[OTLログ11]
DRV - [2021/01/27 02:34:38 | 000,128,664 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_c330c09d72f3e083\iaLPSS2_GPIO2_TGL.sys -- (iaLPSS2_GPIO2_TGL)
DRV - [2021/01/19 22:08:04 | 000,164,232 | ---- | M] (Intel) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\ish.inf_amd64_616fc812c004fd1d\ISH.sys -- (ISH)
DRV - [2021/01/19 22:07:52 | 000,033,696 | ---- | M] (Intel) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\hid_pci.inf_amd64_41ada4dbaea57e6b\HID_PCI.sys -- (HID_PCI)
DRV - [2021/01/19 22:07:38 | 000,091,016 | ---- | M] (Intel) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\ish_busdriver.inf_amd64_14a76d76e5976d75\ISH_BusDriver.sys -- (ISH_BusDriver)
DRV - [2020/11/05 03:47:44 | 000,084,880 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys -- (IntelGNA)
DRV - [2020/09/17 04:33:50 | 000,086,680 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\hideventfilter.inf_amd64_010863cba57434d0\HidEventFilter.sys -- (HidEventFilter)
DRV - [2020/08/10 20:03:50 | 000,311,560 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\windows\System32\DriverStore\FileRepository\ialpss2_uart2_tgl.inf_amd64_17edb8d819140063\iaLPSS2_UART2_TGL.sys -- (iaLPSS2_UART2_TGL)
DRV - [2020/08/10 20:03:50 | 000,156,936 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\windows\System32\DriverStore\FileRepository\ialpss2_spi_tgl.inf_amd64_a377b182eb0b1769\iaLPSS2_SPI_TGL.sys -- (iaLPSS2_SPI_TGL)
DRV - [2019/12/07 18:07:57 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\windows\System32\DriverStore\FileRepository\vrd.inf_amd64_81fbd405ff2470fc\vrd.sys -- (VirtualRender)
DRV - [2019/12/07 18:07:56 | 000,110,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\windows\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_1c78775fffab6a0a\UfxChipidea.sys -- (UfxChipidea)
DRV - [2019/12/07 18:07:56 | 000,032,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\urschipidea.inf_amd64_78ad1c14e33df968\urschipidea.sys -- (UrsChipidea)
DRV - [2019/12/07 18:07:56 | 000,029,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\windows\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_057fa37902020500\urssynopsys.sys -- (UrsSynopsys)
DRV - [2019/12/07 18:07:56 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\windows\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys -- (genericusbfn)
DRV - [2019/12/07 18:07:53 | 000,058,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\umbus.inf_amd64_b78a9c5b6fd62c27\umbus.sys -- (umbus)
DRV - [2019/12/07 18:07:53 | 000,034,104 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\uefi.inf_amd64_c1628ffa62c8e54c\UEFI.sys -- (UEFI)
DRV - [2019/12/07 18:07:50 | 000,041,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_7500cffa210c6946\CompositeBus.sys -- (CompositeBus)
DRV - [2019/12/07 18:07:50 | 000,018,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\windows\System32\DriverStore\FileRepository\swenum.inf_amd64_16a14542b63c02af\swenum.sys -- (swenum)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.msn.com/?pc=HCTE
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.com/?pc=HCTE
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&form=PRHPC1&src=IE11TR&pc=HCTE
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.msn.com/?pc=HCTE
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.msn.com/?pc=HCTE
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.msn.com/?pc=HCTE
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
https://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 5C 34 9B 41 7B 4A D8 01 [binary data]
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = 01 00 00 00 49 00 00 00 7F 7F 09 55 2E A8 10 75 82 9B 63 60 97 D3 39 3E 9A 44 AD E4 99 DD 98 6E 2B CD 01 02 9B 8E 55 4E CE DA C2 B6 BE F3 25 29 30 AE 8D C0 DC 3C A3 DF A2 4E 3D F9 D4 2D 54 0E B8 89 7A 04 DA 44 1F CC AB 37 00 CA 66 4B 37 41 91 02 00 00 00 10 00 00 00 25 32 62 71 47 55 30 6F 4B 5A 69 38 59 25 33 64 [Binary data over 200 bytes]
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&form=PRHPC1&src=IE11TR&pc=HCTE
IE - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== Chrome ==========[/color]
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\caclkomlalccbpcdllchkeecicepbmbm\0.67_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\3.14.1_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnclbikcihnpjohihfcmmldgkjnebgnj\1.6.3_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl\7.7_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\22.4.149_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmcomcgcopagkhcbmcmcfhpcmdolfijg\4.0.0_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbmclnmpljdfgbpoilipbapbnhlbnbai\1.1.0_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.6_0\
CHR - Extension: No name found = C:\Users\dokto\AppData\Local\Google\Chrome\User Data\Default\Extensions\oohidjkamhoccdjfhokgjcefajmfbgep\1.1.4_0\
O1 HOSTS File: ([2019/12/07 18:12:44 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (IEToEdge BHO) - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.49\BHO\ie_to_edge_bho_64.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (HP Inc.)
O2 - BHO: (IEToEdge BHO) - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\103.0.1264.49\BHO\ie_to_edge_bho.dll (Microsoft Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (HP Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [AvastUI.exe] C:\Program Files\Avast Software\Avast\AvLaunch.exe (AVAST Software)
O4:[b]64bit:[/b] - HKLM..\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] C:\Program Files\COMODO\COMODO Internet Security\cis.exe (COMODO)
O4:[b]64bit:[/b] - HKLM..\Run: [RtkAudUService] C:\windows\SysNative\DriverStore\FileRepository\realtekservice.inf_amd64_f162aa0e5e56c27a\RtkAudUService64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [SecurityHealth] C:\Windows\SysNative\SecurityHealthSystray.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1265913032-2925885792-2598994177-1001..\Run: [CCleaner Smart Cleaning] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd)