悪代官の伏魔殿掲示板
youtubeダウンロードのサイトでMalに感染してしまったようです。

藁にもすがる思いで相談させていただきます。


タイトル通りyoutubeダウンロードのサイトでMalに感染してしまったようです。

chromeの拡張機能で何度消してもも「unisaalEs」「uonisalesu」が復活します。
関係ありそうなソウトはアンストールしましたがだめでした。

どうかお助けください。






<hijackthis>



Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 0:45:19, on 2015/02/05
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17496)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\スマートダイアリー\SmartDiary.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Neo\Downloads\HijackThis.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Windows\SysWOW64\DllHost.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Strong Signal - {c723a437-2eaf-466d-a95b-3fa0966bf88c} - C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll (file missing)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: ChromeFrame BHO - {ECB3C477-1A0A-44BD-BB57-78F9EFE34FA7} - C:\Program Files (x86)\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - Startup: Dropbox.lnk = Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: スマートダイアリー.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0A34F491-7249-4BAC-8E46-04DB2CA764CB} - http://download.jword.jp/soft/tok2/jword2.cab
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Protocol hijack: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: gcf - {9875BFAF-B04D-445E-8A69-BE36838CDE3E} - C:\Program Files (x86)\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll
O18 - Protocol hijack: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol hijack: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6}
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Protocol hijack: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol hijack: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol hijack: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O21 - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Box Sync Update Service (BoxSyncUpdateService) - Box Inc. - C:\Program Files\Box\Box Sync\SyncUpdaterService.exe
O23 - Service: Digidesign MME Refresh Service (DigiRefresh) - Digidesign, A Division of Avid Technology, Inc. - C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Freemake Improver - Freemake - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - Unknown owner - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14535 bytes









<CCleaner>




Adobe Flash Player 16 ActiveX Adobe Systems Incorporated 2015/01/25 6.00 MB 16.0.0.296
Adobe Reader X (10.1.12) - Japanese Adobe Systems Incorporated 2014/09/22 138 MB 10.1.12
Amazon Cloud Drive Amazon 2014/03/21 2.4.2013.3290
Any Video Converter 3.4.0 Any-Video-Converter.com 2012/07/25 107 MB
Apple Application Support Apple Inc. 2014/10/20 96.3 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/10/20 20.9 MB 8.0.5.6
Apple Software Update Apple Inc. 2012/02/09 2.38 MB 2.1.3.127
ApplicationManager 2011.4.27.209 Beijing AJ Technology Co., Ltd 2013/10/07 2011.4.27.209
Audacity 2.0.2 Audacity Team 2012/12/05 43.5 MB 2.0.2
Avast Free Antivirus AVAST Software 2015/02/01 10.0.2208
Bonjour Apple Inc. 2012/02/09 2.00 MB 3.0.0.10
Box Sync Box, Inc. 2014/02/23 15.3 MB 4.0.4443.0
CCleaner Piriform 2015/02/05 5.02
CyberLink BD Advisor 2.0 2012/02/13
CyberLink Blu-ray Disc Suite CyberLink Corp. 2012/02/06 16.5 MB 6.0.4703
CyberLink LabelPrint CyberLink Corp. 2012/02/06 142 MB 2.5.1916
CyberLink LG Burning Tool CyberLink Corp. 2012/02/06 121 MB 6.2.4619
CyberLink MediaShow CyberLink Corp. 2012/02/06 192 MB 4.1.3402
CyberLink PowerDVD 9 CyberLink Corp. 2012/02/06 176 MB 9.0.3530.52
CyberLink PowerProducer CyberLink Corp. 2012/02/06 172 MB 5.0.2.2512
CyberLink YouCam CyberLink Corp. 2012/02/06 77.0 MB 2.0.3718
DAEMON Tools Pro DT Soft Ltd 2012/02/18 4.41.0314.0232
Dropbox Dropbox, Inc. 2014/12/12 3.0.3
DVD Shrink 3.2 DVD Shrink 2012/04/15
eLicenser Control Steinberg Media Technologies GmbH 2013/07/28
Epson Event Manager Seiko Epson Corporation 2015/01/30 42.4 MB 3.01.0005
EPSON PX-045A Series プリンター アンインストール SEIKO EPSON Corporation 2015/01/30
EPSON PX-045A Series ユーザーズガイド 2015/01/30
EPSON Scan Seiko Epson Corporation 2015/01/30
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2015/01/30 1.20.0000
Everio MediaBrowser 3 PIXELA 2012/07/18 3.00.243
Evernote v. 5.8.1 Evernote Corp. 2014/12/29 231 MB 5.8.1.6061
ffdshow v1.2.4422 [2012-04-09] 2013/10/11 13.3 MB 1.2.4422.0
Freemake Video Converter バージョン 4.1.3 Ellora Assets Corporation 2014/01/22 78.7 MB 4.1.3
FreeMind 2012/04/22 16.2 MB 0.9.0_RC_10
GOM Player Gretech Corporation 2014/10/12 2.2.64.5211
Google Chrome Google Inc. 2012/02/06 40.0.2214.94
Google Chrome フレーム Google Inc. 2012/02/22 32.0.1700.107
Google Drive Google, Inc. 2015/01/29 35.0 MB 1.19.8406.6504
Haali Media Splitter 2013/10/11
Handbrake日本語版 0.9.4 2013/07/16 0.9.4
iCloud Apple Inc. 2014/09/29 92.8 MB 4.0.3.56
ILLUSION ILLUSION 2014/09/17 193 MB 1.00.0000
ILLUSION ILLUSION 2014/09/07 258 MB 1.00.0000
ImgBurn LIGHTNING UK! 2013/07/16 2.5.8.0
Intel(R) Management Engine Components Intel Corporation 2012/02/13 7.0.0.1118
Interlok driver setup x64 PACE Anti-Piracy, Inc. 2013/01/16 1.53 MB 5.9.0
iTunes Apple Inc. 2014/10/20 245 MB 12.0.1.26
Java 7 Update 60 Oracle 2014/06/19 120 MB 7.0.600
LAME v3.99.3 (for Windows) 2013/06/30 1.52 MB
LINE LINE Corporation 2014/12/27 3.9.0.172
Microsoft .NET Framework 4.5.1 Microsoft Corporation 2014/01/06 38.8 MB 4.5.50938
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/02/27 2.93 MB 4.5.50938
Microsoft Office 365 - ja-jp Microsoft Corporation 2015/01/25 15.0.4675.1003
Microsoft OneDrive Microsoft Corporation 2015/01/25 26.8 MB 17.3.1171.0714
Microsoft OneNote 2013 - ja-jp Microsoft Corporation 2014/12/26 15.0.4675.1003
Microsoft Silverlight Microsoft Corporation 2014/12/15 348 MB 5.1.31211.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/04/12 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/02/09 298 KB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2012/02/22 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/02/06 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/02/16 232 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/02/09 600 KB 9.0.30729.6161
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2012/02/28 1.28 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2012/02/29 1.34 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2015/01/30
NVIDIA 3D Vision Controller Driver 270.61 NVIDIA Corporation 2012/02/06 270.61
NVIDIA 3D Vision ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
NVIDIA HD オーディオ ドライバー 1.3.18.0 NVIDIA Corporation 2013/07/28 1.3.18.0
NVIDIA PhysX システム ソフトウェア 9.10.0514 NVIDIA Corporation 2012/02/06 9.10.0514
NVIDIA アップデート 1.11.3 NVIDIA Corporation 2013/04/13 1.11.3
NVIDIA グラフィックス ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
oCam version 39.0.0.0 http://ohsoft.net/ 2014/11/02 14.5 MB 39.0.0.0
PC-Doctor for Windows PC-Doctor, Inc. 2013/10/09 6.0.5549.10
Permanent Readability 2014/02/01
PodSoundRipper LE(デジ造版) Nihon Intelligence Corporation 2012/02/27 28.2 MB 1.2.0
QuickTime 7 Apple Inc. 2014/03/10 70.2 MB 7.75.80.95
Realtek Ethernet Controller Driver Realtek 2012/02/06 7.45.516.2011
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2012/02/13 6.0.1.5772
Singer Song Writer 8.0 VS 2012/02/18
Skype(TM) 6.2 Skype Technologies S.A. 2013/03/02 20.2 MB 6.2.106
SoundEngine Free Coderium 2012/09/09 5.0.0.4
Steinberg CI2 Extension 64bit Yamaha Corporation 2013/07/28 1.2.1
Steinberg Cubase 7 64bit Steinberg Media Technologies GmbH 2013/11/02 395 MB 7.0.0
Steinberg Cubase AI 5 Steinberg Media Technologies GmbH 2013/07/28 106 MB 5.1.0
Steinberg Drum Loop Expansion 01 Steinberg Media Technologies GmbH 2013/11/02 428 MB 2.0.0.0
Steinberg Eucon Adapter 6.5 64bit Steinberg Media Technologies GmbH 2013/11/02 10.3 MB 6.5.0
Steinberg Groove Agent ONE Allen Morgan Signature Drums Steinberg Media Technologies GmbH 2013/11/02 0.96 GB 1.0.0
Steinberg Groove Agent ONE Content Steinberg Media Technologies GmbH 2013/11/02 142 MB 1.0.0.003
Steinberg Groove Agent ONE Vintage Beatboxes Steinberg Media Technologies GmbH 2013/11/02 38.0 MB 1.0.0.000
Steinberg HALion Sonic SE 64bit Steinberg Media Technologies GmbH 2013/11/02 46.1 MB 1.6.1
Steinberg HALion Sonic SE Content Steinberg Media Technologies GmbH 2013/11/02 3.15 GB 1.6.1
Steinberg HALionOne Steinberg Media Technologies GmbH 2013/07/28 103 MB 1.1.0.457
Steinberg HALionOne GM Drum Set Steinberg Media Technologies GmbH 2013/07/28 23.9 MB 1.0.1.457
Steinberg HALionOne GM Set Steinberg Media Technologies GmbH 2013/07/28 63.6 MB 1.0.1.457
Steinberg LoopMash Content Steinberg Media Technologies GmbH 2013/11/02 617 MB 2.0.0.000
Steinberg LoopMash Content 2 Steinberg Media Technologies GmbH 2013/11/02 558 MB 1.0.0.000
Steinberg Midi Loop Library Steinberg Media Technologies GmbH 2013/11/02 361 MB 1.0.0
Steinberg Padshop 64bit Steinberg Media Technologies GmbH 2013/11/02 433 MB 1.1.0
Steinberg Retrologue 64bit Steinberg Media Technologies GmbH 2013/11/02 81.3 MB 1.1.0
Steinberg REVerence Content 01 Steinberg Media Technologies GmbH 2013/11/02 199 MB 2.0.1.000
Steinberg Upload Manager Steinberg Media Technologies GmbH 2013/11/02 8.53 MB 1.0.1
Steinberg VST Amp Rack Content 01 Steinberg Media Technologies GmbH 2013/11/02 9.18 MB 1.0.1
SugarSync SugarSync, Inc. 2013/12/15 2.0.42.120603
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2012/02/22 8.25 MB 1.0.0.4
Windows Live Essentials Microsoft Corporation 2014/12/18 16.4.3528.0331
Windows Live Sync Microsoft Corporation 2011/04/12 2.76 MB 14.0.8089.726
WinRAR アーカイバ 2012/02/13
Yamaha MOTIF-RACK ES Multi Part Editor Yamaha Corporation 2014/03/10 14.5 MB 2.2.2.2
Yamaha Steinberg USB Driver Yamaha Corporation 2013/07/28 2.82 MB 1.7.3
Yamaha Studio Manager Yamaha Corporation 2014/03/10 8.03 MB 2.3.1.0
Yamaha USB-MIDI Driver Yamaha Corporation 2013/12/05 5.22 MB 3.1.3.1
エレコムらくちんプリント 2012/08/15
スマートダイアリー 2.5b Eagle 2014/04/14 3.58 MB 2.5.2




  • ライダーNeo
  • 2015/02/05 (Thu) 01:05:19
確認事項がございます
こんばんは、IVNOと申します。
ログを拝見させていただきましたが、確かにまだ手を加えなければならない状況のようです。
ご体験済みなので百も承知とは思われますが、マルウェアは普通に削除しただけでは消えません。
表面上は削除されても内部では密かに稼働しており、それが原因でPCが重くなるケースもあります。
きちんと然るべき手順をもって完全に削除し、残骸の処置までして初めて完治します。
しかしその処置を行う前に確認事項がございます。

本PCは導入されているソフトウェアから推測して作曲を行われておられるみたいですが、
これは何らかの金員を得るものとして行っている行為でしょうか?
そちらをお聞かせいただけたらと思います。

より具体的には動画作成でしょうか。

あとかなりの余談ですが、CUBASE 7のドラム音源とベース音源は悲しいことになっておりますので、
せめてドラム音源はBFD3をご検討なされたほうが良いかもしれません。
  • IVNO
  • MAIL
  • 2015/02/05 (Thu) 04:33:44
Re: youtubeダウンロードのサイトでMalに感染してしまったようです。

ご返信ありがとうございます。


作曲よりも編曲中心で、趣味の範囲でございます。

何か関係あるのでしょうか?




  • ライダーNeo
  • 2015/02/05 (Thu) 09:55:19
まずは事前説明から
こんばんは。
ここの管理人の悪代官です。
IVNOさんがご多忙なので、貧乏な自分がレスします。

PC環境の説明をうかがいましたが、お仕事には使っていないということですね。
では何とか協力可能でしょう。

一応説明すると、このサイトで作業に使っている各種アプリはみな
『個人、非商用PCに限り無償使用可能』
の制限があるフリーソフトです。
なので完全な職場、商用環境のPCには一切使えません。
また職場のPCで起きたトラブルには外部の人間はまずタッチできないのが常識でもあり、このことも含めて確認させてもらったわけです。

ついでに書くと、昨年あたりから当掲示板に職場PCでの相談を持ち込む方が増えてしまったこともあります。
職場に無断で外部に職場PCの相談を出しただけでも、普通の会社なら厳罰対象(解雇含む)にもなります。
そして職場PCとわかったうえでその職場の正式な許可もないまま相談を安易に受けた外部者も、状況によっては責任を問われることになります。

一見堅苦しいように見えますが、会社や職場の規則としてはまったく当然の対応で、これを守らないほうが大問題となります。
単純に個人経営の小規模事業所で使っているPCと仮定して、その事業所の経営者が自分でこの掲示板に相談に来てログを見せたとします。
PC本体は経営者の物でしょうが、それに入っている顧客、取引先を含む全データは経営者個人の自由にしていいものではありませんよね。
顧客や取引先情報をネット上に漏えいさせて、管理責任から多方面に莫大な金額の賠償金を支払う羽目になった会社は大企業でも幾度もニュースに出たのを見たことがあるでしょう。
大企業でさえ金額や、それ以上に信用面で大きなダメージを受けるのに、中小企業ではそれに耐えられるかということです。

上記をご理解いただければ今後どんな場所でのPC運用でも色々と役立つことになるので、頭に留めておいてください。

では前置きは置いて、本題に入りましょう。
今回の異常はご自身で入れたと思われる各種フリーソフトに同梱されていた迷惑なプログラムによるものです。
その中でもFreemakeシリーズはそれ自体がいろいろと悪評も絶えないもので、この掲示板の過去事例でも多数のスレで絡んでいたものです。
これ以外でも削除してもらうものが少なからず出てくるので、それらは今回のスレが解決するまでは一度削除を推奨です。
解決後にどうしても必要なら再度使用の判断はお任せしますが、その場合でもそれによるいかなトラブルもすべて自己責任になることは覚悟してください。

ではいよいよ作業に入りましょう。
まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「ATF-Cleaner」(通称:ATF)
説明↓
http://freesoft.tvbok.com/freesoft/pc_system/atf-cleaner.html
ダウンロード↓
http://www.atribune.org/index.php?option=com_content&task=view&id=25&Itemid=25
中央の赤い文字がダウンロードリンクです。
片付けるときはファイルを直接削除してください。

Iobit Uninstaller(通称・IU)
公式ページ↓
http://jp.iobit.com/free/iou.html
解説↓
http://www.japan-secure.com/entry/blog-entry-282.html
片付けのときは以下のサイト様の説明を参考に、
http://www.japan-secure.com/entry/blog-entry-396.html
コントロールパネルからアンインストールですが、ポータブル版をお使いの場合はフォルダごと削除してください。
また、2014年ごろからIUはスポンサーサイトの広告も1週間に1度ほどのペースで表示するようになりました。
以下のページのような広告が表示されても慌てずに、一度PC再起動すればあとはまた次の週まで広告も出ないでしょう
http://okwave.jp/qa/q8644647.html

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。

準備できたら作業開始です。

少なくとも下記のアプリは旧バージョンです。
>Adobe Reader X (10.1.12) - Japanese Adobe Systems Incorporated 2014/09/22 138 MB 10.1.12
>ffdshow v1.2.4422 [2012-04-09] 2013/10/11 13.3 MB 1.2.4422.0
>Java 7 Update 60 Oracle 2014/06/19 120 MB 7.0.600
>Skype(TM) 6.2 Skype Technologies S.A. 2013/03/02 20.2 MB 6.2.106
>WinRAR アーカイバ 2012/02/13

各種アプリの更新を怠っただけでも、脆弱性を悪用されて深刻な感染はあっさり起きます。
使うなら最新版に更新してください。使わないアプリならアンインストールが安全です。
他にも旧バージョンないか調べて、あれば同様に更新するか、アンインストールしてください。

ここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

次にここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

今度はPCをセーフモードで起動してください(やり方↓)
http://www.pc-master.jp/sousa/s-safemode.html

セーフモードでIUを使って、下記をアンインストールしてください。
>Amazon Cloud Drive Amazon 2014/03/21 2.4.2013.3290

>Any Video Converter 3.4.0 Any-Video-Converter.com 2012/07/25 107 MB

>DAEMON Tools Pro DT Soft Ltd 2012/02/18 4.41.0314.0232

>DVD Shrink 3.2 DVD Shrink 2012/04/15

>Freemake Video Converter バージョン 4.1.3 Ellora Assets Corporation 2014/01/22 78.7 MB 4.1.3

>GOM Player Gretech Corporation 2014/10/12 2.2.64.5211

IU起動して、該当のアプリを選択して、アンインストール→パワースキャンの順にスキャンして、残骸ファイル、レジストリも表示されたらそれにチェックして削除です。
なお、IUは削除後ごくまれに異常が出ることもあるので、もし異常があればWindows標準のシステムの復元で、削除時の復元ポイントに戻してください。

セーフモードのままでATFを起動して、「Recycle bin」(ゴミ箱)以外の箇所全部にチェックしてから、下部の「Empty selected」を押してください。
これでPC内の一時ファイル等のゴミが掃除できます。
ゴミ箱を空にしないのは、もし間違って安全なファイルを削除しても戻せるようにとの対処です。

HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、こちらが指示した以外のものは絶対にチェックを入れないでください。
>O2 - BHO: Strong Signal - {c723a437-2eaf-466d-a95b-3fa0966bf88c} - C:\Program Files (x86)\Strong Signal\Extensions\c723a437-2eaf-466d-a95b-3fa0966bf88c.dll (file missing)

>O23 - Service: Freemake Improver - Freemake - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
探しても見つからないものはスルーして進めていいです。

マイコンピュータのCドライブを開いて、下記のフォルダを探して、見つかればゴミ箱に削除してください。見つからないときはスルーで。
>C:\ProgramData\Freemake

>C:\Program Files (x86)\Strong Signal

今度は先にも起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

今度はCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

続いて「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。
ただし、「コンテキストメニュー」のログは取らなくていいです。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにHJTとCCでのインストール情報ログを取り直してください。

取り直した両ログと、ACとCCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。

上記の作業で異常が沈静化しても、そこで「解決」にはならないので、続きの作業とレスもお願いします。
上記作業だけで片付くほど生易しい状態ではないですから、時間はかかってもいいのでひとつずつ落ち着いて進めてください
  • 悪代官
  • 2015/02/05 (Thu) 17:32:49
Re: youtubeダウンロードのサイトでMalに感染してしまったようです。

お忙しい中のご対応、感謝いたします。
事前の説明、よく理解いたしました。


さて、早速ご説明どおりに指定のソフトをDLしていったのですが、
AdwCleanerだけインストールできず、

~adwcleaner_4.110.exe は有効なWin32 アプリケーションではありません。

と表示されます。

この場合どうすれば良いでしょか?
  • ライダーNeo
  • 2015/02/06 (Fri) 10:13:07
セキュリティソフトを一時無効にしましょう
また登場いたしましたIVNOです。
ACが正常に起動しないのは、セキュリティソフトに干渉されているためと判断できます。
実際私もアバストを利用しておりますが、アバストが干渉して動作しないのを確認いたしました。
仕方がありませんので、セーフモードで起動する際に「セーフモードとインターネット」を選択するか、
あるいはシステム構成ユーティリティを起動なされた際に「最小」ではなく「ネットワーク」にしてください。
この状態でセーフモードとして起動させると、セーフモード中でもインターネットが利用できます。
ここで再度ACをダウンロードしなおし、ACでの処置を行ってください。
  • IVNO
  • MAIL
  • 2015/02/06 (Fri) 15:29:08
Re: youtubeダウンロードのサイトでMalに感染してしまったようです。


言っていただいた通りにセーフモードで起動したんですが、インターネットに繋がらす…。
再び通常起動したら、中途半端に前のように戻らず、インターネットは繋がらないまま。
「コンピューターの修復」から「システムの復元」で何とか戻せましたが・・・

もうこの方法しかありませんでしょうか?
本当に素人で、融通が利かなくて申し訳ありません。


  • ライダーNeo
  • 2015/02/07 (Sat) 11:12:23
それではすべてのシールドを一時無効で対応しましょう
ではPCは通常起動のままで結構ですので、全シールドを一時的に無効にしましょう。
無効の方法は添付画像のとおりとなりますが、一応記述いたします。
アバストのアイコンを右クリックし、アバストシールド制御(C)→10分間無効にするを選びます。
この状態でACのダウンロードと起動を行ってください。
  • IVNO
  • MAIL
  • 2015/02/07 (Sat) 17:03:14
工程を完了いたしました。


ご無沙汰をしております。

PCを触れない状況もあり、大変時間がかかりましたが、なんとか全ての工程を完了できました。



現在はもうchromeの拡張機能に「unisaalEs」「uonisalesu」などは復活しなくなり
しつこかったアバストのウィルスの反応もいっさい出なくなりました。



それでは以下にご指定のログを貼らせて頂きます。




ACログ



# AdwCleaner v4.110 - Logfile created 19/02/2015 at 11:56:35
# Updated 05/02/2015 by Xplode
# Database : 2015-02-05.2 [Local]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Neo - NEO-PC
# Running from : C:\Users\Neo\Desktop\ヘルプダウンロード\AdwCleaner.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\baidu
Folder Deleted : C:\ProgramData\DriverCure
Folder Deleted : C:\ProgramData\Uniblue
Folder Deleted : C:\ProgramData\drivergenius
Folder Deleted : C:\ProgramData\9556046828270651942
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlvPlayer
Folder Deleted : C:\Program Files (x86)\Amazon\ABB
Folder Deleted : C:\Program Files (x86)\baidu
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\DealPly
Folder Deleted : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\baidu
Folder Deleted : C:\Users\Neo\AppData\LocalLow\baidu
Folder Deleted : C:\Users\Neo\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Neo\AppData\Roaming\ARecEngine
Folder Deleted : C:\Users\Neo\AppData\Roaming\Babylon
Folder Deleted : C:\Users\Neo\AppData\Roaming\baidu
Folder Deleted : C:\Users\Neo\AppData\Roaming\DriverCure
Folder Deleted : C:\Users\Neo\AppData\Roaming\PerformerSoft
Folder Deleted : C:\Users\Neo\AppData\Roaming\SearchProtect
Folder Deleted : C:\ProgramData\akglgcbpoilbmelhdlnampmdchhhdeie
Folder Deleted : C:\ProgramData\cekefiijanggekbollaenaedikehibik
File Deleted : C:\END

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj
Key Deleted : HKCU\Software\Google\Chrome\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam
Key Deleted : HKCU\Software\Classes\pokki
Key Deleted : HKCU\Software\Classes\VirtualStore\MACHINE\SOFTWARE\Wow6432Node\BabylonToolbar
Key Deleted : HKLM\SOFTWARE\Classes\AppID\BabylonHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\driverscanner
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Classes\speedupmypc
Key Deleted : HKCU\Software\5257d9deb569eb46
Key Deleted : HKLM\SOFTWARE\5257d9deb569eb46
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AF175732-0D59-716D-F757-9F1492D808D9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E46C8196-B634-44A1-AF6E-957C64278AB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2A836234-186C-41A0-9863-40BECDEDED9F}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{A75BE48D-BF58-4A8B-B96C-F9A09DFB9844}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B3B3A6AC-74EC-BD56-BCDB-EFA4799FB9DF}
Key Deleted : HKCU\Software\Alexa Internet
Key Deleted : HKCU\Software\BABSOLUTION
Key Deleted : HKCU\Software\distromatic
Key Deleted : HKCU\Software\filescout
Key Deleted : HKCU\Software\IGearSettings
Key Deleted : HKCU\Software\ParetoLogic
Key Deleted : HKCU\Software\usyndication.com
Key Deleted : HKCU\Software\USyndication
Key Deleted : HKCU\Software\Baidu
Key Deleted : HKCU\Software\DriverTuner_Init
Key Deleted : HKCU\Software\DriverTuner
Key Deleted : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Key Deleted : HKLM\SOFTWARE\Babylon
Key Deleted : HKLM\SOFTWARE\Driver-Soft
Key Deleted : HKLM\SOFTWARE\FlvPlayer
Key Deleted : HKLM\SOFTWARE\ParetoLogic
Key Deleted : HKLM\SOFTWARE\Uniblue
Key Deleted : HKLM\SOFTWARE\Vittalia
Key Deleted : HKLM\SOFTWARE\Baidu
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Amazon Browser Bar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\zulagames
Key Deleted : [x64] HKLM\SOFTWARE\Baidu
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-search.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\hao123.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\jp.hao123.com
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17631

Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page Restore]

-\\ Google Chrome v40.0.2214.94

[C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.softonic.jp/s/{searchTerms}
[C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://websearch.thesearchpage.info/?l=1&q={searchTerms}&pid=2921&r=2015/02/01&hid=7964917622078335865&lg=EN&cc=JP&unqvl=74

*************************

AdwCleaner[R0].txt - [7426 bytes] - [19/02/2015 11:54:38]
AdwCleaner[S0].txt - [6517 bytes] - [19/02/2015 11:56:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6576 bytes] ##########


――――――――――――――――――――――――――――

CCログ


<Google chrome>

有効 App Gmail 7 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
無効 App Google ドライブ 6.4 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google ドライブ 6.4 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google 検索 0.0.0.20 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App YouTube 4.2.7 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension Avast Online Security 10.0.2502.149 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.0.2502.149_0
無効 Extension Chrome 用 Amazon 2.2.2012.272 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam\2.2.2012.272_0
有効 Extension Google スプレッドシート 1.1 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension laClipy 2.0.1 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0
有効 Extension Libron 3.0.8 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpfgglfemmnflnmjminpghmeiajcajoi\3.0.8_0
有効 Plugin Adobe Acrobat 9.5.1.283 rith C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
有効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 rith C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
有効 Plugin Chrome PDF Viewer rith C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.94\pdf.dll
有効 Plugin Google Update 1.3.21.115 rith C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
有効 Plugin iTunes Application Detector 1.0.1.1 rith C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
有効 Plugin Java Deployment Toolkit 7.0.50.255 10.5.1.255 rith C:\Windows\SysWOW64\npDeployJava1.dll
有効 Plugin Java(TM) Platform SE 7 U5 10.5.1.255 rith C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
有効 Plugin Native Client rith C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.94\ppGoogleNaClPluginChrome.dll
有効 Plugin NVIDIA 3D Vision 7.17.12.7061 rith C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
有効 Plugin Remoting Viewer rith internal-remoting-viewer
有効 Plugin Shockwave Flash 11,3,300,268 rith C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.94\gcswf32.dll
有効 Plugin Shockwave Flash 11.3.31.222 rith C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.60\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 rith c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live Photo Gallery 14.0.8081.0709_ship.wlx.w3m3 (ship) rith C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll


<Internet Explorer>


有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
無効 Helper Adobe PDF Link Helper Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
無効 Helper ChromeFrame BHO Google Inc. C:\Program Files (x86)\Google\Chrome Frame\Application\32.0.1700.107\npchrome_frame.dll
有効 Helper Evernote extension Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll


<Windows>


無効 EPLTarget
無効 HKCU:Run Adobe Reader Synchronizer Adobe Systems Incorporated "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe"
無効 HKCU:Run ApplicationManager Beijing AJ Technology Co., Ltd C:\Users\Neo\AppData\Roaming\ApplicationManager\bin\ApplicationManager.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run ConduitFloatingPlugin_kdfbddbdpnahdahmamlolacimfdbeckk Microsoft Corporation "C:\Windows\SysWOW64\Rundll32.exe" "C:\Program Files (x86)\Conduit\CT3281675\plugins\TBVerifier.dll",RunConduitFloatingPlugin kdfbddbdpnahdahmamlolacimfdbeckk
無効 HKCU:Run DAEMON Tools Pro Agent "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun
有効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleDriveSync Google "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
無効 HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
無効 HKCU:Run LightScribe Control Panel C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
無効 HKCU:Run MobileDocuments C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
無効 HKCU:Run NaverNDrive C:\Program Files\Naver\Ndrive\NDriveUpgrader.exe
無効 HKCU:Run RESTART_STICKY_NOTES Microsoft Corporation C:\Windows\system32\StikyNot.exe
無効 HKCU:Run Sidebar Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
無効 HKCU:Run SkyDrive Microsoft Corporation "C:\Users\Neo\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
無効 HKCU:Run Speech Recognition Microsoft Corporation "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
無効 HKCU:Run SugarSync SugarSync, Inc. "C:\Program Files (x86)\SugarSync\SugarSync.exe" -startInTray -usedelay=true
無効 HKCU:Run swg "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
無効 HKCU:Run YahooDesktop "C:\Program Files\Yahoo!J\Desktop\Modules\YahooDesktop.exe"
無効 HKLM:Run 20131121 AVAST Software C:\Program Files\AVAST Software\Avast\setup\emupdate\d0f5c31b-51c5-4cdb-a25e-f549bbb601c3.exe /check
無効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
無効 HKLM:Run Adobe Reader Speed Launcher "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
無効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
無効 HKLM:Run BoxSync Box, Inc. "c:\Program Files\Box\Box Sync\BoxSync.exe" -m
無効 HKLM:Run CLMLServer CyberLink "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
無効 HKLM:Run DigidesignMMERefresh Digidesign, A Division of Avid Technology, Inc. C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
無効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
無効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
無効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
無効 HKLM:Run LogMeIn GUI "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
無効 HKLM:Run MDS_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
無効 HKLM:Run RemoteControl9 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"
無効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
無効 HKLM:Run Skytel Realtek Semiconductor Corp. C:\Program Files\Realtek\Audio\HDA\Skytel.exe
無効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
無効 HKLM:Run TkBellExe "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
無効 HKLM:Run UCam_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
無効 HKLM:Run UpdateLBPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
無効 HKLM:Run UpdateP2GoShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
無効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
無効 HKLM:Run UpdatePSTShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
無効 Startup User Amazon Cloud Drive.appref-ms C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Amazon Cloud Drive.appref-ms
無効 Startup User Amazon Cloud Drive.lnk Amazon Digital Services, LLC. C:\Users\Neo\AppData\Local\Apps\2.0\A358QH7E.11A\6A0MMHE5.P9G\AMAZTI~1.000\AMAZON~1.EXE
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
無効 Startup User EvernoteClipper.lnk Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE
無効 Startup User iMindMap Preloader.lnk C:\Users\Neo\THINKB~1\imindmap\preload\IMINDM~1.EXE
無効 Startup User OneNote に送る.lnk Microsoft Corporation C:\PROGRA~1\MICROS~3\root\office15\ONENOTEM.EXE /tsr
無効 Startup User PcHusen.lnk C:\PcHusen\PcHusen.exe
無効 Startup User Sticky Notes.lnk Microsoft Corporation C:\Windows\system32\StikyNot.exe
無効 Startup User We3 (Fraser, Steve .lnk C:\PROGRA~3\{9794A~1\WE3(FR~1.EXE --startup=1
有効 Startup User スマートダイアリー.lnk C:\Users\Neo\AppData\Roaming\Microsoft\Installer\{37714F81-04A8-4AF6-8F22-1499F13B8870}\_4ae13d6c.exe



<スケジュールされたタスク>


有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for Neo-PC-Neo Neo-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
有効 Task RealUpgradeLogonTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck
有効 Task RealUpgradeScheduledTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck
有効 Task Task_ShellExecuteAs Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "http://www.playgom.net/?refer=promotionc"
有効 Task Uninstaller_SkipUac_Neo IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {2600B891-88A1-4C5F-89B8-DD29FC7369FC} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\DAEMON Tools Lite\InstallGadget.exe" -d "C:\Program Files (x86)\DAEMON Tools Lite"
有効 Task {5379321E-6819-4B20-BE4F-78055E20C3D6} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST\Setup.exe" -d "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST"
有効 Task {5E61C4C2-3644-4CDE-B03A-148AEDC60FD3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\eLicenserControlSetup.exe -d C:\Users\Neo\Downloads
有効 Task {71A8B04B-CD84-4048-8F1B-4C1BC4580AA2} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Proxifier\unins000.exe"
有効 Task {71BC5806-8473-4B5C-B1BC-C32A215DB315} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Desktop\新しいフォルダー\Setup.exe -d C:\Users\Neo\Desktop\新しいフォルダー
有効 Task {84410036-4652-4B57-9D30-7DAF64A8CD7F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a G:\LaCie.exe -d G:\
有効 Task {85B656D7-871F-480E-B685-D23F73501341} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0\Digidesign Audio Drivers Setup.exe" -d "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0"
有効 Task {C7EA86E1-4E50-4D55-AE48-D622F14E568A} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\NetFx20SP2_ia64.exe -d C:\Users\Neo\Downloads



――――――――――――――――――――――――――――

HJTログ


Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 10:33:16, on 2015/02/25
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\スマートダイアリー\SmartDiary.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Neo\Desktop\ヘルプダウンロード\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - Startup: Dropbox.lnk = Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: スマートダイアリー.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0A34F491-7249-4BAC-8E46-04DB2CA764CB} - http://download.jword.jp/soft/tok2/jword2.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O21 - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Box Sync Update Service (BoxSyncUpdateService) - Box Inc. - C:\Program Files\Box\Box Sync\SyncUpdaterService.exe
O23 - Service: Digidesign MME Refresh Service (DigiRefresh) - Digidesign, A Division of Avid Technology, Inc. - C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) - Unknown owner - C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11337 bytes


――――――――――――――――――――――――――――

取り直したCCログ



<Google chrome>

有効 App Gmail 7 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
無効 App Google ドライブ 6.4 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google ドライブ 6.4 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google 検索 0.0.0.20 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App YouTube 4.2.7 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension Avast Online Security 10.0.2502.149 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.0.2502.149_0
有効 Extension Google スプレッドシート 1.1 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 Profile 1 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension laClipy 2.0.1 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0
有効 Extension Libron 3.0.8 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpfgglfemmnflnmjminpghmeiajcajoi\3.0.8_0
有効 Plugin Adobe Acrobat 9.5.1.283 rith C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
有効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 rith C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
有効 Plugin Chrome PDF Viewer rith C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
有効 Plugin Google Update 1.3.21.115 rith C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
有効 Plugin iTunes Application Detector 1.0.1.1 rith C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
有効 Plugin Java Deployment Toolkit 7.0.50.255 10.5.1.255 rith C:\Windows\SysWOW64\npDeployJava1.dll
有効 Plugin Java(TM) Platform SE 7 U5 10.5.1.255 rith C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
有効 Plugin Native Client rith C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\ppGoogleNaClPluginChrome.dll
有効 Plugin NVIDIA 3D Vision 7.17.12.7061 rith C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
有効 Plugin Remoting Viewer rith internal-remoting-viewer
有効 Plugin Shockwave Flash 11,3,300,268 rith C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\gcswf32.dll
有効 Plugin Shockwave Flash 11.3.31.222 rith C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.60\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 rith c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live Photo Gallery 14.0.8081.0709_ship.wlx.w3m3 (ship) rith C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll



<Internet Explorer>


有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
有効 Helper Evernote extension Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll


<Windows>

無効 EPLTarget
無効 HKCU:Run Adobe Reader Synchronizer "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe"
無効 HKCU:Run ApplicationManager Beijing AJ Technology Co., Ltd C:\Users\Neo\AppData\Roaming\ApplicationManager\bin\ApplicationManager.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run ConduitFloatingPlugin_kdfbddbdpnahdahmamlolacimfdbeckk Microsoft Corporation "C:\Windows\SysWOW64\Rundll32.exe" "C:\Program Files (x86)\Conduit\CT3281675\plugins\TBVerifier.dll",RunConduitFloatingPlugin kdfbddbdpnahdahmamlolacimfdbeckk
無効 HKCU:Run DAEMON Tools Pro Agent "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun
有効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleDriveSync Google "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
無効 HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
無効 HKCU:Run LightScribe Control Panel C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
無効 HKCU:Run MobileDocuments C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
無効 HKCU:Run NaverNDrive C:\Program Files\Naver\Ndrive\NDriveUpgrader.exe
無効 HKCU:Run RESTART_STICKY_NOTES Microsoft Corporation C:\Windows\system32\StikyNot.exe
無効 HKCU:Run Sidebar Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
無効 HKCU:Run SkyDrive Microsoft Corporation "C:\Users\Neo\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
無効 HKCU:Run Speech Recognition Microsoft Corporation "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
無効 HKCU:Run SugarSync SugarSync, Inc. "C:\Program Files (x86)\SugarSync\SugarSync.exe" -startInTray -usedelay=true
無効 HKCU:Run swg "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
無効 HKCU:Run YahooDesktop "C:\Program Files\Yahoo!J\Desktop\Modules\YahooDesktop.exe"
無効 HKLM:Run 20131121 AVAST Software C:\Program Files\AVAST Software\Avast\setup\emupdate\d0f5c31b-51c5-4cdb-a25e-f549bbb601c3.exe /check
無効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
無効 HKLM:Run Adobe Reader Speed Launcher "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
無効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
無効 HKLM:Run BoxSync Box, Inc. "c:\Program Files\Box\Box Sync\BoxSync.exe" -m
無効 HKLM:Run CLMLServer CyberLink "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
無効 HKLM:Run DigidesignMMERefresh Digidesign, A Division of Avid Technology, Inc. C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
無効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
無効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
無効 HKLM:Run KeePass 2 PreLoad Dominik Reichl "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
無効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
無効 HKLM:Run LogMeIn GUI "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
無効 HKLM:Run MDS_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
無効 HKLM:Run RemoteControl9 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"
無効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
無効 HKLM:Run Skytel Realtek Semiconductor Corp. C:\Program Files\Realtek\Audio\HDA\Skytel.exe
無効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
無効 HKLM:Run TkBellExe "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
無効 HKLM:Run UCam_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
無効 HKLM:Run UpdateLBPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
無効 HKLM:Run UpdateP2GoShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
無効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
無効 HKLM:Run UpdatePSTShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
無効 Startup User Amazon Cloud Drive.appref-ms C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Amazon Cloud Drive.appref-ms
無効 Startup User Amazon Cloud Drive.lnk Amazon Digital Services, LLC. C:\Users\Neo\AppData\Local\Apps\2.0\A358QH7E.11A\6A0MMHE5.P9G\AMAZTI~1.000\AMAZON~1.EXE
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
無効 Startup User EvernoteClipper.lnk Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE
無効 Startup User iMindMap Preloader.lnk C:\Users\Neo\THINKB~1\imindmap\preload\IMINDM~1.EXE
無効 Startup User OneNote に送る.lnk Microsoft Corporation C:\PROGRA~1\MICROS~3\root\office15\ONENOTEM.EXE /tsr
無効 Startup User PcHusen.lnk C:\PcHusen\PcHusen.exe
無効 Startup User Sticky Notes.lnk Microsoft Corporation C:\Windows\system32\StikyNot.exe
無効 Startup User We3 (Fraser, Steve .lnk C:\PROGRA~3\{9794A~1\WE3(FR~1.EXE --startup=1
有効 Startup User スマートダイアリー.lnk C:\Users\Neo\AppData\Roaming\Microsoft\Installer\{37714F81-04A8-4AF6-8F22-1499F13B8870}\_4ae13d6c.exe



<スケジュールされたタスク>


有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for Neo-PC-Neo Neo-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
有効 Task RealUpgradeLogonTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck
有効 Task RealUpgradeScheduledTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck
有効 Task Task_ShellExecuteAs Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "http://www.playgom.net/?refer=promotionc"
有効 Task Uninstaller_SkipUac_Neo IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {2600B891-88A1-4C5F-89B8-DD29FC7369FC} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\DAEMON Tools Lite\InstallGadget.exe" -d "C:\Program Files (x86)\DAEMON Tools Lite"
有効 Task {5379321E-6819-4B20-BE4F-78055E20C3D6} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST\Setup.exe" -d "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST"
有効 Task {5E61C4C2-3644-4CDE-B03A-148AEDC60FD3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\eLicenserControlSetup.exe -d C:\Users\Neo\Downloads
有効 Task {71A8B04B-CD84-4048-8F1B-4C1BC4580AA2} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Proxifier\unins000.exe"
有効 Task {71BC5806-8473-4B5C-B1BC-C32A215DB315} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Desktop\新しいフォルダー\Setup.exe -d C:\Users\Neo\Desktop\新しいフォルダー
有効 Task {84410036-4652-4B57-9D30-7DAF64A8CD7F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a G:\LaCie.exe -d G:\
有効 Task {85B656D7-871F-480E-B685-D23F73501341} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0\Digidesign Audio Drivers Setup.exe" -d "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0"
有効 Task {C7EA86E1-4E50-4D55-AE48-D622F14E568A} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\NetFx20SP2_ia64.exe -d C:\Users\Neo\Downloads







どうぞよろしくお願いします。





  • ライダーNeo
  • 2015/02/25 (Wed) 10:57:01
ACは削除しMBAMで処置を
ログを確認させていただきましたが、ACが大量ですね。
意外ですがアマゾンブラウザバーすらACは駆除しますか。
確かに厄介と言えば間違いなく厄介ではあるのでミスチョイスとも言えないでしょう。
ACは不要となりますので、ACを起動させてアンインストールボタンを押して削除なされてください。

以下のソフトウェアをご用意ください。

Malwarebytes Anti-Malware(通称:MBAM)
旧バージョンダウンロード↓(ファイル直リンクです。表示して数秒後にダウンロード開始の表示が出ます)
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
最新バージョンには動作しなくなるなどの不具合があるため、ここでは旧バージョンを利用します。
インストールの最後に出てくるMalwarebytes Anti-Malware Pro版の無料試用を開始する。のチェックを外します。
このソフトウェアは日本語対応ではありますが、初回起動時は文字化けしておりますので、以下の手順で日本語化を行ってください。
MBAMを起動させてください。
MBAMを起動時に自動アップデートが始まります。
最新バージョンをダウンロードしたと表示されたら、必ずキャンセルを押してください。
次にウイルス定義ファイルのアップデートが始まりますので、アップデート終了までお待ちください。
ウイルス定義ファイルのバージョンアップが完了すると、再度最新バージョンをダウンロードしたと出ますので、
再びキャンセルを押してアップデートを中止してください。
MBAMが起動したら設定タブを開き、Languageの項目の部分をJapaneseに再度変更することで日本語化が可能です。
この段階ではスキャンは行いませんので、設定が完了したらMBAMを終了させておいてください。
最新バージョンと旧バージョンは操作方法が大幅に異なりますので、
万一バージョン2.0以降を導入されてしまった場合はご連絡ください。
片付け時はセーフモードからIUを利用してアンインストールしてください。

ここで使うのはFree(無償版)です。

準備が完了しましたら作業を開始いたします。
CCを起動させ、ツール→スタートアップの各項目を開き、
該当するものを無効→エントリの削除の順番でクリックしてください。

Windows
無効 HKCU:Run ConduitFloatingPlugin_kdfbddbdpnahdahmamlolacimfdbeckk Microsoft Corporation "C:\Windows\SysWOW64\Rundll32.exe" "C:\Program Files (x86)\Conduit\CT3281675\plugins\TBVerifier.dll",RunConduitFloatingPlugin kdfbddbdpnahdahmamlolacimfdbeckk
無効 HKCU:Run DAEMON Tools Pro Agent "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun
無効 Startup User Amazon Cloud Drive.appref-ms C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Amazon Cloud Drive.appref-ms
無効 Startup User Amazon Cloud Drive.lnk Amazon Digital Services, LLC. C:\Users\Neo\AppData\Local\Apps\2.0\A358QH7E.11A\6A0MMHE5.P9G\AMAZTI~1.000\AMAZON~1.EXE
無効 Startup User We3 (Fraser, Steve .lnk C:\PROGRA~3\{9794A~1\WE3(FR~1.EXE --startup=1

Google Chrome
有効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 rith C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll

スケジュールされたタスク
有効 Task {2600B891-88A1-4C5F-89B8-DD29FC7369FC} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\DAEMON Tools Lite\InstallGadget.exe" -d "C:\Program Files (x86)\DAEMON Tools Lite"

無効にできないもの、既に無効になっているものはそのままエントリの削除を、
エントリが存在しない場合は放置で先に進みましょう。
CCでの作業が完了しましたら、PCをセーフモードで起動してください。
MBAMを使ってスキャンしてください。
MBAMを起動させます。
フルスキャンを選択し、スキャン開始をクリックします。
スキャン終了まで30分~1時間半程度お待ちください。
スキャンが完了したら、詳細を表示をクリックします。
検出されたものの一覧が出ますので、検出されたものすべてを駆除するため、
検出されたものの左側にあるチェックボックスすべてにチェックを入れます。
すべての箇所にチェックを入れたら選択されたアイテムを隔離ボタンを押します。
処置の設定が完了するとPCの再起動を促されますので、指示に従って通常モードで再起動してください。
再起動後にログが出ますので、取得されたログを貼り付け、ご報告をお願いいたします。
  • IVNO
  • MAIL
  • 2015/02/25 (Wed) 11:53:44
Babylon がエントリの削除が出来ません…

Google Chromeの

有効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 rith C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll


だけエントリの削除できません。
どう対処すればよいですか?


  • ライダーNeo
  • 2015/02/25 (Wed) 13:55:58
なければ放置で結構です
上記作業案内に記述いたしておりますが、
無効にできないもの、既に無効になっているものはそのままエントリの削除を、
エントリが存在しない場合は放置で先に進みましょう。
もちろん処置できない場合も放置で結構です。
  • IVNO
  • MAIL
  • 2015/02/25 (Wed) 13:57:49
Re: youtubeダウンロードのサイトでMalに感染してしまったようです。


あるんだけれど、削除が出来ない場合も放置でよいですか?
  • ライダーNeo
  • 2015/02/25 (Wed) 13:59:52
もちろんです
基本的に作業手順のとおりにいかなければその部分は飛ばして作業をしてください。
まずは作業を終わらせることが最優先となります。
  • IVNO
  • MAIL
  • 2015/02/25 (Wed) 14:11:04
悪意のあるアイテムは検出されませんでした。


悪意のあるアイテムは検出されませんでした。

そしてスキャン後に再起動は促されませんでした。
以下は再起動後ではなく、スキャン直後に出たログです。






Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

定義バージョン: v2013.04.04.07

Windows 7 Service Pack 1 x64 NTFS (セーフモード)
Internet Explorer 11.0.9600.17633
Neo :: NEO-PC [管理者]

2015/02/25 14:45:38
mbam-log-2015-02-25 (14-45-38).txt

スキャンタイプ: フルスキャン (C:\|)
有効なスキャン領域: メモリ | スタートアップ | レジストリ | ファイルシステム | ヒューリスティック/追加アイテムのスキャン  | ヒューリスティック/Shuriken エンジンを使用してスキャン  | 不審なプログラム (PUP) | 不審な変更 (PUM)
無効なスキャン領域: ピア・ツー・ピアプログラム(P2P)
スキャンしたアイテム数: 486035
経過時間: 46 分, 57 秒

メモリプロセスの検出: 0
(悪意のあるアイテムは検出されていません。)

メモリモジュールの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリキーの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリ値の検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリデータ項目の検出: 0
(悪意のあるアイテムは検出されていません。)

フォルダの検出: 0
(悪意のあるアイテムは検出されていません。)

ファイルの検出: 0
(悪意のあるアイテムは検出されていません。)

(終)
  • ライダーNeo
  • 2015/02/25 (Wed) 15:42:50
どうにも妙ですね
ログを確認いたしました。
再起動がなかったのは処置対象がなかったためです。
しかしあれだけACで見つかっていてMBAMで追加検出なしと言うのも妙ですね。
メインアタッカーを投入してみることにしましょう。
MBAMは不要となりますので、導入時の指示に従って削除なされてください。

以下のソフトウェアをご用意ください。

HerdProtect(通称:HP)
http://www.herdprotect.com/downloads.aspx
インストール版でもポータブル版でも構いません。
インストール版の場合、アンインストールの際は、セーフモードでIUを利用してアンインストールされてください。
また、トレンドマイクロのウイルスバスターとの相性が悪いとの報告も受けております。
相性の問題でスキャンが正常にできないときは、その旨をご報告ください。
さらに、本ソフトウェアにより検出されたものすべてがマルウェアと言うわけではありません。
HPは駆除機能もありますが、まずは駆除は行わず、検出のみに使用いたします。

OldTimer Listit(通称:OTL)
http://oldtimer.geekstogo.com/OTL.exe
直リンクです。デスクトップ等、分かりやすい場所に保存してください。
削除する際は起動後に「Cleanup」ボタンを押すことにより、自動的に削除されます。

準備ができましたら、まずゲームのインストーラーなど、極端に重たいファイルがある場合は、
そちらの不要ファイルを事前にPC内から手動削除し、ごみ箱からも消しておいてください。
これらをHPが不審プログラムとして拾うと、1日や2日は平気でスキャンにかかってしまいます。
PCが通常モードで起動していることを確認し、HerdProtectを起動させます。
ソフトウェアの特性として、ファイルのスキャンにインターネット回線を利用します。
インターネット回線がご利用できないセーフモード時では正常に動作しませんので、
セーフモードで起動中の場合は通常モードに切り替えてください。
Scanボタンがありますので、こちらを押してスキャンを行ってください。
スキャンに必要な情報を収集したり、発見された不審なソフトウェアを
各種セキュリティソフトで調査している間は、スキャン作業が停止します。
スキャンが進行しないからと言ってフリーズしたわけではありませんので、
スキャンが完了するまで今しばらくお待ちください。
スキャンが完了しましたらスキャン結果が表示されますので、
画面右上にあるSave resultsという文字をクリックしてログを出力してください。
ログは任意のお名前をつけて、分かりやすいところに保存してください。

以下をメモ帳にコピペしてください。

------コピペこの下より------
%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
CREATERESTOREPOINT
------コピペこの上まで------

コピペが完了しましたら、任意のお名前をつけて分かりやすい場所に保存されてください。
保存が完了しましたら、PCをセーフモードで起動させてください。
OTLを起動させ、表示画面上部中央にあるScan All Usersにチェックを入れてください。
設定が完了しましたら、Custom Scan/Fixesの項目内に先ほど保存したメモ帳の内容を貼り付けてください。
コピペが完了しましたらメモ帳を終了させ、[Run Scan]をクリックしてスキャンを行ってください。
スキャン完了まで数分程度かかりますので、今しばらくお待ちください。
スキャンが完了しましたら、OTLを保存した場所と同じところに、
OTL.txtとExtras.txtが出力されますので、こちら2つと先に保存したHPのログを貼り付けてご連絡ください。
なお、OTLもHPもその特性上、非常に長文となりがちです。
こちらの掲示板の文字数上限がひらがな換算で約3万文字、ローマ字換算で約6万文字です。
(より正確には件名を含めてJIS換算65,535バイトまで。全角文字・全角記号2バイト、
半角文字・半角記号1バイト、絵文字等特殊文字3バイト)
確実に文字数オーバーとなりますので、余裕を見て5万5千文字程度になるように、
以下のURLの文字数カウンター等で確認しつつ、ログを分割されてご連絡ください。
http://www2u.biglobe.ne.jp/~yuichi/rest/strcount.html
  • IVNO
  • MAIL
  • 2015/02/25 (Wed) 16:11:12
HPのログ



ではまずHPのログです。





Saved date: 2015/02/26 8:15:04
Files detected: 38
Files scanned: 11,200
Processes scanned: 143
Modules scanned: 1,571
ASEPs scanned: 469
Downloads scanned: 0
Deep analysis: 52/15
---------------------------------------------------------------------------------

Files

---------------------------------------------------------------------------------

File path: c:\program files (x86)\iobit\iobit uninstaller\uninstallmonitor.exe
Publisher: IObit
Signer: IObit Information Technology
MD5: 399f5ac332cd0b07be87212e3c0bf76d
SHA-1: ea7f2e72a1659f7adbbbd7cb820995948a6ca135
Created: 2015/02/06 9:44:01
Detections: 1
Determination: Ignore detections (false positive)
- G Data as Win32.Adware.iObit (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\intel\intel(r) management engine components\uns\uns.exe
Publisher: Intel Corporation
Signer: Intel Corporation
MD5: fdf92ec84fecee834fb10a2a0a19bcda
SHA-1: d856e15e87c835661bfc62803f65a58dc7074876
Created: 2012/02/06 10:02:34
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Trojan/Win32.Patched.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\iobit\liveupdate\liveupdate.exe
Publisher: IObit
Signer: IObit Information Technology
MD5: 87aac3cbd2c5d5ac6ca87ad08a228241
SHA-1: aacd36907710af4589aa9edb3d1c4263892f39fa
Created: 2015/02/06 9:44:06
Detections: 1
Determination: Ignore detections (false positive)
- G Data as Win32.Adware.iObit (Adware)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\iobit\iobit uninstaller\iobituninstaler.exe
Publisher: IObit
Signer: IObit Information Technology
MD5: 001de5a072ab18262968f4f656452f18
SHA-1: d9d3a96140383887b1bc8e00e565f1baaca16e54
Created: 2015/02/06 9:44:04
Detections: 1
Determination: Ignore detections (false positive)
- G Data as Win32.Adware.iObit (Adware)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\temp\{8e961afb-6dc5-44e6-baa0-aed94e7c0a15}\issetup.dll
Publisher: Acresso Software Inc.
MD5: 112cfc84afe46747fc5373135dffe6e1
SHA-1: 70b880c454f5d4786d99f325dc1fbbb1361a5e38
Created: 2013/01/05 22:24:46
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsReno (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\temp\{ce9c8637-783a-4de7-a209-6211498dac5e}\issetup.dll
Publisher: Acresso Software Inc.
MD5: 112cfc84afe46747fc5373135dffe6e1
SHA-1: 70b880c454f5d4786d99f325dc1fbbb1361a5e38
Created: 2013/12/05 10:36:26
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsReno (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\temp\{e2014fe1-6f6d-45f9-af3e-7cc397fc0c18}\googleupdate.exe
Publisher: Google Inc.
Signer: Google Inc
MD5: f02a533f517eb38333cb12a9e8963773
SHA-1: 258810d71436c5157cd0752bd13ce1de20f27eb2
Created: 2012/02/22 0:34:15
Detections: 1
Determination: Ignore detections (false positive)
- F-Prot as W32/Ransom.AD2.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\desktop\ヘルプ フォルダ\hijackthis.exe
Publisher: Trend Micro Inc.
MD5: 47811d50390a86a17102d7496e6eabb9
SHA-1: 2623749cdb27887f6746acdee7e8065475f8b541
Created: 2015/02/05 0:42:20
Detections: 2
Determination: Ignore detections (false positive)
- Kingsoft AntiVirus as Win32.HeurC.KVM099.a.(kcloud) (Undefined)
- Rising Antivirus as PE:Trojan.VBInject!1.6546 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\desktop\ヘルプ フォルダ\otl.exe
Publisher: OldTimer Tools
MD5: 4adcfee16ee9978f06157634669d36fb
SHA-1: 30b37076552e49276836d02dd73d038c27dbbee9
Created: 2015/02/26 1:57:09
Detections: 2
Determination: Ignore detections (false positive)
- Agnitum Outpost as Packed/PECompact
- Bkav FE as HW32.CDB (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\iscsicpl.dll
Publisher: Microsoft Corporation
MD5: f945adcef203e6104aec8ec9c337cfd0
SHA-1: 85fe50b2c2fcbec2c09c5039c8f8c1d38523780a
Created: 2009/07/14 8:46:13
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\nctaudiodisplay2.dll
Publisher: NCT Company Ltd.
MD5: 1b137a24c0e94ef33cfac903397d38d4
SHA-1: a61c9c8ed6e2087b984cd28953af5dd8c6096afa
Created: 2006/01/24 14:24:34
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious.M

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\nctaudiograbber2.dll
Publisher: NCT Company Ltd.
MD5: b3e79e26d91508c7c0405bd34c26108a
SHA-1: 3e17242572db4f77563916b719dda0d6737dbd5b
Created: 2006/01/24 14:24:34
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious.M

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\nctwmafile2.dll
Publisher: NCT Company Ltd.
MD5: 224d5c56dc7cdb4de6e9254dd9914f3e
SHA-1: fb83bd1f84ea6afbf96ad107dcd2029112214b2c
Created: 2006/01/24 14:24:34
Detections: 1
Determination: Ignore detections (false positive)
- McAfee Web Gateway as Heuristic.BehavesLike.Win32.Suspicious.L

---------------------------------------------------------------------------------

File path: c:\programdata\adobe\arm\reader_10.1.4\29898\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: 3cb07566302bceeb898de270a0bec175
SHA-1: 3c79cfc02e2e9877e164d1a7e856fa6bddb34c2f
Created: 2012/12/03 16:35:28
Detections: 1
Determination: Ignore detections (false positive)
- Rising Antivirus as PE:Malware.Sality!6.EDB (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\adobe\reader\9.3\arm\28905\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: b8e421c0890356cd4a793d8a346d9096
SHA-1: 30e85d80d9cefa4c55b33a1bfb6e0507a34267fa
Created: 2012/01/03 16:37:53
Detections: 2
Determination: Ignore detections (false positive)
- Boost by Reason as UnneededApp.Startup.AdobeSystemsorporated.I
- Antiy Labs AVL as Backdoor/Win32.Swrort.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\adobe\arm\reader_10.1.4\29898\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: 3cb07566302bceeb898de270a0bec175
SHA-1: 3c79cfc02e2e9877e164d1a7e856fa6bddb34c2f
Created: 2012/12/03 16:35:28
Detections: 1
Determination: Ignore detections (false positive)
- Rising Antivirus as PE:Malware.Sality!6.EDB (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\adobe\reader\9.3\arm\28905\adobearm.exe
Publisher: Adobe Systems Incorporated
Signer: Adobe Systems, Incorporated
MD5: b8e421c0890356cd4a793d8a346d9096
SHA-1: 30e85d80d9cefa4c55b33a1bfb6e0507a34267fa
Created: 2012/01/03 16:37:53
Detections: 2
Determination: Ignore detections (false positive)
- Boost by Reason as UnneededApp.Startup.AdobeSystemsorporated.I
- Antiy Labs AVL as Backdoor/Win32.Swrort.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\nvidia\updatus\download\3fb908f6\drsupdate.10165912_runasuser.exe
Publisher:
MD5: b8346085319abd014da041b5a9ddd0dc
SHA-1: 1b2f89f455cdadbd5ea68d3c977acbebbc820221
Created: 2012/02/14 18:47:28
Detections: 1
Determination: Ignore detections (false positive)
- SUPERAntiSpyware as Trojan.Agent/Gen-FakeDefender (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\nvidia\updatus\packages\00000000\drsupdate.10165912_runasuser.exe
Publisher:
MD5: 85d630aa5b84ea5a963c35fbd796684b
SHA-1: 8a2050234748a37e84d1b43464ec468217e6ec1a
Created: 2012/11/18 18:27:34
Detections: 1
Determination: Ignore detections (false positive)
- SUPERAntiSpyware as Trojan.Agent/Gen-FakeDefender (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\temp\{01fb4998-33c4-4431-85ed-079e3eefe75d}\postbuild.exe
Publisher:
MD5: a9b581fad00949fe77b5e48a36c1f920
SHA-1: 0aee7658d94f6fe5a839c2e68560435dda09a359
Created: 2012/02/06 10:07:17
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\nvidia\updatus\download\3fb908f6\drsupdate.10165912_runasuser.exe
Publisher:
MD5: b8346085319abd014da041b5a9ddd0dc
SHA-1: 1b2f89f455cdadbd5ea68d3c977acbebbc820221
Created: 2012/02/14 18:47:28
Detections: 1
Determination: Ignore detections (false positive)
- SUPERAntiSpyware as Trojan.Agent/Gen-FakeDefender (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\nvidia\updatus\packages\00000000\drsupdate.10165912_runasuser.exe
Publisher:
MD5: 85d630aa5b84ea5a963c35fbd796684b
SHA-1: 8a2050234748a37e84d1b43464ec468217e6ec1a
Created: 2012/11/18 18:27:34
Detections: 1
Determination: Ignore detections (false positive)
- SUPERAntiSpyware as Trojan.Agent/Gen-FakeDefender (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\temp\{01fb4998-33c4-4431-85ed-079e3eefe75d}\postbuild.exe
Publisher:
MD5: a9b581fad00949fe77b5e48a36c1f920
SHA-1: 0aee7658d94f6fe5a839c2e68560435dda09a359
Created: 2012/02/06 10:07:17
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\apps\2.0\a358qh7e.11a\6a0mmhe5.p9g\amaz...exe_f2fa081ea2183235_0002.0001_none_ac55296a22d33db9\localservicejre\bin\amazonclouddrivew.exe
Publisher: Sun Microsystems, Inc.
Signer: Sun Microsystems, Inc.
MD5: a109c40c04d7ee2d78dfc2268d4ed57f
SHA-1: 2af5af81afd51fe2093d410f8c9eeab4c05b46e1
Created: 2013/09/16 23:34:13
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.Clodb0f.Trojan (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\apps\2.0\a358qh7e.11a\6a0mmhe5.p9g\amaz...exe_f2fa081ea2183235_0002.0001_none_ac55296a22d33db9\localservicejre\bin\attach.dll
Publisher: Sun Microsystems, Inc.
MD5: 244f5de4746f8fc0b359ea3decaec499
SHA-1: 278ea2829db5194e48e1abd68b2d8d40dd554b05
Created: 2013/09/16 23:34:13
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\apps\2.0\a358qh7e.11a\6a0mmhe5.p9g\amaz...exe_f2fa081ea2183235_0002.0004_none_af49860b15879bce\localservicejre\bin\amazonclouddrivew.exe
Publisher: Sun Microsystems, Inc.
Signer: Sun Microsystems, Inc.
MD5: a109c40c04d7ee2d78dfc2268d4ed57f
SHA-1: 2af5af81afd51fe2093d410f8c9eeab4c05b46e1
Created: 2014/03/21 9:23:55
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.Clodb0f.Trojan (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\apps\2.0\a358qh7e.11a\6a0mmhe5.p9g\amaz...exe_f2fa081ea2183235_0002.0004_none_af49860b15879bce\localservicejre\bin\attach.dll
Publisher: Sun Microsystems, Inc.
MD5: 244f5de4746f8fc0b359ea3decaec499
SHA-1: 278ea2829db5194e48e1abd68b2d8d40dd554b05
Created: 2014/03/21 9:23:55
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\apps\2.0\a358qh7e.11a\6a0mmhe5.p9g\amaz..tion_f2fa081ea2183235_0002.0001_cb34a912a946f839\localservicejre\bin\amazonclouddrivew.exe
Publisher: Sun Microsystems, Inc.
Signer: Sun Microsystems, Inc.
MD5: a109c40c04d7ee2d78dfc2268d4ed57f
SHA-1: 2af5af81afd51fe2093d410f8c9eeab4c05b46e1
Created: 2013/09/16 23:34:13
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.Clodb0f.Trojan (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\apps\2.0\a358qh7e.11a\6a0mmhe5.p9g\amaz..tion_f2fa081ea2183235_0002.0001_cb34a912a946f839\localservicejre\bin\attach.dll
Publisher: Sun Microsystems, Inc.
MD5: 244f5de4746f8fc0b359ea3decaec499
SHA-1: 278ea2829db5194e48e1abd68b2d8d40dd554b05
Created: 2013/09/16 23:34:13
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\google\chrome\user data\default\extensions\fpfgglfemmnflnmjminpghmeiajcajoi\3.0.8_0\manifest.json
Publisher:
MD5: 3bf187d1017d2bddaaa5c84b6a29cce5
SHA-1: 54863b06821b0e8ad6c2766a772509cf0da0179c
Created: 2014/08/28 22:18:42
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\manifest.json
Publisher:
MD5: 2d922aa30def0a058f85601f8acb5ce5
SHA-1: 62f069a274a987013c2c75ad46a4487355b0dea2
Created: 2014/02/19 10:39:08
Detections: 1
Determination: Adware
- Reason as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\local\google\chrome\user data\default\extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0\manifest.json
Publisher:
MD5: f521ffc58e967dcaac844625651131d9
SHA-1: 70c68ad72bf9f48dc9dcb677f69d3232a3295f98
Created: 2014/02/01 10:36:53
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\roaming\applicationmanager\uninst.exe
Publisher: Beijing AJ Technology Co., Ltd.
MD5: 8d2f558474f319cbf03da82d09b64e28
SHA-1: ae777b0fb02b6c65cd24ac40f40491e1a6d4f9a4
Created: 2013/10/07 19:09:46
Detections: 1
Determination: Inconclusive
- Dr.Web as Trojan.Siggen2.45718 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\neo\appdata\roaming\applicationmanager\bin\applicationmanager.exe
Publisher: Beijing AJ Technology Co., Ltd
Signer: Beijing AJ Technology Co., Ltd
MD5: b2a30d10cf78b3b0557c369fb7bc2a36
SHA-1: b9ce282b4b9120b05aa74e861bccd330b324b2ee
Created: 2011/06/02 15:52:48
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Heur.Suspicious

---------------------------------------------------------------------------------

File path: c:\program files (x86)\cyberlink\powerdvd9\audiofilter\dolbyhph.dll
Publisher: Lake Technology Limited, http://www.lake.com.au
MD5: 442b5be8aa79b0496c5d0234b78e20ce
SHA-1: 9956235bf6fe3a3220c73a84c8f57c951226655a
Created: 2010/11/23 17:33:22
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as HW32.CDB (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\epson software\event manager\assistants\attach to email\attachtoemail.exe
Publisher: SEIKO EPSON Corp.
MD5: a33a9ecb41f4662b00dbb17db64a7839
SHA-1: b4b101fcef42721ad0d47e00c9cc37c28cf85957
Created: 2009/11/03 12:47:34
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Win32.Almanahe (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\epson software\event manager\assistants\scan assistant\fioall32.dll
Publisher: NewSoft Technology Corporation
MD5: dfd0d26d2056f1d01adcdbb1e851119f
SHA-1: 00936bbea338bab0502d17b3de13604aebeba97f
Created: 2007/07/09 9:36:46
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\epson software\event manager\assistants\scan assistant\fiojpg32.dll
Publisher: newsoftinc
MD5: 8924a376a8ff7d90192e54f6e3ed9903
SHA-1: 60c7c5997d04fd4de82bea026b335b99281e1a42
Created: 2006/11/24 10:35:40
Detections: 1
Determination: Ignore detections (false positive)
- Antiy Labs AVL as Virus/Win32.Xpaj.gen (Undefined)

  • ライダーNeo
  • 2015/02/26 (Thu) 10:11:05
OTL ログの前半

OTL ログの前半です。



OTL logfile created on: 2015/02/26 9:48:33 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Neo\Desktop\ヘルプ フォルダ
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.98 Gb Total Physical Memory | 7.19 Gb Available Physical Memory | 90.03% Memory free
15.96 Gb Paging File | 15.13 Gb Available in Paging File | 94.81% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1862.92 Gb Total Space | 1459.36 Gb Free Space | 78.34% Space Free | Partition Type: NTFS

Computer Name: NEO-PC | User Name: Neo | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/02/26 01:57:19 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Neo\Desktop\ヘルプ フォルダ\OTL.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - File not found [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe /McCoreSvc -- (McMPFSvc)
SRV:[b]64bit:[/b] - [2015/02/01 17:34:26 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2015/02/01 17:34:16 | 004,012,248 | ---- | M] (Avast Software) [On_Demand | Stopped] -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe -- (AvastVBoxSvc)
SRV:[b]64bit:[/b] - [2015/01/13 23:20:30 | 002,711,736 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc)
SRV:[b]64bit:[/b] - [2015/01/12 11:34:30 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/01/24 22:31:40 | 000,022,016 | ---- | M] (Box Inc.) [On_Demand | Stopped] -- C:\Program Files\Box\Box Sync\SyncUpdaterService.exe -- (BoxSyncUpdateService)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2011/12/12 00:00:00 | 000,135,824 | ---- | M] (Seiko Epson Corporation) [Auto | Stopped] -- C:\Windows\SysNative\escsvc64.exe -- (EpsonScanSvc)
SRV - [2015/02/06 10:02:02 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/02/06 09:44:01 | 002,635,552 | ---- | M] (IObit) [Auto | Stopped] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
SRV - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/04/11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013/02/26 00:32:22 | 001,260,320 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013/01/18 08:14:20 | 000,383,264 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2012/07/26 18:41:12 | 000,703,616 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Stopped] -- C:\Program Files (x86)\epson\MyEPSON Connect\mepService.exe -- (MyEPSON Connect Service)
SRV - [2010/10/05 22:08:46 | 002,655,768 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/10/05 22:08:42 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2005/10/25 23:21:50 | 000,061,440 | ---- | M] (Digidesign, A Division of Avid Technology, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe -- (DigiRefresh)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/02/01 17:35:03 | 001,050,432 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,436,624 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,267,632 | ---- | M] () [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,116,728 | ---- | M] (AVAST Software) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswstm.sys -- (aswStm)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,083,280 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,065,776 | ---- | M] () [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,029,208 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:31 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:16 | 000,271,752 | ---- | M] (Avast Software) [Kernel | Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys -- (VBoxAswDrv)
DRV:[b]64bit:[/b] - [2014/07/28 14:52:00 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2014/03/31 21:06:06 | 000,058,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:[b]64bit:[/b] - [2013/07/25 16:53:46 | 000,023,040 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
DRV:[b]64bit:[/b] - [2013/04/04 11:33:50 | 000,051,496 | ---- | M] (Yamaha Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ymidusbx64.sys -- (YMIDUSBW)
DRV:[b]64bit:[/b] - [2013/02/18 09:22:16 | 000,189,288 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2013/01/30 13:11:50 | 000,347,904 | ---- | M] (EldoS Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscbfs3.sys -- (SSCBFS3)
DRV:[b]64bit:[/b] - [2013/01/29 16:22:12 | 000,113,960 | ---- | M] (Yamaha Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ysusb64.sys -- (ysusb64)
DRV:[b]64bit:[/b] - [2012/10/31 07:51:55 | 000,021,136 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:[b]64bit:[/b] - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2012/02/18 08:28:07 | 000,564,792 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2011/12/14 21:22:10 | 000,030,352 | ---- | M] (Steinberg Media Technologies GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\synusb64.sys -- (synusb64)
DRV:[b]64bit:[/b] - [2011/10/15 12:16:16 | 000,075,808 | ---- | M] (McAfee, Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mfenlfk.sys -- (mfenlfk)
DRV:[b]64bit:[/b] - [2011/05/16 22:55:28 | 000,533,096 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011/02/13 10:02:20 | 000,032,944 | ---- | M] (Avid Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dgmbx2fu.sys -- (MBX2DFU)
DRV:[b]64bit:[/b] - [2011/02/13 10:02:16 | 000,194,864 | ---- | M] (Avid Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dgmbx2.sys -- (DGUSBAP)
DRV:[b]64bit:[/b] - [2010/11/21 12:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2010/10/19 23:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2010/09/30 13:53:20 | 000,105,592 | ---- | M] (PACE Anti-Piracy, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\Tpkd.sys -- (Tpkd)
DRV:[b]64bit:[/b] - [2010/04/01 03:56:04 | 000,024,560 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Stopped] -- c:\Program Files\PC-Doctor for Windows\pcdsrvc_x64.pkms -- (PCDSRVC{F36B3A4C-F95654BD-06020000}_0)
DRV:[b]64bit:[/b] - [2009/09/18 01:14:00 | 000,199,296 | ---- | M] (Roland Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rdwm1046.sys -- (RDID1046)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2007/01/22 09:23:00 | 000,077,312 | ---- | M] (Roland Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rdwm1001.sys -- (RDID1001)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2003/04/28 20:38:08 | 000,010,940 | ---- | M] (B.H.A Corporation) [Kernel | System | Stopped] -- C:\Windows\SysWow64\drivers\cdrbsvsd.sys -- (cdrbsvsd)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?PC=AV01
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\Neo\Desktop
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.dospara.co.jp/top/ [binary data]
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?PC=AV01
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://jp.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ja
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 70 EB FF 9D 2C E6 CC 01 [binary data]
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7TWJA_jaJP470
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1


[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015/02/01 17:36:23 | 000,000,000 | ---D | M]

[2015/02/04 21:58:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Neo\AppData\Roaming\mozilla\Extensions
[2012/07/29 10:06:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions

[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: ()
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.60\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\gcswf32.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
CHR - plugin: Babylon Chrome Plugin (Disabled) = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: Java(TM) Platform SE 7 U5 (Enabled) = C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.50.255 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Windows Live Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - Extension: No name found = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: No name found = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpfgglfemmnflnmjminpghmeiajcajoi\3.0.8_0\
CHR - Extension: No name found = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0\

O1 HOSTS File: ([2009/06/11 06:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
O2:[b]64bit:[/b] - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\urlredir.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (no name) - {F6AC6E26-60C4-4132-95EA-F9B2D23C2990} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Evernote extension) - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\urlredir.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No CLSID value found.
O3 - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\Toolbar\WebBrowser: (no name) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - No CLSID value found.
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3384030018-2920189803-760924340-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-3384030018-2920189803-760924340-1001..\Run: [GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote に送る.lnk = C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
O4 - Startup: C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\スマートダイアリー.lnk = C:\Users\Neo\AppData\Roaming\Microsoft\Installer\{37714F81-04A8-4AF6-8F22-1499F13B8870}\_4ae13d6c.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0 File not found
O8:[b]64bit:[/b] - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1 File not found
O8:[b]64bit:[/b] - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0 File not found
O8:[b]64bit:[/b] - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4 File not found
O8:[b]64bit:[/b] - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html ()
O8:[b]64bit:[/b] - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0 File not found
O8 - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1 File not found
O8 - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0 File not found
O8 - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4 File not found
O8 - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html ()
O8 - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3 File not found
O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html ()
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html ()
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html ()
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html ()
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {0A34F491-7249-4BAC-8E46-04DB2CA764CB} http://download.jword.jp/soft/tok2/jword2.cab (Reg Error: Key error.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 11.31.2)
O16 - DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 1.7.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 11.31.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.10.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E7BEDF69-07F0-47E2-9F0C-C58513D12172}: DhcpNameServer = 192.168.10.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FC8662A1-2B37-4037-9C5E-D9BA66475B2C}: DhcpNameServer = 172.20.10.1
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\osf - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysNative\SSCbFsMntNtf3.dll (EldoS Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll (EldoS Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:[b]64bit:[/b] - SharedTaskScheduler: {C28617FD-4FE7-4043-AD51-C8132CE90106} - Virtual Storage Mount Notification - C:\Windows\SysNative\SSCbFsMntNtf3.dll (EldoS Corporation)
O22 - SharedTaskScheduler: {C28617FD-4FE7-4043-AD51-C8132CE90106} - Virtual Storage Mount Notification - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll (EldoS Corporation)
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/02/26 01:56:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\herdProtect
[2015/02/26 01:56:24 | 000,000,000 | ---D | C] -- C:\Program Files\Reason
[2015/02/25 13:42:57 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\Malwarebytes
[2015/02/25 13:42:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2015/02/25 13:42:01 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2015/02/25 13:42:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2015/02/21 14:27:41 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\KeePass
[2015/02/21 14:24:16 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\WinRAR
[2015/02/21 14:18:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\KeePass Password Safe 2
[2015/02/21 11:01:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2015/02/19 17:18:24 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Local\Apple
[2015/02/19 17:18:10 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Local\Apple Computer
[2015/02/19 12:34:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2015/02/19 12:34:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2015/02/19 12:15:02 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Local\Adobe
[2015/02/19 09:22:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2015/02/19 09:12:52 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2015/02/19 09:10:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow x64
[2015/02/19 09:10:36 | 000,000,000 | ---D | C] -- C:\Program Files\ffdshow
[2015/02/18 09:35:44 | 000,950,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perftrack.dll
[2015/02/18 09:35:44 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powertracker.dll
[2015/02/16 09:35:49 | 000,000,000 | ---D | C] -- C:\Users\Neo\Desktop\整理収納
[2015/02/13 22:32:14 | 006,041,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015/02/13 22:32:14 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015/02/13 22:32:14 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2015/02/11 15:19:29 | 000,718,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2015/02/11 15:19:29 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2015/02/11 15:19:29 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015/02/11 15:19:29 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015/02/11 15:19:29 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2015/02/11 15:19:29 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2015/02/11 15:19:29 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2015/02/11 15:19:29 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2015/02/11 15:19:28 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2015/02/11 15:19:28 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2015/02/11 15:19:27 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015/02/11 15:19:27 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015/02/11 15:19:27 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2015/02/11 15:19:27 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2015/02/11 15:19:27 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2015/02/11 15:19:26 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2015/02/11 15:19:26 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015/02/11 15:19:26 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2015/02/11 15:19:26 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015/02/11 15:19:25 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015/02/11 15:19:25 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2015/02/11 15:19:25 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015/02/11 15:19:25 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2015/02/11 15:19:24 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2015/02/11 15:19:24 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2015/02/11 15:19:24 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2015/02/11 15:19:23 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2015/02/11 15:19:23 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2015/02/11 15:19:23 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015/02/11 15:19:22 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015/02/11 15:19:22 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2015/02/11 15:19:22 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015/02/11 14:55:35 | 001,239,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
[2015/02/11 14:55:35 | 001,098,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015/02/11 14:55:35 | 000,894,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/02/11 14:55:35 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/02/11 14:55:35 | 000,609,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/02/11 14:55:35 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/02/11 14:55:34 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/02/11 14:55:34 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/02/11 14:54:42 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2015/02/11 14:52:16 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2015/02/11 14:52:07 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2015/02/11 14:52:06 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2015/02/11 14:52:06 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2015/02/11 14:52:05 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2015/02/11 14:52:05 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2015/02/11 14:52:05 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2015/02/11 14:52:05 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2015/02/11 14:52:05 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2015/02/11 14:52:05 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2015/02/11 14:52:05 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2015/02/11 14:52:05 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2015/02/11 14:52:05 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2015/02/11 14:51:13 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2015/02/11 14:50:24 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2015/02/11 14:50:20 | 003,722,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2015/02/11 14:50:20 | 003,221,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2015/02/11 14:50:19 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2015/02/11 11:36:07 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2015/02/11 11:36:07 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2015/02/11 11:27:11 | 005,554,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2015/02/11 11:27:10 | 003,972,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2015/02/11 11:27:10 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2015/02/11 11:27:08 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2015/02/11 11:27:08 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2015/02/11 11:27:07 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2015/02/09 09:53:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2015/02/09 09:53:29 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2015/02/09 09:53:29 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2015/02/09 09:53:29 | 000,000,000 | ---D | C] -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
[2015/02/09 09:12:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
[2015/02/09 09:04:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2015/02/09 09:04:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2015/02/06 10:15:32 | 000,000,000 | ---D | C] -- C:\Users\Neo\Desktop\ヘルプ フォルダ
[2015/02/06 09:44:14 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\ProductData
[2015/02/06 09:44:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
[2015/02/06 09:44:05 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2015/02/06 09:44:04 | 000,000,000 | ---D | C] -- C:\ProgramData\ProductData
[2015/02/06 09:44:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IObit
[2015/02/05 00:49:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/02/05 00:49:34 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/02/04 21:38:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/02/03 09:59:04 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Baidu
[2015/02/01 17:41:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\vbox
[2015/02/01 17:41:04 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\vbox
[2015/02/01 17:34:34 | 000,364,512 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2015/02/01 17:34:30 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2015/02/01 16:34:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Permanent Readability
[2015/02/01 16:32:49 | 000,000,000 | ---D | C] -- C:\ProgramData\{9794a866-caaf-3fcb-9794-4a866caaa19b}
[2015/02/01 16:30:13 | 000,000,000 | ---D | C] -- C:\ProgramData\{b089ffd3-39c8-b191-b089-9ffd339cff4c}
[2015/01/30 15:33:55 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\Epson
[2015/01/30 15:30:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\EPSON
[2015/01/30 15:17:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software
[2015/01/30 15:17:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Epson Software
[2015/01/30 15:15:40 | 000,466,432 | ---- | C] (Seiko Epson Corporation) -- C:\Windows\SysNative\esxw2ud.dll
[2015/01/30 15:15:40 | 000,135,824 | ---- | C] (Seiko Epson Corporation) -- C:\Windows\SysNative\escsvc64.exe
[2015/01/30 15:15:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
[2015/01/30 15:15:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\epson
[2015/01/30 15:15:15 | 000,010,752 | ---- | C] (SEIKO EPSON CORP.) -- C:\Windows\SysNative\E_GCINST.DLL
[2015/01/30 15:15:14 | 000,120,320 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_ILMIGJ.DLL
[2015/01/30 15:15:14 | 000,083,968 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_ID4BIGJ.DLL
[2015/01/30 15:15:10 | 000,000,000 | ---D | C] -- C:\ProgramData\EPSON
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Neo\AppData\Local\*.tmp files -> C:\Users\Neo\AppData\Local\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/02/26 09:44:53 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/02/26 09:44:28 | 2133,446,655 | -HS- | M] () -- C:\hiberfil.sys
[2015/02/26 09:37:02 | 000,001,054 | ---- | M] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote に送る.lnk
[2015/02/26 09:06:23 | 000,032,128 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/02/26 09:06:23 | 000,032,128 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/02/26 09:01:03 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/02/26 08:59:09 | 000,000,686 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/02/26 07:45:00 | 000,000,690 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/02/25 14:14:05 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\OKAMOTO'S 『HAPPY BIRTHDAY』 - YouTube.url
[2015/02/25 14:08:37 | 000,000,057 | ---- | M] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 トップ.url
[2015/02/25 10:17:40 | 000,000,074 | ---- | M] () -- C:\Users\Neo\Desktop\We3 - Rude - Magic (A Cappella cover) - YouTube.url
[2015/02/24 00:15:21 | 004,357,142 | ---- | M] () -- C:\Users\Neo\Desktop\story.mp3
[2015/02/24 00:01:11 | 001,956,340 | ---- | M] () -- C:\Users\Neo\Desktop\勝手にシンドバッド.m4a
[2015/02/22 14:06:27 | 000,671,726 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2414.JPG
[2015/02/22 12:48:52 | 000,657,159 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2411.JPG
[2015/02/22 10:22:04 | 000,646,809 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2409.JPG
[2015/02/22 10:02:09 | 000,583,031 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2407.JPG
[2015/02/21 22:25:17 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\Piece of Cake-Medley - YouTube.url
[2015/02/21 12:59:01 | 000,002,272 | ---- | M] () -- C:\Users\Neo\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/02/19 15:40:58 | 005,194,044 | ---- | M] () -- C:\Users\Neo\Desktop\RisingSun.pdf
[2015/02/19 15:39:27 | 004,380,129 | ---- | M] () -- C:\Users\Neo\Desktop\RisingSun-学校公演用.mp3
[2015/02/19 10:20:06 | 000,000,080 | ---- | M] () -- C:\Users\Neo\Desktop\宅配買取のご案内 - オーディオ高く売れるドットコム.url
[2015/02/19 09:21:40 | 000,272,296 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2015/02/19 09:21:40 | 000,176,552 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2015/02/19 09:21:40 | 000,098,216 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2015/02/19 09:21:39 | 000,176,552 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2015/02/18 10:12:59 | 001,313,238 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2015/02/18 10:12:59 | 000,654,270 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015/02/18 10:12:59 | 000,411,178 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
[2015/02/18 10:12:59 | 000,122,224 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
[2015/02/18 10:12:59 | 000,122,142 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015/02/16 15:16:27 | 000,000,120 | ---- | M] () -- C:\Users\Neo\Desktop\2月ミノヤ - Google スプレッドシート.url
[2015/02/16 11:24:05 | 000,000,066 | ---- | M] () -- C:\Users\Neo\Desktop\マイドライブ - Google ドライブ.url
[2015/02/15 21:15:00 | 000,000,109 | ---- | M] () -- C:\Users\Neo\Desktop\A cappella all stars - The Morning Show.url
[2015/02/14 00:07:38 | 000,001,135 | ---- | M] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2015/02/14 00:07:28 | 000,001,017 | ---- | M] () -- C:\Users\Neo\Desktop\Dropbox.lnk
[2015/02/13 22:09:15 | 000,484,856 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2015/02/11 11:25:56 | 000,000,063 | ---- | M] () -- C:\Users\Neo\Desktop\買取申込フォーム|本・DVDの買取なら買取王子.url
[2015/02/11 11:15:37 | 001,292,086 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2015/02/06 10:02:02 | 000,701,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2015/02/06 10:02:02 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2015/02/05 10:33:40 | 000,000,088 | ---- | M] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 個室.url
[2015/02/05 00:35:10 | 000,007,597 | ---- | M] () -- C:\Users\Neo\AppData\Local\Resmon.ResmonCfg
[2015/02/04 12:16:29 | 000,609,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/02/04 12:16:20 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/02/04 12:16:16 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/02/04 12:16:14 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/02/04 12:16:13 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/02/04 12:16:13 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/02/04 12:13:28 | 001,098,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015/02/04 10:39:12 | 014,979,837 | ---- | M] () -- C:\Users\Neo\Desktop\We3.mp4
[2015/02/01 17:35:03 | 001,050,432 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys
[2015/02/01 17:34:32 | 000,436,624 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
[2015/02/01 17:34:32 | 000,364,512 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2015/02/01 17:34:32 | 000,267,632 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2015/02/01 17:34:32 | 000,116,728 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswstm.sys
[2015/02/01 17:34:32 | 000,083,280 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2015/02/01 17:34:32 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2015/02/01 17:34:32 | 000,029,208 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys
[2015/02/01 17:34:31 | 000,093,568 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2015/02/01 17:34:30 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2015/02/01 16:50:23 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\We3 - Kiss, at the Kitsh Lounge Riot, Cafe De Paris 2014 - YouTube.url
[2015/02/01 16:48:39 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\We3 (Fraser, Steve & Andy from The Magnets) - Faith-Mama Do The Hump and Locked Out Of Heaven - YouTube.url
[2015/01/28 08:36:21 | 001,239,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
[1 C:\Users\Neo\AppData\Local\*.tmp files -> C:\Users\Neo\AppData\Local\*.tmp -> ]
  • ライダーNeo
  • 2015/02/26 (Thu) 10:13:50
OTL ログの後半


OTL ログの後半です。





[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/02/25 14:14:05 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\OKAMOTO'S 『HAPPY BIRTHDAY』 - YouTube.url
[2015/02/25 13:38:25 | 000,671,726 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2414.JPG
[2015/02/25 13:38:25 | 000,657,159 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2411.JPG
[2015/02/25 13:38:25 | 000,646,809 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2409.JPG
[2015/02/25 13:38:24 | 000,583,031 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2407.JPG
[2015/02/25 11:08:40 | 000,001,054 | ---- | C] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote に送る.lnk
[2015/02/25 10:17:40 | 000,000,074 | ---- | C] () -- C:\Users\Neo\Desktop\We3 - Rude - Magic (A Cappella cover) - YouTube.url
[2015/02/24 00:21:20 | 007,690,499 | ---- | C] () -- C:\Users\Neo\Desktop\150303太東中学校校歌.mp3
[2015/02/24 00:21:19 | 000,260,646 | ---- | C] () -- C:\Users\Neo\Desktop\太東中学校 校歌歌詞.pdf
[2015/02/24 00:15:44 | 004,357,142 | ---- | C] () -- C:\Users\Neo\Desktop\story.mp3
[2015/02/24 00:14:29 | 001,956,340 | ---- | C] () -- C:\Users\Neo\Desktop\勝手にシンドバッド.m4a
[2015/02/21 22:25:17 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\Piece of Cake-Medley - YouTube.url
[2015/02/21 14:18:41 | 000,001,124 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk
[2015/02/21 11:01:10 | 000,002,272 | ---- | C] () -- C:\Users\Neo\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/02/19 15:39:52 | 005,194,044 | ---- | C] () -- C:\Users\Neo\Desktop\RisingSun.pdf
[2015/02/19 15:39:47 | 004,380,129 | ---- | C] () -- C:\Users\Neo\Desktop\RisingSun-学校公演用.mp3
[2015/02/19 12:34:36 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2015/02/19 10:20:06 | 000,000,080 | ---- | C] () -- C:\Users\Neo\Desktop\宅配買取のご案内 - オーディオ高く売れるドットコム.url
[2015/02/19 09:10:37 | 000,127,488 | ---- | C] () -- C:\Windows\SysNative\ff_vfw.dll
[2015/02/16 15:16:27 | 000,000,120 | ---- | C] () -- C:\Users\Neo\Desktop\2月ミノヤ - Google スプレッドシート.url
[2015/02/16 11:24:05 | 000,000,066 | ---- | C] () -- C:\Users\Neo\Desktop\マイドライブ - Google ドライブ.url
[2015/02/15 21:15:00 | 000,000,109 | ---- | C] () -- C:\Users\Neo\Desktop\A cappella all stars - The Morning Show.url
[2015/02/11 11:25:56 | 000,000,063 | ---- | C] () -- C:\Users\Neo\Desktop\買取申込フォーム|本・DVDの買取なら買取王子.url
[2015/02/07 10:35:59 | 000,002,899 | ---- | C] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\スマートダイアリー.lnk
[2015/02/07 10:35:59 | 000,001,135 | ---- | C] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2015/02/05 10:33:40 | 000,000,088 | ---- | C] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 個室.url
[2015/02/05 10:33:40 | 000,000,057 | ---- | C] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 トップ.url
[2015/02/05 00:35:10 | 000,007,597 | ---- | C] () -- C:\Users\Neo\AppData\Local\Resmon.ResmonCfg
[2015/02/04 10:36:00 | 014,979,837 | ---- | C] () -- C:\Users\Neo\Desktop\We3.mp4
[2015/02/01 16:50:23 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\We3 - Kiss, at the Kitsh Lounge Riot, Cafe De Paris 2014 - YouTube.url
[2015/02/01 16:48:39 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\We3 (Fraser, Steve & Andy from The Magnets) - Faith-Mama Do The Hump and Locked Out Of Heaven - YouTube.url
[2014/06/23 16:30:00 | 000,000,000 | ---- | C] () -- C:\Users\Neo\AppData\Local\{CF7F7C70-E361-4CC6-BF02-99D7CAA60BB1}
[2014/01/06 12:41:50 | 001,292,086 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/10/11 10:04:39 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2013/07/28 14:07:34 | 000,000,051 | ---- | C] () -- C:\Windows\SysWow64\SYNSOPOS.exe.cfg
[2013/07/28 13:57:34 | 000,002,892 | ---- | C] () -- C:\Windows\SysWow64\audcon.sys
[2013/07/28 13:57:01 | 000,086,016 | ---- | C] () -- C:\Windows\SysWow64\SYNSOPOS.exe
[2012/02/28 23:28:33 | 000,032,652 | ---- | C] () -- C:\Users\Neo\AppData\Roaming\UserTile.png
[2012/02/19 01:29:32 | 000,017,408 | ---- | C] () -- C:\Users\Neo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/06/25 11:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/25 10:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 12:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/02/26 09:01:03 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/02/26 08:59:09 | 000,000,686 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/02/26 07:45:00 | 000,000,690 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/02/29 14:00:00 | 000,000,466 | ---- | M] () -- C:\Windows\tasks\PCDoctorBenchmarkTask.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: ST2000DL003-9VT166 ATA Device
Partitions: 2
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 100.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 1,863.00GB
Starting Offset: 105906176
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2009/07/14 10:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2013/02/27 14:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2015/01/15 17:09:15 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2014/07/07 11:06:31 | 000,187,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2014/07/07 10:40:07 | 000,143,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/21 12:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 13:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2012/02/11 15:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2015/01/15 17:09:15 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2015/01/15 17:09:15 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/21 12:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/21 12:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/19 12:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2014/10/03 11:11:51 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2014/10/03 11:11:51 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/21 12:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/21 12:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2014/05/15 01:23:46 | 002,477,536 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]
[1999/12/17 00:00:00 | 000,069,632 | ---- | M] (奈良先端科学技術大学院大学 情報科学研究科 自然言語処理学講座) -- C:\WinCha.exe

< End of report >
  • ライダーNeo
  • 2015/02/26 (Thu) 10:15:18
Extrasログ

Extrasログです。




OTL Extras logfile created on: 2015/02/26 9:48:33 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Neo\Desktop\ヘルプ フォルダ
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.98 Gb Total Physical Memory | 7.19 Gb Available Physical Memory | 90.03% Memory free
15.96 Gb Paging File | 15.13 Gb Available in Paging File | 94.81% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1862.92 Gb Total Space | 1459.36 Gb Free Space | 78.34% Space Free | Partition Type: NTFS

Computer Name: NEO-PC | User Name: Neo | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\system32\rundll32.exe" "C:\Windows\system32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Users\Neo\AppData\Roaming\File Scout\filescout.exe" /open "%1"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- Reg Error: Key error.
https [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Users\Neo\AppData\Roaming\File Scout\filescout.exe" /open "%1"
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{048C9781-3D5C-46B1-93C8-B1A75F37BDAF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
"{81CEB8B1-62B4-445C-A4C6-A9E735DAB40B}" = lport=2869 | protocol=6 | dir=in | app=system |
"{93CF59F3-1102-44A2-B58E-F0884D707683}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{9998C9C8-677D-4A24-844F-16DAB77B7A0B}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{A7A8377B-55C3-406B-9849-BBEE7409DE7B}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{AD6A3D67-26D5-4936-B8D6-FADCB97D3E9F}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0CC8D4E7-02A2-4B2F-AAF7-EB67AC6C4CF4}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{1820B9E7-9EFA-45C4-92C6-E73EF45E5180}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{1C05958E-7161-4F31-86F9-C96064762B40}" = dir=in | app=c:\users\neo\appdata\local\microsoft\skydrive\skydrive.exe |
"{1EEEB7C1-46F8-449D-BF45-6766370E1AA9}" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"{20CA0409-95D0-4871-AE26-2E8E21E082BC}" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"{24698612-1AF7-422D-938A-4A9C48ED6E72}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe |
"{281C02E4-6FF4-40E3-BE08-C0D7DEB3ED1C}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"{44A97954-2278-4D01-AE20-D71B735DC3FC}" = protocol=6 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe |
"{87E27FB1-9F87-4FAE-AB2D-2F5C38AED64C}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{90A70158-3E3A-4A8A-9D89-7ABCF452AE98}" = protocol=6 | dir=in | app=c:\users\neo\appdata\roaming\dropbox\bin\dropbox.exe |
"{99121AB5-866B-46D0-AB52-8583038A3F9A}" = protocol=17 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe |
"{A4192708-89C1-4F89-B04A-E0AABBA0C997}" = protocol=17 | dir=in | app=c:\users\neo\appdata\roaming\dropbox\bin\dropbox.exe |
"{B2118BDB-E3F8-4637-A399-8ED863465CAD}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{B9EEA68F-605C-4FC9-B2DA-9BFEA671ACAA}" = dir=in | app=c:\program files\itunes\itunes.exe |
"{BB711A95-921D-4280-918D-B7F5B16E24D2}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd9\powerdvd9.exe |
"{C0C62CAF-4276-4AD5-9F46-4BBDDBDAEA64}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{D81268E5-AC9E-410E-A338-439EFBA3F986}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{F819BBA3-595C-4E1B-B638-CF096DB53271}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe |
"TCP Query User{1905F7F7-8A56-4645-91E3-69AAA7586423}C:\program files (x86)\woopie video desktop\woopievideodesktop.exe" = protocol=6 | dir=in | app=c:\program files (x86)\woopie video desktop\woopievideodesktop.exe |
"TCP Query User{3571515B-0917-4A43-9A73-67826875B71E}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"TCP Query User{93982A03-3BAB-4DDB-9CE6-8BB1B19365C8}C:\users\neo\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\neo\appdata\roaming\dropbox\bin\dropbox.exe |
"TCP Query User{C7EE2ED0-5C99-4BF4-BF73-ABD309E3C167}C:\program files (x86)\ez-design\radikool\libs\rtmpsuck.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ez-design\radikool\libs\rtmpsuck.exe |
"UDP Query User{313A9B8D-AFF9-4DE2-9732-FCF68AC3EE80}C:\program files (x86)\woopie video desktop\woopievideodesktop.exe" = protocol=17 | dir=in | app=c:\program files (x86)\woopie video desktop\woopievideodesktop.exe |
"UDP Query User{4905B8F0-6FC8-4E5B-A3A9-4DCAE9BC3F72}C:\program files (x86)\ez-design\radikool\libs\rtmpsuck.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ez-design\radikool\libs\rtmpsuck.exe |
"UDP Query User{B1E6430A-D2F6-4A89-943D-3C8ED92F4DC9}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{DE2BC73A-BF1E-4409-98F5-B2AA37D480FE}C:\users\neo\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\neo\appdata\roaming\dropbox\bin\dropbox.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1AAF6669-31B2-3840-9346-F0F653840FD1}" = Microsoft .NET Framework 4.5.1 (JPN)
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{25058321-C33E-496B-8915-6FD64D362CAF}" = Windows Live MIME IFilter
"{25613C10-27D2-410B-942B-D922D5C3A7BE}" = Interlok driver setup x64
"{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2
"{28791292-D18D-42FA-AE66-3D3D20AA8618}" = Apple Application Support(64 ビット)
"{309768A4-A2BB-4930-A5A2-8169678C9B4C}" = iCloud
"{4D65ECE6-131D-4B5F-8470-2750D3161619}" = Steinberg Retrologue 64bit
"{57FB2180-0FC7-41FC-8D76-3C4271CF4422}" = Steinberg Cubase 7 64bit
"{5ED7462B-EF58-4757-B609-53755021EC34}" = Apple Mobile Device Support
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{71E75F05-930E-41BA-BDBC-15E3134DD45B}" = Yamaha USB-MIDI Driver
"{75F15019-C0C2-4047-AA45-97B4BD313719}" = Steinberg Padshop 64bit
"{7B8D4E8A-EA2B-4A71-BFEB-A4AAAB87C5D0}" = iTunes
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041" = Microsoft .NET Framework 4.5.1 (日本語)
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95D90857-61C2-4927-85FF-A317E46E7351}" = Steinberg Eucon Adapter 6.5 64bit
"{A5E1B0A4-8B10-418B-9E78-2EFE5B3F5AC3}" = Box Sync
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision ドライバー 311.06
"{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA コントロール パネル 311.06
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA グラフィックス ドライバー 311.06
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller Driver 270.61
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX システム ソフトウェア 9.10.0514
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA アップデート 1.11.3
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD オーディオ ドライバー 1.3.18.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B99C316B-C135-43B5-8E77-2BC5E241F964}" = Steinberg HALion Sonic SE 64bit
"{CB3CA48C-95CB-412B-B7AE-6F2EA8F89907}" = Windows Live Family Safety
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{D2837730-4960-3B35-8088-201387FD3BDB}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
"{E976141F-5B03-429D-84C2-392E6BB1A45A}" = Yamaha Steinberg USB Driver
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"CCleaner" = CCleaner
"EPSON PX-045A Series" = EPSON PX-045A Series プリンター アンインストール
"ffdshow64_is1" = ffdshow x64 v1.3.4533 [2014-09-29]
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語
"O365HomePremRetail - ja-jp" = Microsoft Office 365 - ja-jp
"OneNoteFreeRetail - ja-jp" = Microsoft OneNote 2013 - ja-jp
"PC-Doctor for Windows" = PC-Doctor for Windows
"WinRAR archiver" = WinRAR 5.01 (64ビット)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{024D6C9E-4775-421D-B0D0-D4F123687778}" = Windows Live Essentials
"{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}" = Windows Live Writer
"{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
"{0BE9E708-5DC0-4963-9CFD-0AA519090E79}" = Junk Mail filter update
"{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink Blu-ray Disc Suite
"{25A48104-B45E-455D-AF0C-71F869AEC719}" = Windows Live Family Safety
"{26A24AE4-039D-4CA4-87B4-2F83218031F0}" = Java 8 Update 31
"{28F79721-BB9E-48A9-AFA4-F9A1F19D14DA}" = Yamaha MOTIF-RACK ES Multi Part Editor
"{2cc5ad0f-ca91-4794-bdfc-ff8c6033a3f1}" = Box Sync
"{2D2D8FE2-605C-4D3C-B706-36E981E7EEF0}" = CyberLink BD Advisor 2.0
"{2FE00055-C4F3-4F7A-AEDD-E198D54CF12F}" = Apple Application Support(32 ビット)
"{3361D415-BA35-4143-B301-661991BA6219}" = MyEPSON Connect
"{37714F81-04A8-4AF6-8F22-1499F13B8870}" = スマートダイアリー 2.5b
"{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}" = QuickTime 7
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink LG Burning Tool
"{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
"{490BF87E-1F75-4453-BF55-9F540543A3CA}" = Steinberg Drum Loop Expansion 01
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4D454CF8-12FD-464D-B57B-B46FE27B78BB}" = Steinberg LoopMash Content
"{4FD2D1C8-8636-11E4-9D21-00163E98E7D6}" = Evernote v. 5.8.1
"{52D7E962-5F17-4D7E-858F-956EB09A5CB8}" = Windows Live Writer
"{532B917B-8235-4FA5-BE36-643A8BB053A5}" = Steinberg REVerence Content 01
"{548F12A2-BD2E-4B5A-9B62-BBC0AA8EB3DD}" = Everio MediaBrowser 3
"{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}" = EPSON Scan OCR コンポーネント
"{59FEFE3F-8119-457C-A4EE-CF24202DD9D2}" = Visual Basic 6.0 SP6 ランタイムライブラリ 第4版
"{5E848897-1113-49FE-8FCE-D4BF39EDE254}" = Windows Live UX Platform Language Pack
"{611A7035-0172-4B9B-8BB6-5046F6867D8A}" = Steinberg Groove Agent ONE Allen Morgan Signature Drums
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
"{65EACBB4-B0B8-4A5B-AE46-22DBE15C70B5}" = Google Drive
"{6B1BB7E3-CF20-4842-B1FE-42C251B95E98}" = Windows Live Messenger
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{714E162E-CD4F-4F1B-8302-7F5179409C25}" = Windows Live Writer
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{80E158EA-7181-40FE-A701-301CE6BE64AB}" = CyberLink MediaShow
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{88BBBD8F-4C19-4809-B84B-7A8F8238B48D}" = Steinberg Upload Manager
"{88C337F0-4CF2-4098-BDC0-D94859ECA2B4}" = Steinberg LoopMash Content 2
"{898386DF-CE1A-464B-929C-578A827FA817}" = Yamaha Studio Manager
"{89DE2651-6DD9-4C15-AC94-8348362D456C}" = Steinberg Midi Loop Library
"{8CBA7E47-48DA-47DC-8E98-6984BA830295}" = Steinberg VST Amp Rack Content 01
"{8DB78650-4C45-4280-1100-506F64536F75}" = PodSoundRipper LE(デジ造版)
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8EA12696-D38C-44DD-96E5-12C8DF6F8230}" = Windows Live Writer Resources
"{8F01524C-0676-4CC1-B4AE-64753C723391}" = Epson Event Manager
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0411-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{960C3FE6-08CE-11D8-8537-0060674BA766}" = Singer Song Writer 8.0 VS
"{97E3AE69-8FB1-496A-8CA0-AE491902DCD7}" = Movie Maker
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A5051ABF-A497-4C3C-85EA-F7A4D5C19B82}" = Steinberg HALion Sonic SE Content
"{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-1041-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Japanese
"{AC997F93-0757-4ED4-A701-F40C2D654D09}" = Steinberg HALionOne GM Drum Set
"{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}" = Permanent Readability
"{AEDA8B17-9571-4839-9240-F93E41198E19}" = Windows Live Sync
"{B064BF5C-EBCC-449E-97F8-9E58310B8A96}" = Steinberg CI2 Extension 64bit
"{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
"{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}" = Windows Live Mail
"{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = CyberLink PowerProducer
"{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}" = NVIDIA PhysX
"{BAF3C332-CF42-4593-AC9A-E9B2A3FA3B8E}" = Steinberg Cubase AI 5
"{BD86F1AC-B594-46E4-85DC-1258AC9E2232}" = Steinberg Groove Agent ONE Content
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
"{C8FEB019-F2E1-4E8F-886E-AB5C68FE531C}" = Windows Live メール
"{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
"{D6D69EE4-00F6-4DCE-B7AF-E90042BDE39B}" = フォト ギャラリー
"{DA6FFDC8-2479-4974-ADAA-7F2A2F145C71}" = ILLUSION むすメイク きゃらメイク&Hビューアー
"{DBF4BC99-53F1-4C97-84C3-7557D103E182}" = Steinberg Groove Agent ONE Vintage Beatboxes
"{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E703613B-BDAB-433E-A66A-DE0263E3D35D}" = Windows Live Messenger
"{E70E7159-93B1-470D-9FBD-D8E9EF34B538}" = Steinberg HALionOne
"{F057965A-D974-4C64-ADB1-4381CD4B8956}" = Steinberg HALionOne GM Set
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3BB7E2D-62E0-4008-8727-588EDC274C25}" = Photo Common
"Adobe Flash Player ActiveX" = Adobe Flash Player 16 ActiveX
"ApplicationManager" = ApplicationManager 2011.4.27.209
"Audacity_is1" = Audacity 2.0.2
"avast" = Avast Free Antivirus
"B991B020-2968-11D8-AF23-444553540000_is1" = FreeMind
"ELECOM RAKUTIN PRINT" = エレコムらくちんプリント
"eLicenser Control" = eLicenser Control
"EPSON PX-045A Series Useg" = EPSON PX-045A Series ユーザーズガイド
"EPSON Scanner" = EPSON Scan
"Google Chrome" = Google Chrome
"HaaliMkx" = Haali Media Splitter
"Handbrake日本語版" = Handbrake日本語版 0.9.4
"herdProtectScan" = herdProtect Anti-Malware Scanner
"ImgBurn" = ImgBurn
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink Blu-ray Disc Suite
"InstallShield_{28F79721-BB9E-48A9-AFA4-F9A1F19D14DA}" = Yamaha MOTIF-RACK ES Multi Part Editor
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink LG Burning Tool
"InstallShield_{71E75F05-930E-41BA-BDBC-15E3134DD45B}" = Yamaha USB-MIDI Driver
"InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}" = CyberLink MediaShow
"InstallShield_{898386DF-CE1A-464B-929C-578A827FA817}" = Yamaha Studio Manager
"InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9
"InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}" = CyberLink PowerProducer
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
"InstallShield_{E976141F-5B03-429D-84C2-392E6BB1A45A}" = Yamaha Steinberg USB Driver
"IObitUninstall" = IObit Uninstaller
"KeePassPasswordSafe2_is1" = KeePass Password Safe 2.28
"LAME_is1" = LAME v3.99.3 (for Windows)
"LINE" = LINE
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware バージョン 1.75.0.1300
"MyEPSON Connect" = MyEPSON Connect
"NVIDIA StereoUSB Driver" = NVIDIA 3D Vision Controller Driver
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"oCam_is1" = oCam version 39.0.0.0
"SoundEngine Free" = SoundEngine Free
"SugarSync" = SugarSync
"WinLiveSuite" = Windows Live Essentials
"WinRAR archiver" = WinRAR アーカイバ

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"23ab716f18849b6f" = Amazon Cloud Drive
"Dropbox" = Dropbox
"OneDriveSetup.exe" = Microsoft OneDrive

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2015/02/24 20:52:40 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/24 20:56:15 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/24 21:33:32 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/25 1:39:27 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/25 1:45:30 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/25 2:36:54 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/25 12:53:39 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/25 18:25:12 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/25 19:59:02 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/02/25 20:46:02 | Computer Name = Neo-PC | Source = WinMgmt | ID = 10
Description =

[ Media Center Events ]
Error - 2012/03/07 21:04:13 | Computer Name = Neo-PC | Source = MCUpdate | ID = 0
Description = 10:04:13 - MCESpotlight を取得できませんでした (エラー: HTTP ステータス 503: Service
Unavailable で要求が失敗しました。)

[ System Events ]
Error - 2015/02/25 20:45:47 | Computer Name = Neo-PC | Source = DCOM | ID = 10005
Description =

Error - 2015/02/25 20:45:47 | Computer Name = Neo-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/02/25 20:45:48 | Computer Name = Neo-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/02/25 20:45:48 | Computer Name = Neo-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/02/25 20:45:48 | Computer Name = Neo-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/02/25 20:45:48 | Computer Name = Neo-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/02/25 20:45:48 | Computer Name = Neo-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/02/25 20:46:33 | Computer Name = Neo-PC | Source = DCOM | ID = 10005
Description =

Error - 2015/02/25 20:46:33 | Computer Name = Neo-PC | Source = DCOM | ID = 10005
Description =

Error - 2015/02/25 20:46:33 | Computer Name = Neo-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068


< End of report >











よろしくお願いします。
  • ライダーNeo
  • 2015/02/26 (Thu) 10:16:40
OTLで処置しましょう
ログを確認させていただきました。
悪代官の伏魔殿個室と言うのに軽く笑ってしまいました。
見たところまだまだ残っているようです。
Baiduとか最初に駆除しておいてまだ残ってるとかいよいよ手口が汚くなってきましたね。
HPは不要ですので、導入時の指示に従って削除なされてください。

メモ帳を起動させ、以下をコピペしてください。
なお、:OTL、:Files、:Commandsの3つはOTLでの処理方法を決める命令文です。
削除なされないようご注意ください。

------コピペこの下より------
:OTL
SRV:[b]64bit:[/b] - File not found [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe /McCoreSvc -- (McMPFSvc)
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 1
CHR - plugin: Babylon Chrome Plugin (Disabled) = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
O16 - DPF: {0A34F491-7249-4BAC-8E46-04DB2CA764CB} http://download.jword.jp/soft/tok2/jword2.cab (Reg Error: Key error.)
[2015/02/25 13:42:57 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\Malwarebytes
[2015/02/25 13:42:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2015/02/25 13:42:01 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2015/02/25 13:42:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2015/02/09 09:53:29 | 000,000,000 | ---D | C] -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
[2015/02/04 21:38:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/02/03 09:59:04 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Baidu
[2013/07/28 14:07:34 | 000,000,051 | ---- | C] () -- C:\Windows\SysWow64\SYNSOPOS.exe.cfg
[2013/07/28 13:57:01 | 000,086,016 | ---- | C] () -- C:\Windows\SysWow64\SYNSOPOS.exe

:Files
c:\users\neo\appdata\local\google\chrome\user data\default\extensions\fpfgglfemmnflnmjminpghmeiajcajoi
c:\users\neo\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda
c:\users\neo\appdata\local\google\chrome\user data\default\extensions\ofoecbmpcapdooelojbgclipojlgpfdf
c:\program files\common files\mcafee

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------コピペこの上まで------

コピペが完了しましたら、分かりやすいお名前をつけて保存してください。
その後、PCをセーフモードで起動させてください。
再度OTLを起動させ、Custom Scan/Fixesの項目内に上記で保存した内容をコピペしてください。
今回は駆除作業のため、その他のチェック項目はありません。
赤い文字の[Run Fix]をクリックして処置を開始してください。
OTLの処置に従って進めてゆき、通常モードで再起動を行うと処置ログが表示されますので、
そちらのログを貼り付けてご連絡ください。
またその際に状況報告もお願いいたします。
  • IVNO
  • MAIL
  • 2015/02/26 (Thu) 10:40:16
OTLのログです。
OTLのログです。
よろしくお願いします。



All processes killed
========== OTL ==========
Error: No service named McMPFSvc was found to stop!
Service\Driver key McMPFSvc not found.
File C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe /McCoreSvc not found.
HKU\S-1-5-21-3384030018-2920189803-760924340-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
File C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll not found.
Starting removal of ActiveX control {0A34F491-7249-4BAC-8E46-04DB2CA764CB}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Folder C:\Users\Neo\AppData\Roaming\Malwarebytes\ not found.
Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware\ not found.
File C:\Windows\SysNative\drivers\mbam.sys not found.
Folder C:\Program Files (x86)\Malwarebytes' Anti-Malware\ not found.
Folder C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\ not found.
Folder C:\ProgramData\Malwarebytes\ not found.
Folder C:\Users\Public\Documents\Baidu\ not found.
File C:\Windows\SysWow64\SYNSOPOS.exe.cfg not found.
File C:\Windows\SysWow64\SYNSOPOS.exe not found.
========== FILES ==========
File\Folder c:\users\neo\appdata\local\google\chrome\user data\default\extensions\fpfgglfemmnflnmjminpghmeiajcajoi not found.
File\Folder c:\users\neo\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda not found.
File\Folder c:\users\neo\appdata\local\google\chrome\user data\default\extensions\ofoecbmpcapdooelojbgclipojlgpfdf not found.
File\Folder c:\program files\common files\mcafee not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LogMeInRemoteUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Neo
->Temp folder emptied: 1216791 bytes
->Temporary Internet Files folder emptied: 128 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 1.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 02272015_094355

Files\Folders moved on Reboot...
File\Folder C:\Users\Neo\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File move failed. C:\Users\Neo\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...



  • ライダーNeo
  • 2015/02/27 (Fri) 09:50:14
処置失敗ですね
ログを拝見させていただきました。
OTLは大変正常に動作していますが、ほぼすべての駆除作業が失敗しています。
大変お手数ではありますが、今一度見直しのため再度OTLのログを取り直し、
そちらを貼り付けてご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2015/02/27 (Fri) 09:59:43
再度トライいたしました。


再度トライいたしました。

いかがでしょうか??






All processes killed
========== OTL ==========
Error: No service named McMPFSvc was found to stop!
Service\Driver key McMPFSvc not found.
File C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe /McCoreSvc not found.
HKU\S-1-5-21-3384030018-2920189803-760924340-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable|dword:0 /E : value set successfully!
File C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll not found.
Starting removal of ActiveX control {0A34F491-7249-4BAC-8E46-04DB2CA764CB}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A34F491-7249-4BAC-8E46-04DB2CA764CB}\ not found.
Folder C:\Users\Neo\AppData\Roaming\Malwarebytes\ not found.
Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware\ not found.
File C:\Windows\SysNative\drivers\mbam.sys not found.
Folder C:\Program Files (x86)\Malwarebytes' Anti-Malware\ not found.
Folder C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7\ not found.
Folder C:\ProgramData\Malwarebytes\ not found.
Folder C:\Users\Public\Documents\Baidu\ not found.
File C:\Windows\SysWow64\SYNSOPOS.exe.cfg not found.
File C:\Windows\SysWow64\SYNSOPOS.exe not found.
========== FILES ==========
File\Folder c:\users\neo\appdata\local\google\chrome\user data\default\extensions\fpfgglfemmnflnmjminpghmeiajcajoi not found.
File\Folder c:\users\neo\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda not found.
File\Folder c:\users\neo\appdata\local\google\chrome\user data\default\extensions\ofoecbmpcapdooelojbgclipojlgpfdf not found.
File\Folder c:\program files\common files\mcafee not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LogMeInRemoteUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Neo
->Temp folder emptied: 1117167 bytes
->Temporary Internet Files folder emptied: 128 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 0 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 1.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 02272015_104332

Files\Folders moved on Reboot...
File\Folder C:\Users\Neo\AppData\Local\Temp\FXSAPIDebugLogFile.txt not found!
File move failed. C:\Users\Neo\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • ライダーNeo
  • 2015/02/27 (Fri) 10:50:00
いえこちらではなく
説明不足でした申し訳ありません。
OTLでスキャンを行い、あの分割しなければならないほど長いスキャンログを再取得し、
それを貼り付けていただきたいのです。
OTLでの処置はこのスキャンログの見直し後に再度行う予定です。
  • IVNO
  • MAIL
  • 2015/02/27 (Fri) 11:02:13
OTLログ



再度取りましたOTLログです。




OTL logfile created on: 2015/02/27 13:47:30 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Neo\Desktop\ヘルプ フォルダ
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17633)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.98 Gb Total Physical Memory | 6.95 Gb Available Physical Memory | 87.12% Memory free
15.96 Gb Paging File | 15.08 Gb Available in Paging File | 94.50% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1862.92 Gb Total Space | 1445.00 Gb Free Space | 77.57% Space Free | Partition Type: NTFS

Computer Name: NEO-PC | User Name: Neo | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/02/26 01:57:19 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Neo\Desktop\ヘルプ フォルダ\OTL.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/02/01 17:34:26 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2015/02/01 17:34:16 | 004,012,248 | ---- | M] (Avast Software) [On_Demand | Stopped] -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe -- (AvastVBoxSvc)
SRV:[b]64bit:[/b] - [2015/01/13 23:20:30 | 002,711,736 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc)
SRV:[b]64bit:[/b] - [2015/01/12 11:34:30 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/01/24 22:31:40 | 000,022,016 | ---- | M] (Box Inc.) [On_Demand | Stopped] -- C:\Program Files\Box\Box Sync\SyncUpdaterService.exe -- (BoxSyncUpdateService)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2011/12/12 00:00:00 | 000,135,824 | ---- | M] (Seiko Epson Corporation) [Auto | Stopped] -- C:\Windows\SysNative\escsvc64.exe -- (EpsonScanSvc)
SRV - [2015/02/06 10:02:02 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/02/06 09:44:01 | 002,635,552 | ---- | M] (IObit) [Auto | Stopped] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
SRV - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/04/11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013/02/26 00:32:22 | 001,260,320 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013/01/18 08:14:20 | 000,383,264 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2012/07/26 18:41:12 | 000,703,616 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Stopped] -- C:\Program Files (x86)\epson\MyEPSON Connect\mepService.exe -- (MyEPSON Connect Service)
SRV - [2010/10/05 22:08:46 | 002,655,768 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/10/05 22:08:42 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2005/10/25 23:21:50 | 000,061,440 | ---- | M] (Digidesign, A Division of Avid Technology, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe -- (DigiRefresh)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/02/01 17:35:03 | 001,050,432 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,436,624 | ---- | M] (AVAST Software) [File_System | System | Stopped] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,267,632 | ---- | M] () [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,116,728 | ---- | M] (AVAST Software) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswstm.sys -- (aswStm)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,083,280 | ---- | M] (AVAST Software) [File_System | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,065,776 | ---- | M] () [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:32 | 000,029,208 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:31 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:[b]64bit:[/b] - [2015/02/01 17:34:16 | 000,271,752 | ---- | M] (Avast Software) [Kernel | Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys -- (VBoxAswDrv)
DRV:[b]64bit:[/b] - [2014/07/28 14:52:00 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2014/03/31 21:06:06 | 000,058,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:[b]64bit:[/b] - [2013/07/25 16:53:46 | 000,023,040 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
DRV:[b]64bit:[/b] - [2013/04/04 11:33:50 | 000,051,496 | ---- | M] (Yamaha Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ymidusbx64.sys -- (YMIDUSBW)
DRV:[b]64bit:[/b] - [2013/02/18 09:22:16 | 000,189,288 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2013/01/30 13:11:50 | 000,347,904 | ---- | M] (EldoS Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sscbfs3.sys -- (SSCBFS3)
DRV:[b]64bit:[/b] - [2013/01/29 16:22:12 | 000,113,960 | ---- | M] (Yamaha Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ysusb64.sys -- (ysusb64)
DRV:[b]64bit:[/b] - [2012/10/31 07:51:55 | 000,021,136 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:[b]64bit:[/b] - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2012/02/18 08:28:07 | 000,564,792 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2011/12/14 21:22:10 | 000,030,352 | ---- | M] (Steinberg Media Technologies GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\synusb64.sys -- (synusb64)
DRV:[b]64bit:[/b] - [2011/10/15 12:16:16 | 000,075,808 | ---- | M] (McAfee, Inc.) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\mfenlfk.sys -- (mfenlfk)
DRV:[b]64bit:[/b] - [2011/05/16 22:55:28 | 000,533,096 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011/02/13 10:02:20 | 000,032,944 | ---- | M] (Avid Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dgmbx2fu.sys -- (MBX2DFU)
DRV:[b]64bit:[/b] - [2011/02/13 10:02:16 | 000,194,864 | ---- | M] (Avid Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dgmbx2.sys -- (DGUSBAP)
DRV:[b]64bit:[/b] - [2010/11/21 12:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2010/10/19 23:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2010/09/30 13:53:20 | 000,105,592 | ---- | M] (PACE Anti-Piracy, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\Tpkd.sys -- (Tpkd)
DRV:[b]64bit:[/b] - [2010/04/01 03:56:04 | 000,024,560 | ---- | M] (PC-Doctor, Inc.) [Kernel | On_Demand | Stopped] -- c:\Program Files\PC-Doctor for Windows\pcdsrvc_x64.pkms -- (PCDSRVC{F36B3A4C-F95654BD-06020000}_0)
DRV:[b]64bit:[/b] - [2009/09/18 01:14:00 | 000,199,296 | ---- | M] (Roland Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rdwm1046.sys -- (RDID1046)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2007/01/22 09:23:00 | 000,077,312 | ---- | M] (Roland Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rdwm1001.sys -- (RDID1001)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2003/04/28 20:38:08 | 000,010,940 | ---- | M] (B.H.A Corporation) [Kernel | System | Stopped] -- C:\Windows\SysWow64\drivers\cdrbsvsd.sys -- (cdrbsvsd)


[color=#E56717]========== Standard Registry (All) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/?PC=AV01
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\Neo\Desktop
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.dospara.co.jp/top/ [binary data]
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.msn.com/?PC=AV01
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://jp.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ja
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 70 EB FF 9D 2C E6 CC 01 [binary data]
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.google.com
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Corporation)
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes\{632F07F3-19A1-4d16-A23F-E6CE9486BAB5}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7TWJA_jaJP470
IE - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015/02/01 17:36:23 | 000,000,000 | ---D | M]

[2015/02/04 21:58:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Neo\AppData\Roaming\mozilla\Extensions
[2012/07/29 10:06:46 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions

[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: ()
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.60\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\gcswf32.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
CHR - plugin: Babylon Chrome Plugin (Disabled) = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
CHR - plugin: NVIDIA 3D Vision (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
CHR - plugin: NVIDIA 3D VISION (Enabled) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
CHR - plugin: Java(TM) Platform SE 7 U5 (Enabled) = C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 7.0.50.255 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - plugin: Windows Live Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - Extension: No name found = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\

O1 HOSTS File: ([2015/02/27 10:43:32 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:[b]64bit:[/b] - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
O2:[b]64bit:[/b] - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:[b]64bit:[/b] - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\urlredir.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (no name) - {F6AC6E26-60C4-4132-95EA-F9B2D23C2990} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Microsoft アカウント サインイン ヘルパー) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Evernote extension) - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\urlredir.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No CLSID value found.
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No CLSID value found.
O3 - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3 - HKU\S-1-5-21-3384030018-2920189803-760924340-1001\..\Toolbar\WebBrowser: (no name) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - No CLSID value found.
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3384030018-2920189803-760924340-1001..\Run: [GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\スマートダイアリー.lnk = C:\Users\Neo\AppData\Roaming\Microsoft\Installer\{37714F81-04A8-4AF6-8F22-1499F13B8870}\_4ae13d6c.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8:[b]64bit:[/b] - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0 File not found
O8:[b]64bit:[/b] - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1 File not found
O8:[b]64bit:[/b] - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0 File not found
O8:[b]64bit:[/b] - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4 File not found
O8:[b]64bit:[/b] - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html ()
O8:[b]64bit:[/b] - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation)
O8 - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0 File not found
O8 - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1 File not found
O8 - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0 File not found
O8 - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4 File not found
O8 - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html ()
O8 - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3 File not found
O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html ()
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html ()
O9 - Extra Button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll (Microsoft Corporation)
O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html ()
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html ()
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000001 [] - C:\Windows\SysNative\nlaapi.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000002 [] - C:\Windows\SysNative\NapiNSP.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000003 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000004 [] - C:\Windows\SysNative\pnrpnsp.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000005 [] - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000006 [] - C:\Windows\SysNative\winrnr.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000005 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000006 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000007 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000008 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000009 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - Protocol_Catalog9\Catalog_Entries64\000000000010 - C:\Windows\SysNative\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\SysWOW64\nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\SysWOW64\NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\SysWOW64\pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\SysWOW64\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\SysWOW64\mswsock.dll (Microsoft Corporation)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 11.31.2)
O16 - DPF: {CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 1.7.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.7.0/jinstall-1_7_0_15-windows-i586.cab (Java Plug-in 11.31.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.10.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E7BEDF69-07F0-47E2-9F0C-C58513D12172}: DhcpNameServer = 192.168.10.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FC8662A1-2B37-4037-9C5E-D9BA66475B2C}: DhcpNameServer = 172.20.10.1
O18:[b]64bit:[/b] - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysNative\inetcomm.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysNative\urlmon.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysNative\itss.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\osf - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysNative\MSVidCtl.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysNative\mshtml.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\MSVidCtl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysNative\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\SysWow64\mscoree.dll (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysNative\SSCbFsMntNtf3.dll (EldoS Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll (EldoS Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:[b]64bit:[/b] - SharedTaskScheduler: {C28617FD-4FE7-4043-AD51-C8132CE90106} - Virtual Storage Mount Notification - C:\Windows\SysNative\SSCbFsMntNtf3.dll (EldoS Corporation)
O22 - SharedTaskScheduler: {C28617FD-4FE7-4043-AD51-C8132CE90106} - Virtual Storage Mount Notification - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll (EldoS Corporation)
O29:[b]64bit:[/b] - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\SysWow64\credssp.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (kerberos) - C:\Windows\SysNative\kerberos.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (msv1_0) - C:\Windows\SysNative\msv1_0.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (schannel) - C:\Windows\SysNative\schannel.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (wdigest) - C:\Windows\SysNative\wdigest.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (tspkg) - C:\Windows\SysNative\tspkg.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
O30:[b]64bit:[/b] - LSA: Security Packages - (livessp) - C:\Windows\SysNative\livessp.dll (Microsoft Corp.)
O30 - LSA: Security Packages - (kerberos) - C:\Windows\SysWow64\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\Windows\SysWow64\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\Windows\SysWow64\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\Windows\SysWow64\wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:\Windows\SysWow64\tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (livessp) - C:\Windows\SysWow64\livessp.dll (Microsoft Corp.)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084
  • ライダーNeo
  • 2015/02/27 (Fri) 13:59:19
OTLログ後半

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/02/27 09:36:59 | 000,000,000 | ---D | C] -- C:\_OTL
[2015/02/26 01:56:24 | 000,000,000 | ---D | C] -- C:\Program Files\Reason
[2015/02/21 14:27:41 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\KeePass
[2015/02/21 14:24:16 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\WinRAR
[2015/02/21 14:18:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\KeePass Password Safe 2
[2015/02/21 11:01:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2015/02/19 17:18:24 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Local\Apple
[2015/02/19 17:18:10 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Local\Apple Computer
[2015/02/19 12:34:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2015/02/19 12:34:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2015/02/19 12:15:02 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Local\Adobe
[2015/02/19 09:22:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2015/02/19 09:12:52 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2015/02/19 09:10:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow x64
[2015/02/19 09:10:36 | 000,000,000 | ---D | C] -- C:\Program Files\ffdshow
[2015/02/18 09:35:44 | 000,950,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perftrack.dll
[2015/02/18 09:35:44 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powertracker.dll
[2015/02/16 09:35:49 | 000,000,000 | ---D | C] -- C:\Users\Neo\Desktop\整理収納
[2015/02/13 22:32:14 | 006,041,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015/02/13 22:32:14 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015/02/13 22:32:14 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2015/02/11 15:19:29 | 000,718,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2015/02/11 15:19:29 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2015/02/11 15:19:29 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015/02/11 15:19:29 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015/02/11 15:19:29 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2015/02/11 15:19:29 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2015/02/11 15:19:29 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2015/02/11 15:19:29 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2015/02/11 15:19:28 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2015/02/11 15:19:28 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2015/02/11 15:19:27 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015/02/11 15:19:27 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015/02/11 15:19:27 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2015/02/11 15:19:27 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2015/02/11 15:19:27 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2015/02/11 15:19:26 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2015/02/11 15:19:26 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015/02/11 15:19:26 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2015/02/11 15:19:26 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015/02/11 15:19:25 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015/02/11 15:19:25 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2015/02/11 15:19:25 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015/02/11 15:19:25 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2015/02/11 15:19:24 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2015/02/11 15:19:24 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2015/02/11 15:19:24 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2015/02/11 15:19:23 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2015/02/11 15:19:23 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2015/02/11 15:19:23 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015/02/11 15:19:22 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015/02/11 15:19:22 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2015/02/11 15:19:22 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015/02/11 14:55:35 | 001,239,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aitstatic.exe
[2015/02/11 14:55:35 | 001,098,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015/02/11 14:55:35 | 000,894,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/02/11 14:55:35 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/02/11 14:55:35 | 000,609,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/02/11 14:55:35 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/02/11 14:55:34 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/02/11 14:55:34 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/02/11 14:54:42 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2015/02/11 14:52:16 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2015/02/11 14:52:07 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2015/02/11 14:52:06 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2015/02/11 14:52:06 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2015/02/11 14:52:05 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2015/02/11 14:52:05 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2015/02/11 14:52:05 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2015/02/11 14:52:05 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2015/02/11 14:52:05 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2015/02/11 14:52:05 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2015/02/11 14:52:05 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2015/02/11 14:52:05 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2015/02/11 14:52:05 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2015/02/11 14:51:13 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2015/02/11 14:50:24 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2015/02/11 14:50:20 | 003,722,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2015/02/11 14:50:20 | 003,221,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2015/02/11 14:50:19 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2015/02/11 11:36:07 | 000,406,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scesrv.dll
[2015/02/11 11:36:07 | 000,308,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scesrv.dll
[2015/02/11 11:27:11 | 005,554,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2015/02/11 11:27:10 | 003,972,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2015/02/11 11:27:10 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2015/02/11 11:27:08 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2015/02/11 11:27:08 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2015/02/11 11:27:07 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2015/02/09 09:53:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2015/02/09 09:53:29 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2015/02/09 09:53:29 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2015/02/09 09:12:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
[2015/02/09 09:04:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2015/02/09 09:04:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2015/02/06 10:15:32 | 000,000,000 | ---D | C] -- C:\Users\Neo\Desktop\ヘルプ フォルダ
[2015/02/06 09:44:14 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\ProductData
[2015/02/06 09:44:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
[2015/02/06 09:44:05 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2015/02/06 09:44:04 | 000,000,000 | ---D | C] -- C:\ProgramData\ProductData
[2015/02/06 09:44:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IObit
[2015/02/05 00:49:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/02/05 00:49:34 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/02/01 17:41:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\vbox
[2015/02/01 17:41:04 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\vbox
[2015/02/01 17:34:34 | 000,364,512 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2015/02/01 17:34:30 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2015/02/01 16:34:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Permanent Readability
[2015/02/01 16:32:49 | 000,000,000 | ---D | C] -- C:\ProgramData\{9794a866-caaf-3fcb-9794-4a866caaa19b}
[2015/02/01 16:30:13 | 000,000,000 | ---D | C] -- C:\ProgramData\{b089ffd3-39c8-b191-b089-9ffd339cff4c}
[2015/01/30 15:33:55 | 000,000,000 | ---D | C] -- C:\Users\Neo\AppData\Roaming\Epson
[2015/01/30 15:30:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\EPSON
[2015/01/30 15:17:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software
[2015/01/30 15:17:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Epson Software
[2015/01/30 15:15:40 | 000,466,432 | ---- | C] (Seiko Epson Corporation) -- C:\Windows\SysNative\esxw2ud.dll
[2015/01/30 15:15:40 | 000,135,824 | ---- | C] (Seiko Epson Corporation) -- C:\Windows\SysNative\escsvc64.exe
[2015/01/30 15:15:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
[2015/01/30 15:15:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\epson
[2015/01/30 15:15:15 | 000,010,752 | ---- | C] (SEIKO EPSON CORP.) -- C:\Windows\SysNative\E_GCINST.DLL
[2015/01/30 15:15:14 | 000,120,320 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_ILMIGJ.DLL
[2015/01/30 15:15:14 | 000,083,968 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_ID4BIGJ.DLL
[2015/01/30 15:15:10 | 000,000,000 | ---D | C] -- C:\ProgramData\EPSON
[1 C:\Users\Neo\AppData\Local\*.tmp files -> C:\Users\Neo\AppData\Local\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/02/27 13:02:32 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/02/27 13:02:11 | 2133,446,655 | -HS- | M] () -- C:\hiberfil.sys
[2015/02/27 13:01:00 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/02/27 12:45:00 | 000,000,690 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/02/27 10:53:38 | 000,032,128 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/02/27 10:53:38 | 000,032,128 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/02/27 10:45:38 | 000,000,686 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/02/27 10:43:32 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
[2015/02/27 09:42:55 | 000,000,274 | ---- | M] () -- C:\Windows\tasks\Uninstaller_SkipUac_Neo.job
[2015/02/27 02:05:50 | 000,577,539 | ---- | M] () -- C:\Users\Neo\Desktop\taisi_aca.pdf
[2015/02/27 01:40:08 | 001,272,603 | ---- | M] () -- C:\Users\Neo\Desktop\150303太子_aca.mp3
[2015/02/25 14:14:05 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\OKAMOTO'S 『HAPPY BIRTHDAY』 - YouTube.url
[2015/02/25 14:08:37 | 000,000,057 | ---- | M] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 トップ.url
[2015/02/25 10:17:40 | 000,000,074 | ---- | M] () -- C:\Users\Neo\Desktop\We3 - Rude - Magic (A Cappella cover) - YouTube.url
[2015/02/24 00:15:21 | 004,357,142 | ---- | M] () -- C:\Users\Neo\Desktop\story.mp3
[2015/02/24 00:01:11 | 001,956,340 | ---- | M] () -- C:\Users\Neo\Desktop\勝手にシンドバッド.m4a
[2015/02/22 14:06:27 | 000,671,726 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2414.JPG
[2015/02/22 12:48:52 | 000,657,159 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2411.JPG
[2015/02/22 10:22:04 | 000,646,809 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2409.JPG
[2015/02/22 10:02:09 | 000,583,031 | ---- | M] () -- C:\Users\Neo\Desktop\IMG_2407.JPG
[2015/02/21 22:25:17 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\Piece of Cake-Medley - YouTube.url
[2015/02/21 12:59:01 | 000,002,272 | ---- | M] () -- C:\Users\Neo\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/02/19 15:40:58 | 005,194,044 | ---- | M] () -- C:\Users\Neo\Desktop\RisingSun.pdf
[2015/02/19 15:39:27 | 004,380,129 | ---- | M] () -- C:\Users\Neo\Desktop\RisingSun-学校公演用.mp3
[2015/02/19 10:20:06 | 000,000,080 | ---- | M] () -- C:\Users\Neo\Desktop\宅配買取のご案内 - オーディオ高く売れるドットコム.url
[2015/02/19 09:21:40 | 000,272,296 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2015/02/19 09:21:40 | 000,176,552 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2015/02/19 09:21:40 | 000,098,216 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2015/02/19 09:21:39 | 000,176,552 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2015/02/18 10:12:59 | 001,313,238 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2015/02/18 10:12:59 | 000,654,270 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015/02/18 10:12:59 | 000,411,178 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
[2015/02/18 10:12:59 | 000,122,224 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
[2015/02/18 10:12:59 | 000,122,142 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015/02/16 15:16:27 | 000,000,120 | ---- | M] () -- C:\Users\Neo\Desktop\2月ミノヤ - Google スプレッドシート.url
[2015/02/16 11:24:05 | 000,000,066 | ---- | M] () -- C:\Users\Neo\Desktop\マイドライブ - Google ドライブ.url
[2015/02/15 21:15:00 | 000,000,109 | ---- | M] () -- C:\Users\Neo\Desktop\A cappella all stars - The Morning Show.url
[2015/02/14 00:07:38 | 000,001,135 | ---- | M] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2015/02/14 00:07:28 | 000,001,017 | ---- | M] () -- C:\Users\Neo\Desktop\Dropbox.lnk
[2015/02/13 22:09:15 | 000,484,856 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2015/02/11 11:25:56 | 000,000,063 | ---- | M] () -- C:\Users\Neo\Desktop\買取申込フォーム|本・DVDの買取なら買取王子.url
[2015/02/11 11:15:37 | 001,292,086 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2015/02/06 10:02:02 | 000,701,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2015/02/06 10:02:02 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2015/02/05 10:33:40 | 000,000,088 | ---- | M] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 個室.url
[2015/02/05 00:35:10 | 000,007,597 | ---- | M] () -- C:\Users\Neo\AppData\Local\Resmon.ResmonCfg
[2015/02/04 12:16:29 | 000,609,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/02/04 12:16:20 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/02/04 12:16:16 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/02/04 12:16:14 | 000,894,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/02/04 12:16:13 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/02/04 12:16:13 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/02/04 12:13:28 | 001,098,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015/02/04 10:39:12 | 014,979,837 | ---- | M] () -- C:\Users\Neo\Desktop\We3.mp4
[2015/02/01 17:35:03 | 001,050,432 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys
[2015/02/01 17:34:32 | 000,436,624 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
[2015/02/01 17:34:32 | 000,364,512 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2015/02/01 17:34:32 | 000,267,632 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2015/02/01 17:34:32 | 000,116,728 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswstm.sys
[2015/02/01 17:34:32 | 000,083,280 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2015/02/01 17:34:32 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2015/02/01 17:34:32 | 000,029,208 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys
[2015/02/01 17:34:31 | 000,093,568 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2015/02/01 17:34:30 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2015/02/01 16:50:23 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\We3 - Kiss, at the Kitsh Lounge Riot, Cafe De Paris 2014 - YouTube.url
[2015/02/01 16:48:39 | 000,000,069 | ---- | M] () -- C:\Users\Neo\Desktop\We3 (Fraser, Steve & Andy from The Magnets) - Faith-Mama Do The Hump and Locked Out Of Heaven - YouTube.url
[1 C:\Users\Neo\AppData\Local\*.tmp files -> C:\Users\Neo\AppData\Local\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/02/27 10:51:58 | 001,272,603 | ---- | C] () -- C:\Users\Neo\Desktop\150303太子_aca.mp3
[2015/02/27 10:51:56 | 000,577,539 | ---- | C] () -- C:\Users\Neo\Desktop\taisi_aca.pdf
[2015/02/27 09:19:06 | 000,000,274 | ---- | C] () -- C:\Windows\tasks\Uninstaller_SkipUac_Neo.job
[2015/02/25 14:14:05 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\OKAMOTO'S 『HAPPY BIRTHDAY』 - YouTube.url
[2015/02/25 13:38:25 | 000,671,726 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2414.JPG
[2015/02/25 13:38:25 | 000,657,159 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2411.JPG
[2015/02/25 13:38:25 | 000,646,809 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2409.JPG
[2015/02/25 13:38:24 | 000,583,031 | ---- | C] () -- C:\Users\Neo\Desktop\IMG_2407.JPG
[2015/02/25 10:17:40 | 000,000,074 | ---- | C] () -- C:\Users\Neo\Desktop\We3 - Rude - Magic (A Cappella cover) - YouTube.url
[2015/02/24 00:21:20 | 007,690,499 | ---- | C] () -- C:\Users\Neo\Desktop\150303太子東中学校校歌.mp3
[2015/02/24 00:21:19 | 000,260,646 | ---- | C] () -- C:\Users\Neo\Desktop\太子東中学校 校歌歌詞.pdf
[2015/02/24 00:15:44 | 004,357,142 | ---- | C] () -- C:\Users\Neo\Desktop\story.mp3
[2015/02/24 00:14:29 | 001,956,340 | ---- | C] () -- C:\Users\Neo\Desktop\勝手にシンドバッド.m4a
[2015/02/21 22:25:17 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\Piece of Cake-Medley - YouTube.url
[2015/02/21 14:18:41 | 000,001,124 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk
[2015/02/21 11:01:10 | 000,002,272 | ---- | C] () -- C:\Users\Neo\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/02/19 15:39:52 | 005,194,044 | ---- | C] () -- C:\Users\Neo\Desktop\RisingSun.pdf
[2015/02/19 15:39:47 | 004,380,129 | ---- | C] () -- C:\Users\Neo\Desktop\RisingSun-学校公演用.mp3
[2015/02/19 12:34:36 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2015/02/19 10:20:06 | 000,000,080 | ---- | C] () -- C:\Users\Neo\Desktop\宅配買取のご案内 - オーディオ高く売れるドットコム.url
[2015/02/19 09:10:37 | 000,127,488 | ---- | C] () -- C:\Windows\SysNative\ff_vfw.dll
[2015/02/16 15:16:27 | 000,000,120 | ---- | C] () -- C:\Users\Neo\Desktop\2月ミノヤ - Google スプレッドシート.url
[2015/02/16 11:24:05 | 000,000,066 | ---- | C] () -- C:\Users\Neo\Desktop\マイドライブ - Google ドライブ.url
[2015/02/15 21:15:00 | 000,000,109 | ---- | C] () -- C:\Users\Neo\Desktop\A cappella all stars - The Morning Show.url
[2015/02/11 11:25:56 | 000,000,063 | ---- | C] () -- C:\Users\Neo\Desktop\買取申込フォーム|本・DVDの買取なら買取王子.url
[2015/02/07 10:35:59 | 000,002,899 | ---- | C] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\スマートダイアリー.lnk
[2015/02/07 10:35:59 | 000,001,135 | ---- | C] () -- C:\Users\Neo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2015/02/05 10:33:40 | 000,000,088 | ---- | C] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 個室.url
[2015/02/05 10:33:40 | 000,000,057 | ---- | C] () -- C:\Users\Neo\Desktop\悪代官の伏魔殿掲示板 トップ.url
[2015/02/05 00:35:10 | 000,007,597 | ---- | C] () -- C:\Users\Neo\AppData\Local\Resmon.ResmonCfg
[2015/02/04 10:36:00 | 014,979,837 | ---- | C] () -- C:\Users\Neo\Desktop\We3.mp4
[2015/02/01 16:50:23 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\We3 - Kiss, at the Kitsh Lounge Riot, Cafe De Paris 2014 - YouTube.url
[2015/02/01 16:48:39 | 000,000,069 | ---- | C] () -- C:\Users\Neo\Desktop\We3 (Fraser, Steve & Andy from The Magnets) - Faith-Mama Do The Hump and Locked Out Of Heaven - YouTube.url
[2014/06/23 16:30:00 | 000,000,000 | ---- | C] () -- C:\Users\Neo\AppData\Local\{CF7F7C70-E361-4CC6-BF02-99D7CAA60BB1}
[2014/01/06 12:41:50 | 001,292,086 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/10/11 10:04:39 | 000,079,360 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2013/07/28 13:57:34 | 000,002,892 | ---- | C] () -- C:\Windows\SysWow64\audcon.sys
[2012/02/28 23:28:33 | 000,032,652 | ---- | C] () -- C:\Users\Neo\AppData\Roaming\UserTile.png
[2012/02/19 01:29:32 | 000,017,408 | ---- | C] () -- C:\Users\Neo\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/06/25 11:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/06/25 10:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 12:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/02/27 13:01:00 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/02/27 10:45:38 | 000,000,686 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/02/27 12:45:00 | 000,000,690 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012/02/29 14:00:00 | 000,000,466 | ---- | M] () -- C:\Windows\tasks\PCDoctorBenchmarkTask.job
[2015/02/27 09:42:55 | 000,000,274 | ---- | M] () -- C:\Windows\tasks\Uninstaller_SkipUac_Neo.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: ST2000DL003-9VT166 ATA Device
Partitions: 2
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 100.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 1,863.00GB
Starting Offset: 105906176
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2009/07/14 10:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2013/02/27 14:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2015/01/15 17:09:15 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2014/07/07 11:06:31 | 000,187,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2014/07/07 10:40:07 | 000,143,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/21 12:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 13:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2012/02/11 15:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2015/01/15 17:09:15 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2015/01/15 17:09:15 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/21 12:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/21 12:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/19 12:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2014/10/03 11:11:51 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2014/10/03 11:11:51 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/21 12:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/21 12:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2014/05/15 01:23:46 | 002,477,536 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]
[1999/12/17 00:00:00 | 000,069,632 | ---- | M] (奈良先端科学技術大学院大学 情報科学研究科 自然言語処理学講座) -- C:\WinCha.exe

< End of report >






Extrasログはでませんでした。



  • ライダーNeo
  • 2015/02/27 (Fri) 14:00:24
OTLで再度処置を
では再度の処置を行いましょう。

メモ帳を起動させ、以下をコピペしてください。
なお、:OTL、:Files、:Commandsの3つはOTLでの処理方法を決める命令文です。
削除なされないようご注意ください。

------コピペこの下より------
:OTL
CHR - plugin: Babylon Chrome Plugin (Disabled) = C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
[2015/02/01 16:32:49 | 000,000,000 | ---D | C] -- C:\ProgramData\{9794a866-caaf-3fcb-9794-4a866caaa19b}
[2015/02/01 16:30:13 | 000,000,000 | ---D | C] -- C:\ProgramData\{b089ffd3-39c8-b191-b089-9ffd339cff4c}

:Files
C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------コピペこの上まで------

コピペが完了しましたら、分かりやすいお名前をつけて保存してください。
その後、PCをセーフモードで起動させてください。
再度OTLを起動させ、Custom Scan/Fixesの項目内に上記で保存した内容をコピペしてください。
今回は駆除作業のため、その他のチェック項目はありません。
赤い文字の[Run Fix]をクリックして処置を開始してください。
OTLの処置に従って進めてゆき、通常モードで再起動を行うと処置ログが表示されますので、
そちらのログを貼り付けてご連絡ください。
またその際に状況報告もお願いいたします。
  • IVNO
  • MAIL
  • 2015/02/27 (Fri) 14:24:22
OTLログ



OTL処置のログです。



状況報告ですが、
これは一回目のHP~OTLの処置の後からなんですが、Google Chromeの拡張機能が使えなくなってしまいました。

それぐらいであとは特に変化は見られません。



よろしくお願いします。







All processes killed
========== OTL ==========
File C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll not found.
C:\ProgramData\{9794a866-caaf-3fcb-9794-4a866caaa19b} folder moved successfully.
C:\ProgramData\{b089ffd3-39c8-b191-b089-9ffd339cff4c} folder moved successfully.
========== FILES ==========
File\Folder C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: LogMeInRemoteUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Neo
->Temp folder emptied: 15042301 bytes
->Temporary Internet Files folder emptied: 128 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 23088103 bytes
->Flash cache emptied: 0 bytes

User: Public

User: UpdatusUser
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 158101 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 142348 bytes

Total Files Cleaned = 37.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 02282015_081541

Files\Folders moved on Reboot...
C:\Users\Neo\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
File move failed. C:\Users\Neo\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...










  • ライダーNeo
  • 2015/02/28 (Sat) 08:28:05
OTLは削除し様子見後ログのご提示を
OTLでの結果は良好ですね。
Google Chromeの拡張機能なのですが、マルウェア判定が出ているものに関しては削除しました。
Google Chrome本体としては拡張機能にリストがあるかもしれませんが、
マルウェア判定が出ていた本体は個別に削除しておりますため、利用できないと思われます。
よろしくお願いいたします。
OTLは不要となりますので、導入時の指示に従って削除なされてください。

現段階では異常はないとのことですので、
今後も安定してPCがご利用いただけるかどうか調べることにしましょう。

1週間の様子見を行い、その結果をお知らせください。
様子見期間中はPCに導入なされているすべてのブラウザを、可能なら1日に1回ずつは動作確認し、
再発の可能性がないかの調査を行ってください。
様子見期間が終了するか、あるいは症状が発生、再発のいずれの状態になったとしても、
HJTのログ、CCのインストール情報ログ、同じくCCのスタートアップの各ログを取得し、
それらすべてを貼り付けて様子見の結果あるいは発生した症状の詳細を添えてご連絡ください。
  • IVNO
  • MAIL
  • 2015/02/28 (Sat) 10:15:30
ありがとうございます
ありがとうございます!!

一週間後またご連絡させていただきます!

  • ライダーNeo
  • MAIL
  • 2015/02/28 (Sat) 13:33:36
経過報告です。
あれ以降、特に異常はありませんでした。



経過報告させていただきます。





以下に指定のログを添付します。







<HJTログ>


Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 16:45:53, on 2015/03/08
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17631)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\スマートダイアリー\SmartDiary.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
C:\Users\Neo\Desktop\ヘルプ フォルダ\HijackThis.exe
C:\Windows\SysWOW64\DllHost.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - Startup: Dropbox.lnk = Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: スマートダイアリー.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O21 - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Box Sync Update Service (BoxSyncUpdateService) - Box Inc. - C:\Program Files\Box\Box Sync\SyncUpdaterService.exe
O23 - Service: Digidesign MME Refresh Service (DigiRefresh) - Digidesign, A Division of Avid Technology, Inc. - C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10923 bytes








<CCのインストール情報ログ>

Adobe Flash Player 16 ActiveX Adobe Systems Incorporated 2015/02/06 6.00 MB 16.0.0.305
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/19 203 MB 11.0.10
Amazon Cloud Drive Amazon 2015/02/19 2.4.2013.3290
Apple Application Support(32 ビット) Apple Inc. 2015/02/28 94.2 MB 3.1.2
Apple Application Support(64 ビット) Apple Inc. 2015/02/28 107 MB 3.1.2
Apple Mobile Device Support Apple Inc. 2015/02/28 27.9 MB 8.1.1.3
Apple Software Update Apple Inc. 2012/02/09 2.38 MB 2.1.3.127
ApplicationManager 2011.4.27.209 Beijing AJ Technology Co., Ltd 2013/10/07 2011.4.27.209
Audacity 2.0.2 Audacity Team 2012/12/05 43.5 MB 2.0.2
Avast Free Antivirus AVAST Software 2015/02/01 10.0.2208
Between VCNC Co., Ltd. 2015/02/28 0.3.1.0
Bonjour Apple Inc. 2012/02/09 2.00 MB 3.0.0.10
Box Sync Box, Inc. 2014/02/23 15.3 MB 4.0.4443.0
CCleaner Piriform 2015/02/05 5.02
CyberLink BD Advisor 2.0 2012/02/13
CyberLink Blu-ray Disc Suite CyberLink Corp. 2012/02/06 16.5 MB 6.0.4703
CyberLink LabelPrint CyberLink Corp. 2012/02/06 142 MB 2.5.1916
CyberLink LG Burning Tool CyberLink Corp. 2012/02/06 121 MB 6.2.4619
CyberLink MediaShow CyberLink Corp. 2012/02/06 192 MB 4.1.3402
CyberLink PowerDVD 9 CyberLink Corp. 2012/02/06 176 MB 9.0.3530.52
CyberLink PowerProducer CyberLink Corp. 2012/02/06 172 MB 5.0.2.2512
CyberLink YouCam CyberLink Corp. 2012/02/06 77.0 MB 2.0.3718
Dropbox Dropbox, Inc. 2015/02/14 3.2.6
eLicenser Control Steinberg Media Technologies GmbH 2013/07/28
Epson Event Manager Seiko Epson Corporation 2015/01/30 42.4 MB 3.01.0005
EPSON PX-045A Series プリンター アンインストール SEIKO EPSON Corporation 2015/01/30
EPSON PX-045A Series ユーザーズガイド 2015/01/30
EPSON Scan Seiko Epson Corporation 2015/01/30
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2015/01/30 1.20.0000
Everio MediaBrowser 3 PIXELA 2012/07/18 3.00.243
Evernote v. 5.8.1 Evernote Corp. 2014/12/29 231 MB 5.8.1.6061
ffdshow x64 v1.3.4533 [2014-09-29] 2015/02/19 14.9 MB 1.3.4533.0
Freemake Audio Converter バージョン 1.1.0 Ellora Assets Corporation 2015/03/02 50.0 MB 1.1.0
FreeMind 2012/04/22 16.2 MB 0.9.0_RC_10
GOM Player Gretech Corporation 2015/02/28 2.2.67.5221
Google Chrome Google Inc. 2015/02/21 40.0.2214.115
Google Drive Google, Inc. 2015/01/29 35.0 MB 1.19.8406.6504
Haali Media Splitter 2013/10/11
Handbrake日本語版 0.9.4 2013/07/16 0.9.4
iCloud Apple Inc. 2015/02/09 92.0 MB 4.0.6.28
ILLUSION むすメイク ILLUSION 2014/09/07 258 MB 1.00.0000
ImgBurn LIGHTNING UK! 2013/07/16 2.5.8.0
Intel(R) Management Engine Components Intel Corporation 2012/02/13 7.0.0.1118
Interlok driver setup x64 PACE Anti-Piracy, Inc. 2013/01/16 1.53 MB 5.9.0
IObit Uninstaller IObit 2015/02/06 4.2.6.2
iTunes Apple Inc. 2015/02/28 234 MB 12.1.1.4
Java 8 Update 31 Oracle Corporation 2015/02/19 74.0 MB 8.0.310
KeePass Password Safe 2.28 Dominik Reichl 2015/02/21 6.48 MB 2.28
LAME v3.99.3 (for Windows) 2013/06/30 1.52 MB
LINE LINE Corporation 2015/02/14 3.9.1.188
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/02/25 19.2 MB 1.75.0.1300
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/02/27 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/02/11 38.8 MB 4.5.51209
Microsoft Office 365 - ja-jp Microsoft Corporation 2015/02/25 15.0.4693.1002
Microsoft OneDrive Microsoft Corporation 2015/01/25 26.8 MB 17.3.1171.0714
Microsoft OneNote 2013 - ja-jp Microsoft Corporation 2015/02/25 15.0.4693.1002
Microsoft Silverlight Microsoft Corporation 2014/12/15 348 MB 5.1.31211.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/04/12 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/02/09 298 KB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2012/02/22 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/02/06 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/02/16 232 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/02/09 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/14 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/14 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/14 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/14 10.0.50903
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2012/02/28 1.28 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2012/02/29 1.34 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2015/01/30
NVIDIA 3D Vision Controller Driver 270.61 NVIDIA Corporation 2012/02/06 270.61
NVIDIA 3D Vision ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
NVIDIA HD オーディオ ドライバー 1.3.18.0 NVIDIA Corporation 2013/07/28 1.3.18.0
NVIDIA PhysX システム ソフトウェア 9.10.0514 NVIDIA Corporation 2012/02/06 9.10.0514
NVIDIA アップデート 1.11.3 NVIDIA Corporation 2013/04/13 1.11.3
NVIDIA グラフィックス ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
oCam version 39.0.0.0 http://ohsoft.net/ 2014/11/02 14.5 MB 39.0.0.0
PC-Doctor for Windows PC-Doctor, Inc. 2013/10/09 6.0.5549.10
Permanent Readability 2014/02/01
PodSoundRipper LE(デジ造版) Nihon Intelligence Corporation 2012/02/27 28.2 MB 1.2.0
QuickTime 7 Apple Inc. 2015/02/09 70.2 MB 7.76.80.95
Realtek Ethernet Controller Driver Realtek 2012/02/06 7.45.516.2011
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2012/02/13 6.0.1.5772
Singer Song Writer 8.0 VS 2012/02/18
SoundEngine Free Coderium 2012/09/09 5.0.0.4
Steinberg CI2 Extension 64bit Yamaha Corporation 2013/07/28 1.2.1
Steinberg Cubase 7 64bit Steinberg Media Technologies GmbH 2013/11/02 395 MB 7.0.0
Steinberg Cubase AI 5 Steinberg Media Technologies GmbH 2013/07/28 106 MB 5.1.0
Steinberg Drum Loop Expansion 01 Steinberg Media Technologies GmbH 2013/11/02 428 MB 2.0.0.0
Steinberg Eucon Adapter 6.5 64bit Steinberg Media Technologies GmbH 2013/11/02 10.3 MB 6.5.0
Steinberg Groove Agent ONE Allen Morgan Signature Drums Steinberg Media Technologies GmbH 2013/11/02 0.96 GB 1.0.0
Steinberg Groove Agent ONE Content Steinberg Media Technologies GmbH 2013/11/02 142 MB 1.0.0.003
Steinberg Groove Agent ONE Vintage Beatboxes Steinberg Media Technologies GmbH 2013/11/02 38.0 MB 1.0.0.000
Steinberg HALion Sonic SE 64bit Steinberg Media Technologies GmbH 2013/11/02 46.1 MB 1.6.1
Steinberg HALion Sonic SE Content Steinberg Media Technologies GmbH 2013/11/02 3.15 GB 1.6.1
Steinberg HALionOne Steinberg Media Technologies GmbH 2013/07/28 103 MB 1.1.0.457
Steinberg HALionOne GM Drum Set Steinberg Media Technologies GmbH 2013/07/28 23.9 MB 1.0.1.457
Steinberg HALionOne GM Set Steinberg Media Technologies GmbH 2013/07/28 63.6 MB 1.0.1.457
Steinberg LoopMash Content Steinberg Media Technologies GmbH 2013/11/02 617 MB 2.0.0.000
Steinberg LoopMash Content 2 Steinberg Media Technologies GmbH 2013/11/02 558 MB 1.0.0.000
Steinberg Midi Loop Library Steinberg Media Technologies GmbH 2013/11/02 361 MB 1.0.0
Steinberg Padshop 64bit Steinberg Media Technologies GmbH 2013/11/02 433 MB 1.1.0
Steinberg Retrologue 64bit Steinberg Media Technologies GmbH 2013/11/02 81.3 MB 1.1.0
Steinberg REVerence Content 01 Steinberg Media Technologies GmbH 2013/11/02 199 MB 2.0.1.000
Steinberg Upload Manager Steinberg Media Technologies GmbH 2013/11/02 8.53 MB 1.0.1
Steinberg VST Amp Rack Content 01 Steinberg Media Technologies GmbH 2013/11/02 9.18 MB 1.0.1
SugarSync SugarSync, Inc. 2013/12/15 2.0.42.120603
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2012/02/22 8.25 MB 1.0.0.4
Windows Live Essentials Microsoft Corporation 2014/12/18 16.4.3528.0331
Windows Live Sync Microsoft Corporation 2011/04/12 2.76 MB 14.0.8089.726
WinRAR 5.01 (64ビット) win.rar GmbH 2015/02/19 5.01.0
WinRAR アーカイバ 2012/02/13
Yamaha MOTIF-RACK ES Multi Part Editor Yamaha Corporation 2014/03/10 14.5 MB 2.2.2.2
Yamaha Steinberg USB Driver Yamaha Corporation 2013/07/28 2.82 MB 1.7.3
Yamaha Studio Manager Yamaha Corporation 2014/03/10 8.03 MB 2.3.1.0
Yamaha USB-MIDI Driver Yamaha Corporation 2013/12/05 5.22 MB 3.1.3.1
エレコムらくちんプリント 2012/08/15
スマートダイアリー 2.5b Eagle 2014/04/14 3.58 MB 2.5.2





<CCのスタートアップログ Windows>


無効 EPLTarget
無効 HKCU:Run Adobe Reader Synchronizer "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe"
無効 HKCU:Run ApplicationManager Beijing AJ Technology Co., Ltd C:\Users\Neo\AppData\Roaming\ApplicationManager\bin\ApplicationManager.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleDriveSync Google "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
無効 HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
無効 HKCU:Run LightScribe Control Panel C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
無効 HKCU:Run MobileDocuments C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
無効 HKCU:Run NaverNDrive C:\Program Files\Naver\Ndrive\NDriveUpgrader.exe
無効 HKCU:Run RESTART_STICKY_NOTES Microsoft Corporation C:\Windows\system32\StikyNot.exe
無効 HKCU:Run Sidebar Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
無効 HKCU:Run SkyDrive Microsoft Corporation "C:\Users\Neo\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
無効 HKCU:Run Speech Recognition Microsoft Corporation "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
無効 HKCU:Run SugarSync SugarSync, Inc. "C:\Program Files (x86)\SugarSync\SugarSync.exe" -startInTray -usedelay=true
無効 HKCU:Run swg "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
無効 HKCU:Run YahooDesktop "C:\Program Files\Yahoo!J\Desktop\Modules\YahooDesktop.exe"
無効 HKLM:Run 20131121 AVAST Software C:\Program Files\AVAST Software\Avast\setup\emupdate\d0f5c31b-51c5-4cdb-a25e-f549bbb601c3.exe /check
無効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
無効 HKLM:Run Adobe Reader Speed Launcher "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
無効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
無効 HKLM:Run BoxSync Box, Inc. "c:\Program Files\Box\Box Sync\BoxSync.exe" -m
無効 HKLM:Run CLMLServer CyberLink "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
無効 HKLM:Run DigidesignMMERefresh Digidesign, A Division of Avid Technology, Inc. C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
無効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
無効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
無効 HKLM:Run KeePass 2 PreLoad Dominik Reichl "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
無効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
無効 HKLM:Run LogMeIn GUI "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
無効 HKLM:Run MDS_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
無効 HKLM:Run RemoteControl9 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"
無効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
無効 HKLM:Run Skytel Realtek Semiconductor Corp. C:\Program Files\Realtek\Audio\HDA\Skytel.exe
無効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
無効 HKLM:Run TkBellExe "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
無効 HKLM:Run UCam_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
無効 HKLM:Run UpdateLBPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
無効 HKLM:Run UpdateP2GoShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
無効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
無効 HKLM:Run UpdatePSTShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
無効 Startup User EvernoteClipper.lnk Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE
無効 Startup User iMindMap Preloader.lnk C:\Users\Neo\THINKB~1\imindmap\preload\IMINDM~1.EXE
無効 Startup User OneNote に送る.lnk Microsoft Corporation C:\PROGRA~1\MICROS~3\root\office15\ONENOTEM.EXE /tsr
無効 Startup User PcHusen.lnk C:\PcHusen\PcHusen.exe
無効 Startup User Sticky Notes.lnk Microsoft Corporation C:\Windows\system32\StikyNot.exe
有効 Startup User スマートダイアリー.lnk C:\Users\Neo\AppData\Roaming\Microsoft\Installer\{37714F81-04A8-4AF6-8F22-1499F13B8870}\_4ae13d6c.exe





<CCのスタートアップログ Internet explorer>


有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
有効 Helper Evernote extension Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll








<CCのスタートアップログ Google Chrome>


有効 App Gmail 8 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
無効 App Google ドライブ 6.4 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google ドライブ 6.3 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
有効 App Google 検索 0.0.0.20 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App YouTube 4.2.7 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension Avast Online Security 10.2.0.187 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.2.0.187_0
有効 Extension Google スプレッドシート 1.1 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension laClipy 2.0.1 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0
有効 Plugin Adobe Acrobat 9.5.1.283 Neo C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
無効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 Neo C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
有効 Plugin Chrome PDF Viewer Neo C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
有効 Plugin Google Update 1.3.21.115 Neo C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
有効 Plugin iTunes Application Detector 1.0.1.1 Neo C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
有効 Plugin Java Deployment Toolkit 7.0.50.255 10.5.1.255 Neo C:\Windows\SysWOW64\npDeployJava1.dll
有効 Plugin Java(TM) Platform SE 7 U5 10.5.1.255 Neo C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
有効 Plugin Native Client Neo C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\ppGoogleNaClPluginChrome.dll
有効 Plugin NVIDIA 3D Vision 7.17.12.7061 Neo C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
有効 Plugin Remoting Viewer Neo internal-remoting-viewer
有効 Plugin Shockwave Flash 11,3,300,268 Neo C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\gcswf32.dll
有効 Plugin Shockwave Flash 11.3.31.222 Neo C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.60\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 Neo c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live Photo Gallery 14.0.8081.0709_ship.wlx.w3m3 (ship) Neo C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll




<CCのスタートアップログ スケジュールされたタスク>


有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for Neo-PC-Neo Neo-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
有効 Task RealUpgradeLogonTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck
有効 Task RealUpgradeScheduledTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck
有効 Task Task_ShellExecuteAs Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "http://www.playgom.net/?refer=promotionc"
有効 Task Uninstaller_SkipUac_Neo IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task WeatherTool_start_schedule_task C:\Program Files (x86)\WeatherTool\1.1.1.3\InstallHelper.exe -start
有効 Task {5379321E-6819-4B20-BE4F-78055E20C3D6} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST\Setup.exe" -d "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST"
有効 Task {5E61C4C2-3644-4CDE-B03A-148AEDC60FD3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\eLicenserControlSetup.exe -d C:\Users\Neo\Downloads
有効 Task {71A8B04B-CD84-4048-8F1B-4C1BC4580AA2} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Proxifier\unins000.exe"
有効 Task {71BC5806-8473-4B5C-B1BC-C32A215DB315} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Desktop\新しいフォルダー\Setup.exe -d C:\Users\Neo\Desktop\新しいフォルダー
有効 Task {84410036-4652-4B57-9D30-7DAF64A8CD7F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a G:\LaCie.exe -d G:\
有効 Task {85B656D7-871F-480E-B685-D23F73501341} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0\Digidesign Audio Drivers Setup.exe" -d "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0"
有効 Task {C7EA86E1-4E50-4D55-AE48-D622F14E568A} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\NetFx20SP2_ia64.exe -d C:\Users\Neo\Downloads




以上でございます。


よろしくお願いします。





  • ライダーNeo
  • MAIL
  • 2015/03/08 (Sun) 16:58:07
いくつか確認と作業を
こんばんは。
また湧いてきた悪代官です。

様子見後に異常は出てないようですが、ログを見せてもらったところまだ問題点は残ってますね。
以下の確認と作業をお願いします。

まず下記ですが最新版になってないので、使うなら更新してください。
>Java 8 Update 31 Oracle Corporation 2015/02/19 74.0 MB 8.0.310
不要ならアンインストールが安全です。

次に、先のレスで削除指示した下記ですが必要として継続使用の予定ですか?
>Freemake Audio Converter バージョン 1.1.0 Ellora Assets Corporation 2015/03/02 50.0 MB 1.1.0
>GOM Player Gretech Corporation 2015/02/28 2.2.67.5221
できればこれもアンインストール推奨ですが、どうしても使うなら設定と機能を十分理解して、これによるトラブルもすべて自己責任で。

次にCCを起動して「Chrome」タブ内の下記を右クリックから「エントリの削除」です。
>無効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 Neo C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll

続いて「スケジュールされたタスク」内の下記も同様に処置を。
>有効 Task WeatherTool_start_schedule_task C:\Program Files (x86)\WeatherTool\1.1.1.3\InstallHelper.exe -start

そして同タブ内の下記を確認です。
>有効 Task {71A8B04B-CD84-4048-8F1B-4C1BC4580AA2} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Proxifier\unins000.exe"

この「Proxifier」もご自身で入れたものですか?
覚えもないのに入っていたならこれも削除してください。
必要として入れたものなら判断はお任せします。

上記の確認と作業後に、またインストール情報ログと、CCでの「Chrome」「スケジュール」タブのログだけ取り直して、それらを報告とともにレスください
  • 悪代官
  • 2015/03/08 (Sun) 21:07:22
再度報告です。

Javaは更新、Freemakeはアンインストールいたしました。
Freemakeはもう使わないことにします。



下記のものだけエントリの削除できませんでした。

 >無効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 Neo C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll

それ以外は削除いたしました。



では再度ログを貼り付けさせていただきます。



<インストール情報ログ>


Adobe Flash Player 16 ActiveX Adobe Systems Incorporated 2015/02/06 6.00 MB 16.0.0.305
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/19 203 MB 11.0.10
Amazon Cloud Drive Amazon 2015/02/19 2.4.2013.3290
Apple Application Support(32 ビット) Apple Inc. 2015/02/28 94.2 MB 3.1.2
Apple Application Support(64 ビット) Apple Inc. 2015/02/28 107 MB 3.1.2
Apple Mobile Device Support Apple Inc. 2015/02/28 27.9 MB 8.1.1.3
Apple Software Update Apple Inc. 2012/02/09 2.38 MB 2.1.3.127
ApplicationManager 2011.4.27.209 Beijing AJ Technology Co., Ltd 2013/10/07 2011.4.27.209
Audacity 2.0.2 Audacity Team 2012/12/05 43.5 MB 2.0.2
Avast Free Antivirus AVAST Software 2015/02/01 10.0.2208
Between VCNC Co., Ltd. 2015/02/28 0.3.1.0
Bonjour Apple Inc. 2012/02/09 2.00 MB 3.0.0.10
Box Sync Box, Inc. 2014/02/23 15.3 MB 4.0.4443.0
CCleaner Piriform 2015/02/05 5.02
CyberLink BD Advisor 2.0 2012/02/13
CyberLink Blu-ray Disc Suite CyberLink Corp. 2012/02/06 16.5 MB 6.0.4703
CyberLink LabelPrint CyberLink Corp. 2012/02/06 142 MB 2.5.1916
CyberLink LG Burning Tool CyberLink Corp. 2012/02/06 121 MB 6.2.4619
CyberLink MediaShow CyberLink Corp. 2012/02/06 192 MB 4.1.3402
CyberLink PowerDVD 9 CyberLink Corp. 2012/02/06 176 MB 9.0.3530.52
CyberLink PowerProducer CyberLink Corp. 2012/02/06 172 MB 5.0.2.2512
CyberLink YouCam CyberLink Corp. 2012/02/06 77.0 MB 2.0.3718
Dropbox Dropbox, Inc. 2015/02/14 3.2.6
eLicenser Control Steinberg Media Technologies GmbH 2013/07/28
Epson Event Manager Seiko Epson Corporation 2015/01/30 42.4 MB 3.01.0005
EPSON PX-045A Series プリンター アンインストール SEIKO EPSON Corporation 2015/01/30
EPSON PX-045A Series ユーザーズガイド 2015/01/30
EPSON Scan Seiko Epson Corporation 2015/01/30
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2015/01/30 1.20.0000
Everio MediaBrowser 3 PIXELA 2012/07/18 3.00.243
Evernote v. 5.8.1 Evernote Corp. 2014/12/29 231 MB 5.8.1.6061
ffdshow x64 v1.3.4533 [2014-09-29] 2015/02/19 14.9 MB 1.3.4533.0
FreeMind 2012/04/22 16.2 MB 0.9.0_RC_10
GOM Player Gretech Corporation 2015/02/28 2.2.67.5221
Google Chrome Google Inc. 2015/02/21 40.0.2214.115
Google Drive Google, Inc. 2015/01/29 35.0 MB 1.19.8406.6504
Haali Media Splitter 2013/10/11
Handbrake日本語版 0.9.4 2013/07/16 0.9.4
iCloud Apple Inc. 2015/02/09 92.0 MB 4.0.6.28
ILLUSION むすメイク きゃらメイク&Hビューアー ILLUSION 2014/09/07 258 MB 1.00.0000
ImgBurn LIGHTNING UK! 2013/07/16 2.5.8.0
Intel(R) Management Engine Components Intel Corporation 2012/02/13 7.0.0.1118
Interlok driver setup x64 PACE Anti-Piracy, Inc. 2013/01/16 1.53 MB 5.9.0
IObit Uninstaller IObit 2015/02/06 4.2.6.2
iTunes Apple Inc. 2015/02/28 234 MB 12.1.1.4
Java 8 Update 31 Oracle Corporation 2015/02/19 74.0 MB 8.0.310
Java 8 Update 40 Oracle Corporation 2015/03/08 9.10 MB 8.0.400
KeePass Password Safe 2.28 Dominik Reichl 2015/02/21 6.48 MB 2.28
LAME v3.99.3 (for Windows) 2013/06/30 1.52 MB
LINE LINE Corporation 2015/02/14 3.9.1.188
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/02/25 19.2 MB 1.75.0.1300
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/02/27 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/02/11 38.8 MB 4.5.51209
Microsoft Office 365 - ja-jp Microsoft Corporation 2015/02/25 15.0.4693.1002
Microsoft OneDrive Microsoft Corporation 2015/01/25 26.8 MB 17.3.1171.0714
Microsoft OneNote 2013 - ja-jp Microsoft Corporation 2015/02/25 15.0.4693.1002
Microsoft Silverlight Microsoft Corporation 2014/12/15 348 MB 5.1.31211.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/04/12 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/02/09 298 KB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2012/02/22 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/02/06 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/02/16 232 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/02/09 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/14 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/14 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/14 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/14 10.0.50903
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2012/02/28 1.28 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2012/02/29 1.34 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2015/01/30
NVIDIA 3D Vision Controller Driver 270.61 NVIDIA Corporation 2012/02/06 270.61
NVIDIA 3D Vision ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
NVIDIA HD オーディオ ドライバー 1.3.18.0 NVIDIA Corporation 2013/07/28 1.3.18.0
NVIDIA PhysX システム ソフトウェア 9.10.0514 NVIDIA Corporation 2012/02/06 9.10.0514
NVIDIA アップデート 1.11.3 NVIDIA Corporation 2013/04/13 1.11.3
NVIDIA グラフィックス ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
oCam version 39.0.0.0 http://ohsoft.net/ 2014/11/02 14.5 MB 39.0.0.0
PC-Doctor for Windows PC-Doctor, Inc. 2013/10/09 6.0.5549.10
Permanent Readability 2014/02/01
PodSoundRipper LE(デジ造版) Nihon Intelligence Corporation 2012/02/27 28.2 MB 1.2.0
QuickTime 7 Apple Inc. 2015/02/09 70.2 MB 7.76.80.95
Realtek Ethernet Controller Driver Realtek 2012/02/06 7.45.516.2011
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2012/02/13 6.0.1.5772
Singer Song Writer 8.0 VS 2012/02/18
SoundEngine Free Coderium 2012/09/09 5.0.0.4
Steinberg CI2 Extension 64bit Yamaha Corporation 2013/07/28 1.2.1
Steinberg Cubase 7 64bit Steinberg Media Technologies GmbH 2013/11/02 395 MB 7.0.0
Steinberg Cubase AI 5 Steinberg Media Technologies GmbH 2013/07/28 106 MB 5.1.0
Steinberg Drum Loop Expansion 01 Steinberg Media Technologies GmbH 2013/11/02 428 MB 2.0.0.0
Steinberg Eucon Adapter 6.5 64bit Steinberg Media Technologies GmbH 2013/11/02 10.3 MB 6.5.0
Steinberg Groove Agent ONE Allen Morgan Signature Drums Steinberg Media Technologies GmbH 2013/11/02 0.96 GB 1.0.0
Steinberg Groove Agent ONE Content Steinberg Media Technologies GmbH 2013/11/02 142 MB 1.0.0.003
Steinberg Groove Agent ONE Vintage Beatboxes Steinberg Media Technologies GmbH 2013/11/02 38.0 MB 1.0.0.000
Steinberg HALion Sonic SE 64bit Steinberg Media Technologies GmbH 2013/11/02 46.1 MB 1.6.1
Steinberg HALion Sonic SE Content Steinberg Media Technologies GmbH 2013/11/02 3.15 GB 1.6.1
Steinberg HALionOne Steinberg Media Technologies GmbH 2013/07/28 103 MB 1.1.0.457
Steinberg HALionOne GM Drum Set Steinberg Media Technologies GmbH 2013/07/28 23.9 MB 1.0.1.457
Steinberg HALionOne GM Set Steinberg Media Technologies GmbH 2013/07/28 63.6 MB 1.0.1.457
Steinberg LoopMash Content Steinberg Media Technologies GmbH 2013/11/02 617 MB 2.0.0.000
Steinberg LoopMash Content 2 Steinberg Media Technologies GmbH 2013/11/02 558 MB 1.0.0.000
Steinberg Midi Loop Library Steinberg Media Technologies GmbH 2013/11/02 361 MB 1.0.0
Steinberg Padshop 64bit Steinberg Media Technologies GmbH 2013/11/02 433 MB 1.1.0
Steinberg Retrologue 64bit Steinberg Media Technologies GmbH 2013/11/02 81.3 MB 1.1.0
Steinberg REVerence Content 01 Steinberg Media Technologies GmbH 2013/11/02 199 MB 2.0.1.000
Steinberg Upload Manager Steinberg Media Technologies GmbH 2013/11/02 8.53 MB 1.0.1
Steinberg VST Amp Rack Content 01 Steinberg Media Technologies GmbH 2013/11/02 9.18 MB 1.0.1
SugarSync SugarSync, Inc. 2013/12/15 2.0.42.120603
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2012/02/22 8.25 MB 1.0.0.4
Windows Live Essentials Microsoft Corporation 2014/12/18 16.4.3528.0331
Windows Live Sync Microsoft Corporation 2011/04/12 2.76 MB 14.0.8089.726
WinRAR 5.01 (64ビット) win.rar GmbH 2015/02/19 5.01.0
WinRAR アーカイバ 2012/02/13
Yamaha MOTIF-RACK ES Multi Part Editor Yamaha Corporation 2014/03/10 14.5 MB 2.2.2.2
Yamaha Steinberg USB Driver Yamaha Corporation 2013/07/28 2.82 MB 1.7.3
Yamaha Studio Manager Yamaha Corporation 2014/03/10 8.03 MB 2.3.1.0
Yamaha USB-MIDI Driver Yamaha Corporation 2013/12/05 5.22 MB 3.1.3.1
エレコムらくちんプリント 2012/08/15
スマートダイアリー 2.5b Eagle 2014/04/14 3.58 MB 2.5.2


<Chrome>


有効 App Gmail 8 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
無効 App Google ドライブ 6.4 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google ドライブ 6.3 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
有効 App Google 検索 0.0.0.20 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App YouTube 4.2.7 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension Avast Online Security 10.2.0.187 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.2.0.187_0
有効 Extension Google スプレッドシート 1.1 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 Profile 2 C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension laClipy 2.0.1 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0
有効 Plugin Adobe Acrobat 9.5.1.283 Neo C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
無効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 Neo C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll
有効 Plugin Chrome PDF Viewer Neo C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll
有効 Plugin Google Update 1.3.21.115 Neo C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll
有効 Plugin iTunes Application Detector 1.0.1.1 Neo C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
有効 Plugin Java Deployment Toolkit 7.0.50.255 10.5.1.255 Neo C:\Windows\SysWOW64\npDeployJava1.dll
有効 Plugin Java(TM) Platform SE 7 U5 10.5.1.255 Neo C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
有効 Plugin Native Client Neo C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\ppGoogleNaClPluginChrome.dll
有効 Plugin NVIDIA 3D Vision 7.17.12.7061 Neo C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
有効 Plugin Remoting Viewer Neo internal-remoting-viewer
有効 Plugin Shockwave Flash 11,3,300,268 Neo C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\gcswf32.dll
有効 Plugin Shockwave Flash 11.3.31.222 Neo C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.60\PepperFlash\pepflashplayer.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 Neo c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live Photo Gallery 14.0.8081.0709_ship.wlx.w3m3 (ship) Neo C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll



<スケジュール>


有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for Neo-PC-Neo Neo-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
有効 Task RealUpgradeLogonTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck
有効 Task RealUpgradeScheduledTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck
有効 Task Task_ShellExecuteAs Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "http://www.playgom.net/?refer=promotionc"
有効 Task Uninstaller_SkipUac_Neo IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {5379321E-6819-4B20-BE4F-78055E20C3D6} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST\Setup.exe" -d "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST"
有効 Task {5E61C4C2-3644-4CDE-B03A-148AEDC60FD3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\eLicenserControlSetup.exe -d C:\Users\Neo\Downloads
有効 Task {71BC5806-8473-4B5C-B1BC-C32A215DB315} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Desktop\新しいフォルダー\Setup.exe -d C:\Users\Neo\Desktop\新しいフォルダー
有効 Task {84410036-4652-4B57-9D30-7DAF64A8CD7F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a G:\LaCie.exe -d G:\
有効 Task {85B656D7-871F-480E-B685-D23F73501341} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0\Digidesign Audio Drivers Setup.exe" -d "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0"
有効 Task {C7EA86E1-4E50-4D55-AE48-D622F14E568A} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\NetFx20SP2_ia64.exe -d C:\Users\Neo\Downloads




  • ライダーNeo
  • 2015/03/08 (Sun) 22:03:23
無題
>Javaは更新、Freemakeはアンインストールいたしました。
>Freemakeはもう使わないことにします。

>下記のものだけエントリの削除できませんでした。

>無効 Plugin Babylon Chrome Plugin 1, 0, 0, 1 Neo C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhkplhfnhceodhffomolpfigojocbpcb\1.5_0\BabylonChromePI.dll

はい、わかりました。Chromeはまたひっかかってますね。
ではこれを含めて続きの作業しましょう。

今度は手動目視での作業になります。

Chrome起動して、アドレスバーに下記をコピペで貼り付けて、順番に移動してください。
chrome://extensions/

chrome://plugins/

そこで先に処置できなかったBabylonに該当する拡張を探してください。

見つかったらそれを手動で削除か無効にしてください。

これができたらChrome終了後にCCを起動して、Chromeタブの確認して、そこでBabylonが消えていれば処置成功です。

一応ここでChromeタブのログを取り直して、それをまたレスで見せてください。

なお、自分から次のレスできるのはまた明日夕か夜になるのでご了承ください。
今宵はここまでにしとうございます(←それ悪代官じゃないから
  • 悪代官
  • 2015/03/08 (Sun) 22:20:21
mal反応



Babylonに該当する拡張を探してみたのですが、見つけられませんでした。

リストにあったプラグインは以下のとおりです。



Widevine Content Decryption Module - バージョン: 1.4.6.758
Native Client
Adobe Flash Player
Chrome Remote Desktop Viewer
Java(TM)
Silverlight
Chrome PDF Viewer
Google Update
Adobe Reader
QuickTime Player
Microsoft Office
NVIDIA 3D
Photo Gallery
iTunes Application Detector



そして、悲しいことに、この作業中にまたアバストがMalに反応してしまいました。

また最初からやり直しでしょうか・・・



  • ライダーNeo
  • 2015/03/09 (Mon) 10:50:21
力技で行きましょうか
レスが遅くなってすみません。

>Babylonに該当する拡張を探してみたのですが、見つけられませんでした。

>この作業中にまたアバストがMalに反応してしまいました

はい、では力技での対処しましょう。
一度Chromeを完全に消してから入れ替えます。
Chromeのブックマークで必要なものがあればブクマをエクスポート(バックアップ)しておいてください。

準備できたらPCをセーフモードでIUを使ってGoogle系の下記2つをアンインストールしてください。
>Google Chrome Google Inc. 2015/02/21 40.0.2214.115
>Google Drive Google, Inc. 2015/01/29 35.0 MB 1.19.8406.6504

削除できたらATFでごみ掃除したあとにPCを通常モードで再起動です。

再起動後、Cドライブを手動目視で開いて、下記のフォルダを順番に探してください。
>C:\Program Files (x86)\Google
>C:\Users\poor\AppData\Local\Google
>C:\Users\poor\AppData\LocalLow\Google
探しても見つからないものはスルーでいいです。

ここまでできたら今度はGoogle公式サイトに行ってChrome最新版をダウンロード、再インストールしてください。

再インスト後、Chromeを起動してしばらく様子見したあと、また状態報告をお願いします
  • 悪代官
  • 2015/03/09 (Mon) 17:54:33
Re: youtubeダウンロードのサイトでMalに感染してしまったようです。


状態報告です。


上記のプロセスを行いましたところ、CCのChromeからBabylonは消え、
それ以降 Mal反応 も、その他の異常も見当たりません。


必要なログがあればおっしゃってください。



  • 状態報告
  • 2015/03/14 (Sat) 16:29:06
ログから全体の再確認しましょう
またレスが遅くなってすみません。
ですが元々人生が手遅れなので、これが芸風とでも思っておいてください(謎

>上記のプロセスを行いましたところ、CCのChromeからBabylonは消え、
>それ以降 Mal反応 も、その他の異常も見当たりません

はい、力技での掃除成功ですね。それにしてもChromeに隠れる形での感染がいまだに多いのは困りものです。
Chromeを狙う曲者プログラムだけでなくFirefoxを狙うもの、IEを狙うものなど各ブラウザを的に絞ってくるマルウェアは以前よりも増えています。
なので特定ブラウザだけで異常が出る場合は他ブラウザ使用に切り替えて作業すれば症状だけでなく気分も落ち着いて対処することが可能です。
全体的にChromeはその仕様上から、自分としてはお勧めしないブラウザと思っていますが。

では全体の再確認しましょうか。
お手数ですが再度HJTとインストール情報ログと、CCでの各タブのログを取り直して、それらをまた見せてください。
ここで注意するのは「スケジュール」タブにまた入り込んでいるものがないかですね。
一度処置した後でも再感染や別口の感染は珍しくないので、最後まで油断せずに行きましょう
  • 悪代官
  • 2015/03/14 (Sat) 17:26:07
Re: youtubeダウンロードのサイトでMalに感染してしまったようです。



レスが遅いことを謝らないでください…。

見ず知らずの私に、対応していただけるだけで、大変感謝しております。



Chromeの利用は今後ちょっと考えたいと思います。


ではログを添付します。
よろしくお願いします。



<HJTログ>



Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 19:00:30, on 2015/03/14
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.EXE
C:\Program Files (x86)\Naver\LINE\Line.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Neo\Desktop\ヘルプ フォルダ\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Dropbox.lnk = Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: スマートダイアリー.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O21 - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Box Sync Update Service (BoxSyncUpdateService) - Box Inc. - C:\Program Files\Box\Box Sync\SyncUpdaterService.exe
O23 - Service: Digidesign MME Refresh Service (DigiRefresh) - Digidesign, A Division of Avid Technology, Inc. - C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10932 bytes







<Windows>


無効 EPLTarget
無効 HKCU:Run Adobe Reader Synchronizer "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe"
無効 HKCU:Run ApplicationManager Beijing AJ Technology Co., Ltd C:\Users\Neo\AppData\Roaming\ApplicationManager\bin\ApplicationManager.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleDriveSync "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
無効 HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
無効 HKCU:Run LightScribe Control Panel C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
無効 HKCU:Run MobileDocuments C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
無効 HKCU:Run NaverNDrive C:\Program Files\Naver\Ndrive\NDriveUpgrader.exe
無効 HKCU:Run RESTART_STICKY_NOTES Microsoft Corporation C:\Windows\system32\StikyNot.exe
無効 HKCU:Run Sidebar Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
無効 HKCU:Run SkyDrive Microsoft Corporation "C:\Users\Neo\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
無効 HKCU:Run Speech Recognition Microsoft Corporation "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
無効 HKCU:Run SugarSync SugarSync, Inc. "C:\Program Files (x86)\SugarSync\SugarSync.exe" -startInTray -usedelay=true
無効 HKCU:Run swg "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
無効 HKCU:Run YahooDesktop "C:\Program Files\Yahoo!J\Desktop\Modules\YahooDesktop.exe"
無効 HKLM:Run 20131121 AVAST Software C:\Program Files\AVAST Software\Avast\setup\emupdate\d0f5c31b-51c5-4cdb-a25e-f549bbb601c3.exe /check
無効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
無効 HKLM:Run Adobe Reader Speed Launcher "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
無効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
無効 HKLM:Run BoxSync Box, Inc. "c:\Program Files\Box\Box Sync\BoxSync.exe" -m
無効 HKLM:Run CLMLServer CyberLink "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
無効 HKLM:Run DigidesignMMERefresh Digidesign, A Division of Avid Technology, Inc. C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
無効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
無効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
無効 HKLM:Run KeePass 2 PreLoad Dominik Reichl "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
無効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
無効 HKLM:Run LogMeIn GUI "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
無効 HKLM:Run MDS_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
無効 HKLM:Run RemoteControl9 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"
無効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
無効 HKLM:Run Skytel Realtek Semiconductor Corp. C:\Program Files\Realtek\Audio\HDA\Skytel.exe
無効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
無効 HKLM:Run TkBellExe "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
無効 HKLM:Run UCam_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
無効 HKLM:Run UpdateLBPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
無効 HKLM:Run UpdateP2GoShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
無効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
無効 HKLM:Run UpdatePSTShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
無効 Startup User EvernoteClipper.lnk Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE
無効 Startup User iMindMap Preloader.lnk C:\Users\Neo\THINKB~1\imindmap\preload\IMINDM~1.EXE
無効 Startup User OneNote に送る.lnk Microsoft Corporation C:\PROGRA~1\MICROS~3\root\office15\ONENOTEM.EXE /tsr
無効 Startup User PcHusen.lnk C:\PcHusen\PcHusen.exe
無効 Startup User Sticky Notes.lnk Microsoft Corporation C:\Windows\system32\StikyNot.exe
有効 Startup User スマートダイアリー.lnk C:\Users\Neo\AppData\Roaming\Microsoft\Installer\{37714F81-04A8-4AF6-8F22-1499F13B8870}\_4ae13d6c.exe




<Internet~>



有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
有効 Helper Evernote extension Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll



<Chrome>


有効 App Gmail 8 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google ドライブ 6.4 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google 検索 0.0.0.20 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App YouTube 4.2.7 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension laClipy 2.0.1 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0




<スケジュール>



有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for Neo-PC-Neo Neo-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
有効 Task RealUpgradeLogonTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck
有効 Task RealUpgradeScheduledTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck
有効 Task Task_ShellExecuteAs Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "http://www.playgom.net/?refer=promotionc"
有効 Task Uninstaller_SkipUac_Neo IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {5379321E-6819-4B20-BE4F-78055E20C3D6} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST\Setup.exe" -d "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST"
有効 Task {5E61C4C2-3644-4CDE-B03A-148AEDC60FD3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\eLicenserControlSetup.exe -d C:\Users\Neo\Downloads
有効 Task {71BC5806-8473-4B5C-B1BC-C32A215DB315} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Desktop\新しいフォルダー\Setup.exe -d C:\Users\Neo\Desktop\新しいフォルダー
有効 Task {84410036-4652-4B57-9D30-7DAF64A8CD7F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a G:\LaCie.exe -d G:\
有効 Task {85B656D7-871F-480E-B685-D23F73501341} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0\Digidesign Audio Drivers Setup.exe" -d "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0"
有効 Task {C7EA86E1-4E50-4D55-AE48-D622F14E568A} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\NetFx20SP2_ia64.exe -d C:\Users\Neo\Downloads


  • ログです。
  • 2015/03/14 (Sat) 19:06:22
今度はIUログをお願いします
作業と報告、ご苦労様です。
ログも見せていただきました。

では少し追加の作業をお願いします。

またCCを起動して「スケジュールされたタスク」内の下記を右クリックから「無効」にしたあと「エントリの削除」してください。
>有効 Task Task_ShellExecuteAs Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" "http://www.playgom.net/?refer=promotionc"

これができたら今度はIUでの作業です。

IUを起動して画面右上の「詳細設定」ボタンから「プログラムリストをエクスポート」してください。
これを実行するとIUでのログが保存可能になります。
デフォルトでは「Software List.txt」という名前のファイルになるはずですから、そのログをデスクトップに保存しておいてください。

保存したらそのログをレスに貼って見せてください。

このIUログはCCでの「インストール情報」ログに該当しますが、CCのそれよりもかなり詳細な内容が表示されます。
その反面IUログはOTL同様にかなり長くなることがあるので、この場合はまたログを分割で送信してください
  • 悪代官
  • 2015/03/14 (Sat) 20:50:47
IUログ



CCにて指定の項目は手順どおり削除いたしました。


それではIUログです。






====================================
Software List
Application Version:4.2.6.2
Windows 7
Exported Time:03-15-2015 13:19:48
====================================

Software Name: Adobe Flash Player 16 ActiveX
Version: 16.0.0.305
Publisher: Adobe Systems Incorporated
Install Time: 2015/02/06
Size: 6.00 MB
Help info: http://www.adobe.com/go/flashplayer_support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Adobe Flash Player ActiveX
Uninstall Command: C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_16_0_0_305_ActiveX.exe -maintain activex
----------------------------------------------

Software Name: ApplicationManager 2011.4.27.209
Version: 2011.4.27.209
Publisher: Beijing AJ Technology Co., Ltd
Install Time: 2013/10/07
Size: 954.48 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ApplicationManager
Uninstall Command: C:\Users\Neo\AppData\Roaming\ApplicationManager\uninst.exe
----------------------------------------------

Software Name: Audacity 2.0.2
Version: 2.0.2
Publisher: Audacity Team
Install Time: 2012/12/05
Size: 43.58 MB
Help info: http://audacity.sourceforge.net
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Audacity_is1
Uninstall Command: "C:\Program Files (x86)\Audacity\unins000.exe"
----------------------------------------------

Software Name: Avast Free Antivirus
Version: 10.0.2208
Publisher: AVAST Software
Install Time: 2012/02/16
Size: 786.96 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\avast
Uninstall Command: C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
----------------------------------------------

Software Name: FreeMind
Version: 0.9.0_RC_10
Publisher:
Install Time: 2012/04/22
Size: 16.20 MB
Help info: http://freemind.sourceforge.net
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\B991B020-2968-11D8-AF23-444553540000_is1
Uninstall Command: "C:\Program Files (x86)\FreeMind\unins000.exe"
----------------------------------------------

Software Name: エレコムらくちんプリント
Version: -
Publisher:
Install Time: 2012/08/15
Size: 10.41 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ELECOM RAKUTIN PRINT
Uninstall Command: "C:\Program Files (x86)\エレコムらくちんプリント\Uninstal.exe" ElecomRakutinPrint.Application
----------------------------------------------

Software Name: eLicenser Control
Version: -
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/08/09
Size: 14.72 MB
Help info: support@eLicenser.net
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\eLicenser Control
Uninstall Command: C:\PROGRA~2\ELICEN~1\UNWISE.EXE C:\PROGRA~2\ELICEN~1\INSTALL.LOG
----------------------------------------------

Software Name: EPSON PX-045A Series ユーザーズガイド
Version: -
Publisher:
Install Time: 2015/01/30
Size: 9.51 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EPSON PX-045A Series Useg
Uninstall Command: "C:\Program Files (x86)\Epson Software\Epson Manual\EPSON PX-045A Series\ja\Useg\DocUnins.exe"
----------------------------------------------

Software Name: EPSON Scan
Version: -
Publisher: Seiko Epson Corporation
Install Time: 2015/01/30
Size: 789.71 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EPSON Scanner
Uninstall Command: C:\Program Files (x86)\epson\escndv\setup\setup.exe /r
----------------------------------------------

Software Name: GOM Player
Version: 2.2.67.5221
Publisher: Gretech Corporation
Install Time: 2012/02/24
Size: 66.37 MB
Help info: http://www.gomplayer.jp/player/howto/howtouse.html
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\GOM Player
Uninstall Command: "C:\Program Files (x86)\GRETECH\GomPlayer\Uninstall.exe"
----------------------------------------------

Software Name: Google Chrome
Version: 41.0.2272.89
Publisher: Google Inc.
Install Time: 2015/03/10
Size: 460.30 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Google Chrome
Uninstall Command: "C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.89\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
----------------------------------------------

Software Name: Haali Media Splitter
Version: -
Publisher:
Install Time: 2013/10/09
Size: 908 Byte
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HaaliMkx
Uninstall Command: "C:\Program Files (x86)\Uninstall Information\Ib\97\4258\ib_uninstall.exe" /PUninstall="HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\HaaliMkx" /reg=32
----------------------------------------------

Software Name: Handbrake日本語版 0.9.4
Version: 0.9.4
Publisher:
Install Time: 2013/07/16
Size: 15.03 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Handbrake日本語版
Uninstall Command: C:\Program Files (x86)\Handbrake\uninst.exe
----------------------------------------------

Software Name: ImgBurn
Version: 2.5.8.0
Publisher: LIGHTNING UK!
Install Time: 2013/07/16
Size: 3.14 MB
Help info: http://forum.imgburn.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ImgBurn
Uninstall Command: "C:\Program Files (x86)\ImgBurn\uninstall.exe"
----------------------------------------------

Software Name: CyberLink YouCam
Version: 2.0.3718
Publisher: CyberLink Corp.
Install Time: 2012/02/13
Size: 77.01 MB
Help info: http://support.gocyberlink.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{01FB4998-33C4-4431-85ED-079E3EEFE75D}\Setup.exe" /z-uninstall
----------------------------------------------

Software Name: CyberLink Blu-ray Disc Suite
Version: 6.0.4703
Publisher: CyberLink Corp.
Install Time: 2012/02/13
Size: 16.54 MB
Help info: http://support.gocyberlink.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\Setup.exe" /z-uninstall
----------------------------------------------

Software Name: Yamaha MOTIF-RACK ES Multi Part Editor
Version: 2.2.2.2
Publisher: Yamaha Corporation
Install Time: 2014/03/10
Size: 14.54 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{28F79721-BB9E-48A9-AFA4-F9A1F19D14DA}
Uninstall Command: C:\Program Files (x86)\InstallShield Installation Information\{28F79721-BB9E-48A9-AFA4-F9A1F19D14DA}\setup.exe -runfromtemp -l0x0411
----------------------------------------------

Software Name: CyberLink LG Burning Tool
Version: 6.2.4619
Publisher: CyberLink Corp.
Install Time: 2012/02/13
Size: 121.23 MB
Help info: http://support.gocyberlink.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe" /z-uninstall
----------------------------------------------

Software Name: Yamaha USB-MIDI Driver
Version: 3.1.3.1
Publisher: Yamaha Corporation
Install Time: 2013/12/05
Size: 5.22 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{71E75F05-930E-41BA-BDBC-15E3134DD45B}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{71E75F05-930E-41BA-BDBC-15E3134DD45B}\setup.exe" -runfromtemp -l0x0411 -removeonly
----------------------------------------------

Software Name: CyberLink MediaShow
Version: 4.1.3402
Publisher: CyberLink Corp.
Install Time: 2012/02/13
Size: 192.09 MB
Help info: http://support.gocyberlink.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{80E158EA-7181-40FE-A701-301CE6BE64AB}\Setup.exe" /z-uninstall
----------------------------------------------

Software Name: Yamaha Studio Manager
Version: 2.3.1.0
Publisher: Yamaha Corporation
Install Time: 2014/03/10
Size: 8.04 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{898386DF-CE1A-464B-929C-578A827FA817}
Uninstall Command: C:\Program Files (x86)\InstallShield Installation Information\{898386DF-CE1A-464B-929C-578A827FA817}\setup.exe -runfromtemp -l0x0411
----------------------------------------------

Software Name: CyberLink PowerDVD 9
Version: 9.0.3530.52
Publisher: CyberLink Corp.
Install Time: 2012/02/13
Size: 176.64 MB
Help info: http://support.gocyberlink.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\Setup.exe" /z-uninstall
----------------------------------------------

Software Name: CyberLink PowerProducer
Version: 5.0.2.2512
Publisher: CyberLink Corp.
Install Time: 2012/02/13
Size: 172.34 MB
Help info: http://support.gocyberlink.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{B7A0CE06-068E-11D6-97FD-0050BACBF861}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{B7A0CE06-068E-11D6-97FD-0050BACBF861}\Setup.exe" /z-uninstall
----------------------------------------------

Software Name: CyberLink LabelPrint
Version: 2.5.1916
Publisher: CyberLink Corp.
Install Time: 2012/02/13
Size: 142.93 MB
Help info: http://support.gocyberlink.com/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\Setup.exe" /z-uninstall
----------------------------------------------

Software Name: Yamaha Steinberg USB Driver
Version: 1.7.3
Publisher: Yamaha Corporation
Install Time: 2013/07/28
Size: 2.83 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{E976141F-5B03-429D-84C2-392E6BB1A45A}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{E976141F-5B03-429D-84C2-392E6BB1A45A}\setup.exe" -runfromtemp -l0x0411 -removeonly
----------------------------------------------

Software Name: IObit Uninstaller
Version: 4.2.6.2
Publisher: IObit
Install Time: 2015/02/06
Size: 36.28 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IObitUninstall
Uninstall Command: "C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallDisplay.exe" uninstall_start
----------------------------------------------

Software Name: KeePass Password Safe 2.28
Version: 2.28
Publisher: Dominik Reichl
Install Time: 2015/02/21
Size: 6.49 MB
Help info: http://keepass.info/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KeePassPasswordSafe2_is1
Uninstall Command: "C:\Program Files (x86)\KeePass Password Safe 2\unins000.exe"
----------------------------------------------

Software Name: LAME v3.99.3 (for Windows)
Version: -
Publisher:
Install Time: 2013/06/30
Size: 1.53 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LAME_is1
Uninstall Command: "C:\Program Files (x86)\Lame For Audacity\unins000.exe"
----------------------------------------------

Software Name: LINE
Version: 3.9.1.188
Publisher: LINE Corporation
Install Time: 2012/06/27
Size: 55.24 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LINE
Uninstall Command: C:\Program Files (x86)\Naver\LINE\LineUnInst.exe
----------------------------------------------

Software Name: Malwarebytes Anti-Malware バージョン 1.75.0.1300
Version: 1.75.0.1300
Publisher: Malwarebytes Corporation
Install Time: 2015/02/25
Size: 19.28 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1
Uninstall Command: "C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe"
----------------------------------------------

Software Name: MyEPSON Connect
Version: -
Publisher: SEIKO EPSON Corporation
Install Time: 2015/01/30
Size: 8.45 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyEPSON Connect
Uninstall Command: MsiExec.exe /X{3361D415-BA35-4143-B301-661991BA6219}
----------------------------------------------

Software Name: NVIDIA 3D Vision Controller Driver
Version: 270.61
Publisher: NVIDIA Corporation
Install Time: 2012/02/13
Size: 2.09 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NVIDIA StereoUSB Driver
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{714B9C6C-70FC-4750-98E2-61520B906C45}\setup.exe" -runfromtemp -l0x0009 -removeonly
----------------------------------------------

Software Name: NVIDIA Stereoscopic 3D Driver
Version: 7.17.13.1106
Publisher: NVIDIA Corporation
Install Time: 2013/04/13
Size: 26.85 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\NVIDIAStereo
Uninstall Command: "C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
----------------------------------------------

Software Name: oCam version 39.0.0.0
Version: 39.0.0.0
Publisher: http://ohsoft.net/
Install Time: 2014/11/02
Size: 14.59 MB
Help info: http://ohsoft.net/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\oCam_is1
Uninstall Command: "C:\Program Files (x86)\oCam\unins000.exe"
----------------------------------------------

Software Name: SoundEngine Free
Version: 5.0.0.4
Publisher: Coderium
Install Time: 2012/09/09
Size: 5.13 MB
Help info: http://soundengine.jp/services/forum/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoundEngine Free
Uninstall Command: "C:\Program Files (x86)\SoundEngine Free\SoundEngineUninstaller.exe" /Uninstall
----------------------------------------------

Software Name: SugarSync
Version: 2.0.42.120603
Publisher: SugarSync, Inc.
Install Time: 2013/12/15
Size: 56.18 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SugarSync
Uninstall Command: C:\Program Files (x86)\SugarSync\uninstall.exe
----------------------------------------------

Software Name: Windows Live Essentials
Version: 16.4.3528.0331
Publisher: Microsoft Corporation
Install Time: 2014/12/18
Size: 146.50 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinLiveSuite
Uninstall Command: C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
----------------------------------------------

Software Name: WinRAR アーカイバ
Version: -
Publisher:
Install Time: 2012/02/13
Size: 3.48 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinRAR archiver
Uninstall Command: C:\Program Files (x86)\WinRAR\uninstall.exe
----------------------------------------------

Software Name: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Version: 9.0.30729.4148
Publisher: Microsoft Corporation
Install Time: 2012/02/16
Size: 232.00 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Uninstall Command: MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
----------------------------------------------

Software Name: Java 8 Update 31
Version: 8.0.310
Publisher: Oracle Corporation
Install Time: 2015/02/19
Size: 74.01 MB
Help info: http://java.com
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218031F0}
Uninstall Command: MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83218031F0}
----------------------------------------------

Software Name: Java 8 Update 40
Version: 8.0.400
Publisher: Oracle Corporation
Install Time: 2015/03/08
Size: 9.10 MB
Help info: http://java.com
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{26A24AE4-039D-4CA4-87B4-2F83218040F0}
Uninstall Command: MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83218040F0}
----------------------------------------------

Software Name: CyberLink BD Advisor 2.0
Version: -
Publisher:
Install Time: 2012/02/13
Size: 1.09 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{2D2D8FE2-605C-4D3C-B706-36E981E7EEF0}
Uninstall Command: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{2D2D8FE2-605C-4D3C-B706-36E981E7EEF0}\Setup.exe" -uninstall
----------------------------------------------

Software Name: スマートダイアリー 2.5b
Version: 2.5.2
Publisher: Eagle
Install Time: 2014/04/14
Size: 3.58 MB
Help info: http://hp.vector.co.jp/authors/VA014298/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{37714F81-04A8-4AF6-8F22-1499F13B8870}
Uninstall Command: MsiExec.exe /X{37714F81-04A8-4AF6-8F22-1499F13B8870}
----------------------------------------------

Software Name: QuickTime 7
Version: 7.76.80.95
Publisher: Apple Inc.
Install Time: 2015/02/09
Size: 70.30 MB
Help info: http://www.apple.com/jp/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}
Uninstall Command: MsiExec.exe /X{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}
----------------------------------------------

Software Name: Apple Application Support(32 ビット)
Version: 3.1.2
Publisher: Apple Inc.
Install Time: 2015/02/28
Size: 94.29 MB
Help info: http://www.apple.com/jp/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{447CDCE5-F555-429B-BFA6-642C3C6D684F}
Uninstall Command: MsiExec.exe /X{447CDCE5-F555-429B-BFA6-642C3C6D684F}
----------------------------------------------

Software Name: Steinberg Drum Loop Expansion 01
Version: 2.0.0.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 428.54 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{490BF87E-1F75-4453-BF55-9F540543A3CA}
Uninstall Command: MsiExec.exe /X{490BF87E-1F75-4453-BF55-9F540543A3CA}
----------------------------------------------

Software Name: Steinberg LoopMash Content
Version: 2.0.0.000
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 617.60 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4D454CF8-12FD-464D-B57B-B46FE27B78BB}
Uninstall Command: MsiExec.exe /X{4D454CF8-12FD-464D-B57B-B46FE27B78BB}
----------------------------------------------

Software Name: Evernote v. 5.8.1
Version: 5.8.1.6061
Publisher: Evernote Corp.
Install Time: 2014/12/29
Size: 231.53 MB
Help info: http://www.evernote.com
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4FD2D1C8-8636-11E4-9D21-00163E98E7D6}
Uninstall Command: MsiExec.exe /X{4FD2D1C8-8636-11E4-9D21-00163E98E7D6}
----------------------------------------------

Software Name: Steinberg REVerence Content 01
Version: 2.0.1.000
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 199.82 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{532B917B-8235-4FA5-BE36-643A8BB053A5}
Uninstall Command: MsiExec.exe /X{532B917B-8235-4FA5-BE36-643A8BB053A5}
----------------------------------------------

Software Name: Everio MediaBrowser 3
Version: 3.00.243
Publisher: PIXELA
Install Time: 2012/07/18
Size: 259.92 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{548F12A2-BD2E-4B5A-9B62-BBC0AA8EB3DD}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{548F12A2-BD2E-4B5A-9B62-BBC0AA8EB3DD}\setup.exe" -runfromtemp -l0x0011UNINSTALL -removeonly
----------------------------------------------

Software Name: EPSON Scan OCR コンポーネント
Version: 1.20.0000
Publisher: SEIKO EPSON Corp.
Install Time: 2015/01/30
Size: 1.99 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}
Uninstall Command: C:\Program Files (x86)\InstallShield Installation Information\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}\SETUP.EXE -runfromtemp -l0x0011 -removeonly
----------------------------------------------

Software Name: Visual Basic 6.0 SP6 ランタイムライブラリ 第4版
Version: 1.0.0.4
Publisher: NTSOFT
Install Time: 2012/02/22
Size: 8.26 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{59FEFE3F-8119-457C-A4EE-CF24202DD9D2}
Uninstall Command: MsiExec.exe /X{59FEFE3F-8119-457C-A4EE-CF24202DD9D2}
----------------------------------------------

Software Name: Steinberg Groove Agent ONE Allen Morgan Signature Drums
Version: 1.0.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 985.86 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{611A7035-0172-4B9B-8BB6-5046F6867D8A}
Uninstall Command: MsiExec.exe /X{611A7035-0172-4B9B-8BB6-5046F6867D8A}
----------------------------------------------

Software Name: Intel(R) Management Engine Components
Version: 7.0.0.1118
Publisher: Intel Corporation
Install Time: 2012/02/13
Size: 20.47 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}
Uninstall Command: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
----------------------------------------------

Software Name: Microsoft Visual C++ 2005 Redistributable
Version: 8.0.61001
Publisher: Microsoft Corporation
Install Time: 2012/02/13
Size: 298.00 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Uninstall Command: MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
----------------------------------------------

Software Name: Microsoft Visual C++ 2005 Redistributable
Version: 8.0.56336
Publisher: Microsoft Corporation
Install Time: 2012/02/22
Size: 2.70 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7299052b-02a4-4627-81f2-1818da5d550d}
Uninstall Command: MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
----------------------------------------------

Software Name: Apple Software Update
Version: 2.1.3.127
Publisher: Apple Inc.
Install Time: 2012/02/13
Size: 2.38 MB
Help info: http://www.apple.com/jp/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
Uninstall Command: MsiExec.exe /X{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}
----------------------------------------------

Software Name: MSXML 4.0 SP2 (KB954430)
Version: 4.20.9870.0
Publisher: Microsoft Corporation
Install Time: 2012/02/28
Size: 1.28 MB
Help info: http://support.microsoft.com/kb/954430
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
Uninstall Command: MsiExec.exe /X{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
----------------------------------------------

Software Name: Realtek Ethernet Controller Driver
Version: 7.45.516.2011
Publisher: Realtek
Install Time: 2012/02/13
Size: 2.47 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}
Uninstall Command: C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
----------------------------------------------

Software Name: Steinberg Upload Manager
Version: 1.0.1
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 8.54 MB
Help info: http://www.Steinberg.net
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{88BBBD8F-4C19-4809-B84B-7A8F8238B48D}
Uninstall Command: MsiExec.exe /X{88BBBD8F-4C19-4809-B84B-7A8F8238B48D}
----------------------------------------------

Software Name: Steinberg LoopMash Content 2
Version: 1.0.0.000
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 558.50 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{88C337F0-4CF2-4098-BDC0-D94859ECA2B4}
Uninstall Command: MsiExec.exe /X{88C337F0-4CF2-4098-BDC0-D94859ECA2B4}
----------------------------------------------

Software Name: Steinberg Midi Loop Library
Version: 1.0.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 361.77 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{89DE2651-6DD9-4C15-AC94-8348362D456C}
Uninstall Command: MsiExec.exe /X{89DE2651-6DD9-4C15-AC94-8348362D456C}
----------------------------------------------

Software Name: Steinberg VST Amp Rack Content 01
Version: 1.0.1
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 9.19 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8CBA7E47-48DA-47DC-8E98-6984BA830295}
Uninstall Command: MsiExec.exe /X{8CBA7E47-48DA-47DC-8E98-6984BA830295}
----------------------------------------------

Software Name: PodSoundRipper LE(デジ造版)
Version: 1.2.0
Publisher: Nihon Intelligence Corporation
Install Time: 2012/02/27
Size: 28.26 MB
Help info: http://optmarket.jp/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8DB78650-4C45-4280-1100-506F64536F75}
Uninstall Command: MsiExec.exe /X{8DB78650-4C45-4280-1100-506F64536F75}
----------------------------------------------

Software Name: Epson Event Manager
Version: 3.01.0005
Publisher: Seiko Epson Corporation
Install Time: 2015/01/30
Size: 42.47 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8F01524C-0676-4CC1-B4AE-64753C723391}
Uninstall Command: MsiExec.exe /X{8F01524C-0676-4CC1-B4AE-64753C723391}
----------------------------------------------

Software Name: Singer Song Writer 8.0 VS
Version: -
Publisher:
Install Time: 2012/02/13
Size: 1.09 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{960C3FE6-08CE-11D8-8537-0060674BA766}
Uninstall Command: RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{960C3FE6-08CE-11D8-8537-0060674BA766}\setup.exe" -uninst
----------------------------------------------

Software Name: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Version: 9.0.30729
Publisher: Microsoft Corporation
Install Time: 2012/02/13
Size: 596.00 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Uninstall Command: MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
----------------------------------------------

Software Name: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Version: 9.0.30729.6161
Publisher: Microsoft Corporation
Install Time: 2012/02/13
Size: 600.00 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Uninstall Command: MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
----------------------------------------------

Software Name: Steinberg HALion Sonic SE Content
Version: 1.6.1
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 3.15 GB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A5051ABF-A497-4C3C-85EA-F7A4D5C19B82}
Uninstall Command: MsiExec.exe /X{A5051ABF-A497-4C3C-85EA-F7A4D5C19B82}
----------------------------------------------

Software Name: Adobe Reader XI (11.0.10) - Japanese
Version: 11.0.10
Publisher: Adobe Systems Incorporated
Install Time: 2015/02/19
Size: 203.55 MB
Help info: http://www.adobe.co.jp/support/main.html
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AC76BA86-7AD7-1041-7B44-AB0000000001}
Uninstall Command: MsiExec.exe /X{AC76BA86-7AD7-1041-7B44-AB0000000001}
----------------------------------------------

Software Name: Steinberg HALionOne GM Drum Set
Version: 1.0.1.457
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/07/28
Size: 23.94 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AC997F93-0757-4ED4-A701-F40C2D654D09}
Uninstall Command: MsiExec.exe /X{AC997F93-0757-4ED4-A701-F40C2D654D09}
----------------------------------------------

Software Name: Permanent Readability
Version: -
Publisher:
Install Time: 2014/02/01
Size: 221.61 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}
Uninstall Command: "C:\Program Files (x86)\Permanent Readability\Permanent Readability.exe" /s /n /i:"ExecuteCommands;UninstallCommands" ""
----------------------------------------------

Software Name: Windows Live Sync
Version: 14.0.8089.726
Publisher: Microsoft Corporation
Install Time: 2012/02/13
Size: 2.77 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AEDA8B17-9571-4839-9240-F93E41198E19}
Uninstall Command: MsiExec.exe /X{AEDA8B17-9571-4839-9240-F93E41198E19}
----------------------------------------------

Software Name: Steinberg CI2 Extension 64bit
Version: 1.2.1
Publisher: Yamaha Corporation
Install Time: 2013/07/28
Size: 47.72 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B064BF5C-EBCC-449E-97F8-9E58310B8A96}
Uninstall Command: "C:\Program Files (x86)\InstallShield Installation Information\{B064BF5C-EBCC-449E-97F8-9E58310B8A96}\setup.exe" -runfromtemp -l0x0411 -removeonly
----------------------------------------------

Software Name: Steinberg Cubase AI 5
Version: 5.1.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/07/28
Size: 106.28 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_cubase_ai_5_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BAF3C332-CF42-4593-AC9A-E9B2A3FA3B8E}
Uninstall Command: MsiExec.exe /X{BAF3C332-CF42-4593-AC9A-E9B2A3FA3B8E}
----------------------------------------------

Software Name: Steinberg Groove Agent ONE Content
Version: 1.0.0.003
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 142.22 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{BD86F1AC-B594-46E4-85DC-1258AC9E2232}
Uninstall Command: MsiExec.exe /X{BD86F1AC-B594-46E4-85DC-1258AC9E2232}
----------------------------------------------

Software Name: ILLUSION むすメイク きゃらメイク&Hビューアー
Version: 1.00.0000
Publisher: ILLUSION
Install Time: 2014/09/07
Size: 258.66 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DA6FFDC8-2479-4974-ADAA-7F2A2F145C71}
Uninstall Command: MsiExec.exe /X{DA6FFDC8-2479-4974-ADAA-7F2A2F145C71}
----------------------------------------------

Software Name: Steinberg Groove Agent ONE Vintage Beatboxes
Version: 1.0.0.000
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 38.01 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DBF4BC99-53F1-4C97-84C3-7557D103E182}
Uninstall Command: MsiExec.exe /X{DBF4BC99-53F1-4C97-84C3-7557D103E182}
----------------------------------------------

Software Name: Steinberg HALionOne
Version: 1.1.0.457
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/07/28
Size: 103.59 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{E70E7159-93B1-470D-9FBD-D8E9EF34B538}
Uninstall Command: MsiExec.exe /X{E70E7159-93B1-470D-9FBD-D8E9EF34B538}
----------------------------------------------

Software Name: Steinberg HALionOne GM Set
Version: 1.0.1.457
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/07/28
Size: 63.61 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F057965A-D974-4C64-ADB1-4381CD4B8956}
Uninstall Command: MsiExec.exe /X{F057965A-D974-4C64-ADB1-4381CD4B8956}
----------------------------------------------

Software Name: Microsoft SQL Server 2005 Compact Edition [ENU]
Version: 3.1.0000
Publisher: Microsoft Corporation
Install Time: 2012/02/13
Size: 1.72 MB
Help info: http://www.microsoft.com/sql/everywhere
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Uninstall Command: MsiExec.exe /X{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
----------------------------------------------

Software Name: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Version: 10.0.40219
Publisher: Microsoft Corporation
Install Time: 2015/02/14
Size: 11.15 MB
Help info: http://go.microsoft.com/fwlink/?LinkId=146008
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Uninstall Command: MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
----------------------------------------------

Software Name: Realtek High Definition Audio Driver
Version: 6.0.1.5772
Publisher: Realtek Semiconductor Corp.
Install Time: 2012/02/13
Size: 10.31 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}
Uninstall Command: C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe -r -m -nrg2709
----------------------------------------------

Software Name: MSXML 4.0 SP2 (KB973688)
Version: 4.20.9876.0
Publisher: Microsoft Corporation
Install Time: 2012/02/29
Size: 1.34 MB
Help info: http://support.microsoft.com/kb/973688
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Uninstall Command: MsiExec.exe /X{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
----------------------------------------------

Software Name: Amazon Cloud Drive
Version: 2.4.2013.3290
Publisher: Amazon
Install Time: 2014/10/15
Size:
Help info: -
Registry Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\23ab716f18849b6f
Uninstall Command: rundll32.exe dfshim.dll,ShArpMaintain AmazonCloudDrive.application, Culture=neutral, PublicKeyToken=f2fa081ea2183235, processorArchitecture=msil
----------------------------------------------

Software Name: Between
Version: 0.3.1.0
Publisher: VCNC Co., Ltd.
Install Time: 2015/02/28
Size: 72.78 MB
Help info: -
Registry Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Between
Uninstall Command: "C:\Users\Neo\AppData\Local\Between\Uninstall.exe"
----------------------------------------------

Software Name: Dropbox
Version: 3.2.9
Publisher: Dropbox, Inc.
Install Time: 2012/02/13
Size: 146.31 MB
Help info: http://www.dropbox.com
Registry Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Dropbox
Uninstall Command: "C:\Users\Neo\AppData\Roaming\Dropbox\bin\DropboxUninstaller.exe"
----------------------------------------------

Software Name: Microsoft OneDrive
Version: 17.3.1171.0714
Publisher: Microsoft Corporation
Install Time: 2015/01/25
Size: 26.82 MB
Help info: http://go.microsoft.com/fwlink/?LinkID=215117
Registry Key: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OneDriveSetup.exe
Uninstall Command: C:\Users\Neo\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714_2\OneDriveSetup.exe /uninstall
----------------------------------------------

Software Name: CCleaner
Version: 5.02
Publisher: Piriform
Install Time: 2015/02/05
Size: 15.14 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CCleaner
Uninstall Command: "C:\Program Files\CCleaner\uninst.exe"
----------------------------------------------

Software Name: EPSON PX-045A Series プリンター アンインストール
Version: -
Publisher: SEIKO EPSON Corporation
Install Time: 2015/01/30
Size: 63.89 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\EPSON PX-045A Series
Uninstall Command: C:\Windows\system32\spool\DRIVERS\x64\3\E_IINSIGJ.EXE /R /APD /P:"EPSON PX-045A Series"
----------------------------------------------

Software Name: ffdshow x64 v1.3.4533 [2014-09-29]
Version: 1.3.4533.0
Publisher:
Install Time: 2015/02/19
Size: 14.91 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ffdshow64_is1
Uninstall Command: "C:\Program Files\ffdshow\unins000.exe"
----------------------------------------------

Software Name: Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
Version: 10.0.50903
Publisher: Microsoft Corporation
Install Time: 2015/02/14
Size: 6.19 MB
Help info: http://go.microsoft.com/fwlink/?LinkId=133405
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
Uninstall Command: c:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe
----------------------------------------------

Software Name: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語
Version: 10.0.50903
Publisher: Microsoft Corporation
Install Time: 2015/02/14
Size: 6.19 MB
Help info: http://go.microsoft.com/fwlink/?LinkId=133405
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
Uninstall Command: c:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN\install.exe
----------------------------------------------

Software Name: Microsoft Office 365 - ja-jp
Version: 15.0.4693.1002
Publisher: Microsoft Corporation
Install Time: 2014/11/15
Size: 1.70 GB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\O365HomePremRetail - ja-jp
Uninstall Command: "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" scenario=install baseurl="C:\Program Files\Microsoft Office 15" platform=x86 version=15.0.4693.1002 culture=ja-jp productstoremove=O365HomePremRetail_ja-jp_x-none
----------------------------------------------

Software Name: Microsoft OneNote 2013 - ja-jp
Version: 15.0.4693.1002
Publisher: Microsoft Corporation
Install Time: 2014/11/15
Size: 1.70 GB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\OneNoteFreeRetail - ja-jp
Uninstall Command: "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" scenario=install baseurl="C:\Program Files\Microsoft Office 15" platform=x86 version=15.0.4693.1002 culture=ja-jp productstoremove=OneNoteFreeRetail_ja-jp_x-none
----------------------------------------------

Software Name: PC-Doctor for Windows
Version: 6.0.5549.10
Publisher: PC-Doctor, Inc.
Install Time: 2012/02/13
Size: 98.59 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PC-Doctor for Windows
Uninstall Command: C:\Program Files\PC-Doctor for Windows\uninst.exe
----------------------------------------------

Software Name: WinRAR 5.01 (64ビット)
Version: 5.01.0
Publisher: win.rar GmbH
Install Time: 2015/02/19
Size: 6.05 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinRAR archiver
Uninstall Command: C:\Program Files\WinRAR\uninstall.exe
----------------------------------------------

Software Name: Microsoft Visual C++ 2005 Redistributable (x64)
Version: 8.0.56336
Publisher: Microsoft Corporation
Install Time: 2012/02/22
Size: 708.00 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{071c9b48-7c32-4621-a0ac-3f809523288f}
Uninstall Command: MsiExec.exe /X{071c9b48-7c32-4621-a0ac-3f809523288f}
----------------------------------------------

Software Name: Apple Application Support(64 ビット)
Version: 3.1.2
Publisher: Apple Inc.
Install Time: 2015/02/28
Size: 107.30 MB
Help info: http://www.apple.com/jp/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0DF7096B-715A-4233-8633-C7A16ED6D616}
Uninstall Command: MsiExec.exe /X{0DF7096B-715A-4233-8633-C7A16ED6D616}
----------------------------------------------

Software Name: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Version: 10.0.40219
Publisher: Microsoft Corporation
Install Time: 2015/02/14
Size: 13.87 MB
Help info: http://go.microsoft.com/fwlink/?LinkId=146008
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Uninstall Command: MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
----------------------------------------------

Software Name: Interlok driver setup x64
Version: 5.9.0
Publisher: PACE Anti-Piracy, Inc.
Install Time: 2013/01/16
Size: 1.53 MB
Help info: http://www.paceap.com
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{25613C10-27D2-410B-942B-D922D5C3A7BE}
Uninstall Command: MsiExec.exe /X{25613C10-27D2-410B-942B-D922D5C3A7BE}
----------------------------------------------

Software Name: iCloud
Version: 4.0.6.28
Publisher: Apple Inc.
Install Time: 2015/02/09
Size: 92.03 MB
Help info: http://www.apple.com/jp/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{309768A4-A2BB-4930-A5A2-8169678C9B4C}
Uninstall Command: MsiExec.exe /X{309768A4-A2BB-4930-A5A2-8169678C9B4C}
----------------------------------------------

Software Name: Steinberg Retrologue 64bit
Version: 1.1.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 81.38 MB
Help info: http://service.steinberg.de/goto.nsf/show/help_winsys_jp
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4D65ECE6-131D-4B5F-8470-2750D3161619}
Uninstall Command: MsiExec.exe /X{4D65ECE6-131D-4B5F-8470-2750D3161619}
----------------------------------------------

Software Name: Steinberg Cubase 7 64bit
Version: 7.0.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 395.54 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{57FB2180-0FC7-41FC-8D76-3C4271CF4422}
Uninstall Command: MsiExec.exe /X{57FB2180-0FC7-41FC-8D76-3C4271CF4422}
----------------------------------------------

Software Name: Bonjour
Version: 3.0.0.10
Publisher: Apple Inc.
Install Time: 2012/02/13
Size: 2.00 MB
Help info: http://www.apple.com/jp/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
Uninstall Command: MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}
----------------------------------------------

Software Name: Steinberg Padshop 64bit
Version: 1.1.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 433.72 MB
Help info: http://service.steinberg.de/goto.nsf/show/help_winsys_jp
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{75F15019-C0C2-4047-AA45-97B4BD313719}
Uninstall Command: MsiExec.exe /X{75F15019-C0C2-4047-AA45-97B4BD313719}
----------------------------------------------

Software Name: Microsoft Silverlight
Version: 5.1.31211.0
Publisher: Microsoft Corporation
Install Time: 2014/12/15
Size: 348.64 MB
Help info: http://go.microsoft.com/fwlink/?LinkID=91955
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Uninstall Command: MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
----------------------------------------------

Software Name: Microsoft .NET Framework 4.5.2
Version: 4.5.51209
Publisher: Microsoft Corporation
Install Time: 2015/02/11
Size: 38.80 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033
Uninstall Command: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.51209\\Setup.exe /repair /x86 /x64
----------------------------------------------

Software Name: Microsoft .NET Framework 4.5.1 (日本語)
Version: 4.5.50938
Publisher: Microsoft Corporation
Install Time: 2014/02/27
Size: 2.94 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041
Uninstall Command: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\v4.5.50938\JPN\\Setup.exe /repair /x86 /x64 /lcid 1041
----------------------------------------------

Software Name: Steinberg Eucon Adapter 6.5 64bit
Version: 6.5.0
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 10.39 MB
Help info: http://service.steinberg.de/goto.nsf/show/support_j
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{95D90857-61C2-4927-85FF-A317E46E7351}
Uninstall Command: MsiExec.exe /X{95D90857-61C2-4927-85FF-A317E46E7351}
----------------------------------------------

Software Name: Box Sync
Version: 4.0.4443.0
Publisher: Box, Inc.
Install Time: 2014/02/23
Size: 15.38 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A5E1B0A4-8B10-418B-9E78-2EFE5B3F5AC3}
Uninstall Command: MsiExec.exe /X{A5E1B0A4-8B10-418B-9E78-2EFE5B3F5AC3}
----------------------------------------------

Software Name: Microsoft Visual C++ 2005 Redistributable (x64)
Version: 8.0.61000
Publisher: Microsoft Corporation
Install Time: 2012/02/23
Size: 572.00 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Uninstall Command: MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
----------------------------------------------

Software Name: NVIDIA 3D Vision ドライバー 311.06
Version: 311.06
Publisher: NVIDIA Corporation
Install Time: 2013/04/13
Size: 26.85 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision
Uninstall Command: "C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{583F1C03-67C2-40ED-87AE-52170BCAE3F8}\NVI2.DLL",UninstallPackage Display.3DVision
----------------------------------------------

Software Name: NVIDIA グラフィックス ドライバー 311.06
Version: 311.06
Publisher: NVIDIA Corporation
Install Time: 2013/04/13
Size: 285.25 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver
Uninstall Command: "C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{583F1C03-67C2-40ED-87AE-52170BCAE3F8}\NVI2.DLL",UninstallPackage Display.Driver
----------------------------------------------

Software Name: NVIDIA 3D Vision Controller Driver 270.61
Version: 270.61
Publisher: NVIDIA Corporation
Install Time: 2012/02/13
Size: 408.50 KB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB
Uninstall Command: "C:\windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.NVIRUSB
----------------------------------------------

Software Name: NVIDIA PhysX システム ソフトウェア 9.10.0514
Version: 9.10.0514
Publisher: NVIDIA Corporation
Install Time: 2012/02/13
Size: 78.82 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX
Uninstall Command: "C:\windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.PhysX
----------------------------------------------

Software Name: NVIDIA アップデート 1.11.3
Version: 1.11.3
Publisher: NVIDIA Corporation
Install Time: 2013/04/13
Size: 6.36 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update
Uninstall Command: "C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{583F1C03-67C2-40ED-87AE-52170BCAE3F8}\NVI2.DLL",UninstallPackage Display.Update
----------------------------------------------

Software Name: NVIDIA HD オーディオ ドライバー 1.3.18.0
Version: 1.3.18.0
Publisher: NVIDIA Corporation
Install Time: 2013/07/28
Size: 3.47 MB
Help info: -
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver
Uninstall Command: "C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{002545F7-27A1-467E-AA2E-8CAABE7066B5}\NVI2.DLL",UninstallPackage HDAudio.Driver
----------------------------------------------

Software Name: Steinberg HALion Sonic SE 64bit
Version: 1.6.1
Publisher: Steinberg Media Technologies GmbH
Install Time: 2013/11/02
Size: 46.12 MB
Help info: http://service.steinberg.de/goto.nsf/show/help_winsys_jp
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B99C316B-C135-43B5-8E77-2BC5E241F964}
Uninstall Command: MsiExec.exe /X{B99C316B-C135-43B5-8E77-2BC5E241F964}
----------------------------------------------

Software Name: Apple Mobile Device Support
Version: 8.1.1.3
Publisher: Apple Inc.
Install Time: 2015/02/28
Size: 27.97 MB
Help info: http://www.apple.com/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C4123106-B685-48E6-B9BD-E4F911841EB4}
Uninstall Command: MsiExec.exe /X{C4123106-B685-48E6-B9BD-E4F911841EB4}
----------------------------------------------

Software Name: iTunes
Version: 12.1.1.4
Publisher: Apple Inc.
Install Time: 2015/02/28
Size: 234.11 MB
Help info: http://www.apple.com/jp/support/
Registry Key: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{D227565A-0033-40AD-89BA-653A205CDC11}
Uninstall Command: MsiExec.exe /X{D227565A-0033-40AD-89BA-653A205CDC11}
----------------------------------------------

====================================
Browser Plug-ins List
Application Version:4.2.6.2
Windows 7
Exported Time:03-15-2015 13:19:48
====================================

====================================
Browser: Internet Explorer
====================================

************************************
Toolbar
************************************

Name: このコンテンツを引用
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: Send to OneNote
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: OneNote Linked Notes
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: Evernote 5 に追加
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: avast! Online Security
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: Send to OneNote
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: Lync Click to Call
Version: 15.0.4681.1000
Description: Microsoft Lync
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: OneNote Linked Notes
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: Evernote 5 に追加
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

************************************
BHO
************************************

Name: Java(tm) Plug-In SSV Helper
Version: 11.40.2.25
Description: Java(TM) Platform SE binary
Publisher: Oracle America, Inc.
Architecture: 32-bit
----------------------------------------------

Name: avast! Online Security
Version: 10.0.0.30
Description: IE Webrep plugin
Publisher: AVAST Software a.s.
Architecture: 32-bit
----------------------------------------------

Name: Microsoft アカウント サインイン ヘルパー
Version: 7.250.4311.0
Description: Microsoft® Windows Live ID Login Helper
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: Evernote extension
Version: 5.8.1.6061
Description: Evernote Clipper for Microsoft Internet Explorer
Publisher: EVERNOTE CORPORATION
Architecture: 32-bit
----------------------------------------------

Name: Office Document Cache Handler
Version: 15.0.4693.1000
Description: Microsoft Office Document Cache Handler
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: Java(tm) Plug-In 2 SSV Helper
Version: 11.40.2.25
Description: Java(TM) Platform SE binary
Publisher: Oracle America, Inc.
Architecture: 32-bit
----------------------------------------------

Name: Lync Browser Helper
Version: 15.0.4681.1000
Description: Microsoft Lync
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: avast! Online Security
Version: 10.0.0.30
Description: IE Webrep plugin
Publisher: AVAST Software a.s.
Architecture: 64-bit
----------------------------------------------

Name: Windows Live ID Sign-in Helper
Version: 7.250.4311.0
Description: Microsoft® Windows Live ID Login Helper
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: Office Document Cache Handler
Version: 15.0.4693.1000
Description: Microsoft Office Document Cache Handler
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: Microsoft SkyDrive Pro Browser Helper
Version: 15.0.4693.1000
Description: Microsoft OneDrive for Business Extensions
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

************************************
ActiveX
************************************

Name: Java Plug-in 11.40.2
Version:
Description:
Publisher: Oracle America, Inc.
Architecture: 32-bit
----------------------------------------------

Name: Java Plug-in 1.7.0_15
Version:
Description:
Publisher: Oracle America, Inc.
Architecture: 32-bit
----------------------------------------------

Name: QuickTime Object
Version: QuickTime 7.7.6 (1680.95.31)
Description: The QuickTime Control allows you to view a wide variety of multimedia content in web pages.
Publisher: Apple Inc.
Architecture: 32-bit
----------------------------------------------

Name: Windows Media Player
Version: 12.0.7601.17514
Description: Windows Media Player Extension
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: HTML Document
Version: 11.00.9600.17631
Description: Microsoft(R) HTML ビューアー
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: XML DOM Document
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: Shell Name Space
Version: 11.00.9600.17631
Description: インターネット ブラウザー
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: Windows Media Player
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: Microsoft Web Browser
Version: 11.00.9600.17631
Description: インターネット ブラウザー
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: XML DOM Document 4.0
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: XML HTTP 6.0
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: RMGetLicense Class
Version: 11.0.7601.18741
Description: DRM ActiveX Network Object
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: Google Update Plugin
Version: 1.3.26.9
Description: Google Update
Publisher: Google Inc
Architecture: 32-bit
----------------------------------------------

Name: Java Plug-in 1.4.2
Version:
Description:
Publisher: Oracle America, Inc.
Architecture: 32-bit
----------------------------------------------

Name: Deployment Toolkit
Version: 8.0.400.25
Description: Java(TM) Platform SE binary
Publisher: Oracle America, Inc.
Architecture: 32-bit
----------------------------------------------

Name: AUDIO__MID Moniker Class
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: AUDIO__MP3 Moniker Class
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: AUDIO__WAV Moniker Class
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: VIDEO__X_MS_ASF Moniker Class
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: VIDEO__X_MS_WMV Moniker Class
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: VIDEO__MP4 Moniker Class
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: Microsoft アカウント サインイン コントロール
Version: 7.250.4311.0
Description: Microsoft® Windows Live ID Login Helper
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: Shockwave Flash Object
Version: 16.0.0.305
Description: Adobe Flash Player 16.0 r0
Publisher: Adobe Systems Incorporated
Architecture: 32-bit
----------------------------------------------

Name: iTunesDetector Class
Version: 2.0.1.1
Description: ITDetector Module
Publisher: Apple Inc.
Architecture: 32-bit
----------------------------------------------

Name: Microsoft Silverlight
Version: 5.1.31211.0
Description: 5.1.31211.0
Publisher: Microsoft Corporation
Architecture: 32-bit
----------------------------------------------

Name: XML HTTP Request
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: XML DOM Document 3.0
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: XML HTTP 3.0
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: XML HTTP
Version:
Description:
Publisher:
Architecture: 32-bit
----------------------------------------------

Name: Windows Media Player
Version: 12.0.7601.17514
Description: Windows Media Player Extension
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: HTML Document
Version: 11.00.9600.17631
Description: Microsoft(R) HTML ビューアー
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: XML DOM Document
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: Shell Name Space
Version: 11.00.9600.17631
Description: インターネット ブラウザー
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: Windows Media Player
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: Microsoft Web Browser
Version: 11.00.9600.17631
Description: インターネット ブラウザー
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: XML HTTP 6.0
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: RMGetLicense Class
Version: 11.0.7601.18741
Description: DRM ActiveX Network Object
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: AUDIO__MID Moniker Class
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: AUDIO__MP3 Moniker Class
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: AUDIO__WAV Moniker Class
Version:
Description:
Publisher:
Architecture: 64-bit
------------------
  • ライダーNeo
  • 2015/03/15 (Sun) 13:22:52
続き

----------------------------------------------

Name: VIDEO__X_MS_ASF Moniker Class
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: VIDEO__X_MS_WMV Moniker Class
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: VIDEO__MP4 Moniker Class
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: Windows Live ID Sign-in Control
Version: 7.250.4311.0
Description: Microsoft® Windows Live ID Login Helper
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: Shockwave Flash Object
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: Microsoft Silverlight
Version: 5.1.31211.0
Description: 5.1.31211.0
Publisher: Microsoft Corporation
Architecture: 64-bit
----------------------------------------------

Name: XML HTTP Request
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: XML DOM Document 3.0
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: XML HTTP 3.0
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

Name: XML HTTP
Version:
Description:
Publisher:
Architecture: 64-bit
----------------------------------------------

====================================
Browser: Google Chrome
====================================

====================================
Browser: Mozilla FireFox
====================================

====================================
Browser: Opera
====================================

  • ライダーNeo
  • 2015/03/15 (Sun) 13:25:05
ヤマも越えたら次は様子見ですね
作業と報告、ご苦労様です。
IUログを見せていただきましたが、おかしなものはなさそうですね。
どうやらヤマは越えたようです。

では現在異常は出てないと思いますが、一応様子見に入りましょう。
そのまま普通にPCを使いつつ1週間様子見してください。

様子見後にまたHJTとインストール情報ログと、CCでの各タブのログを取り直して、それらを様子見中の状態報告とともにレスください。

この時点でログにも状態にも異常なくなってれば「解決」にできそうですが、何か異常出たら1週待たなくていいのでそこで報告ください
  • 悪代官
  • 2015/03/15 (Sun) 15:35:10
経過報告


1週間経過しまして、様子を見ましたが、特に異常は起こりませんでした。

それでは、各ログを添付しますので、ご覧ください。





◆HJT




Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 8:59:58, on 2015/03/22
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
C:\Program Files (x86)\スマートダイアリー\SmartDiary.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Naver\LINE\Line.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Neo\Desktop\ヘルプ フォルダ\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Evernote extension - {92EF2EAD-A7CE-4424-B0DB-499CF856608E} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - Startup: Dropbox.lnk = Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: スマートダイアリー.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: URL をクリップ - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: このページをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=1
O8 - Extra context menu item: ブックマークをクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=0
O8 - Extra context menu item: 新規ノート - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\NewNote.html
O8 - Extra context menu item: 画像をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=4
O8 - Extra context menu item: 選択部分をクリップ - C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\Clip.html?clipAction=3
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\OLIEResource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O21 - SSODL: EldosMountNotificator - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O22 - SharedTaskScheduler: Virtual Storage Mount Notification - {C28617FD-4FE7-4043-AD51-C8132CE90106} - C:\Windows\SysWOW64\SSCbFsMntNtf3.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Box Sync Update Service (BoxSyncUpdateService) - Box Inc. - C:\Program Files\Box\Box Sync\SyncUpdaterService.exe
O23 - Service: Digidesign MME Refresh Service (DigiRefresh) - Digidesign, A Division of Avid Technology, Inc. - C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11033 bytes








◆インストール




Adobe Flash Player 16 ActiveX Adobe Systems Incorporated 2015/02/06 6.00 MB 16.0.0.305
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/19 203 MB 11.0.10
Amazon Cloud Drive Amazon 2015/02/19 2.4.2013.3290
Apple Application Support(32 ビット) Apple Inc. 2015/02/28 94.2 MB 3.1.2
Apple Application Support(64 ビット) Apple Inc. 2015/02/28 107 MB 3.1.2
Apple Mobile Device Support Apple Inc. 2015/02/28 27.9 MB 8.1.1.3
Apple Software Update Apple Inc. 2012/02/09 2.38 MB 2.1.3.127
ApplicationManager 2011.4.27.209 Beijing AJ Technology Co., Ltd 2013/10/07 2011.4.27.209
Audacity 2.0.2 Audacity Team 2012/12/05 43.5 MB 2.0.2
Avast Free Antivirus AVAST Software 2015/02/01 10.0.2208
Between VCNC Co., Ltd. 2015/02/28 0.3.1.0
Bonjour Apple Inc. 2012/02/09 2.00 MB 3.0.0.10
Box Sync Box, Inc. 2014/02/23 15.3 MB 4.0.4443.0
CCleaner Piriform 2015/02/05 5.02
CyberLink BD Advisor 2.0 2012/02/13
CyberLink Blu-ray Disc Suite CyberLink Corp. 2012/02/06 16.5 MB 6.0.4703
CyberLink LabelPrint CyberLink Corp. 2012/02/06 142 MB 2.5.1916
CyberLink LG Burning Tool CyberLink Corp. 2012/02/06 121 MB 6.2.4619
CyberLink MediaShow CyberLink Corp. 2012/02/06 192 MB 4.1.3402
CyberLink PowerDVD 9 CyberLink Corp. 2012/02/06 176 MB 9.0.3530.52
CyberLink PowerProducer CyberLink Corp. 2012/02/06 172 MB 5.0.2.2512
CyberLink YouCam CyberLink Corp. 2012/02/06 77.0 MB 2.0.3718
Dropbox Dropbox, Inc. 2015/03/11 3.2.9
eLicenser Control Steinberg Media Technologies GmbH 2013/07/28
Epson Event Manager Seiko Epson Corporation 2015/01/30 42.4 MB 3.01.0005
EPSON PX-045A Series プリンター アンインストール SEIKO EPSON Corporation 2015/01/30
EPSON PX-045A Series ユーザーズガイド 2015/01/30
EPSON Scan Seiko Epson Corporation 2015/01/30
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2015/01/30 1.20.0000
Everio MediaBrowser 3 PIXELA 2012/07/18 3.00.243
Evernote v. 5.8.1 Evernote Corp. 2014/12/29 231 MB 5.8.1.6061
ffdshow x64 v1.3.4533 [2014-09-29] 2015/02/19 14.9 MB 1.3.4533.0
FreeMind 2012/04/22 16.2 MB 0.9.0_RC_10
GOM Player Gretech Corporation 2015/02/28 2.2.67.5221
Google Chrome Google Inc. 2015/03/10 41.0.2272.101
Haali Media Splitter 2013/10/11
Handbrake日本語版 0.9.4 2013/07/16 0.9.4
iCloud Apple Inc. 2015/02/09 92.0 MB 4.0.6.28
ILLUSION むすメイク きゃらメイク&Hビューアー ILLUSION 2014/09/07 258 MB 1.00.0000
ImgBurn LIGHTNING UK! 2013/07/16 2.5.8.0
Intel(R) Management Engine Components Intel Corporation 2012/02/13 7.0.0.1118
Interlok driver setup x64 PACE Anti-Piracy, Inc. 2013/01/16 1.53 MB 5.9.0
IObit Uninstaller IObit 2015/02/06 4.2.6.2
iTunes Apple Inc. 2015/02/28 234 MB 12.1.1.4
Java 8 Update 31 Oracle Corporation 2015/02/19 74.0 MB 8.0.310
Java 8 Update 40 Oracle Corporation 2015/03/08 9.10 MB 8.0.400
KeePass Password Safe 2.28 Dominik Reichl 2015/02/21 6.48 MB 2.28
LAME v3.99.3 (for Windows) 2013/06/30 1.52 MB
LINE LINE Corporation 2015/03/20 4.0.0.278
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/02/25 19.2 MB 1.75.0.1300
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/02/27 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/02/11 38.8 MB 4.5.51209
Microsoft Office 365 - ja-jp Microsoft Corporation 2015/03/17 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2015/01/25 26.8 MB 17.3.1171.0714
Microsoft OneNote 2013 - ja-jp Microsoft Corporation 2015/03/17 15.0.4701.1002
Microsoft Silverlight Microsoft Corporation 2014/12/15 348 MB 5.1.31211.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/04/12 1.72 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2012/02/09 298 KB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2012/02/22 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2012/02/06 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2012/02/16 232 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2012/02/09 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/14 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/14 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/14 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/14 10.0.50903
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2012/02/28 1.28 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2012/02/29 1.34 MB 4.20.9876.0
MyEPSON Connect SEIKO EPSON Corporation 2015/01/30
NVIDIA 3D Vision Controller Driver 270.61 NVIDIA Corporation 2012/02/06 270.61
NVIDIA 3D Vision ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
NVIDIA HD オーディオ ドライバー 1.3.18.0 NVIDIA Corporation 2013/07/28 1.3.18.0
NVIDIA PhysX システム ソフトウェア 9.10.0514 NVIDIA Corporation 2012/02/06 9.10.0514
NVIDIA アップデート 1.11.3 NVIDIA Corporation 2013/04/13 1.11.3
NVIDIA グラフィックス ドライバー 311.06 NVIDIA Corporation 2013/04/13 311.06
oCam version 39.0.0.0 http://ohsoft.net/ 2014/11/02 14.5 MB 39.0.0.0
PC-Doctor for Windows PC-Doctor, Inc. 2013/10/09 6.0.5549.10
Permanent Readability 2014/02/01
PodSoundRipper LE(デジ造版) Nihon Intelligence Corporation 2012/02/27 28.2 MB 1.2.0
QuickTime 7 Apple Inc. 2015/02/09 70.2 MB 7.76.80.95
Realtek Ethernet Controller Driver Realtek 2012/02/06 7.45.516.2011
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2012/02/13 6.0.1.5772
Singer Song Writer 8.0 VS 2012/02/18
SoundEngine Free Coderium 2012/09/09 5.0.0.4
Steinberg CI2 Extension 64bit Yamaha Corporation 2013/07/28 1.2.1
Steinberg Cubase 7 64bit Steinberg Media Technologies GmbH 2013/11/02 395 MB 7.0.0
Steinberg Cubase AI 5 Steinberg Media Technologies GmbH 2013/07/28 106 MB 5.1.0
Steinberg Drum Loop Expansion 01 Steinberg Media Technologies GmbH 2013/11/02 428 MB 2.0.0.0
Steinberg Eucon Adapter 6.5 64bit Steinberg Media Technologies GmbH 2013/11/02 10.3 MB 6.5.0
Steinberg Groove Agent ONE Allen Morgan Signature Drums Steinberg Media Technologies GmbH 2013/11/02 0.96 GB 1.0.0
Steinberg Groove Agent ONE Content Steinberg Media Technologies GmbH 2013/11/02 142 MB 1.0.0.003
Steinberg Groove Agent ONE Vintage Beatboxes Steinberg Media Technologies GmbH 2013/11/02 38.0 MB 1.0.0.000
Steinberg HALion Sonic SE 64bit Steinberg Media Technologies GmbH 2013/11/02 46.1 MB 1.6.1
Steinberg HALion Sonic SE Content Steinberg Media Technologies GmbH 2013/11/02 3.15 GB 1.6.1
Steinberg HALionOne Steinberg Media Technologies GmbH 2013/07/28 103 MB 1.1.0.457
Steinberg HALionOne GM Drum Set Steinberg Media Technologies GmbH 2013/07/28 23.9 MB 1.0.1.457
Steinberg HALionOne GM Set Steinberg Media Technologies GmbH 2013/07/28 63.6 MB 1.0.1.457
Steinberg LoopMash Content Steinberg Media Technologies GmbH 2013/11/02 617 MB 2.0.0.000
Steinberg LoopMash Content 2 Steinberg Media Technologies GmbH 2013/11/02 558 MB 1.0.0.000
Steinberg Midi Loop Library Steinberg Media Technologies GmbH 2013/11/02 361 MB 1.0.0
Steinberg Padshop 64bit Steinberg Media Technologies GmbH 2013/11/02 433 MB 1.1.0
Steinberg Retrologue 64bit Steinberg Media Technologies GmbH 2013/11/02 81.3 MB 1.1.0
Steinberg REVerence Content 01 Steinberg Media Technologies GmbH 2013/11/02 199 MB 2.0.1.000
Steinberg Upload Manager Steinberg Media Technologies GmbH 2013/11/02 8.53 MB 1.0.1
Steinberg VST Amp Rack Content 01 Steinberg Media Technologies GmbH 2013/11/02 9.18 MB 1.0.1
SugarSync SugarSync, Inc. 2013/12/15 2.0.42.120603
Visual Basic 6.0 SP6 ランタイムライブラリ 第4版 NTSOFT 2012/02/22 8.25 MB 1.0.0.4
Windows Live Essentials Microsoft Corporation 2014/12/18 16.4.3528.0331
Windows Live Sync Microsoft Corporation 2011/04/12 2.76 MB 14.0.8089.726
WinRAR 5.01 (64ビット) win.rar GmbH 2015/02/19 5.01.0
WinRAR アーカイバ 2012/02/13
Yamaha MOTIF-RACK ES Multi Part Editor Yamaha Corporation 2014/03/10 14.5 MB 2.2.2.2
Yamaha Steinberg USB Driver Yamaha Corporation 2013/07/28 2.82 MB 1.7.3
Yamaha Studio Manager Yamaha Corporation 2014/03/10 8.03 MB 2.3.1.0
Yamaha USB-MIDI Driver Yamaha Corporation 2013/12/05 5.22 MB 3.1.3.1
エレコムらくちんプリント 2012/08/15
スマートダイアリー 2.5b Eagle 2014/04/14 3.58 MB 2.5.2










  • ライダーNeo
  • 2015/03/22 (Sun) 09:04:40
続き
◆Windows




無効 EPLTarget
無効 HKCU:Run Adobe Reader Synchronizer "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe"
無効 HKCU:Run ApplicationManager Beijing AJ Technology Co., Ltd C:\Users\Neo\AppData\Roaming\ApplicationManager\bin\ApplicationManager.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run GoogleChromeAutoLaunch_1BBEC6C5BB2A100367BF3331B71A6905 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
無効 HKCU:Run GoogleDriveSync "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
無効 HKCU:Run iCloudServices Apple Inc. C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
無効 HKCU:Run LightScribe Control Panel C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
無効 HKCU:Run MobileDocuments C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
無効 HKCU:Run NaverNDrive C:\Program Files\Naver\Ndrive\NDriveUpgrader.exe
無効 HKCU:Run RESTART_STICKY_NOTES Microsoft Corporation C:\Windows\system32\StikyNot.exe
無効 HKCU:Run Sidebar Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
無効 HKCU:Run SkyDrive Microsoft Corporation "C:\Users\Neo\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
無効 HKCU:Run Speech Recognition Microsoft Corporation "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
無効 HKCU:Run SugarSync SugarSync, Inc. "C:\Program Files (x86)\SugarSync\SugarSync.exe" -startInTray -usedelay=true
無効 HKCU:Run swg "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
無効 HKCU:Run YahooDesktop "C:\Program Files\Yahoo!J\Desktop\Modules\YahooDesktop.exe"
無効 HKLM:Run 20131121 AVAST Software C:\Program Files\AVAST Software\Avast\setup\emupdate\d0f5c31b-51c5-4cdb-a25e-f549bbb601c3.exe /check
無効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
無効 HKLM:Run Adobe Reader Speed Launcher "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
無効 HKLM:Run BDRegion cyberlink C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
無効 HKLM:Run BoxSync Box, Inc. "c:\Program Files\Box\Box Sync\BoxSync.exe" -m
無効 HKLM:Run CLMLServer CyberLink "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
無効 HKLM:Run DigidesignMMERefresh Digidesign, A Division of Avid Technology, Inc. C:\Program Files (x86)\Digidesign\Drivers\MMERefresh.exe
無効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
無効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
無効 HKLM:Run KeePass 2 PreLoad Dominik Reichl "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
無効 HKLM:Run Logitech Download Assistant Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
無効 HKLM:Run LogMeIn GUI "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
無効 HKLM:Run MDS_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\MediaShow4\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\MediaShow4" UpdateWithCreateOnce "Software\CyberLink\MediaShow\4.1"
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
無効 HKLM:Run RemoteControl9 CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"
無効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
無効 HKLM:Run Skytel Realtek Semiconductor Corp. C:\Program Files\Realtek\Audio\HDA\Skytel.exe
無効 HKLM:Run SunJavaUpdateSched Oracle Corporation "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
無効 HKLM:Run TkBellExe "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
無効 HKLM:Run UCam_Menu CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
無効 HKLM:Run UpdateLBPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
無効 HKLM:Run UpdateP2GoShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
無効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" UpdateWithCreateOnce "Software\CyberLink\PowerProducer\5.0"
無効 HKLM:Run UpdatePSTShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Blu-ray Disc Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
有効 Startup User Dropbox.lnk Dropbox, Inc. C:\Users\Neo\AppData\Roaming\Dropbox\bin\Dropbox.exe
無効 Startup User EvernoteClipper.lnk Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\PROGRA~2\Evernote\Evernote\EVERNO~2.EXE
無効 Startup User iMindMap Preloader.lnk C:\Users\Neo\THINKB~1\imindmap\preload\IMINDM~1.EXE
無効 Startup User OneNote に送る.lnk Microsoft Corporation C:\PROGRA~1\MICROS~3\root\office15\ONENOTEM.EXE /tsr
無効 Startup User PcHusen.lnk C:\PcHusen\PcHusen.exe
無効 Startup User Sticky Notes.lnk Microsoft Corporation C:\Windows\system32\StikyNot.exe
有効 Startup User スマートダイアリー.lnk C:\Users\Neo\AppData\Roaming\Microsoft\Installer\{37714F81-04A8-4AF6-8F22-1499F13B8870}\_4ae13d6c.exe




◆IE



有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\\EvernoteIERes\AddNote.html
有効 Extension Evernote 5 に追加 C:\Program Files (x86)\Evernote\Evernote\EvernoteIERes\AddNote.html
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIELinkedNotes.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\ONBttnIE.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
有効 Helper Evernote extension Evernote Corp., 305 Walnut Street, Redwood City, CA 94063 C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll
有効 Helper ExplorerWnd Helper IObit C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
有効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll




◆Chrome


有効 App Gmail 8 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google ドライブ 6.4 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App Google 検索 0.0.0.20 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App YouTube 4.2.7 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 App ジョルダンライブ! 1.1.0 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\clambabckinoeihmjaakmnhicmlbkjbc\1.1.0_0
有効 Extension Adblock Plus 1.8.12 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.12_0
有効 Extension laClipy 2.0.1 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoecbmpcapdooelojbgclipojlgpfdf\2.0.1_0
有効 Extension Libron 3.0.8 Default C:\Users\Neo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpfgglfemmnflnmjminpghmeiajcajoi\3.0.8_0




◆スケジュール


有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task Microsoft Office 15 Sync Maintenance for Neo-PC-Neo Neo-PC Microsoft Corporation C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
有効 Task RealUpgradeLogonTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /logoncheck
有効 Task RealUpgradeScheduledTaskS-1-5-21-3384030018-2920189803-760924340-1001 C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe /scheduledcheck
有効 Task Uninstaller_SkipUac_Neo IObit C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe /UninstallExplorer
有効 Task {5379321E-6819-4B20-BE4F-78055E20C3D6} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST\Setup.exe" -d "C:\Users\Neo\Desktop\新しいフォルダー\Hyper Canvas VST"
有効 Task {5E61C4C2-3644-4CDE-B03A-148AEDC60FD3} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\eLicenserControlSetup.exe -d C:\Users\Neo\Downloads
有効 Task {71BC5806-8473-4B5C-B1BC-C32A215DB315} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Desktop\新しいフォルダー\Setup.exe -d C:\Users\Neo\Desktop\新しいフォルダー
有効 Task {84410036-4652-4B57-9D30-7DAF64A8CD7F} Microsoft Corporation C:\Windows\system32\pcalua.exe -a G:\LaCie.exe -d G:\
有効 Task {85B656D7-871F-480E-B685-D23F73501341} Microsoft Corporation C:\Windows\system32\pcalua.exe -a "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0\Digidesign Audio Drivers Setup.exe" -d "C:\Users\Neo\Desktop\Digidesign Audio Drivers 7.0"
有効 Task {C7EA86E1-4E50-4D55-AE48-D622F14E568A} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Neo\Downloads\NetFx20SP2_ia64.exe -d C:\Users\Neo\Downloads




  • ライダーNeo
  • 2015/03/22 (Sun) 09:07:04
少し修正と自衛して、解決ですね
こんばんは。
様子見の間も異常は出てないとのことですね。
ログも見せていただきました。
では少し修正が必要なところが残っているので、これを修正しましょう。

下記は現在最新版じゃないので、更新してください。
>Adobe Flash Player 16 ActiveX Adobe Systems Incorporated 2015/02/06 6.00 MB 16.0.0.305

次に下記ですが、無料版を使っているなら早めの対応をどうぞ。
>SugarSync SugarSync, Inc. 2013/12/15 2.0.42.120603
http://www.sugarsync.jp/news/20150302_news.html

これに限らずオンラインストレージは違法ファイルの温床や、マルウェアのトラップに悪用されることが常に絶えません。

上記が修正と対応できたら、他には不審なものはなさそうですね。
異常もないなら「解決」でいいでしょう。
作業に使ったつーるも準備時の説明に沿って片付けです。

そして以後の再被害を防ぐための自衛も怠りなく。
ブラウザの設定を少し固めるだけでも、セキュリティ上の効果を高めることが可能です。
「インターネットオプション」→「プライバシー」→「詳細設定」と開いて、「自動cookie処理」と「サードパーティのcookieをブロック」にチェックして「適用」して「OK」。
これをやっておくと、多くの危険サイトからの保護にかなり有効です。
が、これもすべての危険サイトに有効でもないし、本物の危険サイトではこの程度ではまったく太刀打ちできないので、過信はしないこと。
また、「すべてのcookieをブロックする」設定にすると、プロバイダのメールボックスなどログイン必要なページに入れなくなる弊害も出るので、これは状況を考えて使い分けるといいでしょう。
安全なサイトでもcookieブロックだと閲覧や投稿ができなくなるところもあるのでこれも注意。

次に、アンチウイルスやファイアウォール等のセキュリティソフトの使い方も注意してください。
セキュリティソフトはただ入れてさえいればそれだけでフル機能を発揮するものではありません。
設定と機能をできるだけ把握して、正しく使うことが重要です。
間違った使い方すると、本来ならブロックできた感染でもあっさりスルーします。

また、いくら高性能なセキュリティソフトがあっても、ユーザーが自分から危険なサイトやファイルにアクセスしてたらまったく保護もできません。
セキュリティソフトは使い方次第でその性能を、倍にも半にも無にも変動させます。

そして百聞は一見にしかず。
現在この掲示板で継続中や解決済みの他スレもできるだけ見ておくことをおすすめします。
同様、類似、別種含めて参考になる部分は多いでしょう。

掲示板をご覧になってわかるかと思いますが、ここしばらくで相談者さんが更に急増しています。
それだけ一般ユーザーにとってもマルウェアの被害は避けられないものとなっているわけで、大企業や官公庁でなければ狙われることはないだろうとの油断は金輪際持たないことを強く推奨します。

PCセキュリティのうえでは覚えておくべきことは山ほどありますが、最初から全部頭に詰め込もうと焦る必要はないので、わかる範囲からひとつずつでも消化して、PC環境とセキュリティ意識を見直していってください。

お疲れ様でした。
以後は安全で快適なPCライフを
  • 悪代官
  • 2015/03/22 (Sun) 17:48:13
ありがとうございました。


悪代官様、IVNO様。

長期にわたって、顔も素性も知らぬ私の、助けていただき、
最後の最後までお付き合い頂き、まことに感謝いたします。

ほかに頼れるものはありませんでした。

助けていただき、ほんとうにありがとございました。


次は私があなた様の何か力になれる日を夢見て、失礼したいと思います。


  • ライダーNeo
  • 2015/03/22 (Sun) 21:25:33

返信フォーム






プレビュー (投稿前に内容を確認)