悪代官の伏魔殿掲示板
Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
はじめましてくっちーと申します。
10/30にMalwarebytes Anti-Malwareで
Krabをアンイストール出来ましたがその後も広告がどんどん出てきて困っています。知恵袋で相談してこちらにたどりつきました。お手数ですがよろしくお願いいたします。

Hij ログ
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 8:48:20, on 2014/11/01
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17344)
Boot mode: Normal

Running processes:
C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPCMNT.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Logicool\Vid HD\Vid.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
C:\Program Files\Logicool\SetPoint\x86\SetPoint32.exe
C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\Logicool\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\kuchi_acer\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: PhishWall - {8CA7E745-EF75-4E7B-BB86-8065C0CE29CA} - C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: PhishWall - {BB62FFF4-41CB-4AFC-BB8C-2A4D4B42BBDC} - C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [IME JPN 2007 Migration] C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Google Japanese Input Prelauncher] "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Logicool Vid] "C:\Program Files (x86)\Logicool\Vid HD\Vid.exe" -bootmode
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\RunOnce: [Application Restart #5] C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe --flag-switches-begin --flag-switches-end --restore-last-session -- https://www.valuedopinions.jp/survey/VOP08111321283182JAP/enter.asp?z=AC96E0306BAD3D0DEF525C0DB6F5DBD44D65D4BCD748DEE59D27188C5482FB9738
O4 - Startup: Dropbox.lnk = C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: PhishWall Client.appref-ms
O4 - Startup: 秀丸.lnk = C:\Program Files\Hidemaru\Hidemaru.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: BUFFALO RAMDISK トレイ ユーティリティ.lnk = C:\Program Files\BUFFALO\BFRD4G\BRDUtilTray.exe
O4 - Global Startup: BUFFALO RAMDISK ユーティリティ.lnk = C:\Program Files\BUFFALO\BFRD4G\BRDUtil.exe
O4 - Global Startup: FT-STC/U-B 設定ユーティリティ.lnk = ?
O4 - Global Startup: クライアントマネージャV.lnk = C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
O4 - Global Startup: ロジクール SetPoint.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Mipony でダウンロード - file://C:\Program Files (x86)\MiPony\Browser\IEContext.htm
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
O9 - Extra button: Bluetooth ヘ送る - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Bluetooth デバイスに送信(&B) - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {154F81B2-15F7-453B-B6ED-72E2E90D0D34} (PMyiConnection Class) - https://www.creativehealth.jp/ap/tool/PMyiCon.CAB
O17 - HKLM\System\CCS\Services\Tcpip\..\{079E895E-A34A-44CA-AB30-B5385D4D0B79}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{079E895E-A34A-44CA-AB30-B5385D4D0B79}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{079E895E-A34A-44CA-AB30-B5385D4D0B79}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: BWH32S - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: Freemake Improver - Freemake - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
O23 - Service: @C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe,-100 (GoogleIMEJaCacheService) - Google Inc. - C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Google アップデート サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: インクジェットプリンタ/スキャナ使用状況調査プログラム (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Joulemeter Service - Unknown owner - C:\00_soft\soft\ユーティリティ\Joulemeter\JoulemeterService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logicool, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MaintainerSvc1.05.7044970 - Unknown owner - C:\ProgramData\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SecureBrain PhishWall Update - SecureBrain Corporation - C:\Program Files (x86)\SecureBrain\PhishWall\sbpwupdx.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: UMVPFSrv - Logicool Co., Ltd. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 16585 bytes

ccログ

Acer Arcade Deluxe CyberLink Corp. 2010/02/27 99.9 MB 3.0.7112
Acer Backup Manager NewTech Infosystems 2010/01/05 26.5 MB 2.0.0.29
Acer Crystal Eye webcam Ver:1.1.124.1120 Chicony Electronics Co.,Ltd. 2010/02/27 1.1.124.1120
Acer ePower Management Acer Incorporated 2010/02/27 4.05.3004
Acer eRecovery Management Acer Incorporated 2010/01/05 4.05.3005
Acer GridVista Acer Inc. 2010/02/27 3.01.0730
Acer Registration Acer Incorporated 2010/02/27 1.02.3006
Acer ScreenSaver Acer Incorporated 2010/02/27 1.5.0715
Acer Updater Acer Incorporated 2009/11/04 1.01.3017
Acrobat.com Adobe Systems Incorporated 2009/11/04 1.60 MB 1.6.65
Adobe AIR Adobe Systems Inc. 2011/04/16 2.5.1.17730
Adobe Community Help Adobe Systems Incorporated 2010/12/11 3.0.0.400
Adobe Creative Suite 5 Master Collection Adobe Systems Incorporated 2010/12/11 3.66 GB 5.0
Adobe Flash Player 15 Plugin Adobe Systems Incorporated 2014/10/29 6.00 MB 15.0.0.189
Adobe Reader XI (11.0.09) - Japanese Adobe Systems Incorporated 2014/10/19 203 MB 11.0.09
Alcor Micro USB Card Reader Alcor Micro Corp. 2009/11/04 2.86 MB 1.4.17.35005
Apple Application Support Apple Inc. 2014/07/21 93.4 MB 3.0.5
Apple Software Update Apple Inc. 2011/07/11 2.38 MB 2.1.3.127
BBブロードキャスト 6.0.11.9232 TVBANK 2011/09/19 6.0.11.9232
Bonjour Apple Inc. 2011/12/19 2.00 MB 3.0.0.10
Broadcom Gigabit NetLink Controller Broadcom Corporation 2009/11/04 368 KB 12.33.03
Broadcom Wireless LAN Driver Installation Program for Windows7 Broadcom 2010/10/17 5.60.18.8
BUFFALO RAMDISK ユーティリティ 2011/05/21
BUFFALO エアステーション設定ツール BUFFALO INC. 2011/07/24 2.0.0
BUFFALO クライアントマネージャV 2011/07/24
BUFFALO パソコン環境表示ツール BUFFALO INC. 2011/07/24 1.0.2
CANON iMAGE GATEWAY 無料会員登録 MP630 2011/08/06
Canon MP Navigator EX 2.0 2011/08/06
Canon MP630 series MP Drivers 2011/08/06
Canon Utilities Easy-PhotoPrint EX 2011/08/06
Canon Utilities Solution Menu 2011/08/06
Canon Utilities マイ プリンタ 2011/08/06
CCleaner Piriform 2014/11/01 4.19
Context Viewer Version 1.4.1 2010/10/22
Craving Explorer Version 1.0.0 RC15 tuck 2011/03/09 15.0 MB 0.21.0.77
Date Cracker 2000 2010/11/19
Dropbox Dropbox, Inc. 2014/10/05 2.10.30
DVD Decrypter (Remove Only) 2011/09/10
DVD Shrink 3.2 DVD Shrink 2011/09/10
Edy Viewer bitWallet 2010/12/05 2.1.2.2
FoxTab Video Converter 2011/09/19
Freemake Video Converter バージョン 4.0.2 Ellora Assets Corporation 2013/07/30 78.3 MB 4.0.2
FT-STC/U-B 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08
Google Chrome Google Inc. 2010/03/13 38.0.2125.111
Google Earth Google 2013/12/14 180 MB 7.1.2.2041
Google Toolbar for Internet Explorer Google Inc. 2014/03/29 7.5.5111.1712
Google 日本語入力 Google Inc. 2014/01/09 83.0 MB 1.13.1641.0
Identity Card Acer Incorporated 2010/02/27 1.00.3003
ImgBurn LIGHTNING UK! 2010/03/28 2.5.1.0
Intel(R) Control Center Intel Corporation 2010/02/27 1.2.0.1006
Intel(R) Graphics Media Accelerator Driver Intel Corporation 2011/02/05 8.15.10.2008
Intel(R) Management Engine Components Intel Corporation 2010/02/28 6.0.0.1179
Intel® Matrix Storage Manager Intel Corporation 2010/02/27
iTunes Apple Inc. 2014/07/21 219 MB 11.3.0.54
Java 7 Update 67 Oracle 2013/07/09 129 MB 7.0.670
Java(TM) 6 Update 37 Oracle 2012/06/26 95.6 MB 6.0.370
Joulemeter Microsoft Research 2010/06/15 668 KB 1.0.0
JTrim WoodyBells software. 2013/03/09
Launch Manager Acer Inc. 2010/02/27 3.0.05
Lhaplus 2010/03/14
Logicool Vid HD Logicool Co. Ltd.. 2011/07/25 7.2 (7248)
Logicool ウェブカメラ ソフトウェア Logicool Inc. 2011/07/25 2.0
LPT System Updater Service 2009/11/04
LSI HDA Modem LSI Corporation 2012/09/27 16.0 KB 2.2.98
Malwarebytes Anti-Malware バージョン 2.0.3.1025 Malwarebytes Corporation 2014/10/30 56.6 MB 2.0.3.1025
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 2010/12/18 38.8 MB 4.0.30319
Microsoft .NET Framework 4 Client Profile Language Pack - 日本語 Microsoft Corporation 2010/12/18 2.93 MB 4.0.30319
Microsoft .NET Framework 4 Extended Microsoft Corporation 2014/10/31 51.9 MB 4.0.30319
Microsoft .NET Framework 4 Extended Language Pack - 日本語 Microsoft Corporation 2014/10/31 10.6 MB 4.0.30319
Microsoft Office Excel 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office Word 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 2014/09/11 4.6.305.0
Microsoft Silverlight Microsoft Corporation 2014/07/25 298 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2010/02/27 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Corporation 2010/11/11 260 KB 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Corporation 2010/03/14 250 KB 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/06/17 300 KB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2010/11/10 708 KB 8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 Microsoft Corporation 2011/04/15 580 KB 8.0.51011
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 2010/03/26 200 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Corporation 2011/04/15 598 KB 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/07/31 782 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2013/08/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2010/03/26 608 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2010/12/26 588 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/06/17 600 KB 9.0.30729.6161
MiPony 2.1.1 2013/12/28 2.1.1
Mozilla Maintenance Service Mozilla 2014/04/30 337 KB 24.5.0
Mozilla Thunderbird 24.6.0 (x86 ja) Mozilla 2014/06/15 48.1 MB 24.6.0
Mp3tag v2.46a Florian Heidenreich 2010/06/22 v2.46a
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2010/03/14 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2010/03/14 1.33 MB 4.20.9876.0
MSXML 4.0 SP3 Parser Microsoft Corporation 2011/04/16 1.47 MB 4.30.2100.0
MSXML 4.0 SP3 Parser (KB2721691) Microsoft Corporation 2012/07/13 1.53 MB 4.30.2114.0
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/01/11 1.54 MB 4.30.2117.0
MSXML 4.0 SP3 Parser (KB973685) Microsoft Corporation 2011/04/17 1.53 MB 4.30.2107.0
MyWinLocker Egis Technology Inc. 2010/01/05 47.9 MB 3.1.76.0
NTI Backup Now 5 NewTech Infosystems 2009/11/04 465 MB 5.1.2.627
NTI Media Maker 8 NewTech Infosystems 2009/11/04 766 MB 8.0.12.6623
On2 VP3 Video for Windows Codec 2012/12/29
PhishWall SecureBrain Corporation 2014/02/27 3.5.7
PhishWall Client SecureBrain Corporation 2014/10/31 5.0.2.0
Picasa 3 Google, Inc. 2013/07/16 3.9
QuickTime 7 Apple Inc. 2014/07/21 70.2 MB 7.75.80.95
Real Alternative 2.0.2 2010/04/02 18.2 MB 2.0.2
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2010/02/27 6.0.1.5969
Roll O' Pict 3.5.0 Hollyhock Inc. 2010/05/27 2.50 MB 3.05.0000
SD Formatter JP SDA 2010/07/18 1.13 MB 2.9.5
ShowPass Smartbar 2014/10/28
Skype Click to Call Skype Technologies S.A. 2012/04/19 10.1 MB 5.9.9216
Skype(TM) 6.11 Skype Technologies S.A. 2014/03/05 26.9 MB 6.11.102
Synaptics Pointing Device Driver Synaptics Incorporated 2010/02/27 14.0.6.0
UltraVNC 1.0.2 日本語版 Release 1a kp774.com 2012/09/27 1.1.0.2
UNLHA32.DLL 2010/05/19
UNRAR32 Common Archivers Library DLL 2010/05/19
USBメモリのセキュリティ Ver.3.0.1 2010/08/03
Video Download Capture V4.4.9 Apowersoft 2013/07/07 81.8 MB 4.4.9
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2010/06/22 8.25 MB 1.0.0.4
Welcome Center Acer Incorporated 2010/02/27 1.00.3008
WIDCOMM Bluetooth Software Broadcom Corporation 2010/02/27 144 MB 6.2.1.800
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) Broadcom 2010/02/27 07/30/2009 6.2.0.9405
Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407) Broadcom 2010/02/27 09/11/2009 6.2.0.9407
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) Broadcom 2010/02/27 07/28/2009 6.2.0.9800
Windows Live Essentials Microsoft Corporation 2010/10/31 15.4.3502.0922
WinRAR アーカイバ 2010/04/25
はがき作家 6 Free 株式会社ルートプロ 2012/11/18 25.7 MB 6.22.0000
はがき作家 6 Free 用 イラスト集 2013 年賀状 株式会社ルートプロ 2012/11/18 252 MB 6.22.0000
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2011/05/21
インクジェットプリンタ/スキャナ使用状況調査プログラム 2011/08/06
インテル(R) ターボ・ブースト・テクノロジー・モニター インテル 2010/02/27 1.13 MB 1.0.186.6
ロジクール SetPoint ロジクール 2010/11/10 17.0 KB 4.80
日本語 App Name Adobe Systems Incorporated 2010/12/11 1.8
無線親機 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08 2.08 MB 2.0.5
秀丸エディタ64 有限会社サイトー企画 2010/04/19 8.0.0.99
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2011/08/06 25.5 MB 1.09.0000

cc追加ログ ウィンドーズ
有効 HKCU:Run AdobeBridge
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files (x86)\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run Google Update Google Inc. "C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe" /c
有効 HKCU:Run Logicool Vid Logicool Co Ltd. "C:\Program Files (x86)\Logicool\Vid HD\Vid.exe" -bootmode
無効 HKCU:Run RegistryBooster "C:\Program Files (x86)\Uniblue\RegistryBooster\launcher.exe" delay 20000
有効 HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
有効 HKCU:RunOnce Application Restart #5 Google Inc. C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe --flag-switches-begin --flag-switches-end --restore-last-session -- https://www.valuedopinions.jp/survey/VOP08111321283182JAP/enter.asp?z=AC96E0306BAD3D0DEF525C0DB6F5DBD44D65D4BCD748DEE59D27188C5482FB9738
有効 HKLM:Run Acer ePower Management Acer Incorporated C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
有効 HKLM:Run AdobeCS5ServiceManager Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
有効 HKLM:Run AmIcoSinglun64 AlcorMicro Co., Ltd. C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
有効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run ArcadeDeluxeAgent CyberLink Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
有効 HKLM:Run BackupManagerTray NewTech Infosystems, Inc. "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
有効 HKLM:Run CanonMyPrinter CANON INC. C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
有効 HKLM:Run CanonSolutionMenu CANON INC. C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon
有効 HKLM:Run EgisTecLiveUpdate Egis Technology Inc. "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
有効 HKLM:Run Google Japanese Input Prelauncher Google Inc. "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
有効 HKLM:Run HotKeysCmds Intel Corporation C:\Windows\system32\hkcmd.exe
有効 HKLM:Run IAAnotif Intel Corporation C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\Windows\system32\igfxtray.exe
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run Kernel and Hardware Abstraction Layer Logitech, Inc. KHALMNPR.EXE
有効 HKLM:Run LManager Dritek System Inc. C:\Program Files (x86)\Launch Manager\LManager.exe
有効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
有効 HKLM:Run LWS Logitech Inc. C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe -hide
有効 HKLM:Run MSC Microsoft Corporation "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
有効 HKLM:Run mwlDaemon Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
有効 HKLM:Run Persistence Intel Corporation C:\Windows\system32\igfxpers.exe
有効 HKLM:Run PlayMovie Acer Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
有効 HKLM:Run PLFSetI C:\Windows\PLFSetI.exe
有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
有効 HKLM:Run SwitchBoard Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup Common Bluetooth.lnk Broadcom Corporation. C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
有効 Startup Common BUFFALO RAMDISK トレイ ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtilTray.exe
有効 Startup Common BUFFALO RAMDISK ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtil.exe
有効 Startup Common FT-STC/U-B 設定ユーティリティ.lnk NTTEAST・NTTWEST C:\Program Files (x86)\NTT\設定ユーティリティ\bin\cmvMain.exe
有効 Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
有効 Startup Common ロジクール SetPoint.lnk Logicool, Inc. C:\Program Files\Logicool\SetPoint\SetPoint.exe
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe
有効 Startup User 秀丸.lnk 有限会社サイトー企画 C:\Program Files\Hidemaru\Hidemaru.exe

cc追加ログ エクスプローラー
有効 Extension Bluetooth ヘ送る C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
有効 Extension Research Microsoft Corporation C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
有効 Extension Skype Click to Call Skype Technologies S.A. C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre7\bin\ssv.dll
無効 Helper PhishWall SecureBrain Corporation C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll
有効 Helper Skype Browser Helper Skype Technologies S.A. C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Toolbar PhishWall SecureBrain Corporation C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll

cc追加ログ ファイヤーフォックスとグーグルは空でした

cc追加ログ タスク
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task AdobeAAMUpdater-1.0-kuchi_acer-PC-kuchi_acer Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
有効 Task APSnotifierPP1 C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe --notifier2 A
有効 Task APSnotifierPP2 C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe --notifier 4
有効 Task APSnotifierPP3 C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe --notifier 6
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files (x86)\CCleaner\CCleaner.exe" $(Arg0)
有効 Task Go to RoboForm Install page Microsoft Corporation C:\Windows\system32\rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMKMPMOMKJKMMJKJMMCNOMNJKJJMCNLMHMHMLMCNHMMJJJLJCNOMOMOMLJJJNJLMJMNJLMOMJMJNJICMJMCNGMCNGMGMFMHMCNPMCNIMJMPMPMFMJMCNOMCNIMJMPMPMCNNMJNPICMLMFMEKMICNJJCKFMPMJNHICMEKMICNJJCKJNBJCMEJKIMJHJGJAKOJMJKJNIJNKJCMJNNICMJNDJCMFJPI"
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000Core Google Inc. C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000UA Google Inc. C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Launch HTC Sync Loader C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe -startup
有効 Task LaunchSignup C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe frompopup
有効 Task Run RoboForm TaskBar Icon C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /addGadget
有効 Task {00245714-05BF-4041-9D89-FF886D5C68EF} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\00_soft\soft_bk\buff\cmv-141.exe -d C:\00_soft\soft_bk\buff
有効 Task {89421C16-2422-436E-94DA-5FF7D3A090BA} Skype Technologies S.A. C:\Program Files (x86)\Skype\Phone\Skype.exe
有効 Task {A1E82E07-44FD-4E03-A427-2FF4B4D8C64B} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe" -d "C:\Program Files (x86)\Mozilla Thunderbird" -c /UpdateShortcutAppUserModelIds

cc追加ログ コンテキストメニュー
有効 Directory Browse in Adobe Bridge CS5 Adobe Systems, Inc. C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L"
有効 Directory DropboxExt Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
有効 Directory EDSshellExt Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\mwlshellext.dll
有効 Directory WinRAR C:\Program Files\WinRAR\rarext.dll
有効 Directory WinRAR32 C:\Program Files\WinRAR\rarext32.dll
有効 Drive Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx.dll
有効 File ContMenu HOEHOE.COM C:\Windows\SysWow64\ContView.cpl
有効 File DropboxExt Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
有効 File EDSshellExt Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\mwlshellext.dll
有効 File Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx.dll
有効 File WinRAR C:\Program Files\WinRAR\rarext.dll
有効 File WinRAR32 C:\Program Files\WinRAR\rarext32.dll
有効 Folder Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx.dll
有効 Folder WinRAR C:\Program Files\WinRAR\rarext.dll
有効 Folder WinRAR32 C:\Program Files\WinRAR\rarext32.dll

【管理人より】
最初の投稿で出ていたお名前を編集しました。
また表示されていたメールアドレスも除去しました
  • くちだ
  • 2014/11/01 (Sat) 10:42:11
次回からはお名前の変更とメールアドレスの削除を
こんにちは、IVNOと申します。
まずはじめに、ネット上で本名の一部または全部、あるいは本名に酷似した名前を利用するのは、
個人情報保護の観点から推奨されません。
次回からはお名前を変更し、ニックネームにて投稿をお願いいたします。
また、以下URLの理由により、相談者の皆様のメールアドレス記載はご遠慮いただいております。
http://akudaikan-0.bbs.fc2.com/?act=reply&tid=5053069#11242865
ご理解とご協力を賜りますよう、お願い申し上げます。
次回書き込み後に悪代官さんにご協力いただいて該当部分は削除させていただきます。

ログを拝見させていただきましたが、しっかりとマルウェアが残っているようです。
ご相談の件であるKrab webは見受けられませんが、FoxTabやMiPony、ShowPassなどと言う別のアドウェアが確認できます。
ツールで削除できるのは全体の一部にすぎませんので、ともすればツールで削除できないマルウェアのほうが多いかもしれません。
これらのマルウェアも普通に消すだけでは消えないので、完全削除ができるように順番を踏んで駆除してゆきましょう。
しかしその前に確認事項がございます。
Adobe CS5を導入なされておられる模様ですが、本PCは業務に使用なされているPCでしょうか。
こちらの件をご連絡いただければと思います。
  • IVNO
  • MAIL
  • 2014/11/01 (Sat) 16:11:15
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
早速のお返事ありがとうございます♪

>Adobe CS5を導入なされておられる模様ですが、本PCは業務に使用なされているPCでしょうか
業務用のPCではありませんし、ゲームもしません。普通の主婦です
思い当たる直近のダウンロードは喪中ハガキ作成するのにダウンロードしたくらいです。
プラウザはグーグルクロムを使っています
ネットバンク使用してますので暗証番号とか引き抜かれるのではと心配です

よろしくお願いいたします




  • くっちー
  • 2014/11/01 (Sat) 20:23:02
遅くなりました
少々遠隔操作による駆除サポートが立て続けに発生しておりまして、
なかなかこちらに顔を出す時間がありませんでした。
ようやく2件とも処置が完了いたしましたので、以降は落ち着くかと思います。

MBAMが既に導入されていますが、こちらは以降の作業にて旧バージョンをご利用していただきます。
最新バージョンには少々不具合があり、現在においてもその不具合が改善されておりません。
そのため、旧バージョン導入の案内に先立ち、最新バージョンはここでアンインストールのご案内をさせていただきますね。

それでは作業準備を行いましょう。

まずはじめに連絡事項がございます。
相談いただいてから回答できるまでに、毎回1日かそれ以上かかる可能性もございます。
ご不便をおかけいたしますが、ご理解とご協力を賜りますよう、お願い申し上げます。
また、回答者側から「解決」と通達があるまで、駆除作業は続いております。
そのため、途中でPCの状況が良くなったかのように感じたからと言って、解決のご案内を待たずして作業を中断なされると、
高確率で再発しているのが現状で、再発時にこちらにお戻りになられる方が続出しております。
回答者から「解決」と「自衛策」の案内があるまでは、作業を続けるようにしてください。

それでは以下の説明を熟読し、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てくる可能性がありますが、
それらは絶対にクリックしないでください。
「ATF-Cleaner」(通称:ATF)
説明↓
http://freesoft.tvbok.com/freesoft/pc_system/atf-cleaner.html
ダウンロード↓
http://www.atribune.org/index.php?option=com_content&task=view&id=25&Itemid=1
中央の赤い文字がダウンロードリンクです。
片付けるときはファイルを直接削除してください。
説明ページではWindowsXpと2000対応と書かれてますが、Win7やVistaにも対応です。

Iobit Uninstaller(通称:IU)
公式ページ↓
http://jp.iobit.com/free/iou.html
解説↓
http://milksizegene.blog.fc2.com/blog-entry-282.html
片付けのときはIUを起動中にIUを選択して削除するのですが、ポータブル版をお使いの場合はフォルダごと削除してください。
また、Revo Uninstallerなどの別の削除支援ソフトをお使いの場合は、そちらを利用して削除してください。

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードするようにしましょう。
なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
削除の際はIUなどでアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【操作次第ではWindowsが動作しなくなる可能性もある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、こちらが指示した以外の操作はしないようにしてください。

「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンクです。アクセスしてファイルを分かりやすい場所に保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。

準備できたら作業を開始しましょう。

まずは、以降の駆除作業でトラブルが発生しても直ちに復旧できるよう、システムの復元ポイントを手動で作成しましょう。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point
しかし、システムの復元はPCにかなりのダメージを与えますので、できれば使わないほうが望ましいです。
システムの復元が必要のない、慎重な作業を心がけましょう。

PCをセーフモードで起動してください(やり方↓)
http://www.pc-master.jp/sousa/s-safemode.html
HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、
こちらが指示した以外のものは絶対にチェックを入れないでください。

O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\RunOnce: [Application Restart #5] C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\chrome.exe --flag-switches-begin --flag-switches-end --restore-last-session -- https://www.valuedopinions.jp/survey/VOP08111321283182JAP/enter.asp?z=AC96E0306BAD3D0DEF525C0DB6F5DBD44D65D4BCD748DEE59D27188C5482FB9738
O8 - Extra context menu item: Mipony でダウンロード - file://C:\Program Files (x86)\MiPony\Browser\IEContext.htm
O23 - Service: Freemake Improver - Freemake - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
O23 - Service: MaintainerSvc1.05.7044970 - Unknown owner - C:\ProgramData\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
上記のFixが完了したら、IU起動させ、以下を削除してください。

Craving Explorer Version 1.0.0 RC15 tuck 2011/03/09 15.0 MB 0.21.0.77
Date Cracker 2000 2010/11/19
FoxTab Video Converter 2011/09/19
Freemake Video Converter バージョン 4.0.2 Ellora Assets Corporation 2013/07/30 78.3 MB 4.0.2
Java 7 Update 67 Oracle 2013/07/09 129 MB 7.0.670
Java(TM) 6 Update 37 Oracle 2012/06/26 95.6 MB 6.0.370
Malwarebytes Anti-Malware バージョン 2.0.3.1025 Malwarebytes Corporation 2014/10/30 56.6 MB 2.0.3.1025
MiPony 2.1.1 2013/12/28 2.1.1
Real Alternative 2.0.2 2010/04/02 18.2 MB 2.0.2
ShowPass Smartbar 2014/10/28

削除ボタンを押し、削除が完了したら、パワフルスキャンを行い、検出されたごみすべてにチェックを入れ、削除してください。
IUでのアンインストールが完了しましたら、IUを終了させ、ATFで掃除を行ってください。
Select Allにチェックを入れ、Empty Selectedをクリックします。
ATFでの掃除が完了しましたら、ACを使用してマルウェアの掃除を行いましょう。
ACを起動させ、Scanをクリックします。
スキャンが終了しましたら、Cleanをクリックして掃除を行います。
掃除が完了すると再起動を求められますので、指示に従って通常モードで再起動を行ってください。
これでセーフモードから通常モードに移行します。
再起動が完了すると、ACのログが表示されますので、そちらを一度PC内の分かりやすい場所に保存してください。

その後、CCを起動させてください。
起動したら、「ツール」→「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できますので、
デスクトップ等、分かりやすい場所に最新のログのみ保存しておきましょう。
続いて「InternetExplorer」タブのログ、導入されておられるのであれば「Firefox」タブ、
同じく導入されておられるのであれば「Google Chrome」タブ、そして「スケジュールされたタスク」タブのログを取得してください。
ただし、「コンテキストメニュー」のログは取得していただく必要がございません。
CCの各ログを取得されましたら、CCは終了させて問題ありません。
ACとCCのログを返信欄に貼り付けていただき、ご報告をお願いいたします。
上記ログを確認後、次の作業内容をご案内いたします。
  • IVNO
  • MAIL
  • 2014/11/02 (Sun) 07:29:56
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
お忙しいのに対応していただきありがとうございます
ご指示の手順通りダウンロードしセーフモードにしてHJTスキャンしました。
次にIUに移ったらIUの中味が空っぽでした
なので通常モードに戻して再度IUをダウンロードしました(OKですか?)

ご指示にしたがい削除していきましたが下記の2個のプログラムは存在していませんでした

Freemake Video Converter バージョン 4.0.2 Ellora Assets Corporation 2013/07/30 78.3 MB 4.0.2

ShowPass Smartbar 2014/10/28

よかったでしょうか?このような作業は初めてでしかも英語に疎いので
ここまで5時間かかりました~~
でも頑張りますのでご指導よろしくお願いします。

ACのログ
# AdwCleaner v3.311 - レポート作成日 02/11/2014 時間 13:19:38
# 更新日 30/09/2014 更新元 Xplode
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (64 bits)
# ユーザー名 : kuchi_acer - KUCHI_ACER-PC
# プログラムの実行場所 : C:\Users\kuchi_acer\Downloads\AdwCleaner.exe
# オプション : 除去

***** [ サービス ] *****


***** [ ファイル / フォルダ ] *****

フォルダ 除去 : C:\ProgramData\Babylon
フォルダ 除去 : C:\ProgramData\baidu
フォルダ 除去 : C:\ProgramData\Partner
フォルダ 除去 : C:\Program Files (x86)\baidu
フォルダ 除去 : C:\Program Files (x86)\globalUpdate
フォルダ 除去 : C:\Program Files (x86)\predm
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Local\globalUpdate
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Local\PackageAware
フォルダ 除去 : C:\Users\kuchi_acer\AppData\LocalLow\baidu
フォルダ 除去 : C:\Users\kuchi_acer\AppData\LocalLow\Smartbar
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Roaming\AnyProtectEx
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Roaming\Babylon
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Roaming\baidu
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Roaming\DigitalSites
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Roaming\HPAppData
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Roaming\Systweak
フォルダ 除去 : C:\Users\kuchi_acer\Documents\Optimizer Pro
フォルダ 除去 : C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
ファイル 除去 : C:\Windows\System32\roboot64.exe
ファイル 除去 : C:\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox\Profiles\grndbowm.default\user.js
ファイル 除去 : C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
ファイル 除去 : C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
ファイル 除去 : C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage
ファイル 除去 : C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_inst.shoppingate.info_0.localstorage-journal

***** [ タスク ] *****

タスク 除去 : APSnotifierPP1
タスク 除去 : APSnotifierPP2
タスク 除去 : APSnotifierPP3
タスク 除去 : LaunchSignup

***** [ ショートカット ] *****

ショートカット 修正 : C:\Users\kuchi_acer\Desktop\Search.lnk

***** [ レジストリ ] *****

キー 除去 : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
キー 除去 : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr
キー 除去 : HKLM\SOFTWARE\Classes\bbylntlbr.bbylntlbrHlpr.1
キー 除去 : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute
キー 除去 : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel
キー 除去 : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar
キー 除去 : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject
キー 除去 : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate
キー 除去 : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform
キー 除去 : HKLM\SOFTWARE\Classes\Prod.cap
キー 除去 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
キー 除去 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
キー 除去 : HKLM\SOFTWARE\Classes\speedupmypc
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\registrybooster_RASAPI32
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\registrybooster_RASMANCS
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasapi32
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasmancs
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\updateBatBrowse_RASAPI32
キー 除去 : HKLM\SOFTWARE\Microsoft\Tracing\updateBatBrowse_RASMANCS
キー 除去 : HKLM\SOFTWARE\84d88be638eb14
キー 除去 : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{2EECD738-5844-4A99-B4B6-146BF802613B}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
キー 除去 : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
キー 除去 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
キー 除去 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7854F00C-DC77-477E-A10E-603F48442D3B}
キー 除去 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113}
キー 除去 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2EECD738-5844-4A99-B4B6-146BF802613B}
キー 除去 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}
キー 除去 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113}
キー 除去 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4250488A-CB24-0893-C066-B1AEA57BCFF2}
キー 除去 : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209}
キー 除去 : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E}
キー 除去 : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
キー 除去 : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358}
キー 除去 : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7}
キー 除去 : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301}
キー 除去 : HKCU\Software\AnyProtect
キー 除去 : HKCU\Software\dsiteproducts
キー 除去 : HKCU\Software\GlobalUpdate
キー 除去 : HKCU\Software\Optimizer Pro
キー 除去 : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 除去 : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 除去 : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
キー 除去 : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
キー 除去 : HKLM\SOFTWARE\Babylon
キー 除去 : HKLM\SOFTWARE\dt soft\daemon tools toolbar
キー 除去 : HKLM\SOFTWARE\GlobalUpdate
キー 除去 : HKLM\SOFTWARE\systweak
キー 除去 : HKLM\SOFTWARE\Uniblue
キー 除去 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
キー 除去 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17344


-\\ Mozilla Firefox v

[ ファイル : C:\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox\Profiles\grndbowm.default\prefs.js ]


-\\ Google Chrome v

[ ファイル : C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [8182 octets] - [02/11/2014 13:15:07]
AdwCleaner[R1].txt - [8242 octets] - [02/11/2014 13:18:18]
AdwCleaner[S0].txt - [7769 octets] - [02/11/2014 13:19:38]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7829 octets] ##########

CCのログ ウィンドウズ
Yes HKCU:Run AdobeBridge
Yes HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
Yes HKCU:Run Google Update Google Inc. "C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe" /c
Yes HKCU:Run Logicool Vid Logicool Co Ltd. "C:\Program Files (x86)\Logicool\Vid HD\Vid.exe" -bootmode
No HKCU:Run RegistryBooster "C:\Program Files (x86)\Uniblue\RegistryBooster\launcher.exe" delay 20000
Yes HKCU:Run Skype Skype Technologies S.A. "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
Yes HKLM:Run Acer ePower Management Acer Incorporated C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
Yes HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
Yes HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
Yes HKLM:Run AdobeCS5ServiceManager Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
Yes HKLM:Run AmIcoSinglun64 AlcorMicro Co., Ltd. C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
Yes HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
Yes HKLM:Run ArcadeDeluxeAgent CyberLink Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
Yes HKLM:Run BackupManagerTray NewTech Infosystems, Inc. "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
Yes HKLM:Run CanonMyPrinter CANON INC. C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
Yes HKLM:Run CanonSolutionMenu CANON INC. C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon
Yes HKLM:Run EgisTecLiveUpdate Egis Technology Inc. "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
Yes HKLM:Run Google Japanese Input Prelauncher Google Inc. "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
Yes HKLM:Run HotKeysCmds Intel Corporation C:\Windows\system32\hkcmd.exe
Yes HKLM:Run IAAnotif Intel Corporation C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
Yes HKLM:Run IgfxTray Intel Corporation C:\Windows\system32\igfxtray.exe
Yes HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
Yes HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
Yes HKLM:Run Kernel and Hardware Abstraction Layer Logitech, Inc. KHALMNPR.EXE
Yes HKLM:Run LManager Dritek System Inc. C:\Program Files (x86)\Launch Manager\LManager.exe
Yes HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
Yes HKLM:Run LWS Logitech Inc. C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe -hide
Yes HKLM:Run MSC Microsoft Corporation "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
Yes HKLM:Run mwlDaemon Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
Yes HKLM:Run Persistence Intel Corporation C:\Windows\system32\igfxpers.exe
Yes HKLM:Run PlayMovie Acer Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
Yes HKLM:Run PLFSetI C:\Windows\PLFSetI.exe
Yes HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
Yes HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
Yes HKLM:Run SwitchBoard Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
Yes HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
Yes Startup Common Bluetooth.lnk Broadcom Corporation. C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
Yes Startup Common BUFFALO RAMDISK トレイ ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtilTray.exe
Yes Startup Common BUFFALO RAMDISK ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtil.exe
Yes Startup Common FT-STC/U-B 設定ユーティリティ.lnk NTTEAST・NTTWEST C:\Program Files (x86)\NTT\設定ユーティリティ\bin\cmvMain.exe
Yes Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
Yes Startup Common ロジクール SetPoint.lnk Logicool, Inc. C:\Program Files\Logicool\SetPoint\SetPoint.exe
Yes Startup User Dropbox.lnk Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe
Yes Startup User 秀丸.lnk 有限会社サイトー企画 C:\Program Files\Hidemaru\Hidemaru.exe

ccのログ エクスプローラー

Yes Extension Bluetooth ヘ送る C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
Yes Extension Research Microsoft Corporation C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
Yes Extension Skype Click to Call Skype Technologies S.A. C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Yes Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
No Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
No Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
No Helper PhishWall SecureBrain Corporation C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll
Yes Helper Skype Browser Helper Skype Technologies S.A. C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
No Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
No Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
No Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
No Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
No Toolbar PhishWall SecureBrain Corporation C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll

ccのログ スケジュール
Yes Task AdobeAAMUpdater-1.0-kuchi_acer-PC-kuchi_acer Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
Yes Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
Yes Task Go to RoboForm Install page Microsoft Corporation C:\Windows\system32\rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMKMPMOMKJKMMJKJMMCNOMNJKJJMCNLMHMHMLMCNHMMJJJLJCNOMOMOMLJJJNJLMJMNJLMOMJMJNJICMJMCNGMCNGMGMFMHMCNPMCNIMJMPMPMFMJMCNOMCNIMJMPMPMCNNMJNPICMLMFMEKMICNJJCKFMPMJNHICMEKMICNJJCKJNBJCMEJKIMJHJGJAKOJMJKJNIJNKJCMJNNICMJNDJCMFJPI"
Yes Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
Yes Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Yes Task GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000Core Google Inc. C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe /c
Yes Task GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000UA Google Inc. C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
Yes Task Launch HTC Sync Loader C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe -startup
Yes Task Run RoboForm TaskBar Icon C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
Yes Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /addGadget
Yes Task {00245714-05BF-4041-9D89-FF886D5C68EF} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\00_soft\soft_bk\buff\cmv-141.exe -d C:\00_soft\soft_bk\buff
Yes Task {89421C16-2422-436E-94DA-5FF7D3A090BA} Skype Technologies S.A. C:\Program Files (x86)\Skype\Phone\Skype.exe
Yes Task {A1E82E07-44FD-4E03-A427-2FF4B4D8C64B} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe" -d "C:\Program Files (x86)\Mozilla Thunderbird" -c /UpdateShortcutAppUserModelIds

以上です。IUの他の場所は空っぽでした



  • くっちー
  • 2014/11/02 (Sun) 14:18:08
つなぎの案内レスです
こんばんは。
ここの管理人の悪代官です。
IVNOさんがご多忙なので、貧乏な自分がつなぎのレスします。

以下の説明をよく読んでから続きの作業をお願いします。

まずACはもういいので、導入時の説明手順に沿って片づけていいです。

またCCを起動して「スケジュールされたタスク」タブ内の下記を右クリックしてそれぞれ「無効」にしたあと「エントリの削除」してください。
>Yes Task Go to RoboForm Install page Microsoft Corporation C:\Windows\system32\rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMKMPMOMKJKMMJKJMMCNOMNJKJJMCNLMHMHMLMCNHMMJJJLJCNOMOMOMLJJJNJLMJMNJLMOMJMJNJICMJMCNGMCNGMGMFMHMCNPMCNIMJMPMPMFMJMCNOMCNIMJMPMPMCNNMJNPICMLMFMEKMICNJJCKFMPMJNHICMEKMICNJJCKJNBJCMEJKIMJHJGJAKOJMJKJNIJNKJCMJNNICMJNDJCMFJPI"

>Yes Task Run RoboForm TaskBar Icon C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe

無効化できないときはそのまま削除でもいいです。

次は以下のアプリを準備してください。
Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ですが、MBAMは現在安定性や動作でかなり難が出ており、普通に使っても正常にスキャンができないバグまで多発中です。
そのため本家サイトから最新版のダウンロードせず、ここではあえて旧バージョンで作業します。

旧バージョンの説明サイト↓
http://fine.tok2.com/home/heto2/0700SecurityApp/Malwarebytes/0001.htm

以下のURLからMBAMの旧バージョンをダウンロードしてください。
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
ファイル直リンです。保存しておいてください。

注)インストール時に日本語でインストールすると文字化けすることがあります。英語でインストール後に日本語化してください。
MBAM起動して「Settings」タブ→「Language」→「Japanese」で日本語化できます。

SuperAntiSpyware(通称・SAS。説明↓)
http://www.softnavi.com/superantispyware.html
本家のダウンロードサイト↓
http://www.superantispyware.com/
こちらは最新版で作業します。

アプリの準備できたら両アプリをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。
なお、ここでMBAMの更新で「プログラム」自体は更新せず、定義だけ更新しておいてください。
プログラム本体を更新すると、バグ多発中の最新版になってしまうので、せっかく旧バージョンでインストールした意味がなくなります。

アップデートまでできたらPCをセーフモードで再起動してから、ATFを使ってゴミファイルの掃除してください。

続いてセーフモードのままMBAMとSASで順番にスキャンしてください。MBAMは「フルスキャン」です。

SASAは以下の手順になります。
Scan Your Computerをクリックします。
Recommended Pre-Scan Actionsの項目のすべてにチェックを入れてください。
ただしSASは有料版でしか使えない機能もいくつかあるので、それらの箇所はチェックしなくてもいいです。
次にScanner Optionsの項目のScan inside ZIP archivesにチェックを入れてください。
その後Complete Scanをクリックしてスキャンを行ってください。
30分~1時間程度かかります。
スキャンが完了したら、Continueをクリックし、一覧を表示させます。
一覧に表示されているものすべてに×印のチェックが入っているのを確認し、
Continueをクリックします。
SASのログは画面中央の「System Tools」から「Scan logs」を開くと、
スキャンした日時のごとのログのリストが出ます。
そこで最初に処置した日時のログを選んでそれをダブルクリックすると、そのログの内容が表示されます。

MBAMでのスキャンは以下の手順で。
MBAM起動したら「スキャナー」タブから「フルスキャン」してください。
対象ドライブはCを含めて全ドライブを選択してください。

スキャン対象は全ドライブを選択(チェック)してください。時間はかかりますができるだけ細かくスキャンするためです。
順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、「詳細を表示」を押すとその結果が表示されるはずなので、そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

SASログ確認方法はアプリを起動して、画面中央の「System Tools」から「Scan Logs」を開くと、やはり日時ごとのリストが出るので、その中の対象日時のログを選択してダブルクリックするとそのログが表示されます。

このあと両アプリのログを返信に貼り付けて、それを状態報告とともにレスで見せてください。

それと追加でもうひとつログもお願いします。

PCをセーフモード状態でCCを起動して、そこで「Chrome」タブのログだけ取り直して、そのログも同時にレスください。
これらを見てからIVNOさんか、または自分からの続きのレスをお待ちください
  • 悪代官
  • 2014/11/02 (Sun) 22:09:15
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
草々のご指示ありがとうございます。
早速ですが10/30にMBAMの最新版をインストールしていたせいでしょうか、旧バージョンのMBAMnoのインストールが自動的に日本語になってました。
セーフモードでスキャンしようとしたらやはり文字化けの部分があります。
再度アンイストールして新たに旧バージョン入れてもやヘリ日本語のままです。
どうしたらいいですか?ご指示お願いいたします。
  • くっちー
  • MAIL
  • 2014/11/03 (Mon) 16:23:28
MBAMの設定方法についてのご案内です
お待たせいたしました。
悪代官さんつなぎありがとうございます。
MBAMの設定につきましては、文字化けしているタブを選んでゆき、Japaneseと書かれた選択項目を探してください。
そちらをクリックし、再度Japaneseをクリックすることで文字化けが解消されます。
  • IVNO
  • MAIL
  • 2014/11/03 (Mon) 16:50:50
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
MBAMはご指示の旧バージョンをインストールしたつもりが、もしかしたら最新のMBAMだったみたいです、なぜでしょう??

なのでフルスキャンというのはなく「脅威スキャン」があったのでそれかな、と思いスキャンしました。
終了後の画面には「詳細を表示」がなく「履歴ログ」というのがあったので保存しようとしましたが保存出来ませんでした。
検出されたものはありませんでした。

これのログ確認が重要だと書いてあるのにコピーも保存も出来ません(すみません、私が出来ないだけかもしれませんが・・・)

取り急ぎ、SASログとCHOMEのログをお送りいたします。

なにか大きな失敗をしたのでは心配です。

SASログ

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/03/2014 at 09:18 PM

Application Version : 6.0.1158
Database Version : 11586

Scan type : Complete Scan
Total Scan Time : 00:17:57

Operating System Information
Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601)
UAC Off - Administrator

Memory items scanned : 309
Memory threats detected : 0
Registry items scanned : 71274
Registry threats detected : 0
File items scanned : 25909
File threats detected : 5

PUP.TotalSystemCare
C:\Program Files\TOTALSYSTEMCARE\Backups
C:\Program Files\TOTALSYSTEMCARE\install.log
C:\Program Files\TOTALSYSTEMCARE\TotalSystemCare.url
C:\Program Files\TOTALSYSTEMCARE

PUP.InstallCore/Variant
C:\PROGRAM FILES (X86)\FLV PLAYER\UNINSTALL\__UNINSTALL_.EXE

============
End of Log
============

CHROMEロゴ
Acer Arcade Deluxe CyberLink Corp. 2010/02/27 99.9 MB 3.0.7112
Acer Backup Manager NewTech Infosystems 2010/01/05 26.5 MB 2.0.0.29
Acer Crystal Eye webcam Ver:1.1.124.1120 Chicony Electronics Co.,Ltd. 2010/02/27 1.1.124.1120
Acer ePower Management Acer Incorporated 2010/02/27 4.05.3004
Acer eRecovery Management Acer Incorporated 2010/01/05 4.05.3005
Acer GridVista Acer Inc. 2010/02/27 3.01.0730
Acer Registration Acer Incorporated 2010/02/27 1.02.3006
Acer ScreenSaver Acer Incorporated 2010/02/27 1.5.0715
Acer Updater Acer Incorporated 2009/11/04 1.01.3017
Acrobat.com Adobe Systems Incorporated 2009/11/04 1.60 MB 1.6.65
Adobe AIR Adobe Systems Inc. 2011/04/16 2.5.1.17730
Adobe Community Help Adobe Systems Incorporated 2010/12/11 3.0.0.400
Adobe Creative Suite 5 Master Collection Adobe Systems Incorporated 2010/12/11 3.66 GB 5.0
Adobe Reader XI (11.0.09) - Japanese Adobe Systems Incorporated 2014/10/19 203 MB 11.0.09
Alcor Micro USB Card Reader Alcor Micro Corp. 2009/11/04 2.86 MB 1.4.17.35005
Apple Application Support Apple Inc. 2014/07/21 93.4 MB 3.0.5
Apple Software Update Apple Inc. 2011/07/11 2.38 MB 2.1.3.127
BBブロードキャスト 6.0.11.9232 TVBANK 2011/09/19 6.0.11.9232
Bonjour Apple Inc. 2011/12/19 2.00 MB 3.0.0.10
Broadcom Gigabit NetLink Controller Broadcom Corporation 2009/11/04 368 KB 12.33.03
Broadcom Wireless LAN Driver Installation Program for Windows7 Broadcom 2010/10/17 5.60.18.8
BUFFALO RAMDISK ユーティリティ 2011/05/21
BUFFALO エアステーション設定ツール BUFFALO INC. 2011/07/24 2.0.0
BUFFALO クライアントマネージャV 2011/07/24
BUFFALO パソコン環境表示ツール BUFFALO INC. 2011/07/24 1.0.2
CANON iMAGE GATEWAY 無料会員登録 MP630 2011/08/06
Canon MP Navigator EX 2.0 2011/08/06
Canon MP630 series MP Drivers 2011/08/06
Canon Utilities Easy-PhotoPrint EX 2011/08/06
Canon Utilities Solution Menu 2011/08/06
Canon Utilities マイ プリンタ 2011/08/06
CCleaner Piriform 2014/11/02 4.19
Context Viewer Version 1.4.1 2010/10/22
Dropbox Dropbox, Inc. 2014/10/05 2.10.30
DVD Decrypter (Remove Only) 2011/09/10
DVD Shrink 3.2 DVD Shrink 2011/09/10
Edy Viewer bitWallet 2010/12/05 2.1.2.2
FT-STC/U-B 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08
Google Chrome Google Inc. 2010/03/13 38.0.2125.111
Google Earth Google 2013/12/14 180 MB 7.1.2.2041
Google Toolbar for Internet Explorer Google Inc. 2014/03/29 7.5.5111.1712
Google 日本語入力 Google Inc. 2014/01/09 83.0 MB 1.13.1641.0
Identity Card Acer Incorporated 2010/02/27 1.00.3003
ImgBurn LIGHTNING UK! 2010/03/28 2.5.1.0
Intel(R) Control Center Intel Corporation 2010/02/27 1.2.0.1006
Intel(R) Graphics Media Accelerator Driver Intel Corporation 2011/02/05 8.15.10.2008
Intel(R) Management Engine Components Intel Corporation 2010/02/28 6.0.0.1179
Intel® Matrix Storage Manager Intel Corporation 2010/02/27
iTunes Apple Inc. 2014/07/21 219 MB 11.3.0.54
Java 7 Update 67 2009/11/04
Java(TM) 6 Update 37 2009/11/04
Joulemeter Microsoft Research 2010/06/15 668 KB 1.0.0
JTrim WoodyBells software. 2013/03/09
Launch Manager Acer Inc. 2010/02/27 3.0.05
Lhaplus 2010/03/14
Logicool Vid HD Logicool Co. Ltd.. 2011/07/25 7.2 (7248)
Logicool ウェブカメラ ソフトウェア Logicool Inc. 2011/07/25 2.0
LPT System Updater Service 2009/11/04
LSI HDA Modem LSI Corporation 2012/09/27 16.0 KB 2.2.98
Malwarebytes Anti-Malware version 2.0.3.1025 Malwarebytes Corporation 2014/11/03 56.6 MB 2.0.3.1025
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 2010/12/18 38.8 MB 4.0.30319
Microsoft .NET Framework 4 Client Profile Language Pack - 日本語 Microsoft Corporation 2010/12/18 2.93 MB 4.0.30319
Microsoft .NET Framework 4 Extended Microsoft Corporation 2014/10/31 51.9 MB 4.0.30319
Microsoft .NET Framework 4 Extended Language Pack - 日本語 Microsoft Corporation 2014/10/31 10.6 MB 4.0.30319
Microsoft Office Excel 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office Word 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 2014/09/11 4.6.305.0
Microsoft Silverlight Microsoft Corporation 2014/07/25 298 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2010/02/27 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Corporation 2010/11/11 260 KB 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Corporation 2010/03/14 250 KB 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/06/17 300 KB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2010/11/10 708 KB 8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 Microsoft Corporation 2011/04/15 580 KB 8.0.51011
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 2010/03/26 200 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Corporation 2011/04/15 598 KB 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/07/31 782 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2013/08/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2010/03/26 608 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2010/12/26 588 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/06/17 600 KB 9.0.30729.6161
Mozilla Maintenance Service Mozilla 2014/04/30 337 KB 24.5.0
Mozilla Thunderbird 24.6.0 (x86 ja) Mozilla 2014/06/15 48.1 MB 24.6.0
Mp3tag v2.46a Florian Heidenreich 2010/06/22 v2.46a
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2010/03/14 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2010/03/14 1.33 MB 4.20.9876.0
MSXML 4.0 SP3 Parser Microsoft Corporation 2011/04/16 1.47 MB 4.30.2100.0
MSXML 4.0 SP3 Parser (KB2721691) Microsoft Corporation 2012/07/13 1.53 MB 4.30.2114.0
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/01/11 1.54 MB 4.30.2117.0
MSXML 4.0 SP3 Parser (KB973685) Microsoft Corporation 2011/04/17 1.53 MB 4.30.2107.0
MyWinLocker Egis Technology Inc. 2010/01/05 47.9 MB 3.1.76.0
NTI Backup Now 5 NewTech Infosystems 2009/11/04 465 MB 5.1.2.627
NTI Media Maker 8 NewTech Infosystems 2009/11/04 766 MB 8.0.12.6623
On2 VP3 Video for Windows Codec 2012/12/29
PhishWall SecureBrain Corporation 2014/02/27 3.5.7
PhishWall Client SecureBrain Corporation 2014/10/31 5.0.2.0
Picasa 3 Google, Inc. 2013/07/16 3.9
QuickTime 7 Apple Inc. 2014/07/21 70.2 MB 7.75.80.95
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2010/02/27 6.0.1.5969
Roll O' Pict 3.5.0 Hollyhock Inc. 2010/05/27 2.50 MB 3.05.0000
SD Formatter JP SDA 2010/07/18 1.13 MB 2.9.5
ShowPass Smartbar 2014/10/28
Skype Click to Call Skype Technologies S.A. 2012/04/19 10.1 MB 5.9.9216
Skype(TM) 6.11 Skype Technologies S.A. 2014/03/05 26.9 MB 6.11.102
SUPERAntiSpyware SUPERAntiSpyware.com 2014/11/03 46.8 MB 6.0.1158
Synaptics Pointing Device Driver Synaptics Incorporated 2010/02/27 14.0.6.0
UltraVNC 1.0.2 日本語版 Release 1a kp774.com 2012/09/27 1.1.0.2
UNLHA32.DLL 2010/05/19
UNRAR32 Common Archivers Library DLL 2010/05/19
USBメモリのセキュリティ Ver.3.0.1 2010/08/03
Video Download Capture V4.4.9 Apowersoft 2013/07/07 81.8 MB 4.4.9
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2010/06/22 8.25 MB 1.0.0.4
Welcome Center Acer Incorporated 2010/02/27 1.00.3008
WIDCOMM Bluetooth Software Broadcom Corporation 2010/02/27 144 MB 6.2.1.800
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) Broadcom 2010/02/27 07/30/2009 6.2.0.9405
Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407) Broadcom 2010/02/27 09/11/2009 6.2.0.9407
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) Broadcom 2010/02/27 07/28/2009 6.2.0.9800
Windows Live Essentials Microsoft Corporation 2010/10/31 15.4.3502.0922
WinRAR アーカイバ 2010/04/25
はがき作家 6 Free 株式会社ルートプロ 2012/11/18 25.7 MB 6.22.0000
はがき作家 6 Free 用 イラスト集 2013 年賀状 株式会社ルートプロ 2012/11/18 252 MB 6.22.0000
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2011/05/21
インクジェットプリンタ/スキャナ使用状況調査プログラム 2011/08/06
インテル(R) ターボ・ブースト・テクノロジー・モニター インテル 2010/02/27 1.13 MB 1.0.186.6
ロジクール SetPoint ロジクール 2010/11/10 17.0 KB 4.80
日本語 App Name Adobe Systems Incorporated 2010/12/11 1.8
無線親機 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08 2.08 MB 2.0.5
秀丸エディタ64 有限会社サイトー企画 2010/04/19 8.0.0.99
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2011/08/06 25.5 MB 1.09.0000
  • くっちー
  • MAIL
  • 2014/11/03 (Mon) 22:19:36
MBAMは一度入れなおしを
作業と報告、ご苦労様です。

>MBAMはご指示の旧バージョンをインストールしたつもりが、もしかしたら最新のMBAMだったみたいです、なぜでしょう??

はい、MBAM更新時に「プログラムの更新」までチェックを入れたまま更新したようですね。
プログラム更新すると本体が最新版になってしまうのです。

一度最新版MBAMはアンインストールしたうえで、ATFで一時ファイルの掃除した後に先の手順で再度旧バージョンMBAMのインストールしてください。
インストールしたら今度は「プログラムの更新」はチェックしないでおいてください。
添付画像の上段にある部分です。
  • 悪代官
  • 2014/11/04 (Tue) 06:40:01
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
お手数おかけして申し訳ありません・・・
無事に旧バージョンのMBAMでのフルスキャン終了しました。
「検出したアイテムはありません」と終了後出ました。
詳細を表示する画面がなかったのでログをみましたら
空っぽでした。

これでよかったでしょうか?
  • くっちー
  • MAIL
  • 2014/11/04 (Tue) 12:29:28
一部処置のやり直しをしましょう
MBAMは検出がなかったとのことですので、その旨をご連絡いただければそちらで問題ありません。
Chromeのログと書かれていましたが、インストール情報ログですね。
削除できていないものがありますので、ここで削除しましょう。

PCをセーフモードで起動させてください。
IUを起動させ、以下を削除してください。

Java 7 Update 67 2009/11/04
Java(TM) 6 Update 37 2009/11/04
Malwarebytes Anti-Malware version 2.0.3.1025 Malwarebytes Corporation 2014/11/03 56.6 MB 2.0.3.1025
ShowPass Smartbar 2014/10/28
SUPERAntiSpyware SUPERAntiSpyware.com 2014/11/03 46.8 MB 6.0.1158

削除ボタンを押し、削除が完了したら、パワフルスキャンを行い、検出されたごみすべてにチェックを入れ、削除してください。
IUでのアンインストールが完了しましたら、IUを終了させ、ATFで掃除を行ってください。
Select Allにチェックを入れ、Empty Selectedをクリックします。
ATFでの掃除が完了しましたら、PCを通常モードで再起動させてください。
以下URLからSkypeの最新版をご用意ください。
http://www.skype.com/ja/download-skype/skype-for-windows/downloading/
ダウンロードができましたら、そのままインストールしてください。
インストールが完了しましたら、CCを起動させてください。
ツール→インストール情報を開き、テキストとして保存(F)をクリックしてログを保存し、
そちらのログを貼り付けてご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2014/11/04 (Tue) 18:06:23
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
早急のお返事、感謝です
プラウザ開くと左側にKrab Webの広告、Deaisの広告、プラウザの右端がめくれその下には別のプラウザ、プログラムの中にはMiponyというのがいつのまにか入っています・・・

ご指示のIUでの作業ですが
①Java 7 Update 67 2009/11/04
IUでは見つからないので通常モードでプログラム確認しましたら存在していますが、クリックしてみると
「指定されたファイルに対しこの操作を行うプログラムが関連付けられていません」
と、出ました

②Java(TM) 6 Update 37 2009/11/04
こちらも上記と一緒です

③Malwarebytes Anti-Malware version 2.0.3.1025 Malwarebytes Corporation 2014/11/03 56.6 MB 2.0.3.1025
こちらはバージョンが1.75.0.1300
11/4インストールのものが残っていますがこれの削除でよろしいでしょうか?

④ShowPass Smartbar 2014/10/28
これは通常モード、セーフモード、INのすべてのプログラム、どこにも見当たりません

⑤SUPERAntiSpyware SUPERAntiSpyware.com
2014/11/03 46.8 MB 6.0.1158
これはセーフモード、通常モード、IUのすべてのプログラム、で存在くを確認出来ました

作業をどのように進めていったいいのかご指示お願いいたします。
PCのプログラムとかまったくわからないので
上記のJavaのようにIUにだけ存在しない、とかいう事象が出ると情けないのですが一歩も進めません・・・

お手数おかけしますがよろしくお願いいたします
  • くっちー
  • MAIL
  • 2014/11/04 (Tue) 22:04:12
削除のご案内です
インストール日時の相違などはバグの一種なので気になさらないでください。
名称が同じであれば問題ありません。
探しても存在しないものは放置で結構です。
現段階で処置できるものだけ処置で。
  • IVNO
  • MAIL
  • 2014/11/04 (Tue) 22:19:11
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
おはようございます

MBAMとSASの削除すみました
ご指示のCCログです

Acer Arcade Deluxe CyberLink Corp. 2010/02/27 99.9 MB 3.0.7112
Acer Backup Manager NewTech Infosystems 2010/01/05 26.5 MB 2.0.0.29
Acer Crystal Eye webcam Ver:1.1.124.1120 Chicony Electronics Co.,Ltd. 2010/02/27 1.1.124.1120
Acer ePower Management Acer Incorporated 2010/02/27 4.05.3004
Acer eRecovery Management Acer Incorporated 2010/01/05 4.05.3005
Acer GridVista Acer Inc. 2010/02/27 3.01.0730
Acer Registration Acer Incorporated 2010/02/27 1.02.3006
Acer ScreenSaver Acer Incorporated 2010/02/27 1.5.0715
Acer Updater Acer Incorporated 2009/11/04 1.01.3017
Acrobat.com Adobe Systems Incorporated 2009/11/04 1.60 MB 1.6.65
Adobe AIR Adobe Systems Inc. 2011/04/16 2.5.1.17730
Adobe Community Help Adobe Systems Incorporated 2010/12/11 3.0.0.400
Adobe Creative Suite 5 Master Collection Adobe Systems Incorporated 2010/12/11 3.66 GB 5.0
Adobe Reader XI (11.0.09) - Japanese Adobe Systems Incorporated 2014/10/19 203 MB 11.0.09
Alcor Micro USB Card Reader Alcor Micro Corp. 2009/11/04 2.86 MB 1.4.17.35005
Apple Application Support Apple Inc. 2014/07/21 93.4 MB 3.0.5
Apple Software Update Apple Inc. 2011/07/11 2.38 MB 2.1.3.127
BBブロードキャスト 6.0.11.9232 TVBANK 2011/09/19 6.0.11.9232
Bonjour Apple Inc. 2011/12/19 2.00 MB 3.0.0.10
Broadcom Gigabit NetLink Controller Broadcom Corporation 2009/11/04 368 KB 12.33.03
Broadcom Wireless LAN Driver Installation Program for Windows7 Broadcom 2010/10/17 5.60.18.8
BUFFALO RAMDISK ユーティリティ 2011/05/21
BUFFALO エアステーション設定ツール BUFFALO INC. 2011/07/24 2.0.0
BUFFALO クライアントマネージャV 2011/07/24
BUFFALO パソコン環境表示ツール BUFFALO INC. 2011/07/24 1.0.2
CANON iMAGE GATEWAY 無料会員登録 MP630 2011/08/06
Canon MP Navigator EX 2.0 2011/08/06
Canon MP630 series MP Drivers 2011/08/06
Canon Utilities Easy-PhotoPrint EX 2011/08/06
Canon Utilities Solution Menu 2011/08/06
Canon Utilities マイ プリンタ 2011/08/06
CCleaner Piriform 2014/11/02 4.19
Context Viewer Version 1.4.1 2010/10/22
Dropbox Dropbox, Inc. 2014/10/05 2.10.30
DVD Decrypter (Remove Only) 2011/09/10
DVD Shrink 3.2 DVD Shrink 2011/09/10
Edy Viewer bitWallet 2010/12/05 2.1.2.2
FT-STC/U-B 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08
Google Chrome Google Inc. 2010/03/13 38.0.2125.111
Google Earth Google 2013/12/14 180 MB 7.1.2.2041
Google Toolbar for Internet Explorer Google Inc. 2014/03/29 7.5.5111.1712
Google 日本語入力 Google Inc. 2014/01/09 83.0 MB 1.13.1641.0
Identity Card Acer Incorporated 2010/02/27 1.00.3003
ImgBurn LIGHTNING UK! 2010/03/28 2.5.1.0
Intel(R) Control Center Intel Corporation 2010/02/27 1.2.0.1006
Intel(R) Graphics Media Accelerator Driver Intel Corporation 2011/02/05 8.15.10.2008
Intel(R) Management Engine Components Intel Corporation 2010/02/28 6.0.0.1179
Intel® Matrix Storage Manager Intel Corporation 2010/02/27
IObit Uninstaller IObit 2014/10/10 4.0.4.25
iTunes Apple Inc. 2014/07/21 219 MB 11.3.0.54
Java 7 Update 67 2009/11/04
Java(TM) 6 Update 37 2009/11/04
Joulemeter Microsoft Research 2010/06/15 668 KB 1.0.0
JTrim WoodyBells software. 2013/03/09
Launch Manager Acer Inc. 2010/02/27 3.0.05
Lhaplus 2010/03/14
Logicool Vid HD Logicool Co. Ltd.. 2011/07/25 7.2 (7248)
Logicool ウェブカメラ ソフトウェア Logicool Inc. 2011/07/25 2.0
LPT System Updater Service 2009/11/04
LSI HDA Modem LSI Corporation 2012/09/27 16.0 KB 2.2.98
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 2010/12/18 38.8 MB 4.0.30319
Microsoft .NET Framework 4 Client Profile Language Pack - 日本語 Microsoft Corporation 2010/12/18 2.93 MB 4.0.30319
Microsoft .NET Framework 4 Extended Microsoft Corporation 2014/10/31 51.9 MB 4.0.30319
Microsoft .NET Framework 4 Extended Language Pack - 日本語 Microsoft Corporation 2014/10/31 10.6 MB 4.0.30319
Microsoft Office Excel 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office Word 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 2014/09/11 4.6.305.0
Microsoft Silverlight Microsoft Corporation 2014/07/25 298 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2010/02/27 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Corporation 2010/11/11 260 KB 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Corporation 2010/03/14 250 KB 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/06/17 300 KB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2010/11/10 708 KB 8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 Microsoft Corporation 2011/04/15 580 KB 8.0.51011
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 2010/03/26 200 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Corporation 2011/04/15 598 KB 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/07/31 782 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2013/08/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2010/03/26 608 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2010/12/26 588 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/06/17 600 KB 9.0.30729.6161
Mozilla Maintenance Service Mozilla 2014/04/30 337 KB 24.5.0
Mozilla Thunderbird 24.6.0 (x86 ja) Mozilla 2014/06/15 48.1 MB 24.6.0
Mp3tag v2.46a Florian Heidenreich 2010/06/22 v2.46a
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2010/03/14 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2010/03/14 1.33 MB 4.20.9876.0
MSXML 4.0 SP3 Parser Microsoft Corporation 2011/04/16 1.47 MB 4.30.2100.0
MSXML 4.0 SP3 Parser (KB2721691) Microsoft Corporation 2012/07/13 1.53 MB 4.30.2114.0
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/01/11 1.54 MB 4.30.2117.0
MSXML 4.0 SP3 Parser (KB973685) Microsoft Corporation 2011/04/17 1.53 MB 4.30.2107.0
MyWinLocker Egis Technology Inc. 2010/01/05 47.9 MB 3.1.76.0
NTI Backup Now 5 NewTech Infosystems 2009/11/04 465 MB 5.1.2.627
NTI Media Maker 8 NewTech Infosystems 2009/11/04 766 MB 8.0.12.6623
On2 VP3 Video for Windows Codec 2012/12/29
PhishWall SecureBrain Corporation 2014/02/27 3.5.7
PhishWall Client SecureBrain Corporation 2014/10/31 5.0.2.0
Picasa 3 Google, Inc. 2013/07/16 3.9
QuickTime 7 Apple Inc. 2014/07/21 70.2 MB 7.75.80.95
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2010/02/27 6.0.1.5969
Roll O' Pict 3.5.0 Hollyhock Inc. 2010/05/27 2.50 MB 3.05.0000
SD Formatter JP SDA 2010/07/18 1.13 MB 2.9.5
ShowPass Smartbar 2014/10/28
Skype Click to Call Skype Technologies S.A. 2012/04/19 10.1 MB 5.9.9216
Skype(TM) 6.22 Skype Technologies S.A. 2014/11/05 47.4 MB 6.22.104
Synaptics Pointing Device Driver Synaptics Incorporated 2010/02/27 14.0.6.0
UltraVNC 1.0.2 日本語版 Release 1a kp774.com 2012/09/27 1.1.0.2
UNLHA32.DLL 2010/05/19
UNRAR32 Common Archivers Library DLL 2010/05/19
USBメモリのセキュリティ Ver.3.0.1 2010/08/03
Video Download Capture V4.4.9 Apowersoft 2013/07/07 81.8 MB 4.4.9
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2010/06/22 8.25 MB 1.0.0.4
Welcome Center Acer Incorporated 2010/02/27 1.00.3008
WIDCOMM Bluetooth Software Broadcom Corporation 2010/02/27 144 MB 6.2.1.800
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) Broadcom 2010/02/27 07/30/2009 6.2.0.9405
Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407) Broadcom 2010/02/27 09/11/2009 6.2.0.9407
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) Broadcom 2010/02/27 07/28/2009 6.2.0.9800
Windows Live Essentials Microsoft Corporation 2010/10/31 15.4.3502.0922
WinRAR アーカイバ 2010/04/25
はがき作家 6 Free 株式会社ルートプロ 2012/11/18 25.7 MB 6.22.0000
はがき作家 6 Free 用 イラスト集 2013 年賀状 株式会社ルートプロ 2012/11/18 252 MB 6.22.0000
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2011/05/21
インクジェットプリンタ/スキャナ使用状況調査プログラム 2011/08/06
インテル(R) ターボ・ブースト・テクノロジー・モニター インテル 2010/02/27 1.13 MB 1.0.186.6
ロジクール SetPoint ロジクール 2010/11/10 17.0 KB 4.80
日本語 App Name Adobe Systems Incorporated 2010/12/11 1.8
無線親機 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08 2.08 MB 2.0.5
秀丸エディタ64 有限会社サイトー企画 2010/04/19 8.0.0.99
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2011/08/06 25.5 MB 1.09.0000
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 07:06:58
HPとOTLでスキャンを
Skypeの更新も無事完了したみたいですね。
ここから先は手動駆除となります。

以下のソフトウェアをご用意ください。

HerdProtect(通称:HP)
http://www.herdprotect.com/downloads.aspx
インストール版でもポータブル版でも構いません。
インストール版の場合、アンインストールの際は、セーフモードでIUを利用してアンインストールされてください。
また、トレンドマイクロのウイルスバスターとの相性が悪いとの報告も受けております。
相性の問題でスキャンが正常にできないときは、その旨をご報告ください。
さらに、本ソフトウェアにより検出されたものすべてがマルウェアと言うわけではありません。
HPは駆除機能もありますが、まずは駆除は行わず、検出のみに使用いたします。

OldTimer Listit(通称:OTL)
http://oldtimer.geekstogo.com/OTL.exe
直リンクです。デスクトップ等、分かりやすい場所に保存してください。
削除する際は起動後に「Cleanup」ボタンを押すことにより、自動的に削除されます。

準備ができましたら、まずゲームのインストーラーなど、極端に重たいファイルがある場合は、
そちらの不要ファイルを事前にPC内から手動削除し、ごみ箱からも消しておいてください。
これらをHPが不審プログラムとして拾うと、1日や2日は平気でスキャンにかかってしまいます。
PCが通常モードで起動していることを確認し、HerdProtectを起動させます。
ソフトウェアの特性上、セーフモードだと正常に動作しませんので、
セーフモードで起動中の場合は通常モードに切り替えてください。
Scanボタンがありますので、こちらを押してスキャンを行ってください。
スキャンに必要な情報を収集したり、発見された不審なソフトウェアを
各種セキュリティソフトで調査している間は、スキャン作業が停止します。
スキャンが進行しないからと言ってフリーズしたわけではありませんので、
スキャンが完了するまで今しばらくお待ちください。
スキャンが完了しましたらスキャン結果が表示されますので、
画面右上にあるSave resultsという文字をクリックしてログを出力してください。
ログは任意のお名前をつけて、分かりやすいところに保存してください。

以下をメモ帳にコピペしてください。

------コピペこの下より------
%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
CREATERESTOREPOINT
------コピペこの上まで------

コピペが完了しましたら、任意のお名前をつけて分かりやすい場所に保存されてください。
保存が完了しましたら、PCをセーフモードで起動させてください。
OTLを起動させ、表示画面上部中央にあるScan All Usersにチェックを入れてください。
設定が完了しましたら、Custom Scan/Fixesの項目内に先ほど保存したメモ帳の内容を貼り付けてください。
コピペが完了しましたらメモ帳を終了させ、[Run Scan]をクリックしてスキャンを行ってください。
スキャン完了まで数分程度かかりますので、今しばらくお待ちください。
スキャンが完了しましたら、OTLを保存した場所と同じところに、
OTL.txtとExtras.txtが出力されますので、こちら2つと先に保存したHPのログを貼り付けてご連絡ください。
なお、OTLもHPもその特性上、非常に長文となりがちです。
こちらの掲示板の文字数上限がひらがな換算で約3万文字、ローマ字換算で約6万文字です。
(より正確には件名を含めてJIS換算65,535バイトまで。全角文字・全角記号2バイト、
半角文字・半角記号1バイト、絵文字等特殊文字3バイト)
確実に文字数オーバーとなりますので、余裕を見て5万5千文字程度になるように、
以下のURLの文字数カウンター等で確認しつつ、ログを分割されてご連絡ください。
http://www2u.biglobe.ne.jp/~yuichi/rest/strcount.html
  • IVNO
  • MAIL
  • 2014/11/05 (Wed) 07:40:05
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
HP その1
Saved date: 2014/11/05 9:28:08
Files detected: 61
Files scanned: 10,475
Processes scanned: 106
Modules scanned: 827
ASEPs scanned: 485
Downloads scanned: 10
Deep analysis: 109/22
---------------------------------------------------------------------------------

Files

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\ijplm\ijplmsvc.exe
Publisher:
Signer: Canon Inc.
MD5: 755519f49906b73c1fe9cbbf75e347ea
SHA-1: ffa301874ad69970f12f06841980be9ebb713064
Created: 2011/08/06 7:07:00
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as Win.Trojan.Agent-327618 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\plfseti.exe
Publisher:
MD5: fbfa45b2d8abb107c79e0ca0f8ed0a6d
SHA-1: b3014415014fd14ab9d487dcb517bb91863fce4d
Created: 2010/02/27 8:14:39
Detections: 1
Determination: Ignore detections (false positive)
- Boost by Reason as Optional.Startup.H

---------------------------------------------------------------------------------

File path: c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe
Publisher:
Signer: Krab Web
MD5: 41e0c564bc46623c95da82732dc8ff5b
SHA-1: b8233cbba392e4c062879fa503d434a6485dd543
Created: 2014/10/28 9:18:32
Detections: 19
Determination: Adware
- Reason Heuristics as PUP.Service.KrabWeb.K (Adware)
- Dr.Web as Trojan.BPlug.281 (Undefined)
- avast! as Win32:Adware-BYZ [PUP] (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.SwiftBrowse (Adware)
- MicroWorld eScan as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Zillya! Antivirus as Adware.Kranet.Win32.476 (Adware)
- NANO AntiVirus as Riskware.Win32.Kranet.dgiwfc (Adware)
- Clam AntiVirus as Win.Adware.Agent-22685 (Adware)
- Bitdefender as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- F-Secure as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Avira AntiVirus as ADWARE/BrowseFox.Gen7 (Adware)
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus]/Win32.Kranet (Adware)
- G Data as Gen:Variant.Adware.SwiftBrowse (Adware)
- AhnLab V3 Security as Adware/Win32.SwiftBrowse (Adware)
- Vba32 AntiVirus as AdWare.Kranet (Adware)
- ESET NOD32 as Win32/BrowseFox (Undefined)
- AVG as Generic (Undefined)
- Baidu Antivirus as Adware.Win32.BrowseFox (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\contview.cpl
Publisher: HOEHOE.COM
MD5: 9f878b876330f22d72758976efec6993
SHA-1: 23dc33720a9912d64542be2b43c43b7d15f25348
Created: 2010/10/22 22:08:15
Detections: 1
Determination: Ignore detections (false positive)
- Vba32 AntiVirus as suspected of Trojan.StartPage.7 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\hikihjmdmfbalmfnoconoknjmmomhdfe\1.0.1_0\manifest.json
Publisher:
MD5: 82a9285b960b24cd9439edac6e36dd0f
SHA-1: 88047c0f2953990468a664e38c8a065226067a14
Created: 2014/10/30 8:30:32
Detections: 1
Determination: Adware
- Reason Heuristics as Adware.Yontoo.ChromePlugin.M (Adware)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\manifest.json
Publisher:
MD5: d7a216afbd0730973b8e776c124f3f81
SHA-1: 970da7391e97a2d19af60ba89f6dbc697757dcb6
Created: 2012/12/24 0:22:30
Detections: 1
Determination: Adware
- Reason as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\otl.exe
Publisher: OldTimer Tools
MD5: 4adcfee16ee9978f06157634669d36fb
SHA-1: 30b37076552e49276836d02dd73d038c27dbbee9
Created: 2014/11/05 8:32:41
Detections: 2
Determination: Ignore detections (false positive)
- Agnitum Outpost as Packed/PECompact
- Bkav FE as HW32.CDB (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\fileopenersetup.exe
Publisher:
Signer: Install Apps (New Media Holdings Ltd.)
MD5: c6dd01619ebf47952a05dad8861a23c2
SHA-1: 65c41ce2799c90358f4e65d7081eaa14e534da70
Created: 2014/10/22 15:37:42
Detections: 11
Determination: Adware
- Reason Heuristics as PUP.Installer.InstallAppsNewMediaHoldings.P (Adware)
- ESET NOD32 as Win32/InstallCore.QL potentially unwanted application (Adware)
- Dr.Web as Trojan.InstallCore.9 (Adware)
- VIPRE Antivirus as Threat.4150696 (Undefined)
- NANO AntiVirus as Trojan.Text.Drop.dhqaqw (Undefined)
- F-Prot as W32/InstallCore.AC.gen (Adware)
- Comodo Security as Application.Win32.InstallCore.AIBI (Adware)
- Sophos as Install Core Click run software (Undefined)
- Avira AntiVirus as ADWARE/InstallCore.Gen9 (Adware)
- Vba32 AntiVirus as Malware-Cryptor.InstallCore.gen (Adware)
- AVG as Generic (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\hijackthis (1).exe
Publisher: Trend Micro Inc.
MD5: 47811d50390a86a17102d7496e6eabb9
SHA-1: 2623749cdb27887f6746acdee7e8065475f8b541
Created: 2014/11/01 9:23:04
Detections: 2
Determination: Ignore detections (false positive)
- Kingsoft AntiVirus as Win32.HeurC.KVM099.a.(kcloud) (Undefined)
- Rising Antivirus as PE:Trojan.VBInject!1.6546 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\hijackthis (2).exe
Publisher: Trend Micro Inc.
MD5: 47811d50390a86a17102d7496e6eabb9
SHA-1: 2623749cdb27887f6746acdee7e8065475f8b541
Created: 2014/11/01 9:24:49
Detections: 2
Determination: Ignore detections (false positive)
- Kingsoft AntiVirus as Win32.HeurC.KVM099.a.(kcloud) (Undefined)
- Rising Antivirus as PE:Trojan.VBInject!1.6546 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\spyhunter-installer.exe
Publisher: Enigma Software Group USA, LLC.
Signer: Enigma Software Group USA, LLC
MD5: 29702c25639b549ac5221e546545d56b
SHA-1: f36cf6ddcf5fe11ae9736e0747476b677d56b3ff
Created: 2014/10/29 16:39:02
Detections: 1
Determination: Inconclusive
- Dr.Web as Trojan.Siggen5.45084 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\delreg.exe
Publisher:
MD5: d4e57898d5c8560d170be9d3c93b00fb
SHA-1: fc40ac89dbc28326e7d4a5169399334fd4ea4179
Created: 2008/02/02 12:30:00
Detections: 1
Determination: Ignore detections (false positive)
- IKARUS anti.virus as Trojan-Ransom.Win32.Gimemo (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\system32\acer.scr
Publisher:
MD5: 6d5a0d388043f46206a58dc2e2b82598
SHA-1: 836a4a831282fe31a6d1ad98b79e7706ddf7a737
Created: 2009/07/08 18:55:00
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious.H

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\bwcontexthandler.dll
Publisher:
MD5: f4a1b4d4ccfd8eeef0259fae58cfae5c
SHA-1: 0136a1323e4f85c773e86e62caeb6dc90182179b
Created: 2009/07/14 8:42:10
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Gen:Variant.Kazy.182960 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\iscsicpl.dll
Publisher: Microsoft Corporation
MD5: f945adcef203e6104aec8ec9c337cfd0
SHA-1: 85fe50b2c2fcbec2c09c5039c8f8c1d38523780a
Created: 2009/07/14 8:46:13
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\netprof.dll
Publisher: Microsoft Corporation
MD5: 1fda175324fac331dc41b076103e7123
SHA-1: b791c2096df2ab3c6315e454022ac64c9fdb102d
Created: 2009/07/14 8:56:36
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\adobe\reader\9.4\arm\17445\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: b8e421c0890356cd4a793d8a346d9096
SHA-1: 30e85d80d9cefa4c55b33a1bfb6e0507a34267fa
Created: 2012/01/03 16:37:53
Detections: 2
Determination: Ignore detections (false positive)
- Boost by Reason as UnneededApp.Startup.AdobeSystemsorporated.I
- Antiy Labs AVL as Backdoor/Win32.Swrort.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\adobe\reader\9.4\arm\17445\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: b8e421c0890356cd4a793d8a346d9096
SHA-1: 30e85d80d9cefa4c55b33a1bfb6e0507a34267fa
Created: 2012/01/03 16:37:53
Detections: 2
Determination: Ignore detections (false positive)
- Boost by Reason as UnneededApp.Startup.AdobeSystemsorporated.I
- Antiy Labs AVL as Backdoor/Win32.Swrort.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak
Publisher:
Signer: Krab Web
MD5: 643e6e985c94341204c787428e3dc6d5
SHA-1: 5c026edfe137671c09debbab1433f59f0e1f2adf
Created: 2014/10/28 9:18:32
Detections: 20
Determination: Adware
- Reason Heuristics as PUP.Service.KrabWeb.K (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.SwiftBrowse (Adware)
- Dr.Web as Trojan.BPlug.281 (Undefined)
- avast! as Win32:Adware-BYZ [PUP] (Adware)
- MicroWorld eScan as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Clam AntiVirus as Win.Adware.Agent-22685 (Adware)
- Bitdefender as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- NANO AntiVirus as Riskware.Win32.Kranet.dgiwfc (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- F-Secure as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Zillya! Antivirus as Adware.Kranet.Win32.476 (Adware)
- Avira AntiVirus as ADWARE/BrowseFox.Gen7 (Adware)
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus]/Win32.Kranet (Adware)
- AhnLab V3 Security as Adware/Win32.SwiftBrowse (Adware)
- G Data as Gen:Variant.Adware.SwiftBrowse (Adware)
- Vba32 AntiVirus as AdWare.Kranet (Adware)
- ESET NOD32 as Win32/BrowseFox (Undefined)
- AVG as Generic (Undefined)
- Baidu Antivirus as Adware.Win32.BrowseFox (Adware)
- Qihoo 360 Security as Win32/Virus.Adware.708 (Adware)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe
Publisher:
Signer: Krab Web
MD5: 41e0c564bc46623c95da82732dc8ff5b
SHA-1: b8233cbba392e4c062879fa503d434a6485dd543
Created: 2014/10/28 9:18:32
Detections: 19
Determination: Adware
- Reason Heuristics as PUP.Service.KrabWeb.K (Adware)
- Dr.Web as Trojan.BPlug.281 (Undefined)
- avast! as Win32:Adware-BYZ [PUP] (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.SwiftBrowse (Adware)
- MicroWorld eScan as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Zillya! Antivirus as Adware.Kranet.Win32.476 (Adware)
- NANO AntiVirus as Riskware.Win32.Kranet.dgiwfc (Adware)
- Clam AntiVirus as Win.Adware.Agent-22685 (Adware)
- Bitdefender as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- F-Secure as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Avira AntiVirus as ADWARE/BrowseFox.Gen7 (Adware)
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus]/Win32.Kranet (Adware)
- G Data as Gen:Variant.Adware.SwiftBrowse (Adware)
- AhnLab V3 Security as Adware/Win32.SwiftBrowse (Adware)
- Vba32 AntiVirus as AdWare.Kranet (Adware)
- ESET NOD32 as Win32/BrowseFox (Undefined)
- AVG as Generic (Undefined)
- Baidu Antivirus as Adware.Win32.BrowseFox (Adware)

---------------------------------------------------------------------------------

File path: c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak
Publisher:
Signer: Krab Web
MD5: 643e6e985c94341204c787428e3dc6d5
SHA-1: 5c026edfe137671c09debbab1433f59f0e1f2adf
Created: 2014/10/28 9:18:32
Detections: 20
Determination: Adware
- Reason Heuristics as PUP.Service.KrabWeb.K (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.SwiftBrowse (Adware)
- Dr.Web as Trojan.BPlug.281 (Undefined)
- avast! as Win32:Adware-BYZ [PUP] (Adware)
- MicroWorld eScan as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Clam AntiVirus as Win.Adware.Agent-22685 (Adware)
- Bitdefender as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- NANO AntiVirus as Riskware.Win32.Kranet.dgiwfc (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- F-Secure as Gen:Variant.Adware.SwiftBrowse.1 (Adware)
- Zillya! Antivirus as Adware.Kranet.Win32.476 (Adware)
- Avira AntiVirus as ADWARE/BrowseFox.Gen7 (Adware)
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus]/Win32.Kranet (Adware)
- AhnLab V3 Security as Adware/Win32.SwiftBrowse (Adware)
- G Data as Gen:Variant.Adware.SwiftBrowse (Adware)
- Vba32 AntiVirus as AdWare.Kranet (Adware)
- ESET NOD32 as Win32/BrowseFox (Undefined)
- AVG as Generic (Undefined)
- Baidu Antivirus as Adware.Win32.BrowseFox (Adware)
- Qihoo 360 Security as Win32/Virus.Adware.708 (Adware)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\nsm1ecc.tmp
Publisher: CMI Limited
MD5: 0b50e049008b5c4a47431c3403dbd101
SHA-1: 13b92ea63063b93ee8aa591f3eb8e64cc65371ff
Created: 2014/10/28 9:37:40
Detections: 3
Determination: Inconclusive
- Dr.Web as Threat.Undefined (Undefined)
- Norman as ShellCode.C (Undefined)
- McAfee Web Gateway as BehavesLike.Win32.AdwareFavoritnetwork.hc (Adware)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\cache\f_002c8c
Publisher: Trend Micro Inc.
MD5: 47811d50390a86a17102d7496e6eabb9
SHA-1: 2623749cdb27887f6746acdee7e8065475f8b541
Created: 2014/11/01 9:24:51
Detections: 2
Determination: Ignore detections (false positive)
- Kingsoft AntiVirus as Win32.HeurC.KVM099.a.(kcloud) (Undefined)
- Rising Antivirus as PE:Trojan.VBInject!1.6546 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\microsoft\windows sidebar\gadgets\hpphoto.gadget\x86\hpqgutil.dll
Publisher: Hewlett-Packard Co.
MD5: 8d46a6748494c9f52f2a2535191e1bdb
SHA-1: 6ed6f7e6461ed7f4aea479620fa782af3bd25982
Created: 2010/10/20 23:42:52
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\virtualstore\program files (x86)\pegasys inc\tmpgenc 4.0 xpress\tmpgenc4xp.exe.bak
Publisher: Pegasys Inc.
MD5: da19a3db16cbd28eda1838144b4f4762
SHA-1: 689f5fbfb17488254c04d5ed26ee0046361e7301
Created: 2010/06/18 6:58:53
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Packed.ASPack212

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\virtualstore\program files (x86)\pegasys inc\tmpgenc 4.0 xpress\tmpgenc4xpbatch.exe.bak
Publisher: Pegasys Inc.
MD5: 67ff0444c49a862502327e9e8b7b9d29
SHA-1: 20ced9014c03da4577fc7424d2bd1956c6131d8a
Created: 2010/06/18 6:58:53
Detections: 1
Determination: Ignore detections (false positive)
- McAfee as Artemis!67FF0444C49A (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\roaming\mozilla\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\jid1-xgijyapvea9ena@jetpack.xpi
Publisher:
MD5: 97c2e3defe641fdd82e3659af9e67ad8
SHA-1: d197d924b3b4d21b121eab64839c75d8260af589
Created: 2014/10/22 4:08:02
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Firefox.Extension.CouponMarvel (Adware)

---------------------------------------------------------------------------------

File path: c:\program files\acer\acer erecovery management\el\recovery management.resources.dll
Publisher: Acer
MD5: 5760552a5cb4f01a7a18315dcad80abd
SHA-1: 7ef534cd504a47dbdecd18fcf43abe6e54311e7f
Created: 2010/01/05 15:16:43
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Win32.Packer.Net

---------------------------------------------------------------------------------

File path: c:\program files\acer\acer erecovery management\notificationcenter\notification.exe
Publisher: Acer
MD5: 33895c08fb943b48d24b9b0f53b10cd5
SHA-1: f4a3d69d15033df080f20d29723695484ab4c036
Created: 2010/01/05 15:16:43
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Win32.Packer.NetExecutable-1

---------------------------------------------------------------------------------

File path: c:\program files\logicool\setpoint\connect.exe
Publisher: Logicool, Inc.
MD5: 1fb91f4a29d383451c4c3434fb6c4c8e
SHA-1: 8638f9378172336643043b18d74fdc3b5af50a91
Created: 2010/11/10 22:14:51
Detections: 1
Determination: Ignore detections (false positive)
- AVG as IRC/BackDoor.SdBot4 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\sdexplorer\sdapi.dll
Publisher:
MD5: 182bba6569d7f8ff52e5e33b6b2e0041
SHA-1: d3f7df12fbec3e3de7cc3451a8ad13840779b576
Created: 2010/12/03 9:05:01
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Virus.Win32.Virut.CE (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\acer\screensaver\acer.scr
Publisher:
MD5: 6d5a0d388043f46206a58dc2e2b82598
SHA-1: 836a4a831282fe31a6d1ad98b79e7706ddf7a737
Created: 2009/07/08 18:55:00
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious.H

---------------------------------------------------------------------------------

File path: c:\program files (x86)\acer\welcome center\igoogle\resetig.exe
Publisher: Acer
MD5: 701a1fc4c5cbf6aaacb27bb205cf942d
SHA-1: 72367ad417473bfa2c65a8800419b386d4e83cc3
Created: 2009/08/25 11:52:14
Detections: 1
Determination: Ignore detections (false positive)
- eSafe as Win32.Malware.sp.Fda (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\adobe\adobe bridge cs5\axe8sharedexpat.dll
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems Incorporated
MD5: 6cec0778d2ffaa248093a2f77ce05879
SHA-1: 3488b2de009e3e0387302455c2925924e6d3faa9
Created: 2010/03/09 1:41:42
Detections: 1
Determination: Ignore detections (false positive)
- nProtect as Adware.Rotator.L (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\adobe\adobe illustrator cs5\support files\contents\windows\axe8sharedexpat.dll
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems Incorporated
MD5: 6cec0778d2ffaa248093a2f77ce05879
SHA-1: 3488b2de009e3e0387302455c2925924e6d3faa9
Created: 2010/02/24 12:59:08
Detections: 1
Determination: Ignore detections (false positive)
- nProtect as Adware.Rotator.L (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\adobe\adobe photoshop cs5\axe8sharedexpat.dll
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems Incorporated
MD5: 6cec0778d2ffaa248093a2f77ce05879
SHA-1: 3488b2de009e3e0387302455c2925924e6d3faa9
Created: 2010/04/07 2:25:24
Detections: 1
Determination: Ignore detections (false positive)
- nProtect as Adware.Rotator.L (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\apowersoft\video download capture\faac.exe
Publisher:
Signer: APOWERSOFT LIMITED
MD5: 7cbc489d9621888cb9920380689b5e15
SHA-1: be1627659e7aa9970e61b229ec8f1c4866fe6fed
Created: 2013/07/07 10:08:34
Detections: 4
Determination: Ignore detections (false positive)
- The Hacker as Posible_Worm32 (Undefined)
- Trend Micro House Call as TROJ_GEN.F47V1022 (Undefined)
- Trend Micro as PAK_Generic.001
- ViRobot as Trojan.Win32.A.Vilsel.150528.C[UPX] (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\apowersoft\video download capture\lame.exe
Publisher:
Signer: APOWERSOFT LIMITED
MD5: 5003df4e9cb7da5614f75fbd191692fd
SHA-1: 77be07626d71a0158aa237b827a53f2ec6866dae
Created: 2013/07/07 10:08:34
Detections: 2
Determination: Ignore detections (false positive)
- Trend Micro House Call as PAK_Generic.001
- Trend Micro as PAK_Generic.001

---------------------------------------------------------------------------------

File path: c:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe
Publisher:
MD5: 34ede1efae7c2acc68ceabfa56deea22
SHA-1: 1c6a46028030a8ec9e50cfd18af7c5778c6b1efe
Created: 2009/04/03 17:25:30
Detections: 2
Determination: Inconclusive
- Avira AntiVirus as TR/Dropper.Gen (Undefined)
- IKARUS anti.virus as Trojan-Dropper (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\bbbroadcast\bbbroadcastcs\bbbroadcastcs.exe
Publisher:
MD5: 34ede1efae7c2acc68ceabfa56deea22
SHA-1: 1c6a46028030a8ec9e50cfd18af7c5778c6b1efe
Created: 2011/09/19 16:11:06
Detections: 2
Determination: Inconclusive
- Avira AntiVirus as TR/Dropper.Gen (Undefined)
- IKARUS anti.virus as Trojan-Dropper (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\buffalo\clientmgrv\bin\airmonv.exe
Publisher: BUFFALO INC.
MD5: cde7f0e90b48f244c03e253917131783
SHA-1: aef6003ada3ada4573336cbac31edc40ea3f6916
Created: 2011/07/24 11:17:18
Detections: 1
Determination: Ignore detections (false positive)
- Sunbelt AntiMalware as Trojan-PSW.Win32.OnLineGames.X (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\easy-photoprint ex\imglng.dll
Publisher: CANON INC.
MD5: 456d3e59417dc288c27ff85cf30e6ff8
SHA-1: c30473be377b880b8c8da9b2fcef4cac29ebb4a1
Created: 2011/08/06 6:34:20
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Backdoor.Win32.IRCNite.po!A2 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\mp navigator ex 2.0\imglng.dll
Publisher: CANON INC.
MD5: 456d3e59417dc288c27ff85cf30e6ff8
SHA-1: c30473be377b880b8c8da9b2fcef4cac29ebb4a1
Created: 2011/08/06 6:34:09
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Backdoor.Win32.IRCNite.po!A2 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\mp navigator ex 2.0\mpnclng.dll
Publisher: CANON INC.
MD5: 57bd323cdb73541ca932962ff0c13267
SHA-1: 278c04e8a4050d92a6b213863d9253f7dcd89155
Created: 2011/08/06 6:34:09
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Backdoor.Win32.IRCNite.po!A2 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\common files\oberon media\odyssey\2.0.0.29\odyssey.dll
Publisher: Oberon Media
Signer: Oberon Media Inc.
MD5: b4d62a48b95542bbcef81216beda3c86
SHA-1: e05d986dec439189e8e77968861860e1b2a645f7
Created: 2007/07/04 4:17:40
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Trojan/Win32.Generic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\daemon tools lite\dtlite.exe
Publisher: DT Soft Ltd
Signer: DT Soft Ltd
MD5: f34e7705751bb413283434697bf8e55d
SHA-1: 8bdc6931fc6c0582886ca2841341a6e463206913
Created: 2010/04/01 18:16:20
Detections: 1
Determination: Ignore detections (false positive)
- CMC Antivirus as Packed.Win32.TDSS.1!O

---------------------------------------------------------------------------------

File path: c:\program files (x86)\dvd shrink\dvd shrink 3.2.exe
Publisher: DVD Shrink
MD5: 4a139685692bc2335f202b6aaf42efff
SHA-1: 672ab933581d177e929b326f3630eae51d338aaf
Created: 2004/07/29 16:03:42
Detections: 2
Determination: Ignore detections (false positive)
- The Hacker as W32/Behav-Heuristic-073 (Undefined)
- Comodo Security as Heur.Packed.MultiPacked

---------------------------------------------------------------------------------

File path: c:\program files (x86)\egistec\mywinlocker 3\shredder.exe
Publisher: Egis Technology Inc.
Signer: EGIS TECHNOLOGY INC.
MD5: 3db4bc1577c746875bacac199fa54002
SHA-1: 22bab39e745565a4efe61a2cef2cee986e232055
Created: 2009/07/10 10:17:52
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Packed.PECompact-1

---------------------------------------------------------------------------------

File path: c:\program files (x86)\foxtabvideoconverter\videoconverter.exe
Publisher:
MD5: bdab7a15f6d8da94bd5039fb010a17f6
SHA-1: 6f3a3b433459e6773c9fbe8cfb154db6534efa86
Created: 2011/03/23 18:08:30
Detections: 2
Determination: Inconclusive
- Dr.Web as Adware.Foxtab.2 (Adware)
- ESET NOD32 as Win32/InstallCore (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\foxtabvideoconverter\bin\ffmpeg.exe
Publisher:
MD5: 5fd9b90318f2765e31796c086088ab8d
SHA-1: bbe4d71432a92595cd96f8224d4e175904e5d72a
Created: 2010/10/14 16:46:34
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\hagakiwriter6 free\zlibwapi.dll
Publisher:
MD5: 723172d790a503a6767e8a0fcc10268a
SHA-1: 07184d9bc42256a8af02dd31631cbe30f85690f2
Created: 2011/09/30 11:13:32
Detections: 1
Determination: Ignore detections (false positive)
- ByteHero BDV as Trojan.Malware.Win32.xPack.i (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\hp\digital imaging\{59c83c08-63f4-4aec-81d6-392c5e23b843}\setup\hpzpsl01.exe
Publisher: Hewlett-Packard
Signer: Hewlett Packard
MD5: cd8ef5ddf9349c22263ea384a03eb3d8
SHA-1: bc07662d3a6490f5509b01079a09d530e2a58024
Created: 2010/10/20 23:42:33
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Trojan/Win32.Patched.gen (Undefined)

---------------------------------------------------------------------------------
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 10:44:29
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
HPその2
---------------------------------------------------------------------------------

File path: c:\program files (x86)\daemon tools lite\dtlite.exe
Publisher: DT Soft Ltd
Signer: DT Soft Ltd
MD5: f34e7705751bb413283434697bf8e55d
SHA-1: 8bdc6931fc6c0582886ca2841341a6e463206913
Created: 2010/04/01 18:16:20
Detections: 1
Determination: Ignore detections (false positive)
- CMC Antivirus as Packed.Win32.TDSS.1!O

---------------------------------------------------------------------------------

File path: c:\program files (x86)\dvd shrink\dvd shrink 3.2.exe
Publisher: DVD Shrink
MD5: 4a139685692bc2335f202b6aaf42efff
SHA-1: 672ab933581d177e929b326f3630eae51d338aaf
Created: 2004/07/29 16:03:42
Detections: 2
Determination: Ignore detections (false positive)
- The Hacker as W32/Behav-Heuristic-073 (Undefined)
- Comodo Security as Heur.Packed.MultiPacked

---------------------------------------------------------------------------------

File path: c:\program files (x86)\egistec\mywinlocker 3\shredder.exe
Publisher: Egis Technology Inc.
Signer: EGIS TECHNOLOGY INC.
MD5: 3db4bc1577c746875bacac199fa54002
SHA-1: 22bab39e745565a4efe61a2cef2cee986e232055
Created: 2009/07/10 10:17:52
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Packed.PECompact-1

---------------------------------------------------------------------------------

File path: c:\program files (x86)\foxtabvideoconverter\videoconverter.exe
Publisher:
MD5: bdab7a15f6d8da94bd5039fb010a17f6
SHA-1: 6f3a3b433459e6773c9fbe8cfb154db6534efa86
Created: 2011/03/23 18:08:30
Detections: 2
Determination: Inconclusive
- Dr.Web as Adware.Foxtab.2 (Adware)
- ESET NOD32 as Win32/InstallCore (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\foxtabvideoconverter\bin\ffmpeg.exe
Publisher:
MD5: 5fd9b90318f2765e31796c086088ab8d
SHA-1: bbe4d71432a92595cd96f8224d4e175904e5d72a
Created: 2010/10/14 16:46:34
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\hagakiwriter6 free\zlibwapi.dll
Publisher:
MD5: 723172d790a503a6767e8a0fcc10268a
SHA-1: 07184d9bc42256a8af02dd31631cbe30f85690f2
Created: 2011/09/30 11:13:32
Detections: 1
Determination: Ignore detections (false positive)
- ByteHero BDV as Trojan.Malware.Win32.xPack.i (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\hp\digital imaging\{59c83c08-63f4-4aec-81d6-392c5e23b843}\setup\hpzpsl01.exe
Publisher: Hewlett-Packard
Signer: Hewlett Packard
MD5: cd8ef5ddf9349c22263ea384a03eb3d8
SHA-1: bc07662d3a6490f5509b01079a09d530e2a58024
Created: 2010/10/20 23:42:33
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Trojan/Win32.Patched.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\installshield installation information\{2413930c-8309-47a6-bc61-5ef27a4222bc}\setup.exe
Publisher: NewTech Infosystems
MD5: 6c6f7578d439f366e579a96b147ec49e
SHA-1: 44d3577d153d85d035adcff51e82231a235472e9
Created: 2009/11/05 9:42:31
Detections: 4
Determination: UndefinedMalware
- Agnitum Outpost as Trojan.Genome (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Sunbelt AntiMalware as Porn-Dialer.Win32.CapreDeam.N (Undefined)
- Jiangmin as Trojan/Generic.bohtz (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\installshield installation information\{5db1df0c-aabc-4362-8a6d-cefdfb036e41}\setup.exe
Publisher: CyberLink Corp.
MD5: de0c395b7db33dbe98ef1dae6e204675
SHA-1: 2c27c06475a26a46da516a6f336e150bfdbe320c
Created: 2010/02/27 8:20:50
Detections: 1
Determination: Ignore detections (false positive)
- Agnitum Outpost as Trojan.Genome (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\installshield installation information\{d0ace89d-ec7f-470f-80be-4c98ed366b32}\issetup.dll
Publisher: Acresso Software Inc.
Signer: Chicony Electronics Co., Ltd.
MD5: a7ee26f1de9fc0c8ecf8acda960f9b48
SHA-1: 042629d679f59b3a004a436e1746b65ec242e47e
Created: 2010/02/27 8:14:39
Detections: 1
Determination: Ignore detections (false positive)
- eSafe as Suspicious File

---------------------------------------------------------------------------------

File path: c:\program files (x86)\jtrim\nova.dll
Publisher:
MD5: f237e03a082c00995f6170c34c117f54
SHA-1: b1fe8254a83a02a6037cc950f348dff825fa67eb
Created: 2002/09/30 0:00:00
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Win32.Packer.BorlandDelphi-14

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\lhaplus.exe
Publisher: HoeHoe.com
MD5: b9ff8eb536d321428177b1554cdac428
SHA-1: ee74421d638fdef6e672ec58c06217de74fa7572
Created: 2010/03/14 23:05:58
Detections: 1
Determination: Ignore detections (false positive)
- Vba32 AntiVirus as suspected of Trojan.StartPage.7 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\setup.exe
Publisher:
MD5: a0dc6feb63224ebe7c856647b837e4db
SHA-1: 9062889ea3bfce487e83eae6f107719b762d54fc
Created: 2010/03/14 23:05:58
Detections: 2
Determination: Ignore detections (false positive)
- F-Prot as W32/Delf.AY.gen (Undefined)
- Commtouch SDK as W32/Delf.AY.gen!Eldorado (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\unacev2.dll
Publisher: ACE Compression Software
MD5: d40dd68e7b0d6e851e13481dc3ed0750
SHA-1: 98b4155c8118311a625372e388fa4217ea65ac3e
Created: 2010/03/14 23:05:58
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Heur.Packed.Unknown

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\uninst.exe
Publisher:
MD5: a0dc6feb63224ebe7c856647b837e4db
SHA-1: 9062889ea3bfce487e83eae6f107719b762d54fc
Created: 2010/03/14 23:06:03
Detections: 2
Determination: Ignore detections (false positive)
- F-Prot as W32/Delf.AY.gen (Undefined)
- Commtouch SDK as W32/Delf.AY.gen!Eldorado (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\newtech infosystems\acer backup manager\ishadowburndata.dll
Publisher:
MD5: 1a9e4d6ea69c67defefab8e391c3bbeb
SHA-1: 5830340daff389f7bdd29d3bac7955da82975ea7
Created: 2009/09/23 18:21:08
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Dropper.H

  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 16:07:20
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
OTL ①
OTL logfile created on: 2014/11/05 10:13:58 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\kuchi_acer\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17358)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

2.90 Gb Total Physical Memory | 1.85 Gb Available Physical Memory | 63.88% Memory free
5.79 Gb Paging File | 4.77 Gb Available in Paging File | 82.49% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452.97 Gb Total Space | 272.42 Gb Free Space | 60.14% Space Free | Partition Type: NTFS

Computer Name: KUCHI_ACER-PC | User Name: kuchi_acer | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2014/11/05 08:32:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\kuchi_acer\Downloads\OTL.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2014/09/19 10:25:49 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/08/22 15:14:34 | 000,368,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:[b]64bit:[/b] - [2014/08/22 15:14:34 | 000,023,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2009/11/02 12:48:18 | 000,126,352 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\TurboBoost\TurboBoost.exe -- (TurboBoost)
SRV:[b]64bit:[/b] - [2009/10/02 18:39:44 | 000,873,248 | ---- | M] (Broadcom Corporation.) [Auto | Stopped] -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe -- (btwdins)
SRV:[b]64bit:[/b] - [2009/09/30 14:44:58 | 000,844,320 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe -- (ePowerSvc)
SRV:[b]64bit:[/b] - [2009/07/20 13:42:46 | 000,160,784 | ---- | M] (Logicool, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:[b]64bit:[/b] - [2009/07/04 11:47:12 | 000,240,160 | ---- | M] (Acer) [Auto | Stopped] -- C:\Program Files\Acer\Acer Updater\UpdaterService.exe -- (Updater Service)
SRV:[b]64bit:[/b] - [2009/03/28 11:10:16 | 000,016,896 | ---- | M] (LSI Corporation) [Auto | Stopped] -- C:\Program Files\LSI SoftModem\agr64svc.exe -- (AgereModemAudio)
SRV - [2014/11/01 09:02:10 | 000,123,632 | ---- | M] () [Disabled | Stopped] -- C:\ProgramData\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe -- (MaintainerSvc1.05.7044970)
SRV - [2014/09/12 18:43:06 | 000,064,704 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/09/10 15:44:23 | 000,093,800 | ---- | M] (SecureBrain Corporation) [Auto | Stopped] -- C:\Program Files (x86)\SecureBrain\PhishWall\sbpwupdx.exe -- (SecureBrain PhishWall Update)
SRV - [2014/06/14 07:59:11 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013/12/18 01:56:16 | 000,754,712 | ---- | M] (Google Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe -- (GoogleIMEJaCacheService)
SRV - [2011/04/01 05:11:52 | 000,428,640 | ---- | M] (Logicool Co., Ltd.) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2010/05/27 13:30:10 | 000,060,928 | ---- | M] (Microsoft IT) [Auto | Stopped] -- C:\00_soft\soft\ユーティリティ\Joulemeter\JoulemeterService.exe -- (Joulemeter Service)
SRV - [2010/03/18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009/10/01 13:01:32 | 002,320,920 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2009/10/01 13:01:30 | 000,268,824 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2009/09/24 15:42:28 | 000,062,720 | ---- | M] (NewTech Infosystems, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe -- (NTI IScheduleSvc)
SRV - [2009/09/11 14:42:46 | 000,305,448 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe -- (MWLService)
SRV - [2009/08/28 18:38:58 | 001,150,496 | ---- | M] (Acer Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Acer\Registration\GregHSRW.exe -- (Greg_Service)
SRV - [2009/06/04 19:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
SRV - [2008/01/23 02:35:52 | 000,103,808 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2007/12/26 14:41:58 | 000,057,648 | ---- | M] (BUFFALO INC.) [Auto | Stopped] -- C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe -- (BWH32S)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard)
DRV:[b]64bit:[/b] - [2014/07/17 18:05:06 | 000,125,584 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:[b]64bit:[/b] - [2013/06/01 13:56:58 | 000,031,920 | ---- | M] (Wondershare) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Apowersoft_AudioDevice.sys -- (Apowersoft_AudioDevice)
DRV:[b]64bit:[/b] - [2013/02/12 13:12:06 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:[b]64bit:[/b] - [2012/12/13 13:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/04/01 05:07:54 | 004,184,672 | ---- | M] (Logicool Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvuvc64.sys -- (LVUVC64)
DRV:[b]64bit:[/b] - [2011/04/01 05:06:22 | 000,341,856 | ---- | M] (Logicool Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:[b]64bit:[/b] - [2011/04/01 05:04:32 | 000,023,904 | ---- | M] (Logicool Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvbflt64.sys -- (CompFilter64)
DRV:[b]64bit:[/b] - [2010/12/11 13:29:58 | 000,834,544 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2010/11/20 05:33:36 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/20 05:32:48 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2010/11/20 05:32:48 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010/11/20 03:07:06 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010/11/11 07:47:33 | 000,034,032 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\seehcri.sys -- (seehcri)
DRV:[b]64bit:[/b] - [2010/11/11 07:47:10 | 000,027,176 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc)
DRV:[b]64bit:[/b] - [2010/11/11 07:47:10 | 000,013,352 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt)
DRV:[b]64bit:[/b] - [2010/08/25 19:36:04 | 010,611,552 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2010/08/04 11:18:54 | 000,110,824 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Sonyddpu.sys -- (Sonyddpu)
DRV:[b]64bit:[/b] - [2010/05/07 18:43:30 | 000,030,304 | ---- | M] (Logicool Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:[b]64bit:[/b] - [2010/05/07 18:43:30 | 000,030,304 | ---- | M] (Logicool Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:[b]64bit:[/b] - [2010/02/22 11:48:20 | 000,046,720 | ---- | M] (BUFFALO INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\BFRD4G.sys -- (BFRD4G)
DRV:[b]64bit:[/b] - [2009/11/20 05:26:52 | 002,978,296 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
DRV:[b]64bit:[/b] - [2009/11/02 12:48:02 | 000,013,784 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\TurboB.sys -- (TurboB)
DRV:[b]64bit:[/b] - [2009/11/01 19:16:50 | 000,033,736 | ---- | M] (HTC, Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ANDROIDUSB.sys -- (HTCAND64)
DRV:[b]64bit:[/b] - [2009/10/30 23:56:34 | 000,244,736 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2009/10/27 05:39:44 | 000,151,936 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Impcd.sys -- (Impcd)
DRV:[b]64bit:[/b] - [2009/10/03 16:47:38 | 000,098,344 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwaudio.sys -- (btwaudio)
DRV:[b]64bit:[/b] - [2009/09/18 13:12:06 | 000,292,912 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2009/09/18 05:54:54 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (HECIx64)
DRV:[b]64bit:[/b] - [2009/08/30 03:15:32 | 000,132,648 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwavdt.sys -- (btwavdt)
DRV:[b]64bit:[/b] - [2009/08/30 03:15:26 | 000,021,160 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwrchid.sys -- (btwrchid)
DRV:[b]64bit:[/b] - [2009/08/14 04:20:46 | 001,209,856 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\agrsm64.sys -- (AgereSoftModem)
DRV:[b]64bit:[/b] - [2009/08/06 21:43:58 | 000,320,040 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\k57nd60a.sys -- (k57nd60a)
DRV:[b]64bit:[/b] - [2009/07/23 07:06:26 | 000,040,448 | ---- | M] (Alcor Micro, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmUStor.sys -- (AmUStor)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/14 09:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
DRV:[b]64bit:[/b] - [2009/07/02 20:46:58 | 000,052,264 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btusbflt.sys -- (btusbflt)
DRV:[b]64bit:[/b] - [2009/06/20 11:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:[b]64bit:[/b] - [2009/06/20 11:09:57 | 000,054,272 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\L1E62x64.sys -- (L1E)
DRV:[b]64bit:[/b] - [2009/06/18 01:54:30 | 000,057,872 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:[b]64bit:[/b] - [2009/06/18 01:54:22 | 000,055,312 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:[b]64bit:[/b] - [2009/06/18 01:54:14 | 000,013,328 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LHidEqd.sys -- (LHidEqd)
DRV:[b]64bit:[/b] - [2009/06/18 01:54:06 | 000,074,256 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LEqdUsb.sys -- (LEqdUsb)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009/06/04 18:54:36 | 000,408,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2009/06/03 12:15:30 | 000,060,464 | ---- | M] (Egis Technology Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mwlPSDVDisk.sys -- (mwlPSDVDisk)
DRV:[b]64bit:[/b] - [2009/06/03 12:15:30 | 000,022,576 | ---- | M] (Egis Technology Inc.) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\mwlPSDFilter.sys -- (mwlPSDFilter)
DRV:[b]64bit:[/b] - [2009/06/03 12:15:30 | 000,020,016 | ---- | M] (Egis Technology Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mwlPSDNserv.sys -- (mwlPSDNServ)
DRV:[b]64bit:[/b] - [2009/05/06 09:46:08 | 000,018,432 | ---- | M] (NewTech Infosystems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NTIDrvr.sys -- (NTIDrvr)
DRV:[b]64bit:[/b] - [2009/05/06 09:46:08 | 000,016,896 | ---- | M] (NewTech Infosystems Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UBHelper.sys -- (UBHelper)
DRV:[b]64bit:[/b] - [2009/04/08 23:33:08 | 000,035,104 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwl2cap.sys -- (btwl2cap)
DRV:[b]64bit:[/b] - [2007/08/17 14:48:40 | 000,018,432 | ---- | M] (BUFFALO INC.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bufeap64.sys -- (Bufeap)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://homepage.acer.com/rdr.aspx?b=ACAW&l=0411&m=aspire_5740&r=273603105316l0408z155t5451d809
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://homepage.acer.com/rdr.aspx? [Binary data over 200 bytes]
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ja-jp/?pc=UP97&ocid=UP97DHP
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = www.google.com
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\..\SearchScopes\{3E344403-00E7-4742-A9AA-E23711E13DB5}: "URL" = http://search.yahoo.co.jp/search?b=1&n=10&ei=UTF-8&fr=ie8sc&p={searchTerms}
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <-loopback>

[color=#E56717]========== FireFox ==========[/color]

FF - user.js - File not found

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.67.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.67.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\kuchi_acer\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\kuchi_acer\AppData\Local\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.)
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 16:15:33
OTL ②
OTL②

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 10.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 10.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 10.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 11.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 11.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 12.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 13.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 14.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 15.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 15.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.3\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.3\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.4\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.4\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.5\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.6\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.6\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.7\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.7\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.8\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.8\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.1.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.1.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.1.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.1.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.2.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.2.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.3.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.3.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.4.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.4.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.5.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.5.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.6.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.6.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 5.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 6.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 6.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 6.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 7.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 8.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 9.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.3\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.3\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.4\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.4\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.5\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.5\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.6\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.6\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.7\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.7\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.8\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 17.0.8\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.2.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.2.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.3.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.3.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.4.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.4.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.5.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.5.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.6.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2014/07/21 09:08:00 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Thunderbird 24.6.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins

[2014/10/28 09:32:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\kuchi_acer\AppData\Roaming\mozilla\Extensions
[2014/10/30 09:22:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\kuchi_acer\AppData\Roaming\mozilla\Firefox\Profiles\grndbowm.default\extensions
[2011/07/19 10:14:26 | 000,000,000 | ---D | M] (No name found) -- C:\Users\kuchi_acer\AppData\Roaming\mozilla\Firefox\Profiles\grndbowm.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2011/07/19 10:14:31 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/02/23 07:40:19 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2011/07/02 23:00:58 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
[2011/05/04 04:52:23 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll

[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\38.0.2125.111\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\38.0.2125.111\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\Application\38.0.2125.111\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
CHR - plugin: Skype Toolbars (Enabled) = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\5.9.0.9216_0\npSkypeChromePlugin.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.7.1 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
CHR - plugin: Picasa (Enabled) = C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Windows Live Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aeaoofnhgocdbnbeljkmbjdmhbcokfdb\2.0.3_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd\0.0.0.5_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\figgmbkcblmmcbnajjbelmjjdkmcbamj\1.0_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gadafnnkijfmbbmeielphlapddbmgbgo\1.1_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\helapmmoeenojpmlbnajhoelaegaldom\2.0_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hikihjmdmfbalmfnoconoknjmmomhdfe\1.0.1_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeehbjplichmlbnppcafmjjfdnkkgpkf\2.0_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jimdjjfddbjfdeaoflhigecmcogbjolm\1.2_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpkfjicglakibpenojifdiepckckakgk\1.13.4_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\lidgnhlbmoakdjkfhanbhfngcadpaiac\2.4.0.113_0\
CHR - Extension: Skype Toolbars = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.3.16540.9015_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 16:20:52
OTL ③
OTL ③

O1 HOSTS File: ([2010/12/11 13:14:08 | 000,000,518 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activate.adobe.com
O1 - Hosts: 127.0.0.1 practivate.adobe.com
O1 - Hosts: 127.0.0.1 ereg.adobe.com
O1 - Hosts: 127.0.0.1 activate.wip3.adobe.com
O1 - Hosts: 127.0.0.1 wip3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-3.adobe.com
O1 - Hosts: 127.0.0.1 3dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-2.adobe.com
O1 - Hosts: 127.0.0.1 adobe-dns-3.adobe.com
O1 - Hosts: 127.0.0.1 ereg.wip3.adobe.com
O1 - Hosts: 127.0.0.1 activate-sea.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 activate-sjc0.adobe.com
O1 - Hosts: 127.0.0.1 wwis-dubc1-vip60.adobe.com
O1 - Hosts: 127.0.0.1 192.150.18.108
O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2 - BHO: (PhishWall) - {8CA7E745-EF75-4E7B-BB86-8065C0CE29CA} - C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll (SecureBrain Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (PhishWall) - {BB62FFF4-41CB-4AFC-BB8C-2A4D4B42BBDC} - C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll (SecureBrain Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3:[b]64bit:[/b] - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated)
O4:[b]64bit:[/b] - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:[b]64bit:[/b] - HKLM..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (AlcorMicro Co., Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4:[b]64bit:[/b] - HKLM..\Run: [CanonSolutionMenu] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [Logitech Download Assistant] C:\Windows\SysNative\LogiLDA.dll (Logitech, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [mwlDaemon] C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe (Egis Technology Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [PLFSetI] C:\Windows\PLFSetI.exe ()
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ArcadeDeluxeAgent] C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe (CyberLink Corp.)
O4 - HKLM..\Run: [BackupManagerTray] C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe (NewTech Infosystems, Inc.)
O4 - HKLM..\Run: [EgisTecLiveUpdate] C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe (Egis Technology Inc.)
O4 - HKLM..\Run: [Google Japanese Input Prelauncher] C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe (Google Inc.)
O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [LWS] C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe (Logitech Inc.)
O4 - HKLM..\Run: [PlayMovie] C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe (Acer Corp.)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3968424009-437815010-2158375204-1000..\Run: [AdobeBridge] File not found
O4 - HKU\S-1-5-21-3968424009-437815010-2158375204-1000..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-3968424009-437815010-2158375204-1000..\Run: [Logicool Vid] C:\Program Files (x86)\Logicool\Vid HD\Vid.exe (Logicool Co Ltd.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\kuchi_acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\kuchi_acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PhishWall Client.appref-ms ()
O4 - Startup: C:\Users\kuchi_acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\秀丸.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\SearchScopes present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\SearchScopes present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\SearchScopes present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\SearchScopes present
O7 - HKU\S-1-5-21-3968424009-437815010-2158375204-1000\Software\Policies\Microsoft\Internet Explorer\SearchScopes present
O8:[b]64bit:[/b] - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200 File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\SysWow64\GPhotos.scr (Google Inc.)
O9:[b]64bit:[/b] - Extra Button: @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files\WIDCOMM\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Bluetooth ヘ送る - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : Bluetooth デバイスに送信(&B) - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm ()
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {154F81B2-15F7-453B-B6ED-72E2E90D0D34} https://www.creativehealth.jp/ap/tool/PMyiCon.CAB (PMyiConnection Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_37-windows-i586.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.11.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{079E895E-A34A-44CA-AB30-B5385D4D0B79}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5825FAA9-C186-484C-A2CC-C76445F26A4E}: DhcpNameServer = 192.168.11.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C9149F90-FADE-4B6A-8C6D-BF2CDF9FE999}: DhcpNameServer = 192.168.0.25
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\skype-ie-addon-data - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logicool, Inc.)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2014/10/29 16:41:56 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{17cfb3a2-04e0-11e0-a37a-00262d8164b5}\Shell - "" = AutoRun
O33 - MountPoints2\{17cfb3a2-04e0-11e0-a37a-00262d8164b5}\Shell\AutoRun\command - "" = E:\SETUP.EXE
O33 - MountPoints2\{17cfb3a2-04e0-11e0-a37a-00262d8164b5}\Shell\configure\command - "" = E:\SETUP.EXE
O33 - MountPoints2\{17cfb3a2-04e0-11e0-a37a-00262d8164b5}\Shell\install\command - "" = E:\SETUP.EXE
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (MACHINE BootExecut)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2014/11/05 08:31:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\herdProtect
[2014/11/05 08:31:57 | 000,000,000 | ---D | C] -- C:\Program Files\Reason
[2014/11/05 06:58:53 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Local\Skype
[2014/11/05 06:58:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2014/11/05 06:58:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2014/11/05 06:19:53 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2014/11/05 06:19:51 | 000,000,000 | ---D | C] -- C:\ProgramData\ProductData
[2014/11/05 06:19:51 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Roaming\IObit
[2014/11/03 17:35:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2014/11/03 15:40:28 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Roaming\SUPERAntiSpyware.com
[2014/11/03 15:39:24 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2014/11/03 08:27:11 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Roaming\Malwarebytes
[2014/11/02 13:41:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2014/11/02 13:41:28 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2014/11/02 12:30:12 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\Documents\Freemake
[2014/11/02 10:00:40 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2014/11/02 09:44:29 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/10/31 11:10:37 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Local\SecureBrain Corporation
[2014/10/31 11:09:50 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SecureBrain Corporation
[2014/10/30 08:51:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014/10/29 16:41:13 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2014/10/29 16:40:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
[2014/10/28 19:29:13 | 000,000,000 | ---D | C] -- C:\ProgramData\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e
[2014/10/28 09:37:53 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Local\com
[2014/10/22 15:42:57 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2014/10/18 06:50:17 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014/10/18 06:50:17 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/10/18 06:50:17 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014/10/18 06:50:17 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/10/18 06:50:16 | 000,710,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/10/18 06:50:16 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014/10/18 06:50:16 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014/10/18 06:50:16 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014/10/18 06:50:16 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/10/18 06:50:14 | 002,017,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/10/18 06:50:14 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/10/18 06:50:13 | 000,446,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/10/18 06:50:13 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014/10/18 06:50:13 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014/10/18 06:50:12 | 000,731,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/10/18 06:50:12 | 000,440,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014/10/18 06:50:12 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/10/18 06:50:11 | 002,108,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/10/18 06:50:10 | 001,068,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014/10/18 06:50:10 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/10/18 06:50:09 | 000,678,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/10/18 06:50:08 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/10/18 06:50:08 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014/10/18 06:50:07 | 000,595,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014/10/18 06:50:07 | 000,289,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/10/18 06:50:06 | 001,249,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014/10/18 06:50:06 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/10/18 06:50:06 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/10/18 06:50:05 | 005,829,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/10/18 06:50:05 | 000,775,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/10/18 06:50:05 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014/10/18 06:50:05 | 000,547,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/10/18 06:50:04 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014/10/18 06:50:04 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014/10/18 06:50:03 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014/10/18 06:47:17 | 001,943,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dfshim.dll
[2014/10/18 06:47:17 | 001,131,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dfshim.dll
[2014/10/18 06:47:17 | 000,156,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscorier.dll
[2014/10/18 06:47:17 | 000,156,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscorier.dll
[2014/10/18 06:47:16 | 000,081,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mscories.dll
[2014/10/18 06:47:16 | 000,073,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mscories.dll
[2014/10/18 06:47:14 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rastls.dll
[2014/10/18 06:47:13 | 000,372,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rastls.dll
[2014/10/18 06:47:07 | 003,722,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2014/10/18 06:47:07 | 003,221,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014/10/18 06:47:06 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2014/10/18 06:47:05 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2014/10/18 06:47:04 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsta.dll
[2014/10/18 06:47:03 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2014/10/18 06:47:03 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2014/10/18 06:47:02 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2014/10/18 06:47:01 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2014/10/18 06:44:56 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2014/10/18 06:44:56 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2010/01/05 15:08:19 | 000,036,136 | ---- | C] (Oberon Media) -- C:\ProgramData\FullRemove.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\kuchi_acer\AppData\Local\*.tmp files -> C:\Users\kuchi_acer\AppData\Local\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2014/11/05 10:09:40 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/11/05 10:09:31 | 2331,377,664 | -HS- | M] () -- C:\hiberfil.sys
[2014/11/05 08:48:00 | 000,000,686 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/11/05 08:34:47 | 000,001,080 | ---- | M] () -- C:\Users\kuchi_acer\Desktop\OTL.exe - ショートカット.lnk
[2014/11/05 08:31:59 | 000,001,117 | ---- | M] () -- C:\Users\Public\Desktop\herdProtect.lnk
[2014/11/05 07:40:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job
[2014/11/05 06:58:38 | 000,017,600 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/11/05 06:58:38 | 000,017,600 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/11/05 06:19:52 | 000,000,332 | ---- | M] () -- C:\Windows\tasks\Uninstaller_SkipUac_kuchi_acer.job
[2014/11/05 06:02:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job
[2014/11/04 19:49:55 | 000,000,668 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000Core.job
[2014/11/04 15:46:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job
[2014/11/04 15:45:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job
[2014/11/02 13:41:40 | 000,000,826 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/11/02 13:39:48 | 000,001,385 | ---- | M] () -- C:\Users\kuchi_acer\Desktop\Search.lnk
[2014/11/02 09:40:45 | 000,001,219 | ---- | M] () -- C:\Users\kuchi_acer\Desktop\iobituninstaller-4-0-4-1.zip - ショートカット.lnk
[2014/10/31 22:13:08 | 001,290,336 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014/10/31 22:13:08 | 000,652,376 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/10/31 22:13:08 | 000,410,316 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
[2014/10/31 22:13:08 | 000,121,442 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
[2014/10/31 22:13:08 | 000,121,308 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/10/31 22:13:02 | 001,290,336 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/10/31 11:09:50 | 000,000,302 | ---- | M] () -- C:\Users\kuchi_acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PhishWall Client.appref-ms
[2014/10/31 09:38:00 | 000,000,376 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP3.job
[2014/10/29 20:22:51 | 000,001,252 | ---- | M] () -- C:\Users\kuchi_acer\Desktop\無料のクリーンレジストリ!.lnk
[2014/10/29 16:54:04 | 000,002,198 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014/10/29 16:41:56 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2014/10/29 09:38:00 | 000,000,376 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP2.job
[2014/10/29 08:32:00 | 000,000,242 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2014/10/28 09:58:00 | 000,000,378 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP1.job
[2014/10/28 09:53:28 | 000,000,061 | ---- | M] () -- C:\Windows\SysWow64\baidujp20.cfg
[2014/10/28 08:43:21 | 000,000,090 | ---- | M] () -- C:\Users\kuchi_acer\AppData\Roaming\WB.CFG
[2014/10/26 10:52:38 | 000,000,486 | ---- | M] () -- C:\Windows\SysNative\baidujp20.cfg
[2014/10/20 19:40:48 | 000,000,720 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000UA.job
[2014/10/20 08:43:39 | 000,000,690 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/10/19 08:52:49 | 004,898,032 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\kuchi_acer\AppData\Local\*.tmp files -> C:\Users\kuchi_acer\AppData\Local\*.tmp -> ]

  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 16:31:37
OTL④
OTL ④

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2014/11/05 08:34:47 | 000,001,080 | ---- | C] () -- C:\Users\kuchi_acer\Desktop\OTL.exe - ショートカット.lnk
[2014/11/05 08:31:59 | 000,001,117 | ---- | C] () -- C:\Users\Public\Desktop\herdProtect.lnk
[2014/11/03 15:46:44 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job
[2014/11/03 15:46:24 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job
[2014/11/03 15:41:02 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job
[2014/11/03 15:40:58 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job
[2014/11/02 13:41:40 | 000,000,826 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/11/02 12:25:04 | 000,000,332 | ---- | C] () -- C:\Windows\tasks\Uninstaller_SkipUac_kuchi_acer.job
[2014/11/02 09:40:45 | 000,001,219 | ---- | C] () -- C:\Users\kuchi_acer\Desktop\iobituninstaller-4-0-4-1.zip - ショートカット.lnk
[2014/10/31 11:10:37 | 000,000,302 | ---- | C] () -- C:\Users\kuchi_acer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PhishWall Client.appref-ms
[2014/10/29 16:41:56 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2014/10/29 08:32:00 | 000,000,242 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2014/10/28 09:52:57 | 000,000,061 | ---- | C] () -- C:\Windows\SysWow64\baidujp20.cfg
[2014/10/28 09:39:11 | 000,001,385 | ---- | C] () -- C:\Users\kuchi_acer\Desktop\Search.lnk
[2014/10/28 09:38:36 | 000,000,376 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP3.job
[2014/10/28 09:38:33 | 000,000,376 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP2.job
[2014/10/28 09:38:31 | 000,000,378 | ---- | C] () -- C:\Windows\tasks\APSnotifierPP1.job
[2014/10/22 16:38:03 | 000,000,090 | ---- | C] () -- C:\Users\kuchi_acer\AppData\Roaming\WB.CFG
[2014/10/22 15:39:35 | 000,000,486 | ---- | C] () -- C:\Windows\SysNative\baidujp20.cfg
[2011/05/12 22:26:37 | 000,000,079 | ---- | C] () -- C:\Users\kuchi_acer\AppData\Local\CrystalDiskMark30.ini
[2010/11/19 01:43:40 | 000,000,040 | -HS- | C] () -- C:\ProgramData\.zreglib
[2010/05/26 19:37:52 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/03/25 11:43:12 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/03/25 11:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 04:19:04 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2014/10/28 09:58:00 | 000,000,378 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP1.job
[2014/10/29 09:38:00 | 000,000,376 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP2.job
[2014/10/31 09:38:00 | 000,000,376 | ---- | M] () -- C:\Windows\tasks\APSnotifierPP3.job
[2014/11/05 08:48:00 | 000,000,686 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/10/20 08:43:39 | 000,000,690 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/11/04 19:49:55 | 000,000,668 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000Core.job
[2014/10/20 19:40:48 | 000,000,720 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000UA.job
[2014/11/05 07:40:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job
[2014/11/04 15:45:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job
[2014/11/05 06:02:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job
[2014/11/04 15:46:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job
[2014/11/05 06:19:52 | 000,000,332 | ---- | M] () -- C:\Windows\tasks\Uninstaller_SkipUac_kuchi_acer.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: Hitachi HTS545050B9A300
Partitions: 3
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 13.00GB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 100.00MB
Starting Offset: 13632536576
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 453.00GB
Starting Offset: 13737394176
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2009/07/14 10:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2013/02/27 14:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:24 | 000,849,920 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/20 05:25:46 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2014/04/12 11:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2013/07/09 14:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2013/07/09 13:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:26 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/20 05:26:06 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/20 04:18:32 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2010/11/20 05:26:40 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
SRV:[b]64bit:[/b] - [2014/08/22 15:14:34 | 000,023,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:[b]64bit:[/b] - [2014/08/22 15:14:34 | 000,368,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:24 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2010/11/20 05:25:22 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2014/04/12 11:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:26 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:26 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:26 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2014/04/12 11:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:28 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:26 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/20 04:21:20 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2010/11/20 05:27:26 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:28 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/20 04:21:30 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:24 | 000,209,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/20 05:25:28 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2010/11/20 05:25:44 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2010/11/20 05:25:44 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:26 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:30 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:00 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:30 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2010/11/20 05:25:00 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/20 04:17:24 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2014/05/15 01:23:46 | 002,477,536 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/20 05:26:08 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/20 05:27:30 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

< End of report >
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 16:37:52
Extras ①
Extras ①
OTL Extras logfile created on: 2014/11/05 10:13:58 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\kuchi_acer\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17358)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

2.90 Gb Total Physical Memory | 1.85 Gb Available Physical Memory | 63.88% Memory free
5.79 Gb Paging File | 4.77 Gb Available in Paging File | 82.49% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 452.97 Gb Total Space | 272.42 Gb Free Space | 60.14% Space Free | Partition Type: NTFS

Computer Name: KUCHI_ACER-PC | User Name: kuchi_acer | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.ini[@ = hidemaru.ini] -- C:\Program Files\Hidemaru\Hidemaru.exe (有限会社サイトー企画)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
.txt[@ = hidemaru.txt] -- C:\Program Files\Hidemaru\Hidemaru.exe (有限会社サイトー企画)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.ini [@ = hidemaru.ini] -- C:\Program Files\Hidemaru\Hidemaru.exe (有限会社サイトー企画)
.txt [@ = hidemaru.txt] -- C:\Program Files\Hidemaru\Hidemaru.exe (有限会社サイトー企画)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [Bridge] -- C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0176AFAC-DA16-4178-9F9C-C18E10748EB2}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{05F99812-8F64-44B9-835E-4FFC2F758F5F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{0D1F6681-4CCB-4BDF-B406-20F7B89E3585}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{150BC9F1-6D59-4438-A3EA-1D3627830CEE}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | app=%systemroot%\system32\svchost.exe |
"{405A3EA6-A157-40B9-9662-C01C2A96020D}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4074E79A-3D15-4798-999D-63EC5C98DB18}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{4C7480C8-2912-43C5-AC94-E26D2767275C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6627A305-61B3-473D-808D-986F09E2C27E}" = rport=139 | protocol=6 | dir=out | app=system |
"{68237445-F228-42F7-968C-E5B91E4E25AE}" = lport=139 | protocol=6 | dir=in | app=system |
"{6BBCC7E7-53D0-4F4A-81E9-83F1299B9561}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{6D5E685F-F645-4817-B3FF-7DFB7DFF5443}" = rport=138 | protocol=17 | dir=out | app=system |
"{74353FEB-7729-4452-B546-F224CCA1E244}" = lport=137 | protocol=17 | dir=in | app=system |
"{79558BFB-5461-4AC8-BAB5-136411895C69}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{819406EB-10D1-4E52-8432-D0ACC377B10C}" = lport=138 | protocol=17 | dir=in | app=system |
"{85770720-C7B0-40F7-8D77-28041735B6FA}" = lport=80 | protocol=6 | dir=in | app=system |
"{88444218-5BA5-4E4F-B541-1305AF5648B9}" = lport=2869 | protocol=6 | dir=in | app=system |
"{951B1B2E-197E-40AB-99EF-8E18843D3BC5}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
"{9C93ED00-840D-49E8-B9FC-7E96CFECF7D1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{A98AF66F-2D11-40FC-943A-F194505D8E92}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{ABC05B24-FC66-4821-94A6-AAAF54F071FE}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{ACFD8FCE-88E7-43DB-B5D8-D14E61257BAE}" = rport=137 | protocol=17 | dir=out | app=system |
"{CA3F0A7B-B6E3-46EE-AE26-A94AE06A7FBB}" = rport=445 | protocol=6 | dir=out | app=system |
"{CECCAB0E-5838-41AE-8AFD-0746931029B2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{CF4169B7-3C02-4104-8A74-0956D72AD777}" = lport=5985 | protocol=6 | dir=in | app=system |
"{D05498B5-0BF2-4F80-85A9-B5712E72036F}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
"{E300DBB5-ECD1-4BDF-ACA8-13F17158E731}" = rport=427 | protocol=17 | dir=in | svc=hpslpsvc | app=c:\windows\system32\svchost.exe |
"{EBBB7F72-B78E-435A-9FE1-D2F8683148CE}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F4286832-4192-4239-B74E-26E8BB2D7760}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{F476024D-7838-41FC-ABCE-A2F9812CB159}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{F5D36F18-C5D8-491F-B8AB-B5EC3DEF3913}" = lport=445 | protocol=6 | dir=in | app=system |
"{FC77FF30-4414-4056-80DA-BCBE3BEE9EFB}" = lport=rpc | protocol=6 | dir=in | svc=policyagent | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03645180-B12A-402F-B910-AD59369B988E}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{059D9A43-4D5C-4F14-8868-6F3F4B2061A5}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{0801B8CF-41D4-4971-ADC4-5B247770EBA3}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe |
"{11E7CF78-0D76-4267-9A7E-93CC8D2FAC19}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe |
"{1911046B-1408-457E-8D50-E0E57B7DCC14}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{194ECF27-8132-458C-88B6-D3FACF059BA7}" = dir=in | app=c:\program files (x86)\hp\digital imaging\{59c83c08-63f4-4aec-81d6-392c5e23b843}\setup\hpznui40.exe |
"{1ABA5C6B-9016-45E9-8B68-4A55256B6AAC}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe |
"{21F4C416-402F-4B9B-99D0-53D89F729876}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{2460043B-4DAD-453A-8BBA-30B75B9EEAB5}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{2AC389B1-E914-4802-BE94-7869A5712E31}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe |
"{2BADB47C-D399-4C7D-A9B7-7B7DB2C955D6}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{3CB1ABE2-4530-4242-86FE-12743CA56A72}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{4449788E-A329-4131-A0D2-D57F2BE67CC2}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftplayer.dll |
"{463DE230-C7B4-4071-85FD-79D965B8BB42}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{4835A1DD-A5D7-4B67-BDB2-F1EB17EAE6AD}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{4D2A15CB-49BF-4AEF-BC37-D9B470810E86}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe |
"{51DF4960-E37C-40E3-9DB1-8FA189CEC784}" = protocol=6 | dir=in | app=c:\users\kuchi_acer\appdata\roaming\dropbox\bin\dropbox.exe |
"{55937257-5BB3-43DB-A5E7-C381DA27AEE7}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\playmovie\playmovie.exe |
"{584B313D-1670-4101-ACA3-E841C9A58992}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftplayer.dll |
"{5D6C91F3-1187-4F04-A54D-5E88646390A2}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{5F5C980C-301B-4195-9A74-AB88F79EC9AC}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{62FF2446-1C58-409C-A768-37F18FC02A20}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdownloaderhelp.dll |
"{6407A9A5-588D-4FFB-8DC5-711A322A259A}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{640939B1-C148-4926-9898-F282D5AB988C}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{6A3B8FCC-54BE-4E5D-93A9-C148D9E189ED}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftsrv.dll |
"{6D1871D7-FA6B-4655-9E4C-53A3F023311B}" = dir=in | app=c:\program files (x86)\hp\digital imaging\smart web printing\smartwebprintexe.exe |
"{6ED3CA40-42C5-436F-B72A-5D6C3BCE10C1}" = protocol=17 | dir=in | app=c:\program files (x86)\sony ericsson\update service\update service.exe |
"{703BE3E2-53F8-408B-8620-81E22410A9BE}" = protocol=6 | dir=in | app=c:\program files (x86)\sony ericsson\update service\update service.exe |
"{704DB6B3-1885-40C5-8275-0CCBF0524E4B}" = protocol=17 | dir=in | app=c:\users\kuchi_acer\appdata\roaming\dropbox\bin\dropbox.exe |
"{71E606B2-89A1-4F99-B486-F5E2CF4AE460}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe |
"{744EED20-1898-4D58-9DF8-3FAAFA5D4EC6}" = dir=in | app=c:\program files\atermwrex\wrstexv.exe |
"{74CC2124-6139-4492-98A7-4F0E381288B3}" = protocol=6 | dir=in | app=c:\windows\system32\mstsc.exe |
"{7B9D6BA2-C6D2-40BB-9C35-A2203D583E79}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe |
"{7EC8C5E9-CC9F-4D64-A96D-F9644521367C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{8BE262A1-526C-4099-BD88-B7672695281F}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftsrv.dll |
"{8D7167F5-AF24-4DF7-8627-61480AF2BDC8}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\playmovie\pmvservice.exe |
"{8DC4B4CA-0AE6-4650-AFDC-AAACF713EE63}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe |
"{8DFA8F66-2A04-46A2-AB7A-617490EDB467}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{9137D715-05C7-4783-99F4-010F07473E51}" = protocol=6 | dir=in | app=c:\users\kuchi_acer\appdata\roaming\dropbox\bin\dropbox.exe |
"{91E81244-3C74-4DE7-90E0-8DC75B71D8C8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe |
"{937FE173-42BB-4595-A135-A6CD58CAAD5E}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{98486D7B-C1A8-45FC-8AA8-F672F8BA2CE7}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{9C2B4590-DA00-46C8-B208-E3FA244DFD10}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe |
"{9EF42584-D0AE-4477-A560-AC29DCC4AB10}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\video download capture.exe |
"{A03AF992-6632-4383-BE3C-7F937EA83391}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdump.dll |
"{A804D049-072D-4331-8E57-9B604BA58EB4}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\acer arcade deluxe\acer arcade deluxe.exe |
"{A93A3D39-21A3-4F08-8321-B3DF454B9925}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\video download capture.exe |
"{B3F937E8-D6B0-4E21-A14B-85ADED0C3585}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{C778A7EF-89C9-41BA-86A2-32EFB74C58F9}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe |
"{CD48E4D2-21DC-4B1C-92F3-BF399FEDA924}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe |
"{CDD49189-B36E-429E-B11A-4B52E3BC5919}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdownloaderhelp.dll |
"{D06BB88F-90C6-4758-A23D-1389ACD33083}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftac.dll |
"{D176B2C9-800F-4624-8C4B-DB42E768A6D0}" = dir=in | app=c:\program files (x86)\acer arcade deluxe\homemedia\homemedia.exe |
"{D410B562-1B6A-4579-AB36-F858F2FAB55A}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{D88ABBEE-533B-40A2-8D06-47A14780DDE6}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe |
"{DC701825-68BD-47A0-84AF-47CEE2DEB339}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{DCCD6CF7-3C61-48CD-B032-64EE33852A7D}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{DD737F17-0572-426A-B10A-081FE9ECFBD0}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe |
"{E1ADC6FD-D05D-4D42-85C7-B4FDD77B978A}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe |
"{EA5F43F6-49A2-4FE8-9670-196B4DEC7B88}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftac.dll |
"{EC41255D-B666-43C8-B352-698E2A1E7D04}" = protocol=17 | dir=in | app=c:\users\kuchi_acer\appdata\roaming\dropbox\bin\dropbox.exe |
"{F76A6A92-6EC7-405B-9ADF-7CCC49DF0832}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdump.dll |
"{F9022627-6D33-4EB7-BD5C-0E50D531B85D}" = protocol=17 | dir=in | app=c:\windows\system32\mstsc.exe |
"{FC5547CC-DE0E-4B14-BF4D-7A2C3F6D2C35}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe |
"TCP Query User{49A894B5-96FD-4C68-8E82-BDC53BB69FBB}C:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe |
"TCP Query User{5E61381B-63C1-462F-9AA1-DB6700CA66AE}C:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe" = protocol=6 | dir=in | app=c:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe |
"TCP Query User{5FA629BD-131A-48A3-8579-0955DFDA03A0}C:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe" = protocol=6 | dir=in | app=c:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe |
"TCP Query User{909B4127-533B-4D8F-86B9-604EB0DA36D5}C:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe" = protocol=6 | dir=in | app=c:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe |
"TCP Query User{B36DD7F1-2824-4A51-8B11-F5EEDE57EC8C}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=6 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"TCP Query User{B3D2B0B1-BDBE-4A86-B137-82BA85B2127B}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=6 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"TCP Query User{F30B8B10-83F6-4DB8-BD92-F71CF01E4121}C:\program files (x86)\logicool\vid hd\vid.exe" = protocol=6 | dir=in | app=c:\program files (x86)\logicool\vid hd\vid.exe |
"TCP Query User{FC877599-DC91-4AC7-A16D-53A5EE7857C9}C:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe" = protocol=6 | dir=in | app=c:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe |
"UDP Query User{16BFD680-7984-416C-889A-1B6CA3625B64}C:\program files (x86)\logicool\vid hd\vid.exe" = protocol=17 | dir=in | app=c:\program files (x86)\logicool\vid hd\vid.exe |
"UDP Query User{24C2A1CA-ABB4-44BA-B670-8567B9F24561}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=17 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"UDP Query User{874DF822-C301-44AF-B548-F6A41C8C8EEE}C:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe |
"UDP Query User{9B06686E-3C33-4296-938B-8BB3E0B49FBE}C:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe" = protocol=17 | dir=in | app=c:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe |
"UDP Query User{BFC93E66-A420-4D85-A15E-60180FACCAEF}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=17 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"UDP Query User{DE5C409B-C060-4D4E-8CBB-ECAF707655DA}C:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe" = protocol=17 | dir=in | app=c:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe |
"UDP Query User{F0641BA9-1EED-47F8-9351-314C8D85A718}C:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe" = protocol=17 | dir=in | app=c:\users\kuchi_acer\desktop\mfinder205\magicalfinder.exe |
"UDP Query User{F4F90C63-69FD-4559-AFBD-67E60DA29562}C:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe" = protocol=17 | dir=in | app=c:\00_soft\soft\ユーティリティ\comicglass_mediaserver\mediaserver.exe |
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 16:43:07
Extras②
Extras②

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP630_series" = Canon MP630 series MP Drivers
"{138A4072-9E64-46BD-B5F9-DB2BB395391F}" = LWS VideoEffects
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{1E9FC118-651D-4934-97BE-E53CAE5C7D45}" = Microsoft_VC80_MFCLOC_x86_x64
"{23F2C78C-E131-4CA0-8F84-3473FB7728BA}" = Microsoft Security Client
"{33E28B58-7BA0-47B7-AA01-9225ABA2B8A9}" = iTunes
"{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}" = インテル(R) ターボ・ブースト・テクノロジー・モニター
"{3B1E1F4C-031D-410F-A93A-1220236608C8}" = Microsoft Antimalware Service JA-JP Language Pack
"{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}" = Microsoft_VC80_CRT_x86_x64
"{5EB6F3CB-46F4-451F-A028-7F6D8D35D7D0}" = Windows Live Language Selector
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6A1E4EFB-3EE0-40A0-9D6D-E865370289DB}" = Google 日本語入力
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{8557397C-A42D-486F-97B3-A2CBC2372593}" = Microsoft_VC90_ATL_x86_x64
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended
"{90120000-0028-0411-1000-0000000FF1CE}" = Microsoft Office IME (Japanese) 2007
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0411-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Japanese) 2007
"{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel® Matrix Storage Manager
"{925D058B-564A-443A-B4B2-7E90C6432E55}" = Microsoft_VC80_ATL_x86_x64
"{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}" = Microsoft_VC90_CRT_x86_x64
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}" = WIDCOMM Bluetooth Software
"{9F1F4E90-5808-3CA8-8FF6-A5B0E60AF268}" = Microsoft .NET Framework 4 Client Profile JPN Language Pack
"{A325B368-A9EC-40EF-A95C-9DEAD3683AE3}" = Broadcom Gigabit NetLink Controller
"{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}" = Microsoft_VC90_MFC_x86_x64
"{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053
"{C788B026-20BD-4E96-B698-533F1D6C5013}" = 64 Bit HP CIO Components Installer
"{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}" = Microsoft_VC80_MFC_x86_x64
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DC911ADF-7B60-40F2-A112-FB1EB6402D07}" = Microsoft Security Client JA-JP Language Pack
"{F3F18612-7B5D-4C05-86C9-AB50F6F71727}" = KhalInstallWrapper
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"{FD9BC990-A8A3-3F69-86BC-CFB5641931E8}" = Microsoft .NET Framework 4 Extended JPN Language Pack
"3932CA781A7894D20116FDF60F878301800EA8AB" = Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407)
"3BA80AB4C7E9F8497C115C844953A3D4BEB84D21" = Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800)
"6B6B5E96843E55CF5CF8C7E45FB457F1FE642FF1" = Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405)
"BUFFALO BFRD4G" = BUFFALO RAMDISK ユーティリティ
"CCleaner" = CCleaner
"Hidemaru" = 秀丸エディタ64
"LSI Soft Modem" = LSI HDA Modem
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile JPN Language Pack" = Microsoft .NET Framework 4 Client Profile Language Pack - 日本語
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended JPN Language Pack" = Microsoft .NET Framework 4 Extended Language Pack - 日本語
"Microsoft Security Client" = Microsoft Security Essentials
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"WinRAR archiver" = WinRAR アーカイバ

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{05CAE233-9307-4556-A358-457A49D4D268}" = PDF Settings CS5
"{08610298-29AE-445B-B37D-EFBE05802967}" = LWS Pictures And Video
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{10AB1F40-BDEC-4A8D-B427-30F9429378B0}" = Windows Live Movie Maker
"{111EE7DF-FC45-40C7-98A7-753AC46B12FB}" = QuickTime 7
"{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard
"{14790447-1ED0-4F8A-A3FE-07B575EABF3B}" = SD Formatter JP
"{15634701-BACE-4449-8B25-1567DA8C9FD3}" = CameraHelperMsi
"{15D95497-8F76-41E5-8894-EDDB59E39BD9}" = Windows Live メール
"{1651216E-E7AD-4250-92A1-FB8ED61391C9}" = LWS Help_main
"{174A3B31-4C43-43DD-866F-73C9DB887B48}" = LWS Twitter
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1BBD8D70-721A-41AD-AC8F-7308A0C8FA92}" = Adobe Creative Suite 5 Master Collection
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}" = LWS YouTube Plugin
"{21ECABC3-40B2-42DF-8E21-ACF3A4D0D95A}" = Apple Application Support
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype(TM) 6.22
"{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{3C9D008D-3716-4C3F-90CD-38ED57568FAB}_is1" = Video Download Capture V4.4.9
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management
"{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}" = erLC
"{402ED4A1-8F5B-387A-8688-997ABF58B8F2}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{46C045BF-2B3F-4BC4-8E4C-00E0CF8BD9DB}" = Adobe AIR
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CBABDFD-49F8-47FD-BE7D-ECDE7270525A}" = Windows Live PIMT Platform
"{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}" = Google Earth
"{59FEFE3F-8119-457C-A4EE-CF24202DD9D2}" = Visual Basic 6.0 SP6 ランタイムライブラリ 第4版
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{675D8E1E-2388-4718-902C-E5FC4888AC0E}" = Windows Live Essentials
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{68301905-2DEA-41CE-A4D4-E8B443B099BA}" = MyWinLocker
"{6C3F8916-D6A5-4A31-9DA8-80C973CE437F}" = Windows Live Writer
"{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}" = LWS Gallery
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{71E66D3F-A009-44AB-8784-75E2819BA4BA}" = LWS Motion Detection
"{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Backup Manager Basic
"{75F01BB9-CA3F-4483-B1E0-0FF45384501E}" = はがき作家 6 Free
"{77010645-5170-4FC3-90E9-9C7EE79E45E4}" = Joulemeter
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management
"{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}" = LWS Launcher
"{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}" = HPDiagnosticAlert
"{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
"{88410D8F-8529-492B-B556-2394A29B811B}" = Broadcom Wireless LAN Driver Installation Program for Windows7
"{88A686A9-D687-4295-B633-50D8A4B88371}" = Windows Live Writer Resources
"{8937D274-C281-42E4-8CDB-A0B2DF979189}" = LWS Webcam Software
"{8A66A2C8-0032-4949-8D99-C293A3EACF79}" = Windows Live Photo Common
"{8C0B0C9E-60E6-48CD-8080-615A6D271C0F}" = PhishWall
"{8D59BE38-3A4F-4525-AD0D-8980E9E31EFA}" = Windows Live フォト ギャラリー
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8F178A65-9254-45B8-A7A7-3A89F1BB2B45}" = Windows Live UX Platform Language Pack
"{90120000-0016-0000-0000-0000000FF1CE}" = Microsoft Office Excel 2007
"{90120000-0016-0000-0000-0000000FF1CE}_EXCEL_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0411-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Japanese) 2007
"{90120000-0016-0411-0000-0000000FF1CE}_EXCEL_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0000-0000-0000000FF1CE}" = Microsoft Office Word 2007
"{90120000-001B-0000-0000-0000000FF1CE}_WORD_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0411-0000-0000000FF1CE}" = Microsoft Office Word MUI (Japanese) 2007
"{90120000-001B-0411-0000-0000000FF1CE}_WORD_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_EXCEL_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}_WORD_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0411-0000-0000000FF1CE}" = Microsoft Office Proof (Japanese) 2007
"{90120000-001F-0411-0000-0000000FF1CE}_EXCEL_{8B0BBAAA-BB10-41E1-B27E-24CF08CBB253}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0411-0000-0000000FF1CE}_WORD_{8B0BBAAA-BB10-41E1-B27E-24CF08CBB253}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-0028-0411-0000-0000000FF1CE}" = Microsoft Office IME (Japanese) 2007
"{90120000-0028-0411-0000-0000000FF1CE}_EXCEL_{277B1BCF-97A7-40F2-87A5-3CACB0E9714B}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0028-0411-0000-0000000FF1CE}_WORD_{277B1BCF-97A7-40F2-87A5-3CACB0E9714B}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0028-0411-1000-0000000FF1CE}_EXCEL_{8A3FCBEB-9029-40E2-8799-2299CBBEF4D8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0028-0411-1000-0000000FF1CE}_WORD_{8A3FCBEB-9029-40E2-8799-2299CBBEF4D8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_EXCEL_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_WORD_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0411-1000-0000000FF1CE}_EXCEL_{84C84010-F698-443E-84B4-A82DD01A17FE}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0411-1000-0000000FF1CE}_WORD_{84C84010-F698-443E-84B4-A82DD01A17FE}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0411-0000-0000000FF1CE}" = Microsoft Office Proofing (Japanese) 2007
"{90120000-006E-0411-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Japanese) 2007
"{90120000-006E-0411-0000-0000000FF1CE}_EXCEL_{84C84010-F698-443E-84B4-A82DD01A17FE}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0411-0000-0000000FF1CE}_WORD_{84C84010-F698-443E-84B4-A82DD01A17FE}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9DAEA76B-E50F-4272-A595-0124E826553D}" = LWS WLM Plugin
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A8AD990E-355A-4413-8647-A9B168978423}_is1" = UltraVNC 1.0.2 日本語版 Release 1a
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AC76BA86-7AD7-1041-7B44-AB0000000001}" = Adobe Reader XI (11.0.09) - Japanese
"{B05B64BA-D9C8-47B9-A2CB-A1F8E796C843}" = Windows Live Messenger
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{C9D5E4C2-F887-4B13-99A9-E4084EFB33F4}" = はがき作家 6 Free 用 イラスト集 2013 年賀状
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CF59708F-60F4-11D5-866A-00A0D2183227}" = On2 VP3 Video for Windows Codec
"{D0ACE89D-EC7F-470F-80BE-4C98ED366B32}" = Acer Crystal Eye webcam Ver:1.1.124.1120
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D30F9503-071B-4354-827D-C72D8E75BB05}" = Edy Viewer
"{D40EB009-0499-459c-A8AF-C9C110766215}" = Logicool ウェブカメラ ソフトウェア
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DBCE1208-433D-4D3E-A26A-CB1B5E71A8F5}" = Alcor Micro USB Card Reader
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = 日本語 App Name
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E507FB9D-AE1F-421A-987A-9574B5F45F55}" = Roll O' Pict 3.5.0
"{E64354B1-4DFE-4E93-97B6-12147DA2BEB3}" = erLC
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater
"{EED027B7-0DB6-404B-8F45-6DFEE34A0441}" = LWS Video Mask Maker
"{EFFCD486-8120-424D-B794-9FF424F56886}" = 読取革命Lite
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Graphics Media Accelerator Driver
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = ロジクール SetPoint
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}" = LWS Facebook
"Acer Registration" = Acer Registration
"Acer Screensaver" = Acer ScreenSaver
"Acer Welcome Center" = Welcome Center
"Adobe AIR" = Adobe AIR
"BBbroadcast" = BBブロードキャスト 6.0.11.9232
"BUFFALO_AirSet2_is1" = BUFFALO エアステーション設定ツール
"BUFFALO_BPCEnv_is1" = BUFFALO パソコン環境表示ツール
"CANON iMAGE GATEWAY 無料会員登録 MP630" = CANON iMAGE GATEWAY 無料会員登録 MP630
"CANONIJPLM100" = インクジェットプリンタ/スキャナ使用状況調査プログラム
"CanonMyPrinter" = Canon Utilities マイ プリンタ
"CanonSolutionMenu" = Canon Utilities Solution Menu
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = 日本語 App Name
"Context Viewer" = Context Viewer Version 1.4.1
"DVD Decrypter" = DVD Decrypter (Remove Only)
"DVD Shrink_is1" = DVD Shrink 3.2
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"EXCEL" = Microsoft Office Excel 2007
"GridVista" = Acer GridVista
"herdProtectScan" = herdProtect Anti-Malware Scanner
"Identity Card" = Identity Card
"ImgBurn" = ImgBurn
"InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5
"InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8
"InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = Acer Arcade Deluxe
"InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}" = Acer Backup Manager
"InstallShield_{DBCE1208-433D-4D3E-A26A-CB1B5E71A8F5}" = Alcor Micro USB Card Reader
"IObitUninstall" = IObit Uninstaller
"JTrim_is1" = JTrim
"KASHU_UsbEnterVer.3.0.1" = USBメモリのセキュリティ Ver.3.0.1
"Lhaplus" = Lhaplus
"LManager" = Launch Manager
"Logicool Vid" = Logicool Vid HD
"Mozilla Thunderbird 24.6.0 (x86 ja)" = Mozilla Thunderbird 24.6.0 (x86 ja)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MP Navigator EX 2.0" = Canon MP Navigator EX 2.0
"Mp3tag" = Mp3tag v2.46a
"NTT_AirSet2_is1" = 無線親機 設定ユーティリティ
"Picasa 3" = Picasa 3
"UN900119" = BUFFALO クライアントマネージャV
"UN900901" = FT-STC/U-B 設定ユーティリティ
"UNLHA32.DLL" = UNLHA32.DLL
"UNRAR32.DLL" = UNRAR32 Common Archivers Library DLL
"UnZip32" = UnZip32.DLL Common Archivers Library
"WinLiveSuite" = Windows Live Essentials
"WORD" = Microsoft Office Word 2007
"らくらく無線スタートEX" = らくらく無線スタートEX

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-3968424009-437815010-2158375204-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"d85440843346dac6" = PhishWall Client
"Dropbox" = Dropbox
"Google Chrome" = Google Chrome

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2014/11/04 19:25:09 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 63024

Error - 2014/11/04 19:25:10 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 2014/11/04 19:25:10 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 64022

Error - 2014/11/04 19:25:10 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 64022

Error - 2014/11/04 19:25:11 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 2014/11/04 19:25:11 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 65021

Error - 2014/11/04 19:25:11 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 65021

Error - 2014/11/04 19:27:11 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: Continuously busy for more than a second

Error - 2014/11/04 19:27:11 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledEvent 1014

Error - 2014/11/04 19:27:11 | Computer Name = kuchi_acer-PC | Source = Bonjour Service | ID = 100
Description = Task Scheduling Error: m->NextScheduledSPRetry 1014

[ OSession Events ]
Error - 2011/02/14 11:45:42 | Computer Name = kuchi_acer-PC | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 0, Application Name: Microsoft Office Word, Application Version:
12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 4636
seconds with 3300 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 2014/11/04 21:10:04 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:04 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:13 | Computer Name = kuchi_acer-PC | Source = DCOM | ID = 10005
Description =

Error - 2014/11/04 21:10:14 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:14 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:14 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:14 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:14 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:14 | Computer Name = kuchi_acer-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2014/11/04 21:10:16 | Computer Name = kuchi_acer-PC | Source = DCOM | ID = 10005
Description =


< End of report >
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 16:47:19
OTLで大掃除を行いましょう
ログを拝見させていただきました。
新規投稿されたものは悪代官さんに削除していただくこととしましょう。
未だにOrbitやBaiduが根強く残っています。
ここで大掃除を行いましょう。
HPは不要ですので、導入時の指示に従って削除なされてください。

メモ帳を起動させ、以下をコピペしてください。
なお、:OTL、:Files、:Commandsの3つはOTLでの処理方法を決める命令文です。
削除なされないようご注意ください。

------コピペこの下より------
:OTL
DRV:[b]64bit:[/b] - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys -- (esgiguard)
O16 - DPF: {154F81B2-15F7-453B-B6ED-72E2E90D0D34} https://www.creativehealth.jp/ap/tool/PMyiCon.CAB (PMyiConnection Class)
[2014/11/03 17:35:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2014/11/03 15:40:28 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Roaming\SUPERAntiSpyware.com
[2014/11/03 15:39:24 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2014/11/03 08:27:11 | 000,000,000 | ---D | C] -- C:\Users\kuchi_acer\AppData\Roaming\Malwarebytes
[2014/11/02 09:44:29 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/10/30 08:51:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014/10/28 19:29:13 | 000,000,000 | ---D | C] -- C:\ProgramData\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e
[2014/11/05 07:40:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job
[2014/11/05 06:02:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job
[2014/11/04 15:46:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job
[2014/11/04 15:45:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job
[2014/10/29 20:22:51 | 000,001,252 | ---- | M] () -- C:\Users\kuchi_acer\Desktop\無料のクリーンレジストリ!.lnk
[2014/10/28 09:53:28 | 000,000,061 | ---- | M] () -- C:\Windows\SysWow64\baidujp20.cfg
[2014/10/26 10:52:38 | 000,000,486 | ---- | M] () -- C:\Windows\SysNative\baidujp20.cfg
[2014/11/03 15:46:44 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job
[2014/11/03 15:46:24 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job
[2014/11/03 15:41:02 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job
[2014/11/03 15:40:58 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job
[2014/11/05 07:40:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job
[2014/11/04 15:45:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job
[2014/11/05 06:02:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job
[2014/11/04 15:46:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job
"{584B313D-1670-4101-ACA3-E841C9A58992}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftplayer.dll |
"{62FF2446-1C58-409C-A768-37F18FC02A20}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdownloaderhelp.dll |
"{6A3B8FCC-54BE-4E5D-93A9-C148D9E189ED}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftsrv.dll |
"{8BE262A1-526C-4099-BD88-B7672695281F}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftsrv.dll |
"{9EF42584-D0AE-4477-A560-AC29DCC4AB10}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\video download capture.exe |
"{A03AF992-6632-4383-BE3C-7F937EA83391}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdump.dll |
"{A93A3D39-21A3-4F08-8321-B3DF454B9925}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\video download capture.exe |
"{CDD49189-B36E-429E-B11A-4B52E3BC5919}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdownloaderhelp.dll |
"{D06BB88F-90C6-4758-A23D-1389ACD33083}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftac.dll |
"{EA5F43F6-49A2-4FE8-9670-196B4DEC7B88}" = dir=in | app=c:\program files (x86)\apowersoft\video download capture\apowersoftac.dll |
"{F76A6A92-6EC7-405B-9ADF-7CCC49DF0832}" = dir=out | app=c:\program files (x86)\apowersoft\video download capture\apowersoftdump.dll |
"TCP Query User{49A894B5-96FD-4C68-8E82-BDC53BB69FBB}C:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe |
"TCP Query User{B36DD7F1-2824-4A51-8B11-F5EEDE57EC8C}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=6 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"TCP Query User{B3D2B0B1-BDBE-4A86-B137-82BA85B2127B}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=6 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"UDP Query User{24C2A1CA-ABB4-44BA-B670-8567B9F24561}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=17 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"UDP Query User{874DF822-C301-44AF-B548-F6A41C8C8EEE}C:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\bbbroadcast\bbbroadcastcore\bbbroadcastcore.exe |
"UDP Query User{BFC93E66-A420-4D85-A15E-60180FACCAEF}C:\00_soft\soft\internet\orbitdownloader\orbitnet.exe" = protocol=17 | dir=in | app=c:\00_soft\soft\internet\orbitdownloader\orbitnet.exe |
"{3C9D008D-3716-4C3F-90CD-38ED57568FAB}_is1" = Video Download Capture V4.4.9

:Files
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\hikihjmdmfbalmfnoconoknjmmomhdfe
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh
c:\users\kuchi_acer\downloads\fileopenersetup.exe
c:\users\kuchi_acer\downloads\hijackthis (1).exe
c:\users\kuchi_acer\downloads\hijackthis (2).exe
c:\users\kuchi_acer\downloads\spyhunter-installer.exe
c:\users\kuchi_acer\appdata\local\nsm1ecc.tmp
c:\users\kuchi_acer\appdata\roaming\mozilla\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\jid1-xgijyapvea9ena@jetpack.xpi
c:\program files (x86)\apowersoft\video download capture
c:\program files (x86)\bbbroadcast\bbbroadcastcore
c:\program files (x86)\foxtabvideoconverter
c:\program files (x86)\installshield installation information\{2413930c-8309-47a6-bc61-5ef27a4222bc}\setup.exe

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------コピペこの上まで------

コピペが完了しましたら、分かりやすいお名前をつけて保存してください。
その後、PCをセーフモードで起動させてください。
再度OTLを起動させ、Custom Scan/Fixesの項目内に上記で保存した内容をコピペしてください。
今回は駆除作業のため、その他のチェック項目はありません。
赤い文字の[Run Fix]をクリックして処置を開始してください。
OTLの処置に従って進めてゆき、通常モードで再起動を行うと処置ログが表示されますので、
そちらのログを貼り付けてご連絡ください。
  • IVNO
  • MAIL
  • 2014/11/05 (Wed) 17:54:30
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
すみません・・新規投稿になっていたんですね、申し訳ありません。
ご指示の作業終わりましたのでよろしくお願いいたします

OTLログ

All processes killed
========== OTL ==========
Service esgiguard stopped successfully!
Service esgiguard deleted successfully!
File C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys not found.
Starting removal of ActiveX control {154F81B2-15F7-453B-B6ED-72E2E90D0D34}
C:\Windows\Downloaded Program Files\PMyiCon.INF moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{154F81B2-15F7-453B-B6ED-72E2E90D0D34}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{154F81B2-15F7-453B-B6ED-72E2E90D0D34}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{154F81B2-15F7-453B-B6ED-72E2E90D0D34}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{154F81B2-15F7-453B-B6ED-72E2E90D0D34}\ not found.
C:\Program Files (x86)\Malwarebytes Anti-Malware folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Quarantine folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\Logs folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\SUPERAntiSpyware.com folder moved successfully.
C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS folder moved successfully.
C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware\AppLogs folder moved successfully.
C:\ProgramData\SUPERAntiSpyware.com\SUPERAntiSpyware folder moved successfully.
C:\ProgramData\SUPERAntiSpyware.com folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\Users\kuchi_acer\AppData\Roaming\Malwarebytes folder moved successfully.
C:\AdwCleaner\Quarantine\C\Windows\System32 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Windows folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\Documents\Optimizer Pro folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\Documents folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\Desktop folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox\Profiles\grndbowm.default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox\Profiles folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\Mozilla folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\Babylon folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\AnyProtectEx\swf folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\AnyProtectEx\language folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\AnyProtectEx\installer folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming\AnyProtectEx folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Roaming folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\LocalLow\Smartbar folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\LocalLow folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Local Storage folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj\1.0.0_0 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default\Extensions folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data\Default folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google\Chrome\User Data folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google\Chrome folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local\Google folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData\Local folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer\AppData folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users\kuchi_acer folder moved successfully.
C:\AdwCleaner\Quarantine\C\Users folder moved successfully.
C:\AdwCleaner\Quarantine\C\ProgramData\Partner folder moved successfully.
C:\AdwCleaner\Quarantine\C\ProgramData folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\baidu\IME\3.5.2.36 folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\baidu\IME folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files (x86)\baidu folder moved successfully.
C:\AdwCleaner\Quarantine\C\Program Files (x86) folder moved successfully.
C:\AdwCleaner\Quarantine\C folder moved successfully.
C:\AdwCleaner\Quarantine folder moved successfully.
C:\AdwCleaner\Backup\C\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox\Profiles\grndbowm.default folder moved successfully.
C:\AdwCleaner\Backup\C\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox\Profiles folder moved successfully.
C:\AdwCleaner\Backup\C\Users\kuchi_acer\AppData\Roaming\Mozilla\Firefox folder moved successfully.
C:\AdwCleaner\Backup\C\Users\kuchi_acer\AppData\Roaming\Mozilla folder moved successfully.
C:\AdwCleaner\Backup\C\Users\kuchi_acer\AppData\Roaming folder moved successfully.
C:\AdwCleaner\Backup\C\Users\kuchi_acer\AppData folder moved successfully.
C:\AdwCleaner\Backup\C\Users\kuchi_acer folder moved successfully.
C:\AdwCleaner\Backup\C\Users folder moved successfully.
C:\AdwCleaner\Backup\C folder moved successfully.
C:\AdwCleaner\Backup folder moved successfully.
C:\AdwCleaner folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\Logs folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\Configuration folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Quarantine folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Configuration folder moved successfully.
C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware folder moved successfully.
C:\ProgramData\Malwarebytes folder moved successfully.
C:\ProgramData\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e folder moved successfully.
C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job moved successfully.
C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job moved successfully.
C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job moved successfully.
C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job moved successfully.
C:\Users\kuchi_acer\Desktop\無料のクリーンレジストリ!.lnk moved successfully.
C:\Windows\SysWOW64\baidujp20.cfg moved successfully.
C:\Windows\SysNative\baidujp20.cfg moved successfully.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job not found.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job not found.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job not found.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job not found.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8.job not found.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528.job not found.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c.job not found.
File C:\Windows\tasks\SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f.job not found.
========== FILES ==========
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\hikihjmdmfbalmfnoconoknjmmomhdfe\1.0.1_0 folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\hikihjmdmfbalmfnoconoknjmmomhdfe folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\zh_TW folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\zh_CN folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\vi folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\tr folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\sv folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\ru folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\ro folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\pt_BR folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\pl folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\nl folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\ja folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\it folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\hu folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\he folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\fr folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\fi folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\es folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\en_US folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales\de folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\_locales folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\skin\classic folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\skin folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\content\images folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0\content folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh\0.8.0.4_0 folder moved successfully.
c:\users\kuchi_acer\appdata\local\google\chrome\user data\default\extensions\mmgagnmbebdebebbcleklifnobamjonh folder moved successfully.
c:\users\kuchi_acer\downloads\FileOpenerSetup.exe moved successfully.
c:\users\kuchi_acer\downloads\HijackThis (1).exe moved successfully.
c:\users\kuchi_acer\downloads\HijackThis (2).exe moved successfully.
c:\users\kuchi_acer\downloads\SpyHunter-Installer.exe moved successfully.
c:\users\kuchi_acer\appdata\local\nsm1ECC.tmp moved successfully.
c:\users\kuchi_acer\appdata\roaming\mozilla\extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\jid1-xGIjYAPvEA9ENA@jetpack.xpi moved successfully.
c:\program files (x86)\apowersoft\Video Download Capture\mplayer folder moved successfully.
c:\program files (x86)\apowersoft\Video Download Capture\Lang folder moved successfully.
c:\program files (x86)\apowersoft\Video Download Capture\ApowersoftScreenCapturing folder moved successfully.
c:\program files (x86)\apowersoft\Video Download Capture\ApowersoftAudioCapturing\x86 folder moved successfully.
c:\program files (x86)\apowersoft\Video Download Capture\ApowersoftAudioCapturing\x64 folder moved successfully.
c:\program files (x86)\apowersoft\Video Download Capture\ApowersoftAudioCapturing folder moved successfully.
c:\program files (x86)\apowersoft\Video Download Capture folder moved successfully.
c:\program files (x86)\bbbroadcast\BBbroadcastCore folder moved successfully.
c:\program files (x86)\FoxTabVideoConverter\bin folder moved successfully.
c:\program files (x86)\FoxTabVideoConverter folder moved successfully.
c:\program files (x86)\installshield installation information\{2413930c-8309-47a6-bc61-5ef27a4222bc}\setup.exe moved successfully.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Flash cache emptied: 56502 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: kuchi_acer
->Temp folder emptied: 60863037 bytes
->Java cache emptied: 3850450 bytes
->Google Chrome cache emptied: 400123865 bytes
->Flash cache emptied: 535 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 1715858 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 5314 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 42304116 bytes
RecycleBin emptied: 206002 bytes

Total Files Cleaned = 486.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 11052014_203151

Files\Folders moved on Reboot...
C:\Users\kuchi_acer\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • くっちー
  • MAIL
  • 2014/11/05 (Wed) 20:42:30
今度はHPから掃除を
おはようございます。
作業後のOTLログを見せていただきました。
OTLの処置も成功してるようですね。

では次の説明をよく読んでから、続きの作業をお願いします。

先の手順でまたHPを起動してスキャンしてください。HPでまだ残っている物が見つかったらそれも掃除します。

スキャン後に表示された中の下記を順番に選択して、それぞれ「actions」から「remove」を選択して処置してください。

c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe

c:\users\kuchi_acer\downloads\fileopenersetup.exe

c:\users\kuchi_acer\downloads\spyhunter-installer.exe

c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak

c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe

c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak

c:\program files (x86)\common files\oberon media\odyssey\2.0.0.29\odyssey.dll

c:\program files (x86)\foxtabvideoconverter\videoconverter.exe

c:\program files (x86)\foxtabvideoconverter\bin\ffmpeg.exe

c:\program files (x86)\foxtabvideoconverter\videoconverter.exe

c:\program files (x86)\foxtabvideoconverter\bin\ffmpeg.exe

探しても見つからないものはスルーして進めていいです。

そのあとHPを終了したら一度PC再起動後、マイコンピュータのCドライブを開いてから下記のファイルおよびフォルダを探して、見つかればそれを削除してください。

c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe

c:\users\kuchi_acer\downloads\fileopenersetup.exe

c:\users\kuchi_acer\downloads\spyhunter-installer.exe

c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak

c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe

c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak

c:\program files (x86)\common files\oberon media

c:\program files (x86)\foxtabvideoconverter

ここまでできたら一度PC再起動後、またしばらく様子見の後に状態報告をレスください
  • 悪代官
  • 2014/11/06 (Thu) 08:19:11
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
おはようございます。ご指示ありがとうございます
HPを起動してスキャンしました。スキャンは30分くらいで終わったのですが
「スキャン後に表示された中の下記を順番に選択して、それぞれ「actions」から「remove」を選択して処置してください」とのことですが
スキャン後には何も表示されなかったので先のやり方に従いSave Results をクリックして
ログを保存しましたので送ります

Saved date: 2014/11/06 9:18:30
Files detected: 46
Files scanned: 10,410
Processes scanned: 97
Modules scanned: 795
ASEPs scanned: 490
Downloads scanned: 10
Deep analysis: 20/0
---------------------------------------------------------------------------------

Files

---------------------------------------------------------------------------------

File path: c:\windows\plfseti.exe
Publisher:
MD5: fbfa45b2d8abb107c79e0ca0f8ed0a6d
SHA-1: b3014415014fd14ab9d487dcb517bb91863fce4d
Created: 2010/02/27 8:14:39
Detections: 1
Determination: Ignore detections (false positive)
- Boost by Reason as Optional.Startup.H

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\ijplm\ijplmsvc.exe
Publisher:
Signer: Canon Inc.
MD5: 755519f49906b73c1fe9cbbf75e347ea
SHA-1: ffa301874ad69970f12f06841980be9ebb713064
Created: 2011/08/06 7:07:00
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as Win.Trojan.Agent-327618 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\contview.cpl
Publisher: HOEHOE.COM
MD5: 9f878b876330f22d72758976efec6993
SHA-1: 23dc33720a9912d64542be2b43c43b7d15f25348
Created: 2010/10/22 22:08:15
Detections: 1
Determination: Ignore detections (false positive)
- Vba32 AntiVirus as suspected of Trojan.StartPage.7 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\otl.exe
Publisher: OldTimer Tools
MD5: 4adcfee16ee9978f06157634669d36fb
SHA-1: 30b37076552e49276836d02dd73d038c27dbbee9
Created: 2014/11/05 8:32:41
Detections: 2
Determination: Ignore detections (false positive)
- Agnitum Outpost as Packed/PECompact
- Bkav FE as HW32.CDB (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\fileextractorsetup.exe
Publisher:
MD5: 62bbd798d4324a9aaaf513720a42ae91
SHA-1: 9d854d9a2e4417a92b8bd5eb4267b719d0c6c2f1
Created: 2014/11/01 9:25:33
Detections: 3
Determination: Adware
- VIPRE Antivirus as Threat.4788237 (Undefined)
- McAfee Web Gateway as BehavesLike.Win32.CryptInno.bc (Undefined)
- ESET NOD32 as Win32/InstallCore.RD (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\downloads\fileopenersetup (1).exe
Publisher:
MD5: 7234bf07c083b70ae32a1f1a8debd100
SHA-1: 4247ec1adedd2819ac1d8a7d2fb7ab8d0b1be0a2
Created: 2014/11/03 8:21:31
Detections: 3
Determination: Adware
- VIPRE Antivirus as Threat.4788237 (Undefined)
- McAfee Web Gateway as BehavesLike.Win32.CryptInno.bc (Undefined)
- ESET NOD32 as Win32/InstallCore.RH (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\desktop\iobituninstallerportable\app\uninstaller\sendbugreportnew.exe
Publisher: IObit
Signer: IObit Information Technology
MD5: a1efebef966a397a6ec3362ffd23bf71
SHA-1: b772172e24daae981b57eeb6f4ccc8faf1f3ceae
Created: 2014/10/11 13:03:14
Detections: 1
Determination: Ignore detections (false positive)
- CMC Antivirus as Packed.Win32.Obfuscated.10!O

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\desktop\iobituninstallerportable\app\uninstaller\uninstallexplorer32.dll
Publisher: IObit
Signer: IObit Information Technology
MD5: 100c1eeb3eb296ddc9c55393330b5baf
SHA-1: b75d587b96d646a6bfb1d53b4c16f95c01c12943
Created: 2014/10/11 13:03:18
Detections: 1
Determination: Ignore detections (false positive)
- CMC Antivirus as Packed.Win32.Obfuscated.10!O

---------------------------------------------------------------------------------

File path: c:\windows\delreg.exe
Publisher:
MD5: d4e57898d5c8560d170be9d3c93b00fb
SHA-1: fc40ac89dbc28326e7d4a5169399334fd4ea4179
Created: 2008/02/02 12:30:00
Detections: 1
Determination: Ignore detections (false positive)
- IKARUS anti.virus as Trojan-Ransom.Win32.Gimemo (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\system32\acer.scr
Publisher:
MD5: 6d5a0d388043f46206a58dc2e2b82598
SHA-1: 836a4a831282fe31a6d1ad98b79e7706ddf7a737
Created: 2009/07/08 18:55:00
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious.H

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\bwcontexthandler.dll
Publisher:
MD5: f4a1b4d4ccfd8eeef0259fae58cfae5c
SHA-1: 0136a1323e4f85c773e86e62caeb6dc90182179b
Created: 2009/07/14 8:42:10
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Gen:Variant.Kazy.182960 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\iscsicpl.dll
Publisher: Microsoft Corporation
MD5: f945adcef203e6104aec8ec9c337cfd0
SHA-1: 85fe50b2c2fcbec2c09c5039c8f8c1d38523780a
Created: 2009/07/14 8:46:13
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\netprof.dll
Publisher: Microsoft Corporation
MD5: 1fda175324fac331dc41b076103e7123
SHA-1: b791c2096df2ab3c6315e454022ac64c9fdb102d
Created: 2009/07/14 8:56:36
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\adobe\reader\9.4\arm\17445\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: b8e421c0890356cd4a793d8a346d9096
SHA-1: 30e85d80d9cefa4c55b33a1bfb6e0507a34267fa
Created: 2012/01/03 16:37:53
Detections: 2
Determination: Ignore detections (false positive)
- Boost by Reason as UnneededApp.Startup.AdobeSystemsorporated.I
- Antiy Labs AVL as Backdoor/Win32.Swrort.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\adobe\reader\9.4\arm\17445\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: b8e421c0890356cd4a793d8a346d9096
SHA-1: 30e85d80d9cefa4c55b33a1bfb6e0507a34267fa
Created: 2012/01/03 16:37:53
Detections: 2
Determination: Ignore detections (false positive)
- Boost by Reason as UnneededApp.Startup.AdobeSystemsorporated.I
- Antiy Labs AVL as Backdoor/Win32.Swrort.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\microsoft\windows sidebar\gadgets\hpphoto.gadget\x86\hpqgutil.dll
Publisher: Hewlett-Packard Co.
MD5: 8d46a6748494c9f52f2a2535191e1bdb
SHA-1: 6ed6f7e6461ed7f4aea479620fa782af3bd25982
Created: 2010/10/20 23:42:52
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\virtualstore\program files (x86)\pegasys inc\tmpgenc 4.0 xpress\tmpgenc4xp.exe.bak
Publisher: Pegasys Inc.
MD5: da19a3db16cbd28eda1838144b4f4762
SHA-1: 689f5fbfb17488254c04d5ed26ee0046361e7301
Created: 2010/06/18 6:58:53
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Packed.ASPack212

---------------------------------------------------------------------------------

File path: c:\users\kuchi_acer\appdata\local\virtualstore\program files (x86)\pegasys inc\tmpgenc 4.0 xpress\tmpgenc4xpbatch.exe.bak
Publisher: Pegasys Inc.
MD5: 67ff0444c49a862502327e9e8b7b9d29
SHA-1: 20ced9014c03da4577fc7424d2bd1956c6131d8a
Created: 2010/06/18 6:58:53
Detections: 1
Determination: Ignore detections (false positive)
- McAfee as Artemis!67FF0444C49A (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\acer\acer erecovery management\el\recovery management.resources.dll
Publisher: Acer
MD5: 5760552a5cb4f01a7a18315dcad80abd
SHA-1: 7ef534cd504a47dbdecd18fcf43abe6e54311e7f
Created: 2010/01/05 15:16:43
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Win32.Packer.Net

---------------------------------------------------------------------------------

File path: c:\program files\acer\acer erecovery management\notificationcenter\notification.exe
Publisher: Acer
MD5: 33895c08fb943b48d24b9b0f53b10cd5
SHA-1: f4a3d69d15033df080f20d29723695484ab4c036
Created: 2010/01/05 15:16:43
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Win32.Packer.NetExecutable-1

---------------------------------------------------------------------------------

File path: c:\program files\logicool\setpoint\connect.exe
Publisher: Logicool, Inc.
MD5: 1fb91f4a29d383451c4c3434fb6c4c8e
SHA-1: 8638f9378172336643043b18d74fdc3b5af50a91
Created: 2010/11/10 22:14:51
Detections: 1
Determination: Ignore detections (false positive)
- AVG as IRC/BackDoor.SdBot4 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\sdexplorer\sdapi.dll
Publisher:
MD5: 182bba6569d7f8ff52e5e33b6b2e0041
SHA-1: d3f7df12fbec3e3de7cc3451a8ad13840779b576
Created: 2010/12/03 9:05:01
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Virus.Win32.Virut.CE (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\acer\screensaver\acer.scr
Publisher:
MD5: 6d5a0d388043f46206a58dc2e2b82598
SHA-1: 836a4a831282fe31a6d1ad98b79e7706ddf7a737
Created: 2009/07/08 18:55:00
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious.H

---------------------------------------------------------------------------------

File path: c:\program files (x86)\acer\welcome center\igoogle\resetig.exe
Publisher: Acer
MD5: 701a1fc4c5cbf6aaacb27bb205cf942d
SHA-1: 72367ad417473bfa2c65a8800419b386d4e83cc3
Created: 2009/08/25 11:52:14
Detections: 1
Determination: Ignore detections (false positive)
- eSafe as Win32.Malware.sp.Fda (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\adobe\adobe bridge cs5\axe8sharedexpat.dll
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems Incorporated
MD5: 6cec0778d2ffaa248093a2f77ce05879
SHA-1: 3488b2de009e3e0387302455c2925924e6d3faa9
Created: 2010/03/09 1:41:42
Detections: 1
Determination: Ignore detections (false positive)
- nProtect as Adware.Rotator.L (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\adobe\adobe illustrator cs5\support files\contents\windows\axe8sharedexpat.dll
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems Incorporated
MD5: 6cec0778d2ffaa248093a2f77ce05879
SHA-1: 3488b2de009e3e0387302455c2925924e6d3faa9
Created: 2010/02/24 12:59:08
Detections: 1
Determination: Ignore detections (false positive)
- nProtect as Adware.Rotator.L (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\adobe\adobe photoshop cs5\axe8sharedexpat.dll
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems Incorporated
MD5: 6cec0778d2ffaa248093a2f77ce05879
SHA-1: 3488b2de009e3e0387302455c2925924e6d3faa9
Created: 2010/04/07 2:25:24
Detections: 1
Determination: Ignore detections (false positive)
- nProtect as Adware.Rotator.L (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\bbbroadcast\bbbroadcastcs\bbbroadcastcs.exe
Publisher:
MD5: 34ede1efae7c2acc68ceabfa56deea22
SHA-1: 1c6a46028030a8ec9e50cfd18af7c5778c6b1efe
Created: 2011/09/19 16:11:06
Detections: 2
Determination: Inconclusive
- Avira AntiVirus as TR/Dropper.Gen (Undefined)
- IKARUS anti.virus as Trojan-Dropper (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\buffalo\clientmgrv\bin\airmonv.exe
Publisher: BUFFALO INC.
MD5: cde7f0e90b48f244c03e253917131783
SHA-1: aef6003ada3ada4573336cbac31edc40ea3f6916
Created: 2011/07/24 11:17:18
Detections: 1
Determination: Ignore detections (false positive)
- Sunbelt AntiMalware as Trojan-PSW.Win32.OnLineGames.X (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\easy-photoprint ex\imglng.dll
Publisher: CANON INC.
MD5: 456d3e59417dc288c27ff85cf30e6ff8
SHA-1: c30473be377b880b8c8da9b2fcef4cac29ebb4a1
Created: 2011/08/06 6:34:20
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Backdoor.Win32.IRCNite.po!A2 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\mp navigator ex 2.0\imglng.dll
Publisher: CANON INC.
MD5: 456d3e59417dc288c27ff85cf30e6ff8
SHA-1: c30473be377b880b8c8da9b2fcef4cac29ebb4a1
Created: 2011/08/06 6:34:09
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Backdoor.Win32.IRCNite.po!A2 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\canon\mp navigator ex 2.0\mpnclng.dll
Publisher: CANON INC.
MD5: 57bd323cdb73541ca932962ff0c13267
SHA-1: 278c04e8a4050d92a6b213863d9253f7dcd89155
Created: 2011/08/06 6:34:09
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Backdoor.Win32.IRCNite.po!A2 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\common files\oberon media\odyssey\2.0.0.29\odyssey.dll
Publisher: Oberon Media
Signer: Oberon Media Inc.
MD5: b4d62a48b95542bbcef81216beda3c86
SHA-1: e05d986dec439189e8e77968861860e1b2a645f7
Created: 2007/07/04 4:17:40
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Trojan/Win32.Generic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\daemon tools lite\dtlite.exe
Publisher: DT Soft Ltd
Signer: DT Soft Ltd
MD5: f34e7705751bb413283434697bf8e55d
SHA-1: 8bdc6931fc6c0582886ca2841341a6e463206913
Created: 2010/04/01 18:16:20
Detections: 1
Determination: Ignore detections (false positive)
- CMC Antivirus as Packed.Win32.TDSS.1!O

---------------------------------------------------------------------------------

File path: c:\program files (x86)\dvd shrink\dvd shrink 3.2.exe
Publisher: DVD Shrink
MD5: 4a139685692bc2335f202b6aaf42efff
SHA-1: 672ab933581d177e929b326f3630eae51d338aaf
Created: 2004/07/29 16:03:42
Detections: 2
Determination: Ignore detections (false positive)
- The Hacker as W32/Behav-Heuristic-073 (Undefined)
- Comodo Security as Heur.Packed.MultiPacked

---------------------------------------------------------------------------------

File path: c:\program files (x86)\egistec\mywinlocker 3\shredder.exe
Publisher: Egis Technology Inc.
Signer: EGIS TECHNOLOGY INC.
MD5: 3db4bc1577c746875bacac199fa54002
SHA-1: 22bab39e745565a4efe61a2cef2cee986e232055
Created: 2009/07/10 10:17:52
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Packed.PECompact-1

---------------------------------------------------------------------------------

File path: c:\program files (x86)\hagakiwriter6 free\zlibwapi.dll
Publisher:
MD5: 723172d790a503a6767e8a0fcc10268a
SHA-1: 07184d9bc42256a8af02dd31631cbe30f85690f2
Created: 2011/09/30 11:13:32
Detections: 1
Determination: Ignore detections (false positive)
- ByteHero BDV as Trojan.Malware.Win32.xPack.i (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\hp\digital imaging\{59c83c08-63f4-4aec-81d6-392c5e23b843}\setup\hpzpsl01.exe
Publisher: Hewlett-Packard
Signer: Hewlett Packard
MD5: cd8ef5ddf9349c22263ea384a03eb3d8
SHA-1: bc07662d3a6490f5509b01079a09d530e2a58024
Created: 2010/10/20 23:42:33
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Trojan/Win32.Patched.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\installshield installation information\{5db1df0c-aabc-4362-8a6d-cefdfb036e41}\setup.exe
Publisher: CyberLink Corp.
MD5: de0c395b7db33dbe98ef1dae6e204675
SHA-1: 2c27c06475a26a46da516a6f336e150bfdbe320c
Created: 2010/02/27 8:20:50
Detections: 1
Determination: Ignore detections (false positive)
- Agnitum Outpost as Trojan.Genome (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\installshield installation information\{d0ace89d-ec7f-470f-80be-4c98ed366b32}\issetup.dll
Publisher: Acresso Software Inc.
Signer: Chicony Electronics Co., Ltd.
MD5: a7ee26f1de9fc0c8ecf8acda960f9b48
SHA-1: 042629d679f59b3a004a436e1746b65ec242e47e
Created: 2010/02/27 8:14:39
Detections: 1
Determination: Ignore detections (false positive)
- eSafe as Suspicious File

---------------------------------------------------------------------------------

File path: c:\program files (x86)\jtrim\nova.dll
Publisher:
MD5: f237e03a082c00995f6170c34c117f54
SHA-1: b1fe8254a83a02a6037cc950f348dff825fa67eb
Created: 2002/09/30 0:00:00
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Win32.Packer.BorlandDelphi-14

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\lhaplus.exe
Publisher: HoeHoe.com
MD5: b9ff8eb536d321428177b1554cdac428
SHA-1: ee74421d638fdef6e672ec58c06217de74fa7572
Created: 2010/03/14 23:05:58
Detections: 1
Determination: Ignore detections (false positive)
- Vba32 AntiVirus as suspected of Trojan.StartPage.7 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\setup.exe
Publisher:
MD5: a0dc6feb63224ebe7c856647b837e4db
SHA-1: 9062889ea3bfce487e83eae6f107719b762d54fc
Created: 2010/03/14 23:05:58
Detections: 2
Determination: Ignore detections (false positive)
- F-Prot as W32/Delf.AY.gen (Undefined)
- Commtouch SDK as W32/Delf.AY.gen!Eldorado (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\unacev2.dll
Publisher: ACE Compression Software
MD5: d40dd68e7b0d6e851e13481dc3ed0750
SHA-1: 98b4155c8118311a625372e388fa4217ea65ac3e
Created: 2010/03/14 23:05:58
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Heur.Packed.Unknown

---------------------------------------------------------------------------------

File path: c:\program files (x86)\lhaplus\uninst.exe
Publisher:
MD5: a0dc6feb63224ebe7c856647b837e4db
SHA-1: 9062889ea3bfce487e83eae6f107719b762d54fc
Created: 2010/03/14 23:06:03
Detections: 2
Determination: Ignore detections (false positive)
- F-Prot as W32/Delf.AY.gen (Undefined)
- Commtouch SDK as W32/Delf.AY.gen!Eldorado (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\newtech infosystems\acer backup manager\ishadowburndata.dll
Publisher:
MD5: 1a9e4d6ea69c67defefab8e391c3bbeb
SHA-1: 5830340daff389f7bdd29d3bac7955da82975ea7
Created: 2009/09/23 18:21:08
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Dropper.H



  • くっちー
  • MAIL
  • 2014/11/06 (Thu) 10:00:04
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
すみません、記入不足でした。
作業は通常モードでのHPスキャンまでしかしていません
cドライブの作業はまだです。
cドライブの作業はセーフモードでするんでしょうか?
  • くっちー
  • MAIL
  • 2014/11/06 (Thu) 10:12:27
続けますね
実は悪代官さんがご案内なされたものは、HPで検出し、OTLで駆除したものでした。
ですので再度HPでスキャンを行っても表示されなかったというわけです。
OTLで処置しているため、フォルダもおそらく消えているはずです。
確認については通常モードで結構です。
仮に通常モードで該当フォルダを発見し、削除できなかったとあれば、
そのマルウェアはまだ活動しているということになります。
そうなれば、また別の処置が必要となるのです。

しかしそれよりもっと重大なことが発覚しています。
今月1日に、File Extractorをダウンロードしましたね?
また3日にFile Openerをダウンロードしましたね?
これはいずれもマルウェアです。
インストールしてしまった場合は、直ちにHJTのログ、CCのインストール情報ログを取得し、
貼り付けてご連絡をお願いします。
またそれとは別に、ダウンロードフォルダを開いて、以下の3つを削除なされてください。

fileextractorsetup.exe
fileopenersetup.exe
fileopenersetup (1).exe

次回レスの際に、PCの状況報告をお願いいたします。
  • IVNO
  • MAIL
  • 2014/11/06 (Thu) 11:51:29
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
こんばんわ、なんかまた失敗してたようでお手数おかけして申し訳ありません。
悪代官の伏魔殿掲示板を開き、スクロールするためにマウスをクリックと同時に
KrabWebの広告が表示されたためその広告をクリックしてしまったことがあります。
まさかそれがそのままダウンロードされてたなんて!!!

fileextractorsetup.exe →削除しました
fileopenersetup.exe  →削除しました
fileopenersetup (1).exe →ファイル見当たりません

次にCドライブの確認ですが何度も確認しましたが下記のファイルはひとつもみつかりませんでした

c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe

c:\users\kuchi_acer\downloads\fileopenersetup.exe

c:\users\kuchi_acer\downloads\spyhunter-installer.exe

c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak

c:\programdata\application data\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.exe

c:\programdata\e435d908-8e15-4e0c-ae35-3dc1cb10ee1e\maintainer.bak

c:\program files (x86)\common files\oberon media

c:\program files (x86)\foxtabvideoconverter

●後はHJTとCCですがスキャンして、その後のログを送るのでしょうか?

  • くっちー
  • MAIL
  • 2014/11/06 (Thu) 23:06:30
しばらく通常利用を行い、その後ログのご提示を
見つからないのが正常な状態ですので問題ありません。
まずは数日程度の様子見を行い、これまで処置したマルウェアの再発の可能性を見極めてみましょう。
再発する場合は1週間程度で復旧、再発するのが通例ですので、HJTのログとCCのログについては、
1週間後に再度提出と言う形をとりましょう。
それでは1週間後にログの提出をお待ちしております。
  • IVNO
  • MAIL
  • 2014/11/07 (Fri) 01:10:07
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
おはようございます。
行きつ戻りつ、でなんとかなったということでしょうか?
こちらのおかげで、今は広告も出ませんし安定した状態です
ほんとにありがとうございました!!

気になることが2点あります
ChrormeのHPに「Hao123」が残っているのでアンイストールしようとしたら
プログラムには見当たりません
それと「Mipony」というのもこのまま残しておいていいのでしょうか?
  • くっちー
  • MAIL
  • 2014/11/07 (Fri) 06:44:21
Google Chromeの処置は手動で行いましょうか
Google Chromeは仕様により、外部ソフトウェアでは大半が処置できなくなっております。
よってGoogle Chromeの設定を直接書き換える必要があります。
では以下の手順に沿ってGoogle Chromeの設定を変更なされてください。

Google Chromeを起動させ、画面右側の三のようなマークを押し、設定をクリックします。
起動時の項目にある特定の 1 つのページまたは複数のページを開くの横の青い
ページを設定と言う文字をクリックしてください。
起動ページと言う画面が出ますので、そこに書かれているものを全て×を押して消してください。
新しいページを追加の部分に以下を貼り付けてください。

https://www.google.co.jp/

貼り付けたらエンターキーを押します。
OKを押して画面を閉じてください。
検索の項目にあるアドレスバー から検索するときに使用する検索エンジンを設定します。の部分の下を、
Googleに変更し、その後検索エンジンの管理をクリックしてください。
既定の検索設定の項目にはGoogleが既定となっているはずですので、
既定となっている項目以外を×を押して削除されてください。
完了を押して設定を終了し、前の画面に戻ります。
左のタブから拡張機能をクリックしてください。
これまでに駆除を行ったマルウェアがあれば、ごみ箱マークをクリックして削除してください。
もしどれを削除して良いかわからなければ、記載されている名称を書きうつし、ご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2014/11/07 (Fri) 09:31:59
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
ご親切に感謝です。
拡張機能を開いたら「Krab Wev」が残っていました
即、削除してゴミ箱も空にしました

「Hao123」ですがプログラムやダウンロードのどこにも見当たりませんが、
Chromeを立ち上げ「新しいタブ」を開くと良く開く所として
Googleの検索バーの下にYahooやじゃらんとかと一緒に並んで表示されます。

時々娘がPc使うのでクリックしないように言っておきます
  • くっちー
  • MAIL
  • 2014/11/07 (Fri) 16:18:18
油断は禁物です
Google Chromeはこのように外部ツールで駆除できないという点から、悪代官の伏魔殿では削除を推奨しております。
今回も何らかの設定がGoogle Chromeや別の場所に残っており、そこ経由で再発しないとも言い切れません。
よく勘違いされるのですが、それを見極めるために様子見を行っていただくのであって、決して処置が完了したわけではありません。
  • IVNO
  • MAIL
  • 2014/11/07 (Fri) 19:13:39
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
一週間立ちましたのでご報告です。
おかげで広告やバックで何かが動いてるという現象はなくなりました♪
ほんとにありがとうございました!

「Google Chromeはこのように外部ツールで駆除できないという点から、悪代官の伏魔殿では削除を推奨しております。」
と書かれてありますし、新しいタブを開いたらHao123ga残っていますので
この際変更したいと思っていますがお勧めはどこでしょうか?
  • くっちー
  • MAIL
  • 2014/11/14 (Fri) 12:22:14
それでは念のためにHJTのログとCCのログのご提示を
ブラウザに関しましては、駆除のしやすさと安定性の面におきまして、Firefoxを推奨いたしております。
https://www.mozilla.org/ja/firefox/new/
よろしければご検討ください。

状況は沈静化しているとのことですが、念のためにHJTのログ、CCのインストール情報ログ、
同じくCCのスタートアップの各ログを回収し、そちらを貼り付けてご連絡ください。
  • IVNO
  • MAIL
  • 2014/11/14 (Fri) 17:01:48
Hjtログ
Hjtのログ

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 13:26:41, on 2014/11/15
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17420)

FIREFOX: 33.1.1 (x86 ja)
Boot mode: Normal

Running processes:
C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPCMNT.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
C:\Windows\PLFSetI.exe
C:\Program Files (x86)\Logicool\Vid HD\Vid.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe
C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
C:\Program Files\Logicool\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Logicool\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\kuchi_acer\Downloads\HijackThis(1).exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: PhishWall - {8CA7E745-EF75-4E7B-BB86-8065C0CE29CA} - C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O3 - Toolbar: PhishWall - {BB62FFF4-41CB-4AFC-BB8C-2A4D4B42BBDC} - C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
O4 - HKLM\..\Run: [EgisTecLiveUpdate] "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
O4 - HKLM\..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
O4 - HKLM\..\Run: [ArcadeDeluxeAgent] "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [IME JPN 2007 Migration] C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [Google Japanese Input Prelauncher] "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Logicool Vid] "C:\Program Files (x86)\Logicool\Vid HD\Vid.exe" -bootmode
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Dropbox.lnk = C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: PhishWall Client.appref-ms
O4 - Startup: 秀丸.lnk = C:\Program Files\Hidemaru\Hidemaru.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: BUFFALO RAMDISK トレイ ユーティリティ.lnk = C:\Program Files\BUFFALO\BFRD4G\BRDUtilTray.exe
O4 - Global Startup: BUFFALO RAMDISK ユーティリティ.lnk = C:\Program Files\BUFFALO\BFRD4G\BRDUtil.exe
O4 - Global Startup: FT-STC/U-B 設定ユーティリティ.lnk = ?
O4 - Global Startup: クライアントマネージャV.lnk = C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
O4 - Global Startup: ロジクール SetPoint.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~2\MIF5BA~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
O9 - Extra button: Bluetooth ヘ送る - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: Bluetooth デバイスに送信(&B) - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{079E895E-A34A-44CA-AB30-B5385D4D0B79}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{079E895E-A34A-44CA-AB30-B5385D4D0B79}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{079E895E-A34A-44CA-AB30-B5385D4D0B79}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) - LSI Corporation - C:\Program Files\LSI SoftModem\agr64svc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
O23 - Service: BWH32S - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\clientmgrv\bin\BWH32S.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Acer ePower Service (ePowerSvc) - Acer Incorporated - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
O23 - Service: @C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe,-100 (GoogleIMEJaCacheService) - Google Inc. - C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe
O23 - Service: GRegService (Greg_Service) - Acer Incorporated - C:\Program Files (x86)\Acer\Registration\GregHSRW.exe
O23 - Service: Google アップデート サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: インクジェットプリンタ/スキャナ使用状況調査プログラム (IJPLMSVC) - Unknown owner - C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Joulemeter Service - Unknown owner - C:\00_soft\soft\ユーティリティ\Joulemeter\JoulemeterService.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logicool, Inc. - C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyWinLocker Service (MWLService) - Egis Technology Inc. - C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\\MWLService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NTI IScheduleSvc - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) - NewTech InfoSystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) - NewTech Infosystems, Inc. - C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SecureBrain PhishWall Update - SecureBrain Corporation - C:\Program Files (x86)\SecureBrain\PhishWall\sbpwupdx.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: UMVPFSrv - Logicool Co., Ltd. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: Updater Service - Acer - C:\Program Files\Acer\Acer Updater\UpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13924 bytes


  • くっちー
  • 2014/11/15 (Sat) 13:33:21
ccのログ
CC Windows→
有効 HKCU:Run AdobeBridge
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run Logicool Vid Logicool Co Ltd. "C:\Program Files (x86)\Logicool\Vid HD\Vid.exe" -bootmode
無効 HKCU:Run RegistryBooster "C:\Program Files (x86)\Uniblue\RegistryBooster\launcher.exe" delay 20000
有効 HKLM:Run Acer ePower Management Acer Incorporated C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
有効 HKLM:Run AdobeCS5ServiceManager Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
有効 HKLM:Run AmIcoSinglun64 AlcorMicro Co., Ltd. C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
有効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run ArcadeDeluxeAgent CyberLink Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
有効 HKLM:Run BackupManagerTray NewTech Infosystems, Inc. "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
有効 HKLM:Run CanonMyPrinter CANON INC. C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
有効 HKLM:Run CanonSolutionMenu CANON INC. C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon
有効 HKLM:Run EgisTecLiveUpdate Egis Technology Inc. "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
有効 HKLM:Run Google Japanese Input Prelauncher Google Inc. "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
有効 HKLM:Run HotKeysCmds Intel Corporation C:\Windows\system32\hkcmd.exe
有効 HKLM:Run IAAnotif Intel Corporation C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\Windows\system32\igfxtray.exe
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run Kernel and Hardware Abstraction Layer Logitech, Inc. KHALMNPR.EXE
有効 HKLM:Run LManager Dritek System Inc. C:\Program Files (x86)\Launch Manager\LManager.exe
有効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
有効 HKLM:Run LWS Logitech Inc. C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe -hide
有効 HKLM:Run MSC Microsoft Corporation "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
有効 HKLM:Run mwlDaemon Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
有効 HKLM:Run Persistence Intel Corporation C:\Windows\system32\igfxpers.exe
有効 HKLM:Run PlayMovie Acer Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
有効 HKLM:Run PLFSetI C:\Windows\PLFSetI.exe
有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SwitchBoard Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup Common Bluetooth.lnk Broadcom Corporation. C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
有効 Startup Common BUFFALO RAMDISK トレイ ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtilTray.exe
有効 Startup Common BUFFALO RAMDISK ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtil.exe
有効 Startup Common FT-STC/U-B 設定ユーティリティ.lnk NTTEAST・NTTWEST C:\Program Files (x86)\NTT\設定ユーティリティ\bin\cmvMain.exe
有効 Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
有効 Startup Common ロジクール SetPoint.lnk Logicool, Inc. C:\Program Files\Logicool\SetPoint\SetPoint.exe
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe
有効 Startup User 秀丸.lnk 有限会社サイトー企画 C:\Program Files\Hidemaru\Hidemaru.exe

CC Explorer→
有効 Extension Bluetooth ヘ送る C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
有効 Extension Research Microsoft Corporation C:\PROGRA~2\MIF5BA~1\Office12\REFIEBAR.DLL
有効 Extension Skype Click to Call Skype Technologies S.A. C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper PhishWall SecureBrain Corporation C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll
有効 Helper Skype Browser Helper Skype Technologies S.A. C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Toolbar PhishWall SecureBrain Corporation C:\Program Files (x86)\SecureBrain\PhishWall\sbpw32.dll

CC FireHox
有効 Plugin Adobe Acrobat 11.0.9.29 Adobe Systems Inc. default Firefox 33.1.1 C:\Program Files (x86)\Adobe\Reader 11.0\Reader\browser\nppdf32.dll
有効 Plugin Google Earth Plugin 7.1.2.2041 Google default Firefox 33.1.1 C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
有効 Plugin Google Update 1.3.25.11 Google Inc. default Firefox 33.1.1 C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
有効 Plugin iTunes Application Detector 1.0.1.1 Apple Inc. default Firefox 33.1.1 C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
有効 Plugin Picasa 3.0.0.0 Google, Inc. default Firefox 33.1.1 C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
有効 Plugin QuickTime Plug-in 7.7.5 7.7.5.0 Apple Inc. default Firefox 33.1.1 C:\Program Files (x86)\QuickTime\Plugins\npqtplugin5.dll
有効 Plugin Silverlight Plug-In 5.1.30514.0 Microsoft Corporation default Firefox 33.1.1 c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
有効 Plugin Windows LiveEPhoto Gallery 15.4.3502.922 Microsoft Corporation default Firefox 33.1.1 C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

CC スケジュールされたタスク→
有効 Task AdobeAAMUpdater-1.0-kuchi_acer-PC-kuchi_acer Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000UA C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Launch HTC Sync Loader C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe -startup
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /addGadget
有効 Task SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8 C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8
有効 Task SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528 C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:2acd3d8d-a56c-454c-b9f1-bde470aad528
有効 Task SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:685a37f6-a4fa-4b11-a414-694e2d38821c
有効 Task SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:ca25c682-6588-48fe-8106-e941d8d97f6f
有効 Task {00245714-05BF-4041-9D89-FF886D5C68EF} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\00_soft\soft_bk\buff\cmv-141.exe -d C:\00_soft\soft_bk\buff
有効 Task {89421C16-2422-436E-94DA-5FF7D3A090BA} Skype Technologies S.A. C:\Program Files (x86)\Skype\Phone\Skype.exe
有効 Task {A1E82E07-44FD-4E03-A427-2FF4B4D8C64B} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe" -d "C:\Program Files (x86)\Mozilla Thunderbird" -c /UpdateShortcutAppUserModelIds

CC コンテキスト→
有効 Directory Browse in Adobe Bridge CS5 Adobe Systems, Inc. C:\Program Files (x86)\Adobe\Adobe Bridge CS5\Bridge.exe "%L"
有効 Directory DropboxExt Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
有効 Directory EDSshellExt Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\mwlshellext.dll
有効 Directory WinRAR C:\Program Files\WinRAR\rarext.dll
有効 Directory WinRAR32 C:\Program Files\WinRAR\rarext32.dll
有効 Drive Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx.dll
有効 File ContMenu HOEHOE.COM C:\Windows\SysWow64\ContView.cpl
有効 File DropboxExt Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
有効 File EDSshellExt Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x64\mwlshellext.dll
有効 File Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx.dll
有効 File WinRAR C:\Program Files\WinRAR\rarext.dll
有効 File WinRAR32 C:\Program Files\WinRAR\rarext32.dll
有効 Folder Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx.dll
有効 Folder WinRAR C:\Program Files\WinRAR\rarext.dll
有効 Folder WinRAR32 C:\Program Files\WinRAR\rarext32.dll


  • くっちー
  • 2014/11/15 (Sat) 13:45:56
CCのインストール情報ログもお願いいたします
ログを拝見したところ、CCのインストール情報ログが抜けているようです。
CCのインストール情報ログを再取得の上、貼り付けてご連絡をお願いいたします。
処置すべき項目がありますが、それは次回のレスでご案内いたします。
  • IVNO
  • MAIL
  • 2014/11/15 (Sat) 16:55:56
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
すみません、よろしくお願いします。

Acer Arcade Deluxe CyberLink Corp. 2010/02/27 99.9 MB 3.0.7112
Acer Backup Manager NewTech Infosystems 2010/01/05 26.5 MB 2.0.0.29
Acer Crystal Eye webcam Ver:1.1.124.1120 Chicony Electronics Co.,Ltd. 2010/02/27 1.1.124.1120
Acer ePower Management Acer Incorporated 2010/02/27 4.05.3004
Acer eRecovery Management Acer Incorporated 2010/01/05 4.05.3005
Acer GridVista Acer Inc. 2010/02/27 3.01.0730
Acer Registration Acer Incorporated 2010/02/27 1.02.3006
Acer ScreenSaver Acer Incorporated 2010/02/27 1.5.0715
Acer Updater Acer Incorporated 2009/11/04 1.01.3017
Acrobat.com Adobe Systems Incorporated 2009/11/04 1.60 MB 1.6.65
Adobe AIR Adobe Systems Inc. 2011/04/16 2.5.1.17730
Adobe Community Help Adobe Systems Incorporated 2010/12/11 3.0.0.400
Adobe Creative Suite 5 Master Collection Adobe Systems Incorporated 2010/12/11 3.66 GB 5.0
Adobe Flash Player 15 Plugin Adobe Systems Incorporated 2014/11/15 6.00 MB 15.0.0.223
Adobe Reader XI (11.0.09) - Japanese Adobe Systems Incorporated 2014/10/19 203 MB 11.0.09
Alcor Micro USB Card Reader Alcor Micro Corp. 2009/11/04 2.86 MB 1.4.17.35005
Apple Application Support Apple Inc. 2014/07/21 93.4 MB 3.0.5
Apple Software Update Apple Inc. 2011/07/11 2.38 MB 2.1.3.127
BBブロードキャスト 6.0.11.9232 TVBANK 2011/09/19 6.0.11.9232
Bonjour Apple Inc. 2011/12/19 2.00 MB 3.0.0.10
Broadcom Gigabit NetLink Controller Broadcom Corporation 2009/11/04 368 KB 12.33.03
Broadcom Wireless LAN Driver Installation Program for Windows7 Broadcom 2010/10/17 5.60.18.8
BUFFALO RAMDISK ユーティリティ 2011/05/21
BUFFALO エアステーション設定ツール BUFFALO INC. 2011/07/24 2.0.0
BUFFALO クライアントマネージャV 2011/07/24
BUFFALO パソコン環境表示ツール BUFFALO INC. 2011/07/24 1.0.2
CANON iMAGE GATEWAY 無料会員登録 MP630 2011/08/06
Canon MP Navigator EX 2.0 2011/08/06
Canon MP630 series MP Drivers 2011/08/06
Canon Utilities Easy-PhotoPrint EX 2011/08/06
Canon Utilities Solution Menu 2011/08/06
Canon Utilities マイ プリンタ 2011/08/06
CCleaner Piriform 2014/11/02 4.19
Context Viewer Version 1.4.1 2010/10/22
Dropbox Dropbox, Inc. 2014/10/05 2.10.30
DVD Decrypter (Remove Only) 2011/09/10
DVD Shrink 3.2 DVD Shrink 2011/09/10
Edy Viewer bitWallet 2010/12/05 2.1.2.2
FT-STC/U-B 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08
Google Earth Google 2013/12/14 180 MB 7.1.2.2041
Google Toolbar for Internet Explorer Google Inc. 2014/03/29 7.5.5111.1712
Google 日本語入力 Google Inc. 2014/01/09 83.0 MB 1.13.1641.0
herdProtect Anti-Malware Scanner Reason Company Software Inc. 2014/11/06 1.0
Identity Card Acer Incorporated 2010/02/27 1.00.3003
ImgBurn LIGHTNING UK! 2010/03/28 2.5.1.0
Intel(R) Control Center Intel Corporation 2010/02/27 1.2.0.1006
Intel(R) Graphics Media Accelerator Driver Intel Corporation 2011/02/05 8.15.10.2008
Intel(R) Management Engine Components Intel Corporation 2010/02/28 6.0.0.1179
Intel® Matrix Storage Manager Intel Corporation 2010/02/27
IObit Uninstaller IObit 2014/10/10 4.0.4.25
iTunes Apple Inc. 2014/07/21 219 MB 11.3.0.54
Java 7 Update 67 2009/11/04
Java(TM) 6 Update 37 2009/11/04
Joulemeter Microsoft Research 2010/06/15 668 KB 1.0.0
JTrim WoodyBells software. 2013/03/09
Launch Manager Acer Inc. 2010/02/27 3.0.05
Lhaplus 2010/03/14
Logicool Vid HD Logicool Co. Ltd.. 2011/07/25 7.2 (7248)
Logicool ウェブカメラ ソフトウェア Logicool Inc. 2011/07/25 2.0
LPT System Updater Service 2009/11/04
LSI HDA Modem LSI Corporation 2012/09/27 16.0 KB 2.2.98
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 2010/12/18 38.8 MB 4.0.30319
Microsoft .NET Framework 4 Client Profile Language Pack - 日本語 Microsoft Corporation 2010/12/18 2.93 MB 4.0.30319
Microsoft .NET Framework 4 Extended Microsoft Corporation 2014/10/31 51.9 MB 4.0.30319
Microsoft .NET Framework 4 Extended Language Pack - 日本語 Microsoft Corporation 2014/10/31 10.6 MB 4.0.30319
Microsoft Office Excel 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office Word 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 2014/09/11 4.6.305.0
Microsoft Silverlight Microsoft Corporation 2014/07/25 298 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2010/02/27 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Corporation 2010/11/11 260 KB 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Corporation 2010/03/14 250 KB 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/06/17 300 KB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2010/11/10 708 KB 8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 Microsoft Corporation 2011/04/15 580 KB 8.0.51011
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 2010/03/26 200 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Corporation 2011/04/15 598 KB 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/07/31 782 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2013/08/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2010/03/26 608 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2010/12/26 588 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/06/17 600 KB 9.0.30729.6161
Mozilla Firefox 33.1.1 (x86 ja) Mozilla 2014/11/15 79.1 MB 33.1.1
Mozilla Maintenance Service Mozilla 2014/11/15 325 KB 33.1.1
Mozilla Thunderbird 24.6.0 (x86 ja) Mozilla 2014/06/15 48.1 MB 24.6.0
Mp3tag v2.46a Florian Heidenreich 2010/06/22 v2.46a
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2010/03/14 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2010/03/14 1.33 MB 4.20.9876.0
MSXML 4.0 SP3 Parser Microsoft Corporation 2011/04/16 1.47 MB 4.30.2100.0
MSXML 4.0 SP3 Parser (KB2721691) Microsoft Corporation 2012/07/13 1.53 MB 4.30.2114.0
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/01/11 1.54 MB 4.30.2117.0
MSXML 4.0 SP3 Parser (KB973685) Microsoft Corporation 2011/04/17 1.53 MB 4.30.2107.0
MyWinLocker Egis Technology Inc. 2010/01/05 47.9 MB 3.1.76.0
NTI Backup Now 5 NewTech Infosystems 2009/11/04 465 MB 5.1.2.627
NTI Media Maker 8 NewTech Infosystems 2009/11/04 766 MB 8.0.12.6623
On2 VP3 Video for Windows Codec 2012/12/29
PhishWall SecureBrain Corporation 2014/02/27 3.5.7
PhishWall Client SecureBrain Corporation 2014/10/31 5.0.2.0
Picasa 3 Google, Inc. 2013/07/16 3.9
QuickTime 7 Apple Inc. 2014/07/21 70.2 MB 7.75.80.95
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2010/02/27 6.0.1.5969
Roll O' Pict 3.5.0 Hollyhock Inc. 2010/05/27 2.50 MB 3.05.0000
SD Formatter JP SDA 2010/07/18 1.13 MB 2.9.5
ShowPass Smartbar 2014/10/28
Skype Click to Call Skype Technologies S.A. 2012/04/19 10.1 MB 5.9.9216
Skype(TM) 6.22 Skype Technologies S.A. 2014/11/05 47.4 MB 6.22.104
Synaptics Pointing Device Driver Synaptics Incorporated 2010/02/27 14.0.6.0
UltraVNC 1.0.2 日本語版 Release 1a kp774.com 2012/09/27 1.1.0.2
UNLHA32.DLL 2010/05/19
UNRAR32 Common Archivers Library DLL 2010/05/19
USBメモリのセキュリティ Ver.3.0.1 2010/08/03
Video Download Capture V4.4.9 Apowersoft 2013/07/07 81.8 MB 4.4.9
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2010/06/22 8.25 MB 1.0.0.4
Welcome Center Acer Incorporated 2010/02/27 1.00.3008
WIDCOMM Bluetooth Software Broadcom Corporation 2010/02/27 144 MB 6.2.1.800
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) Broadcom 2010/02/27 07/30/2009 6.2.0.9405
Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407) Broadcom 2010/02/27 09/11/2009 6.2.0.9407
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) Broadcom 2010/02/27 07/28/2009 6.2.0.9800
Windows Live Essentials Microsoft Corporation 2010/10/31 15.4.3502.0922
WinRAR アーカイバ 2010/04/25
はがき作家 6 Free 株式会社ルートプロ 2012/11/18 25.7 MB 6.22.0000
はがき作家 6 Free 用 イラスト集 2013 年賀状 株式会社ルートプロ 2012/11/18 252 MB 6.22.0000
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2011/05/21
インクジェットプリンタ/スキャナ使用状況調査プログラム 2011/08/06
インテル(R) ターボ・ブースト・テクノロジー・モニター インテル 2010/02/27 1.13 MB 1.0.186.6
ロジクール SetPoint ロジクール 2010/11/10 17.0 KB 4.80
日本語 App Name Adobe Systems Incorporated 2010/12/11 1.8
無線親機 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08 2.08 MB 2.0.5
秀丸エディタ64 有限会社サイトー企画 2010/04/19 8.0.0.99
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2011/08/06 25.5 MB 1.09.0000
  • くっちー
  • 2014/11/16 (Sun) 09:07:14
遅くなりました
返答が遅くなり申し訳ありません。

いくつか処置しなければならない脆弱性等があるため、そちらの処置を行いましょう。
通常モードで良いですので、IUを起動させてください。
以下のソフトウェアの削除を行ってください。

Java 7 Update 67 2009/11/04
Java(TM) 6 Update 37 2009/11/04

IUで表示されなかった場合は、コントロールパネルのプログラムと機能から削除なされてください。
そちらにも表示されていなかった場合は、削除の工程は飛ばしましょう。
上記の削除が完了した、あるいは削除できなかった場合、以下のURLより最新版のJavaをダウンロードし、
そちらのインストールを行ってください。

https://java.com/ja/download/

ただし、Javaは途中でAskと言うツールバーの導入を勧めてきます。
このAskツールバーはマルウェアですので、必ず導入のチェックを外して導入してください。
Javaの導入が完了しましたら、CCを起動させてください。
ツール→スタートアップを開き、各タブから該当するものを削除してください。

Windows
無効 HKCU:Run RegistryBooster "C:\Program Files (x86)\Uniblue\RegistryBooster\launcher.exe" delay 20000

スケジュールされたタスク
有効 Task SUPERAntiSpyware Scheduled Task 29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8 C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:29fb0e85-e3b2-4355-9b9a-a9efddb5d5a8
有効 Task SUPERAntiSpyware Scheduled Task 2acd3d8d-a56c-454c-b9f1-bde470aad528 C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:2acd3d8d-a56c-454c-b9f1-bde470aad528
有効 Task SUPERAntiSpyware Scheduled Task 685a37f6-a4fa-4b11-a414-694e2d38821c C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:685a37f6-a4fa-4b11-a414-694e2d38821c
有効 Task SUPERAntiSpyware Scheduled Task ca25c682-6588-48fe-8106-e941d8d97f6f C:\Program Files\SUPERAntiSpyware\SASTask.exe "C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" /TASK:ca25c682-6588-48fe-8106-e941d8d97f6f

無効にできないもの、既に無効になっているものはそのままエントリの削除を、
エントリが存在しない場合は放置で先に進みましょう。
エントリの削除が完了しましたら、インストール情報ログ、スタートアップのWindowsのタブ、
スケジュールされたタスクタブを再取得し、そちらを再度貼り付けてご連絡ください。
  • IVNO
  • MAIL
  • 2014/11/16 (Sun) 22:37:39
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
おはようございます!
連絡が遅いなんてとんでもないです・・・
いつもわかりやすく、素人の私でもなんとかご指示についていけました。
無料でこんな大変な作業をしていただいて、涙が出そうに感謝しています。

JavaはIUにもプログラムにも存在しませんでした

ご指示のタブです。よろしくお願いいたします。

インストール情報ログ→
Acer Arcade Deluxe CyberLink Corp. 2010/02/27 99.9 MB 3.0.7112
Acer Backup Manager NewTech Infosystems 2010/01/05 26.5 MB 2.0.0.29
Acer Crystal Eye webcam Ver:1.1.124.1120 Chicony Electronics Co.,Ltd. 2010/02/27 1.1.124.1120
Acer ePower Management Acer Incorporated 2010/02/27 4.05.3004
Acer eRecovery Management Acer Incorporated 2010/01/05 4.05.3005
Acer GridVista Acer Inc. 2010/02/27 3.01.0730
Acer Registration Acer Incorporated 2010/02/27 1.02.3006
Acer ScreenSaver Acer Incorporated 2010/02/27 1.5.0715
Acer Updater Acer Incorporated 2009/11/04 1.01.3017
Acrobat.com Adobe Systems Incorporated 2009/11/04 1.60 MB 1.6.65
Adobe AIR Adobe Systems Inc. 2011/04/16 2.5.1.17730
Adobe Community Help Adobe Systems Incorporated 2010/12/11 3.0.0.400
Adobe Creative Suite 5 Master Collection Adobe Systems Incorporated 2010/12/11 3.66 GB 5.0
Adobe Flash Player 15 Plugin Adobe Systems Incorporated 2014/11/15 6.00 MB 15.0.0.223
Adobe Reader XI (11.0.09) - Japanese Adobe Systems Incorporated 2014/10/19 203 MB 11.0.09
Alcor Micro USB Card Reader Alcor Micro Corp. 2009/11/04 2.86 MB 1.4.17.35005
Apple Application Support Apple Inc. 2014/11/17 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/17 23.6 MB 8.0.5.6
Apple Software Update Apple Inc. 2011/07/11 2.38 MB 2.1.3.127
BBブロードキャスト 6.0.11.9232 TVBANK 2011/09/19 6.0.11.9232
Bonjour Apple Inc. 2011/12/19 2.00 MB 3.0.0.10
Broadcom Gigabit NetLink Controller Broadcom Corporation 2009/11/04 368 KB 12.33.03
Broadcom Wireless LAN Driver Installation Program for Windows7 Broadcom 2010/10/17 5.60.18.8
BUFFALO RAMDISK ユーティリティ 2011/05/21
BUFFALO エアステーション設定ツール BUFFALO INC. 2011/07/24 2.0.0
BUFFALO クライアントマネージャV 2011/07/24
BUFFALO パソコン環境表示ツール BUFFALO INC. 2011/07/24 1.0.2
CANON iMAGE GATEWAY 無料会員登録 MP630 2011/08/06
Canon MP Navigator EX 2.0 2011/08/06
Canon MP630 series MP Drivers 2011/08/06
Canon Utilities Easy-PhotoPrint EX 2011/08/06
Canon Utilities Solution Menu 2011/08/06
Canon Utilities マイ プリンタ 2011/08/06
CCleaner Piriform 2014/11/02 4.19
Context Viewer Version 1.4.1 2010/10/22
Dropbox Dropbox, Inc. 2014/11/17 2.10.52
DVD Decrypter (Remove Only) 2011/09/10
DVD Shrink 3.2 DVD Shrink 2011/09/10
Edy Viewer bitWallet 2010/12/05 2.1.2.2
FT-STC/U-B 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08
Google Earth Google 2013/12/14 180 MB 7.1.2.2041
Google Toolbar for Internet Explorer Google Inc. 2014/03/29 7.5.5111.1712
Google 日本語入力 Google Inc. 2014/01/09 83.0 MB 1.13.1641.0
herdProtect Anti-Malware Scanner Reason Company Software Inc. 2014/11/06 1.0
Identity Card Acer Incorporated 2010/02/27 1.00.3003
ImgBurn LIGHTNING UK! 2010/03/28 2.5.1.0
Intel(R) Control Center Intel Corporation 2010/02/27 1.2.0.1006
Intel(R) Graphics Media Accelerator Driver Intel Corporation 2011/02/05 8.15.10.2008
Intel(R) Management Engine Components Intel Corporation 2010/02/28 6.0.0.1179
Intel® Matrix Storage Manager Intel Corporation 2010/02/27
IObit Uninstaller IObit 2014/10/10 4.0.4.25
iTunes Apple Inc. 2014/11/17 245 MB 12.0.1.26
Java 7 Update 67 2009/11/04
Java 8 Update 25 Oracle Corporation 2014/11/17 73.3 MB 8.0.250
Java(TM) 6 Update 37 2009/11/04
Joulemeter Microsoft Research 2010/06/15 668 KB 1.0.0
JTrim WoodyBells software. 2013/03/09
Launch Manager Acer Inc. 2010/02/27 3.0.05
Lhaplus 2010/03/14
Logicool Vid HD Logicool Co. Ltd.. 2011/07/25 7.2 (7248)
Logicool ウェブカメラ ソフトウェア Logicool Inc. 2011/07/25 2.0
LPT System Updater Service 2009/11/04
LSI HDA Modem LSI Corporation 2012/09/27 16.0 KB 2.2.98
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 2010/12/18 38.8 MB 4.0.30319
Microsoft .NET Framework 4 Client Profile Language Pack - 日本語 Microsoft Corporation 2010/12/18 2.93 MB 4.0.30319
Microsoft .NET Framework 4 Extended Microsoft Corporation 2014/10/31 51.9 MB 4.0.30319
Microsoft .NET Framework 4 Extended Language Pack - 日本語 Microsoft Corporation 2014/10/31 10.6 MB 4.0.30319
Microsoft Office Excel 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office Word 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 2014/09/11 4.6.305.0
Microsoft Silverlight Microsoft Corporation 2014/07/25 298 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2010/02/27 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Corporation 2010/11/11 260 KB 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Corporation 2010/03/14 250 KB 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/06/17 300 KB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2010/11/10 708 KB 8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 Microsoft Corporation 2011/04/15 580 KB 8.0.51011
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 2010/03/26 200 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Corporation 2011/04/15 598 KB 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/07/31 782 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2013/08/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2010/03/26 608 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2010/12/26 588 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/06/17 600 KB 9.0.30729.6161
Mozilla Firefox 33.1.1 (x86 ja) Mozilla 2014/11/15 79.1 MB 33.1.1
Mozilla Maintenance Service Mozilla 2014/11/15 325 KB 33.1.1
Mozilla Thunderbird 24.6.0 (x86 ja) Mozilla 2014/06/15 48.1 MB 24.6.0
Mp3tag v2.46a Florian Heidenreich 2010/06/22 v2.46a
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2010/03/14 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2010/03/14 1.33 MB 4.20.9876.0
MSXML 4.0 SP3 Parser Microsoft Corporation 2011/04/16 1.47 MB 4.30.2100.0
MSXML 4.0 SP3 Parser (KB2721691) Microsoft Corporation 2012/07/13 1.53 MB 4.30.2114.0
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/01/11 1.54 MB 4.30.2117.0
MSXML 4.0 SP3 Parser (KB973685) Microsoft Corporation 2011/04/17 1.53 MB 4.30.2107.0
MyWinLocker Egis Technology Inc. 2010/01/05 47.9 MB 3.1.76.0
NTI Backup Now 5 NewTech Infosystems 2009/11/04 465 MB 5.1.2.627
NTI Media Maker 8 NewTech Infosystems 2009/11/04 766 MB 8.0.12.6623
On2 VP3 Video for Windows Codec 2012/12/29
PhishWall SecureBrain Corporation 2014/02/27 3.5.7
PhishWall Client SecureBrain Corporation 2014/10/31 5.0.2.0
Picasa 3 Google, Inc. 2013/07/16 3.9
QuickTime 7 Apple Inc. 2014/11/17 70.2 MB 7.76.80.95
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2010/02/27 6.0.1.5969
Roll O' Pict 3.5.0 Hollyhock Inc. 2010/05/27 2.50 MB 3.05.0000
SD Formatter JP SDA 2010/07/18 1.13 MB 2.9.5
ShowPass Smartbar 2014/10/28
Skype Click to Call Skype Technologies S.A. 2012/04/19 10.1 MB 5.9.9216
Skype(TM) 6.22 Skype Technologies S.A. 2014/11/05 47.4 MB 6.22.104
Synaptics Pointing Device Driver Synaptics Incorporated 2010/02/27 14.0.6.0
UltraVNC 1.0.2 日本語版 Release 1a kp774.com 2012/09/27 1.1.0.2
UNLHA32.DLL 2010/05/19
UNRAR32 Common Archivers Library DLL 2010/05/19
USBメモリのセキュリティ Ver.3.0.1 2010/08/03
Video Download Capture V4.4.9 Apowersoft 2013/07/07 81.8 MB 4.4.9
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2010/06/22 8.25 MB 1.0.0.4
Welcome Center Acer Incorporated 2010/02/27 1.00.3008
WIDCOMM Bluetooth Software Broadcom Corporation 2010/02/27 144 MB 6.2.1.800
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) Broadcom 2010/02/27 07/30/2009 6.2.0.9405
Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407) Broadcom 2010/02/27 09/11/2009 6.2.0.9407
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) Broadcom 2010/02/27 07/28/2009 6.2.0.9800
Windows Live Essentials Microsoft Corporation 2010/10/31 15.4.3502.0922
WinRAR アーカイバ 2010/04/25
はがき作家 6 Free 株式会社ルートプロ 2012/11/18 25.7 MB 6.22.0000
はがき作家 6 Free 用 イラスト集 2013 年賀状 株式会社ルートプロ 2012/11/18 252 MB 6.22.0000
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2011/05/21
インクジェットプリンタ/スキャナ使用状況調査プログラム 2011/08/06
インテル(R) ターボ・ブースト・テクノロジー・モニター インテル 2010/02/27 1.13 MB 1.0.186.6
ロジクール SetPoint ロジクール 2010/11/10 17.0 KB 4.80
日本語 App Name Adobe Systems Incorporated 2010/12/11 1.8
無線親機 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08 2.08 MB 2.0.5
秀丸エディタ64 有限会社サイトー企画 2010/04/19 8.0.0.99
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2011/08/06 25.5 MB 1.09.0000

Windows タブ→
有効 HKCU:Run AdobeBridge
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run Logicool Vid Logicool Co Ltd. "C:\Program Files (x86)\Logicool\Vid HD\Vid.exe" -bootmode
有効 HKLM:Run Acer ePower Management Acer Incorporated C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run AdobeAAMUpdater-1.0 Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
有効 HKLM:Run AdobeCS5ServiceManager Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
有効 HKLM:Run AmIcoSinglun64 AlcorMicro Co., Ltd. C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
有効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run ArcadeDeluxeAgent CyberLink Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe"
有効 HKLM:Run BackupManagerTray NewTech Infosystems, Inc. "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
有効 HKLM:Run CanonMyPrinter CANON INC. C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
有効 HKLM:Run CanonSolutionMenu CANON INC. C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon
有効 HKLM:Run EgisTecLiveUpdate Egis Technology Inc. "C:\Program Files (x86)\EgisTec Egis Software Update\EgisUpdate.exe"
有効 HKLM:Run Google Japanese Input Prelauncher Google Inc. "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
有効 HKLM:Run HotKeysCmds Intel Corporation C:\Windows\system32\hkcmd.exe
有効 HKLM:Run IAAnotif Intel Corporation C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\Windows\system32\igfxtray.exe
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run Kernel and Hardware Abstraction Layer Logitech, Inc. KHALMNPR.EXE
有効 HKLM:Run LManager Dritek System Inc. C:\Program Files (x86)\Launch Manager\LManager.exe
有効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
有効 HKLM:Run LWS Logitech Inc. C:\Program Files (x86)\Logicool\LWS\Webcam Software\LWS.exe -hide
有効 HKLM:Run MSC Microsoft Corporation "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
有効 HKLM:Run mwlDaemon Egis Technology Inc. C:\Program Files (x86)\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
有効 HKLM:Run Persistence Intel Corporation C:\Windows\system32\igfxpers.exe
有効 HKLM:Run PlayMovie Acer Corp. "C:\Program Files (x86)\Acer Arcade Deluxe\PlayMovie\PMVService.exe"
有効 HKLM:Run PLFSetI C:\Windows\PLFSetI.exe
有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
有効 HKLM:Run SwitchBoard Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup Common Bluetooth.lnk Broadcom Corporation. C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
有効 Startup Common BUFFALO RAMDISK トレイ ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtilTray.exe
有効 Startup Common BUFFALO RAMDISK ユーティリティ.lnk BUFFALO INC. C:\Program Files\BUFFALO\BFRD4G\BRDUtil.exe
有効 Startup Common FT-STC/U-B 設定ユーティリティ.lnk NTTEAST・NTTWEST C:\Program Files (x86)\NTT\設定ユーティリティ\bin\cmvMain.exe
有効 Startup Common クライアントマネージャV.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\clientmgrv\bin\cmvMain.exe
有効 Startup Common ロジクール SetPoint.lnk Logicool, Inc. C:\Program Files\Logicool\SetPoint\SetPoint.exe
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\kuchi_acer\AppData\Roaming\Dropbox\bin\Dropbox.exe
有効 Startup User 秀丸.lnk 有限会社サイトー企画 C:\Program Files\Hidemaru\Hidemaru.exe

スケジュールされたタスクタブ→
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task AdobeAAMUpdater-1.0-kuchi_acer-PC-kuchi_acer Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe -mode=scheduled
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task GoogleUpdateTaskUserS-1-5-21-3968424009-437815010-2158375204-1000UA C:\Users\kuchi_acer\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Launch HTC Sync Loader C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe -startup
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /addGadget
有効 Task Uninstaller_SkipUac_kuchi_acer IObit C:\\Users\\kuchi_acer\\Desktop\\IObitUninstallerPortable\\App\\uninstaller\\IObitUninstaler.exe /UninstallExplorer
有効 Task {00245714-05BF-4041-9D89-FF886D5C68EF} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\00_soft\soft_bk\buff\cmv-141.exe -d C:\00_soft\soft_bk\buff
有効 Task {89421C16-2422-436E-94DA-5FF7D3A090BA} Skype Technologies S.A. C:\Program Files (x86)\Skype\Phone\Skype.exe
有効 Task {A1E82E07-44FD-4E03-A427-2FF4B4D8C64B} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe" -d "C:\Program Files (x86)\Mozilla Thunderbird" -c /UpdateShortcutAppUserModelIds

  • くっちー
  • 2014/11/17 (Mon) 09:01:44
2つほどセーフモードで削除を
では見落としておりました残りものを処置しましょう。
PCをセーフモードで起動させてください。
IUを起動させ、以下のソフトウェアを削除してください。

herdProtect Anti-Malware Scanner Reason Company Software Inc. 2014/11/06 1.0
ShowPass Smartbar 2014/10/28

パワフルスキャンを行い、表示されたものすべてにチェックを入れて削除します。
削除が完了しましたら、数時間の様子見を行い、CCのインストール情報ログを再取得し、
様子見の結果とCCのインストール情報ログを貼り付けてご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2014/11/17 (Mon) 14:43:57
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
ShowPass はIUでもすべてのプログラムにも存在しませんでしたが
CCの情報ログにはしっかりのこっていました
CCで削除処理していいのかわからないので
CCの情報ログみていただいてから
次の作業お待ちしています
よろしくお願いいたします

CC情報ログ→
Acer Arcade Deluxe CyberLink Corp. 2010/02/27 99.9 MB 3.0.7112
Acer Backup Manager NewTech Infosystems 2010/01/05 26.5 MB 2.0.0.29
Acer Crystal Eye webcam Ver:1.1.124.1120 Chicony Electronics Co.,Ltd. 2010/02/27 1.1.124.1120
Acer ePower Management Acer Incorporated 2010/02/27 4.05.3004
Acer eRecovery Management Acer Incorporated 2010/01/05 4.05.3005
Acer GridVista Acer Inc. 2010/02/27 3.01.0730
Acer Registration Acer Incorporated 2010/02/27 1.02.3006
Acer ScreenSaver Acer Incorporated 2010/02/27 1.5.0715
Acer Updater Acer Incorporated 2009/11/04 1.01.3017
Acrobat.com Adobe Systems Incorporated 2009/11/04 1.60 MB 1.6.65
Adobe AIR Adobe Systems Inc. 2011/04/16 2.5.1.17730
Adobe Community Help Adobe Systems Incorporated 2010/12/11 3.0.0.400
Adobe Creative Suite 5 Master Collection Adobe Systems Incorporated 2010/12/11 3.66 GB 5.0
Adobe Flash Player 15 Plugin Adobe Systems Incorporated 2014/11/15 6.00 MB 15.0.0.223
Adobe Reader XI (11.0.09) - Japanese Adobe Systems Incorporated 2014/10/19 203 MB 11.0.09
Alcor Micro USB Card Reader Alcor Micro Corp. 2009/11/04 2.86 MB 1.4.17.35005
Apple Application Support Apple Inc. 2014/11/17 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/17 23.6 MB 8.0.5.6
Apple Software Update Apple Inc. 2011/07/11 2.38 MB 2.1.3.127
BBブロードキャスト 6.0.11.9232 TVBANK 2011/09/19 6.0.11.9232
Bonjour Apple Inc. 2011/12/19 2.00 MB 3.0.0.10
Broadcom Gigabit NetLink Controller Broadcom Corporation 2009/11/04 368 KB 12.33.03
Broadcom Wireless LAN Driver Installation Program for Windows7 Broadcom 2010/10/17 5.60.18.8
BUFFALO RAMDISK ユーティリティ 2011/05/21
BUFFALO エアステーション設定ツール BUFFALO INC. 2011/07/24 2.0.0
BUFFALO クライアントマネージャV 2011/07/24
BUFFALO パソコン環境表示ツール BUFFALO INC. 2011/07/24 1.0.2
CANON iMAGE GATEWAY 無料会員登録 MP630 2011/08/06
Canon MP Navigator EX 2.0 2011/08/06
Canon MP630 series MP Drivers 2011/08/06
Canon Utilities Easy-PhotoPrint EX 2011/08/06
Canon Utilities Solution Menu 2011/08/06
Canon Utilities マイ プリンタ 2011/08/06
CCleaner Piriform 2014/11/02 4.19
Context Viewer Version 1.4.1 2010/10/22
Dropbox Dropbox, Inc. 2014/11/17 2.10.52
DVD Decrypter (Remove Only) 2011/09/10
DVD Shrink 3.2 DVD Shrink 2011/09/10
Edy Viewer bitWallet 2010/12/05 2.1.2.2
FT-STC/U-B 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08
Google Earth Google 2013/12/14 180 MB 7.1.2.2041
Google Toolbar for Internet Explorer Google Inc. 2014/03/29 7.5.5111.1712
Google 日本語入力 Google Inc. 2014/01/09 83.0 MB 1.13.1641.0
Identity Card Acer Incorporated 2010/02/27 1.00.3003
ImgBurn LIGHTNING UK! 2010/03/28 2.5.1.0
Intel(R) Control Center Intel Corporation 2010/02/27 1.2.0.1006
Intel(R) Graphics Media Accelerator Driver Intel Corporation 2011/02/05 8.15.10.2008
Intel(R) Management Engine Components Intel Corporation 2010/02/28 6.0.0.1179
Intel® Matrix Storage Manager Intel Corporation 2010/02/27
IObit Uninstaller IObit 2014/10/10 4.0.4.25
iTunes Apple Inc. 2014/11/17 245 MB 12.0.1.26
Java 7 Update 67 2009/11/04
Java 8 Update 25 Oracle Corporation 2014/11/17 73.3 MB 8.0.250
Java(TM) 6 Update 37 2009/11/04
Joulemeter Microsoft Research 2010/06/15 668 KB 1.0.0
JTrim WoodyBells software. 2013/03/09
Launch Manager Acer Inc. 2010/02/27 3.0.05
Lhaplus 2010/03/14
Logicool Vid HD Logicool Co. Ltd.. 2011/07/25 7.2 (7248)
Logicool ウェブカメラ ソフトウェア Logicool Inc. 2011/07/25 2.0
LPT System Updater Service 2009/11/04
LSI HDA Modem LSI Corporation 2012/09/27 16.0 KB 2.2.98
Microsoft .NET Framework 4 Client Profile Microsoft Corporation 2010/12/18 38.8 MB 4.0.30319
Microsoft .NET Framework 4 Client Profile Language Pack - 日本語 Microsoft Corporation 2010/12/18 2.93 MB 4.0.30319
Microsoft .NET Framework 4 Extended Microsoft Corporation 2014/10/31 51.9 MB 4.0.30319
Microsoft .NET Framework 4 Extended Language Pack - 日本語 Microsoft Corporation 2014/10/31 10.6 MB 4.0.30319
Microsoft Office Excel 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office Word 2007 Microsoft Corporation 2012/04/05 12.0.6612.1000
Microsoft Security Essentials Microsoft Corporation 2014/09/11 4.6.305.0
Microsoft Silverlight Microsoft Corporation 2014/07/25 298 MB 5.1.30514.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2010/02/27 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 Microsoft Corporation 2010/11/11 260 KB 8.0.50727.4053
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Corporation 2010/03/14 250 KB 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/06/17 300 KB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2010/11/10 708 KB 8.0.61000
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 Microsoft Corporation 2011/04/15 580 KB 8.0.51011
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 Microsoft Corporation 2010/03/26 200 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 Microsoft Corporation 2011/04/15 598 KB 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2013/07/31 782 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2013/08/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 Microsoft Corporation 2010/03/26 608 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2010/12/26 588 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/06/17 600 KB 9.0.30729.6161
Mozilla Firefox 33.1.1 (x86 ja) Mozilla 2014/11/15 79.1 MB 33.1.1
Mozilla Maintenance Service Mozilla 2014/11/15 325 KB 33.1.1
Mozilla Thunderbird 24.6.0 (x86 ja) Mozilla 2014/06/15 48.1 MB 24.6.0
Mp3tag v2.46a Florian Heidenreich 2010/06/22 v2.46a
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2010/03/14 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2010/03/14 1.33 MB 4.20.9876.0
MSXML 4.0 SP3 Parser Microsoft Corporation 2011/04/16 1.47 MB 4.30.2100.0
MSXML 4.0 SP3 Parser (KB2721691) Microsoft Corporation 2012/07/13 1.53 MB 4.30.2114.0
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2013/01/11 1.54 MB 4.30.2117.0
MSXML 4.0 SP3 Parser (KB973685) Microsoft Corporation 2011/04/17 1.53 MB 4.30.2107.0
MyWinLocker Egis Technology Inc. 2010/01/05 47.9 MB 3.1.76.0
NTI Backup Now 5 NewTech Infosystems 2009/11/04 465 MB 5.1.2.627
NTI Media Maker 8 NewTech Infosystems 2009/11/04 766 MB 8.0.12.6623
On2 VP3 Video for Windows Codec 2012/12/29
PhishWall SecureBrain Corporation 2014/02/27 3.5.7
PhishWall Client SecureBrain Corporation 2014/10/31 5.0.2.0
Picasa 3 Google, Inc. 2013/07/16 3.9
QuickTime 7 Apple Inc. 2014/11/17 70.2 MB 7.76.80.95
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2010/02/27 6.0.1.5969
Roll O' Pict 3.5.0 Hollyhock Inc. 2010/05/27 2.50 MB 3.05.0000
SD Formatter JP SDA 2010/07/18 1.13 MB 2.9.5
ShowPass Smartbar 2014/10/28
Skype Click to Call Skype Technologies S.A. 2012/04/19 10.1 MB 5.9.9216
Skype(TM) 6.22 Skype Technologies S.A. 2014/11/05 47.4 MB 6.22.104
Synaptics Pointing Device Driver Synaptics Incorporated 2010/02/27 14.0.6.0
UltraVNC 1.0.2 日本語版 Release 1a kp774.com 2012/09/27 1.1.0.2
UNLHA32.DLL 2010/05/19
UNRAR32 Common Archivers Library DLL 2010/05/19
USBメモリのセキュリティ Ver.3.0.1 2010/08/03
Video Download Capture V4.4.9 Apowersoft 2013/07/07 81.8 MB 4.4.9
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2010/06/22 8.25 MB 1.0.0.4
Welcome Center Acer Incorporated 2010/02/27 1.00.3008
WIDCOMM Bluetooth Software Broadcom Corporation 2010/02/27 144 MB 6.2.1.800
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) Broadcom 2010/02/27 07/30/2009 6.2.0.9405
Windows Driver Package - Broadcom Bluetooth (09/11/2009 6.2.0.9407) Broadcom 2010/02/27 09/11/2009 6.2.0.9407
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) Broadcom 2010/02/27 07/28/2009 6.2.0.9800
Windows Live Essentials Microsoft Corporation 2010/10/31 15.4.3502.0922
WinRAR アーカイバ 2010/04/25
はがき作家 6 Free 株式会社ルートプロ 2012/11/18 25.7 MB 6.22.0000
はがき作家 6 Free 用 イラスト集 2013 年賀状 株式会社ルートプロ 2012/11/18 252 MB 6.22.0000
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2011/05/21
インクジェットプリンタ/スキャナ使用状況調査プログラム 2011/08/06
インテル(R) ターボ・ブースト・テクノロジー・モニター インテル 2010/02/27 1.13 MB 1.0.186.6
ロジクール SetPoint ロジクール 2010/11/10 17.0 KB 4.80
日本語 App Name Adobe Systems Incorporated 2010/12/11 1.8
無線親機 設定ユーティリティ NTTEAST・NTTWEST 2010/09/08 2.08 MB 2.0.5
秀丸エディタ64 有限会社サイトー企画 2010/04/19 8.0.0.99
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2011/08/06 25.5 MB 1.09.0000
  • くっちー
  • 2014/11/18 (Tue) 20:45:26
3つほどエントリの削除を
ファイルは消えているのにエントリだけ残っている状態ですね。
それでは以下の手順でエントリだけ残っているものを削除しましょう。

CCを起動させ、ツール→インストール情報を開きます。
以下の項目をエントリの削除をクリックして削除してください。

Java 7 Update 67 2009/11/04
Java(TM) 6 Update 37 2009/11/04
ShowPass Smartbar 2014/10/28

その他の点で異常があればお知らせください。
  • IVNO
  • MAIL
  • 2014/11/19 (Wed) 01:20:59
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
おはようございます。
ご指示に従い作業しましたが

JavaもShowPassもエントリの削除できませんでした
「MSIインストーラは削除できません」
のメッセージがでます

どうしましょうか?
  • くっちー
  • 2014/11/19 (Wed) 05:54:34
少々特殊な手順が必要なため放置しましょう
よりにもよってMSIインストーラーでしたか。
こちらの削除には少々特殊な手段が必要であるため、掲示板でのご案内が難しいです。
エントリが残っているとしても表面上表示されているだけですし、問題がないといえばないです。
よって、ここではこれらの削除は見送ることとしましょう。
現段階で異常は見受けられますか?
こちらをご連絡ください。
  • IVNO
  • MAIL
  • 2014/11/19 (Wed) 15:11:40
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
おかげで、POpの広告や他のDealsのの広告はここ10日、出ていません

現段階の異常、と言っていいのかわかりませんが・・・
Facebookから下記の確認メールがここ三日間毎日届きます
「あなたのFacebookアカウントで新しいパスワードのリクエストがありました」

自分はリクエストしていないのでそのまま進むと
「このリクエストが複数来た場合はお知らせください」とあり
今日、3個の「新しいパスワードのリクエストがありました」がきていたので
その旨回答しました。

これって何か異常が起きてますか?
  • くっちー
  • 2014/11/19 (Wed) 20:38:33
自衛しつつ解決で
それが本物のFacebookからであれば、第三者によるパスワードリクエストとなります。
その場合は以下のようなWebページへの誘導となりまるはずです。

メールアドレスの不正使用を報告する
他の人が******@******.**を使ってFacebookアカウントを作成した可能性がありますか?
その場合は、Facebookまでご報告ください。

画像に添付しておりますのでご確認ください。
この部分がメールアドレスであったり電話番号であったりしますが、
電話番号は電話機解約後3カ月で空き番号となるため、
以前の同一電話番号利用者さんとバッティングしている可能性もあります。

もしこれとは異なる、あるいはログインしてから設定するようなケースの場合、
第三者からのアカウント盗難による不正利用目的の可能性があります。
現在オンラインゲーム業界では、Yahoo!JAPAN IDやFacebook IDなどを盗難し、
盗難したアカウントを利用してゲームにて不正行為を行い、現金を獲得するという手段が見られます。
これらのために、アカウント同期が利用できるYahoo!JAPANやTwitterやFacebookのアカウントは、
盗難被害が多発しているという話を時折耳にします。
どちらの可能性が濃厚であるかにつきましては、実際に該当のメールを受信しなければ分からないため、
おそらく掲示板上では回答できる人間が存在しないかと思われます。

さてPC側の件です。
問題もないようですので、以下に記載する自衛を遵守しつつ、本件を解決といたしましょう。
再度感染しないように、Windows Updateを怠らない、怪しいサイトには行かない、フリーウェアは極力使わない、
P2Pファイル共有ソフトには一切手を出さないなどの「自衛」はしっかりと行ってください。
また、ほかの方の質問を見て、色々なものへの対応策を身につけるのも一つの自衛です。
近年情報流出が激化しておりますが、セキュリティソフトだけではこのようなマルウェアは防げません。
セキュリティソフトは、「常に後手」であるソフトウェアです。
これは、誰かが新種ウイルスに感染し、その感染が報告されない限り、
セキュリティソフトのベンダーとしてもウイルスに対応することができないのです。
ですので、セキュリティソフトは自衛のためのサポートツールであるということを常に念頭に置き、
今回のような他人に頼らざるを得ない状況となった伏魔殿での苦い経験を今後の糧に、
ご自身のPCと真剣に向き合いつつ、有益で安全なPCライフを実現してゆきましょう。
なお自衛は今だけの話ではなく、PCを扱う限り一生行うようにしましょう。
今回使用したツールはすべて導入時の案内に沿って片付けておいてください。
それではご安全に。
  • IVNO
  • MAIL
  • 2014/11/20 (Thu) 20:23:40
Re: Krab webをMalwarebytes Anti-Malwareでアンインストール出来たのですが広告が消えません
IVNOさま

20日間に渡り丁寧なご指導、ほんとにほんとに(×10)ありがとうございました!
FaceBookはパスワードを変更したのでたぶん大丈夫でしょう・・・
Mipony というのもダウンロードした覚えがなかったので削除しちゃいました。
再発することがないよう、変な広告に引っかからないようしっかり自衛していきます。
ありがとうございました。
  • くっちー
  • 2014/11/21 (Fri) 16:06:05

返信フォーム






プレビュー (投稿前に内容を確認)