悪代官の伏魔殿掲示板
助けて頂きたいのですがお願い致します。
BrowseFox-FBBに感染してしまいました。
駆除をしたいのですがお助け頂けませんでしょうか?
お願い致します

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 10:29:24, on 2016/09/17
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0589)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe
C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
C:\WINDOWS\SysWOW64\DllHost.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\user\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
O4 - HKLM\..\Run: [RealDownloader] C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [EPSON EP-901A] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Windows\TEMP\E_S673A.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [EPSON539D89] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Users\user\AppData\Local\Temp\E_S7579.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - Startup: OneNote に送る.lnk = C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
O4 - Global Startup: RealTimes.lnk = C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - c:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Amazon 1Button App Service - Amazon Inc. - C:\Program Files (x86)\Amazon\Amazon1ButtonApp\Amazon1ButtonService64.Exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BrcmSetSecurity - Intel - C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\CyberLink\Digital Media Player Library v4\Player\Binary\CLHNServer\CLHNService.exe
O23 - Service: CyberLink Product - 2015/02/17 17:49:16 (CLKMSVC10_99E320F5) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Boot Delay Start Service (McBootDelayStartSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: McAfee Module Core Service (ModuleCoreService) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NetworkSupport - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Intel Security PEF Service (PEFService) - Intel Security, Inc. - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: TiMiniService - Trend Micro Inc. - C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VCService - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update\vuagent.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Boost - Western Digital - C:\Program Files\Western Digital\WD Boost\WDBoost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 18051 bytes
  • なおき
  • 2016/09/17 (Sat) 23:27:33
インストール情報ログもお願いします
おはようございます。
HJTのログを見せてもらいましたが、もうひとつの「インストール情報」ログも追加で見せてください。
HJTログだけでは最初の解析もできませんので。

それと、現在最新状態でお使いのアンチウイルスソフト名も教えてください。
マカフィーとウイルスバスターの痕跡が見えてますが、どちらを現在お使いかも確認したうえで、本格的に解析していきましょう
  • 悪代官
  • 2016/09/18 (Sun) 06:44:44
Re: 助けて頂きたいのですがお願い致します。
おはようございます。ご連絡有難うございます。
ウイルスソフトはマカフィーを使用しています。
インストール情報です。

3D Builder Microsoft Corporation 2016/07/20 11.1.9.0
ACID Music Studio 9.0 Sony 2014/11/22 59.5 MB 9.0.35
Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2016/08/04 420 MB 15.017.20053
Adobe AIR Adobe Systems Incorporated 2015/12/29 23.4 MB 19.0.0.241
Adobe Flash Player 23 NPAPI Adobe Systems Incorporated 2016/09/13 6.20 MB 23.0.0.162
Adobe Flash Player 23 PPAPI Adobe Systems Incorporated 2016/09/13 19.5 MB 23.0.0.162
Adobe Photoshop Elements 11 Adobe Systems Incorporated 2016/07/15 285 MB 11.0
Amazon 1Button App Amazon 2016/02/27 4.98 MB 2.3.4
Amazon Assistant Amazon 2016/01/31 2.3.3
Apple Application Support(32 ビット) Apple Inc. 2016/08/14 152 MB 4.3.2
Apple Application Support(64 ビット) Apple Inc. 2016/08/14 170 MB 4.3.2
Apple Mobile Device Support Apple Inc. 2016/03/25 41.8 MB 9.3.0.15
Apple Software Update Apple Inc. 2016/03/10 4.91 MB 2.2.0.150
Bing Bar Microsoft Corporation 2015/01/16 28.4 MB 7.0.619.0
Bonjour Apple Inc. 2015/09/29 3.28 MB 3.1.0.1
Candy Crush Saga king.com 2016/09/02 1.830.4.0
CCleaner Piriform 2016/09/17 5.22
CyberLink Media Suite 10 CyberLink Corp. 2015/12/29 105 MB 10.0
DVD Architect Studio 5.0 Sony 2014/11/22 61.1 MB 5.0.161
Epson E-Photo SEIKO EPSON CORPORATION 2015/01/16 75.2 MB 1.5.1.0
Epson E-Web Print SEIKO EPSON CORPORATION 2015/01/16 18.4 MB 1.21.0000
EPSON EP-901A プリンタ アンインストール SEIKO EPSON Corporation 2015/12/21
Epson Event Manager Seiko Epson Corporation 2015/01/16 68.9 MB 3.10.0035
EPSON Scan 2015/12/21
Google Chrome Google Inc. 2015/01/16 492 MB 52.0.2743.116
Google Toolbar for Internet Explorer Google Inc. 2016/04/29 15.8 MB 7.5.7619.1252
Groove ミュージック Microsoft Corporation 2016/08/26 3.6.23981.0
iCloud Apple Inc. 2016/08/14 162 MB 5.2.2.87
Intel Collaborative Processor Performance Control Intel Corporation 2015/12/29 2.07 MB 1.0.0.1015
Intel(R) Management Engine Components Intel Corporation 2014/11/22 9.5.3.1520
Intel(R) Processor Graphics Intel Corporation 2016/01/30 20.19.15.4331
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed 2015/01/16
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel Corporation 2014/11/22 76.4 MB 3.1.1307.0362
Intel(R) WiDi Intel Corporation 2014/11/22 169 MB 4.1.19.0
iTunes Apple Inc. 2016/08/14 282 MB 12.4.3.1
Java 8 Update 101 Oracle Corporation 2016/07/21 186 MB 8.0.1010.13
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/08/19 1.88 GB 15.0.4849.1003
Microsoft Silverlight Microsoft Corporation 2016/09/14 143 MB 5.1.50709.0
Microsoft Solitaire Collection Microsoft Studios 2016/08/17 3.11.7293.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2015/01/16 3.47 MB 3.1.0000
Microsoft Visio Professional 2013 Microsoft Corporation 2016/09/09 23.4 MB 15.0.4569.1506
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2015/01/16 580 KB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2015/01/16 1.34 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/02/17 460 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2015/02/17 15.7 MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/01/18 1.15 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/01/16 27.7 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/01/16 22.2 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2016/02/28 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2016/09/16 13.6 MB 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2016/09/16 13.6 MB 10.0.50903
Microsoft Wi-Fi Microsoft Corporation 2016/04/29 1.1604.4.0
mora ~“WALKMAN”公式ミュージックストア~ 譬ェ蠑丈シ夂、セ繝ャ繝シ繝吶Ν繧イ繝シ繝・ 2015/12/21 2.1.0.0
Movie Studio Platinum 12.0 (64-bit) Sony 2014/11/22 437 MB 12.0.756
MSN トラベル Microsoft Corporation 2015/12/21 3.0.4.336
MSN フード&レシピ Microsoft Corporation 2015/12/21 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2015/12/21 3.0.4.336
NAVI*STUDIO Raku-Lite PIONEER CORPORATION 2016/04/19 7.98 MB 1.117
Norton Online Backup Symantec Corporation 2014/11/22 17.7 MB 2.7.0.24
NXPProximityInstaller NXP Semiconductors 2015/12/21 10.6 MB 6.5.2.0
OneNote Microsoft Corporation 2016/09/03 17.7341.57791.0
People Microsoft Corporation 2016/07/22 10.0.11902.0
PhotoWizard Microsoft 2014/11/22 661 MB 1.5.0
PlayMemories Home Sony Corporation 2015/09/09 306 MB 5.0.00.08250
QuickTime 7 Apple Inc. 2016/01/15 95.3 MB 7.79.80.95
RealPlayer (RealTimes) RealNetworks 2016/05/27 183 MB 18.1.4
Realtek Card Reader Realtek Semiconductor Corp. 2016/01/26 11.5 MB 10.0.10240.21283
Realtek Ethernet Controller Driver Realtek 2015/01/20 3.37 MB 8.34.617.2014
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2015/12/29 38.5 MB 6.0.1.7535
Skype を手に入れよう Skype 2015/12/21 3.2.1.0
Socialife ニュース Sony Corporation 2015/12/21 2.4.3.10090
Sony Select Sony Corporation 2015/12/21 2.1.1.2210
Sound Forge Audio Studio 10.0 Sony 2014/11/22 61.7 MB 10.0.178
Sway Microsoft Corporation 2016/09/13 17.7369.45141.0
Synaptics Pointing Device Driver Synaptics Incorporated 2015/12/21 46.4 MB 19.0.5.0
Twitter Twitter Inc. 2016/09/13 5.3.1.0
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2015/04/11 2.30 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/04/11 26.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/04/11 34.0 KB 16.0.1016.1
VAIO - NFC Connection Utility Sony Corporation 2015/02/05 8.63 MB 1.0.0.14100
VAIO - Presentation Sync Sony Corporation 2015/02/05 24.3 MB 1.1.0.15210
VAIO - Xperia Link Sony Corporation 2015/02/03 58.7 MB 1.3.3.11280
VAIO - リモートキーボード Sony Corporation 2015/02/05 58.7 MB 1.2.0.09270
VAIO - リモートキーボード with PlayStation®3 Sony Corporation 2015/02/05 5.95 MB 1.2.1.05220
VAIO Care Sony Corporation 2016/07/15 246 MB 8.4.5.06026
VAIO Care Sony Corporation 2015/12/21 1.4.1.14090
VAIO Care Recovery Sony Corporation 2014/11/22 51.8 MB 1.0.2.08020
VAIO Care ハードウェア診断ツールプラグイン Sony Corporation 2015/02/05 58.7 MB 4.11.1.11210
VAIO Clip Sony Corporation 2015/12/21 1.4.0.7310
VAIO CPU Fan診断ツール Sony Corporation 2014/11/22 58.7 MB 1.2.0.03050
VAIO Gesture Control Sony Corporation 2015/01/16 58.7 MB 2.4.1.09050
VAIO Image Optimizer Sony Corporation 2015/01/16 58.7 MB 3.3.00.10220
VAIO Improvement Sony Corporation 2014/11/22 1.12 MB 2.3.0.05230
VAIO Movie Creator Sony Corporation 2015/01/16 58.7 MB 4.3.01.11140
VAIO Paper Sony Corporation 2015/12/21 1.4.0.7240
VAIO Sample Music Sony Corporation 2014/11/22 34.1 MB 1.0.0.03051
VAIO Touch Search Sony Corporation 2015/02/05 2.76 MB 1.1.0.1511
VAIO TV with nasne™ Sony Corporation 2016/02/28 58.7 MB 2.2.0.02160
VAIO Update Sony Corporation 2016/07/19 19.1 MB 7.2.0.16270
VAIO お引越サポート Sony Corporation 2014/11/22 58.7 MB 1.9.0.11060
VAIO の製品登録 (無料) Sony Corporation 2014/11/22 58.7 MB 7.1.0.06270
VAIO の設定 Sony Corporation 2015/01/15 58.7 MB 6.3.8.13060
VAIO データリストアツール Sony Corporation 2014/11/22 58.7 MB 1.11.0.13250
VAIO ホームネットワークビデオプレーヤー Sony Corporation 2015/01/16 139 MB 1.2.2.04020
VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン CyberLink Corp. 2015/01/16 28.9 MB 4.0
VAIO メディア サーバー設定 Sony Corporation 2014/11/22 144 MB 1.1.0.02220
WD Boost Western Digital Corporation 2014/11/22 13.4 MB 3.34.0.0
Windows Live Essentials Microsoft Corporation 2015/08/29 16.4.3528.0331
Windows Live Mail Packages 2015/12/21
Windows スキャン Microsoft Corporation 2015/12/21 6.3.9654.17133
Windows リーディング リスト Microsoft Corporation 2016/06/18 6.3.9654.21234
Xbox Microsoft Corporation 2016/09/13 19.21.9012.0
はがきデザインキット Japan Post Co., Ltd. 2015/12/29 2.82 MB v9.0.2
はじめに Microsoft Corporation 2016/08/31 4.0.12.0
アプリ コネクター Microsoft Corporation 2015/12/21 1.3.3.0
アラーム & クロック Microsoft Corporation 2016/08/26 10.1608.2312.0
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2016/06/24 218 MB 18.33.0
ウイルスバスター クラウド トレンドマイクロ株式会社 2014/11/22 95.9 MB 6.0
カメラ Microsoft Corporation 2016/08/24 2016.816.20.0
カラリオ年賀 Ver.3 2015/12/23
シュフーチラシアプリ recommended by VAIO TOPPAN PRINTING CO.,LTD. 2015/12/21 1.2.0.1
ストア Microsoft Corporation 2016/09/15 11608.1001.41.0
スポーツ Microsoft Corporation 2016/08/23 4.13.47.0
セキュリティ脅威マップ Trend Micro, Inc. 2015/12/21 6.5.0.1049
ニュース Microsoft Corporation 2016/08/23 4.13.47.0
フォト Microsoft Corporation 2016/08/16 16.722.10060.0
ボイス レコーダー Microsoft Corporation 2016/08/25 10.1608.2211.0
マカフィー インターネットセキュリティ McAfee, Inc. 2016/09/16 192 MB 15.0.166
マップ Microsoft Corporation 2016/08/23 5.1608.2310.0
マネー Microsoft Corporation 2016/08/23 4.13.47.0
ミュージック by Sony Sony Corporation 2015/12/21 1.2.0.14240
メッセージング & Skype Microsoft Corporation 2016/04/19 2.15.20002.0
メール/カレンダー Microsoft Corporation 2016/08/24 17.7167.40721.0
モバイル コンパニオン Microsoft Corporation 2016/08/25 10.1608.2211.0
ヤフオク! (V) Yahoo Japan Corp. 2015/12/21 2.0.0.5
リーダー Microsoft Corporation 2016/09/14 6.4.9926.18471
天気 Microsoft Corporation 2016/08/23 4.13.47.0
新しい Office を始めよう Microsoft Corporation 2016/08/24 17.7319.23511.0
映画 & テレビ Microsoft Corporation 2016/08/25 3.6.23941.0
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/04/06 3.0.1.0
筆ぐるめ 20 富士ソフト株式会社 2014/11/22 309 MB 20.00.0008
電卓 Microsoft Corporation 2016/08/25 10.1608.2213.0
電話 Microsoft Corporation 2016/06/03 2.17.27003.0

よろしくお願い致します。
  • なおき
  • 2016/09/18 (Sun) 08:21:55
セキュリティソフトは一つだけにしましょう
早速のレスありがとうございます。
追加の情報ログも見せてもらってだいぶ状態が見えました。

>ウイルスソフトはマカフィーを使用しています。

はい、マカフィーをお使いと言うことですね。
ではウイルスバスターは以前に使っていたものでしょうが、それがまだしっかり残ってます。
>ウイルスバスター クラウド トレンドマイクロ株式会社 2014/11/22 95.9 MB 6.0

同種のセキュリティソフトは複数併用はできません。
複数入れるだけで深刻な不具合起こします。
使うなら使用期限が残っていて使いやすいものひとつだけ残して、あとは削除必須です。

それと下記アプリもご自身で必要として入れたものですか?
>NXPProximityInstaller NXP Semiconductors 2015/12/21 10.6 MB 6.5.2.0

もし覚えもないのに入っていたならそれも次回以降慎重に削除することになりそうです。

全体としてやはり直接間接含めて複数の問題点が見えてます。
時間はかかってもいいですから落ち着いてひとつずつ確実に進めてください。

まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「GeekUninstaller」(通称:GU)
説明ページ↓
http://www.gigafree.net/system/install/geekuninstaller.html
ダウンロード↓
http://www.geekuninstaller.com/download
「download free」をクリック、保存後、解凍してください。
片付ける時はフォルダごと手動で削除してください。

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

そして下記ページは作業開始前に必ず熟読して、必要な場合が出たらそれに沿って対処してください。この対処が必要な事例が増えています。
http://note.chiebukuro.yahoo.co.jp/detail/n335704

準備できたら作業開始です。
なお、このあとの作業で探しても見つからないものはスルーして進めていいですが、指示した対象外の物は絶対にいじらないようによく見て作業してください。

また、作業のうえで削除指示するものもあるはずですが、ご自身で必要として入れたものがあればそれの削除は保留して、次のレスでその旨を教えてください。

最初にWindowsUpdateの確認して、必要な更新があればそれを全部更新してください。
ですがそこで更新ができないようならこの後に説明する作業はせずに更新失敗の旨をレスで教えてください。
WUが正常にできなくすることで、感染の解析処置を阻害してくる危険なマルウェアが激増しているためです。
Windowsの各種更新(WindowsUpdate)は常に最新に適用しておかないと、それだけで危険な感染はすぐにでも起きますよ。

なお、Windows10への更新はユーザー自身がよほど必要でなければ非推奨です。
http://www.japan-secure.com/entry/Windows_Update_7.html
http://www.japan-secure.com/entry/how_to_suppress_the_free_upgrade_of_Windows_10.html

少なくとも下記のアプリは旧バージョンです。
>Adobe AIR Adobe Systems Incorporated 2015/12/29 23.4 MB 19.0.0.241

各種アプリの更新を怠っただけでも、脆弱性を悪用されて深刻な感染はあっさり起きます。
使うなら最新版に更新してください。使わないアプリならアンインストールが安全です。
他にも旧バージョンないか調べて、あれば同様に更新するか、アンインストールしてください。

>Bing Bar Microsoft Corporation 2015/01/16 28.4 MB 7.0.619.0
>Google Toolbar for Internet Explorer Google Inc. 2016/04/29 15.8 MB 7.5.7619.1252
ツールバーの複数併用はそれだけで不具合のもとになります。
使うならひとつだけ残して、他はGUを使ってアンインストールしてください。
事前にブラウザや他のプログラムを終了してから削除してください。

ここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

GUを使って下記をアンインストールしてください。
>Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2016/08/04 420 MB 15.017.20053

>Java 8 Update 101 Oracle Corporation 2016/07/21 186 MB 8.0.1010.13

pdfアプリが必要なら、下記を入れておくといいでしょう。
http://www.forest.impress.co.jp/library/software/pdfxchedit/

今度はPCをセーフモードで起動してください(やり方↓)
http://www.pc-master.jp/sousa/s-safemode.html
Win8の場合は以下を参考に。
http://freesoft.tvbok.com/win8/tips-and-tools/safemode.html

セーフモードでGUを使って、下記をアンインストールしてください。
>Amazon 1Button App Amazon 2016/02/27 4.98 MB 2.3.4

>Amazon Assistant Amazon 2016/01/31 2.3.3

>RealPlayer (RealTimes) RealNetworks 2016/05/27 183 MB 18.1.4

>ウイルスバスター クラウド トレンドマイクロ株式会社 2014/11/22 95.9 MB 6.0

それと下記も削除推奨です。
>QuickTime 7 Apple Inc. 2016/01/15 95.3 MB 7.79.80.95
Windows版のQTはサポート終了しました。
http://www.atmarkit.co.jp/ait/articles/1604/21/news037.html
今後は不具合や脆弱性が見つかっても修正されないので、安定性とセキュリティ上で危険なので、他のアプリに切り替えを検討ください。

HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、こちらが指示した以外のものは絶対にチェックを入れないでください。
O2 - BHO: RealNetworks Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll

O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll

O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot

O4 - HKLM\..\Run: [RealDownloader] C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

O4 - Global Startup: RealTimes.lnk = C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpsystray.exe

O23 - Service: Amazon 1Button App Service - Amazon Inc. - C:\Program Files (x86)\Amazon\Amazon1ButtonApp\Amazon1ButtonService64.Exe

O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe

O23 - Service: RealTimes Desktop Service - RealNetworks, Inc. - C:\Program Files (x86)\Real\RealPlayer\RPDS\Bin\rpdsvc.exe

O23 - Service: TiMiniService - Trend Micro Inc. - C:\Program Files\Trend Micro\Titanium\TiMiniService.exe

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
探しても見つからないものはスルーして進めていいです。

マイコンピュータのCドライブを開いて、下記のフォルダを探して、見つかればゴミ箱に削除してください。
C:\Program Files\Trend Micro
C:\Program Files (x86)\Amazon
見つからないときはスルーでいいですが、見つかったのに削除できないときは無理に進めずキャンセルして、次回レスでそのことも教えてください。

ここでPCを通常モードで再起動してから、スタートメニューの「アクセサリ」→「システムツール」から「ディスククリーンアップ」を起動してください。
起動したら対象ドライブでCドライブを選択してスキャンして、表示された中の「ダウンロードされたプログラムファイル」「インターネット一時ファイル」「一時ファイル」の項目だけチェックを入れてから「OK」「ファイルの削除」を押してください。
これを実行すると選択した部分のゴミファイルが掃除されます。

これを実行することで作業時にスキャンで検出される無駄なゴミファイルも減るのでその分かなり時間や解析も楽になるのです。
「ごみ箱」など他の項目にチェックしないのは、間違って正常なファイルを削除しないためと、もし正常なファイルを削除してごみ箱に入れても戻せるようにするための措置です。

続いてCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

次に「スケジュールされたタスク」タブと「コンテキストメニュー」タブのログも同じ要領で保存してください。

続いて今度はCC画面の左側にある「Browser Plugin」の項目から「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにHJTとCCでのインストール情報ログを取り直してください。

取り直した両ログと、CCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。
  • 悪代官
  • 2016/09/18 (Sun) 08:51:42
Re: 助けて頂きたいのですがお願い致します。
ご指示有難うございます。
作業終了致しましたのですが、 ウイルスバスター クラウド とAmazon 1Button App Amazon がアンインストール出来ませんでした。
それと、タクスビューボタンが幾つか消えてしまいウィンドウボタンの左クリックが出来なくなりました。

CC『Windows』のログです。

Yes HKCU:Run ApplePhotoStreams Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
Yes HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
Yes HKCU:Run EPSON EP-901A SEIKO EPSON CORPORATION C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Windows\TEMP\E_S673A.tmp" /EF "HKCU"
Yes HKCU:Run EPSON539D89 SEIKO EPSON CORPORATION C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Users\user\AppData\Local\Temp\E_S7579.tmp" /EF "HKCU"
Yes HKCU:Run iCloudPhotos Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
Yes HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
Yes HKCU:Run OneDrive Microsoft Corporation "C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
Yes HKCU:Run Power2GoExpress8
Yes HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
No HKLM:Run CLMLServer_For_P2G8 CyberLink "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
Yes HKLM:Run CLVirtualDrive CyberLink Corp. "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
Yes HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
Yes HKLM:Run IgfxTray Intel Corporation - pGFX "C:\WINDOWS\system32\igfxtray.exe"
Yes HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
Yes HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
Yes HKLM:Run RtHDVBg Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SONYAPO
Yes HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
Yes Startup User OneNote に送る.lnk Microsoft Corporation C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe

  • なおき
  • 2016/09/19 (Mon) 07:48:36
CC『スケジュールされたタスク』のログです。
有効 Task Adobe Flash Player PPAPI Notifier Adobe Systems Incorporated C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe -check pepperplugin
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task AdobeAAMUpdater-1.0-VAIO-user Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task DistromaticUpdater-logon C:\Program Files (x86)\Amazon Browser Settings\updater.exe --launcher=logon-task
有効 Task DistromaticUpdater-periodic C:\Program Files (x86)\Amazon Browser Settings\updater.exe --launcher=periodic-task
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /script=mcnrdhck.lua /periodicRunCount=6
有効 Task Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /timeout=60000 /script=mcnrdhck.lua /hcmode=postdatupdate /datver=2743.0 /datupdatestatus=0
有効 Task McAfee Remediation (Prepare) McAfee, Inc. C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe /prepare
有効 Task McAfeeLogon McAfee, Inc. C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe /platui
有効 Task OneDrive Standalone Update Task Microsoft Corporation C:\Users\user\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
有効 Task Optimize Start Menu Cache Files-S-1-5-21-1473726748-1913700360-998798094-1001
有効 Task PDVDServ12 Task CyberLink Corp. C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe
有効 Task RealDownloader Update Check RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe /scheduler
有効 Task RealDownloaderDownloaderScheduledTaskS-1-5-21-1473726748-1913700360-998798094-1001 RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe /bgrecordaliveevent
有効 Task RealDownloaderRealUpgradeLogonTaskS-1-5-21-1473726748-1913700360-998798094-1001 RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe /logoncheck
有効 Task RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1473726748-1913700360-998798094-1001 RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe /scheduledcheck
有効 Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
  • なおき
  • 2016/09/19 (Mon) 07:50:16
CC『コンテキストメニュー』のログです。
有効 Directory FileSyncEx
有効 Drive CLVDShellExt Cyberlink C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll
有効 File FileSyncEx
有効 File CLVDShellExt Cyberlink C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll
有効 File McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
有効 File PDFXChange Editor Context menu Tracker Software Products (Canada) Ltd. C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll
有効 File PhotoStreamsExt Apple Inc. C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll
有効 Folder McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
  • なおき
  • 2016/09/19 (Mon) 07:51:18
CC『InternetExplorer』のログです。
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Helper E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
有効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
有効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\PROGRA~1\MICROS~3\Office15\GROOVEEX.DLL
有効 Helper RealNetworks Download and Record Plugin for Internet Explorer RealDownloader C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll
無効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Toolbar E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
有効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
有効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
  • なおき
  • 2016/09/19 (Mon) 07:56:09
CC『Googl Chrome』のログです。
有効 App Gmail 7 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App Google ドライブ 14.0 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.0_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google スプレッドシート 1.0 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.0_0
有効 Extension Google スライド 0.9 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.7 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0
有効 Extension Google ドキュメント オフライン 0.5 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\0.5_0
  • なおき
  • 2016/09/19 (Mon) 07:58:20
HJTのログです。
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 8:00:24, on 2016/09/19
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0589)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
C:\Users\user\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
O4 - HKCU\..\Run: [EPSON EP-901A] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Windows\TEMP\E_S673A.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [EPSON539D89] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Users\user\AppData\Local\Temp\E_S7579.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - c:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BrcmSetSecurity - Intel - C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\CyberLink\Digital Media Player Library v4\Player\Binary\CLHNServer\CLHNService.exe
O23 - Service: CyberLink Product - 2015/02/17 17:49:16 (CLKMSVC10_99E320F5) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Boot Delay Start Service (McBootDelayStartSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: McAfee Module Core Service (ModuleCoreService) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NetworkSupport - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Intel Security PEF Service (PEFService) - Intel Security, Inc. - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VCService - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update\vuagent.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Boost - Western Digital - C:\Program Files\Western Digital\WD Boost\WDBoost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15849 bytes
  • なおき
  • 2016/09/19 (Mon) 08:02:47
次はCCでの処置から
レスが遅くなってすみません。

>ウイルスバスター クラウド とAmazon 1Button App Amazon がアンインストール出来ませんでした。
>それと、タクスビューボタンが幾つか消えてしまいウィンドウボタンの左クリックが出来なくなりました。

はい、ちょっと詰まっているようですが、できない所は今は飛ばしておいていいです。

続きのログも見せてもらいました。
それではまた説明に沿って続きの作業をお願いします。

先の要領でCCを起動して「スケジュールされたタスク」タブの下記を「無効」にしたあと、続けて「エントリの削除」してください。無効化できないときはそのまま削除でもいいです。
有効 Task DistromaticUpdater-logon C:\Program Files (x86)\Amazon Browser Settings\updater.exe --launcher=logon-task

有効 Task DistromaticUpdater-periodic C:\Program Files (x86)\Amazon Browser Settings\updater.exe --launcher=periodic-task

有効 Task RealDownloader Update Check RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe /scheduler

有効 Task RealDownloaderDownloaderScheduledTaskS-1-5-21-1473726748-1913700360-998798094-1001 RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe /bgrecordaliveevent

有効 Task RealDownloaderRealUpgradeLogonTaskS-1-5-21-1473726748-1913700360-998798094-1001 RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe /logoncheck

有効 Task RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1473726748-1913700360-998798094-1001 RealNetworks, Inc. C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe /scheduledcheck

次に「IE」タブの下記も同様に処置です。
有効 Helper RealNetworks Download and Record Plugin for Internet Explorer RealDownloader C:\Program Files (x86)\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin64.dll

CCを終了したら下記ページに行って、バスターの削除ツールをダウンロード、保存です。
https://esupport.trendmicro.com/support/vb/solution/ja-jp/1314086.aspx

この削除ツールを実行後、一度PC再起動してください。

再起動したら下記のツールを準備してください。
「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。
使い方は下記サイト様に詳しい説明があるのでサンショウウオ↓
http://www.japan-secure.com/entry/adwcleaner.html

Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ダウンロード
https://www.malwarebytes.org/mwb-download/thankyou/
ファイル直リンです。保存しておいてください。

使い方の説明サイト
http://www.gigafree.net/security/MalwarebytesAnti-MalwareFree.html

準備できたらMBAMをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。

続いてここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

両ツールのアップデートができたらディスククリーンアップを使ってゴミファイルの掃除したあと、PCをセーフモードで再起動してしてください。

続いてPCをセーフモード起動してから、先に一度起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

ACでの作業ができたら次はMBAMの作業です。
またセーフモード起動してからMBAM起動してスキャンしてください。
MBAM起動したら「スキャン」タブで「カスタムスキャン」選択後、Cドライブを含む全ドライブを選択してください。
それとルートキットスキャンの項目もチェック入れておいてください。

この形でスキャンすると時間はかかりますができるだけ細かくスキャンするためです。

両ツールのスキャンの順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、画面右下にその結果を知らせるメッセージが出るので、それを押すとその結果が表示されるはずです。
そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

このあとしばらくPC状態を様子見後、作業後に保存したACとMBAMのログを返信に貼り付けて、それを状態報告とともにレスで見せてください。

また、CCでインストール情報ログだけ取り直して、それもまた見せてください
  • 悪代官
  • 2016/09/19 (Mon) 20:57:07
バスターの削除ツールをダウンロード出来ません
バスターの削除ツールをダウンロードする事が出来ませんでした
  • なおき
  • 2016/09/19 (Mon) 21:49:30
AdwCleanerのダウンロードもできないのですが
AdwCleanerのダウンロードもできないのですが
  • なおき
  • 2016/09/19 (Mon) 22:16:34
ブラウザを変えてみてください
ACとバスター削除ツールのDLができないとのことですね。

ではDLできないブラウザはChromeですか?
もしそうならIEでアクセスしてDLを再試行してください。

これでDLできればいいですが、できないときはまた教えてください。

自分から次のレスできるのはまた明日夜になりそうなので、すみませんがご了承ください
  • 悪代官
  • 2016/09/19 (Mon) 22:21:42
一切のダウンロードインストールが出来なくなってしまいました
ご連絡頂いたツールの一切のダウンロードインストールが出来なくなってしまいました
  • なおき
  • 2016/09/19 (Mon) 22:41:49
エラーでインストール出来ませんでした
バスターの削除ツールがダウンロード出来たのですが何かのエラーでインストール出来ません。同様にMBAMの方もダウンロード出来たのですがエラーでインストールできませんでした。ACはインストール完了致しました。
  • なおき
  • 2016/09/19 (Mon) 23:15:01
DLの阻害は危険の予兆です
今夜もレスが遅くなってすみません。
説明を見せていただきましたが、

>ご連絡頂いたツールの一切のダウンロードインストールが出来なくなってしまいました

>バスターの削除ツールがダウンロード出来たのですが何かのエラーでインストール出来ません。同様にMBAMの方もダウンロード出来たのですがエラーでインストールできませんでした。ACはインストール完了致しました

なんだか怪しい事態になってますね。
ACがDLできたのはいいですが、それ以外はDLできない、DLしても使えないというのはかなり深刻な状態です。

ここで説明すると、【本物の】危険マルウェアの中にはその解析や対処可能なツールのDLと使用を完全にブロックしてしまうものが存在します。
理由は言う間でもなく対策逃れ狙いです。
今回の説明をうかがっても、その恐れが非常に高い症状です。

一応DLできたACを試しますか。
先の自分の説明に沿ってACでスキャンと、検出があればそれを隔離処置してください。

処置後にその結果ログとともに状態報告をレスください。
MBAMは使えないようなのでスルーでいいです。

このACの結果ログと状態を見て、次の対応を考えますが、事態はまったく油断できないと思ってください。
必要なデータのバックアップを全部済ませておいてください。
場合によっては次回のレスでリカバリ不可避の判断出すかもしれません
  • 悪代官
  • 2016/09/20 (Tue) 19:21:59
ACを実行しました。
ACを実行したのですがスキャン後消去作業を拒否されました。
通常モードに復帰後のログです。

AdwCleaner[S2].txt

# AdwCleaner v6.020 - ログファイルの作成日 20/09/2016 作成時間 20:35:14
# ToolsLibによる 14/09/2016 の更新日
# データベース : 2016-09-20.1 [サーバー]
# オペレーティングシステム : Windows 10 Home (X64)
# ユーザー名 : user - VAIO
# 実行場所 : C:\Users\user\Desktop\AdwCleaner.exe
# モード:スキャン
# サポート : https://toolslib.net/forum



***** [ サービス ] *****

悪意あるサービスを検出しませんでした。


***** [ フォルダ ] *****

悪意あるフォルダを検出しませんでした。


***** [ ファイル ] *****

悪意あるファイルを検出しませんでした。


***** [ DLL ] *****

悪意あるDLLsファイルを検出しませんでした。


***** [ WMI ] *****

悪意あるキーを検出しませんでした。


***** [ ショートカット ] *****

改ざん済みショートカットを検出しませんでした。


***** [ スケジュール済みタスク ] *****

悪意あるタスクを検出しませんでした。


***** [ レジストリ ] *****

検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: HKLM\SOFTWARE\Classes\AppID\{7F46C358-270D-4791-A579-AD1DDA1A3F7B}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{E4ADC61E-D06A-4E0E-8582-78C809CC8450}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{EB2BEAEF-150C-4DE4-9D09-F16403C22769}
検出済みキー: HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\distromatic
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\InstallCore
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: HKCU\Software\distromatic
検出済みキー: HKCU\Software\InstallCore
検出済みキー: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B6DCCCD3-520D-4485-B642-FCC136CE12C3}
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: [x64] HKCU\Software\distromatic
検出済みキー: [x64] HKCU\Software\InstallCore
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com


***** [ Webブラウザ ] *****

悪意あるFirefoxベースの要素を検出しませんでした。
検出済みChromium設定: [C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - pbjikboenpfhbbejgkoklgkhjpfogcam

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [7020 バイト] - [20/09/2016 20:21:29]
C:\AdwCleaner\AdwCleaner[S1].txt - [7095 バイト] - [20/09/2016 20:30:43]
C:\AdwCleaner\AdwCleaner[S2].txt - [6838 バイト] - [20/09/2016 20:35:14]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [6915 バイト] ##########
  • なおき
  • 2016/09/20 (Tue) 20:44:10
ACを実行しました。
AdwCleaner[S0].txt

# AdwCleaner v6.020 - ログファイルの作成日 20/09/2016 作成時間 20:21:29
# ToolsLibによる 14/09/2016 の更新日
# データベース : 2016-09-20.1 [サーバー]
# オペレーティングシステム : Windows 10 Home (X64)
# ユーザー名 : user - VAIO
# 実行場所 : C:\Users\user\Downloads\AdwCleaner.exe
# モード:スキャン
# サポート : https://toolslib.net/forum



***** [ サービス ] *****

検出済みサービス: Amazon 1Button App Service


***** [ フォルダ ] *****

検出済みフォルダ: C:\Program Files (x86)\Amazon Browser Settings
検出済みフォルダ: C:\Program Files (x86)\Amazon\Amazon1ButtonApp


***** [ ファイル ] *****

悪意あるファイルを検出しませんでした。


***** [ DLL ] *****

悪意あるDLLsファイルを検出しませんでした。


***** [ WMI ] *****

悪意あるキーを検出しませんでした。


***** [ ショートカット ] *****

改ざん済みショートカットを検出しませんでした。


***** [ スケジュール済みタスク ] *****

悪意あるタスクを検出しませんでした。


***** [ レジストリ ] *****

検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: HKLM\SOFTWARE\Classes\AppID\{7F46C358-270D-4791-A579-AD1DDA1A3F7B}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{E4ADC61E-D06A-4E0E-8582-78C809CC8450}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{EB2BEAEF-150C-4DE4-9D09-F16403C22769}
検出済みキー: HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\distromatic
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\InstallCore
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: HKCU\Software\distromatic
検出済みキー: HKCU\Software\InstallCore
検出済みキー: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B6DCCCD3-520D-4485-B642-FCC136CE12C3}
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: [x64] HKCU\Software\distromatic
検出済みキー: [x64] HKCU\Software\InstallCore
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com


***** [ Webブラウザ ] *****

悪意あるFirefoxベースの要素を検出しませんでした。
検出済みChromium設定: [C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - pbjikboenpfhbbejgkoklgkhjpfogcam

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [6776 バイト] - [20/09/2016 20:21:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6853 バイト] ##########
  • なおき
  • 2016/09/20 (Tue) 20:45:27
ACを実行しました。
ログは3つ出たのですが1つはダブルクリック無反応のため開けませんでした。
  • なおき
  • 2016/09/20 (Tue) 20:46:50
可能ならHPで解析します
早速の作業と報告、ご苦労様です。

>ACを実行したのですがスキャン後消去作業を拒否されました

ACも正常に動きませんか。
ログを見るとかなり検出されてますが、それも全部は隔離処置できてないと見るべきですね。

一応確認しますが、まだMBAMなどはDLできませんか?
できたならそれを教えてください。

できないときは別のツールで解析します。
今度は以下のツールを準備してください。
「HerdProtect」(通称:HP)
説明サイト様↓
http://www.gigafree.net/security/antivirus/herdProtect.html
ダウンロード↓
http://www.herdprotect.com/installers/herdProtectScan_Setup.exe
ファイル直リンです。保存しておいてください。

準備できたら説明ページの手順に沿ってHPを起動してください。

起動したら「scan」で開始です。

しばらく待ってスキャン終了したら、「Save result」を押してそのログを表示させてから、それをデスクトップに保存してください。

保存したらHPは終了してください。
ここでは検出されたものは一切いじらないように。

このあとHPのログを返信で見せてください。

このHPがDLできて動作もしてくれれば何か原因がつかめるかもしれませんが、このHPもDLできないときは安全優先でリカバリになる可能性が大です
  • 悪代官
  • 2016/09/20 (Tue) 21:03:54
HPのログが取れました
HPのログが取れました

Saved date: 2016/09/20 22:07:51
Files detected: 20
Files scanned: 10,824
Processes scanned: 106
Modules scanned: 1,085
ASEPs scanned: 627
Downloads scanned: 3
Deep analysis: 22/0
---------------------------------------------------------------------------------

Files

---------------------------------------------------------------------------------

File path: c:\windows\system32\drivers\{ecd6aae4-019c-44b2-a0e5-570904275d66}gw64.sys
Publisher: StdLib
Signer: Dynamo Combo
MD5: 1845a1b987db992d3607a29eaf6995d9
SHA-1: eed6be5682020e583eb3c8eca13fbe1316fa900d
Created: 2015/01/16 18:01:36
Detections: 19
Determination: Adware
- MicroWorld eScan as Adware.SwiftBrowse.CH (Adware)
- nProtect as Adware.SwiftBrowse.CH (Adware)
- Zillya! Antivirus as Adware.Yotoon.Win64.14 (Adware)
- F-Prot as W64/A-59c9c70a (Undefined)
- Clam AntiVirus as Win.Adware.Swiftbrowse-497 (Adware)
- Bitdefender as Adware.SwiftBrowse.CH (Adware)
- Agnitum Outpost as Riskware.Agent (Adware)
- Lavasoft Ad-Aware as Adware.SwiftBrowse.CH (Adware)
- Emsisoft Anti-Malware as Adware.SwiftBrowse.CH (Adware)
- F-Secure as Adware.SwiftBrowse.CH (Adware)
- Dr.Web as Tool.NetFilter.313
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Jiangmin as AdWare/Yotoon.aq (Adware)
- Antiy Labs AVL as GrayWare[NetTool:not-a-virus]/Win64.NetFilter.a (Adware)
- G Data as Adware.SwiftBrowse.CH (Adware)
- Baidu Antivirus as Adware.Win64.BrowseFox (Adware)
- ESET NOD32 as Win64/BrowseFox.CG (variant) (Adware)
- AVG as Generic (Undefined)
- Reason Heuristics as PUP.Yontoo.DynamoCombo (Adware)

---------------------------------------------------------------------------------

File path: c:\users\user\downloads\adwcleaner.exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/20 20:19:33
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\temp\4be81b98-30e1-41ab-8f89-5b37f8c34cac\dismprov.dll
Publisher:
MD5: d41d8cd98f00b204e9800998ecf8427e
SHA-1: da39a3ee5e6b4b0d3255bfef95601890afd80709
Created: 2016/09/18 23:20:52
Detections: 2
Determination: Inconclusive
- Microsoft Security Essentials as SoftwareBundler:Win32/Penzievs (Undefined)
- Reason Heuristics as PUP.Dealply (M) (Adware)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\3q89i5m1\adwcleaner[1].exe
Publisher:
MD5: d41d8cd98f00b204e9800998ecf8427e
SHA-1: da39a3ee5e6b4b0d3255bfef95601890afd80709
Created: 2016/09/19 22:18:03
Detections: 2
Determination: Inconclusive
- Microsoft Security Essentials as SoftwareBundler:Win32/Penzievs (Undefined)
- Reason Heuristics as PUP.Dealply (M) (Adware)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\3q89i5m1\adwcleaner_6.020[1].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:20:08
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\bw6zi69f\adwcleaner_6.020[1].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:18:01
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\d03oozzw\adwcleaner_6.020[1].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 21:59:30
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\f0moe9jx\adwcleaner_6.020[1].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 21:59:00
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\jogm62oq\adwcleaner_6.020[1].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 21:59:39
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\jogm62oq\adwcleaner_6.020[2].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 21:59:54
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\ve9gvn9r\adwcleaner_6.020[1].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:20:22
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\local\microsoft\windows\inetcache\low\ie\w9a64e86\adwcleaner_6.020[1].exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:19:27
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\downloads\adwcleaner (1).exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:51:12
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\desktop\adwcleaner.exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:50:39
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\desktop\hijackthis.exe
Publisher: Trend Micro Inc.
MD5: 47811d50390a86a17102d7496e6eabb9
SHA-1: 2623749cdb27887f6746acdee7e8065475f8b541
Created: 2016/09/18 22:33:46
Detections: 2
Determination: Ignore detections (false positive)
- Kingsoft AntiVirus as Win32.HeurC.KVM099.a.(kcloud) (Undefined)
- Rising Antivirus as PE:Trojan.VBInject!1.6546 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\appdata\roaming\0w1l1gtg1l1g1b2z1t1i1i\windows live mail packages\uninstaller.exe
Publisher:
MD5: bf375a90fe0b135395e20b0eb9190c11
SHA-1: 2daab83b0439bc76845e58f3f7ddb84ee8e210c4
Created: 2015/01/16 12:44:43
Detections: 5
Determination: Adware
- Emsisoft Anti-Malware as Application.Win32.InstallAd (Adware)
- ESET NOD32 as Win32/InstallCore.AEO.gen potentially unwanted application (Adware)
- Reason Heuristics as PUP.InstallCore.EST (M) (Adware)
- Dr.Web as Adware.InstallCore.509, Trojan.InstallCore.1903 (Adware)
- Sophos as PUA 'Install Core' (Adware)

---------------------------------------------------------------------------------

File path: c:\program files\mcafee\msc\compatibilitytester.exe
Publisher: McAfee, Inc.
Signer: McAfee, Inc.
MD5: f3ed4740058c6eaa215c925491820b5c
SHA-1: 34062adff2c997044d1288486292e03887faa21f
Created: 2015/01/16 12:22:28
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Heur.Suspicious

---------------------------------------------------------------------------------

File path: c:\program files\sony\movie studio platinum 12.0\applicationregistration.exe
Publisher: Sony Creative Software Inc.
Signer: Sony Creative Software Inc
MD5: e3b66a563120590e6f566882a1e53e3f
SHA-1: dc8046169fe93547270928feb3d1ef2e4a5192ee
Created: 2013/01/28 14:41:06
Detections: 1
Determination: Ignore detections (false positive)
- ByteHero BDV as Trojan.Win32.Heur

---------------------------------------------------------------------------------

File path: c:\program files\sony\vaio care\iolo\sqlite3.dll
Publisher:
MD5: b637c198fa977e3fb44be8b6563fa57d
SHA-1: 07fe04b3990ef759551ac4fe5996ea1c7b9b122f
Created: 2015/11/03 15:54:06
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoB (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\windowsapps\bd9b8345.musicbysony_1.2.0.14240_x86__05bme2bjq6sag\sqlite3.dll
Publisher: SQLite Development Team
MD5: 639c2be2de1e484ec75f3c27e8e77039
SHA-1: 0c7b4207641f962c70d91cdc919dd64cbcc8cf10
Created: 2015/01/20 20:59:34
Detections: 2
Determination: Ignore detections (false positive)
- Quick Heal as (Suspicious) - DNAScan
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious-BAY.K

  • なおき
  • 2016/09/20 (Tue) 22:10:22
HPからひとつ掃除を
作業と報告、ご苦労様です。
HPのスキャンログを見せてもらいました。

Dynamo Comboが見つかってますが、それがBrowseFox-FBBのレジストリエントリです。

HPを使って掃除しましょう。

再度HPを起動して、先の手順でスキャンしてください。

スキャン後に、検出された中の下記を選択して「actions」から「remove」してください。
c:\windows\system32\drivers\{ecd6aae4-019c-44b2-a0e5-570904275d66}gw64.sys

これで対象が処置されます。

このあと一度PC再起動後、またしばらく様子見後に状態報告をレスください。
それと、その時点でMBAMや他のアプリなどのDLができるかできないかも確認して、その結果も教えてください
  • 悪代官
  • 2016/09/21 (Wed) 20:37:49
MBAMをインストールできました
ご確認ご指示ありがとうございます。
MBAMをインストールできました。
セーフモードでのスキャンでマルウエアを検出して隔離いたしました。
再起動後再度スキャンいたしました。
ログを取りました

Malwarebytes Anti-Malware
www.malwarebytes.org

スキャン日付: 2016/09/22
スキャン時刻: 4:53
ログファイル: mabaログ.txt
管理者: はい

バージョン: 2.2.1.1043
マルウェアデータベース: v2016.09.21.06
ルートキットデータベース: v2016.08.15.01
ライセンス: トライアル版
マルウェア保護機能: 有効
悪質ウェブサイト保護機能: 有効
自己防衛: 無効

OS: Windows 10
CPU: x64
ファイルシステム: NTFS
ユーザー: user

スキャン形式: カスタムスキャン
結果: 完了しました
スキャンされたオブジェクト数: 721521
経過時間: 2 時間, 31 分, 33 秒

メモリ: 有効
スタートアップ: 有効
ファイルシステム: 有効
アーカイブ: 有効
ルートキット: 有効
ヒューリスティック: 有効
PUP: 有効
PUM: 有効

プロセス: 0
(なし悪意のある項目を検出)

モジュール: 0
(なし悪意のある項目を検出)

レジストリキー: 0
(なし悪意のある項目を検出)

レジストリ値: 0
(なし悪意のある項目を検出)

レジストリデータ: 0
(なし悪意のある項目を検出)

フォルダー: 0
(なし悪意のある項目を検出)

ファイル: 0
(なし悪意のある項目を検出)

物理セクタ: 0
(なし悪意のある項目を検出)


(end)
  • なおき
  • 2016/09/22 (Thu) 07:34:06
Re: 助けて頂きたいのですがお願い致します。
ご確認ご指示ありがとうございます。
HPにてスキャンをいたしました。
ご連絡頂きました、

c:\windows\system32\drivers\{ecd6aae4-019c-44b2-a0e5-570904275d66}gw64.sys

が、検出されませんでした。

HPスキャン後のログです。

Saved date: 2016/09/22 9:37:46
Files detected: 8
Files scanned: 10,860
Processes scanned: 108
Modules scanned: 1,110
ASEPs scanned: 636
Downloads scanned: 3
Deep analysis: 0/0
---------------------------------------------------------------------------------

Files

---------------------------------------------------------------------------------

File path: c:\users\user\downloads\adwcleaner.exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/20 20:19:33
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\downloads\adwcleaner (1).exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:51:12
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\desktop\adwcleaner.exe
Publisher:
Signer: ToolsLib
MD5: d0c3f0827a1cc0107e5d42e23f664a84
SHA-1: 8ab84ab48ebe5311c02f93e4b32fd9c6640ed976
Created: 2016/09/19 22:50:39
Detections: 2
Determination: Ignore detections (false positive)
- Rising Antivirus as Malware.Heuristic!ET (rdm+) (Undefined)
- Qihoo 360 Security as HEUR/QVM11.1.0000.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\user\desktop\hijackthis.exe
Publisher: Trend Micro Inc.
MD5: 47811d50390a86a17102d7496e6eabb9
SHA-1: 2623749cdb27887f6746acdee7e8065475f8b541
Created: 2016/09/18 22:33:46
Detections: 2
Determination: Ignore detections (false positive)
- Kingsoft AntiVirus as Win32.HeurC.KVM099.a.(kcloud) (Undefined)
- Rising Antivirus as PE:Trojan.VBInject!1.6546 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\mcafee\msc\compatibilitytester.exe
Publisher: McAfee, Inc.
Signer: McAfee, Inc.
MD5: f3ed4740058c6eaa215c925491820b5c
SHA-1: 34062adff2c997044d1288486292e03887faa21f
Created: 2015/01/16 12:22:28
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Heur.Suspicious

---------------------------------------------------------------------------------

File path: c:\program files\sony\movie studio platinum 12.0\applicationregistration.exe
Publisher: Sony Creative Software Inc.
Signer: Sony Creative Software Inc
MD5: e3b66a563120590e6f566882a1e53e3f
SHA-1: dc8046169fe93547270928feb3d1ef2e4a5192ee
Created: 2013/01/28 14:41:06
Detections: 1
Determination: Ignore detections (false positive)
- ByteHero BDV as Trojan.Win32.Heur

---------------------------------------------------------------------------------

File path: c:\program files\sony\vaio care\iolo\sqlite3.dll
Publisher:
MD5: b637c198fa977e3fb44be8b6563fa57d
SHA-1: 07fe04b3990ef759551ac4fe5996ea1c7b9b122f
Created: 2015/11/03 15:54:06
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoB (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\windowsapps\bd9b8345.musicbysony_1.2.0.14240_x86__05bme2bjq6sag\sqlite3.dll
Publisher: SQLite Development Team
MD5: 639c2be2de1e484ec75f3c27e8e77039
SHA-1: 0c7b4207641f962c70d91cdc919dd64cbcc8cf10
Created: 2015/01/20 20:59:34
Detections: 2
Determination: Ignore detections (false positive)
- Quick Heal as (Suspicious) - DNAScan
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious-BAY.K


  • なおき
  • 2016/09/22 (Thu) 09:40:01
念のため再度ACスキャンを
作業と報告、ご苦労様です。
今度はMBAMインストールできて作業できたようですね。
MBAMでは何も検出なしですが、こちらはいいです。

HPで先に処置対象だったエントリが見つからないということですね。
再スキャンのログでも消えてますが、これもとりあえず消えているなら置いときましょう。

念のため、先に使ったACを再度用意して、それで再スキャンしてみてください。
これでまた見つかったものがあればそれも処置後、そのログをレスで見せてください。
これを見てからまた次の対処にかかりましょう
  • 悪代官
  • 2016/09/22 (Thu) 20:01:00
ACのログです。
ご確認ご指示ありがとうございます。
ACのログです。

# AdwCleaner v6.020 - ログファイルの作成日 20/09/2016 作成時間 20:21:29
# ToolsLibによる 14/09/2016 の更新日
# データベース : 2016-09-20.1 [サーバー]
# オペレーティングシステム : Windows 10 Home (X64)
# ユーザー名 : user - VAIO
# 実行場所 : C:\Users\user\Downloads\AdwCleaner.exe
# モード:スキャン
# サポート : https://toolslib.net/forum



***** [ サービス ] *****

検出済みサービス: Amazon 1Button App Service


***** [ フォルダ ] *****

検出済みフォルダ: C:\Program Files (x86)\Amazon Browser Settings
検出済みフォルダ: C:\Program Files (x86)\Amazon\Amazon1ButtonApp


***** [ ファイル ] *****

悪意あるファイルを検出しませんでした。


***** [ DLL ] *****

悪意あるDLLsファイルを検出しませんでした。


***** [ WMI ] *****

悪意あるキーを検出しませんでした。


***** [ ショートカット ] *****

改ざん済みショートカットを検出しませんでした。


***** [ スケジュール済みタスク ] *****

悪意あるタスクを検出しませんでした。


***** [ レジストリ ] *****

検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: HKLM\SOFTWARE\Classes\AppID\{7F46C358-270D-4791-A579-AD1DDA1A3F7B}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{E4ADC61E-D06A-4E0E-8582-78C809CC8450}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{EB2BEAEF-150C-4DE4-9D09-F16403C22769}
検出済みキー: HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\distromatic
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\InstallCore
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: HKCU\Software\distromatic
検出済みキー: HKCU\Software\InstallCore
検出済みキー: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B6DCCCD3-520D-4485-B642-FCC136CE12C3}
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: [x64] HKCU\Software\distromatic
検出済みキー: [x64] HKCU\Software\InstallCore
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com


***** [ Webブラウザ ] *****

悪意あるFirefoxベースの要素を検出しませんでした。
検出済みChromium設定: [C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - pbjikboenpfhbbejgkoklgkhjpfogcam

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [6776 バイト] - [20/09/2016 20:21:29]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6853 バイト] ##########
  • なおき
  • 2016/09/22 (Thu) 21:55:48
ACのログです
# AdwCleaner v6.020 - ログファイルの作成日 20/09/2016 作成時間 20:35:14
# ToolsLibによる 14/09/2016 の更新日
# データベース : 2016-09-20.1 [サーバー]
# オペレーティングシステム : Windows 10 Home (X64)
# ユーザー名 : user - VAIO
# 実行場所 : C:\Users\user\Desktop\AdwCleaner.exe
# モード:スキャン
# サポート : https://toolslib.net/forum



***** [ サービス ] *****

悪意あるサービスを検出しませんでした。


***** [ フォルダ ] *****

悪意あるフォルダを検出しませんでした。


***** [ ファイル ] *****

悪意あるファイルを検出しませんでした。


***** [ DLL ] *****

悪意あるDLLsファイルを検出しませんでした。


***** [ WMI ] *****

悪意あるキーを検出しませんでした。


***** [ ショートカット ] *****

改ざん済みショートカットを検出しませんでした。


***** [ スケジュール済みタスク ] *****

悪意あるタスクを検出しませんでした。


***** [ レジストリ ] *****

検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: HKLM\SOFTWARE\Classes\AppID\{7F46C358-270D-4791-A579-AD1DDA1A3F7B}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{E4ADC61E-D06A-4E0E-8582-78C809CC8450}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{EB2BEAEF-150C-4DE4-9D09-F16403C22769}
検出済みキー: HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\distromatic
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\InstallCore
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: HKCU\Software\distromatic
検出済みキー: HKCU\Software\InstallCore
検出済みキー: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B6DCCCD3-520D-4485-B642-FCC136CE12C3}
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: [x64] HKCU\Software\distromatic
検出済みキー: [x64] HKCU\Software\InstallCore
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com


***** [ Webブラウザ ] *****

悪意あるFirefoxベースの要素を検出しませんでした。
検出済みChromium設定: [C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - pbjikboenpfhbbejgkoklgkhjpfogcam

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [7020 バイト] - [20/09/2016 20:21:29]
C:\AdwCleaner\AdwCleaner[S1].txt - [7095 バイト] - [20/09/2016 20:30:43]
C:\AdwCleaner\AdwCleaner[S2].txt - [6838 バイト] - [20/09/2016 20:35:14]

########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [6915 バイト] ##########
  • なおき
  • 2016/09/22 (Thu) 21:56:43
ACのログです
# AdwCleaner v6.020 - ログファイルの作成日 22/09/2016 作成時間 16:45:45
# ToolsLibによる 14/09/2016 の更新日
# データベース : 2016-09-21.1 [サーバー]
# オペレーティングシステム : Windows 10 Home (X64)
# ユーザー名 : user - VAIO
# 実行場所 : C:\Users\user\Desktop\AdwCleaner.exe
# モード:スキャン
# サポート : https://toolslib.net/forum



***** [ サービス ] *****

悪意あるサービスを検出しませんでした。


***** [ フォルダ ] *****

悪意あるフォルダを検出しませんでした。


***** [ ファイル ] *****

悪意あるファイルを検出しませんでした。


***** [ DLL ] *****

悪意あるDLLsファイルを検出しませんでした。


***** [ WMI ] *****

悪意あるキーを検出しませんでした。


***** [ ショートカット ] *****

改ざん済みショートカットを検出しませんでした。


***** [ スケジュール済みタスク ] *****

悪意あるタスクを検出しませんでした。


***** [ レジストリ ] *****

検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.Protector.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorLib.1
検出済みキー: HKLM\SOFTWARE\Classes\AppID\{7F46C358-270D-4791-A579-AD1DDA1A3F7B}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{E4ADC61E-D06A-4E0E-8582-78C809CC8450}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{EB2BEAEF-150C-4DE4-9D09-F16403C22769}
検出済みキー: HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\distromatic
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: HKCU\Software\distromatic
検出済みキー: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B6DCCCD3-520D-4485-B642-FCC136CE12C3}
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: [x64] HKCU\Software\distromatic
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com


***** [ Webブラウザ ] *****

悪意あるFirefoxベースの要素を検出しませんでした。
検出済みChromium設定: [C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - pbjikboenpfhbbejgkoklgkhjpfogcam

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [7020 バイト] - [20/09/2016 20:21:29]
C:\AdwCleaner\AdwCleaner[S2].txt - [7082 バイト] - [20/09/2016 20:35:14]
C:\AdwCleaner\AdwCleaner[S3].txt - [6644 バイト] - [22/09/2016 16:45:45]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [6721 バイト] ##########
  • なおき
  • 2016/09/22 (Thu) 21:57:41
ACのログです
# AdwCleaner v6.020 - ログファイルの作成日 22/09/2016 作成時間 21:51:25
# ToolsLibによる 14/09/2016 の更新日
# データベース : 2016-09-22.1 [サーバー]
# オペレーティングシステム : Windows 10 Home (X64)
# ユーザー名 : user - VAIO
# 実行場所 : C:\Users\user\Desktop\AdwCleaner.exe
# モード:スキャン
# サポート : https://toolslib.net/forum



***** [ サービス ] *****

悪意あるサービスを検出しませんでした。


***** [ フォルダ ] *****

悪意あるフォルダを検出しませんでした。


***** [ ファイル ] *****

悪意あるファイルを検出しませんでした。


***** [ DLL ] *****

悪意あるDLLsファイルを検出しませんでした。


***** [ WMI ] *****

悪意あるキーを検出しませんでした。


***** [ ショートカット ] *****

改ざん済みショートカットを検出しませんでした。


***** [ スケジュール済みタスク ] *****

悪意あるタスクを検出しませんでした。


***** [ レジストリ ] *****

検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.Amazon1ButtonRuntime
検出済みキー: [x64] HKLM\SOFTWARE\Classes\Amazon1ButtonRuntime.AmazonRuntimeServer
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho
検出済みキー: [x64] HKLM\SOFTWARE\Classes\protector_dll.ProtectorBho.1
検出済みキー: HKLM\SOFTWARE\Classes\AppID\{7F46C358-270D-4791-A579-AD1DDA1A3F7B}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{E4ADC61E-D06A-4E0E-8582-78C809CC8450}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
検出済みキー: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
検出済みキー: HKLM\SOFTWARE\Classes\TypeLib\{EB2BEAEF-150C-4DE4-9D09-F16403C22769}
検出済みキー: HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BD6ECB00-7C4A-4F97-B425-44117F2A7AAE}
検出済みキー: HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\distromatic
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: HKCU\Software\distromatic
検出済みキー: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B6DCCCD3-520D-4485-B642-FCC136CE12C3}
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Dynamo Combo
検出済みキー: [x64] HKCU\Software\distromatic
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\3DCCCD6BD02558446B24CF1C63EC213C
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\analytics.app.amazonbrowserapp.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\couponxplorer.dl.tb.ask.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\land.pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pckeeper.software
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\reimageplus.com
検出済みキー: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com


***** [ Webブラウザ ] *****

悪意あるFirefoxベースの要素を検出しませんでした。
検出済みChromium設定: [C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - pbjikboenpfhbbejgkoklgkhjpfogcam

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [7020 バイト] - [20/09/2016 20:21:29]
C:\AdwCleaner\AdwCleaner[S2].txt - [7082 バイト] - [20/09/2016 20:35:14]
C:\AdwCleaner\AdwCleaner[S3].txt - [6884 バイト] - [22/09/2016 16:45:45]
C:\AdwCleaner\AdwCleaner[S4].txt - [6141 バイト] - [22/09/2016 21:51:25]

########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [6218 バイト] ##########
  • なおき
  • 2016/09/22 (Thu) 21:58:38
次はOTLで調べます
作業と報告、ご苦労様です。

続きのACログも見せてもらいました。
昨日にスキャンしたログでもレジストリに結構検出ありますね。
思った通りまだPC内に食い込んでいるモノがあるということです。
次は別のツールで更に調べます。

以下のツールを準備してください。
OTL(OldTimer Listit)
「Download」ボタンからDLしたら保存しておいてください。
http://oldtimer.geekstogo.com/OTL.exe
片付けるときは起動後に「Cleanup」ボタンを押せば自動で削除されます。
ただし、Windows10をお使いの場合は本体ファイルをそのまま削除すればいいです。

他のプログラムを起動しない状態でOTLを起動してください。
起動したら、ウィンドウの上の方にある「Scan All Users」にチェックを入れ、以下のコマンドを「Custom Scan/Fixes」にコピペしてください。

SHOWHIDDEN
%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
ACTIVEX
CREATERESTOREPOINT

その後、左上の「Run Scan」を押すとスキャン開始されます。
スキャン開始後、PC環境にもよりますが数分ほどすると、「OTL.txt」と「Extras.txt」がOTL.exeと同じ場所に作成されるはずなので、この2つのファイルをデスクトップあたりに保存しておいてください。
なお、Extras.txtは出ないこともありますが、その場合はOTL.txtだけでもいいです。

このあとOTLログを丸ごと返信に貼り付けてレスで見せてください。
ただしOTLログはかなり長くなるため、一度に送信してもfc2の文字数制限で途切れます。
なのでログも適当なところで1万文字以内に分割して、複数回に分けてレス送信してください。
1万文字を越えた投稿はfc2の文字数制限で途切れてしまうためです。
http://www1.odn.ne.jp/megukuma/count.htm

OTLでスキャンしただけでは何も変化は起きません。
この結果を見て、検出されたものを次回以降の作業で処置することになるはずです
  • 悪代官
  • 2016/09/23 (Fri) 20:13:53
OTLのログです
ご確認ご指示ありがとうございます。

OTL Extras logfile created on: 2016/09/23 20:59:49 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\user\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.10586.0)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.90 Gb Total Physical Memory | 2.92 Gb Available Physical Memory | 36.94% Memory free
15.90 Gb Paging File | 10.61 Gb Available in Paging File | 66.73% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 896.68 Gb Total Space | 772.21 Gb Free Space | 86.12% Space Free | Partition Type: NTFS
Drive D: | 931.29 Gb Total Space | 235.62 Gb Free Space | 25.30% Space Free | Partition Type: NTFS

Computer Name: VAIO | User Name: user | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]
  • なおき
  • 2016/09/23 (Fri) 21:31:46
OTLのログです 2
OTLのログ続きです

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 1E A3 46 2A E9 3B D1 01 [binary data]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]
"DontEnumerateCommonFilesUpgradeExe" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
  • なおき
  • 2016/09/23 (Fri) 21:33:31
OTLのログ続きです 3
OTLのログ続きです

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{20AB45FF-E862-4E7C-9502-28790ECD185D}" = lport=9999 | protocol=6 | dir=in | app=c:\program files\sony\vaio care\vcagent.exe |
"{2511155D-2D4A-4F0C-ABFC-789966D15C15}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{264AA37E-6264-49BD-912E-D0CB89D2F76F}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\sony\playmemories home\pmbbrowser.exe |
"{295D003E-AA88-41D5-99AA-7DD76E63C65B}" = lport=9997 | protocol=6 | dir=in | app=c:\program files\sony\vaio care\vaioshell.exe |
"{491EBF33-2435-474C-B715-D3994E48227E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{9E1C44F6-D588-4B3A-93B9-D9D21AF82B4C}" = lport=9996 | protocol=6 | dir=in | app=c:\program files\sony\vaio care\vcsystemtray.exe |
"{BC299869-A883-4000-A877-8D77F349129D}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{CEA5F5FB-32D0-4EEB-9DC5-7A371EE88ADD}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{D1F61FFA-40D0-4C5C-AE2E-F952C124BD60}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe |
"{E146C812-7D28-4137-9597-7AAF64B58A06}" = lport=9998 | protocol=6 | dir=in | app=c:\program files\sony\vaio care\vcadmin.exe |
"{F4E004F6-797D-42EF-8C61-D294DFC9C9E6}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohds.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00B8BB55-E1E9-4F85-BC25-1FB0EA99FFCC}" = dir=out | name=@{microsoft.bingtravel_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{036F703C-CF87-4D2F-AD02-CE31CBC3AB44}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} |
"{05212B2E-6F6C-498E-8BC2-F3E379CE4AA6}" = dir=in | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{0A0D56BF-1EF5-4811-B55D-E85F63D9AC58}" = dir=in | name=onenote |
"{0AC71D96-F10C-4C71-A008-44D6C0DFE747}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{0C7B8C30-8D71-4141-8F40-4D7C4A1825B8}" = dir=out | name=juniper networks junos pulse |
"{1122DF7F-35B8-4003-93DB-863CB9E59F59}" = dir=out | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} |
"{14422476-FB62-4616-BFBC-26CDCEEBAC03}" = protocol=6 | dir=in | app=c:\program files (x86)\sony\playmemories home\pmbbrowser.exe |
"{15CB5C6C-3931-4A6F-8F72-3A5F66803777}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{19856BA8-5DC1-4437-A18E-B57F903F9060}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.21234_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{19EAD094-CD1D-4CD0-B396-AA0D97C8ED44}" = dir=in | name=@{microsoft.microsoftofficehub_17.7319.23511.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{1B2BAF38-49F7-4928-9DEB-96111B968089}" = dir=out | name=@{microsoft.windowsphone_10.1608.2211.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} |
"{1F026A87-C259-4039-8475-E8B81BE36473}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} |
"{23EBB02B-F610-472B-849E-DE3BC81957E4}" = dir=out | name=@{microsoft.bingnews_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{269E51E4-1C55-439D-95CE-392210EB283C}" = dir=out | name=シュフーチラシアプリ recommended by vaio |
"{27D985D8-004B-4B07-A7E3-09AF81E3F969}" = dir=out | name=@{microsoft.bingweather_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{2CE5B3C3-539E-4723-B90B-43F82A6274E5}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{2E4697D0-4AB0-4AE0-96A2-790976184D57}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{32461117-F2C9-4FE8-9C28-9697B891939E}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.4.336_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{332D4580-D716-4022-B007-27E09BB61440}" = dir=out | name=@{microsoft.3dbuilder_11.1.9.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} |
"{33B29F8E-3A8C-46ED-A4E4-DB89E1E158E6}" = dir=out | name=windows_ie_ac_001 |
"{3D4739D4-3988-44B2-84B4-FE74EBC60F5E}" = dir=in | name=check point vpn |
"{3D85356C-5B69-48D4-811A-1158DC9F66AE}" = dir=in | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{3D9FF696-5CC4-4790-BFA9-8A5F56225F2D}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{3F0FE28C-3968-4ADD-9CC2-9147F27E4047}" = dir=out | name=xbox |
"{3FC56E06-DD53-44BD-A4BC-1153E9D0ACD9}" = dir=out | name=sway |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{46C82DF6-7408-4D00-AAB3-D933E129524C}" = dir=in | name=@{microsoft.windows.photos_16.722.10060.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{47B6EAB8-94AC-4C12-B9C7-8768C42435F6}" = dir=out | name=sonicwall mobile connect |
"{47F3FBD3-9CED-4010-85AD-33770506DDFF}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe |
"{48148AD2-99D5-41B1-A9F6-C2EF7FF7398B}" = dir=out | name=@{microsoft.getstarted_4.0.12.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} |
"{4886D200-0DF1-4E6B-B846-5A40A3D85BAA}" = dir=out | name=@{microsoft.windowsmaps_5.1608.2310.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} |
"{4A05B85F-03AC-4CD0-9CE9-E1AB5A0B77AA}" = dir=out | name=@{microsoft.connectivitystore_1.1604.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.connectivitystore/mswifiresources/appstorename} |
"{4CA4A06F-4782-4794-97C1-9A6B59BD321A}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} |
"{4CF8C839-96AA-4366-B0BF-1658273B9CA7}" = dir=out | name=candy crush saga |
"{52287616-52E9-45D4-A390-1803ECFBB6DF}" = dir=out | name=sony select |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{5621D258-F8E8-4C55-A228-179EFC04928C}" = dir=in | name=juniper networks junos pulse |
"{56541BA9-1A2A-434E-8603-A879E859493B}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} |
"{58B47C72-8513-4DA1-B00C-C5E30E6F9E0D}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{5A635F46-AD91-410A-880E-EE5884F6CAE1}" = dir=in | name=@{bd9b8345.albumbysony_2.2.2.8170_x86__05bme2bjq6sag?ms-resource://bd9b8345.albumbysony/resources/sz_appname} |
"{5CCC0A9C-6E5D-4CBC-B02C-61FBF39D01FB}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.21234_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{5CFE1859-3142-4505-A9D9-93DEE9757F60}" = dir=out | name=@{microsoft.accountscontrol_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} |
"{5D25F2A0-AB70-45D2-9734-2579DE467A51}" = dir=in | name=@{microsoft.bingnews_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} |
"{5DEF07B8-4C37-47ED-BC4E-3601660C5761}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{5ECC3D00-B267-4278-8309-7D353FDE531E}" = dir=out | name=@{microsoft.xboxlivegames_1.3.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{6274A2A5-663B-4551-84E7-F81BD6ECB0FD}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{655E5CAC-9ED9-4B99-9C12-72A673A523F4}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.7167.40721.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{684C00B4-AB2A-4AA0-9124-7D38FBDF8258}" = dir=out | name=@{bd9b8345.socialife_2.4.3.10090_x64__05bme2bjq6sag?ms-resource://bd9b8345.socialife/resources/android_app_label} |
"{705DBEDC-7377-414F-9245-BB445EE45B54}" = dir=in | name=@{microsoft.bingfinance_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{750FC1D5-9272-4406-AC7A-50DC504FD35B}" = dir=out | name=microsoft solitaire collection |
"{761647E5-D87B-43FE-8614-DDA9DEBC46F0}" = dir=in | name=sonicwall mobile connect |
"{765C21DB-A9FE-4035-8F8B-7B74ECE688DF}" = dir=in | name=@{14c78905.trendmicromalwaremap_6.5.0.1049_x86__y1xsffnhj35f6?ms-resource://14c78905.trendmicromalwaremap/resources/productname} |
"{767605D3-496E-47B1-BDC5-A3422EC6D291}" = dir=in | name=@{microsoft.bingsports_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{7917E311-D5AB-4093-B0DC-402B2C315CA1}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} |
"{7CCAB076-5B17-4F78-AFEC-874DBBE56D71}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{7E6EB9B6-09EC-4815-BCAB-8052946B6267}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{8082BDA7-01B7-4EB0-9458-43037230AB9D}" = dir=in | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} |
"{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{84264C47-E7C4-4670-9FB3-E6B35A88B7D9}" = dir=in | name=@{microsoft.windowsstore_11608.1001.41.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{84528FD6-6066-4A6C-8C2C-845A66D2E1F2}" = dir=out | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} |
"{850E5F52-0C35-40B5-B9C6-15AD4AEEC650}" = dir=out | name=vaio care |
"{8665CF67-C2FA-42C0-B3C5-332D3248734B}" = protocol=6 | dir=in | app=c:\program files\western digital\wd boost\wdboost.exe |
"{8A5C0512-E73E-4383-B4C8-22A602B9F3A9}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} |
"{8A7590C2-B14C-4469-8B84-0BB20A960DAB}" = dir=out | name=twitter |
"{8B33DF94-1551-477A-B12B-CC24086AE503}" = dir=in | app=c:\users\user\appdata\local\microsoft\skydrive\skydrive.exe |
"{8CB916E8-68A2-4DE9-9A1B-6F413CC7634C}" = dir=in | name=@{microsoft.bingweather_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} |
"{8CE635C5-ED8C-4577-AA59-6E1E112B1418}" = dir=in | name=f5 vpn |
"{90A02A1C-4E6D-4B8B-958F-B55A24471739}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} |
"{957E8645-0EB0-449A-B8A9-B68465B6B21A}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.7167.40721.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} |
"{9AB29AFE-DA59-4E5C-B0FE-A6CD03492B8B}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{9B0C6622-3F63-4C40-887E-A4BEE5BFCA02}" = dir=out | name=@{microsoft.zunevideo_3.6.23941.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{9C619F80-9208-4312-8787-70DCB3FB4984}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{9CE0ECBE-1BEE-4257-8FDB-C0CDBAFA80FA}" = dir=out | name=@{microsoft.bingmaps_1.6.1821.2624_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{9FF88C4A-CC1C-49A5-BAF8-97FC1DA06BFE}" = dir=out | name=@{microsoft.people_10.0.11902.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} |
"{A001BCFA-D7F2-40CA-BEAC-34D113CB1B67}" = dir=out | name=@{microsoft.zunemusic_3.6.23981.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{A6F09F08-3902-43E5-A0E1-97E04DE7F735}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{A76CBB83-5398-4676-898A-F3D6C2929C13}" = dir=out | name=f5 vpn |
"{AB9A44CA-3555-4B94-884D-5B0D07CF8089}" = dir=in | name=vaio care |
"{AF7B293A-6DED-42F6-B3CA-AAEC38D448FC}" = dir=out | name=windows_ie_ac_001 |
"{B025F29B-64AF-4974-A4A4-91051AF74B8C}" = protocol=17 | dir=in | app=c:\program files\western digital\wd boost\wdboost.exe |
"{B1561EBD-82FB-4B64-A3A8-65B547BDC173}" = dir=out | name=onenote |
"{B221E623-7F65-4DBF-9C1B-07F6448E78E1}" = dir=out | name=@{microsoft.bingfinance_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} |
"{B7DA58DB-2696-490C-AFC5-8BC843EF9976}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\movie\powerdvd cinema\powerdvdcinema12.exe |
"{B92BDF67-EF01-4688-8E50-A5C16457B1A2}" = dir=out | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{B96DAF7E-5120-454F-9E15-50529C0AE2BE}" = dir=in | name=xbox |
"{BD793253-CFE3-4F25-B207-434810799188}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{C10B2355-1507-434E-92B5-F8DC03623069}" = dir=out | name=mora ~“walkman”公式ミュージックストア~ |
"{C3A2F06B-820C-4A04-B055-48CA7B9AE1C3}" = dir=in | name=@{microsoft.zunemusic_3.6.23981.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{C3D47BC3-7281-4418-B5A5-33396C4E58B1}" = dir=out | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{C4520634-307A-4F7C-80CD-9756B656073A}" = dir=in | name=sway |
"{C5E5C0DF-DEF3-409F-B0FB-F8F479E23E8D}" = dir=out | name=@{microsoft.lockapp_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} |
"{C6ABDB61-FC36-47EB-ABDD-91A2640EC96B}" = dir=out | name=@{bd9b8345.albumbysony_2.2.2.8170_x86__05bme2bjq6sag?ms-resource://bd9b8345.albumbysony/resources/sz_appname} |
"{C77C098C-E341-4D12-9A17-51532A7C29FB}" = dir=out | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} |
"{CAD3CB5B-D81B-41D3-A8F9-DF9FE095A7BE}" = dir=out | name=check point vpn |
"{CC862CD8-DAA1-4FA2-97D5-6884BFFE92F3}" = dir=out | name=@{microsoft.windowsstore_11608.1001.41.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} |
"{D09405C2-902A-42B6-9742-5EA936A01E18}" = dir=in | name=@{bd9b8345.musicbysony_1.2.0.14240_x86__05bme2bjq6sag?ms-resource://bd9b8345.musicbysony/resources/q_m_browse_001} |
"{D1C89FB4-10EB-4A9B-A183-36C36ADDA806}" = dir=in | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} |
"{D4BD3032-2DE2-438B-A971-5D6849C7ED5D}" = protocol=6 | dir=in | app=c:\program files (x86)\real\realplayer\rpds\bin\rpdsvc.exe |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D91C6D10-17B6-4968-A5F9-86A33DEA3E42}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{D95D165E-9DAA-4541-945D-3EB1B80EFE51}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector10\pdr10.exe |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DC4E8CF6-98FF-4D08-9D57-B232A7DFF461}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} |
"{DDAE2283-7E6B-4B8C-B79F-D9038F14A24A}" = dir=out | name=楽天gateway |
"{E2D3565D-BCB4-4A1B-B27F-E8EE925262F5}" = dir=out | name=@{microsoft.bingsports_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} |
"{E5EDF40B-E196-4DA6-91BA-33C4F1FDD662}" = dir=out | name=ヤフオク! (v) |
"{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{E80B5DBD-FF0F-4425-92F3-3E44762C1823}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{EC0EF2F4-E6C7-4FCE-8CC9-289B1838DAA2}" = dir=in | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} |
"{EC1A2988-4BC1-48DF-AD0A-2197D819963F}" = dir=out | name=@{microsoft.microsoftofficehub_17.7319.23511.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{ECF37D2B-CAB1-475A-9BFE-AC72321FC66F}" = dir=in | name=@{microsoft.zunevideo_3.6.23941.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{F0BDA8F7-A0B9-46E8-A097-2A6078A91DC0}" = dir=out | name=@{microsoft.windows.photos_16.722.10060.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} |
"{F21869FE-DE01-43B4-8D9F-C58C46512A4E}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{FAB473F3-4EB2-4981-9E98-0409ACFFB6D2}" = dir=out | name=@{14c78905.trendmicromalwaremap_6.5.0.1049_x86__y1xsffnhj35f6?ms-resource://14c78905.trendmicromalwaremap/resources/productname} |
"{FAF71BE9-A2EA-4F0D-927D-F9212C7B915F}" = dir=out | name=@{bd9b8345.musicbysony_1.2.0.14240_x86__05bme2bjq6sag?ms-resource://bd9b8345.musicbysony/resources/q_m_browse_001} |
"{FDF39097-A0E7-4AAA-998F-1DAB6D5343D4}" = dir=out | name=windows_ie_ac_001 |
"{FE45B5D5-3A7B-48BD-8037-2A01993C8C5F}" = dir=in | app=c:\program files\intel corporation\intel widi\widiapp.exe |
"{FE58B418-3955-4F11-981D-1D7AF289E90D}" = dir=in | name=microsoft solitaire collection |
"TCP Query User{B6903AD0-4B41-478D-A45E-F676C5855B5F}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"TCP Query User{BEE4662B-AB82-486F-A0D6-83D34BDD129E}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{05685776-9CBE-4492-B1D7-F220ABDB53DC}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{888C1247-F7E7-4F4D-924B-762E974D3073}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
  • なおき
  • 2016/09/23 (Fri) 21:34:46
OTLのログ続きです 4
OTLのログ続きです

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0346718E-8EF3-403A-87A0-912D0C44A9BA}" = VCCx64
"{1B2C85A0-2B9E-4291-8B37-468D57503E98}" = Update for Japanese Microsoft IME Postal Code Dictionary
"{1D78CF1E-6464-11E2-B9E1-F04DA23A5C58}" = Movie Studio Platinum 12.0 (64-bit)
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{20E0665F-E4EE-4E2A-8E86-EFC65129FE41}" = MergeModule_x64
"{21E47F47-C9A7-4454-BA48-388327B0EA00}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{25058321-C33E-496B-8915-6FD64D362CAF}" = Windows Live MIME IFilter
"{25ECAFCB-DCFB-4FCE-A5B2-772A57F59860}" = VCCx64
"{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}" = Apple Mobile Device Support
"{302600C1-6BDF-4FD1-1307-148929CC1385}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology
"{312395BC-7CC2-434C-A660-30250276A926}" = SSLx64
"{3A097A28-308D-4C39-809F-C72ED47636E2}" = VAIO Care Recovery
"{404D6E7E-948E-4D2E-9540-59550AB59D4F}" = VAIO Care
"{4DF9BC73-D405-4C3B-A0EA-1E390A8AFC73}" = Update for Japanese Microsoft IME Standard Dictionary
"{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}" = Bonjour
"{606DF716-F28D-4449-B0B1-3AB6081F51AF}" = VCCMMX64
"{62A172B2-550E-499D-9A82-5190D18390AA}" = VAIO メディア サーバー設定
"{724A887F-2B55-4306-B6F9-8F0E7A04B1B5}" = iCloud
"{85BC3391-6BE6-11E2-88D8-1040F3E7010F}" = MSVCRT Redists
"{89AFB053-A343-46EF-97E4-D593AD7184E6}" = Intel® Trusted Connect Service Client
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90150000-002A-0000-1000-0000000FF1CE}" = Microsoft Office 64-bit Components 2013
"{90150000-002A-0411-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Japanese) 2013
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{90621A56-901E-417D-A8CB-E8E3A6793C29}" = Intel(R) WiDi
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{955524E7-79EB-4CA9-BA4D-FD2DF587651B}" = iTunes
"{9BB39D9A-6E5C-4148-86D9-C7ED667883B7}" = PDF-XChange Editor
"{A0A2BE14-D3FF-41C8-9545-4B130E3FE9A4}" = VUx64
"{A6B0442B-E159-444B-B49D-6B9AC531EAE3}" = Apple Application Support(64 ビット)
"{A99D925D-C01F-4384-98A2-7FEC295C6E15}" = WD Boost
"{AB447E3B-7A95-4CA6-8ECD-B25C96314B67}" = VCCx64
"{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}" = ウイルスバスター クラウド
"{ABBD4BA9-6703-40D2-AB1E-5BB1F7DB49A4}" = Trend Micro Titanium
"{B812401D-BAB2-4E33-9AC7-9862BC8CAF64}" = VCCMMx64
"{B939BFEB-824F-4456-A4EE-2B86ED04033D}" = Update for Japanese Microsoft IME Trending Words Dictionary
"{CBA577D0-C972-4A26-B948-A315DF3ECE0E}" = SOHLib for PlayMemories Home
"{D2837730-4960-3B35-8088-201387FD3BDB}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
"{D55EAC07-7207-44BD-B524-0F063F327743}" = VIx64
"{D70575CE-6C3F-400A-AD30-BB1E27222108}" = Intel® PROSet/Wireless WiFi Software
"{DBEAA361-F8A4-4298-B41C-9E9DCB9AAB84}" = VPMx64
"{e47ef034-a96c-40f9-a6ea-02fa3708b9b3}" = Intel(R) PRO/Wireless Driver
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F3FC1B12-45AA-4ACE-AD9F-DFD87BE9457E}" = NFC Connection Utility
"{F792DDDD-71C8-419E-AE05-46B0CDB1BEC8}" = VAIO Touch Search
"{FB483FA3-A91A-42C2-B3A6-6F6B504A4C5B}" = VAIO ホームネットワークビデオプレーヤー
"CCleaner" = CCleaner
"EPSON EP-901A" = EPSON EP-901A プリンタ アンインストール
"HomeBusinessRetail - ja-jp" = Microsoft Office Home and Business 2013 - ja-jp
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
"{024D6C9E-4775-421D-B0D0-D4F123687778}" = Windows Live Essentials
"{02D371DE-95DC-4F6F-A1A6-4C957D6721A9}" = 筆ぐるめ 20
"{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}" = Windows Live Writer
"{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
"{0BE9E708-5DC0-4963-9CFD-0AA519090E79}" = Junk Mail filter update
"{0F13C24A-FFE2-4CD0-8E0B-DC804E0A0E0B}" = Epson Event Manager
"{13743594-F75E-491E-9EFF-203C8F8DF705}" = RealDownloader
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{1D181764-DCD0-41B8-AA7B-0A599F027A72}" = Adobe Photoshop Elements 11
"{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8
"{3490653F-2789-46A1-B1BF-6BD4CF4131AB}" = FDUx86
"{3A26D9BD-0F73-432D-B522-2BA18138F7EF}" = VAIO Improvement
"{3B54A5BD-549E-4801-9BE6-4E539DEDACF0}" = VAIO TV with nasne™
"{3C100F93-4F0E-4C32-9AEB-EFB3E2CA34F8}" = PhotoWizard
"{3F1A81BF-154E-40EE-987B-159E81D25BF7}" = VAIO の製品登録 (無料)
"{402ED4A1-8F5B-387A-8688-997ABF58B8F2}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}" = Norton Online Backup
"{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
"{4375200F-C451-11E1-865D-F04DA23A5C58}" = DVD Architect Studio 5.0
"{44510C84-AE2A-4079-A75B-D44E68D73B9A}" = CyberLink PhotoDirector 4
"{52D7E962-5F17-4D7E-858F-956EB09A5CB8}" = Windows Live Writer
"{5597C927-029A-46A7-A0C0-8DABD9891A50}" = VAIO Image Optimizer
"{56EC47AA-5813-4FF6-8E75-544026FBEA83}" = Apple Software Update
"{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}" = VAIO データリストアツール
"{5873F56A-B4D1-420B-B221-8DBA1F42A449}" = カラリオ年賀 Ver.3
"{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader
"{5D772F4A-53DE-4E1F-83F5-B08DFF106C60}" = VAIO BIOS Data Transfer Utility
"{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}" = VAIO お引越サポート
"{5E848897-1113-49FE-8FCE-D4BF39EDE254}" = Windows Live UX Platform Language Pack
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{6158789A-C219-20CD-F354-60F34CDE0DCF}" = はがきデザインキット
"{6367ca6a-0f36-456a-8843-bd8c62239c4b}" = PDF-XChange Editor
"{63C43435-F428-42BA-8E7B-5848749D9262}" = SSLx86
"{6466EF6E-700E-470F-94CB-D0050302C84E}" = Remote Keyboard
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
"{682A3328-9621-4BAD-91FA-873A076610C4}" = Epson E-Web Print
"{692955F2-DE9F-4078-8FAA-858D6F3A1776}" = VAIO Gesture Control
"{6B1BB7E3-CF20-4842-B1FE-42C251B95E98}" = Windows Live Messenger
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{714E162E-CD4F-4F1B-8302-7F5179409C25}" = Windows Live Writer
"{7396FB15-9AB4-4B78-BDD8-24A9C15D2C65}" = VAIO - リモートキーボード
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{7864287E-F3F7-4A26-AAC3-4983CC7E2C64}" = Epson E-Photo
"{79868830-18A0-11E2-A650-F04DA23A5C58}" = ACID Music Studio 9.0
"{7ACA8EC0-BEEC-11E1-B83D-F04DA23A5C58}" = Sound Forge Audio Studio 10.0
"{7C80D30A-AC02-4E3F-B95D-29F0E4FF937B}" = VAIO Easy Connect
"{803E4FA5-A940-4420-B89D-A8BC2E160247}" =
"{82F09B1C-F602-4552-9C40-5BD5F8EAF750}" =
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{855DDD3C-131E-42A8-BCBD-F9581F80CACB}" =
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8B6202FD-3790-4DD4-B343-51736F7FF4E5}" = Video Downloader
"{8D5E8DA1-0420-4A3B-9B29-8F3A00B32BDF}" = RealDownloader
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8E797841-A110-41FD-B17A-3ABC0641187A}" = VAIO の設定
"{8EA12696-D38C-44DD-96E5-12C8DF6F8230}" = Windows Live Writer Resources
"{8FCCB703-3FBF-49e7-A43F-A81E27D9B07E}" = CyberLink MediaShow 6
"{90150000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-0411-0000-0000000FF1CE}" = Microsoft Office 校正ツール 2013 - 日本語
"{90150000-002C-0411-0000-0000000FF1CE}" = Microsoft Office Proofing (Japanese) 2013
"{90150000-0051-0000-0000-0000000FF1CE}" = Microsoft Visio Professional 2013
"{90150000-0054-0411-0000-0000000FF1CE}" = Microsoft Visio MUI (Japanese) 2013
"{90150000-006E-0411-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Japanese) 2013
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0411-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{90150000-00E1-0411-0000-0000000FF1CE}" = Microsoft Office OSM MUI (Japanese) 2013
"{9402AEF2-5981-4097-8BE2-6501DAC4DBFD}" = vc2012_redist
"{94F4815B-755A-4FFA-AFDC-EE8FE776981E}" = PlayMemories Home
"{95127873-19AF-4C20-BA3A-8B798150DDBB}" = Presentation Sync
"{97E3AE69-8FB1-496A-8CA0-AE491902DCD7}" = Movie Maker
"{98CE8819-87AA-4814-8167-ADDDD513485F}" = PSE11 STI Installer
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9A2CA016-1C4C-4D44-BF70-C2C8639C34A4}" = ESDL
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D8112DB-3490-4BF1-AAFA-1D224FFB5D3C}" = VHD
"{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2}" = VAIO Update
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9556859-D269-424A-BF4A-549C90352FB4}" = VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン
"{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{ACB8F1E6-EE81-43FC-AEB7-68EDAF291FB1}" = VCCx86
"{AE7A7408-78CE-4DFF-AFF3-8B87741D8902}" = VNT
"{AEE5C24B-1A72-4798-8E64-565B6D9A2DA4}" = NAVI*STUDIO Raku-Lite
"{AFDC0CC0-39E8-42C0-9823-2C1C182676DC}" = VCCx86
"{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}" = CyberLink PowerDirector 10
"{B24BB74E-8359-43AA-985A-8E80C9219C70}" = VSSTx86
"{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
"{B31938C7-7E97-49EE-8F88-951E156268A3}" = VCCx86
"{B46BEA36-0B71-4A4E-AE41-87241643FA0A}" = CyberLink PowerDVD 12
"{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}" = Windows Live Mail
"{B8991D99-88FD-41F2-8C32-DB70278D5C30}" = VWSTx86
"{BC3FFCF0-3DB7-47D2-BF15-1979AB59D12B}" = VCCMMX86
"{BCE6E3D7-B565-4E1B-AC77-F780666A35FB}" = VAIO CPU Fan診断ツール
"{C2CC5822-32E6-4D21-88EA-DE8CED09EE2F}" = VAIO Movie Creator
"{C8FEB019-F2E1-4E8F-886E-AB5C68FE531C}" = Windows Live メール
"{CC87BAAD-AA25-4727-9B7C-E0876722B784}" = VCCMMx86
"{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
"{D04F1D22-4A47-42C6-A2B9-094A7B844D9B}" = VUx86
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D17C2A58-E0EA-4DD7-A2D6-C448FD25B6F6}" = VIx86
"{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
"{D34F2C90-2CBA-4DEE-84D3-FB73005D5903}" = VAIO Gesture Control
"{D4B07658-F443-4445-A261-E643996E139D}" = Apple Application Support(32 ビット)
"{D4D065E1-3ABF-41D0-B385-FC6F027F4D00}" = Elements 11 Organizer
"{D5318740-B088-4B1A-B6A8-1F90A172CCD1}" = PMB_ModeEditor
"{D6D69EE4-00F6-4DCE-B7AF-E90042BDE39B}" = フォト ギャラリー
"{D91558BF-D1F3-411F-AEFE-8774CB406512}" = VAIO - Xperia Link
"{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
"{DD7721BB-CF1C-4DC9-AD87-8D5FB75413B7}" = MergeModule_x86
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E3AE96D6-E196-45B4-AF62-2B41998B9E37}" = UpdateService
"{E6757A5B-EE7E-4D72-82B7-D1B2991DF55E}" = PYV_x86
"{E682702C-609C-4017-99E7-3129C163955F}" = VAIO - リモートキーボード with PlayStation®3
"{E703613B-BDAB-433E-A66A-DE0263E3D35D}" = Windows Live Messenger
"{E7FDF11C-12BB-4D6F-9B6D-F8E488C776DC}" = PMB_ServiceUploader
"{EC153498-00E1-4C9C-89BE-81527C6750BE}" = VAIO Care ハードウェア診断ツールプラグイン
"{ECCEB4D0-7080-4F8A-B498-E40A32A4FBED}" = Restore
"{EE402ACB-8269-4E44-9CA1-D81FDC4B4545}" = XperiaLinkx86
"{f05bfa4b-0c78-4a3e-aa74-8c220b4a7782}" = RealDownloader
"{f0aecb48-77c7-45fa-b264-ea1945fdee59}" = インテル® PROSet/Wireless ソフトウェア
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3BB7E2D-62E0-4008-8727-588EDC274C25}" = Photo Common
"{f65db027-aff3-4070-886a-0d87064aabb1}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FB77DB0C-6951-47B6-9D80-A0FDBEE0334C}" =
"{FBEE3D44-0933-4B84-BB6A-49957F89187F}" = VAIO Sample Music
"0E7DAF70-FB54-4B91-B192-7E771C25AEEB" = Intel Collaborative Processor Performance Control
"Adobe Flash Player NPAPI" = Adobe Flash Player 23 NPAPI
"Adobe Flash Player PPAPI" = Adobe Flash Player 23 PPAPI
"Adobe Photoshop Elements 11" = Adobe Photoshop Elements 11
"designKit.702840F10216893FC3494B731E825B33666733D6.1" = はがきデザインキット
"EPSON Scanner" = EPSON Scan
"Google Chrome" = Google Chrome
"herdProtectScan" = herdProtect Anti-Malware Scanner
"InstallShield_{5597C927-029A-46A7-A0C0-8DABD9891A50}" = VAIO Image Optimizer
"InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}" = CyberLink Media Suite 10
"InstallShield_{A9556859-D269-424A-BF4A-549C90352FB4}" = VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン
"InstallShield_{C2CC5822-32E6-4D21-88EA-DE8CED09EE2F}" = VAIO Movie Creator
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware バージョン 2.2.1.1043
"MSC" = マカフィー インターネットセキュリティ
"NARA" = Norton Online Backup ARA
"NXPProximityInstaller" = NXPProximityInstaller
"Office15.VISPRO" = Microsoft Visio Professional 2013
"WinLiveSuite" = Windows Live Essentials
  • なおき
  • 2016/09/23 (Fri) 21:36:09
OTLのログ続きです 5
OTLのログ続きです

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Windows Live Mail Packages" = Windows Live Mail Packages

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2016/09/17 18:34:06 | Computer Name = VAIO | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: igfxHK.exe、バージョン: 6.15.10.4331、タイム スタンプ: 0x564cc83e
障害が発生しているモジュール名:
igfxHK.exe、バージョン: 6.15.10.4331、タイム スタンプ: 0x564cc83e 例外コード: 0xc0000409 障害オフセット: 0x0000000000015953
障害が発生しているプロセス
ID: 0x1a10 障害が発生しているアプリケーションの開始時刻: 0x01d21133993cc7da 障害が発生しているアプリケーション パス: C:\WINDOWS\system32\igfxHK.exe
障害が発生しているモジュール
パス: C:\WINDOWS\system32\igfxHK.exe レポート ID: c543a6c1-ed82-49c7-adf2-3528722887e6
障害が発生しているパッケージの完全な名前:
障害が発生しているパッケージに関連するアプリケーション ID:

Error - 2016/09/17 18:47:51 | Computer Name = VAIO | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = 暗号化サービスで、システム ライター オブジェクトで OnIdentity() の呼び出しを処理中にエラーが発生しました。 Details:
AddLegacyDriverFiles:
Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System
Error: アクセスが拒否されました。 。

Error - 2016/09/18 5:31:42 | Computer Name = VAIO | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: igfxHK.exe、バージョン: 6.15.10.4331、タイム スタンプ: 0x564cc83e
障害が発生しているモジュール名:
igfxHK.exe、バージョン: 6.15.10.4331、タイム スタンプ: 0x564cc83e 例外コード: 0xc0000409 障害オフセット: 0x0000000000015953
障害が発生しているプロセス
ID: 0x23b8 障害が発生しているアプリケーションの開始時刻: 0x01d2118f76f0ae68 障害が発生しているアプリケーション パス: C:\WINDOWS\system32\igfxHK.exe
障害が発生しているモジュール
パス: C:\WINDOWS\system32\igfxHK.exe レポート ID: 59a9a2da-595e-4af0-85af-82aded727823
障害が発生しているパッケージの完全な名前:
障害が発生しているパッケージに関連するアプリケーション ID:

Error - 2016/09/18 5:40:13 | Computer Name = VAIO | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: SpfService64.exe、バージョン: 1.3.0.9090、タイム スタンプ: 0x4e684dec
障害が発生しているモジュール名:
ntdll.dll、バージョン: 10.0.10586.306、タイム スタンプ: 0x571af2eb 例外コード: 0xc0000005 障害オフセット: 0x000000000001626a
障害が発生しているプロセス
ID: 0x2328 障害が発生しているアプリケーションの開始時刻: 0x01d210bca7fd8046 障害が発生しているアプリケーション パス: C:\Program
Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
障害が発生しているモジュール
パス: C:\WINDOWS\SYSTEM32\ntdll.dll レポート ID: 2db1b804-310d-4396-94ea-1e21fbd61dba 障害が発生しているパッケージの完全な名前:
障害が発生しているパッケージに関連するアプリケーション ID:

Error - 2016/09/18 6:00:01 | Computer Name = VAIO | Source = Windows Backup | ID = 4103
Description =

Error - 2016/09/18 6:03:09 | Computer Name = VAIO | Source = Perflib | ID = 1008
Description =

Error - 2016/09/18 7:06:44 | Computer Name = VAIO | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = 暗号化サービスで、システム ライター オブジェクトで OnIdentity() の呼び出しを処理中にエラーが発生しました。 Details:
AddLegacyDriverFiles:
Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System
Error: アクセスが拒否されました。 。

Error - 2016/09/18 7:09:40 | Computer Name = VAIO | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = 暗号化サービスで、システム ライター オブジェクトで OnIdentity() の呼び出しを処理中にエラーが発生しました。 Details:
AddLegacyDriverFiles:
Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System
Error: アクセスが拒否されました。 。

Error - 2016/09/18 7:09:46 | Computer Name = VAIO | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = 暗号化サービスで、システム ライター オブジェクトで OnIdentity() の呼び出しを処理中にエラーが発生しました。 Details:
AddLegacyDriverFiles:
Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System
Error: アクセスが拒否されました。 。

Error - 2016/09/18 7:12:39 | Computer Name = VAIO | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = 暗号化サービスで、システム ライター オブジェクトで OnIdentity() の呼び出しを処理中にエラーが発生しました。 Details:
AddLegacyDriverFiles:
Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System
Error: アクセスが拒否されました。 。

[ System Events ]
Error - 2016/09/23 6:59:58 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 6:59:58 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 6:59:58 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 7:09:58 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 7:37:23 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 7:38:06 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 7:41:22 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 7:41:43 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 7:50:24 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2

Error - 2016/09/23 7:59:25 | Computer Name = VAIO | Source = Service Control Manager | ID = 7023
Description = User Data Access_3b9ca サービスは、次のエラーで終了しました: %%2


< End of report >
  • なおき
  • 2016/09/23 (Fri) 21:37:06
そちらはExtraログですね
作業と報告、ご苦労様です。
OTLスキャンログを見せてもらいましたが、Extra.txtだけで、もうひとつのOTL.txtが出てないですね。
お手数ですがもうひとつのログも追加で見せてください。

このOTL.txtのほうが解析上重要なのです。
続きのログも見せてもらったら解析後に次の作業に移ります
  • 悪代官
  • 2016/09/24 (Sat) 20:22:57
OTLスキャンログです
OTL.txt です


OTL logfile created on: 2016/09/24 21:32:08 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\user\Downloads
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.10586.0)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.90 Gb Total Physical Memory | 4.27 Gb Available Physical Memory | 54.09% Memory free
15.90 Gb Paging File | 12.21 Gb Available in Paging File | 76.83% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 896.68 Gb Total Space | 771.85 Gb Free Space | 86.08% Space Free | Partition Type: NTFS
Drive D: | 931.29 Gb Total Space | 235.62 Gb Free Space | 25.30% Space Free | Partition Type: NTFS

Computer Name: VAIO | User Name: user | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - File not found --
PRC - [2016/09/24 21:30:25 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\user\Downloads\OTL (1).exe
PRC - [2016/09/24 21:25:55 | 000,532,312 | ---- | M] (Google Inc.) -- C:\ProgramData\Google\Google Toolbar\Update\GoogleToolbarInstaller_updater_signed.exe
PRC - [2016/09/23 19:07:02 | 000,308,816 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
PRC - [2016/08/22 13:49:08 | 002,159,320 | ---- | M] (Adobe Systems, Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
PRC - [2016/08/18 18:23:57 | 000,633,024 | ---- | M] (Microsoft Corporation) -- C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe
PRC - [2016/07/08 14:41:30 | 000,356,664 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
PRC - [2016/07/08 14:41:18 | 000,067,384 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
PRC - [2016/07/08 14:41:00 | 000,067,896 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
PRC - [2016/07/05 15:23:50 | 000,067,384 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
PRC - [2016/07/05 15:23:48 | 001,168,696 | ---- | M] (Apple, Inc.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
PRC - [2016/05/13 15:13:26 | 000,032,544 | ---- | M] () -- C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
PRC - [2016/03/18 13:43:28 | 000,076,856 | ---- | M] (Sony Corporation) -- C:\Program Files\Sony\VAIO Care\VCService.exe
PRC - [2016/03/10 14:07:30 | 001,136,608 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
PRC - [2016/03/10 14:07:28 | 001,514,464 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
PRC - [2016/03/10 14:07:20 | 009,926,112 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
PRC - [2015/12/08 20:40:16 | 000,195,248 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
PRC - [2015/08/25 05:22:06 | 000,496,160 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
PRC - [2015/08/25 05:18:58 | 002,687,520 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
PRC - [2015/06/24 22:57:00 | 000,303,360 | ---- | M] (Realtek Semiconductor) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
PRC - [2015/03/20 12:55:32 | 000,186,392 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe
PRC - [2014/09/29 18:42:13 | 000,085,768 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe
PRC - [2014/05/02 15:47:14 | 001,065,024 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
PRC - [2014/02/06 17:23:10 | 000,108,904 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Digital Media Player Library v4\Player\Binary\CLHNServer\CLHNService.exe
PRC - [2013/11/07 15:55:02 | 000,495,248 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
PRC - [2013/08/27 17:28:22 | 000,651,088 | ---- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Online Backup ARA\Engine\4.3.0.14\ARA.exe
PRC - [2013/07/26 21:45:54 | 000,189,528 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
PRC - [2013/07/26 21:45:54 | 000,069,720 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
PRC - [2013/07/16 17:44:10 | 000,061,712 | ---- | M] (Western Digital) -- C:\Program Files\Western Digital\WD Boost\WDBoost.exe
PRC - [2013/07/15 12:41:59 | 000,368,600 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2013/07/15 12:41:41 | 000,131,544 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
PRC - [2013/07/15 12:41:00 | 000,169,432 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2012/09/17 06:39:30 | 000,171,600 | ---- | M] (Adobe Systems Incorporated) -- c:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
PRC - [2006/12/19 18:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2016/09/21 20:22:57 | 000,325,824 | ---- | M] () -- C:\Program Files\Microsoft Office 15\root\office15\appvisvstream32.dll
MOD - [2016/08/18 18:23:58 | 000,118,976 | ---- | M] () -- C:\Users\user\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll
MOD - [2016/08/18 18:23:56 | 001,383,616 | ---- | M] () -- C:\Users\user\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll
MOD - [2016/07/05 15:23:58 | 001,041,208 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2016/07/05 15:23:30 | 000,244,536 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
MOD - [2016/03/29 15:27:01 | 000,162,816 | ---- | M] () -- C:\Windows\SysWOW64\MTF.dll
MOD - [2016/03/18 22:56:48 | 000,080,184 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2016/09/07 15:05:34 | 003,337,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:[b]64bit:[/b] - [2016/09/07 14:39:03 | 000,754,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\CoreMessaging.dll -- (CoreMessagingRegistrar)
SRV:[b]64bit:[/b] - [2016/09/07 14:35:27 | 001,613,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
SRV:[b]64bit:[/b] - [2016/09/07 14:34:14 | 003,449,168 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:[b]64bit:[/b] - [2016/09/07 14:23:07 | 000,364,456 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc)
SRV:[b]64bit:[/b] - [2016/09/07 14:23:07 | 000,024,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2016/09/07 14:22:36 | 000,625,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ClipSVC.dll -- (ClipSVC)
SRV:[b]64bit:[/b] - [2016/09/07 13:52:40 | 001,035,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XboxNetApiSvc.dll -- (XboxNetApiSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:49:43 | 000,649,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ngcsvc.dll -- (NgcSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:41:16 | 000,072,704 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\moshost.dll -- (MapsBroker)
SRV:[b]64bit:[/b] - [2016/09/07 13:39:35 | 000,075,264 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:[b]64bit:[/b] - [2016/09/07 13:39:33 | 000,379,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\usocore.dll -- (UsoSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:37:22 | 000,118,784 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:36:19 | 000,752,128 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\PhoneService.dll -- (PhoneSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:36:11 | 000,314,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\EnterpriseAppMgmtSvc.dll -- (EntAppSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:35:44 | 000,591,872 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SmsRouterSvc.dll -- (SmsRouter)
SRV:[b]64bit:[/b] - [2016/09/07 13:35:38 | 000,342,016 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\APHostService.dll -- (OneSyncSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:35:05 | 000,339,968 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\SensorService.dll -- (SensorService)
SRV:[b]64bit:[/b] - [2016/09/07 13:34:47 | 000,497,664 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WalletService.dll -- (WalletService)
SRV:[b]64bit:[/b] - [2016/09/07 13:34:47 | 000,278,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\Windows.Internal.Management.dll -- (DmEnrollmentSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:33:23 | 000,948,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XblAuthManager.dll -- (XblAuthManager)
SRV:[b]64bit:[/b] - [2016/09/07 13:33:08 | 000,847,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:[b]64bit:[/b] - [2016/09/07 13:33:05 | 000,606,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:32:38 | 000,506,880 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\tileobjserver.dll -- (tiledatamodelsvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:32:34 | 000,444,928 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:45 | 000,504,320 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvmsession)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:[b]64bit:[/b] - [2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
SRV:[b]64bit:[/b] - [2016/09/07 13:30:16 | 000,912,384 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\usermgr.dll -- (UserManager)
SRV:[b]64bit:[/b] - [2016/09/07 13:27:57 | 001,872,896 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:27:19 | 001,073,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\RDXService.dll -- (RetailDemo)
SRV:[b]64bit:[/b] - [2016/09/07 13:26:03 | 002,057,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:23:29 | 001,490,432 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\UserDataService.dll -- (UserDataSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:22:10 | 001,297,408 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\SensorDataService.exe -- (SensorDataService)
SRV:[b]64bit:[/b] - [2016/09/07 13:17:03 | 002,175,488 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:16:38 | 002,746,368 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\Windows.StateRepository.dll -- (StateRepository)
SRV:[b]64bit:[/b] - [2016/09/07 13:14:08 | 001,097,216 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dosvc.dll -- (DoSvc)
SRV:[b]64bit:[/b] - [2016/08/03 18:36:49 | 000,211,456 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NetSetupSvc.dll -- (NetSetupSvc)
SRV:[b]64bit:[/b] - [2016/07/26 04:32:30 | 003,192,560 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc)
SRV:[b]64bit:[/b] - [2016/07/07 07:39:30 | 000,993,824 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\McAfee\MSC\McAPExe.exe -- (McAPExe)
SRV:[b]64bit:[/b] - [2016/07/07 06:57:40 | 000,596,768 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (MSK80Service)
SRV:[b]64bit:[/b] - [2016/07/07 06:57:40 | 000,596,768 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McProxy)
SRV:[b]64bit:[/b] - [2016/07/07 06:57:40 | 000,596,768 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (mcpltsvc)
SRV:[b]64bit:[/b] - [2016/07/07 06:57:40 | 000,596,768 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:[b]64bit:[/b] - [2016/07/07 06:57:40 | 000,596,768 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:[b]64bit:[/b] - [2016/07/07 06:57:40 | 000,596,768 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McBootDelayStartSvc)
SRV:[b]64bit:[/b] - [2016/07/07 06:57:40 | 000,596,768 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (HomeNetSvc)
SRV:[b]64bit:[/b] - [2016/07/01 12:52:47 | 000,087,040 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\tzautoupdate.dll -- (tzautoupdate)
SRV:[b]64bit:[/b] - [2016/07/01 12:46:22 | 000,287,744 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\cdpsvc.dll -- (CDPSvc)
SRV:[b]64bit:[/b] - [2016/07/01 12:41:41 | 000,587,776 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:[b]64bit:[/b] - [2016/06/23 15:05:58 | 000,382,456 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe -- (mfemms)
SRV:[b]64bit:[/b] - [2016/06/21 04:34:56 | 000,816,128 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee\VirusScan\mcods.exe -- (McODS)
SRV:[b]64bit:[/b] - [2016/06/17 13:34:56 | 001,454,216 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe -- (ModuleCoreService)
SRV:[b]64bit:[/b] - [2016/05/31 18:13:48 | 001,910,000 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe -- (mccspsvc)
SRV:[b]64bit:[/b] - [2016/05/28 13:22:06 | 000,163,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tetheringservice.dll -- (icssvc)
SRV:[b]64bit:[/b] - [2016/05/28 13:18:23 | 000,380,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:[b]64bit:[/b] - [2016/05/25 19:22:56 | 001,045,336 | ---- | M] (Intel Security, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe -- (PEFService)
SRV:[b]64bit:[/b] - [2016/05/06 12:49:14 | 000,289,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NgcCtnrSvc.dll -- (NgcCtnrSvc)
SRV:[b]64bit:[/b] - [2016/04/26 17:56:24 | 000,277,744 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Windows\SysNative\mfevtps.exe -- (mfevtp)
SRV:[b]64bit:[/b] - [2016/04/26 17:55:12 | 000,232,688 | ---- | M] () [On_Demand | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:[b]64bit:[/b] - [2016/03/31 12:31:24 | 001,656,600 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Sony\VAIO Update\VUAgent.exe -- (VUAgent)
SRV:[b]64bit:[/b] - [2016/03/29 14:45:48 | 000,338,432 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
SRV:[b]64bit:[/b] - [2016/03/18 13:43:28 | 000,076,856 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Sony\VAIO Care\VCService.exe -- (VCService)
SRV:[b]64bit:[/b] - [2016/02/24 16:19:10 | 000,145,408 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\dssvc.dll -- (DsSvc)
SRV:[b]64bit:[/b] - [2016/02/24 16:07:53 | 000,252,928 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\PimIndexMaintenance.dll -- (PimIndexMaintenanceSvc)
SRV:[b]64bit:[/b] - [2016/02/24 15:59:32 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:[b]64bit:[/b] - [2016/02/24 15:40:53 | 001,224,704 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\Unistore.dll -- (UnistoreSvc)
SRV:[b]64bit:[/b] - [2016/02/23 18:20:41 | 001,139,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\XblGameSave.dll -- (XblGameSave)
SRV:[b]64bit:[/b] - [2016/02/23 17:28:32 | 000,275,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2016/02/23 16:58:02 | 000,163,840 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:[b]64bit:[/b] - [2015/12/19 01:08:24 | 000,373,160 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\igfxCUIService.exe -- (igfxCUIService2.0.0.0)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:46 | 000,168,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:41 | 000,117,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:18 | 000,729,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:14 | 000,081,408 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:01 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wpnservice.dll -- (WpnService)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:01 | 000,034,304 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DevQueryBroker.dll -- (DevQueryBroker)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:01 | 000,027,136 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lfsvc.dll -- (lfsvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:01 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\LicenseManagerSvc.dll -- (LicenseManager)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:59 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\embeddedmodesvc.dll -- (embeddedmode)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:59 | 000,023,040 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AJRouter.dll -- (AJRouter)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:53 | 000,097,792 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:53 | 000,060,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:53 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:52 | 000,181,760 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,031,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe -- (diagnosticshub.standardcollector.service)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_e82894)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_72bf838)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_67698)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_60f5c20)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_5ceca)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_400b2e4)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_3a1272a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_397f85a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_3775b1)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_3737e8c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_32f376a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_2fa9f85)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_21f9c4f)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_1c6a42c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_182bdb0)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_1582fa)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_155f97e)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_155a442)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_154fffd)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UserDataSvc_113738a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_e82894)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_72bf838)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_67698)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_60f5c20)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_5ceca)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_400b2e4)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_3a1272a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_397f85a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_3775b1)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_3737e8c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_32f376a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_2fa9f85)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_21f9c4f)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_1c6a42c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_182bdb0)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_1582fa)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_155f97e)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_155a442)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_154fffd)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (UnistoreSvc_113738a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_e82894)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_72bf838)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_67698)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_60f5c20)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_5ceca)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_400b2e4)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_3a1272a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_397f85a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_3775b1)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_3737e8c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_32f376a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_2fa9f85)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_21f9c4f)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_1c6a42c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_182bdb0)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_1582fa)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_155f97e)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_155a442)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_154fffd)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (PimIndexMaintenanceSvc_113738a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_e82894)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_72bf838)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_67698)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_60f5c20)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_5ceca)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_400b2e4)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_3a1272a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_397f85a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_3775b1)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_3737e8c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_32f376a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_2fa9f85)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_21f9c4f)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_1c6a42c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_182bdb0)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_1582fa)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_155f97e)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_155a442)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_154fffd)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [Auto | Unknown] -- C:\Windows\SysNative\svchost.exe -- (OneSyncSvc_113738a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_e82894)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_72bf838)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_67698)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_60f5c20)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_5ceca)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_400b2e4)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_3a1272a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_397f85a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_3775b1)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_3737e8c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_32f376a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_2fa9f85)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_21f9c4f)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_1c6a42c)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_182bdb0)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_1582fa)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_155f97e)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_155a442)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_154fffd)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:49 | 000,043,944 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\svchost.exe -- (MessagingService_113738a)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:48 | 000,205,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:47 | 000,023,552 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\smphost.dll -- (smphost)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:46 | 000,290,304 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\TieringEngineService.exe -- (TieringEngineService)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:46 | 000,186,880 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dcpsvc.dll -- (DcpSvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:46 | 000,013,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:43 | 000,057,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dmwappushsvc.dll -- (dmwappushservice)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:41 | 000,052,736 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysNative\MessagingService.dll -- (MessagingService)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:39 | 000,547,840 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,326,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthHFSrv.dll -- (BthHFSrv)
SRV:[b]64bit:[/b] - [2015/06/24 22:57:00 | 000,303,360 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe -- (RtkAudioService)
SRV:[b]64bit:[/b] - [2013/07/26 21:36:08 | 000,485,760 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Sony\VAIO Power Management\SPMService.exe -- (VAIO Power Management)
SRV:[b]64bit:[/b] - [2013/07/16 17:44:10 | 000,061,712 | ---- | M] (Western Digital) [Auto | Running] -- C:\Program Files\Western Digital\WD Boost\WDBoost.exe -- (WD Boost)
SRV:[b]64bit:[/b] - [2013/05/30 17:14:20 | 000,248,640 | ---- | M] (Trend Micro Inc.) [Disabled | Stopped] -- C:\Program Files\Trend Micro\Titanium\TiMiniService.exe -- (TiMiniService)
SRV:[b]64bit:[/b] - [2013/05/28 15:37:36 | 000,101,536 | ---- | M] (Intel) [Auto | Stopped] -- C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe -- (BrcmSetSecurity)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:54 | 000,822,232 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:38 | 000,733,696 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2011/12/01 10:04:56 | 000,289,952 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe -- (SpfService)
SRV - [2016/09/18 19:48:10 | 000,270,016 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2016/09/07 15:05:34 | 003,337,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2016/09/07 13:12:58 | 002,180,096 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\Windows.StateRepository.dll -- (StateRepository)
SRV - [2016/09/07 12:57:53 | 000,461,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\CoreMessaging.dll -- (CoreMessagingRegistrar)
SRV - [2016/08/22 13:49:08 | 002,159,320 | ---- | M] (Adobe Systems, Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe -- (AGSService)
SRV - [2016/05/28 13:14:46 | 000,200,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Windows.Internal.Management.dll -- (DmEnrollmentSvc)
SRV - [2016/05/13 15:13:26 | 000,032,544 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe -- (RealPlayerUpdateSvc)
SRV - [2016/03/10 14:07:30 | 001,136,608 | ---- | M] (Malwarebytes) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2016/03/10 14:07:28 | 001,514,464 | ---- | M] (Malwarebytes) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2016/02/24 15:07:45 | 000,949,248 | ---- | M] (Microsoft Corporation) [On_Demand | Unknown] -- C:\Windows\SysWOW64\Unistore.dll -- (UnistoreSvc)
SRV - [2015/12/19 01:08:24 | 000,300,968 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2015/10/30 16:18:31 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\lfsvc.dll -- (lfsvc)
SRV - [2015/10/30 16:18:23 | 000,020,992 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
SRV - [2015/08/25 05:22:06 | 000,496,160 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
SRV - [2014/09/29 17:45:54 | 000,307,464 | ---- | M] (CyberLink) [Auto | Stopped] -- C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\kmsvc.exe -- (CLKMSVC10_99E320F5)
SRV - [2014/02/06 17:23:10 | 000,108,904 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\CyberLink\Digital Media Player Library v4\Player\Binary\CLHNServer\CLHNService.exe -- (CLHNService3)
SRV - [2013/11/07 15:55:02 | 000,495,248 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe -- (SOHDms)
SRV - [2013/09/28 04:39:14 | 000,629,336 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe -- (NetworkSupport)
SRV - [2013/09/12 09:16:04 | 000,124,560 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe -- (SOHCImp)
SRV - [2013/07/26 21:45:54 | 000,069,720 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe -- (VAIO Event Service)
SRV - [2013/07/15 12:41:59 | 000,368,600 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2013/07/15 12:41:41 | 000,131,544 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe -- (Intel(R)
SRV - [2013/07/15 12:41:00 | 000,169,432 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2013/07/03 23:21:58 | 000,156,616 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe -- (Intel(R)
SRV - [2013/01/29 17:27:44 | 000,079,000 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -- (SOHDs)
SRV - [2013/01/28 12:49:14 | 004,230,016 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe -- (NOBU)
SRV - [2013/01/06 16:30:54 | 000,972,000 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe -- (VCFw)
SRV - [2012/09/17 06:39:30 | 000,171,600 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- c:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor11.0)
SRV - [2006/12/19 18:23:20 | 000,094,208 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe -- (EpsonBidirectionalService)

  • なおき
  • 2016/09/24 (Sat) 22:11:49
OTLスキャンログです
OTL.txt 続きです

[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2016/09/24 21:22:16 | 000,192,216 | ---- | M] (Malwarebytes) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
DRV:[b]64bit:[/b] - [2016/09/07 14:39:48 | 000,277,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2016/09/07 14:26:00 | 000,131,424 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufxsynopsys.sys -- (ufxsynopsys)
DRV:[b]64bit:[/b] - [2016/09/07 13:09:45 | 000,218,624 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
DRV:[b]64bit:[/b] - [2016/08/03 19:36:37 | 000,099,680 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
DRV:[b]64bit:[/b] - [2016/05/28 14:22:08 | 000,211,296 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:[b]64bit:[/b] - [2016/05/28 14:08:25 | 000,258,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ufx01000.sys -- (Ufx01000)
DRV:[b]64bit:[/b] - [2016/05/28 13:24:38 | 000,124,928 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
DRV:[b]64bit:[/b] - [2016/04/27 20:59:58 | 000,519,976 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfencbdc.sys -- (mfencbdc)
DRV:[b]64bit:[/b] - [2016/04/27 20:59:58 | 000,100,136 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfencrk.sys -- (mfencrk)
DRV:[b]64bit:[/b] - [2016/04/27 16:55:18 | 000,843,048 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:[b]64bit:[/b] - [2016/04/27 16:55:18 | 000,493,352 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:[b]64bit:[/b] - [2016/04/27 16:55:18 | 000,419,616 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeaack.sys -- (mfeaack)
DRV:[b]64bit:[/b] - [2016/04/27 16:55:18 | 000,349,480 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:[b]64bit:[/b] - [2016/04/27 16:55:18 | 000,243,488 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:[b]64bit:[/b] - [2016/04/27 16:55:18 | 000,083,608 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mfeelamk.sys -- (mfeelamk)
DRV:[b]64bit:[/b] - [2016/04/27 16:55:18 | 000,078,632 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:[b]64bit:[/b] - [2016/04/23 13:56:52 | 000,534,872 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
DRV:[b]64bit:[/b] - [2016/04/23 13:34:19 | 000,067,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbser.sys -- (usbser)
DRV:[b]64bit:[/b] - [2016/04/23 13:33:59 | 000,063,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmCx.sys -- (UcmCx0101)
DRV:[b]64bit:[/b] - [2016/04/23 13:29:32 | 000,087,552 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\filecrypt.sys -- (FileCrypt)
DRV:[b]64bit:[/b] - [2016/03/29 17:21:40 | 000,378,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
DRV:[b]64bit:[/b] - [2016/03/29 17:16:55 | 000,026,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xinputhid.sys -- (xinputhid)
DRV:[b]64bit:[/b] - [2016/03/29 16:49:53 | 000,245,760 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthLEEnum.sys -- (BthLEEnum)
DRV:[b]64bit:[/b] - [2016/03/29 16:23:41 | 000,694,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdiWiFi.sys -- (wdiwifi)
DRV:[b]64bit:[/b] - [2016/03/10 14:09:10 | 000,065,408 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV:[b]64bit:[/b] - [2016/03/10 14:08:54 | 000,027,008 | ---- | M] (Malwarebytes) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2016/02/24 21:07:12 | 000,207,968 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HipShieldK.sys -- (HipShieldK)
DRV:[b]64bit:[/b] - [2016/02/23 18:20:35 | 000,238,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xboxgip.sys -- (xboxgip)
DRV:[b]64bit:[/b] - [2016/01/26 22:51:34 | 003,524,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Netwbw02.sys -- (NETwNb64)
DRV:[b]64bit:[/b] - [2015/12/19 01:08:22 | 007,858,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2015/11/22 19:33:26 | 000,095,072 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
DRV:[b]64bit:[/b] - [2015/11/22 18:54:39 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\capimg.sys -- (CapImg)
DRV:[b]64bit:[/b] - [2015/10/31 03:23:33 | 000,038,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:[b]64bit:[/b] - [2015/10/31 03:23:26 | 000,029,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2015/10/30 16:19:39 | 000,030,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:42 | 000,052,768 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:09 | 000,930,656 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\WINDOWS\SysNative\drivers\refsv1.sys -- (ReFSv1)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:09 | 000,385,376 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:03 | 000,200,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:03 | 000,106,520 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRT.sys -- (WindowsTrustedRT)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:03 | 000,078,848 | ---- | M] (Microsoft Corporation) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\storqosflt.sys -- (storqosflt)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:03 | 000,050,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:03 | 000,031,584 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\WINDOWS\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:03 | 000,026,624 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ioqos.sys -- (IoQos)
DRV:[b]64bit:[/b] - [2015/10/30 16:18:01 | 000,154,464 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:57 | 000,047,616 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mmcss.sys -- (MMCSS)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:52 | 000,163,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:52 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urscx01000.sys -- (UrsCx01000)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:52 | 000,039,264 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\SysNative\drivers\cnghwassist.sys -- (cnghwassist)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,155,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,088,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,077,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,074,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,011,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:50 | 000,199,008 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\WINDOWS\SysNative\drivers\wof.sys -- (Wof)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:46 | 000,061,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:46 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\gpuenergydrv.sys -- (GpuEnergyDrv)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:42 | 000,126,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:42 | 000,020,480 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:39 | 000,081,920 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,293,216 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,209,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Ucx01000.sys -- (Ucx01000)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,127,840 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,118,112 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,061,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (tsusbflt)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,045,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Udecx.sys -- (UdeCx)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,044,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:37 | 000,031,744 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhf.sys -- (vhf)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:26 | 000,017,944 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\WindowsTrustedRTProxy.sys -- (WindowsTrustedRTProxy)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:25 | 000,046,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:25 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:25 | 000,028,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urschipidea.sys -- (UrsChipidea)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:25 | 000,027,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\urssynopsys.sys -- (UrsSynopsys)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:25 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,705,376 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mlx4_bus.sys -- (mlx4_bus)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,589,824 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rt640x64.sys -- (rt640x64)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,532,832 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,424,800 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ibbus.sys -- (ibbus)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,133,984 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,104,800 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2i.sys -- (LSI_SAS2i)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,099,168 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3i.sys -- (LSI_SAS3i)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,094,048 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UfxChipidea.sys -- (UfxChipidea)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,079,200 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,077,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,076,128 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndfltr.sys -- (ndfltr)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,059,232 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winverbs.sys -- (WinVerbs)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,058,720 | ---- | M] (Avago Technologies) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas3i.sys -- (percsas3i)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,058,208 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\percsas2i.sys -- (percsas2i)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,055,808 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,046,592 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\UcmUcsi.sys -- (UcmUcsi)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,034,144 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storufs.sys -- (storufs)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:23 | 000,026,976 | ---- | M] (Mellanox) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\winmad.sys -- (WinMad)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 003,436,896 | ---- | M] (QLogic Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 001,135,456 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,673,120 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,107,360 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,083,296 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,050,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidinterrupt.sys -- (hidinterrupt)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,037,376 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\buttonconverter.sys -- (buttonconverter)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,028,512 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,026,976 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,022,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,020,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\genericusbfn.sys -- (genericusbfn)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,009,728 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:22 | 000,009,728 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn.sys -- (bcmfn)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:21 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDScan.sys -- (WSDScan)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,165,888 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSS2i_I2C.sys -- (iaLPSS2i_I2C)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,117,088 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,113,152 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,081,408 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iai2c.sys -- (iai2c)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,065,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,064,000 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,046,432 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys -- (CompositeBus)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,038,128 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,033,792 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,016,896 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
DRV:[b]64bit:[/b] - [2015/10/30 16:17:18 | 000,013,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
DRV:[b]64bit:[/b] - [2015/10/28 15:42:30 | 000,474,376 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2015/10/22 15:00:46 | 000,762,072 | ---- | M] (Realsil Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsPer.sys -- (RTSPER)
DRV:[b]64bit:[/b] - [2015/07/14 20:27:40 | 000,263,952 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ibtusb.sys -- (ibtusb)
DRV:[b]64bit:[/b] - [2015/06/10 23:08:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2015/05/27 11:13:24 | 000,626,888 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2015/05/27 11:13:24 | 000,042,696 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys -- (SmbDrvI)
DRV:[b]64bit:[/b] - [2014/08/15 23:13:34 | 000,023,040 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
DRV:[b]64bit:[/b] - [2013/12/19 23:18:36 | 000,099,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2013/11/28 19:20:04 | 000,077,992 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\IntelPcc.sys -- (IntelHSWPcc)
DRV:[b]64bit:[/b] - [2013/11/12 14:25:22 | 000,091,912 | ---- | M] (CyberLink) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\CLVirtualDrive.sys -- (CLVirtualDrive)
DRV:[b]64bit:[/b] - [2013/10/29 10:08:35 | 000,039,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:[b]64bit:[/b] - [2013/10/29 10:08:35 | 000,027,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:[b]64bit:[/b] - [2013/07/29 03:01:36 | 000,165,344 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
DRV:[b]64bit:[/b] - [2013/07/16 17:44:18 | 000,234,768 | ---- | M] (Western Digital) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hiosd.sys -- (hiosd)
DRV:[b]64bit:[/b] - [2013/07/16 17:44:18 | 000,028,944 | ---- | M] (Western Digital) [File_System | System | Running] -- C:\Windows\SysNative\drivers\hiofs.sys -- (hiofs)
DRV:[b]64bit:[/b] - [2013/05/28 15:37:28 | 000,206,744 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usb3Hub.sys -- (usb3Hub)
DRV:[b]64bit:[/b] - [2012/10/03 16:14:56 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/08/10 03:01:00 | 000,056,336 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2012/07/11 21:33:28 | 000,014,336 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SFEP.sys -- (SFEP)
DRV:[b]64bit:[/b] - [2012/05/26 09:56:14 | 000,168,608 | R--- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NARAx64\0403000.00E\ccSetx64.sys -- (ccSet_NARA)
DRV - [2015/10/30 16:17:18 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys -- (CompositeBus)
DRV - [2013/05/21 19:33:38 | 000,083,656 | ---- | M] (Cyberlink Corp.) [Kernel | Auto | Running] -- C:\Program Files (x86)\CyberLink\Digital Media Player Library v4\Player\Binary\CLHNServer\ntk3_64.sys -- (ntk3)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
  • なおき
  • 2016/09/24 (Sat) 22:13:55
OTLスキャンログです
OTL.txt 続きです

[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm

IE - HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm

IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm

IE - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm

IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = F5 A4 45 A3 09 12 D2 01 [binary data]
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = F5 A4 45 A3 09 12 D2 01 [binary data]
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local


[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\WINDOWS\system32\npDeployJava1.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll ( Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll (Tracker Software Products (Canada) Ltd.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll (Tracker Software Products (Canada) Ltd.)
FF - HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF - HKCU\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll (Tracker Software Products (Canada) Ltd.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{21541D23-FDA1-4bf3-8AF2-8F623BF70B07}: C:\Program Files\Trend Micro\AMSP\module\20013\FxExt\firefoxextension\
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\e-webprint@epson.com: C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2015/01/16 20:39:50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK [2016/08/30 06:37:06 | 000,000,000 | ---D | M]


[color=#E56717]========== Chrome ==========[/color]

CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_1\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_1\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_1\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_1\
CHR - Extension: No name found = \Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5316.725.0.15_0\

O1 HOSTS File: ([2013/08/22 22:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Skype for Business Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (E-Photo) - {60B127CA-8AA4-4DCD-84A8-D18C2B2C4A96} - C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll (SEIKO EPSON CORPORATION)
O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll (Microsoft Corporation)
O2 - BHO: (E-Web Print) - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (E-Photo) - {60B127CA-8AA4-4DCD-84A8-D18C2B2C4A96} - C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (E-Web Print) - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll (SEIKO EPSON CORPORATION)
O3:[b]64bit:[/b] - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\WINDOWS\SysNative\igfxtray.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [CLMLServer_For_P2G8] C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (CyberLink)
O4 - HKLM..\Run: [CLVirtualDrive] C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe (CyberLink Corp.)
O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKU\S-1-5-19..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [EPSON EP-901A] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Windows\TEMP\E_S673A.tmp" /EF "HKCU" File not found
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [EPSON539D89] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Users\user\AppData\Local\Temp\E_S7579.tmp" /EF "HKCU" File not found
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe (Apple Inc.)
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.)
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [OneDrive] C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001..\Run: [Power2GoExpress8] File not found
O4 - Startup: C:\Users\Administrator\AppData [2015/01/15 20:40:32 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Administrator\Roaming [2015/01/16 18:33:47 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Adobe [2015/12/07 19:23:55 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Apple [2015/01/16 20:08:53 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Apple Computer [2015/01/16 20:09:11 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Application Data [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\All Users\boost_interprocess [2014/11/22 11:34:31 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\CLSK [2015/02/17 17:41:54 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Comms [2015/10/30 16:24:24 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\CyberLink [2016/01/13 20:10:48 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Documents [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\All Users\DP45977C.lfl ()
O4 - Startup: C:\Users\All Users\E1864A66-75E3-486a-BD95-D1B7D99A84A7 [2015/07/14 19:15:49 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\EPSON [2015/08/07 21:24:05 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\FileOpen [2016/09/18 22:08:08 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Fujisoft [2014/11/22 11:33:07 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Google [2016/09/22 19:54:50 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\install_clap [2015/02/17 17:50:55 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Intel [2016/06/18 16:24:20 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Intel Security [2016/08/25 20:42:17 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\iolo [2016/07/15 21:16:47 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Malwarebytes [2016/09/21 20:30:42 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\McAfee [2016/08/25 20:41:38 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Microsoft [2016/09/18 20:05:23 | 000,000,000 | --SD | M]
O4 - Startup: C:\Users\All Users\Microsoft Help [2016/09/18 20:15:44 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Microsoft OneDrive [2015/08/07 22:20:34 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Microsoft SkyDrive [2015/01/16 12:33:15 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\MicrosoftPhotoBook [2014/11/22 11:48:21 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Norton [2016/05/22 19:42:16 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\NortonInstaller [2014/11/22 11:34:26 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Oracle [2016/07/21 21:28:09 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Package Cache [2016/09/18 22:07:46 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\PDVD [2015/02/17 17:49:13 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\PRICache [2015/08/07 21:24:19 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Real [2016/09/18 08:19:45 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\RealNetworks [2016/05/22 17:41:12 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\regid.1986-12.com.adobe [2015/12/21 20:47:09 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\regid.1991-06.com.microsoft [2016/09/21 20:24:25 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Roaming [2014/11/22 11:06:27 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\SoftwareDistribution [2015/10/30 16:24:24 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Sony [2014/11/22 11:36:32 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Sony Corporation [2016/07/19 20:22:04 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Symantec [2014/11/22 11:34:30 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Synaptics [2015/12/21 20:17:10 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Temp [2015/02/17 17:50:57 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Templates [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\All Users\Trend Micro [2016/09/18 20:42:22 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\UDL [2015/01/16 20:43:38 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\USOPrivate [2015/12/21 20:35:32 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\USOShared [2015/07/10 21:22:45 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\Western Digital [2014/11/22 11:04:20 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\All Users\スタート メニュー [2014/11/22 13:06:55 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\All Users\デスクトップ [2014/11/22 13:06:54 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\AppData [2015/10/30 16:24:24 | 000,000,000 | -H-D | M]
O4 - Startup: C:\Users\Default\Application Data [2015/12/21 21:14:55 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\Cookies [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\Desktop [2015/10/30 16:24:24 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\Documents [2015/12/21 21:14:55 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\Downloads [2015/10/30 16:24:24 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\Favorites [2015/12/21 20:45:43 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\Links [2015/10/30 16:24:24 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\Local Settings [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\Music [2015/10/30 16:24:24 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\My Documents [2015/12/21 21:14:55 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\NetHood [2015/12/21 21:14:55 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\NTUSER.DAT ()
O4 - Startup: C:\Users\Default\NTUSER.DAT.LOG1 ()
O4 - Startup: C:\Users\Default\NTUSER.DAT.LOG2 ()
O4 - Startup: C:\Users\Default\NTUSER.DAT{485596c4-7ed5-11e5-80df-e41d2d718e10}.TM.blf ()
O4 - Startup: C:\Users\Default\NTUSER.DAT{485596c4-7ed5-11e5-80df-e41d2d718e10}.TMContainer00000000000000000001.regtrans-ms ()
O4 - Startup: C:\Users\Default\NTUSER.DAT{485596c4-7ed5-11e5-80df-e41d2d718e10}.TMContainer00000000000000000002.regtrans-ms ()
O4 - Startup: C:\Users\Default\NTUSER.DAT{5bd044fa-a7d3-11e5-988d-8362fbaecc1c}.TM.blf ()
O4 - Startup: C:\Users\Default\NTUSER.DAT{5bd044fa-a7d3-11e5-988d-8362fbaecc1c}.TMContainer00000000000000000001.regtrans-ms ()
O4 - Startup: C:\Users\Default\NTUSER.DAT{5bd044fa-a7d3-11e5-988d-8362fbaecc1c}.TMContainer00000000000000000002.regtrans-ms ()
O4 - Startup: C:\Users\Default\Pictures [2015/10/30 16:24:24 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\PrintHood [2015/12/21 21:14:55 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\Recent [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\Roaming [2015/12/21 20:45:43 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Default\Saved Games [2015/10/30 16:24:24 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Default\SendTo [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\Templates [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default\Videos [2015/10/30 16:24:24 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Default\スタート メニュー [2015/12/21 21:14:56 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\Default.migrated\AppData [2015/12/21 20:35:33 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Default.migrated\Documents [2015/12/21 20:35:34 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Default.migrated\Roaming [2016/06/18 16:23:32 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Default.migrated\スタート メニュー [2015/08/07 22:11:35 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\DefaultAccount\AppData [2015/08/07 22:15:05 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\DefaultAccount\Roaming [2016/06/18 16:23:32 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Guest\AppData [2015/01/15 20:40:32 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Guest\Roaming [2015/01/16 18:33:47 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\HomeGroupUser$\AppData [2015/01/19 20:22:51 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\HomeGroupUser$\Roaming [2015/01/20 20:48:42 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Public\AccountPictures [2016/09/18 20:37:35 | 000,000,000 | RH-D | M]
O4 - Startup: C:\Users\Public\CyberLink [2015/02/17 19:15:50 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Public\Desktop [2016/09/21 20:30:45 | 000,000,000 | RH-D | M]
O4 - Startup: C:\Users\Public\Documents [2016/01/13 20:10:39 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Public\Downloads [2013/08/23 00:36:32 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Public\Libraries [2015/12/21 21:06:23 | 000,000,000 | RH-D | M]
O4 - Startup: C:\Users\Public\Music [2015/12/21 21:06:23 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Public\Pictures [2013/08/23 00:36:32 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\Public\Roaming [2014/11/22 11:06:27 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\Public\Videos [2013/08/23 00:36:32 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\.oracle_jre_usage [2016/07/21 20:20:13 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\user\AppData [2015/12/21 20:33:34 | 000,000,000 | -H-D | M]
O4 - Startup: C:\Users\user\Application Data [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\Contacts [2016/09/18 20:37:35 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Cookies [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\Desktop [2016/09/24 21:29:32 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Documents [2016/09/18 20:37:36 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Downloads [2016/09/24 21:30:29 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Favorites [2016/09/19 08:44:09 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\IntelGraphicsProfiles [2016/09/24 21:20:55 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\Links [2016/09/18 20:37:36 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Local Settings [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\Music [2016/09/18 20:37:36 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\My Documents [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\NetHood [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\ntuser.dat ()
O4 - Startup: C:\Users\user\ntuser.dat.log1 ()
O4 - Startup: C:\Users\user\ntuser.dat.log2 ()
O4 - Startup: C:\Users\user\NTUSER.DAT{5bd044fa-a7d3-11e5-988d-8362fbaecc1c}.TM.blf ()
O4 - Startup: C:\Users\user\NTUSER.DAT{5bd044fa-a7d3-11e5-988d-8362fbaecc1c}.TMContainer00000000000000000001.regtrans-ms ()
O4 - Startup: C:\Users\user\NTUSER.DAT{5bd044fa-a7d3-11e5-988d-8362fbaecc1c}.TMContainer00000000000000000002.regtrans-ms ()
O4 - Startup: C:\Users\user\ntuser.dat{e59b5123-7ca5-11e6-bf4b-0c8bfdd01ac3}.TM.blf ()
O4 - Startup: C:\Users\user\ntuser.dat{e59b5123-7ca5-11e6-bf4b-0c8bfdd01ac3}.TMContainer00000000000000000001.regtrans-ms ()
O4 - Startup: C:\Users\user\ntuser.dat{e59b5123-7ca5-11e6-bf4b-0c8bfdd01ac3}.TMContainer00000000000000000002.regtrans-ms ()
O4 - Startup: C:\Users\user\NTUSER.DAT{fa448d07-4da9-11e6-bf36-806e6f6e6963}.TxR.0.regtrans-ms ()
O4 - Startup: C:\Users\user\NTUSER.DAT{fa448d07-4da9-11e6-bf36-806e6f6e6963}.TxR.1.regtrans-ms ()
O4 - Startup: C:\Users\user\NTUSER.DAT{fa448d07-4da9-11e6-bf36-806e6f6e6963}.TxR.2.regtrans-ms ()
O4 - Startup: C:\Users\user\NTUSER.DAT{fa448d07-4da9-11e6-bf36-806e6f6e6963}.TxR.blf ()
O4 - Startup: C:\Users\user\NTUSER.DAT{fa448d08-4da9-11e6-bf36-806e6f6e6963}.TM.blf ()
O4 - Startup: C:\Users\user\NTUSER.DAT{fa448d08-4da9-11e6-bf36-806e6f6e6963}.TMContainer00000000000000000001.regtrans-ms ()
O4 - Startup: C:\Users\user\NTUSER.DAT{fa448d08-4da9-11e6-bf36-806e6f6e6963}.TMContainer00000000000000000002.regtrans-ms ()
O4 - Startup: C:\Users\user\ntuser.ini ()
O4 - Startup: C:\Users\user\OneDrive [2016/08/18 18:24:49 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Pictures [2016/09/18 20:37:35 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\PrintHood [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\Recent [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\Roaming [2014/11/22 11:06:27 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\user\Saved Games [2016/09/18 20:37:36 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Searches [2016/09/18 20:37:36 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\SendTo [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\SkyDrive [2015/01/16 12:33:22 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\Sti_Trace.log ()
O4 - Startup: C:\Users\user\Templates [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O4 - Startup: C:\Users\user\Tracing [2015/08/29 09:41:26 | 000,000,000 | ---D | M]
O4 - Startup: C:\Users\user\Videos [2016/09/18 20:37:35 | 000,000,000 | R--D | M]
O4 - Startup: C:\Users\user\スタート メニュー [2015/12/21 20:22:49 | 000,000,000 | -HSD | M]
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DSCAutomationHostEnabled = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Skype for Business Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\.DEFAULT\..Trusted Domains: amazon.co.jp ([]https in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: amazon.co.jp ([]https in Trusted sites)
O15 - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\..Trusted Domains: amazon.co.jp ([]https in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{080ecfd2-50da-47a1-9a57-4c7727e8ebfa}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{b576a334-2a6f-4c7c-9a52-11ff1bc5c96c}: DhcpNameServer = 192.168.1.1
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\osf - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysNative\tbauth.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\msosb.dll (Microsoft Corporation)
O18 - Protocol\Handler\tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O18 - Protocol\Handler\windows.tbauth {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30:[b]64bit:[/b] - LSA: Security Packages - (livessp) - File not found
O30 - LSA: Security Packages - (livessp) - File not found
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2014/12/24 19:42:22 | 000,000,028 | ---- | M] () - D:\Autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
  • なおき
  • 2016/09/24 (Sat) 22:15:04
OTLスキャンログです
OTL.txt 続きです

ActiveX:[b]64bit:[/b] {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - /UserInstall
ActiveX:[b]64bit:[/b] {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX:[b]64bit:[/b] {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX:[b]64bit:[/b] {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX:[b]64bit:[/b] {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX:[b]64bit:[/b] {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX:[b]64bit:[/b] {583AC46A-4A6F-39BC-AEFD-1BC2759FFA51} - .NET Framework
ActiveX:[b]64bit:[/b] {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX:[b]64bit:[/b] {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX:[b]64bit:[/b] {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX:[b]64bit:[/b] {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX:[b]64bit:[/b] {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4340} - U
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig
ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
ActiveX:[b]64bit:[/b] {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
ActiveX:[b]64bit:[/b] {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX:[b]64bit:[/b] {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX:[b]64bit:[/b] {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX:[b]64bit:[/b] {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX:[b]64bit:[/b] {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
ActiveX:[b]64bit:[/b] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\inf\unregmp2.exe /ShowWMP
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {23A20C3C-2ADD-4A80-AFB4-C146F8847D79} - .NET Framework
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {600AC0DF-B614-36F9-9E10-28896BD4ACCA} - .NET Framework
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} -
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
ActiveX: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {981b174d-7733-4e7f-b89d-6545a7c21838} - C:\Program Files (x86)\Amazon\Amazon1ButtonApp\Amazon1ButtonTaskbarApp.exe /pin:
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2016/09/24 21:31:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\マカフィー
[2016/09/22 19:38:53 | 000,000,000 | -HSD | C] -- C:\found.001
[2016/09/22 19:38:53 | 000,000,000 | -HSD | C] -- \found.001
[2016/09/21 20:31:01 | 000,192,216 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys
[2016/09/21 20:30:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2016/09/21 20:30:42 | 000,140,672 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbamchameleon.sys
[2016/09/21 20:30:42 | 000,065,408 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\SysNative\drivers\mwac.sys
[2016/09/21 20:30:42 | 000,027,008 | ---- | C] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\mbam.sys
[2016/09/21 20:30:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2016/09/21 20:30:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2016/09/20 21:36:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\herdProtect
[2016/09/20 21:36:31 | 000,000,000 | ---D | C] -- C:\Program Files\Reason
[2016/09/20 19:46:56 | 000,000,000 | -HSD | C] -- C:\found.000
[2016/09/20 19:46:56 | 000,000,000 | -HSD | C] -- \found.000
[2016/09/19 23:05:52 | 000,000,000 | ---D | C] -- C:\x86
[2016/09/19 23:05:52 | 000,000,000 | ---D | C] -- \x86
[2016/09/19 23:05:52 | 000,000,000 | ---D | C] -- C:\x64
[2016/09/19 23:05:52 | 000,000,000 | ---D | C] -- \x64
[2016/09/19 22:50:49 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2016/09/19 22:50:49 | 000,000,000 | ---D | C] -- \AdwCleaner
[2016/09/19 07:04:28 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2016/09/19 00:26:21 | 000,000,000 | ---D | C] -- C:\Packages
[2016/09/19 00:26:21 | 000,000,000 | ---D | C] -- \Packages
[2016/09/18 22:08:11 | 000,150,208 | ---- | C] (Tracker Software Products (Canada) Ltd.) -- C:\WINDOWS\SysNative\pxcpm5L.dll
[2016/09/18 22:08:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software
[2016/09/18 22:08:08 | 000,000,000 | ---D | C] -- C:\ProgramData\FileOpen
[2016/09/18 22:08:05 | 000,000,000 | ---D | C] -- C:\Program Files\Tracker Software
[2016/09/18 20:08:56 | 016,985,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2016/09/18 20:08:55 | 000,602,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2016/09/18 20:08:54 | 022,379,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
[2016/09/18 20:08:54 | 002,544,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll
[2016/09/18 20:08:51 | 002,127,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2016/09/18 20:08:51 | 002,050,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2016/09/18 20:08:51 | 000,784,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msfeeds.dll
[2016/09/18 20:08:49 | 007,831,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
[2016/09/18 20:08:49 | 005,659,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
[2016/09/18 20:08:49 | 004,895,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2016/09/18 20:08:49 | 004,171,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
[2016/09/18 20:08:49 | 001,299,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetsrc.dll
[2016/09/18 20:08:48 | 018,676,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
[2016/09/18 20:08:48 | 003,577,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tquery.dll
[2016/09/18 20:08:48 | 002,607,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\combase.dll
[2016/09/18 20:08:48 | 001,750,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcMon.exe
[2016/09/18 20:08:47 | 002,911,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertEnroll.dll
[2016/09/18 20:08:47 | 002,876,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wpc.dll
[2016/09/18 20:08:47 | 002,604,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertEnroll.dll
[2016/09/18 20:08:47 | 002,597,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll
[2016/09/18 20:08:46 | 004,412,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll
[2016/09/18 20:08:46 | 003,428,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.dll
[2016/09/18 20:08:46 | 002,874,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcndmgr.dll
[2016/09/18 20:08:46 | 002,217,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Wpc.dll
[2016/09/18 20:08:46 | 002,102,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsservices.dll
[2016/09/18 20:08:45 | 006,743,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2016/09/18 20:08:45 | 002,055,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OpcServices.dll
[2016/09/18 20:08:45 | 001,194,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.Phone.dll
[2016/09/18 20:08:44 | 003,065,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstsc.exe
[2016/09/18 20:08:44 | 002,746,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.StateRepository.dll
[2016/09/18 20:08:44 | 002,352,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authui.dll
[2016/09/18 20:08:43 | 001,946,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
[2016/09/18 20:08:43 | 001,797,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Immersive.dll
[2016/09/18 20:08:43 | 001,166,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Pimstore.dll
[2016/09/18 20:08:43 | 001,123,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsPrint.dll
[2016/09/18 20:08:43 | 000,980,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winipcsecproc.dll
[2016/09/18 20:08:43 | 000,769,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContactApis.dll
[2016/09/18 20:08:43 | 000,588,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdrmdev.dll
[2016/09/18 20:08:42 | 003,046,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsservices.dll
[2016/09/18 20:08:42 | 001,567,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Globalization.dll
[2016/09/18 20:08:42 | 001,526,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieapfltr.dll
[2016/09/18 20:08:42 | 001,098,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmCoreR.dll
[2016/09/18 20:08:42 | 000,701,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.dll
[2016/09/18 20:08:41 | 001,676,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsPrint.dll
[2016/09/18 20:08:41 | 001,152,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfasfsrcsnk.dll
[2016/09/18 20:08:41 | 000,963,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
[2016/09/18 20:08:40 | 002,285,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebSync.dll
[2016/09/18 20:08:40 | 001,707,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtctm.dll
[2016/09/18 20:08:40 | 001,508,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmsipc.dll
[2016/09/18 20:08:40 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppointmentApis.dll
[2016/09/18 20:08:40 | 000,416,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hnetcfg.dll
[2016/09/18 20:08:39 | 002,582,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll
[2016/09/18 20:08:39 | 001,349,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmde.dll
[2016/09/18 20:08:39 | 001,072,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Http.dll
[2016/09/18 20:08:39 | 001,040,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.appcore.dll
[2016/09/18 20:08:39 | 000,854,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll
[2016/09/18 20:08:39 | 000,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uDWM.dll
[2016/09/18 20:08:39 | 000,610,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdrmsdk.dll
[2016/09/18 20:08:39 | 000,511,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mf.dll
[2016/09/18 20:08:39 | 000,496,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdrmdev.dll
[2016/09/18 20:08:39 | 000,451,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsDocumentTargetPrint.dll
[2016/09/18 20:08:39 | 000,277,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdbus.sys
[2016/09/18 20:08:39 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModelShim.dll
[2016/09/18 20:08:38 | 001,603,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\propsys.dll
[2016/09/18 20:08:38 | 001,092,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfplat.dll
[2016/09/18 20:08:38 | 000,785,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mprddm.dll
[2016/09/18 20:08:38 | 000,727,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nshwfp.dll
[2016/09/18 20:08:38 | 000,725,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SHCore.dll
[2016/09/18 20:08:38 | 000,569,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SHCore.dll
[2016/09/18 20:08:37 | 001,276,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
[2016/09/18 20:08:37 | 001,131,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Audio.dll
[2016/09/18 20:08:37 | 000,911,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcomp.dll
[2016/09/18 20:08:37 | 000,847,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll
[2016/09/18 20:08:37 | 000,835,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.dll
[2016/09/18 20:08:37 | 000,828,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.AccountsControl.dll
[2016/09/18 20:08:37 | 000,814,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfuimanager.dll
[2016/09/18 20:08:37 | 000,753,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfuimanager.dll
[2016/09/18 20:08:37 | 000,592,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.dll
[2016/09/18 20:08:37 | 000,521,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdrmsdk.dll
[2016/09/18 20:08:37 | 000,394,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Search.ProtocolHandler.MAPI2.dll
[2016/09/18 20:08:37 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExecModelClient.dll
[2016/09/18 20:08:37 | 000,245,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfps.dll
[2016/09/18 20:08:37 | 000,124,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shsetup.dll
[2016/09/18 20:08:37 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserDataTimeUtil.dll
[2016/09/18 20:08:36 | 001,270,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinTypes.dll
[2016/09/18 20:08:36 | 001,128,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipUp.exe
[2016/09/18 20:08:36 | 000,952,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.PointOfService.dll
[2016/09/18 20:08:36 | 000,858,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetcore.dll
[2016/09/18 20:08:36 | 000,785,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\evr.dll
[2016/09/18 20:08:36 | 000,780,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tdh.dll
[2016/09/18 20:08:36 | 000,572,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\taskschd.dll
[2016/09/18 20:08:36 | 000,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepsync.dll
[2016/09/18 20:08:36 | 000,339,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorService.dll
[2016/09/18 20:08:36 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsDocumentTargetPrint.dll
[2016/09/18 20:08:36 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\facecredentialprovider.dll
[2016/09/18 20:08:36 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssprxy.dll
[2016/09/18 20:08:35 | 001,063,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comdlg32.dll
[2016/09/18 20:08:35 | 000,870,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modernexecserver.dll
[2016/09/18 20:08:35 | 000,674,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MiracastReceiver.dll
[2016/09/18 20:08:35 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserLanguagesCpl.dll
[2016/09/18 20:08:35 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authfwcfg.dll
[2016/09/18 20:08:35 | 000,457,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\azroleui.dll
[2016/09/18 20:08:35 | 000,356,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActivationManager.dll
[2016/09/18 20:08:35 | 000,316,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sti.dll
[2016/09/18 20:08:35 | 000,287,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepapi.dll
[2016/09/18 20:08:35 | 000,026,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2016/09/18 20:08:34 | 003,695,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3DCompiler_47.dll
[2016/09/18 20:08:34 | 002,679,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netshell.dll
[2016/09/18 20:08:34 | 000,821,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmIndexer.dll
[2016/09/18 20:08:34 | 000,638,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.dll
[2016/09/18 20:08:34 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppReadiness.dll
[2016/09/18 20:08:34 | 000,334,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchProtocolHost.exe
[2016/09/18 20:08:34 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DictationManager.dll
[2016/09/18 20:08:34 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LegacyNetUXHost.exe
[2016/09/18 20:08:34 | 000,174,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easwrt.dll
[2016/09/18 20:08:34 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mshtmled.dll
[2016/09/18 20:08:34 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiarpc.dll
[2016/09/18 20:08:33 | 003,351,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msi.dll
[2016/09/18 20:08:33 | 001,568,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdt.exe
[2016/09/18 20:08:33 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DiagCpl.dll
[2016/09/18 20:08:33 | 000,824,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebFilter.dll
[2016/09/18 20:08:33 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartCardSimulator.dll
[2016/09/18 20:08:33 | 000,371,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDEServer.exe
[2016/09/18 20:08:33 | 000,305,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edputil.dll
[2016/09/18 20:08:33 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WmpDui.dll
[2016/09/18 20:08:33 | 000,284,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eappcfg.dll
[2016/09/18 20:08:33 | 000,256,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\unimdm.tsp
[2016/09/18 20:08:33 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pngfilt.dll
[2016/09/18 20:08:33 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\udhisapi.dll
[2016/09/18 20:08:33 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fwcfg.dll
[2016/09/18 20:08:33 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\upnpcont.exe
[2016/09/18 20:08:32 | 001,752,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieapfltr.dll
[2016/09/18 20:08:32 | 000,764,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakradiag.dll
[2016/09/18 20:08:32 | 000,572,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WpcWebFilter.dll
[2016/09/18 20:08:32 | 000,381,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuuhext.dll
[2016/09/18 20:08:32 | 000,254,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prnntfy.dll
[2016/09/18 20:08:32 | 000,119,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.ps.dll
[2016/09/18 20:08:32 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
[2016/09/18 20:08:32 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CheckNetIsolation.exe
[2016/09/18 20:08:31 | 001,297,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicenseManager.dll
[2016/09/18 20:08:31 | 000,986,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicenseManager.dll
[2016/09/18 20:08:30 | 006,312,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Search.dll
[2016/09/18 20:08:29 | 002,106,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\storagewmi.dll
[2016/09/18 20:08:28 | 002,624,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputService.dll
[2016/09/18 20:08:28 | 000,576,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.UX.EapRequestHandler.dll
[2016/09/18 20:08:28 | 000,499,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MessagingDataModel2.dll
[2016/09/18 20:08:27 | 002,527,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mispace.dll
[2016/09/18 20:08:27 | 001,487,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
[2016/09/18 20:08:27 | 001,319,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifinetworkmanager.dll
[2016/09/18 20:08:27 | 000,334,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcastdvr.exe
[2016/09/18 20:08:27 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppCapture.dll
[2016/09/18 20:08:26 | 002,175,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2016/09/18 20:08:26 | 002,155,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authui.dll
[2016/09/18 20:08:26 | 001,626,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
[2016/09/18 20:08:26 | 000,698,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToManager.dll
[2016/09/18 20:08:26 | 000,334,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredProvDataModel.dll
[2016/09/18 20:08:25 | 001,085,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webservices.dll
[2016/09/18 20:08:25 | 000,787,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.dll
[2016/09/18 20:08:25 | 000,538,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWanAPI.dll
[2016/09/18 20:08:24 | 002,476,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSAJApi.dll
[2016/09/18 20:08:24 | 002,180,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.StateRepository.dll
[2016/09/18 20:08:24 | 001,708,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActiveSyncProvider.dll
[2016/09/18 20:08:24 | 001,388,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2016/09/18 20:08:23 | 003,053,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcore.dll
[2016/09/18 20:08:22 | 001,410,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.Http.dll
[2016/09/18 20:08:22 | 001,309,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wdc.dll
[2016/09/18 20:08:22 | 000,845,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmCoreR.dll
[2016/09/18 20:08:22 | 000,754,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CoreMessaging.dll
[2016/09/18 20:08:22 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnapps.dll
[2016/09/18 20:08:22 | 000,466,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanconn.dll
[2016/09/18 20:08:22 | 000,337,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Geolocation.dll
[2016/09/18 20:08:21 | 002,067,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.dll
[2016/09/18 20:08:21 | 001,497,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPDMC.exe
[2016/09/18 20:08:21 | 000,586,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll
[2016/09/18 20:08:21 | 000,549,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchFolder.dll
[2016/09/18 20:08:21 | 000,503,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSync.dll
[2016/09/18 20:08:21 | 000,444,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\das.dll
[2016/09/18 20:08:20 | 001,035,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSWorkspace.dll
[2016/09/18 20:08:20 | 000,888,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\printfilterpipelinesvc.exe
[2016/09/18 20:08:20 | 000,888,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.dll
[2016/09/18 20:08:20 | 000,669,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll
[2016/09/18 20:08:20 | 000,355,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netcfgx.dll
[2016/09/18 20:08:19 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usercpl.dll
[2016/09/18 20:08:19 | 000,501,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll
[2016/09/18 20:08:18 | 001,048,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WebcamUi.dll
[2016/09/18 20:08:18 | 000,577,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Wallet.dll
[2016/09/18 20:08:18 | 000,538,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.Desktop.dll
[2016/09/18 20:08:18 | 000,344,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Picker.dll
[2016/09/18 20:08:18 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shsetup.dll
[2016/09/18 20:08:17 | 001,121,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localspl.dll
[2016/09/18 20:08:17 | 000,708,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CPFilters.dll
[2016/09/18 20:08:17 | 000,704,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CellularAPI.dll
[2016/09/18 20:08:17 | 000,654,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winipcsecproc_ssp.dll
[2016/09/18 20:08:17 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcsvc.dll
[2016/09/18 20:08:17 | 000,501,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NetSetupEngine.dll
[2016/09/18 20:08:16 | 006,572,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanmm.dll
[2016/09/18 20:08:16 | 001,448,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dui70.dll
[2016/09/18 20:08:16 | 000,947,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasgcw.dll
[2016/09/18 20:08:16 | 000,870,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
[2016/09/18 20:08:16 | 000,859,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.dll
[2016/09/18 20:08:16 | 000,846,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasgcw.dll
[2016/09/18 20:08:16 | 000,841,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2016/09/18 20:08:16 | 000,435,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Wallet.dll
[2016/09/18 20:08:16 | 000,413,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifitask.exe
[2016/09/18 20:08:15 | 001,291,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werconcpl.dll
[2016/09/18 20:08:15 | 000,879,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WebcamUi.dll
[2016/09/18 20:08:15 | 000,847,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netlogon.dll
[2016/09/18 20:08:15 | 000,673,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.dll
[2016/09/18 20:08:15 | 000,517,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winspool.drv
[2016/09/18 20:08:15 | 000,458,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToDevice.dll
[2016/09/18 20:08:14 | 001,216,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcenter.dll
[2016/09/18 20:08:14 | 001,035,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XboxNetApiSvc.dll
[2016/09/18 20:08:14 | 000,591,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmsRouterSvc.dll
[2016/09/18 20:08:14 | 000,578,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mscms.dll
[2016/09/18 20:08:14 | 000,541,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GamePanel.exe
[2016/09/18 20:08:14 | 000,450,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncController.dll
[2016/09/18 20:08:14 | 000,442,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dlnashext.dll
[2016/09/18 20:08:14 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RADCUI.dll
[2016/09/18 20:08:14 | 000,330,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2016/09/18 20:08:14 | 000,321,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\syncutil.dll
[2016/09/18 20:08:14 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3ui.dll
[2016/09/18 20:08:14 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2016/09/18 20:08:14 | 000,238,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmWmiPl.dll
[2016/09/18 20:08:14 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncSettings.dll
[2016/09/18 20:08:14 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinelsa.dll
[2016/09/18 20:08:14 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deviceassociation.dll
[2016/09/18 20:08:13 | 000,435,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.AllJoyn.dll
[2016/09/18 20:08:13 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFPlatform.dll
[2016/09/18 20:08:13 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmAuto.dll
[2016/09/18 20:08:13 | 000,134,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wificonnapi.dll
[2016/09/18 20:08:13 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OnDemandConnRouteHelper.dll
[2016/09/18 20:08:13 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsmprovhost.exe
[2016/09/18 20:08:13 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\deviceassociation.dll
[2016/09/18 20:08:13 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmAgent.dll
[2016/09/18 20:08:13 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcconf.dll
[2016/09/18 20:08:12 | 005,205,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingMaps.dll
[2016/09/18 20:08:12 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\JpMapControl.dll
[2016/09/18 20:08:12 | 000,784,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NMAA.dll
[2016/09/18 20:08:12 | 000,711,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapControlCore.dll
[2016/09/18 20:08:12 | 000,349,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapConfiguration.dll
[2016/09/18 20:08:12 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MosHostClient.dll
[2016/09/18 20:08:11 | 006,296,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mos.dll
[2016/09/18 20:08:11 | 000,808,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe
[2016/09/18 20:08:11 | 000,432,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredProvDataModel.dll
[2016/09/18 20:08:11 | 000,387,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\qdvd.dll
[2016/09/18 20:08:09 | 007,536,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2016/09/18 20:08:08 | 006,605,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
[2016/09/18 20:08:07 | 005,325,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Data.Pdf.dll
[2016/09/18 20:08:06 | 004,404,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Search.dll
[2016/09/18 20:08:05 | 003,459,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbon.dll
[2016/09/18 20:08:05 | 002,361,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcndmgr.dll
[2016/09/18 20:08:05 | 001,526,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Phone.dll
[2016/09/18 20:08:04 | 004,826,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll
[2016/09/18 20:08:04 | 002,444,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll
[2016/09/18 20:08:04 | 001,944,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputService.dll
[2016/09/18 20:08:04 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapsBtSvc.dll
[2016/09/18 20:08:04 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MosStorage.dll
[2016/09/18 20:08:03 | 004,169,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbon.dll
[2016/09/18 20:08:03 | 001,562,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmc.exe
[2016/09/18 20:08:03 | 001,447,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webservices.dll
[2016/09/18 20:08:03 | 001,322,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ole32.dll
[2016/09/18 20:08:02 | 002,680,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll
[2016/09/18 20:08:02 | 001,030,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
[2016/09/18 20:08:02 | 000,875,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
[2016/09/18 20:08:02 | 000,778,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MsSpellCheckingFacility.dll
[2016/09/18 20:08:02 | 000,712,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RemoteNaturalLanguage.dll
[2016/09/18 20:08:01 | 001,575,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll
[2016/09/18 20:08:01 | 001,094,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Vpn.dll
[2016/09/18 20:08:01 | 000,754,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
[2016/09/18 20:08:01 | 000,458,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidprov.dll
[2016/09/18 20:08:01 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PhoneOm.dll
[2016/09/18 20:08:00 | 001,915,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSAJApi.dll
[2016/09/18 20:08:00 | 001,872,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\workfolderssvc.dll
[2016/09/18 20:08:00 | 001,142,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
[2016/09/18 20:07:59 | 001,317,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
[2016/09/18 20:07:59 | 000,882,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntshrui.dll
[2016/09/18 20:07:58 | 001,951,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hevcdecoder.dll
[2016/09/18 20:07:58 | 000,471,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\filemgmt.dll
[2016/09/18 20:07:57 | 000,970,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nettrace.dll
[2016/09/18 20:07:57 | 000,839,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comuid.dll
[2016/09/18 20:07:57 | 000,131,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ufxsynopsys.sys
[2016/09/18 20:07:56 | 004,213,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlanMM.dll
[2016/09/18 20:07:56 | 003,294,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstsc.exe
[2016/09/18 20:07:56 | 001,674,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\quartz.dll
[2016/09/18 20:07:56 | 000,651,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserLanguagesCpl.dll
[2016/09/18 20:07:56 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll
[2016/09/18 20:07:56 | 000,576,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nshwfp.dll
[2016/09/18 20:07:56 | 000,471,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wbemcomn.dll
[2016/09/18 20:07:56 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resutils.dll
[2016/09/18 20:07:56 | 000,175,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sspicli.dll
[2016/09/18 20:07:55 | 000,941,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MiracastReceiver.dll
[2016/09/18 20:07:55 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptui.dll
[2016/09/18 20:07:55 | 000,510,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlanMediaManager.dll
[2016/09/18 20:07:54 | 001,297,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorDataService.exe
[2016/09/18 20:07:54 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winipcsecproc_ssp.dll
[2016/09/18 20:07:54 | 000,639,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
[2016/09/18 20:07:54 | 000,405,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\FWPKCLNT.SYS
[2016/09/18 20:07:54 | 000,379,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocore.dll
[2016/09/18 20:07:54 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cic.dll
[2016/09/18 20:07:54 | 000,100,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WcnApi.dll
[2016/09/18 20:07:53 | 000,900,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.dll
[2016/09/18 20:07:53 | 000,673,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApiPublic.dll
[2016/09/18 20:07:53 | 000,607,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxApplicabilityEngine.dll
[2016/09/18 20:07:53 | 000,488,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clusapi.dll
[2016/09/18 20:07:53 | 000,465,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncHost.exe
[2016/09/18 20:07:53 | 000,386,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.LowLevel.dll
[2016/09/18 20:07:53 | 000,339,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\azroleui.dll
[2016/09/18 20:07:53 | 000,300,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcbase.dll
[2016/09/18 20:07:52 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wdc.dll
[2016/09/18 20:07:52 | 000,904,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\azroles.dll
[2016/09/18 20:07:52 | 000,506,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tileobjserver.dll
[2016/09/18 20:07:52 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenrollengine.dll
[2016/09/18 20:07:52 | 000,288,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmWmiPl.dll
[2016/09/18 20:07:52 | 000,218,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ahcache.sys
[2016/09/18 20:07:52 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcshext.dll
[2016/09/18 20:07:52 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spcompat.dll
[2016/09/18 20:07:50 | 001,294,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcnwiz.dll
[2016/09/18 20:07:50 | 001,226,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wcnwiz.dll
[2016/09/18 20:07:50 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mbsmsapi.dll
[2016/09/18 20:07:50 | 000,157,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Geolocation.dll
[2016/09/18 20:07:49 | 000,585,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieui.dll
[2016/09/18 20:07:49 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ShareHost.dll
[2016/09/18 20:07:49 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneDriveSettingSyncProvider.dll
[2016/09/18 20:07:49 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DisplayManager.dll
[2016/09/18 20:07:49 | 000,163,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmAuto.dll
[2016/09/18 20:07:49 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Cortana.ProxyStub.dll
[2016/09/18 20:07:48 | 000,900,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CPFilters.dll
[2016/09/18 20:07:48 | 000,817,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.Search.dll
[2016/09/18 20:07:48 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WalletService.dll
[2016/09/18 20:07:48 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WcnApi.dll
[2016/09/18 20:07:48 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MediaFoundation.DefaultPerceptionProvider.dll
[2016/09/18 20:07:48 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fwcfg.dll
[2016/09/18 20:07:47 | 001,063,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gpedit.dll
[2016/09/18 20:07:47 | 000,824,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adtschema.dll
[2016/09/18 20:07:47 | 000,715,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GamePanel.exe
[2016/09/18 20:07:47 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efswrt.dll
[2016/09/18 20:07:47 | 000,373,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WmpDui.dll
[2016/09/18 20:07:47 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdWCN.dll
[2016/09/18 20:07:46 | 000,736,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SmartcardCredentialProvider.dll
[2016/09/18 20:07:46 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcastdvr.exe
[2016/09/18 20:07:46 | 000,339,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certcli.dll
[2016/09/18 20:07:46 | 000,205,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\oemlicense.dll
[2016/09/18 20:07:46 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinelsa.dll
[2016/09/18 20:07:46 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VoipRT.dll
[2016/09/18 20:07:45 | 004,143,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WlanMM.dll
[2016/09/18 20:07:45 | 001,985,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certmgr.dll
[2016/09/18 20:07:45 | 001,648,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comsvcs.dll
[2016/09/18 20:07:45 | 000,645,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Storage.Search.dll
[2016/09/18 20:07:45 | 000,638,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmIndexer.dll
[2016/09/18 20:07:45 | 000,522,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.WiFiDirect.dll
[2016/09/18 20:07:45 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WLanConn.dll
[2016/09/18 20:07:45 | 000,412,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanui.dll
[2016/09/18 20:07:45 | 000,358,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authfwcfg.dll
[2016/09/18 20:07:45 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppCapture.dll
[2016/09/18 20:07:44 | 000,982,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxPackaging.dll
[2016/09/18 20:07:44 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbonRes.dll
[2016/09/18 20:07:44 | 000,584,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbonRes.dll
[2016/09/18 20:07:44 | 000,477,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieui.dll
[2016/09/18 20:07:44 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WLanConn.dll
[2016/09/18 20:07:44 | 000,368,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.dll
[2016/09/18 20:07:44 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.AllJoyn.dll
[2016/09/18 20:07:44 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Management.dll
[2016/09/18 20:07:44 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatehandlers.dll
[2016/09/18 20:07:44 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\licensingdiag.exe
[2016/09/18 20:07:44 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
[2016/09/18 20:07:44 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dialserver.dll
[2016/09/18 20:07:44 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafWCN.dll
[2016/09/18 20:07:44 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msobjs.dll
[2016/09/18 20:07:44 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsmprovhost.exe
[2016/09/18 20:07:44 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmintegrator.dll
[2016/09/18 20:07:44 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmAgent.dll
[2016/09/18 20:07:44 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IconCodecService.dll
[2016/09/18 20:07:43 | 000,460,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapConfiguration.dll
[2016/09/18 20:07:43 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbcconf.dll
[2016/09/18 20:07:43 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CheckNetIsolation.exe
[2016/09/18 20:07:42 | 007,977,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mos.dll
[2016/09/18 20:07:42 | 007,200,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingMaps.dll
[2016/09/18 20:07:42 | 005,503,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d2d1.dll
[2016/09/18 20:07:42 | 001,056,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\JpMapControl.dll
[2016/09/18 20:07:42 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NMAA.dll
[2016/09/18 20:07:42 | 000,939,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapControlCore.dll
[2016/09/18 20:07:42 | 000,852,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
[2016/09/18 20:07:40 | 009,920,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2016/09/18 20:07:39 | 002,180,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll
[2016/09/18 20:07:39 | 001,118,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetsrc.dll
[2016/09/18 20:07:37 | 002,772,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tquery.dll
[2016/09/18 20:07:37 | 001,500,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RecoveryDrive.exe
[2016/09/18 20:07:37 | 000,733,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasapi32.dll
[2016/09/18 20:07:36 | 003,555,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsrchvw.exe
[2016/09/18 20:07:36 | 002,798,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.dll
[2016/09/18 20:07:36 | 001,556,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OpcServices.dll
[2016/09/18 20:07:36 | 000,630,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MessagingDataModel2.dll
[2016/09/18 20:07:36 | 000,569,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\qdvd.dll
[2016/09/18 20:07:35 | 004,074,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
[2016/09/18 20:07:35 | 003,355,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll
[2016/09/18 20:07:35 | 002,773,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d11.dll
[2016/09/18 20:07:35 | 001,984,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssrch.dll
[2016/09/18 20:07:34 | 002,881,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storagewmi.dll
[2016/09/18 20:07:33 | 001,415,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctf.dll
[2016/09/18 20:07:33 | 000,270,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshostcore.dll
[2016/09/18 20:07:33 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsBtSvc.dll
[2016/09/18 20:07:33 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsCSP.dll
[2016/09/18 20:07:33 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosStorage.dll
[2016/09/18 20:07:33 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshost.dll
[2016/09/18 20:07:33 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosHostClient.dll
[2016/09/18 20:07:33 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapsupdatetask.dll
[2016/09/18 20:07:32 | 001,613,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll
[2016/09/18 20:07:32 | 000,980,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfasfsrcsnk.dll
[2016/09/18 20:07:32 | 000,799,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oleaut32.dll
[2016/09/18 20:07:32 | 000,752,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhoneService.dll
[2016/09/18 20:07:31 | 001,582,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Immersive.dll
[2016/09/18 20:07:31 | 001,443,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagperf.dll
[2016/09/18 20:07:31 | 001,052,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MsSpellCheckingFacility.dll
[2016/09/18 20:07:30 | 004,646,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsrchvw.exe
[2016/09/18 20:07:30 | 001,558,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vssapi.dll
[2016/09/18 20:07:30 | 000,517,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToManager.dll
[2016/09/18 20:07:29 | 001,813,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnidui.dll
[2016/09/18 20:07:29 | 001,554,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpmde.dll
[2016/09/18 20:07:29 | 001,385,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usercpl.dll
[2016/09/18 20:07:29 | 000,925,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfplat.dll
[2016/09/18 20:07:29 | 000,865,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AzureSettingSyncProvider.dll
[2016/09/18 20:07:29 | 000,451,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFCaptureEngine.dll
[2016/09/18 20:07:29 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhoneOm.dll
[2016/09/18 20:07:28 | 002,578,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gameux.dll
[2016/09/18 20:07:28 | 002,548,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10warp.dll
[2016/09/18 20:07:28 | 002,144,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d9.dll
[2016/09/18 20:07:28 | 002,057,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll
[2016/09/18 20:07:28 | 000,649,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clusapi.dll
[2016/09/18 20:07:28 | 000,588,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidprov.dll
[2016/09/18 20:07:28 | 000,581,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.dll
[2016/09/18 20:07:28 | 000,414,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BCP47Langs.dll
[2016/09/18 20:07:28 | 000,318,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.OneCore.dll
[2016/09/18 20:07:27 | 001,847,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPDMC.exe
[2016/09/18 20:07:27 | 001,783,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_fs.dll
[2016/09/18 20:07:27 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsvcs.dll
[2016/09/18 20:07:27 | 000,697,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.OnlineId.dll
[2016/09/18 20:07:27 | 000,683,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll
[2016/09/18 20:07:27 | 000,513,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hnetcfg.dll
[2016/09/18 20:07:26 | 003,589,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2016/09/18 20:07:26 | 001,318,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_health.dll
[2016/09/18 20:07:26 | 000,899,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3D12.dll
[2016/09/18 20:07:26 | 000,889,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mprddm.dll
[2016/09/18 20:07:25 | 003,093,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mispace.dll
[2016/09/18 20:07:25 | 000,479,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apphelp.dll
[2016/09/18 20:07:25 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LogonController.dll
[2016/09/18 20:07:25 | 000,328,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BCP47Langs.dll
[2016/09/18 20:07:24 | 001,997,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActiveSyncProvider.dll
[2016/09/18 20:07:24 | 001,213,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdengin2.dll
[2016/09/18 20:07:24 | 001,117,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll
[2016/09/18 20:07:24 | 001,087,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\reseteng.dll
[2016/09/18 20:07:24 | 000,821,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
[2016/09/18 20:07:24 | 000,313,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
[2016/09/18 20:07:23 | 001,238,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Taskmgr.exe
[2016/09/18 20:07:23 | 000,989,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi
[2016/09/18 20:07:23 | 000,984,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tdh.dll
[2016/09/18 20:07:23 | 000,918,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsFilt.dll
[2016/09/18 20:07:23 | 000,708,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Web.Core.dll
[2016/09/18 20:07:23 | 000,705,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernel32.dll
[2016/09/18 20:07:23 | 000,693,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetSetupEngine.dll
[2016/09/18 20:07:23 | 000,651,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comuid.dll
[2016/09/18 20:07:23 | 000,627,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certca.dll
[2016/09/18 20:07:23 | 000,511,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icsvc.dll
[2016/09/18 20:07:23 | 000,503,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DMRServer.dll
[2016/09/18 20:07:23 | 000,352,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eappcfg.dll
[2016/09/18 20:07:23 | 000,342,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\APHostService.dll
[2016/09/18 20:07:22 | 002,062,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
[2016/09/18 20:07:22 | 001,717,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
[2016/09/18 20:07:21 | 004,387,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setupapi.dll
[2016/09/18 20:07:21 | 000,709,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll
[2016/09/18 20:07:21 | 000,439,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcfgx.dll
[2016/09/18 20:07:21 | 000,317,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkBindingEngineMigPlugin.dll
[2016/09/18 20:07:21 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wusa.exe
[2016/09/18 20:07:21 | 000,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\csrsrv.dll
[2016/09/18 20:07:20 | 000,871,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvstore.dll
[2016/09/18 20:07:20 | 000,652,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\evr.dll
[2016/09/18 20:07:20 | 000,550,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\directmanipulation.dll
[2016/09/18 20:07:20 | 000,523,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wimserv.exe
[2016/09/18 20:07:20 | 000,337,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.ApplicationData.dll
[2016/09/18 20:07:20 | 000,332,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapp3hst.dll
[2016/09/18 20:07:20 | 000,314,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseAppMgmtSvc.dll
[2016/09/18 20:07:20 | 000,282,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Search.ProtocolHandler.MAPI2.dll
[2016/09/18 20:07:20 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountCloudAP.dll
[2016/09/18 20:07:20 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.ProxyStub.dll
[2016/09/18 20:07:20 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdProxy.dll
[2016/09/18 20:07:19 | 001,467,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
[2016/09/18 20:07:13 | 000,276,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsCodecsExt.dll
[2016/09/18 20:07:12 | 000,764,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Cred.dll
[2016/09/18 20:07:12 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AzureSettingSyncProvider.dll
[2016/09/18 20:07:12 | 000,585,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.AccountsControl.dll
[2016/09/18 20:07:12 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usbceip.dll
[2016/09/18 20:07:12 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\udhisapi.dll
[2016/09/18 20:07:11 | 002,519,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\themecpl.dll
[2016/09/18 20:07:11 | 000,304,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Midi.dll
[2016/09/18 20:07:11 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\upnpcont.exe
[2016/09/18 20:07:10 | 001,755,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dui70.dll
[2016/09/18 20:07:10 | 000,945,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autochk.exe
[2016/09/18 20:07:10 | 000,892,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.SmartCards.dll
[2016/09/18 20:07:10 | 000,620,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsFilt.dll
[2016/09/18 20:07:10 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\duser.dll
[2016/09/18 20:07:10 | 000,356,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mcbuilder.exe
[2016/09/18 20:07:10 | 000,260,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepsync.dll
[2016/09/18 20:07:09 | 002,800,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netshell.dll
[2016/09/18 20:07:09 | 000,824,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adtschema.dll
[2016/09/18 20:07:09 | 000,502,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairing.dll
[2016/09/18 20:07:09 | 000,283,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToReceiver.dll
[2016/09/18 20:07:09 | 000,270,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netplwiz.dll
[2016/09/18 20:07:09 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseModernAppMgmtCSP.dll
[2016/09/18 20:07:09 | 000,120,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VoipRT.dll
[2016/09/18 20:07:08 | 004,456,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3DCompiler_47.dll
[2016/09/18 20:07:08 | 000,372,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppBroker.dll
[2016/09/18 20:07:08 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepapi.dll
[2016/09/18 20:07:07 | 002,902,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themeui.dll
[2016/09/18 20:07:07 | 001,582,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
[2016/09/18 20:07:07 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll
[2016/09/18 20:07:07 | 001,387,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2016/09/18 20:07:07 | 001,105,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Audio.dll
[2016/09/18 20:07:07 | 000,738,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\appwiz.cpl
[2016/09/18 20:07:07 | 000,685,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scapi.dll
[2016/09/18 20:07:07 | 000,606,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmsvc.dll
[2016/09/18 20:07:07 | 000,574,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hgcpl.dll
[2016/09/18 20:07:07 | 000,504,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dlnashext.dll
[2016/09/18 20:07:07 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StikyNot.exe
[2016/09/18 20:07:07 | 000,394,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPhoto.dll
[2016/09/18 20:07:07 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\syncutil.dll
[2016/09/18 20:07:07 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapphost.dll
[2016/09/18 20:07:07 | 00
  • なおき
  • 2016/09/24 (Sat) 22:16:52
OTLスキャンログです
OTL.txt 続きです

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2016/09/24 21:48:01 | 000,000,626 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2016/09/24 21:22:16 | 000,192,216 | ---- | M] (Malwarebytes) -- C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys
[2016/09/24 21:21:22 | 000,000,704 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2016/09/24 21:20:53 | 000,000,180 | ---- | M] () -- C:\WINDOWS\SysNative\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
[2016/09/24 21:20:50 | 3392,266,240 | -HS- | M] () -- C:\hiberfil.sys
[2016/09/24 21:20:46 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2016/09/23 22:09:00 | 000,000,708 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2016/09/23 20:33:22 | 000,000,000 | -HS- | M] () -- C:\DkHyperbootSync
[2016/09/23 19:55:11 | 000,188,104 | ---- | M] (CyberLink Corp.) -- C:\WINDOWS\SysNative\drivers\rikvm_99E320F5.sys
[2016/09/23 19:54:59 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2016/09/21 20:38:40 | 000,000,214 | ---- | M] () -- C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job
[2016/09/21 20:30:45 | 000,001,171 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2016/09/20 21:36:32 | 000,001,162 | ---- | M] () -- C:\Users\Public\Desktop\herdProtect.lnk
[2016/09/19 22:56:27 | 000,002,342 | ---- | M] () -- C:\Users\user\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2016/09/19 22:49:11 | 000,002,318 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2016/09/19 07:53:02 | 000,000,863 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2016/09/18 22:08:10 | 000,001,115 | ---- | M] () -- C:\Users\Public\Desktop\PDF-XChange Editor.lnk
[2016/09/18 21:53:09 | 001,531,668 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI
[2016/09/18 21:53:09 | 000,734,494 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat
[2016/09/18 21:53:09 | 000,517,708 | ---- | M] () -- C:\WINDOWS\SysNative\perfh011.dat
[2016/09/18 21:53:09 | 000,139,106 | ---- | M] () -- C:\WINDOWS\SysNative\perfc011.dat
[2016/09/18 21:53:09 | 000,139,034 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat
[2016/09/18 20:34:31 | 000,000,892 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job
[2016/09/18 19:59:56 | 000,635,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mqsnap.dll
[2016/09/18 19:59:56 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mqcertui.dll
[2016/09/18 19:59:55 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mqcertui.dll
[2016/09/13 16:54:44 | 000,150,208 | ---- | M] (Tracker Software Products (Canada) Ltd.) -- C:\WINDOWS\SysNative\pxcpm5L.dll
[2016/09/07 15:04:35 | 002,718,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PrintConfig.dll
[2016/09/07 14:39:55 | 000,845,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmCoreR.dll
[2016/09/07 14:39:55 | 000,328,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BCP47Langs.dll
[2016/09/07 14:39:48 | 000,277,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\sdbus.sys
[2016/09/07 14:39:41 | 001,862,000 | ---- | M] () -- C:\WINDOWS\SysWow64\CoreUIComponents.dll
[2016/09/07 14:39:34 | 001,030,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.efi
[2016/09/07 14:39:34 | 000,875,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winresume.exe
[2016/09/07 14:39:29 | 001,997,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\KernelBase.dll
[2016/09/07 14:39:29 | 000,414,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BCP47Langs.dll
[2016/09/07 14:39:24 | 000,799,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oleaut32.dll
[2016/09/07 14:39:20 | 007,468,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntoskrnl.exe
[2016/09/07 14:39:19 | 001,317,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.efi
[2016/09/07 14:39:19 | 001,142,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winload.exe
[2016/09/07 14:39:19 | 001,098,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmCoreR.dll
[2016/09/07 14:39:18 | 000,705,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\kernel32.dll
[2016/09/07 14:39:17 | 000,337,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.ApplicationData.dll
[2016/09/07 14:39:14 | 002,656,952 | ---- | M] () -- C:\WINDOWS\SysNative\CoreUIComponents.dll
[2016/09/07 14:39:13 | 000,175,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sspicli.dll
[2016/09/07 14:39:09 | 004,387,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\setupapi.dll
[2016/09/07 14:39:08 | 001,238,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Taskmgr.exe
[2016/09/07 14:39:08 | 000,428,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hal.dll
[2016/09/07 14:39:03 | 000,754,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CoreMessaging.dll
[2016/09/07 14:37:36 | 000,572,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\taskschd.dll
[2016/09/07 14:36:37 | 000,405,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\FWPKCLNT.SYS
[2016/09/07 14:35:27 | 001,613,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack.dll
[2016/09/07 14:35:19 | 000,523,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wimserv.exe
[2016/09/07 14:35:16 | 000,989,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecConfig.efi
[2016/09/07 14:34:14 | 003,449,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSService.dll
[2016/09/07 14:33:45 | 001,297,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LicenseManager.dll
[2016/09/07 14:33:37 | 000,026,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuauclt.exe
[2016/09/07 14:33:08 | 000,986,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LicenseManager.dll
[2016/09/07 14:27:40 | 000,413,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifitask.exe
[2016/09/07 14:27:05 | 000,538,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWanAPI.dll
[2016/09/07 14:26:41 | 000,693,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetSetupEngine.dll
[2016/09/07 14:26:39 | 000,439,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcfgx.dll
[2016/09/07 14:26:21 | 002,544,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfcore.dll
[2016/09/07 14:26:19 | 001,554,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpmde.dll
[2016/09/07 14:26:19 | 000,586,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mf.dll
[2016/09/07 14:26:19 | 000,245,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfps.dll
[2016/09/07 14:26:18 | 000,588,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdrmdev.dll
[2016/09/07 14:26:16 | 001,552,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmde.dll
[2016/09/07 14:26:16 | 001,092,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfplat.dll
[2016/09/07 14:26:16 | 000,785,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\evr.dll
[2016/09/07 14:26:15 | 001,299,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetsrc.dll
[2016/09/07 14:26:14 | 000,847,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfsvr.dll
[2016/09/07 14:26:13 | 001,152,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfasfsrcsnk.dll
[2016/09/07 14:26:13 | 000,516,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AudioEng.dll
[2016/09/07 14:26:11 | 000,858,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mfnetcore.dll
[2016/09/07 14:26:00 | 000,131,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ufxsynopsys.sys
[2016/09/07 14:25:09 | 001,270,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WinTypes.dll
[2016/09/07 14:25:03 | 001,447,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\webservices.dll
[2016/09/07 14:25:01 | 002,607,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\combase.dll
[2016/09/07 14:25:00 | 001,322,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ole32.dll
[2016/09/07 14:24:54 | 000,808,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WWAHost.exe
[2016/09/07 14:24:48 | 000,355,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netcfgx.dll
[2016/09/07 14:24:43 | 000,501,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NetSetupEngine.dll
[2016/09/07 14:24:27 | 000,496,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdrmdev.dll
[2016/09/07 14:24:21 | 000,709,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfsvr.dll
[2016/09/07 14:24:17 | 002,180,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfcore.dll
[2016/09/07 14:24:17 | 000,511,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mf.dll
[2016/09/07 14:24:17 | 000,451,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFCaptureEngine.dll
[2016/09/07 14:24:15 | 000,925,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfplat.dll
[2016/09/07 14:24:10 | 001,118,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfnetsrc.dll
[2016/09/07 14:24:09 | 001,349,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmde.dll
[2016/09/07 14:24:08 | 000,980,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mfasfsrcsnk.dll
[2016/09/07 14:24:08 | 000,652,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\evr.dll
[2016/09/07 14:23:59 | 001,750,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcMon.exe
[2016/09/07 14:23:53 | 000,374,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsAdminFlows.exe
[2016/09/07 14:23:49 | 000,730,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Shell.Broker.dll
[2016/09/07 14:23:48 | 000,303,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppHost.exe
[2016/09/07 14:23:47 | 000,565,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncHost.exe
[2016/09/07 14:23:32 | 006,605,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\windows.storage.dll
[2016/09/07 14:23:30 | 004,515,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
[2016/09/07 14:23:30 | 001,603,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\propsys.dll
[2016/09/07 14:23:26 | 000,725,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SHCore.dll
[2016/09/07 14:23:23 | 001,040,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.appcore.dll
[2016/09/07 14:23:01 | 000,692,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppwinob.dll
[2016/09/07 14:23:00 | 001,540,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppobjs.dll
[2016/09/07 14:22:53 | 000,742,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EditionUpgradeManagerObj.dll
[2016/09/07 14:22:37 | 001,085,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\webservices.dll
[2016/09/07 14:22:36 | 000,625,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipSVC.dll
[2016/09/07 14:22:34 | 001,128,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ClipUp.exe
[2016/09/07 14:22:32 | 001,824,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\combase.dll
[2016/09/07 14:22:29 | 000,431,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcryptprimitives.dll
[2016/09/07 14:22:27 | 000,638,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ClipSp.sys
[2016/09/07 14:22:26 | 000,703,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WWAHost.exe
[2016/09/07 14:21:16 | 000,465,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncHost.exe
[2016/09/07 14:21:01 | 005,240,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\windows.storage.dll
[2016/09/07 14:21:00 | 004,074,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\explorer.exe
[2016/09/07 14:20:57 | 000,836,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.appcore.dll
[2016/09/07 14:20:56 | 000,569,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SHCore.dll
[2016/09/07 14:19:34 | 000,360,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcryptprimitives.dll
[2016/09/07 14:16:22 | 002,144,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d9.dll
[2016/09/07 14:16:15 | 002,773,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d11.dll
[2016/09/07 14:16:06 | 002,548,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3d10warp.dll
[2016/09/07 14:15:31 | 001,776,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsCodecs.dll
[2016/09/07 14:15:29 | 000,550,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\directmanipulation.dll
[2016/09/07 14:15:19 | 001,415,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctf.dll
[2016/09/07 14:15:16 | 000,911,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dcomp.dll
[2016/09/07 14:13:16 | 002,186,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3d11.dll
[2016/09/07 14:12:10 | 028,851,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsCodecsRaw.dll
[2016/09/07 14:12:05 | 000,871,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drvstore.dll
[2016/09/07 14:11:46 | 000,305,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpeffects.dll
[2016/09/07 14:11:41 | 002,187,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hevcdecoder.dll
[2016/09/07 14:11:37 | 000,388,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmpps.dll
[2016/09/07 14:11:24 | 000,503,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DMRServer.dll
[2016/09/07 14:08:20 | 028,083,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WindowsCodecsRaw.dll
[2016/09/07 14:07:55 | 000,253,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmpeffects.dll
[2016/09/07 14:07:49 | 001,951,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hevcdecoder.dll
[2016/09/07 13:52:40 | 001,035,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XboxNetApiSvc.dll
[2016/09/07 13:52:06 | 000,084,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpudd.dll
[2016/09/07 13:51:54 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsCSP.dll
[2016/09/07 13:49:43 | 000,649,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ngcsvc.dll
[2016/09/07 13:48:54 | 022,379,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edgehtml.dll
[2016/09/07 13:47:50 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosHostClient.dll
[2016/09/07 13:47:31 | 000,824,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebFilter.dll
[2016/09/07 13:46:51 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdProxy.dll
[2016/09/07 13:46:50 | 000,119,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserDataTimeUtil.dll
[2016/09/07 13:46:35 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vss_ps.dll
[2016/09/07 13:46:33 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\odbcconf.dll
[2016/09/07 13:46:01 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssprxy.dll
[2016/09/07 13:45:59 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\spcompat.dll
[2016/09/07 13:45:08 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cmintegrator.dll
[2016/09/07 13:44:40 | 000,134,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wificonnapi.dll
[2016/09/07 13:44:35 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SecureTimeAggregator.dll
[2016/09/07 13:44:31 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mapsupdatetask.dll
[2016/09/07 13:44:25 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IconCodecService.dll
[2016/09/07 13:44:19 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pngfilt.dll
[2016/09/07 13:44:16 | 000,120,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\VoipRT.dll
[2016/09/07 13:44:08 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.ProxyStub.dll
[2016/09/07 13:44:00 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\udhisapi.dll
[2016/09/07 13:43:58 | 000,584,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbonRes.dll
[2016/09/07 13:43:54 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\upnpcont.exe
[2016/09/07 13:43:47 | 016,985,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.dll
[2016/09/07 13:43:25 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MosStorage.dll
[2016/09/07 13:43:09 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsmprovhost.exe
[2016/09/07 13:42:57 | 000,219,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseModernAppMgmtCSP.dll
[2016/09/07 13:42:51 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmAuto.dll
[2016/09/07 13:42:48 | 000,120,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsBtSvc.dll
[2016/09/07 13:42:48 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MosHostClient.dll
[2016/09/07 13:42:40 | 000,117,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dafWCN.dll
[2016/09/07 13:42:23 | 000,572,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WpcWebFilter.dll
[2016/09/07 13:42:16 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmAgent.dll
[2016/09/07 13:42:14 | 000,140,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WcnApi.dll
[2016/09/07 13:42:03 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fdWCN.dll
[2016/09/07 13:41:51 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\deviceassociation.dll
[2016/09/07 13:41:50 | 000,094,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserDataTimeUtil.dll
[2016/09/07 13:41:42 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fwcfg.dll
[2016/09/07 13:41:41 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TpmTasks.dll
[2016/09/07 13:41:36 | 000,124,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\shsetup.dll
[2016/09/07 13:41:35 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\odbcconf.dll
[2016/09/07 13:41:31 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MediaFoundation.DefaultPerceptionProvider.dll
[2016/09/07 13:41:23 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wusa.exe
[2016/09/07 13:41:17 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\browserbroker.dll
[2016/09/07 13:41:16 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshost.dll
[2016/09/07 13:41:16 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OnDemandConnRouteHelper.dll
[2016/09/07 13:41:00 | 000,313,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DictationManager.dll
[2016/09/07 13:40:48 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vdsutil.dll
[2016/09/07 13:40:44 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppCapture.dll
[2016/09/07 13:40:36 | 000,129,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcshext.dll
[2016/09/07 13:40:32 | 000,297,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\unimdm.tsp
[2016/09/07 13:40:29 | 013,018,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.dll
[2016/09/07 13:40:19 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountExtension.dll
[2016/09/07 13:40:16 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vsstrace.dll
[2016/09/07 13:40:13 | 000,285,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\oemlicense.dll
[2016/09/07 13:40:11 | 000,471,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wbemcomn.dll
[2016/09/07 13:40:09 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CheckNetIsolation.exe
[2016/09/07 13:39:58 | 000,238,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Streaming.ps.dll
[2016/09/07 13:39:49 | 009,324,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmploc.DLL
[2016/09/07 13:39:38 | 000,356,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mcbuilder.exe
[2016/09/07 13:39:35 | 000,075,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wiarpc.dll
[2016/09/07 13:39:33 | 000,379,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usocore.dll
[2016/09/07 13:39:22 | 000,090,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\FingerprintEnrollment.dll
[2016/09/07 13:39:15 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\VoipRT.dll
[2016/09/07 13:39:08 | 000,270,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\moshostcore.dll
[2016/09/07 13:39:07 | 001,567,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Globalization.dll
[2016/09/07 13:39:07 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Cortana.ProxyStub.dll
[2016/09/07 13:39:01 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\udhisapi.dll
[2016/09/07 13:38:58 | 000,584,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbonRes.dll
[2016/09/07 13:38:54 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\upnpcont.exe
[2016/09/07 13:38:52 | 000,203,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cic.dll
[2016/09/07 13:38:46 | 000,335,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcbase.dll
[2016/09/07 13:38:43 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Midi.dll
[2016/09/07 13:38:42 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LegacyNetUXHost.exe
[2016/09/07 13:38:29 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MosStorage.dll
[2016/09/07 13:38:21 | 000,288,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WsmWmiPl.dll
[2016/09/07 13:38:20 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\IdCtrls.dll
[2016/09/07 13:38:18 | 000,157,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Geolocation.dll
[2016/09/07 13:38:16 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsmprovhost.exe
[2016/09/07 13:38:13 | 000,254,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\prnntfy.dll
[2016/09/07 13:38:04 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BootMenuUX.dll
[2016/09/07 13:38:01 | 000,210,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmcsp.dll
[2016/09/07 13:37:59 | 000,145,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmAuto.dll
[2016/09/07 13:37:56 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapsBtSvc.dll
[2016/09/07 13:37:43 | 000,435,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.AllJoyn.dll
[2016/09/07 13:37:42 | 000,250,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MicrosoftAccountCloudAP.dll
[2016/09/07 13:37:41 | 000,274,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DisplayManager.dll
[2016/09/07 13:37:38 | 000,308,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapphost.dll
[2016/09/07 13:37:36 | 000,198,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winsrv.dll
[2016/09/07 13:37:35 | 000,126,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dialserver.dll
[2016/09/07 13:37:34 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mshtmled.dll
[2016/09/07 13:37:33 | 000,373,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WmpDui.dll
[2016/09/07 13:37:31 | 000,846,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ipsecsnp.dll
[2016/09/07 13:37:27 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmAgent.dll
[2016/09/07 13:37:23 | 000,100,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WcnApi.dll
[2016/09/07 13:37:22 | 000,118,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhsvc.dll
[2016/09/07 13:37:18 | 000,099,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\srpapi.dll
[2016/09/07 13:37:04 | 000,381,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepsync.dll
[2016/09/07 13:37:03 | 000,642,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enterprisecsps.dll
[2016/09/07 13:37:02 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\deviceassociation.dll
[2016/09/07 13:36:57 | 000,200,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFPlatform.dll
[2016/09/07 13:36:57 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\fwcfg.dll
[2016/09/07 13:36:51 | 006,572,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanmm.dll
[2016/09/07 13:36:50 | 000,457,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\azroleui.dll
[2016/09/07 13:36:46 | 000,479,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apphelp.dll
[2016/09/07 13:36:45 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\shsetup.dll
[2016/09/07 13:36:43 | 000,250,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppLockerCSP.dll
[2016/09/07 13:36:40 | 001,582,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aitstatic.exe
[2016/09/07 13:36:36 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dot3ui.dll
[2016/09/07 13:36:34 | 001,568,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdt.exe
[2016/09/07 13:36:33 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\easwrt.dll
[2016/09/07 13:36:31 | 000,567,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MBMediaManager.dll
[2016/09/07 13:36:28 | 000,317,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkBindingEngineMigPlugin.dll
[2016/09/07 13:36:26 | 000,287,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\apprepapi.dll
[2016/09/07 13:36:24 | 000,237,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkDesktopSettings.dll
[2016/09/07 13:36:19 | 000,752,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhoneService.dll
[2016/09/07 13:36:19 | 000,600,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.LowLevel.dll
[2016/09/07 13:36:18 | 000,764,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakradiag.dll
[2016/09/07 13:36:15 | 000,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authfwcfg.dll
[2016/09/07 13:36:14 | 001,051,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DiagCpl.dll
[2016/09/07 13:36:14 | 000,394,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPhoto.dll
[2016/09/07 13:36:12 | 000,332,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eapp3hst.dll
[2016/09/07 13:36:12 | 000,233,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DictationManager.dll
[2016/09/07 13:36:11 | 000,314,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EnterpriseAppMgmtSvc.dll
[2016/09/07 13:36:08 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\bcastdvr.exe
[2016/09/07 13:35:59 | 000,450,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Bluetooth.dll
[2016/09/07 13:35:57 | 000,394,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Search.ProtocolHandler.MAPI2.dll
[2016/09/07 13:35:57 | 000,188,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.PicturePassword.dll
[2016/09/07 13:35:54 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppCapture.dll
[2016/09/07 13:35:51 | 000,318,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\domgmt.dll
[2016/09/07 13:35:50 | 000,813,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mqsnap.dll
[2016/09/07 13:35:47 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcshext.dll
[2016/09/07 13:35:45 | 000,714,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.Handlers.dll
[2016/09/07 13:35:44 | 000,591,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmsRouterSvc.dll
[2016/09/07 13:35:43 | 000,368,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagtrack_win.dll
[2016/09/07 13:35:39 | 000,256,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\unimdm.tsp
[2016/09/07 13:35:38 | 000,342,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\APHostService.dll
[2016/09/07 13:35:35 | 000,475,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.BlockedShutdown.dll
[2016/09/07 13:35:33 | 000,577,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Wallet.dll
[2016/09/07 13:35:32 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.WiFiDirect.dll
[2016/09/07 13:35:29 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usbceip.dll
[2016/09/07 13:35:28 | 000,704,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CellularAPI.dll
[2016/09/07 13:35:28 | 000,685,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\scapi.dll
[2016/09/07 13:35:23 | 000,715,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GamePanel.exe
[2016/09/07 13:35:22 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModelShim.dll
[2016/09/07 13:35:22 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CheckNetIsolation.exe
[2016/09/07 13:35:21 | 000,205,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\oemlicense.dll
[2016/09/07 13:35:13 | 000,814,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msctfuimanager.dll
[2016/09/07 13:35:12 | 000,119,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.ps.dll
[2016/09/07 13:35:11 | 000,460,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapConfiguration.dll
[2016/09/07 13:35:10 | 000,458,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToDevice.dll
[2016/09/07 13:35:10 | 000,412,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlanui.dll
[2016/09/07 13:35:08 | 000,258,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\credprovs.dll
[2016/09/07 13:35:07 | 000,363,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhoneOm.dll
[2016/09/07 13:35:06 | 000,945,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\autochk.exe
[2016/09/07 13:35:06 | 000,254,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExecModelClient.dll
[2016/09/07 13:35:05 | 000,339,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorService.dll
[2016/09/07 13:35:03 | 009,324,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmploc.DLL
[2016/09/07 13:34:57 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlanMediaManager.dll
[2016/09/07 13:34:56 | 000,790,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\EmailApis.dll
[2016/09/07 13:34:54 | 000,492,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_StorageSense.dll
[2016/09/07 13:34:53 | 011,545,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.dll
[2016/09/07 13:34:47 | 000,497,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WalletService.dll
[2016/09/07 13:34:47 | 000,278,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Internal.Management.dll
[2016/09/07 13:34:44 | 000,371,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MDEServer.exe
[2016/09/07 13:34:41 | 000,727,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nshwfp.dll
[2016/09/07 13:34:35 | 000,344,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Picker.dll
[2016/09/07 13:34:34 | 000,387,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\qdvd.dll
[2016/09/07 13:34:33 | 000,318,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.OneCore.dll
[2016/09/07 13:34:28 | 000,270,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netplwiz.dll
[2016/09/07 13:34:22 | 000,952,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.PointOfService.dll
[2016/09/07 13:34:21 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\efswrt.dll
[2016/09/07 13:34:19 | 000,392,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\zipfldr.dll
[2016/09/07 13:34:18 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cic.dll
[2016/09/07 13:34:15 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.BioFeedback.dll
[2016/09/07 13:34:12 | 000,572,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\filemgmt.dll
[2016/09/07 13:34:11 | 000,305,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\edputil.dll
[2016/09/07 13:34:08 | 000,273,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncSettings.dll
[2016/09/07 13:34:07 | 000,440,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\fhcfg.dll
[2016/09/07 13:34:06 | 000,304,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Midi.dll
[2016/09/07 13:34:06 | 000,300,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcbase.dll
[2016/09/07 13:34:05 | 000,630,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MessagingDataModel2.dll
[2016/09/07 13:33:53 | 000,576,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.UX.EapRequestHandler.dll
[2016/09/07 13:33:50 | 000,504,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dlnashext.dll
[2016/09/07 13:33:50 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\IdCtrls.dll
[2016/09/07 13:33:46 | 000,238,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WsmWmiPl.dll
[2016/09/07 13:33:45 | 000,315,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDXTaskFactory.dll
[2016/09/07 13:33:43 | 000,904,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\azroles.dll
[2016/09/07 13:33:43 | 000,224,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\prnntfy.dll
[2016/09/07 13:33:39 | 000,316,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sti.dll
[2016/09/07 13:33:28 | 000,726,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ChatApis.dll
[2016/09/07 13:33:27 | 000,602,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\cryptui.dll
[2016/09/07 13:33:23 | 000,948,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XblAuthManager.dll
[2016/09/07 13:33:21 | 000,448,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winipcfile.dll
[2016/09/07 13:33:17 | 000,276,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WindowsCodecsExt.dll
[2016/09/07 13:33:15 | 000,330,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2016/09/07 13:33:08 | 000,847,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netlogon.dll
[2016/09/07 13:33:08 | 000,321,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.AllJoyn.dll
[2016/09/07 13:33:07 | 001,813,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\pnidui.dll
[2016/09/07 13:33:07 | 000,200,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DisplayManager.dll
[2016/09/07 13:33:05 | 000,606,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcmsvc.dll
[2016/09/07 13:33:01 | 000,290,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WmpDui.dll
[2016/09/07 13:32:59 | 000,283,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToReceiver.dll
[2016/09/07 13:32:53 | 000,517,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winspool.drv
[2016/09/07 13:32:51 | 000,352,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\eappcfg.dll
[2016/09/07 13:32:50 | 000,757,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winipcsecproc_ssp.dll
[2016/09/07 13:32:45 | 000,492,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettings.UserAccountsHandlers.dll
[2016/09/07 13:32:44 | 000,484,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DataSenseHandlers.dll
[2016/09/07 13:32:41 | 004,213,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WlanMM.dll
[2016/09/07 13:32:39 | 000,892,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.SmartCards.dll
[2016/09/07 13:32:38 | 000,506,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tileobjserver.dll
[2016/09/07 13:32:34 | 001,294,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wcnwiz.dll
[2016/09/07 13:32:34 | 000,444,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\das.dll
[2016/09/07 13:32:29 | 000,260,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepsync.dll
[2016/09/07 13:32:26 | 000,556,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PsmServiceExtHost.dll
[2016/09/07 13:32:25 | 000,708,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.Web.Core.dll
[2016/09/07 13:32:25 | 000,339,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\azroleui.dll
[2016/09/07 13:32:23 | 000,651,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserLanguagesCpl.dll
[2016/09/07 13:32:20 | 000,947,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasgcw.dll
[2016/09/07 13:32:19 | 000,356,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActivationManager.dll
[2016/09/07 13:32:17 | 000,334,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchProtocolHost.exe
[2016/09/07 13:32:13 | 000,466,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wwanconn.dll
[2016/09/07 13:32:13 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dot3ui.dll
[2016/09/07 13:32:08 | 000,674,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mbsmsapi.dll
[2016/09/07 13:32:06 | 000,432,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CredProvDataModel.dll
[2016/09/07 13:32:03 | 001,048,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WebcamUi.dll
[2016/09/07 13:32:02 | 000,386,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.LowLevel.dll
[2016/09/07 13:32:02 | 000,275,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\facecredentialprovider.dll
[2016/09/07 13:32:00 | 000,738,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartCardSimulator.dll
[2016/09/07 13:31:59 | 001,216,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netcenter.dll
[2016/09/07 13:31:58 | 000,821,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MrmIndexer.dll
[2016/09/07 13:31:58 | 000,472,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Geolocation.dll
[2016/09/07 13:31:57 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\apprepapi.dll
[2016/09/07 13:31:56 | 000,941,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MiracastReceiver.dll
[2016/09/07 13:31:56 | 000,769,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppinst.dll
[2016/09/07 13:31:56 | 000,607,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxApplicabilityEngine.dll
[2016/09/07 13:31:55 | 001,056,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\JpMapControl.dll
[2016/09/07 13:31:52 | 000,852,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapsStore.dll
[2016/09/07 13:31:48 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmdrmsdk.dll
[2016/09/07 13:31:47 | 000,519,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WLanConn.dll
[2016/09/07 13:31:47 | 000,334,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\bcastdvr.exe
[2016/09/07 13:31:46 | 000,984,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tdh.dll
[2016/09/07 13:31:45 | 000,504,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppReadiness.dll
[2016/09/07 13:31:44 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.AccountsControl.dll
[2016/09/07 13:31:43 | 000,700,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppointmentApis.dll
[2016/09/07 13:31:40 | 000,358,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authfwcfg.dll
[2016/09/07 13:31:39 | 000,970,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\nettrace.dll
[2016/09/07 13:31:37 | 000,564,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DevicePairing.dll
[2016/09/07 13:31:35 | 000,282,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Search.ProtocolHandler.MAPI2.dll
[2016/09/07 13:31:33 | 000,183,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSSync.dll
[2016/09/07 13:31:28 | 000,915,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\configurationclient.dll
[2016/09/07 13:31:27 | 002,125,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_Bluetooth.dll
[2016/09/07 13:31:22 | 000,839,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comuid.dll
[2016/09/07 13:31:21 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NMAA.dll
[2016/09/07 13:31:21 | 000,965,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SRH.dll
[2016/09/07 13:31:21 | 000,313,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\resutils.dll
[2016/09/07 13:31:20 | 000,515,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OneDriveSettingSyncProvider.dll
[2016/09/07 13:31:20 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\offlinelsa.dll
[2016/09/07 13:31:18 | 000,588,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidprov.dll
[2016/09/07 13:31:17 | 000,511,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\icsvc.dll
[2016/09/07 13:31:15 | 000,480,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LockAppBroker.dll
[2016/09/07 13:31:13 | 001,094,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.Vpn.dll
[2016/09/07 13:31:13 | 000,435,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Wallet.dll
[2016/09/07 13:31:12 | 000,578,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mscms.dll
[2016/09/07 13:31:11 | 009,920,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.dll
[2016/09/07 13:31:06 | 000,538,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Cortana.Desktop.dll
[2016/09/07 13:31:04 | 001,985,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certmgr.dll
[2016/09/07 13:31:04 | 000,753,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msctfuimanager.dll
[2016/09/07 13:31:03 | 000,859,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.ApplicationModel.Store.dll
[2016/09/07 13:31:00 | 000,900,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CPFilters.dll
[2016/09/07 13:31:00 | 000,541,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GamePanel.exe
[2016/09/07 13:30:58 | 000,368,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Graphics.dll
[2016/09/07 13:30:57 | 000,697,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Security.Authentication.OnlineId.dll
[2016/09/07 13:30:57 | 000,349,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapConfiguration.dll
[2016/09/07 13:30:55 | 001,558,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vssapi.dll
[2016/09/07 13:30:54 | 000,294,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PhoneOm.dll
[2016/09/07 13:30:52 | 018,676,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\edgehtml.dll
[2016/09/07 13:30:52 | 000,585,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieui.dll
[2016/09/07 13:30:51 | 002,012,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winmsipc.dll
[2016/09/07 13:30:51 | 000,569,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\qdvd.dll
[2016/09/07 13:30:48 | 001,575,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Speech.dll
[2016/09/07 13:30:45 | 000,602,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\vbscript.dll
[2016/09/07 13:30:44 | 001,037,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SmartcardCredentialProvider.dll
[2016/09/07 13:30:42 | 001,318,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_health.dll
[2016/09/07 13:30:42 | 000,531,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sppcext.dll
[2016/09/07 13:30:40 | 000,784,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msfeeds.dll
[2016/09/07 13:30:36 | 000,607,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WUDFx.dll
[2016/09/07 13:30:35 | 000,982,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppxPackaging.dll
[2016/09/07 13:30:31 | 000,698,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PlayToManager.dll
[2016/09/07 13:30:30 | 002,476,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MSAJApi.dll
[2016/09/07 13:30:30 | 001,707,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msdtctm.dll
[2016/09/07 13:30:29 | 002,127,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\inetcpl.cpl
[2016/09/07 13:30:25 | 014,251,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wmp.dll
[2016/09/07 13:30:24 | 000,436,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentClient.dll
[2016/09/07 13:30:21 | 000,870,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\modernexecserver.dll
[2016/09/07 13:30:18 | 001,500,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RecoveryDrive.exe
[2016/09/07 13:30:17 | 000,939,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MapControlCore.dll
[2016/09/07 13:30:16 | 000,912,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usermgr.dll
[2016/09/07 13:30:16 | 000,817,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Storage.Search.dll
[2016/09/07 13:30:16 | 000,649,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\clusapi.dll
[2016/09/07 13:30:14 | 001,159,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ApplicationFrame.dll
[2016/09/07 13:30:13 | 001,500,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbghelp.dll
[2016/09/07 13:30:13 | 000,471,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\filemgmt.dll
[2016/09/07 13:30:12 | 001,387,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kbase.sys
[2016/09/07 13:30:11 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\appwiz.cpl
[2016/09/07 13:30:11 | 000,599,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\duser.dll
[2016/09/07 13:30:10 | 000,775,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Display.dll
[2016/09/07 13:30:09 | 000,990,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SharedStartModel.dll
[2016/09/07 13:30:06 | 000,576,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\nshwfp.dll
[2016/09/07 13:29:56 | 001,239,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Bluetooth.dll
[2016/09/07 13:29:55 | 000,499,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MessagingDataModel2.dll
[2016/09/07 13:29:55 | 000,283,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.BioFeedback.dll
[2016/09/07 13:29:52 | 000,387,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\syncutil.dll
[2016/09/07 13:29:49 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncSettings.dll
[2016/09/07 13:29:45 | 002,624,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\InputService.dll
[2016/09/07 13:29:42 | 000,896,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MbaeApiPublic.dll
[2016/09/07 13:29:41 | 007,977,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mos.dll
[2016/09/07 13:29:37 | 001,847,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WMPDMC.exe
[2016/09/07 13:29:34 | 000,529,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\LogonController.dll
[2016/09/07 13:29:34 | 000,442,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dlnashext.dll
[2016/09/07 13:29:33 | 000,785,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\azroles.dll
[2016/09/07 13:29:30 | 000,888,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.dll
[2016/09/07 13:29:27 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\cryptui.dll
[2016/09/07 13:29:12 | 000,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Devices.Sensors.dll
[2016/09/07 13:29:12 | 000,250,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2016/09/07 13:29:09 | 001,443,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\diagperf.dll
[2016/09/07 13:29:08 | 000,853,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\aadtb.dll
[2016/09/07 13:29:07 | 000,268,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\updatehandlers.dll
[2016/09/07 13:29:07 | 000,236,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\licensingdiag.exe
[2016/09/07 13:29:06 | 000,841,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32spl.dll
[2016/09/07 13:29:03 | 001,319,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wifinetworkmanager.dll
[2016/09/07 13:28:47 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpnapps.dll
[2016/09/07 13:28:45 | 000,938,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ContactApis.dll
[2016/09/07 13:28:45 | 000,381,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wuuhext.dll
[2016/09/07 13:28:39 | 001,648,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comsvcs.dll
[2016/09/07 13:28:37 | 001,752,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ieapfltr.dll
[2016/09/07 13:28:36 | 001,717,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\GdiPlus.dll
[2016/09/07 13:28:36 | 001,226,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wcnwiz.dll
[2016/09/07 13:28:36 | 000,243,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingMonitor.dll
[2016/09/07 13:28:34 | 001,466,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Pimstore.dll
[2016/09/07 13:28:34 | 000,654,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winipcsecproc_ssp.dll
[2016/09/07 13:28:32 | 000,284,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\eappcfg.dll
[2016/09/07 13:28:30 | 001,211,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Cred.dll
[2016/09/07 13:28:28 | 004,143,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WlanMM.dll
[2016/09/07 13:28:21 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rasgcw.dll
[2016/09/07 13:28:20 | 001,783,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wsp_fs.dll
[2016/09/07 13:28:19 | 000,780,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tdh.dll
[2016/09/07 13:28:19 | 000,337,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Geolocation.dll
[2016/09/07 13:28:15 | 000,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mbsmsapi.dll
[2016/09/07 13:28:13 | 000,638,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ShareHost.dll
[2016/09/07 13:28:12 | 000,889,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mprddm.dll
[2016/09/07 13:28:12 | 000,674,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MiracastReceiver.dll
[2016/09/07 13:28:11 | 002,731,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gameux.dll
[2016/09/07 13:28:11 | 001,291,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\werconcpl.dll
[2016/09/07 13:28:11 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\JpMapControl.dll
[2016/09/07 13:28:11 | 000,673,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.dll
[2016/09/07 13:28:11 | 000,638,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MrmIndexer.dll
[2016/09/07 13:28:07 | 000,879,616 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WebcamUi.dll
[2016/09/07 13:28:04 | 000,334,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CredProvDataModel.dll
[2016/09/07 13:28:02 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WLanConn.dll
[2016/09/07 13:27:58 | 001,395,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIAutomationCore.dll
[2016/09/07 13:27:58 | 001,131,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Audio.dll
[2016/09/07 13:27:58 | 000,521,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmdrmsdk.dll
[2016/09/07 13:27:57 | 001,872,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\workfolderssvc.dll
[2016/09/07 13:27:55 | 000,502,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DevicePairing.dll
[2016/09/07 13:27:49 | 000,153,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSSync.dll
[2016/09/07 13:27:48 | 000,961,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WSShared.dll
[2016/09/07 13:27:45 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.AccountsControl.dll
[2016/09/07 13:27:42 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\offlinelsa.dll
[2016/09/07 13:27:37 | 003,415,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncCenter.dll
[2016/09/07 13:27:36 | 000,651,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comuid.dll
[2016/09/07 13:27:34 | 004,456,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3DCompiler_47.dll
[2016/09/07 13:27:32 | 000,549,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SearchFolder.dll
[2016/09/07 13:27:30 | 000,552,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AppointmentApis.dll
[2016/09/07 13:27:29 | 000,708,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CPFilters.dll
[2016/09/07 13:27:29 | 000,555,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SyncController.dll
[2016/09/07 13:27:29 | 000,400,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OneDriveSettingSyncProvider.dll
[2016/09/07 13:27:29 | 000,372,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LockAppBroker.dll
[2016/09/07 13:27:28 | 000,784,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\NMAA.dll
[2016/09/07 13:27:26 | 000,865,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AzureSettingSyncProvider.dll
[2016/09/07 13:27:23 | 000,248,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\resutils.dll
[2016/09/07 13:27:21 | 000,458,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wlidprov.dll
[2016/09/07 13:27:20 | 000,963,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_health.dll
[2016/09/07 13:27:19 | 001,073,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RDXService.dll
[2016/09/07 13:27:09 | 000,799,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SRH.dll
[2016/09/07 13:27:07 | 000,477,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieui.dll
[2016/09/07 13:27:02 | 001,424,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wdc.dll
[2016/09/07 13:27:01 | 000,517,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PlayToManager.dll
[2016/09/07 13:26:56 | 000,488,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\clusapi.dll
[2016/09/07 13:26:54 | 000,736,768 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SmartcardCredentialProvider.dll
[2016/09/07 13:26:53 | 001,508,352 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winmsipc.dll
[2016/09/07 13:26:49 | 002,050,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\inetcpl.cpl
[2016/09/07 13:26:49 | 000,645,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Storage.Search.dll
[2016/09/07 13:26:48 | 000,738,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\appwiz.cpl
[2016/09/07 13:26:37 | 000,711,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MapControlCore.dll
[2016/09/07 13:26:35 | 000,854,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Bluetooth.dll
[2016/09/07 13:26:34 | 001,915,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MSAJApi.dll
[2016/09/07 13:26:34 | 001,117,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Speech.dll
[2016/09/07 13:26:29 | 002,881,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\storagewmi.dll
[2016/09/07 13:26:28 | 000,321,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\syncutil.dll
[2016/09/07 13:26:18 | 001,497,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WMPDMC.exe
[2016/09/07 13:26:13 | 000,638,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.dll
[2016/09/07 13:26:10 | 000,821,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TokenBroker.dll
[2016/09/07 13:26:09 | 001,063,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\comdlg32.dll
[2016/09/07 13:26:03 | 002,057,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wlidsvc.dll
[2016/09/07 13:26:01 | 000,673,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MbaeApiPublic.dll
[2016/09/07 13:26:00 | 000,434,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\LogonController.dll
[2016/09/07 13:25:58 | 006,296,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mos.dll
[2016/09/07 13:25:56 | 004,404,736 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Search.dll
[2016/09/07 13:25:52 | 001,052,160 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MsSpellCheckingFacility.dll
[2016/09/07 13:25:47 | 001,965,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmc.exe
[2016/09/07 13:25:41 | 000,501,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Devices.Sensors.dll
[2016/09/07 13:25:36 | 001,944,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\InputService.dll
[2016/09/07 13:25:34 | 001,467,392 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\GdiPlus.dll
[2016/09/07 13:25:32 | 000,508,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wpnapps.dll
[2016/09/07 13:25:31 | 000,769,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ContactApis.dll
[2016/09/07 13:25:25 | 001,139,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIAutomationCore.dll
[2016/09/07 13:25:24 | 006,312,448 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Search.dll
[2016/09/07 13:25:20 | 000,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.dll
[2016/09/07 13:25:19 | 001,526,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ieapfltr.dll
[2016/09/07 13:25:15 | 001,328,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\comsvcs.dll
[2016/09/07 13:25:10 | 002,578,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gameux.dll
[2016/09/07 13:25:06 | 000,888,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\printfilterpipelinesvc.exe
[2016/09/07 13:25:05 | 000,207,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\licensingdiag.exe
[2016/09/07 13:25:03 | 001,166,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Pimstore.dll
[2016/09/07 13:25:03 | 001,105,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Audio.dll
[2016/09/07 13:25:00 | 002,445,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DWrite.dll
[2016/09/07 13:25:00 | 001,228,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Globalization.dll
[2016/09/07 13:24:58 | 000,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ShareHost.dll
[2016/09/07 13:24:55 | 000,805,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\WSShared.dll
[2016/09/07 13:24:46 | 001,276,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wsp_fs.dll
[2016/09/07 13:24:45 | 003,428,864 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.dll
[2016/09/07 13:24:37 | 007,200,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\BingMaps.dll
[2016/09/07 13:24:34 | 003,695,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3DCompiler_47.dll
[2016/09/07 13:24:34 | 000,785,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mprddm.dll
[2016/09/07 13:24:12 | 000,764,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Cred.dll
[2016/09/07 13:24:01 | 003,994,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingsHandlers_nt.dll
[2016/09/07 13:24:01 | 000,667,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\AzureSettingSyncProvider.dll
[2016/09/07 13:23:56 | 001,562,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmc.exe
[2016/09/07 13:23:54 | 001,309,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wdc.dll
[2016/09/07 13:23:51 | 000,980,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\winipcsecproc.dll
[2016/09/07 13:23:38 | 000,701,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinapi.dll
[2016/09/07 13:23:34 | 000,838,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\uDWM.dll
[2016/09/07 13:23:31 | 000,918,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsFilt.dll
[2016/09/07 13:23:29 | 001,490,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UserDataService.dll
[2016/09/07 13:23:24 | 004,646,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsrchvw.exe
[2016/09/07 13:23:01 | 000,787,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.dll
[2016/09/07 13:22:42 | 002,582,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\MFMediaEngine.dll
[2016/09/07 13:22:38 | 000,465,920 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\StikyNot.e
  • なおき
  • 2016/09/24 (Sat) 22:18:05
OTLスキャンログです
OTL.txt 続きです


[2016/09/07 13:22:32 | 003,093,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mispace.dll
[2016/09/07 13:22:26 | 002,106,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\storagewmi.dll
[2016/09/07 13:22:23 | 012,585,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\wmp.dll
[2016/09/07 13:22:15 | 001,113,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\gpedit.dll
[2016/09/07 13:22:10 | 001,297,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SensorDataService.exe
[2016/09/07 13:22:00 | 000,778,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MsSpellCheckingFacility.dll
[2016/09/07 13:21:50 | 000,639,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\TokenBroker.dll
[2016/09/07 13:21:50 | 000,636,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hgcpl.dll
[2016/09/07 13:21:46 | 001,797,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Immersive.dll
[2016/09/07 13:21:34 | 001,410,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Web.Http.dll
[2016/09/07 13:21:30 | 003,046,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xpsservices.dll
[2016/09/07 13:21:25 | 000,613,376 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSync.dll
[2016/09/07 13:21:15 | 001,063,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\gpedit.dll
[2016/09/07 13:21:09 | 000,620,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsFilt.dll
[2016/09/07 13:21:04 | 002,527,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mispace.dll
[2016/09/07 13:20:52 | 006,675,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mspaint.exe
[2016/09/07 13:20:51 | 000,581,632 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinapi.dll
[2016/09/07 13:20:45 | 002,352,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\authui.dll
[2016/09/07 13:20:43 | 000,882,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ntshrui.dll
[2016/09/07 13:20:42 | 006,976,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Data.Pdf.dll
[2016/09/07 13:20:42 | 000,870,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\wpncore.dll
[2016/09/07 13:20:30 | 000,583,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\PhotoScreensaver.scr
[2016/09/07 13:20:28 | 000,683,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Networking.BackgroundTransfer.dll
[2016/09/07 13:20:23 | 002,800,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\netshell.dll
[2016/09/07 13:20:16 | 001,385,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\usercpl.dll
[2016/09/07 13:20:05 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dmenrollengine.dll
[2016/09/07 13:20:02 | 000,900,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Networking.BackgroundTransfer.dll
[2016/09/07 13:20:02 | 000,513,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\hnetcfg.dll
[2016/09/07 13:20:01 | 003,585,536 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SystemSettingsThresholdAdminFlowUI.dll
[2016/09/07 13:19:58 | 005,325,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Data.Pdf.dll
[2016/09/07 13:19:58 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ImplatSetup.dll
[2016/09/07 13:19:57 | 002,102,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsservices.dll
[2016/09/07 13:19:54 | 003,589,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\win32kfull.sys
[2016/09/07 13:19:46 | 001,072,128 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.Http.dll
[2016/09/07 13:19:41 | 004,169,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\UIRibbon.dll
[2016/09/07 13:19:41 | 001,997,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ActiveSyncProvider.dll
[2016/09/07 13:19:39 | 002,902,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themeui.dll
[2016/09/07 13:19:38 | 006,471,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mspaint.exe
[2016/09/07 13:19:34 | 001,141,248 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\winipcsecproc.dll
[2016/09/07 13:19:33 | 002,563,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\themecpl.dll
[2016/09/07 13:19:32 | 002,798,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.dll
[2016/09/07 13:19:31 | 001,388,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\lsasrv.dll
[2016/09/07 13:19:21 | 003,555,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xpsrchvw.exe
[2016/09/07 13:19:14 | 000,515,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\PhotoScreensaver.scr
[2016/09/07 13:19:13 | 000,503,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSync.dll
[2016/09/07 13:19:12 | 001,213,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\sdengin2.dll
[2016/09/07 13:19:11 | 004,078,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dbgeng.dll
[2016/09/07 13:19:06 | 000,733,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rasapi32.dll
[2016/09/07 13:19:03 | 002,610,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\NetworkMobileSettings.dll
[2016/09/07 13:18:41 | 007,536,640 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstscax.dll
[2016/09/07 13:18:38 | 000,451,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsDocumentTargetPrint.dll
[2016/09/07 13:18:30 | 003,577,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\tquery.dll
[2016/09/07 13:18:25 | 000,450,560 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SyncController.dll
[2016/09/07 13:18:18 | 002,876,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Wpc.dll
[2016/09/07 13:18:15 | 000,592,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Web.dll
[2016/09/07 13:18:13 | 004,826,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\ExplorerFrame.dll
[2016/09/07 13:18:01 | 005,503,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d2d1.dll
[2016/09/07 13:18:01 | 005,205,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\BingMaps.dll
[2016/09/07 13:17:55 | 001,526,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Xaml.Phone.dll
[2016/09/07 13:17:41 | 001,674,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\quartz.dll
[2016/09/07 13:17:40 | 002,285,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\WpcWebSync.dll
[2016/09/07 13:17:36 | 005,123,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dbgeng.dll
[2016/09/07 13:17:33 | 003,459,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UIRibbon.dll
[2016/09/07 13:17:30 | 002,062,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\MFMediaEngine.dll
[2016/09/07 13:17:25 | 002,679,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\netshell.dll
[2016/09/07 13:17:03 | 002,175,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentServer.dll
[2016/09/07 13:16:58 | 001,582,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Immersive.dll
[2016/09/07 13:16:56 | 001,984,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mssrch.dll
[2016/09/07 13:16:56 | 000,162,816 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\enrollmentapi.dll
[2016/09/07 13:16:47 | 002,361,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mmcndmgr.dll
[2016/09/07 13:16:38 | 002,746,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.StateRepository.dll
[2016/09/07 13:16:38 | 001,676,800 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XpsPrint.dll
[2016/09/07 13:16:35 | 002,217,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Wpc.dll
[2016/09/07 13:16:34 | 002,155,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\authui.dll
[2016/09/07 13:16:33 | 002,444,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\twinui.appcore.dll
[2016/09/07 13:16:32 | 002,911,744 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\CertEnroll.dll
[2016/09/07 13:16:32 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsPrint.dll
[2016/09/07 13:16:31 | 002,680,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msftedit.dll
[2016/09/07 13:16:25 | 000,574,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hgcpl.dll
[2016/09/07 13:16:24 | 001,194,496 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.UI.Xaml.Phone.dll
[2016/09/07 13:16:17 | 000,314,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XpsDocumentTargetPrint.dll
[2016/09/07 13:16:08 | 004,412,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ExplorerFrame.dll
[2016/09/07 13:16:00 | 002,597,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mssrch.dll
[2016/09/07 13:15:54 | 002,604,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CertEnroll.dll
[2016/09/07 13:15:53 | 001,755,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dui70.dll
[2016/09/07 13:15:52 | 002,067,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\AppXDeploymentExtensions.dll
[2016/09/07 13:15:50 | 000,573,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\UserLanguagesCpl.dll
[2016/09/07 13:15:36 | 001,556,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\OpcServices.dll
[2016/09/07 13:15:31 | 001,626,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dwmcore.dll
[2016/09/07 13:15:27 | 002,772,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\tquery.dll
[2016/09/07 13:15:27 | 000,416,256 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\hnetcfg.dll
[2016/09/07 13:15:24 | 007,831,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Chakra.dll
[2016/09/07 13:15:22 | 000,835,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.Media.Streaming.dll
[2016/09/07 13:15:20 | 002,055,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\OpcServices.dll
[2016/09/07 13:15:20 | 001,249,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\usercpl.dll
[2016/09/07 13:15:17 | 005,659,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Chakra.dll
[2016/09/07 13:15:08 | 001,448,960 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\dui70.dll
[2016/09/07 13:15:07 | 001,121,792 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\localspl.dll
[2016/09/07 13:14:58 | 006,743,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstscax.dll
[2016/09/07 13:14:54 | 003,355,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msftedit.dll
[2016/09/07 13:14:54 | 001,946,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dwmcore.dll
[2016/09/07 13:14:43 | 004,895,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\jscript9.dll
[2016/09/07 13:14:39 | 003,351,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msi.dll
[2016/09/07 13:14:37 | 001,708,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\ActiveSyncProvider.dll
[2016/09/07 13:14:31 | 001,487,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SpeechPal.dll
[2016/09/07 13:14:12 | 002,000,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\twinui.appcore.dll
[2016/09/07 13:14:08 | 001,097,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\dosvc.dll
[2016/09/07 13:14:05 | 002,519,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\themecpl.dll
[2016/09/07 13:13:45 | 002,874,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mmcndmgr.dll
[2016/09/07 13:13:32 | 004,171,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcorets.dll
[2016/09/07 13:13:22 | 000,711,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3D12.dll
[2016/09/07 13:13:13 | 000,984,576 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\SettingSyncCore.dll
[2016/09/07 13:13:04 | 001,390,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.UI.Shell.dll
[2016/09/07 13:12:58 | 002,180,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\Windows.StateRepository.dll
[2016/09/07 13:12:51 | 002,632,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\rdpcore.dll
[2016/09/07 13:12:50 | 000,899,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3D12.dll
[2016/09/07 13:12:29 | 001,036,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\Windows.Media.Streaming.dll
[2016/09/07 13:12:12 | 000,754,176 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\SettingSyncCore.dll
[2016/09/07 13:12:02 | 000,339,456 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certcli.dll
[2016/09/07 13:11:58 | 000,459,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certcli.dll
[2016/09/07 13:11:49 | 003,294,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\mstsc.exe
[2016/09/07 13:11:35 | 003,053,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\rdpcore.dll
[2016/09/07 13:11:26 | 003,065,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\mstsc.exe
[2016/09/07 13:11:14 | 000,621,568 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\DbgModel.dll
[2016/09/07 13:11:04 | 000,958,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RemoteNaturalLanguage.dll
[2016/09/07 13:10:56 | 000,712,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\RemoteNaturalLanguage.dll
[2016/09/07 13:10:48 | 000,438,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\DbgModel.dll
[2016/09/07 13:10:38 | 001,035,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\TSWorkspace.dll
[2016/09/07 13:10:38 | 000,770,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\certca.dll
[2016/09/07 13:10:25 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\certca.dll
[2016/09/07 13:10:22 | 001,087,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\reseteng.dll
[2016/09/07 13:10:19 | 000,341,504 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\RADCUI.dll
[2016/09/07 13:09:50 | 000,058,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\csrsrv.dll
[2016/09/07 13:09:47 | 000,824,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\adtschema.dll
[2016/09/07 13:09:47 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\msobjs.dll
[2016/09/07 13:09:45 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysNative\drivers\ahcache.sys
[2016/09/07 13:09:34 | 000,824,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\adtschema.dll
[2016/09/07 13:09:34 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\msobjs.dll
[2016/09/07 12:57:53 | 000,461,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\CoreMessaging.dll
[2016/09/07 10:00:59 | 000,828,408 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe
[2016/09/07 10:00:59 | 000,176,632 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl
[2016/09/05 09:37:39 | 000,445,765 | ---- | M] () -- C:\WINDOWS\SysNative\ApnDatabase.xml
[2 C:\WINDOWS\SysWow64\*.tmp files -> C:\WINDOWS\SysWow64\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2016/09/23 20:33:22 | 000,000,000 | -HS- | C] () -- C:\DkHyperbootSync
[2016/09/23 20:33:22 | 000,000,000 | -HS- | C] () -- \DkHyperbootSync
[2016/09/21 20:38:40 | 000,000,214 | ---- | C] () -- C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job
[2016/09/21 20:30:45 | 000,001,171 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2016/09/20 21:36:32 | 000,001,162 | ---- | C] () -- C:\Users\Public\Desktop\herdProtect.lnk
[2016/09/19 07:04:43 | 000,000,863 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2016/09/18 22:08:10 | 000,001,115 | ---- | C] () -- C:\Users\Public\Desktop\PDF-XChange Editor.lnk
[2016/09/18 20:08:45 | 002,656,952 | ---- | C] () -- C:\WINDOWS\SysNative\CoreUIComponents.dll
[2016/09/18 20:08:18 | 000,445,765 | ---- | C] () -- C:\WINDOWS\SysNative\ApnDatabase.xml
[2016/09/18 20:06:47 | 001,862,000 | ---- | C] () -- C:\WINDOWS\SysWow64\CoreUIComponents.dll
[2016/07/15 21:16:47 | 000,074,703 | ---- | C] () -- C:\WINDOWS\SysWow64\mfc45.dat
[2016/04/13 19:18:46 | 000,162,816 | ---- | C] () -- C:\WINDOWS\SysWow64\MTF.dll
[2015/12/21 20:47:47 | 3392,266,240 | -HS- | C] () -- \hiberfil.sys
[2015/12/21 20:16:53 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
[2015/12/21 20:12:08 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2015/10/30 16:24:43 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat
[2015/10/30 16:24:43 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT
[2015/10/30 16:18:39 | 000,164,224 | ---- | C] () -- C:\WINDOWS\SysWow64\weretw.dll
[2015/10/30 16:18:36 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat
[2015/10/30 16:18:36 | 000,047,104 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll
[2015/10/30 16:18:34 | 000,019,968 | ---- | C] () -- C:\WINDOWS\SysWow64\GamePanelExternalHook.dll
[2015/10/30 16:18:31 | 000,252,928 | ---- | C] () -- C:\WINDOWS\SysWow64\Windows.Perception.Stub.dll
[2015/10/30 16:18:31 | 000,029,184 | ---- | C] () -- C:\WINDOWS\SysWow64\dtdump.exe
[2015/10/30 16:18:29 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll
[2015/10/30 16:18:29 | 000,293,376 | ---- | C] () -- C:\WINDOWS\SysWow64\HrtfApo.dll
[2015/10/30 16:18:26 | 000,022,528 | ---- | C] () -- C:\WINDOWS\SysWow64\efsext.dll
[2015/10/30 16:18:25 | 000,002,269 | ---- | C] () -- C:\WINDOWS\SysWow64\WimBootCompress.ini
[2015/10/30 16:18:23 | 000,167,640 | ---- | C] () -- C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat
[2015/10/30 16:17:40 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin
[2015/07/28 17:01:38 | 000,047,643 | ---- | C] () -- \Hotfix.ini
[2015/07/28 16:41:40 | 014,590,296 | ---- | C] () -- \Ti10UnTool_JP.exe
[2015/07/22 12:02:06 | 001,041,920 | ---- | C] () -- \TMPatch.exe
[2015/01/16 20:45:29 | 000,123,216 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPrinterDB.dat
[2015/01/16 20:45:29 | 000,063,296 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern4.dat
[2015/01/16 20:45:29 | 000,055,809 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern1.dat
[2015/01/16 20:45:29 | 000,038,886 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern2.dat
[2015/01/16 20:45:29 | 000,034,754 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPresetData_JP.dat
[2015/01/16 20:45:29 | 000,029,463 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern121.dat
[2015/01/16 20:45:29 | 000,026,873 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern131.dat
[2015/01/16 20:45:29 | 000,021,819 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern5.dat
[2015/01/16 20:45:29 | 000,017,411 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern3.dat
[2015/01/16 20:45:29 | 000,008,880 | ---- | C] () -- C:\WINDOWS\SysWow64\EPPICPattern6.dat
[2015/01/16 20:45:29 | 000,000,097 | ---- | C] () -- C:\WINDOWS\SysWow64\PICSDK.ini
[2014/11/22 11:44:55 | 000,074,703 | ---- | C] () -- C:\WINDOWS\SysWow64\mfc45.dll
[2014/11/22 10:13:26 | 268,435,456 | -HS- | C] () -- \swapfile.sys
[2012/07/26 17:18:43 | 000,398,156 | RHS- | C] () -- \bootmgr
[2012/07/26 17:18:43 | 000,000,001 | -HS- | C] () -- \BOOTNXT

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2016/09/20 22:06:59 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\windows.storage.dll -- [2016/09/07 14:23:32 | 006,605,544 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\windows.storage.dll -- [2016/09/07 14:21:01 | 005,240,952 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2015/10/30 16:17:43 | 000,987,648 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2015/10/30 16:18:21 | 000,765,440 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2016/09/07 13:35:09 | 000,518,656 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
  • なおき
  • 2016/09/24 (Sat) 22:22:38
OTLスキャンログです
OTL.txt 続きです

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]
[2015/01/23 19:49:43 | 000,000,000 | RH-D | M] -- C:\MSOCache
[2016/09/21 20:30:42 | 000,000,000 | -H-D | M] -- C:\ProgramData
[2016/07/19 20:21:56 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\InstallShield Installation Information
[2015/01/16 19:32:43 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\Temp
[2014/11/22 11:26:01 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\Sony\VAIO Startup Setting Tool
[2016/09/23 20:00:48 | 000,000,000 | -H-D | M] -- C:\Program Files\WindowsApps
[2016/06/18 16:23:48 | 000,000,000 | -H-D | M] -- C:\Program Files\Intel\WiFi\bin\WLANProfiles
[2015/02/17 17:49:13 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\BDNAV
[2016/09/17 16:42:44 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser
[2016/01/13 20:09:55 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CAE\4c400190
[2015/02/18 18:26:08 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\OLRSubmission.exe
[2015/07/16 21:18:43 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\Power2GoExpress8.exe
[2016/06/05 16:39:11 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PowerDVD.exe
[2016/06/04 12:12:51 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PowerDVD12.exe
[2016/01/13 20:10:18 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PowerDVD12ML.exe
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PS.exe
[2015/02/17 17:49:16 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\Setup.exe
[2015/02/17 17:47:49 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\ToGo
[2015/02/18 18:26:08 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CLUpdater\Power2Go\8.0
[2016/01/13 20:11:08 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CLUpdater\PowerDVD\12.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\CLUpdater\PowerStarter\10.0
[2015/02/17 19:15:55 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser\MEDIASHOW\6.0
[2015/02/17 19:15:55 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser\PhotoDirector\4.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser\POWER2GO\8.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser\POWERBACKUP\2.50
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser\POWERDIRECTOR\10.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser\POWERDVD\12.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\CyberLink\EvoParser\PowerStarter\10.0
[2015/08/07 21:24:05 | 000,000,000 | -H-D | M] -- C:\ProgramData\EPSON\PRINTER
[2015/12/21 21:12:42 | 000,000,000 | -H-D | M] -- C:\ProgramData\EPSON\EPSON EP-901A\Language
[2016/06/18 16:23:32 | 000,000,000 | -H-D | M] -- C:\ProgramData\Intel\Wireless\Settings
[2015/01/20 20:48:38 | 000,000,000 | -H-D | M] -- C:\ProgramData\Intel\Wireless\WLANProfiles
[2015/10/30 16:24:24 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\WwanSvc
[2015/12/21 21:24:12 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\Windows\DeviceMetadataCache\dmrccache\downloads
[2016/07/15 21:16:43 | 000,000,000 | RH-D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care
[2015/10/30 16:24:24 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\WwanSvc\DMProfiles
[2015/10/30 16:24:24 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\WwanSvc\Profiles
[2014/11/22 11:06:27 | 000,000,000 | -H-D | M] -- C:\ProgramData\Roaming\Intel\Wireless\Settings
[2015/12/21 21:14:56 | 000,000,000 | RH-D | M] -- C:\Users\Default
[2015/01/16 18:33:47 | 000,000,000 | -H-D | M] -- C:\Users\Administrator\Roaming\Intel\Wireless\Settings
[2015/02/17 17:49:13 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\BDNAV
[2016/09/17 16:42:44 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser
[2016/01/13 20:09:55 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CAE\4c400190
[2015/02/18 18:26:08 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\OLRSubmission.exe
[2015/07/16 21:18:43 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\Power2GoExpress8.exe
[2016/06/05 16:39:11 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PowerDVD.exe
[2016/06/04 12:12:51 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PowerDVD12.exe
[2016/01/13 20:10:18 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PowerDVD12ML.exe
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\PS.exe
[2015/02/17 17:49:16 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\Setup.exe
[2015/02/17 17:47:49 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CBE\D8D760AC-ACA2-493e-9623-61E9D47DE89C\ToGo
[2015/02/18 18:26:08 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CLUpdater\Power2Go\8.0
[2016/01/13 20:11:08 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CLUpdater\PowerDVD\12.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\CLUpdater\PowerStarter\10.0
[2015/02/17 19:15:55 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser\MEDIASHOW\6.0
[2015/02/17 19:15:55 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser\PhotoDirector\4.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser\POWER2GO\8.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser\POWERBACKUP\2.50
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser\POWERDIRECTOR\10.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser\POWERDVD\12.0
[2016/09/17 17:10:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CyberLink\EvoParser\PowerStarter\10.0
[2015/08/07 21:24:05 | 000,000,000 | -H-D | M] -- C:\Users\All Users\EPSON\PRINTER
[2015/12/21 21:12:42 | 000,000,000 | -H-D | M] -- C:\Users\All Users\EPSON\EPSON EP-901A\Language
[2016/06/18 16:23:32 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Intel\Wireless\Settings
[2015/01/20 20:48:38 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Intel\Wireless\WLANProfiles
[2015/10/30 16:24:24 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\WwanSvc
[2015/12/21 21:24:12 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\Windows\DeviceMetadataCache\dmrccache\downloads
[2016/07/15 21:16:43 | 000,000,000 | RH-D | M] -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\VAIO Care
[2015/10/30 16:24:24 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\WwanSvc\DMProfiles
[2015/10/30 16:24:24 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\WwanSvc\Profiles
[2014/11/22 11:06:27 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Roaming\Intel\Wireless\Settings
[2016/06/18 16:23:32 | 000,000,000 | -H-D | M] -- C:\Users\Default.migrated\Roaming\Intel\Wireless\Settings
[2015/10/30 16:24:24 | 000,000,000 | -H-D | M] -- C:\Users\Default\AppData
[2016/06/18 16:23:32 | 000,000,000 | -H-D | M] -- C:\Users\DefaultAccount\Roaming\Intel\Wireless\Settings
[2015/01/16 18:33:47 | 000,000,000 | -H-D | M] -- C:\Users\Guest\Roaming\Intel\Wireless\Settings
[2015/01/20 20:48:42 | 000,000,000 | -H-D | M] -- C:\Users\HomeGroupUser$\Roaming\Intel\Wireless\Settings
[2016/09/18 20:37:35 | 000,000,000 | RH-D | M] -- C:\Users\Public\AccountPictures
[2016/09/21 20:30:45 | 000,000,000 | RH-D | M] -- C:\Users\Public\Desktop
[2015/12/21 21:06:23 | 000,000,000 | RH-D | M] -- C:\Users\Public\Libraries
[2015/02/17 19:15:50 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg
[2015/02/17 19:15:50 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{0E664C43-955A-44a4-9262-599F535207E1}\Version\10.0
[2015/02/17 19:15:50 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{29964B14-C117-46b6-B108-11F211ED9388}\Version\6.0
[2015/02/17 19:15:50 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{397A21FB-EADF-4116-9027-32B8FA04C3E2}\Version\8.0
[2015/02/17 19:15:50 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{63E98B26-4583-4418-958D-B6BD95DFE5C9}\Version\2.50
[2015/02/17 19:15:50 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{6F7425F3-EB34-46b0-9B63-430203611455}\Version\12.0
[2016/09/17 17:10:23 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{748DB920-B5DD-4cdb-9EC4-5A3B61A21936}\Version\10.0
[2015/02/17 19:15:50 | 000,000,000 | -H-D | M] -- C:\Users\Public\CyberLink\OLReg\HKEY_CLASS_ROOT\CLSID\{A2540FA5-4E6F-4a42-A327-D947EC8F2323}\Version\4.0
[2014/11/22 11:06:27 | 000,000,000 | -H-D | M] -- C:\Users\Public\Roaming\Intel\Wireless\Settings
[2015/12/21 20:33:34 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData
[2015/01/19 19:28:29 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
[2016/01/13 21:36:08 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Local\Microsoft\Media Player\アート キャッシュ
[2016/07/29 18:45:04 | 000,000,000 | RH-D | M] -- C:\Users\user\AppData\Local\Microsoft\Windows\Burn\Burn
[2016/07/23 09:28:33 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Content.MSO
[2015/12/21 21:23:29 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Virtualized
[2016/09/17 19:38:07 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Local\Microsoft\Windows\INetCache\Virtualized\C\Users\user\AppData\Local\Microsoft\Windows\INetCookies\PrivacIE\Low
[2015/02/17 17:41:36 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Roaming\CyberLink\MediaCache
[2015/02/18 18:50:28 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Roaming\CyberLink\Power2Go8
[2015/07/16 21:18:43 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Roaming\CyberLink\Power2Go8\8.0
[2015/01/05 15:45:14 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Roaming\Intel\Wireless\Settings
[2015/01/05 15:45:14 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Roaming\Intel\Wireless\WLANProfiles
[2015/12/21 21:06:09 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2016/09/04 07:36:19 | 000,000,000 | -H-D | M] -- C:\Users\user\AppData\Roaming\Real\RPDS\Cache\08A37BC9FAC94f17B675AB5BB7B8521C
[2015/12/21 20:22:49 | 000,000,000 | RH-D | M] -- C:\Users\user\Documents\My Music
[2015/12/21 20:22:49 | 000,000,000 | RH-D | M] -- C:\Users\user\Documents\My Videos
[2015/01/19 20:12:23 | 000,000,000 | -H-D | M] -- C:\Users\user\Documents\My Pictures\ピクチャー\新しいフォルダ
[2015/01/19 19:56:23 | 000,000,000 | -H-D | M] -- C:\Users\user\Documents\My Pictures\ピクチャー\My Pictures\携帯a
[2015/01/23 20:13:30 | 000,000,000 | -H-D | M] -- C:\Users\user\Documents\個人用図形\_private
[2015/01/19 20:12:23 | 000,000,000 | -H-D | M] -- C:\Users\user\Pictures\ピクチャー\新しいフォルダ
[2015/01/19 19:56:23 | 000,000,000 | -H-D | M] -- C:\Users\user\Pictures\ピクチャー\My Pictures\携帯a
[2014/11/22 11:06:27 | 000,000,000 | -H-D | M] -- C:\Users\user\Roaming\Intel\Wireless\Settings
[2016/08/25 20:43:47 | 000,000,000 | -H-D | M] -- C:\Windows\ELAMBKUP
[2015/12/21 20:35:52 | 000,000,000 | -H-D | M] -- C:\Windows\ServiceProfiles\LocalService\AppData
[2015/12/21 20:35:53 | 000,000,000 | -H-D | M] -- C:\Windows\ServiceProfiles\NetworkService\AppData
[2015/12/21 20:38:57 | 000,000,000 | -H-D | M] -- C:\WINDOWS\SysNative\WLANProfiles

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2016/09/18 20:34:31 | 000,000,892 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player PPAPI Notifier.job
[2016/09/24 21:48:01 | 000,000,626 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
[2016/09/21 20:38:40 | 000,000,214 | ---- | M] () -- C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job
[2016/09/24 21:21:22 | 000,000,704 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2016/09/23 22:09:00 | 000,000,708 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2015/08/07 21:12:16 | 000,000,264 | ---- | M] () -- C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: WDC WD10S12X-55JTET0
Partitions: 7
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE1 - External hard disk media
Interface type: USB
Media Type: External hard disk media
Model: BUFFALO HD-PZNU3 USB Device
Partitions: 1
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 260.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 1.00GB
Starting Offset: 273678336
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: GPT: System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 260.00MB
Starting Offset: 1819279360
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: GPT: Basic Data
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 897.00GB
Starting Offset: 2226126848
Hidden sectors: 0


DeviceID: Disk #0, Partition #4
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 466.00MB
Starting Offset: 965026512896
Hidden sectors: 0


DeviceID: Disk #0, Partition #5
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 32.00GB
Starting Offset: 965515149312
Hidden sectors: 0


DeviceID: Disk #0, Partition #6
PartitionType: GPT: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 15.00GB
Starting Offset: 1000204886016
Hidden sectors: 0


DeviceID: Disk #1, Partition #0
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 931.00GB
Starting Offset: 1048576
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
No service found with a name of AeLookupSvc
SRV:[b]64bit:[/b] - [2015/10/30 16:17:52 | 000,094,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:43 | 000,097,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2016/09/07 13:30:45 | 001,144,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2016/03/29 14:27:28 | 000,794,112 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:53 | 000,097,792 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV - [2015/10/30 16:18:26 | 000,070,656 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,473,088 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2015/10/30 16:18:25 | 000,345,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2016/03/29 16:46:28 | 000,134,656 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2016/05/28 13:22:43 | 000,079,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:30:20 | 000,904,704 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2016/05/28 13:19:15 | 000,355,840 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2016/05/28 13:15:54 | 000,293,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2016/03/29 16:34:51 | 000,284,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2016/09/07 13:36:48 | 000,112,640 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (Eaphost)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:51 | 000,036,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2015/10/30 16:18:25 | 000,031,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2016/02/23 16:52:09 | 000,456,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2016/05/28 13:18:04 | 000,392,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2016/09/07 13:36:00 | 000,467,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
No service found with a name of MMCSS
SRV:[b]64bit:[/b] - [2016/09/07 13:34:52 | 000,265,728 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:39 | 000,547,840 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2015/10/30 16:19:25 | 000,371,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:03 | 000,030,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:48 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2016/09/07 13:28:54 | 000,755,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
No service found with a name of ProtectedStorage
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2016/01/16 14:40:12 | 000,106,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:40 | 000,696,320 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2016/09/07 13:30:20 | 000,904,704 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2016/02/24 16:19:56 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2016/09/07 14:11:50 | 000,057,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2016/05/28 13:21:27 | 000,190,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:53 | 000,283,136 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:16 | 000,608,768 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2015/10/30 16:18:38 | 000,559,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2016/09/07 13:30:53 | 001,001,472 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:10 | 000,311,808 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2015/10/30 16:18:36 | 000,254,976 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2015/10/30 16:18:14 | 000,059,392 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2016/03/29 16:30:49 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:29:15 | 001,465,344 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2016/09/07 13:30:17 | 001,054,208 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (Audiosrv)
SRV:[b]64bit:[/b] - [2016/02/23 17:28:32 | 000,275,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2016/07/01 12:50:20 | 000,150,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2016/09/07 14:23:07 | 000,024,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2016/09/07 13:27:37 | 001,743,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (EventLog)
SRV:[b]64bit:[/b] - [2016/04/23 13:14:30 | 000,870,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2016/09/07 13:32:22 | 000,643,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:43 | 000,066,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysNative\msiexec.exe -- (msiserver)
SRV - [2015/10/30 16:18:21 | 000,058,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:45 | 000,225,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2016/09/07 13:16:39 | 002,280,960 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:39 | 000,264,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2016/09/07 13:19:37 | 002,295,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (WlanSvc)
SRV:[b]64bit:[/b] - [2015/10/30 16:17:53 | 000,274,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]
[2015/07/28 16:41:40 | 014,590,296 | ---- | M] (Trend Micro Inc.) -- C:\Ti10UnTool_JP.exe
[2015/07/22 12:02:06 | 001,041,920 | ---- | M] (Trend Micro Inc.) -- C:\TMPatch.exe

[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2016/02/28 20:21:08 | 000,002,274 | ---- | M] ()(C:\Users\Public\Desktop\VAIO TV with nasne?.lnk) -- C:\Users\Public\Desktop\VAIO TV with nasne™.lnk
[2016/02/28 20:21:08 | 000,002,274 | ---- | C] ()(C:\Users\Public\Desktop\VAIO TV with nasne?.lnk) -- C:\Users\Public\Desktop\VAIO TV with nasne™.lnk

< End of report >
  • なおき
  • 2016/09/24 (Sat) 22:23:50
次はOTLで掃除です
作業と報告、ご苦労様です。
OTLのスキャンログを見せてもらいました。
まだhao123のエントリ等が残ってましたね。

では遅くなりましたが早速次の作業にかかりますか。
今度はOTLで見つかったモノをOTLから掃除にかかります。

このレスの最後にスクリプトを貼っておくので、それを丸ごとコピーして、それをWindowsのメモ帳ファイルに貼り付けて保存しておいてください。

用意できたらPCをまたセーフモードで再起動してOTL起動してください。
起動したらOTLのウインドウ下部にスクリプトを貼り付けて、今度は「Run fix」(赤字のボタン)を押してください。
これでOTLでの処置が開始されます。

しばらく待って処置ができたらPCを通常モードで再起動すると、またOTLのログが出るはずなので、それを保存してから、しばらく様子見の後、OTLのログとともに状態報告をレスください。
OTLのスクリプトは以下になります。破線(-----)を含まない箇所を丸ごとコピーして、それをOTLに貼って作業してください
------------------------------------------
:OTL
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = F5 A4 45 A3 09 12 D2 01 [binary data]
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = F5 A4 45 A3 09 12 D2 01 [binary data]
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install

:Files

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------------------------------------------
  • 悪代官
  • 2016/09/25 (Sun) 20:31:38
OTLのログです
ご確認ご指示ありがとうございます。

しばらく様子見の後ですが、エッジのアイコンが消えました。
そのほかは画像が一部表示されない他は特に変わりはありません。

09262016_184421.log

All processes killed
========== OTL ==========
HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page_TIMESTAMP| /E : value set successfully!
HKU\S-1-5-21-1473726748-1913700360-998798094-1001\SOFTWARE\Microsoft\Internet Explorer\Main\\SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy| /E : value set successfully!
Unable to set value : HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E!
Unable to set value : HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page_TIMESTAMP| /E!
Unable to set value : HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main\\SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy| /E!
Unable to set value : HKEY_USERS\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E!
Registry key HKEY_USERS\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\SearchScopes\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}\ not found.
Unable to set value : HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E!
Unable to set value : HKU\S-1-5-21-1473726748-1913700360-998798094-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyOverride| /E!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
File rity] not found.
File sethosts] not found.
File ptytemp] not found.
File eaterestorepoint] not found.
File boot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 09262016_184421

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • なおき
  • 2016/09/26 (Mon) 20:08:26
Edge自体は起動できますか?
作業と報告、ご苦労様です。

>しばらく様子見の後ですが、エッジのアイコンが消えました。
>そのほかは画像が一部表示されない他は特に変わりはありません

はい、異常が治まっているのはいいとして、Edgeアイコンが消えましたか。
スタートメニューからならEdge起動できますか?
一応起動できるならそこは今は置いとくとしましょう。
アイコンだけなら復旧可能でしょうし。

ログも見せてもらいましたが、OTLでの掃除もできたようですね。
対象エントリもsuccessfully(処置成功)になってます。
OTLは準備時の説明に沿って片付けてください。

ではここで全体の状態を各ログから見直します。
お手数ですがまたHJTログと、CCでインストール情報ログと各タブのログを取り直して、それらをレスで見せてください。
各ログでまた問題点がないかを洗い直しましょう
  • 悪代官
  • 2016/09/26 (Mon) 20:25:08
各ログです。
こんばんは。
ご確認ご指示ありがとうございます。

エッジの方の動作は確認することが出来ません。
スタートメニューが動作いたしません。(かなり前の作業時から記憶では初回のHJT作業以降)
後は各サイトにてログインIDやPASSがクリアされてしまい毎回撃ち込まなくてはいけない様になりました。
タクスビューボタンも辛うじてIEだけになりました。

hijackthis.log

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 21:28:46, on 2016/09/26
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0589)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Users\user\Desktop\HijackThis.exe

O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
O4 - HKCU\..\Run: [EPSON EP-901A] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Windows\TEMP\E_S673A.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [EPSON539D89] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Users\user\AppData\Local\Temp\E_S7579.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - c:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BrcmSetSecurity - Intel - C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\CyberLink\Digital Media Player Library v4\Player\Binary\CLHNServer\CLHNService.exe
O23 - Service: CyberLink Product - 2015/02/17 17:49:16 (CLKMSVC10_99E320F5) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\kmsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Boot Delay Start Service (McBootDelayStartSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: McAfee Module Core Service (ModuleCoreService) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NetworkSupport - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: Intel Security PEF Service (PEFService) - Intel Security, Inc. - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: RealPlayer Update Service (RealPlayerUpdateSvc) - Unknown owner - C:\Program Files (x86)\Real\UpdateService\RealPlayerUpdateSvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VCService - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update\vuagent.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Boost - Western Digital - C:\Program Files\Western Digital\WD Boost\WDBoost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 15858 bytes


  • なおき
  • 2016/09/26 (Mon) 21:44:54
CC install.txtです。
CC install.txtです。

ACID Music Studio 9.0 Sony 2014/11/22 59.5 MB 9.0.35
Adobe Flash Player 23 NPAPI Adobe Systems Incorporated 2016/09/18 6.20 MB 23.0.0.162
Adobe Flash Player 23 PPAPI Adobe Systems Incorporated 2016/09/18 19.5 MB 23.0.0.162
Adobe Photoshop Elements 11 Adobe Systems Incorporated 2016/09/23 305 MB 11.0
Apple Application Support(32 ビット) Apple Inc. 2016/08/14 152 MB 4.3.2
Apple Application Support(64 ビット) Apple Inc. 2016/08/14 170 MB 4.3.2
Apple Mobile Device Support Apple Inc. 2016/03/25 41.8 MB 9.3.0.15
Apple Software Update Apple Inc. 2016/03/10 4.91 MB 2.2.0.150
Bonjour Apple Inc. 2015/09/29 3.28 MB 3.1.0.1
CCleaner Piriform 2016/09/23 18.3 MB 5.22
CyberLink Media Suite 10 CyberLink Corp. 2015/12/29 105 MB 10.0
DVD Architect Studio 5.0 Sony 2014/11/22 61.1 MB 5.0.161
Epson E-Photo SEIKO EPSON CORPORATION 2015/01/16 75.2 MB 1.5.1.0
Epson E-Web Print SEIKO EPSON CORPORATION 2015/01/16 18.4 MB 1.21.0000
EPSON EP-901A プリンタ アンインストール SEIKO EPSON Corporation 2015/12/21
Epson Event Manager Seiko Epson Corporation 2015/01/16 68.9 MB 3.10.0035
EPSON Scan 2015/12/21
Google Chrome Google Inc. 2015/01/16 403 MB 53.0.2785.116
Google Toolbar for Internet Explorer Google Inc. 2016/09/25 7.5.7619.1252
herdProtect Anti-Malware Scanner Reason Company Software Inc. 2016/09/23 7.96 MB 1.0
iCloud Apple Inc. 2016/08/14 162 MB 5.2.2.87
Intel Collaborative Processor Performance Control Intel Corporation 2015/12/29 2.07 MB 1.0.0.1015
Intel(R) Management Engine Components Intel Corporation 2014/11/22 9.5.3.1520
Intel(R) Processor Graphics Intel Corporation 2016/01/30 20.19.15.4331
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed 2015/01/16
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel Corporation 2014/11/22 76.4 MB 3.1.1307.0362
Intel(R) WiDi Intel Corporation 2014/11/22 169 MB 4.1.19.0
iTunes Apple Inc. 2016/08/14 282 MB 12.4.3.1
Malwarebytes Anti-Malware バージョン 2.2.1.1043 Malwarebytes 2016/09/21 56.7 MB 2.2.1.1043
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/09/23 1.91 GB 15.0.4859.1002
Microsoft Silverlight Microsoft Corporation 2016/09/18 143 MB 5.1.50709.0
Microsoft Visio Professional 2013 Microsoft Corporation 2016/09/23 23.4 MB 15.0.4569.1506
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2015/01/16 580 KB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2015/01/16 1.34 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/02/17 460 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2015/02/17 15.7 MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/01/18 1.15 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/01/16 27.7 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/01/16 22.2 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2016/02/28 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2016/09/23 13.6 MB 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2016/09/23 13.6 MB 10.0.50903
Movie Studio Platinum 12.0 (64-bit) Sony 2014/11/22 437 MB 12.0.756
NAVI*STUDIO Raku-Lite PIONEER CORPORATION 2016/04/19 7.98 MB 1.117
Norton Online Backup Symantec Corporation 2014/11/22 17.7 MB 2.7.0.24
NXPProximityInstaller NXP Semiconductors 2015/12/21 10.6 MB 6.5.2.0
PDF-XChange Editor Tracker Software Products (Canada) Ltd. 2016/09/23 333 MB 6.0.318.0
PhotoWizard Microsoft 2014/11/22 661 MB 1.5.0
PlayMemories Home Sony Corporation 2015/09/09 306 MB 5.0.00.08250
Realtek Card Reader Realtek Semiconductor Corp. 2016/01/26 11.5 MB 10.0.10240.21283
Realtek Ethernet Controller Driver Realtek 2015/01/20 3.37 MB 8.34.617.2014
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2015/12/29 38.5 MB 6.0.1.7535
Sound Forge Audio Studio 10.0 Sony 2014/11/22 61.7 MB 10.0.178
Synaptics Pointing Device Driver Synaptics Incorporated 2015/12/21 46.4 MB 19.0.5.0
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2015/04/11 2.30 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/04/11 26.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/04/11 34.0 KB 16.0.1016.1
VAIO - NFC Connection Utility Sony Corporation 2015/02/05 8.63 MB 1.0.0.14100
VAIO - Presentation Sync Sony Corporation 2015/02/05 24.3 MB 1.1.0.15210
VAIO - Xperia Link Sony Corporation 2015/02/03 58.7 MB 1.3.3.11280
VAIO - リモートキーボード Sony Corporation 2015/02/05 58.7 MB 1.2.0.09270
VAIO - リモートキーボード with PlayStation®3 Sony Corporation 2015/02/05 5.95 MB 1.2.1.05220
VAIO Care Sony Corporation 2016/07/15 246 MB 8.4.5.06026
VAIO Care Recovery Sony Corporation 2014/11/22 51.8 MB 1.0.2.08020
VAIO Care ハードウェア診断ツールプラグイン Sony Corporation 2015/02/05 58.7 MB 4.11.1.11210
VAIO CPU Fan診断ツール Sony Corporation 2014/11/22 58.7 MB 1.2.0.03050
VAIO Gesture Control Sony Corporation 2015/01/16 58.7 MB 2.4.1.09050
VAIO Image Optimizer Sony Corporation 2015/01/16 58.7 MB 3.3.00.10220
VAIO Improvement Sony Corporation 2014/11/22 1.12 MB 2.3.0.05230
VAIO Movie Creator Sony Corporation 2015/01/16 58.7 MB 4.3.01.11140
VAIO Sample Music Sony Corporation 2014/11/22 34.1 MB 1.0.0.03051
VAIO Touch Search Sony Corporation 2015/02/05 2.76 MB 1.1.0.1511
VAIO TV with nasne™ Sony Corporation 2016/02/28 58.7 MB 2.2.0.02160
VAIO Update Sony Corporation 2016/07/19 19.1 MB 7.2.0.16270
VAIO お引越サポート Sony Corporation 2014/11/22 58.7 MB 1.9.0.11060
VAIO の製品登録 (無料) Sony Corporation 2014/11/22 58.7 MB 7.1.0.06270
VAIO の設定 Sony Corporation 2015/01/15 58.7 MB 6.3.8.13060
VAIO データリストアツール Sony Corporation 2014/11/22 58.7 MB 1.11.0.13250
VAIO ホームネットワークビデオプレーヤー Sony Corporation 2015/01/16 139 MB 1.2.2.04020
VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン CyberLink Corp. 2015/01/16 28.9 MB 4.0
VAIO メディア サーバー設定 Sony Corporation 2014/11/22 144 MB 1.1.0.02220
WD Boost Western Digital Corporation 2014/11/22 13.4 MB 3.34.0.0
Windows Live Essentials Microsoft Corporation 2016/09/24 16.4.3528.0331
Windows Live Mail Packages 2015/12/21
はがきデザインキット Japan Post Co., Ltd. 2015/12/29 2.82 MB v9.0.2
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2016/06/24 218 MB 18.33.0
ウイルスバスター クラウド トレンドマイクロ株式会社 2014/11/22 95.9 MB 6.0
カラリオ年賀 Ver.3 2015/12/23
マカフィー インターネットセキュリティ McAfee, Inc. 2016/09/25 192 MB 15.0.166
筆ぐるめ 20 富士ソフト株式会社 2014/11/22 309 MB 20.00.0008
  • なおき
  • 2016/09/26 (Mon) 21:46:18
startup.txtです。
startup.txtです。

有効 HKCU:Run ApplePhotoStreams Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run EPSON EP-901A SEIKO EPSON CORPORATION C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Windows\TEMP\E_S673A.tmp" /EF "HKCU"
有効 HKCU:Run EPSON539D89 SEIKO EPSON CORPORATION C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\Users\user\AppData\Local\Temp\E_S7579.tmp" /EF "HKCU"
有効 HKCU:Run iCloudPhotos Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
有効 HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
無効 HKCU:Run OneDrive Microsoft Corporation "C:\Users\user\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
有効 HKCU:Run Power2GoExpress8
有効 HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
無効 HKLM:Run CLMLServer_For_P2G8 CyberLink "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
有効 HKLM:Run CLVirtualDrive CyberLink Corp. "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
有効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
有効 HKLM:Run IgfxTray Intel Corporation - pGFX "C:\WINDOWS\system32\igfxtray.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
有効 HKLM:Run RtHDVBg Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SONYAPO
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup User OneNote に送る.lnk Microsoft Corporation C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
  • なおき
  • 2016/09/26 (Mon) 21:47:32
タスク startup.txtです。
タスク startup.txtです。

有効 Task Adobe Flash Player PPAPI Notifier Adobe Systems Incorporated C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe -check pepperplugin
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task AdobeAAMUpdater-1.0-VAIO-user Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /script=mcnrdhck.lua /periodicRunCount=5
有効 Task Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /timeout=60000 /script=mcnrdhck.lua /hcmode=postdatupdate /datver=2750.0 /datupdatestatus=0
有効 Task McAfee Remediation (Prepare) McAfee, Inc. C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe /prepare
有効 Task McAfeeLogon McAfee, Inc. C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe /platui
有効 Task OneDrive Standalone Update Task Microsoft Corporation C:\Users\user\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
有効 Task Optimize Start Menu Cache Files-S-1-5-21-1473726748-1913700360-998798094-1001
有効 Task PDVDServ12 Task CyberLink Corp. C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe
有効 Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
  • なおき
  • 2016/09/26 (Mon) 21:48:51
コンテキスト startup.txtです。
コンテキスト startup.txtです。

有効 Directory FileSyncEx
有効 Drive CLVDShellExt Cyberlink C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll
有効 File FileSyncEx
有効 File CLVDShellExt Cyberlink C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll
有効 File MBAMShlExt Malwarebytes C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll
有効 File McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
有効 File PDFXChange Editor Context menu Tracker Software Products (Canada) Ltd. C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll
有効 File PhotoStreamsExt Apple Inc. C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll
有効 Folder MBAMShlExt Malwarebytes C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll
有効 Folder McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
  • なおき
  • 2016/09/26 (Mon) 21:49:59
IE startup.txtです。
IE startup.txtです。

有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Helper E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
有効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Toolbar E-Photo SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
有効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
  • なおき
  • 2016/09/26 (Mon) 21:51:04
GC startup.txtです。
GC startup.txtです。

有効 App Gmail 8.1 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_1
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App Google ドライブ 14.1 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0
有効 App YouTube 4.2.8 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_1
有効 Extension Google オフライン ドキュメント 1.4 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_0
有効 Extension Google スプレッドシート 1.1 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\user\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_1
  • なおき
  • 2016/09/26 (Mon) 21:52:08
補足です。
LIVE MAIL等メールソフトも消えてしまいました。
スタートメニューボタンを左クリックで反応なしです。
右クリックはOKです。
タスクバーにはIEのみです。

よろしくお願いいたします。
  • なおき
  • 2016/09/26 (Mon) 21:58:58
IEでは出ずにEdgeだけでの不具合というのが妙です
作業と報告、ご苦労様です。
現在の各ログを見せてもらいました。

>エッジの方の動作は確認することが出来ません

はい、Edgeは詰まっているようですがIEやChromeは正常に動作するなら何とかいいかと思います。
最悪の場合でもここへのレスやweb上での対処法検索に、解析処置ツールのDLも可能でしょうから。

と言っても、基本的にIEと同じMSの正規ブラウザであるEdgeで出る異常ならIEにも同様の異常が出る可能性が高いのですが、それが出ないというのはEdge側の不具合の可能性が考えられます。
実際以前からEdgeは様々なトラブルの声もネット上に上がっています。

もう一つ考えられるのはセキュリティソフトの干渉による不具合ですね。
>マカフィー インターネットセキュリティ McAfee, Inc. 2016/09/25 192 MB 15.0.166
>ウイルスバスター クラウド トレンドマイクロ株式会社 2014/11/22 95.9 MB 6.0

今はもう使ってないというバスターが残ったままではWindows自体が正常に動作しなくても当然です。

では別の手を試します。
今度は下記サイトの説明を読んでから、説明している削除ツールを用意してください。
「ESET AV Remover」
http://all-freesoft.net/system8/uninstall/eset-avremover/eset-avremover.html

これは各社のセキュリティソフトをアンインストールした後でも不正に残ってしまった場合に、その残骸を削除可能なツールです。

準備できたら説明サイトの手順に沿ってESETのツールを起動して、それでバスターの残骸が検出されたらそれを削除です。
この時間違ってマカフィーを削除しないように注意です。

このあと一度PC再起動後、そこで各ブラウザを起動してしばらく様子見後、CCでインストール情報ログだけ取り直して、それを状態報告とともにレスください
  • 悪代官
  • 2016/09/27 (Tue) 20:04:41
CCでのインストール情報です
こんばんは。
ご確認ご指示ありがとうございます。

バスターのアンインストールが出来ました。
IEでは反応が無かったので、GCで行ったところ削除する事が出来ました。

CCでのインストール情報です

ACID Music Studio 9.0 Sony 2014/11/22 59.5 MB 9.0.35
Adobe Flash Player 23 NPAPI Adobe Systems Incorporated 2016/09/18 6.20 MB 23.0.0.162
Adobe Flash Player 23 PPAPI Adobe Systems Incorporated 2016/09/18 19.5 MB 23.0.0.162
Adobe Photoshop Elements 11 Adobe Systems Incorporated 2016/09/23 305 MB 11.0
Apple Application Support(32 ビット) Apple Inc. 2016/08/14 152 MB 4.3.2
Apple Application Support(64 ビット) Apple Inc. 2016/08/14 170 MB 4.3.2
Apple Mobile Device Support Apple Inc. 2016/03/25 41.8 MB 9.3.0.15
Apple Software Update Apple Inc. 2016/03/10 4.91 MB 2.2.0.150
Bonjour Apple Inc. 2015/09/29 3.28 MB 3.1.0.1
CCleaner Piriform 2016/09/23 18.3 MB 5.22
CyberLink Media Suite 10 CyberLink Corp. 2015/12/29 105 MB 10.0
DVD Architect Studio 5.0 Sony 2014/11/22 61.1 MB 5.0.161
Epson E-Photo SEIKO EPSON CORPORATION 2015/01/16 75.2 MB 1.5.1.0
Epson E-Web Print SEIKO EPSON CORPORATION 2015/01/16 18.4 MB 1.21.0000
EPSON EP-901A プリンタ アンインストール SEIKO EPSON Corporation 2015/12/21
Epson Event Manager Seiko Epson Corporation 2015/01/16 68.9 MB 3.10.0035
EPSON Scan 2015/12/21
Google Chrome Google Inc. 2015/01/16 403 MB 53.0.2785.116
Google Toolbar for Internet Explorer Google Inc. 2016/09/27 15.1 MB 7.5.7619.1252
herdProtect Anti-Malware Scanner Reason Company Software Inc. 2016/09/23 7.96 MB 1.0
iCloud Apple Inc. 2016/08/14 162 MB 5.2.2.87
Intel Collaborative Processor Performance Control Intel Corporation 2015/12/29 2.07 MB 1.0.0.1015
Intel(R) Management Engine Components Intel Corporation 2014/11/22 9.5.3.1520
Intel(R) Processor Graphics Intel Corporation 2016/01/30 20.19.15.4331
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed 2015/01/16
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel Corporation 2014/11/22 76.4 MB 3.1.1307.0362
Intel(R) WiDi Intel Corporation 2014/11/22 169 MB 4.1.19.0
iTunes Apple Inc. 2016/08/14 282 MB 12.4.3.1
Malwarebytes Anti-Malware バージョン 2.2.1.1043 Malwarebytes 2016/09/21 56.7 MB 2.2.1.1043
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/09/23 1.91 GB 15.0.4859.1002
Microsoft Silverlight Microsoft Corporation 2016/09/18 143 MB 5.1.50709.0
Microsoft Visio Professional 2013 Microsoft Corporation 2016/09/23 23.4 MB 15.0.4569.1506
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2015/01/16 580 KB 8.0.59193
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2015/01/16 1.34 MB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/02/17 460 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2015/02/17 15.7 MB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/01/18 1.15 MB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/01/16 27.7 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/01/16 22.2 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2016/02/28 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2016/09/23 13.6 MB 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2016/09/23 13.6 MB 10.0.50903
Movie Studio Platinum 12.0 (64-bit) Sony 2014/11/22 437 MB 12.0.756
NAVI*STUDIO Raku-Lite PIONEER CORPORATION 2016/04/19 7.98 MB 1.117
Norton Online Backup Symantec Corporation 2014/11/22 17.7 MB 2.7.0.24
NXPProximityInstaller NXP Semiconductors 2015/12/21 10.6 MB 6.5.2.0
PDF-XChange Editor Tracker Software Products (Canada) Ltd. 2016/09/23 333 MB 6.0.318.0
PhotoWizard Microsoft 2014/11/22 661 MB 1.5.0
PlayMemories Home Sony Corporation 2015/09/09 306 MB 5.0.00.08250
Realtek Card Reader Realtek Semiconductor Corp. 2016/01/26 11.5 MB 10.0.10240.21283
Realtek Ethernet Controller Driver Realtek 2015/01/20 3.37 MB 8.34.617.2014
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2015/12/29 38.5 MB 6.0.1.7535
Sound Forge Audio Studio 10.0 Sony 2014/11/22 61.7 MB 10.0.178
Synaptics Pointing Device Driver Synaptics Incorporated 2015/12/21 46.4 MB 19.0.5.0
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2015/04/11 2.30 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2015/04/11 26.3 MB 16.0.1404.1
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2015/04/11 34.0 KB 16.0.1016.1
VAIO - NFC Connection Utility Sony Corporation 2015/02/05 8.63 MB 1.0.0.14100
VAIO - Presentation Sync Sony Corporation 2015/02/05 24.3 MB 1.1.0.15210
VAIO - Xperia Link Sony Corporation 2015/02/03 58.7 MB 1.3.3.11280
VAIO - リモートキーボード Sony Corporation 2015/02/05 58.7 MB 1.2.0.09270
VAIO - リモートキーボード with PlayStation®3 Sony Corporation 2015/02/05 5.95 MB 1.2.1.05220
VAIO Care Sony Corporation 2016/07/15 246 MB 8.4.5.06026
VAIO Care Recovery Sony Corporation 2014/11/22 51.8 MB 1.0.2.08020
VAIO Care ハードウェア診断ツールプラグイン Sony Corporation 2015/02/05 58.7 MB 4.11.1.11210
VAIO CPU Fan診断ツール Sony Corporation 2014/11/22 58.7 MB 1.2.0.03050
VAIO Gesture Control Sony Corporation 2015/01/16 58.7 MB 2.4.1.09050
VAIO Image Optimizer Sony Corporation 2015/01/16 58.7 MB 3.3.00.10220
VAIO Improvement Sony Corporation 2014/11/22 1.12 MB 2.3.0.05230
VAIO Movie Creator Sony Corporation 2015/01/16 58.7 MB 4.3.01.11140
VAIO Sample Music Sony Corporation 2014/11/22 34.1 MB 1.0.0.03051
VAIO Touch Search Sony Corporation 2015/02/05 2.76 MB 1.1.0.1511
VAIO TV with nasne™ Sony Corporation 2016/02/28 58.7 MB 2.2.0.02160
VAIO Update Sony Corporation 2016/07/19 19.1 MB 7.2.0.16270
VAIO お引越サポート Sony Corporation 2014/11/22 58.7 MB 1.9.0.11060
VAIO の製品登録 (無料) Sony Corporation 2014/11/22 58.7 MB 7.1.0.06270
VAIO の設定 Sony Corporation 2015/01/15 58.7 MB 6.3.8.13060
VAIO データリストアツール Sony Corporation 2014/11/22 58.7 MB 1.11.0.13250
VAIO ホームネットワークビデオプレーヤー Sony Corporation 2015/01/16 139 MB 1.2.2.04020
VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン CyberLink Corp. 2015/01/16 28.9 MB 4.0
VAIO メディア サーバー設定 Sony Corporation 2014/11/22 144 MB 1.1.0.02220
WD Boost Western Digital Corporation 2014/11/22 13.4 MB 3.34.0.0
Windows Live Essentials Microsoft Corporation 2016/09/27 16.4.3528.0331
Windows Live Mail Packages 2015/12/21
はがきデザインキット Japan Post Co., Ltd. 2015/12/29 2.82 MB v9.0.2
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2016/06/24 218 MB 18.33.0
カラリオ年賀 Ver.3 2015/12/23
マカフィー インターネットセキュリティ McAfee, Inc. 2016/09/27 192 MB 15.0.166
筆ぐるめ 20 富士ソフト株式会社 2014/11/22 309 MB 20.00.0008
  • なおき
  • 2016/09/27 (Tue) 21:02:43
バスター削除後の状態も教えてください
いつもながらレスが遅くなってごめんなさい。

>バスターのアンインストールが出来ました。
>IEでは反応が無かったので、GCで行ったところ削除する事が出来ました

はい、ログも見せてもらいましたが、バスターは削除できましたね。
セキュリティソフトの重複がなくなったあとの状態としてはどうでしょうか。
やはりまだEdgeでは同じ異常が続いてますか?

もし処置後に異常が消えているならセキュリティソフト重複が原因だったとなります。

それとメールソフトは再インストールは試しましたか?
これも一応再インストして、正常に動作するかどうかを確認してみてください
  • 悪代官
  • 2016/09/28 (Wed) 20:04:20
windowsの破損なのでしょうか?
こんばんは。
ご確認ご指示ありがとうございます。

Edgeはやはり見当たりません。
メール関係はwindows Essentials2012はインストールはできたのですが反応無しです。
Microsoft officeもインストールはされているのですが、起動致しません。
windowsそのものが破損してしまっている様な感じです。
ちなみにwindows10の更新作業を行ったのですが、
途中までは進むのですが35%程で止まってしまい画面も固まってしまいます。
windowsのスタートメニューも相変わらず開けません。
キーボードのwindowsボタンも動作いたしません。
osの再インストールが賢明なのかな?
と言う様な感じです。
よろしくお願いいたします。
  • なおき
  • 2016/09/29 (Thu) 18:51:47
リカバリディスクがあれば修復インストも可能ですが
レスが遅くなってすみません。

現在もEdge含めて異常は続いてますか。
メールソフトも再インストールしたのに正常動作しないのは普通じゃないですね。
症状からしてもそれらは感染によるものでもないです。
また先の作業でもOTLでそれらにかかわる部分をいじってはいないので、OTLによる異常でもないでしょう。

ではちょっと確認します。

お使いのPCは、購入時にWindows OSのディスク(リカバリディスク)は付属していますか?
もしWindowsのディスクが付属していればそれを使ってWindowsの上書きインストールも可能です。

リカバリディスクなしでHDD内のリカバリ領域からリカバリする型なら上記の手は使えません。

あまりお勧めはしませんが、OTL作業直後に異常が出た時はWindowsの「システムの復元」で復元できる場合が多いです。
OTLで作業処置した日時を選択して復元ですね。

ですがWindowsのシス復は一般の方が思うよりもかなり不安定な機能で、トラブル時に実行しても正常に復元できる可能性は高くないです。
なのでシス復時は失敗した場合に備えて、必要なデータのバックアップを全部済ませてから実行し、もし復元失敗したらそのままリカバリに移行できる準備も整えてから実行してください。

いかんせん動作自体がおかしくなっているなら、解析するにも作業ができない可能性もあります。
まずは可能なら必要なデータのバックアップからかかってください
  • 悪代官
  • 2016/09/29 (Thu) 19:53:20
Re: 助けて頂きたいのですがお願い致します。
こんばんは。
ご確認と的確なご指示ありがとうございます。
復元ポイントで復旧しようと思い実行致しましたら、やはりエラー等が出てしまい、
結局工場出荷時の状態までリカバリーとなってしまいました。
せっかくご尽力を頂いたのですがこの様な結果になってしまい申し訳ございませんでした。
これからは、この教訓を生かしてもう少し勉強をしようと思います。

大変申し訳ございませんでした。
ありがとうございました。
  • なおき
  • 2016/10/02 (Sun) 21:48:07
今回はリカバリが安全みたいですね
レスが遅くなってすみません。

その後もエラーが続いてうまくできないようですね。

ご自身でも書かれてるように、今回はリカバリが安全化もしれません。
感染の有無に関係なく、PC動作が不安定では解析処置どころではないので、まだ動くうちにデータのバックアップをとって、それが済み次第リカバリですね。

リカバリ後はすぐにWindowsupdateやセキュリティソフトを含む各種更新も最新まで持っていき、そこで最新状態のアンチウイルスソフトでフルスキャンして、異常や検出がなければリカバリ成功です。

そこまでできたら再度HJTログと、CCでインストール情報と各タブのログも取り直して、それらをリカバリ後の状態報告とともにレスください。

リカバリ後でも再被害を防ぐための自衛は必要なので、何か見落としがないかを含めて全体を見直しましょう
  • 悪代官
  • 2016/10/03 (Mon) 19:09:31
リカバリー完了致しました
こんばんは。
ご確認と的確なご指示ありがとうございます。
リカバリー完了いたしました。

HJTログ

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 16:07:58, on 2016/10/05
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Users\直樹\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKLM\..\Run: [Adobe ARM] "c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - c:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: IntelR CentrinoR Wireless BluetoothR + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: BrcmSetSecurity - Intel - C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\CyberLink\Digital Media Player Library v4\Player\Binary\CLHNServer\CLHNService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Boot Delay Start Service (McBootDelayStartSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\WINDOWS\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NetworkSupport - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: VAIO Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: VAIO Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VCService - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update\vuagent.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Boost - Western Digital - C:\Program Files\Western Digital\WD Boost\WDBoost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12119 bytes
  • なおき
  • 2016/10/05 (Wed) 16:27:22
installログです
ACID Music Studio 9.0 Sony 2014/11/22 223 MB 9.0.35
Adobe Photoshop Elements 11 Adobe Systems Incorporated 2016/10/01 2.60 GB 11.0
Adobe Reader XI (11.0.03) MUI Adobe Systems Incorporated 2014/11/22 575 MB 11.0.03
CCleaner Piriform 2016/10/05 5.22
DVD Architect Studio 5.0 Sony 2014/11/22 256 MB 5.0.161
Google Chrome Google Inc. 2016/10/04 53.0.2785.143
Google Toolbar for Internet Explorer Google Inc. 2016/10/04 7.5.6710.2136
Intel Collaborative Processor Performance Control Intel Corporation 2016/10/01 1.0.0.1010
Intel(R) Management Engine Components Intel Corporation 2016/09/29 9.5.3.1520
Intel(R) Processor Graphics Intel Corporation 2016/10/01 10.18.10.3304
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel Corporation 2014/11/22 39.0 MB 3.1.1307.0362
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2016/10/01 3.0.0.66956
Intel(R) WiDi Intel Corporation 2014/11/22 86.0 MB 4.1.19.0
Java 7 Update 25 Oracle 2014/11/22 130 MB 7.0.250
Java 7 Update 25 (64-bit) Oracle 2014/11/22 128 MB 7.0.250
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/10/01 15.0.4859.1002
Microsoft OneDrive Microsoft Corporation 2016/10/01 26.7 MB 17.0.4035.0328
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2016/09/30 1.92 MB 3.1.0000
Microsoft Visio Professional 2013 Microsoft Corporation 2016/10/02 15.0.4569.1506
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2016/09/30 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2016/09/30 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2016/10/01 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2016/10/01 10.0.50903
mora ~“WALKMAN”公式ミュージックストア~ 譬ェ蠑丈シ夂、セ繝ャ繝シ繝吶Ν繧イ繝シ繝・ 2016/10/02 2.1.0.0
Movie Studio Platinum 12.0 (64-bit) Sony 2014/11/22 428 MB 12.0.756
MSN スポーツ Microsoft Corporation 2016/10/02 3.0.4.345
MSN トラベル Microsoft Corporation 2016/10/02 3.0.4.336
MSN ニュース Microsoft Corporation 2016/10/02 3.0.4.344
MSN フード&レシピ Microsoft Corporation 2016/10/02 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2016/10/02 3.0.4.336
MSN マネー Microsoft Corporation 2016/10/02 3.0.4.344
MSN 天気 Microsoft Corporation 2016/10/02 3.0.4.344
Norton Online Backup Symantec Corporation 2014/11/22 9.02 MB 2.7.0.24
OneNote Microsoft Corporation 2016/10/02 16.0.3327.1048
PhotoWizard Microsoft 2014/11/22 335 MB 1.5.0
PlayMemories Home Sony Corporation 2014/11/22 7.0.02.14060
Realtek Ethernet Controller Driver Realtek 2014/11/22 8.15.410.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2016/10/01 6.0.1.7016
Skype Skype 2016/10/02 3.1.0.1016
Socialife ニュース Sony Corporation 2016/10/01 2.4.3.10090
Sony Select Sony Corporation 2016/10/02 2.1.1.2210
Sound Forge Audio Studio 10.0 Sony 2014/11/22 232 MB 10.0.178
Synaptics Pointing Device Driver Synaptics Incorporated 2016/10/01 46.4 MB 17.0.6.2
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2016/10/02 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2016/10/02 41.7 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2016/10/02 11.6 MB 15.0.2013
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2016/10/02 9.00 KB 16.0.1515.1
VAIO - Xperia Link Sony Corporation 2016/10/02 1.4.0.15030
VAIO Care Sony Corporation 2016/10/02 123 MB 8.4.5.06026
VAIO Care Sony Corporation 2016/10/02 1.4.1.14090
VAIO Care Recovery Sony Corporation 2014/11/22 31.3 MB 1.0.2.08020
VAIO Clip Sony Corporation 2016/10/02 1.4.0.7310
VAIO CPU Fan診断ツール Sony Corporation 2014/11/22 1.2.0.03050
VAIO Gesture Control Sony Corporation 2014/11/22 2.4.0.06280
VAIO Image Optimizer Sony Corporation 2014/11/22 69.6 MB 3.2.00.07040
VAIO Improvement Sony Corporation 2014/11/22 2.3.0.05230
VAIO Movie Creator Sony Corporation 2014/11/22 0.96 GB 4.2.00.07040
VAIO Paper Sony Corporation 2016/10/02 1.4.0.7240
VAIO Sample Music Sony Corporation 2014/11/22 17.0 MB 1.0.0.03051
VAIO Update Sony Corporation 2016/09/30 7.2.0.16270
VAIO お引越サポート Sony Corporation 2014/11/22 1.9.0.11060
VAIO の製品登録 (無料) Sony Corporation 2014/11/22 7.1.0.06270
VAIO の設定 Sony Corporation 2016/10/01 6.3.8.13060
VAIO データリストアツール Sony Corporation 2014/11/22 1.11.0.13250
VAIO ホームネットワークビデオプレーヤー Sony Corporation 2014/11/22 85.0 MB 1.2.0.14220
VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン CyberLink Corp. 2014/11/22 14.4 MB 4.0
VAIO メディア サーバー設定 Sony Corporation 2014/11/22 72.1 MB 1.1.0.02220
WD Boost Western Digital Corporation 2014/11/22 14.3 MB 3.34.0.0
Windows Live Essentials Microsoft Corporation 2016/09/30 16.4.3528.0331
Windows アラーム Microsoft Corporation 2016/10/01 6.3.9654.20335
Windows サウンド レコーダー Microsoft Corporation 2016/10/01 6.3.9600.20280
Windows スキャン Microsoft Corporation 2016/10/02 6.3.9654.17133
Windows ヘルプ+使い方 Microsoft Corporation 2016/10/01 6.3.9654.20559
Windows リーディング リスト Microsoft Corporation 2016/10/02 6.3.9654.21234
Windows 電卓 Microsoft Corporation 2016/10/01 6.3.9600.20278
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2016/10/01 405 MB 16.1.5
ゲーム Microsoft Corporation 2016/10/01 2.0.139.0
シュフーチラシアプリ recommended by VAIO TOPPAN PRINTING CO.,LTD. 2016/10/02 1.2.0.1
セキュリティ脅威マップ Trend Micro, Inc. 2016/10/01 6.5.0.1049
ビデオ Microsoft Corporation 2016/10/02 2.6.446.0
マカフィー インターネットセキュリティ McAfee, Inc. 2016/10/01 427 MB 15.0.166
ミュージック Microsoft Corporation 2016/10/02 2.6.672.0
ミュージック by Sony Sony Corporation 2016/10/02 1.2.0.14240
メール、カレンダー、People 2016/10/02
ヤフオク! (V) Yahoo Japan Corp. 2016/10/01 2.0.0.5
リーダー Microsoft Corporation 2016/10/02 6.4.9926.18471
地図 Microsoft Corporation 2016/10/01 2.1.3230.2048
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/10/02 2.2.2.4
筆ぐるめ 20 富士ソフト株式会社 2014/11/22 412 MB 20.00.0008
  • なおき
  • 2016/10/05 (Wed) 16:29:14
tasks startupログです
tasks startupログです

Yes Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
Yes Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
Yes Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Yes Task Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /script=mcnrdhck.lua /periodicRunCount=7
Yes Task Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /timeout=60000 /script=mcnrdhck.lua /hcmode=postdatupdate /datver=2758.0 /datupdatestatus=0
Yes Task McAfee Remediation (Prepare) McAfee, Inc. C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe /prepare
Yes Task McAfeeLogon McAfee, Inc. C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe /platui /runkey
Yes Task Optimize Start Menu Cache Files-S-1-5-21-1473726748-1913700360-998798094-1001
Yes Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
  • なおき
  • 2016/10/05 (Wed) 16:30:48
context startupログです
context startupログです

Yes Directory SkyDriveEx Microsoft Corporation C:\Users\直樹\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll
Yes File McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
Yes File SkyDriveEx Microsoft Corporation C:\Users\直樹\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll
Yes Folder McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
  • なおき
  • 2016/10/05 (Wed) 16:31:59
windows startupログです
Yes HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
Yes HKLM:Run Adobe ARM Adobe Systems Incorporated "c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
Yes HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
Yes HKLM:Run BTMTrayAgent Microsoft Corporation rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
Yes HKLM:Run HotKeysCmds Intel Corporation "C:\WINDOWS\system32\hkcmd.exe"
windows startupログです

Yes HKLM:Run IgfxTray Intel Corporation "C:\WINDOWS\system32\igfxtray.exe"
Yes HKLM:Run Persistence Intel Corporation "C:\WINDOWS\system32\igfxpers.exe"
Yes HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
Yes HKLM:Run RtHDVBg Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SONYAPO
Yes HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
  • なおき
  • 2016/10/05 (Wed) 16:33:20
アプリの更新か整理もしておきましょう
作業と報告、ご苦労様です。
リカバリは無事できたみたいですね。
現在のログも見せてもらいました。

いくつか脆弱性が見えているので、それを修正しましょう。

下記アプリ群はGUを使ってアンインストール推奨です。
Adobe Reader XI (11.0.03) MUI Adobe Systems Incorporated 2014/11/22 575 MB 11.0.03

Java 7 Update 25 Oracle 2014/11/22 130 MB 7.0.250

Java 7 Update 25 (64-bit) Oracle 2014/11/22 128 MB 7.0.250

Skype Skype 2016/10/02 3.1.0.1016

継続使用するなら最新版に更新を忘れないように。
またSkypeは使わないならWindowsUpdate時に入れないようにしましょう。
pdfアプリは別の製品をお勧めしておきます。
http://www.forest.impress.co.jp/library/software/pdfxchedit/

これができたら一度PC再起動後、インストール情報ログだけ取り直して、それをまた見せてください。
  • 悪代官
  • 2016/10/05 (Wed) 20:28:34
インストール情報ログです
こんばんは。
ご確認とご指示ありがとうございます。

インストール情報ログです

ACID Music Studio 9.0 Sony 2014/11/22 223 MB 9.0.35
Adobe Photoshop Elements 11 Adobe Systems Incorporated 2016/10/01 2.60 GB 11.0
CCleaner Piriform 2016/10/05 5.22
DVD Architect Studio 5.0 Sony 2014/11/22 256 MB 5.0.161
Epson E-Photo Seiko Epson Corporation 2016/10/05 1.8.1.0
Epson E-Web Print SEIKO EPSON CORPORATION 2016/10/05 9.22 MB 1.23.0000
EPSON EP-901A プリンタ アンインストール SEIKO EPSON Corporation 2016/10/05
EPSON Scan 2016/10/05
Google Chrome Google Inc. 2016/10/04 53.0.2785.143
Google Toolbar for Internet Explorer Google Inc. 2016/10/05 7.5.7619.1252
Intel Collaborative Processor Performance Control Intel Corporation 2016/10/01 1.0.0.1010
Intel(R) Management Engine Components Intel Corporation 2016/09/29 9.5.3.1520
Intel(R) Processor Graphics Intel Corporation 2016/10/01 10.18.10.3304
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel Corporation 2014/11/22 39.0 MB 3.1.1307.0362
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2016/10/01 3.0.0.66956
Intel(R) WiDi Intel Corporation 2014/11/22 86.0 MB 4.1.19.0
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/10/01 15.0.4859.1002
Microsoft OneDrive Microsoft Corporation 2016/10/01 26.7 MB 17.0.4035.0328
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2016/09/30 1.92 MB 3.1.0000
Microsoft Visio Professional 2013 Microsoft Corporation 2016/10/02 15.0.4569.1506
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2016/10/05 290 KB 8.0.61001
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2016/10/05 688 KB 9.0.30729
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2016/09/30 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2016/09/30 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2016/10/01 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2016/10/01 10.0.50903
mora ~“WALKMAN”公式ミュージックストア~ 譬ェ蠑丈シ夂、セ繝ャ繝シ繝吶Ν繧イ繝シ繝・ 2016/10/02 2.1.0.0
Movie Studio Platinum 12.0 (64-bit) Sony 2014/11/22 428 MB 12.0.756
MSN スポーツ Microsoft Corporation 2016/10/02 3.0.4.345
MSN トラベル Microsoft Corporation 2016/10/02 3.0.4.336
MSN ニュース Microsoft Corporation 2016/10/02 3.0.4.344
MSN フード&レシピ Microsoft Corporation 2016/10/02 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2016/10/02 3.0.4.336
MSN マネー Microsoft Corporation 2016/10/02 3.0.4.344
MSN 天気 Microsoft Corporation 2016/10/02 3.0.4.344
Norton Online Backup Symantec Corporation 2014/11/22 9.02 MB 2.7.0.24
OneNote Microsoft Corporation 2016/10/02 16.0.3327.1048
PhotoWizard Microsoft 2014/11/22 335 MB 1.5.0
PlayMemories Home Sony Corporation 2014/11/22 7.0.02.14060
Realtek Ethernet Controller Driver Realtek 2014/11/22 8.15.410.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2016/10/01 6.0.1.7016
SmartPad SoftWare 2.0.0.1_X08(x64) ELAN Microelectronics Corp. 2016/10/05 2.0.0.1
Socialife ニュース Sony Corporation 2016/10/01 2.4.3.10090
Sony Select Sony Corporation 2016/10/02 2.1.1.2210
Sound Forge Audio Studio 10.0 Sony 2014/11/22 232 MB 10.0.178
Synaptics Pointing Device Driver Synaptics Incorporated 2016/10/01 46.4 MB 17.0.6.2
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2016/10/02 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2016/10/02 41.7 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2016/10/02 11.6 MB 15.0.2013
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2016/10/02 9.00 KB 16.0.1515.1
VAIO - Xperia Link Sony Corporation 2016/10/02 1.4.0.15030
VAIO Care Sony Corporation 2016/10/02 1.4.1.14090
VAIO Care Sony Corporation 2016/10/02 123 MB 8.4.5.06026
VAIO Care Recovery Sony Corporation 2014/11/22 31.3 MB 1.0.2.08020
VAIO Clip Sony Corporation 2016/10/02 1.4.0.7310
VAIO CPU Fan診断ツール Sony Corporation 2014/11/22 1.2.0.03050
VAIO Gesture Control Sony Corporation 2014/11/22 2.4.0.06280
VAIO Image Optimizer Sony Corporation 2014/11/22 69.6 MB 3.2.00.07040
VAIO Improvement Sony Corporation 2014/11/22 2.3.0.05230
VAIO Movie Creator Sony Corporation 2014/11/22 0.96 GB 4.2.00.07040
VAIO Paper Sony Corporation 2016/10/02 1.4.0.7240
VAIO Sample Music Sony Corporation 2014/11/22 17.0 MB 1.0.0.03051
VAIO Update Sony Corporation 2016/09/30 7.2.0.16270
VAIO お引越サポート Sony Corporation 2014/11/22 1.9.0.11060
VAIO の製品登録 (無料) Sony Corporation 2014/11/22 7.1.0.06270
VAIO の設定 Sony Corporation 2016/10/01 6.3.8.13060
VAIO データリストアツール Sony Corporation 2014/11/22 1.11.0.13250
VAIO ホームネットワークビデオプレーヤー Sony Corporation 2014/11/22 85.0 MB 1.2.0.14220
VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン CyberLink Corp. 2014/11/22 14.4 MB 4.0
VAIO メディア サーバー設定 Sony Corporation 2014/11/22 72.1 MB 1.1.0.02220
WD Boost Western Digital Corporation 2014/11/22 14.3 MB 3.34.0.0
Windows Live Essentials Microsoft Corporation 2016/09/30 16.4.3528.0331
Windows アラーム Microsoft Corporation 2016/10/01 6.3.9654.20335
Windows サウンド レコーダー Microsoft Corporation 2016/10/01 6.3.9600.20280
Windows スキャン Microsoft Corporation 2016/10/02 6.3.9654.17133
Windows ヘルプ+使い方 Microsoft Corporation 2016/10/01 6.3.9654.20559
Windows リーディング リスト Microsoft Corporation 2016/10/02 6.3.9654.21234
Windows 電卓 Microsoft Corporation 2016/10/01 6.3.9600.20278
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2016/10/01 405 MB 16.1.5
ゲーム Microsoft Corporation 2016/10/01 2.0.139.0
シュフーチラシアプリ recommended by VAIO TOPPAN PRINTING CO.,LTD. 2016/10/02 1.2.0.1
セキュリティ脅威マップ Trend Micro, Inc. 2016/10/01 6.5.0.1049
ビデオ Microsoft Corporation 2016/10/02 2.6.446.0
マカフィー インターネットセキュリティ McAfee, Inc. 2016/10/01 427 MB 15.0.166
ミュージック Microsoft Corporation 2016/10/02 2.6.672.0
ミュージック by Sony Sony Corporation 2016/10/02 1.2.0.14240
メール、カレンダー、People 2016/10/02
ヤフオク! (V) Yahoo Japan Corp. 2016/10/01 2.0.0.5
リーダー Microsoft Corporation 2016/10/02 6.4.9926.18471
地図 Microsoft Corporation 2016/10/01 2.1.3230.2048
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/10/02 2.2.2.4
筆ぐるめ 20 富士ソフト株式会社 2014/11/22 412 MB 20.00.0103
  • なおき
  • 2016/10/05 (Wed) 22:00:58
あとは様子見の結果を待ちましょう
作業と報告、ご苦労様です。

現在のログを見せてもらいました。
先に案内したアプリの整理もできましたね。

再確認しますが、先の異常はリカバリ後は出てませんか?
さすがになくなっているとは思いますが、それ以外でも何か異常が出ていれば教えてください。

特に異常出てなければ、あとは念押しの様子見に入りましょう。
普通にPCを使いながらでいいので1週間様子見してください。

1週間後にまたHJTログと、CCのインストール情報と各タブのログも取り直して、それらを様子見中の状態報告とともにレスください。

この時点でログにも状態にも異常消えていればいいのですが、何か異常再発出たら1週間待たなくていいのでそこでレスください
  • 悪代官
  • 2016/10/06 (Thu) 20:30:29
各ログです
こんばんは。
ご確認とご指示ありがとうございます。

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 19:35:59, on 2016/10/23
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.18123)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Users\直樹\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
O4 - HKCU\..\Run: [EPSON539D89] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\WINDOWS\TEMP\E_S123B.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
O4 - HKCU\..\Run: [iCloudDrive] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
O4 - HKCU\..\Run: [iCloudPhotos] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V11 (AdobeActiveFileMonitor11.0) - Adobe Systems Incorporated - c:\Program Files (x86)\Adobe\Elements 11 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BrcmSetSecurity - Intel - C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Wireless Bluetooth(R) 4.0 Radio Management - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Boot Delay Start Service (McBootDelayStartSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\McAfee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\WINDOWS\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NetworkSupport - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe
O23 - Service: Norton Online Backup (NOBU) - Symantec Corporation - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: VAIO Content Importer (SOHCImp) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe
O23 - Service: VAIO Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: VAIO Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
O23 - Service: VAIO Power Management - Sony Corporation - C:\Program Files\Sony\VAIO Power Management\SPMService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: VAIO Content Folder Watcher (VCFw) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
O23 - Service: VCService - Sony Corporation - C:\Program Files\Sony\VAIO Care\VCService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: VUAgent - Sony Corporation - C:\Program Files\Sony\VAIO Update\vuagent.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: WD Boost - Western Digital - C:\Program Files\Western Digital\WD Boost\WDBoost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13104 bytes
  • なおき
  • 2016/10/23 (Sun) 19:39:36
installログです
ACID Music Studio 9.0 Sony 2014/11/22 223 MB 9.0.35
Adobe Photoshop Elements 11 Adobe Systems Incorporated 2016/10/01 2.60 GB 11.0
Apple Application Support(32 ビット) Apple Inc. 2016/10/18 118 MB 5.0.1
Apple Application Support(64 ビット) Apple Inc. 2016/10/18 135 MB 5.0.1
Apple Mobile Device Support Apple Inc. 2016/10/18 27.3 MB 10.0.0.18
Apple Software Update Apple Inc. 2016/10/18 2.69 MB 2.2.0.150
Bonjour Apple Inc. 2016/10/18 2.01 MB 3.1.0.1
CCleaner Piriform 2016/10/05 5.22
CrystalDiskInfo 7.0.4 Shizuku Edition Crystal Dew World 2016/10/14 109 MB 7.0.4
DVD Architect Studio 5.0 Sony 2014/11/22 256 MB 5.0.161
Epson E-Photo Seiko Epson Corporation 2016/10/05 1.8.1.0
Epson E-Web Print SEIKO EPSON CORPORATION 2016/10/05 9.22 MB 1.23.0000
EPSON EP-901A プリンタ アンインストール SEIKO EPSON Corporation 2016/10/05
EPSON Scan 2016/10/05
Google Chrome Google Inc. 2016/10/04 53.0.2785.143
Google Toolbar for Internet Explorer Google Inc. 2016/10/05 7.5.7619.1252
iCloud Apple Inc. 2016/10/18 140 MB 6.0.1.41
Intel Collaborative Processor Performance Control Intel Corporation 2016/10/01 1.0.0.1010
Intel(R) Management Engine Components Intel Corporation 2016/09/29 9.5.3.1520
Intel(R) Processor Graphics Intel Corporation 2016/10/14 10.18.10.3355
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology Intel Corporation 2014/11/22 39.0 MB 3.1.1307.0362
Intel(R) SDK for OpenCL - CPU Only Runtime Package Intel Corporation 2016/10/01 3.0.0.66956
Intel(R) WiDi Intel Corporation 2014/11/22 86.0 MB 4.1.19.0
iTunes Apple Inc. 2016/10/18 242 MB 12.5.1.21
Microsoft Office Home and Business 2013 - ja-jp Microsoft Corporation 2016/10/19 15.0.4867.1003
Microsoft OneDrive Microsoft Corporation 2016/10/01 26.7 MB 17.0.4035.0328
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2016/09/30 1.92 MB 3.1.0000
Microsoft Visio Professional 2013 Microsoft Corporation 2016/10/02 15.0.4569.1506
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2016/10/05 290 KB 8.0.61001
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2016/10/05 688 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/10/06 590 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2016/09/30 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2016/09/30 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2016/10/01 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2016/10/01 10.0.50903
mora ~“WALKMAN”公式ミュージックストア~ 譬ェ蠑丈シ夂、セ繝ャ繝シ繝吶Ν繧イ繝シ繝・ 2016/10/02 2.1.0.0
Movie Studio Platinum 12.0 (64-bit) Sony 2014/11/22 428 MB 12.0.756
MSN スポーツ Microsoft Corporation 2016/10/02 3.0.4.345
MSN トラベル Microsoft Corporation 2016/10/02 3.0.4.336
MSN ニュース Microsoft Corporation 2016/10/02 3.0.4.344
MSN フード&レシピ Microsoft Corporation 2016/10/02 3.0.4.336
MSN ヘルスケア Microsoft Corporation 2016/10/02 3.0.4.336
MSN マネー Microsoft Corporation 2016/10/02 3.0.4.344
MSN 天気 Microsoft Corporation 2016/10/02 3.0.4.344
Norton Online Backup Symantec Corporation 2014/11/22 9.02 MB 2.7.0.24
OneNote Microsoft Corporation 2016/10/02 16.0.3327.1048
PhotoWizard Microsoft 2014/11/22 335 MB 1.5.0
PlayMemories Home Sony Corporation 2014/11/22 7.0.02.14060
Realtek Ethernet Controller Driver Realtek 2016/10/14 8.34.617.2014
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2016/10/01 6.0.1.7016
SmartPad SoftWare 2.0.0.1_X08(x64) ELAN Microelectronics Corp. 2016/10/05 2.0.0.1
Socialife ニュース Sony Corporation 2016/10/01 2.4.3.10090
Sony Select Sony Corporation 2016/10/02 2.1.1.2210
Sound Forge Audio Studio 10.0 Sony 2014/11/22 232 MB 10.0.178
Synaptics Pointing Device Driver Synaptics Incorporated 2016/10/01 46.4 MB 17.0.6.2
Update for Japanese Microsoft IME Postal Code Dictionary Microsoft Corporation 2016/10/02 7.60 MB 16.0.1171.1
Update for Japanese Microsoft IME Standard Dictionary Microsoft Corporation 2016/10/02 41.7 MB 16.0.1404.1
Update for Japanese Microsoft IME Standard Extended Dictionary Microsoft Corporation 2016/10/02 11.6 MB 15.0.2013
Update for Japanese Microsoft IME Trending Words Dictionary Microsoft Corporation 2016/10/02 9.00 KB 16.0.1515.1
VAIO - Xperia Link Sony Corporation 2016/10/02 1.4.0.15030
VAIO Care Sony Corporation 2016/10/02 123 MB 8.4.5.06026
VAIO Care Sony Corporation 2016/10/02 1.4.1.14090
VAIO Care Recovery Sony Corporation 2014/11/22 31.3 MB 1.0.2.08020
VAIO Clip Sony Corporation 2016/10/02 1.4.0.7310
VAIO CPU Fan診断ツール Sony Corporation 2014/11/22 1.2.0.03050
VAIO Gesture Control Sony Corporation 2016/10/14 2.4.1.09050
VAIO Image Optimizer Sony Corporation 2016/10/14 69.6 MB 3.3.00.10220
VAIO Improvement Sony Corporation 2014/11/22 2.3.0.05230
VAIO Movie Creator Sony Corporation 2016/10/14 0.96 GB 4.3.01.11140
VAIO Paper Sony Corporation 2016/10/02 1.4.0.7240
VAIO Sample Music Sony Corporation 2014/11/22 17.0 MB 1.0.0.03051
VAIO Update Sony Corporation 2016/09/30 7.2.0.16270
VAIO お引越サポート Sony Corporation 2014/11/22 1.9.0.11060
VAIO の製品登録 (無料) Sony Corporation 2014/11/22 7.1.0.06270
VAIO の設定 Sony Corporation 2016/10/01 6.3.8.13060
VAIO データリストアツール Sony Corporation 2014/11/22 1.11.0.13250
VAIO ホームネットワークビデオプレーヤー Sony Corporation 2016/10/14 69.9 MB 1.2.2.04020
VAIO ホームネットワークビデオプレーヤー デジタル放送プラグイン CyberLink Corp. 2014/11/22 14.4 MB 4.0
VAIO メディア サーバー設定 Sony Corporation 2014/11/22 72.1 MB 1.1.0.02220
WD Boost Western Digital Corporation 2014/11/22 14.3 MB 3.34.0.0
Windows Live Essentials Microsoft Corporation 2016/09/30 16.4.3528.0331
Windows アラーム Microsoft Corporation 2016/10/01 6.3.9654.20335
Windows サウンド レコーダー Microsoft Corporation 2016/10/01 6.3.9600.20280
Windows スキャン Microsoft Corporation 2016/10/02 6.3.9654.17133
Windows ヘルプ+使い方 Microsoft Corporation 2016/10/01 6.3.9654.20559
Windows リーディング リスト Microsoft Corporation 2016/10/02 6.3.9654.21234
Windows 電卓 Microsoft Corporation 2016/10/01 6.3.9600.20278
インテル® PROSet/Wireless ソフトウェア Intel Corporation 2016/10/14 245 MB 17.13.1
ゲーム Microsoft Corporation 2016/10/01 2.0.139.0
シュフーチラシアプリ recommended by VAIO TOPPAN PRINTING CO.,LTD. 2016/10/02 1.2.0.1
セキュリティ脅威マップ Trend Micro, Inc. 2016/10/01 6.5.0.1049
ビデオ Microsoft Corporation 2016/10/02 2.6.446.0
マカフィー インターネットセキュリティ McAfee, Inc. 2016/10/01 427 MB 15.0.166
ミュージック Microsoft Corporation 2016/10/02 2.6.672.0
ミュージック by Sony Sony Corporation 2016/10/02 1.2.0.14240
メール、カレンダー、People 2016/10/02
ヤフオク! (V) Yahoo Japan Corp. 2016/10/01 2.0.0.5
リーダー Microsoft Corporation 2016/10/02 6.4.9926.18471
地図 Microsoft Corporation 2016/10/01 2.1.3230.2048
楽天gateway 讌ス螟ゥ譬ェ蠑丈シ夂、セ 2016/10/02 2.2.2.4
筆ぐるめ 20 富士ソフト株式会社 2014/11/22 412 MB 20.00.0103
  • なおき
  • 2016/10/23 (Sun) 19:44:03
WIN startupログです
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run EPSON539D89 SEIKO EPSON CORPORATION C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEMN.EXE /FU "C:\WINDOWS\TEMP\E_S123B.tmp" /EF "HKCU"
有効 HKCU:Run iCloudDrive Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
有効 HKCU:Run iCloudPhotos Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
有効 HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
有効 HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
有効 HKLM:Run BTMTrayAgent Microsoft Corporation rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
有効 HKLM:Run ETDUSBWare ELAN Microelectronic Corp. %ProgramFiles%\Elan\USB\ETDUSBCtrl.exe
有効 HKLM:Run HotKeysCmds Intel Corporation "C:\WINDOWS\system32\hkcmd.exe"
有効 HKLM:Run IgfxTray Intel Corporation "C:\WINDOWS\system32\igfxtray.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run Persistence Intel Corporation "C:\WINDOWS\system32\igfxpers.exe"
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
有効 HKLM:Run RtHDVBg Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SONYAPO
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
  • なおき
  • 2016/10/23 (Sun) 19:45:14
tasks startupログです
tasks startupログです

Yes Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
Yes Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
Yes Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Yes Task Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /script=mcnrdhck.lua /periodicRunCount=7
Yes Task Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /timeout=60000 /script=mcnrdhck.lua /hcmode=postdatupdate /datver=2758.0 /datupdatestatus=0
Yes Task McAfee Remediation (Prepare) McAfee, Inc. C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe /prepare
Yes Task McAfeeLogon McAfee, Inc. C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe /platui /runkey
Yes Task Optimize Start Menu Cache Files-S-1-5-21-1473726748-1913700360-998798094-1001
Yes Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
  • なおき
  • 2016/10/23 (Sun) 19:46:27
コン startup です


有効 Directory SkyDriveEx Microsoft Corporation C:\Users\直樹\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll
有効 File McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
有効 File PhotoStreamsExt Apple Inc. C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll
有効 File SkyDriveEx Microsoft Corporation C:\Users\直樹\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll
有効 Folder McCtxMenuFrmWrk McAfee, Inc. c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll
  • なおき
  • 2016/10/23 (Sun) 19:48:30
タスク startupです
有効 Task Apple Diagnostics Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /script=mcnrdhck.lua /periodicRunCount=6
有効 Task Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse McAfee, Inc. C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe /timeout=60000 /script=mcnrdhck.lua /hcmode=postdatupdate /datver=2777.0 /datupdatestatus=0
有効 Task McAfee Remediation (Prepare) McAfee, Inc. C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe /prepare
有効 Task McAfeeLogon McAfee, Inc. C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe /platui /runkey
無効 Task Optimize Start Menu Cache Files-S-1-5-21-1473726748-1913700360-998798094-1001
有効 Task Synaptics TouchPad Enhancements Synaptics Incorporated "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
  • なおき
  • 2016/10/23 (Sun) 19:49:28
IE startupログです
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Helper E-Photo Seiko Epson Corporation C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Helper E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
有効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Toolbar E-Photo Seiko Epson Corporation C:\Program Files (x86)\Epson Software\E-Photo\EPTBL.dll
無効 Toolbar E-Web Print SEIKO EPSON CORPORATION C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll
有効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
有効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
  • なおき
  • 2016/10/23 (Sun) 19:50:49
異常は消えても以後の自衛はお忘れなく
こんばんは。
様子見後の報告ですね。
現在のログも見せてもらいました。

ログ上ではおかしなものはなさそうですね。
異常も既になくなってれば本題の処置は終了でいいでしょう。
終了なら各ツールは導入時の説明に沿って片付けてください。

異常は片付いても。以後の再被害を防ぐための自衛もお忘れなく。

ブラウザの設定を少し固めるだけでも、セキュリティ上の効果を高めることが可能です。
「インターネットオプション」→「プライバシー」→「詳細設定」と開いて、「自動cookie処理」と「サードパーティのcookieをブロック」にチェックして「適用」して「OK」。
これをやっておくと、多くの危険サイトからの保護にかなり有効です。
が、これもすべての危険サイトに有効でもないし、本物の危険サイトではこの程度ではまったく太刀打ちできないので、過信はしないこと。
また、「すべてのcookieをブロックする」設定にすると、プロバイダのメールボックスなどログイン必要なページに入れなくなる弊害も出るので、これは状況を考えて使い分けるといいでしょう。
安全なサイトでもcookieブロックだと閲覧や投稿ができなくなるところもあるのでこれも注意。

次に、アンチウイルスやファイアウォール等のセキュリティソフトの使い方も注意してください。
セキュリティソフトはただ入れてさえいればそれだけでフル機能を発揮するものではありません。
設定と機能をできるだけ把握して、正しく使うことが重要です。
間違った使い方すると、本来ならブロックできた感染でもあっさりスルーします。

また、いくら高性能なセキュリティソフトがあっても、ユーザーが自分から危険なサイトやファイルにアクセスしてたらまったく保護もできません。
セキュリティソフトは使い方次第でその性能を、倍にも半にも無にも変動させます。

そして百聞は一見にしかず。
現在この掲示板で継続中や解決済みの他スレもできるだけ見ておくことをおすすめします。
同様、類似、別種含めて参考になる部分は多いでしょう。

今回はWin10での不具合もあってリカバリでの対処となってしまいましたが、感染の有無にかかわらず普段からデータのバックアップはこまめにしておきましょう。
感染ではなくハード的な理由でPC起動もHDD内のデータ取り出しもできなくなった場合、バックアップがあれば代用or買い替えPCでデータの継続使用も容易です。

PCの安定運用とセキュリティは常に両立させましょう。
どちらが欠けてもとりかえしのつかない事態につながります。

慣れない作業を長期間頑張ってくれてお疲れ様でした。
以後は安全で快適なPCライフを
  • 悪代官
  • 2016/10/23 (Sun) 20:44:10
お世話になりました。
色々とお世話になりました。勉強不足の私に的確なご指示を長きに渡り貴重なお時間を頂き本当に感謝しております。ありがとうございました。
  • なおき
  • 2016/10/25 (Tue) 11:35:21

返信フォーム






プレビュー (投稿前に内容を確認)