher.exe" UpdateTool.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup Common My Cloud リモートアクセス設定スタートアップ.lnk FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\MCRemoteAccess\MCRemoteAccess.exe
有効 Startup Common PointGrab Hand Gesture Control.lnk PointGrab LTD C:\Program Files (x86)\PointGrab\Hand Gesture Control\PG_Tray.exe
有効 Startup Common 驚速 for Windows 8 スタート.lnk SOURCENEXT C:\Program Files\SOURCENEXT\ソースネクスト 驚速 for Windows 8\SFBRun.exe
有効 Startup User F-Launcher.lnk FUJITSU C:\Program Files\Fujitsu\F-Launcher\F-Launcher.exe


<CC(タスク)ログ>
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Open URL by RoboForm Microsoft Corporation C:\windows\system32\rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMOJGMNJKMNJPMNJMMCNKMLJOJJJCNLMMMPMKMCNHMJJLMJMCNJJIMLJMMHMOMIMNJLMHMLJLJJNJICMIMCNGMCNGMFMOMOMCNPMCNGMJMPMPMFMJMCNMMCNGMJMPMPMCNNMJNPICMPMFMEKMICNJJCKFMOMOMMMJNHICMJIKJNIKIPIJNBJCMCLOJMIOJMIHJGJPNLKMIKIEJOJHJOJNIOJJNKJCMJNNICMJNDJCMFJPIJNMJCMOMFMOMPMFMPMJNFICMGJLJKJBJLIGJLIGJKJMIBNKJHIKJ"
無効 Task Optimize Start Menu Cache Files-S-1-5-21-3620435610-4091346163-423542706-1001
有効 Task Optimize Start Menu Cache Files-S-1-5-21-3620435610-4091346163-423542706-500
有効 Task Run RoboForm TaskBar Icon Siber Systems C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
有効 Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"


<CC(コンテキスト)ログ>
有効 File Atheros Atheros Commnucations C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll
有効 File FTShellContext Qualcomm®Atheros® C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll
有効 File K7Computing.K7AVScanner K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSSExt64.dll
有効 Folder K7Computing.K7AVScanner K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7TSSExt64.dll


<CC(IE)ログ>
無効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
無効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
無効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
無効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Extension ツールバー表示 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension ツールバー表示 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Extension フォーム記入 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension フォーム記入 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Extension 保存 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Extension 保存 Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Helper K7 Web Protection K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
無効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper RoboForm Toolbar Helper Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Helper RoboForm Toolbar Helper Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
無効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Toolbar K7 Web Protection K7 Computing Pvt Ltd C:\Program Files (x86)\K7 Computing\K7TSecurity\K7SRExt.dll
無効 Toolbar RoboForm Toolbar Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
無効 Toolbar RoboForm Toolbar Siber Systems Inc. C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll


<CC(chrome)ログ>
有効 App Gmail 8.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.60 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.60_0
有効 App Google ドライブ 14.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0
有効 App YouTube 4.2.8 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0
無効 Extension BIGLOBE トップページ 1.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\laimjpeeadmiichdephknpklpjkllkih\1.1_0
有効 Extension ECナビツールバー 1.1.4 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocfdalfbgbepcfcjkbgfnjloddeejnff\1.1.4_0
有効 Extension Google オフライン ドキュメント 1.1 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.1_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
無効 Extension K7 WebProtection 3.8 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlpfamleaodfgmfnggonbfljhjggbdbe\3.8_0
有効 Extension RoboForm Password Manager 7.9.16.9 最初のユーザー C:\Users\M\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob\7.9.16.9_0

  • nanashi
  • 2016/03/16 (Wed) 22:47:43
セキュリティとともに安定運用もお忘れなく
レスが遅くなってすみません。
様子見後の報告ですね。

>状況報告としては、各症状は落ち着いている状況です。

異常は消えているようで何よりです。

現在のログも見せてもらいましたが、不審なところもなさそうですね。

では本題の処置も終了と言うことでいいでしょう。
作業ツールはみな準備時の説明に沿って片付けてください。

異常は消えても以後の再被害に対する自衛は怠りなく。
ブラウザの設定を少し固めるだけでも、セキュリティ上の効果を高めることが可能です。
「インターネットオプション」→「プライバシー」→「詳細設定」と開いて、「自動cookie処理」と「サードパーティのcookieをブロック」にチェックして「適用」して「OK」。
これをやっておくと、多くの危険サイトからの保護にかなり有効です。
が、これもすべての危険サイトに有効でもないし、本物の危険サイトではこの程度ではまったく太刀打ちできないので、過信はしないこと。
また、「すべてのcookieをブロックする」設定にすると、プロバイダのメールボックスなどログイン必要なページに入れなくなる弊害も出るので、これは状況を考えて使い分けるといいでしょう。
安全なサイトでもcookieブロックだと閲覧や投稿ができなくなるところもあるのでこれも注意。

次に、アンチウイルスやファイアウォール等のセキュリティソフトの使い方も注意してください。
セキュリティソフトはただ入れてさえいればそれだけでフル機能を発揮するものではありません。
設定と機能をできるだけ把握して、正しく使うことが重要です。
間違った使い方すると、本来ならブロックできた感染でもあっさりスルーします。

また、いくら高性能なセキュリティソフトがあっても、ユーザーが自分から危険なサイトやファイルにアクセスしてたらまったく保護もできません。
セキュリティソフトは使い方次第でその性能を、倍にも半にも無にも変動させます。

そして百聞は一見にしかず。
現在この掲示板で継続中や解決済みの他スレもできるだけ見ておくことをおすすめします。
同様、類似、別種含めて参考になる部分は多いでしょう。

あと、はじめのほうで自分から少し案内もしましたが、PCの高速化ツールはあまり多用しないことも理解しておいてください。

PC本体の限られたスペック内で動作可能な上限を越えて使おうとするとフリーズや不具合は避けられません。
なので本来はメモリ増設や不要アプリの停止削除等で改善するのが確実ですが、それをせずにアプリを使って無理にPC動作だけを高速化を図ると必ずどこかに無理が出ます。
車のブレーキやタイヤやハンドルが高速化に対応できない範囲でスピードだけを上げたら、事故の恐れが高まるだけです。
またエンジンそのものまで負荷がかかって故障や寿命短縮にもつながります。
高速化アプリの中にはかなりごまかしの動きで高速化しているように見せるものもあります。
メールソフト起動の高速化すると謳って実際メールを起動するとその画面が表示される時間は少し早くなったと思いきや、実はPCの起動時からずっとメールソフトは水面下で起動してして画面だけが表示させない形にしていた高速化ツールもあります。
これを使うとPC起動時にメールソフトが起動するので、PC起動時とその後の通常使用時にもメールソフトはずっと動いているので、無駄な負荷と時間は消費します。
このからくりはすぐに一般ユーザーにも見破られネット上でもそのツールを販売していた社への悪評も激増し、同社は今もPCに明るいユーザーからは「ねこまたぎ」同然の評価で敬遠されています。

PCの運用はセキュリティだけでなく安定運用もともに不可欠です。
決まった範囲内を越えてあれもこれもと詰め込んだり許容量を越えて荷台や乗員をオーバーするとそれだけで動かなくなって当然です。
どんな機会も正しい操作、範囲を外れて動かすとそれだけで壊れてしまうことを理解してください。
「この程度なら何とか動くだろう」
という思い込みは機械には通用しません。

慣れない作業を長期間頑張ってくれてお疲れ様でした。
以後は安全で快適なPCライフを
  • 悪代官
  • 2016/03/17 (Thu) 07:18:06
ありがとうございました
対応していただき、ありがとうございました。

今後は、このようなことがないよう気を付けていきたいと思います。

本当に、ありがとうございました。
  • nanashi
  • 2016/03/17 (Thu) 19:05:36

返信フォーム






プレビュー (投稿前に内容を確認)