知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
困っています。宜しくお願いします。

osはwindows7の64bitです
ノートンの報告でSystem Infected: Trojan Bedep Activity 2というのが出ています。
履歴を見ると五分に一回くらい○○からの侵入を遮断しました。というのが出ています。




Avast aswMBRのログ
aswMBR version 1.0.1.2290 Copyright(c) 2014 AVAST Software
Run date: 2015-06-11 00:57:53
-----------------------------
00:57:53.216 OS Version: Windows x64 6.1.7601 Service Pack 1
00:57:53.216 Number of processors: 8 586 0x2A07
00:57:53.216 ComputerName: MOONLIGHT UserName:
00:57:56.651 Initialize success
00:57:56.861 VM: initialized successfully
00:57:56.863 VM: Intel CPU supported
00:58:10.897 VM: supported disk I/O iaStor.sys
01:01:05.643 AVAST engine defs: 15061000
01:01:07.713 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
01:01:07.716 Disk 0 Vendor: WDC_WD75 01.0 Size: 715404MB BusType: 3
01:01:08.181 VM: Disk 0 MBR read successfully
01:01:08.183 Disk 0 MBR scan
01:01:08.211 Disk 0 Windows 7 default MBR code
01:01:08.233 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 20480 MB offset 2048
01:01:08.263 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 200 MB offset 41945088
01:01:08.266 Disk 0 default boot code
01:01:08.298 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 346112 MB offset 42354688
01:01:08.321 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 348610 MB offset 751192064
01:01:08.833 Disk 0 scanning C:\windows\system32\drivers
01:01:24.023 Service scanning
01:01:27.423 Service BHDrvx64 C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\BASHDefs\20150602.001\BHDrvx64.sys **LOCKED** 5
01:01:30.269 Service eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys **LOCKED** 5
01:01:30.664 Service EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys **LOCKED** 5
01:01:33.489 Service IDSVia64 C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\IPSDefs\20150609.002\IDSvia64.sys **LOCKED** 5
01:01:37.946 Service NAVENG C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150609.032\ENG64.SYS **LOCKED** 5
01:01:38.076 Service NAVEX15 C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150609.032\EX64.SYS **LOCKED** 5
01:01:53.146 Modules scanning
01:01:53.151 Disk 0 trace - called modules:
01:01:53.176 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll
01:01:53.181 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80093f1790]
01:01:53.184 3 CLASSPNP.SYS[fffff880013ce43f] -> nt!IofCallDriver -> [0xfffffa80075bc550]
01:01:53.189 5 ACPI.sys[fffff88000f7d7a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80076bb050]
01:01:54.729 AVAST engine scan C:\windows
01:01:57.351 AVAST engine scan C:\windows\system32
01:05:26.820 AVAST engine scan C:\windows\system32\drivers
01:05:43.885 AVAST engine scan C:\Users\
01:07:58.639 Disk 0 MBR has been saved successfully to "C:\Users\\Desktop\MBR.dat"
01:07:58.647 The log file has been saved successfully to "C:\Users\\Desktop\aswMBR.txt"


aswMBR version 1.0.1.2290 Copyright(c) 2014 AVAST Software
Run date: 2015-06-11 01:14:30
-----------------------------
01:14:30.350 OS Version: Windows x64 6.1.7601 Service Pack 1
01:14:30.350 Number of processors: 8 586 0x2A07
01:14:30.350 ComputerName: MOONLIGHT UserName:
01:14:32.587 Initialze error C000010E - driver not loaded
01:15:01.675 AVAST engine defs: 15061000
01:17:06.457 Service scanning
01:17:10.242 Service BHDrvx64 C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\BASHDefs\20150602.001\BHDrvx64.sys **LOCKED** 5
01:17:13.610 Service eeCtrl C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys **LOCKED** 5
01:17:14.082 Service EraserUtilRebootDrv C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys **LOCKED** 5
01:17:17.040 Service IDSVia64 C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\IPSDefs\20150609.002\IDSvia64.sys **LOCKED** 5
01:17:25.155 Service NAVENG C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150609.032\ENG64.SYS **LOCKED** 5
01:17:25.460 Service NAVEX15 C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150609.032\EX64.SYS **LOCKED** 5
01:17:51.241 Modules scanning
01:17:51.246 Disk 0 trace - called modules:
01:17:51.249
01:17:54.366 AVAST engine scan C:\windows
01:17:58.211 AVAST engine scan C:\windows\system32
01:21:07.350 AVAST engine scan C:\windows\system32\drivers
01:21:24.736 AVAST engine scan C:\Users\
01:32:48.430 The log file has been saved successfully to "C:\Users\\Desktop\aswMBR.txt"



CCleanerでのスタートのログ

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run DAEMON Tools Lite Disc Soft Ltd "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
有効 HKCU:Run Google Update Google Inc. "C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe" /c
有効 HKCU:Run SUPERAntiSpyware SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run ATSwpNav "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run
有効 HKLM:Run BSMLW06 DEXIN Corporation "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
無効 HKLM:Run Corel Photo Downloader Corel, Inc. "C:\Program Files (x86)\Corel\Corel MyPhoto\Corel Photo Downloader.exe" -startup
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
無効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
無効 HKLM:Run EzSptBtn FUJITSU LIMITED C:\Fujitsu\sptnavi\EzSptBtn4.exe
有効 HKLM:Run FDM7 FUJITSU LIMITED C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe
有効 HKLM:Run FJBATAID2 FUJITSU LIMITED C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe
有効 HKLM:Run FJDust FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
無効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
無効 HKLM:Run GIZMO2 ants Inc. "C:\Program Files (x86)\GIZMO2\GIZMO.exe" -BootProcess
有効 HKLM:Run GrooveMonitor Microsoft Corporation "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\WINDOWS\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\WINDOWS\system32\igfxtray.exe
有効 HKLM:Run IJNetworkScannerSelectorEX CANON INC. C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
無効 HKLM:Run IME14 JPN Uninstall Microsoft Corporation C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /JPN /Log
有効 HKLM:Run IndicatorUtility FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
有効 HKLM:Run IntelPAN Intel(R) Corporation "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
有効 HKLM:Run IoSecShadow I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
無効 HKLM:Run ITSecMng TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
無効 HKLM:Run JustOnlineUpdate 株式会社ジャストシステム "C:\Program Files (x86)\Common Files\Justsystem\JustOnlineUpdate\JustOnlineUpdate.exe" /startup
有効 HKLM:Run LoadBtnHnd FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe
有効 HKLM:Run LoadFUJ02E3 FUJITSU LIMITED C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
有効 HKLM:Run LoadFujitsuQuickTouch FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe
有効 HKLM:Run LoadPUSCDaemon FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe
無効 HKLM:Run NaviStudio3User PIONEER CORPORATION C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 User.exe
有効 HKLM:Run NetworkPlayerServerHelper DigiOn, Inc. "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
有効 HKLM:Run NUSB3MON Renesas Electronics Corporation "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
有効 HKLM:Run OmniPass Softex Inc. C:\Program Files\Softex\OmniPass\scureapp.exe
有効 HKLM:Run Persistence Intel Corporation C:\WINDOWS\system32\igfxpers.exe
有効 HKLM:Run PfNet FUJITSU LIMITED "C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
無効 HKLM:Run PSUTility FUJITSU LIMITED C:\Program Files\Fujitsu\PSUtility\TrayManager.exe
有効 HKLM:Run PUSCKAPLEXE FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe
無効 HKLM:Run PushButton I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\PushButton\PushButton.exe
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime Alternative\qttask.exe" -atboottime
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORDTSUPTBT
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run snp2uvc Sonix C:\windows\vsnp2uvc.exe
有効 HKLM:Run SSDMonitor PC Tools C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
無効 HKLM:Run UVS12 Preload Corel TW Corp. C:\Program Files (x86)\Corel\Corel VideoStudio 12\uvPL.exe
無効 HKLM:Run WSHelperSetup.exe C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
無効 HKLM:Run YouCam Mirage CyberLink "C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
無効 HKLM:Run YouCam Tray CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe" /s
有効 Startup Common Camera Monitor HD.lnk PIXELA CORPORATION D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
有効 Startup Common ImageBrowser EX Agent.lnk C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
有効 Startup Common PointGrab ハンドジェスチャーコントロール.lnk Acresso Software Inc. C:\windows\Installer\{8D0794C2-FE40-49FB-8695-E4A933A8BC98}\PointgrabShortcut_875D56C048FF45BAA9B778F0EEBE2A5E.exe
有効 Startup Common SetPoint.lnk Logicool, Inc. C:\Program Files\SetPoint\SetPoint.exe
有効 Startup User Bgcall.lnk C:\Program Files (x86)\Bgcall\Bgcall.exe
有効 Startup User BUFFALO NAS Navigator2.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
有効 Startup User NAS Scheduler.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
有効 Startup User TokyoLoader.lnk C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe




  • tomoaki_2000tox
  • 2015/06/11 (Thu) 02:14:06
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
変なのを見つけました。
対応のしかたがわかりません。
よろしくおねがいします。

Malwarebytes Anti-Malware
www.malwarebytes.org

スキャン日付: 2015/06/11
スキャン時刻: 2:22:06
ログファイル: MAMH 結果.txt
管理者: はい

バージョン: 2.01.6.1022
マルウェアデータベース: v2015.06.10.04
ルートキットデータベース: v2015.06.02.01
ライセンス: 無料版
マルウェア保護機能: 無効
悪質ウェブサイト保護機能: 無効
自己防衛: 無効

OS: Windows 7 Service Pack 1
CPU: x64
ファイルシステム: NTFS
ユーザー: TOMORO

スキャン形式: 脅威スキャン
結果: 完了しました
スキャンされたオブジェクト数: 406848
経過時間: 38 分, 18 秒

メモリ: 有効
スタートアップ: 有効
ファイルシステム: 有効
アーカイブ: 有効
ルートキット: 無効
ヒューリスティック: 有効
PUP: 有効
PUM: 有効

プロセス: 0
(なし悪意のある項目を検出)

モジュール: 0
(なし悪意のある項目を検出)

レジストリキー: 2
Backdoor.Papras, HKLM\SOFTWARE\CLASSES\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}, , [f01c8b2e2c5e88ae5751d492d32fb44c],
Backdoor.Papras, HKU\S-1-5-21-2342459129-2340425143-2486070026-1001_Classes\CLSID\{F6BF8414-962C-40FE-90F1-B80A7E72DB9A}, , [f01c8b2e2c5e88ae5751d492d32fb44c],

レジストリ値: 0
(なし悪意のある項目を検出)

レジストリデータ: 0
(なし悪意のある項目を検出)

フォルダー: 1
Trojan.Clicker.FMS, C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}, , [a26a3a7f3c4e0d295e38c11e11f234cc],

ファイル: 5
Backdoor.Papras, C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}\getuname.dll, , [f01c8b2e2c5e88ae5751d492d32fb44c],
Trojan.Zbot, c:\$recycle.bin\s-1-5-21-2342459129-2340425143-2486070026-1001\$r7scm57.exe, , [87855267c3c740f6876c8fd8738fe21e],
Trojan.Zbot, c:\$recycle.bin\s-1-5-21-2342459129-2340425143-2486070026-1001\$rof4rag.exe, , [c84486338efcd95da44ff47316ec27d9],
Trojan.Zbot, c:\$recycle.bin\s-1-5-21-2342459129-2340425143-2486070026-1001\$rgrz788\zynu.exe, , [c14b2a8fa4e655e150a3600724de9c64],
Trojan.Clicker.FMS, C:\ProgramData\{9A88E103-A20A-4EA5-8636-C73B709A5BF8}\8afc49b02429a, , [a26a3a7f3c4e0d295e38c11e11f234cc],

物理セクタ: 0
(なし悪意のある項目を検出)


(end)
  • tomoaki_2000tox
  • 2015/06/11 (Thu) 03:32:31
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
CCleaner

スケジュールされたタスク

有効 Task Adobe Acrobat Update Task Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task GoogleUpdateTaskUserS-1-5-21-2342459129-2340425143-2486070026-1001Core Google Inc. C:\Users\TOMORO\AppData\Local\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskUserS-1-5-21-2342459129-2340425143-2486070026-1001UA Google Inc. C:\Users\TOMORO\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PocketCloud Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudDesktopApp.exe
有効 Task PocketCloudUpdater Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\Updater.exe
有効 Task PocketCloudVirtualChannel Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\WPCRDPVirtualChannelServer.exe
有効 Task RMSmartUpdate PC Tools "C:\Program Files (x86)\PC Tools Registry Mechanic\update.exe" /SILENT /PRODUCT=RM /VERSION=11.0.0.302 /PID=238 /SUBPRODUCT=REGNOW
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /c "D:\Applications\fmvuser\Signup.gadget" && pause
有効 Task {3EAA12F1-71D3-4EA0-9717-9BA1E47DC363} Microsoft Corporation C:\windows\system32\pcalua.exe -a "C:\Program Files (x86)\DAEMON Tools Lite\InstallGadget.exe" -d "C:\Program Files (x86)\DAEMON Tools Lite"
有効 Task {6033623A-FA9A-4AF6-A79C-242BD05E3C2B} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\TOMORO\Desktop\bj2011upm.exe -d C:\Users\TOMORO\Desktop
有効 Task {777B8897-AECE-4403-B972-D2A021F73EF2} Fenrir Inc. "d:\program files (x86)\fenrir inc\sleipnir\bin\sleipnir.exe" http://ui.skype.com/ui/0/5.5.59.124/ja/abandoninstall?source=lightinstaller&page=tsPlugin&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled
有効 Task {AC9FB714-3A59-41B4-8DA2-F74DE7C6FD72} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\TOMORO\Downloads\Creator12U-Fujitsu.exe -d C:\Users\TOMORO\Downloads
有効 Task {F631EB80-3B33-4B3E-8EE5-E9B4909798A5} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\ProgramData\DivX\Setup\DivXSetup.exe -c /uninstall


コンテキストメニュー

有効 Directory Digital Photo Professional CANON INC. C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1"
有効 Drive Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 File Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 File TMPGEnc MovieStyle ShellExtension ContextMenu for carrozzeria Pegasys Inc. C:\Program Files (x86)\Pegasys Inc\TMPGEnc MovieStyle for carrozzeria\TMSShellExt.dll
有効 Folder BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 Folder Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
  • tomoaki_2000tox
  • 2015/06/11 (Thu) 03:37:36
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
FRSTのログです

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:08-06-2015
Ran by xxxxxx (administrator) on MOONLIGHT on 11-06-2015 03:39:49
Running from C:\Users\xxxxxx\Desktop
Loaded Profiles: xxxxxx (Available Profiles: xxxxxx)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: 日本語 (日本)
Internet Explorer Version 9 (Default browser not detected!)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AuthenTec, Inc.) C:\Program Files\Fingerprint Sensor\ATService.exe
(Softex Inc.) C:\Program Files\Softex\OmniPass\OmniServ.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(株式会社ジャストシステム) C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe
(B.H.A Corporation) D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe
() C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe
(DigiOn, Inc.) C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe
(ArcSoft) C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\TrArc\arcsys.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe
(FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\F-LINK\FlinkService.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
(I-O DATA DEVICE, INC.) C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\n360.exe
(BUFFALO INC.) C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe
(PIONEER CORPORATION) C:\Program Files (x86)\pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe
() C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe
(O2Micro International) C:\Windows\System32\drivers\o2flash.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
(PointGrab LTD) C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\PSUtility\PSUService.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
() C:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\chitose\updnvsrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(DELL Inc.) C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\n360.exe
() C:\Program Files\Softex\OmniPass\opvapp.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
(DigiOn) C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\IME12\IMEJP\IMJPCMNT.EXE
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(AuthenTec, Inc.) C:\Program Files\Fingerprint Sensor\ATSwpNav.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe
(InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCHOOK.exe
(Softex Inc.) C:\Program Files\Softex\OmniPass\scureapp.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Sonix) C:\Windows\vsnp2uvc.exe
() C:\Program Files\Softex\OmniPass\Hook\OpHook32BitProcess.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(PIXELA CORPORATION) D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
(FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe
(FUJITSU LIMITED) C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
(DigiOn, Inc.) C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe
() C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
(PointGrab LTD) C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe
(I-O DATA DEVICE, INC.) C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
(Logicool, Inc.) C:\Program Files\SetPoint\SetPoint.exe
() C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
(BUFFALO INC.) C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
(BUFFALO INC.) C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
() C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe
() C:\Program Files\SetPoint\x86\SetPoint32.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Logicool, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNetDm.exe
(FUJITSU LIMITED) C:\Program Files\Fujitsu\Plugfree NETWORK\PFNTray.exe
(Fenrir Inc.) D:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe
() D:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\IME12\IMEJP\IMJPCMNT.EXE


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11663464 2010-12-07] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2010-11-30] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1886504 2009-11-19] (Synaptics Incorporated)
HKLM\...\Run: [ATSwpNav] => "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run
HKLM\...\Run: [LoadFUJ02E3] => C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [73328 2011-02-16] (FUJITSU LIMITED)
HKLM\...\Run: [FDM7] => C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe [164712 2009-11-26] (FUJITSU LIMITED)
HKLM\...\Run: [LoadFujitsuQuickTouch] => C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe [162928 2011-01-09] (FUJITSU LIMITED)
HKLM\...\Run: [LoadBtnHnd] => C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe [21616 2011-01-09] (FUJITSU LIMITED)
HKLM\...\Run: [PUSCKAPLEXE] => C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe [126576 2011-01-14] (FUJITSU LIMITED)
HKLM\...\Run: [LoadPUSCDaemon] => C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe [109680 2011-01-14] (FUJITSU LIMITED)
HKLM\...\Run: [PfNet] => C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe [6324736 2010-12-27] (FUJITSU LIMITED)
HKLM\...\Run: [OmniPass] => C:\Program Files\Softex\OmniPass\scureapp.exe [4213248 2011-02-16] (Softex Inc.)
HKLM\...\Run: [FJBATAID2] => C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe [124776 2010-10-29] (FUJITSU LIMITED)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-03-30] (Intel(R) Corporation)
HKLM\...\Run: [snp2uvc] => C:\windows\vsnp2uvc.exe [662016 2009-08-13] (Sonix)
HKLM\...\Run: [IME JPN 2007 Migration] => C:\Program Files\Common Files\Microsoft Shared\IME12\IMEJP\IMJPKLMG.EXE [119664 2011-09-19] (Microsoft Corporation)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [IndicatorUtility] => C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe [48752 2010-09-29] (FUJITSU LIMITED)
HKLM-x32\...\Run: [FJDust] => C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe [142696 2011-02-09] (FUJITSU LIMITED)
HKLM-x32\...\Run: [NetworkPlayerServerHelper] => C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe [451920 2009-10-08] (DigiOn, Inc.)
HKLM-x32\...\Run: [snp2uvc] => C:\windows\vsnp2uvc.exe [662016 2009-08-13] (Sonix)
HKLM-x32\...\Run: [IME JPN 2007 Migration] => C:\Program Files (x86)\Common Files\microsoft shared\IME12\IMEJP\IMJPKLMG.EXE [63856 2011-09-19] (Microsoft Corporation)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [IoSecShadow] => C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe [297520 2009-10-09] (I-O DATA DEVICE, INC.)
HKLM-x32\...\Run: [SSDMonitor] => C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe [103896 2012-01-04] (PC Tools)
HKLM-x32\...\Run: [BSMLW06] => C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe [1386280 2010-07-28] ()
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2011-01-15] (CANON INC.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-03-29] (DivX, LLC)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [2728472 2014-12-15] (Sony Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\Run: [Google Update] => C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe [107912 2014-10-22] (Google Inc.)
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7799576 2015-05-16] (SUPERAntiSpyware)
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8322328 2015-05-09] (Piriform Ltd)
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\MountPoints2: {04804795-45ad-11e1-b1af-001bdc0f7b10} - H:\AutoRun.exe
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\MountPoints2: {0480479a-45ad-11e1-b1af-001bdc0f7b10} - H:\AutoRun.exe
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\MountPoints2: {3bb5edb1-0487-11e1-b01b-5c9ad8e76c24} - F:\SNLoader.exe
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\MountPoints2: {3bb5ee11-0487-11e1-b01b-5c9ad8e76c24} - F:\SNLoader.exe
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\...\MountPoints2: {7000310b-1e16-11e1-a15d-001bdc0f7b10} - G:\winsoft\AUTOCRD.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Camera Monitor HD.lnk [2015-01-27]
ShortcutTarget: Camera Monitor HD.lnk -> D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe (PIXELA CORPORATION)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk [2014-10-13]
ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PointGrab ハンドジェスチャーコントロール.lnk [2011-11-01]
ShortcutTarget: PointGrab ハンドジェスチャーコントロール.lnk -> C:\Windows\Installer\{8D0794C2-FE40-49FB-8695-E4A933A8BC98}\PointgrabShortcut_875D56C048FF45BAA9B778F0EEBE2A5E.exe (Acresso Software Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SetPoint.lnk [2011-11-01]
ShortcutTarget: SetPoint.lnk -> C:\Program Files\SetPoint\SetPoint.exe (Logicool, Inc.)
Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Bgcall.lnk [2011-11-03]
ShortcutTarget: Bgcall.lnk -> C:\Program Files (x86)\Bgcall\Bgcall.exe ()
Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BUFFALO NAS Navigator2.lnk [2015-01-25]
ShortcutTarget: BUFFALO NAS Navigator2.lnk -> C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe (BUFFALO INC.)
Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NAS Scheduler.lnk [2015-01-25]
ShortcutTarget: NAS Scheduler.lnk -> C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe (BUFFALO INC.)
Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TokyoLoader.lnk [2014-02-14]
ShortcutTarget: TokyoLoader.lnk -> C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe ()
ShellIconOverlayIdentifiers: [OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll [2015-03-07] (Symantec Corporation)
ShellIconOverlayIdentifiers: [OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll [2015-03-07] (Symantec Corporation)
ShellIconOverlayIdentifiers: [OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll [2015-03-07] (Symantec Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.fooooo.com/
HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://azby.fmworld.net/?ref=201105
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {090C073F-ED8B-44E9-960E-D15D01EDB224} URL = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
SearchScopes: HKLM -> {0E44C65B-A59E-4700-B305-90C2AA4E05C5} URL = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {1B3B647D-885B-452A-94D6-A26E2FAB5EB9} URL = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
SearchScopes: HKLM -> {4F3F8558-07EB-4980-9094-9F2E89ABE5AE} URL = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {090C073F-ED8B-44E9-960E-D15D01EDB224} URL = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
SearchScopes: HKLM-x32 -> {0E44C65B-A59E-4700-B305-90C2AA4E05C5} URL = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {1B3B647D-885B-452A-94D6-A26E2FAB5EB9} URL = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
SearchScopes: HKLM-x32 -> {4F3F8558-07EB-4980-9094-9F2E89ABE5AE} URL = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
SearchScopes: HKU\S-1-5-21-2342459129-2340425143-2486070026-1001 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.bing.com/search?FORM=BDT3DF&PC=BDT3&dt=062613&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-2342459129-2340425143-2486070026-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = http://www.bing.com/search?FORM=BDT3DF&PC=BDT3&dt=062613&q={searchTerms}&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-2342459129-2340425143-2486070026-1001 -> {AFBCB7E0-F91A-4951-9F31-58FEE57A25C4} URL = http://nortonsafe.search.ask.com/web?q={SEARCHTERMS}&o=APN10506&l=dis&prt=360&chn=retail&geo=JP&ver=20&locale=ja_JP&gct=kwd&qsrc=2869
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll [2015-03-05] (Symantec Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO-x32: Yahoo!ツールバーフィッシング警告 -> {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} -> C:\Program Files (x86)\Yahoo!J\Toolbar\7_3_0_18\Modules\ypho.dll [2012-04-06] (Yahoo Japan Corporation. )
BHO-x32: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll [2011-12-12] (DivX, LLC)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2010-11-08] (CANON INC.)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll [2015-03-05] (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL [2015-03-05] (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-11-07] (Oracle Corporation)
BHO-x32: Windows Live ID サインイン ヘルパー -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Trixie.Bho -> {B0744341-96E0-4341-9ED2-8BC36CE0CCD0} -> C:\windows\SysWOW64\mscoree.dll [2010-11-21] (Microsoft Corporation)
BHO-x32: NTIECatcher Class -> {C56CB6B0-0D96-11D6-8C65-B2868B609932} -> D:\Program Files (x86)\Xi\NetTransport 2\NTIEHelper.dll [2003-12-15] (Xi)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-07] (Oracle Corporation)
BHO-x32: Yahoo!ツールバーヘルパー -> {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} -> C:\Program Files (x86)\Yahoo!J\Toolbar\7_3_0_18\Modules\YahooToolBar.dll [2012-04-06] (Yahoo! JAPAN)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Toolbar: HKLM - CEBar for Internet Explorer(&C) - {711516D4-8154-45b6-97F0-2924C5827AE8} - C:\Program Files\CravingExplorer\Toolbar\bin64\ToolBarBand.dll [2013-12-16] (T-Craft / tuck)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2010-11-08] (CANON INC.)
Toolbar: HKLM-x32 - Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\7_3_0_18\Modules\YahooToolBar.dll [2012-04-06] (Yahoo! JAPAN)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll [2015-03-05] (Symantec Corporation)
Toolbar: HKLM-x32 - CEBar for Internet Explorer(&C) - {711516D4-8154-45b6-97F0-2924C5827AE8} - C:\Program Files\CravingExplorer\Toolbar\bin32\ToolBarBand.dll [2013-10-23] (T-Craft / tuck)
Toolbar: HKU\S-1-5-21-2342459129-2340425143-2486070026-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-2342459129-2340425143-2486070026-1001 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll [2015-03-05] (Symantec Corporation)
DPF: HKLM {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {0E15796F-7B3A-4FB3-BF69-7B11D20A4A62} https://azby.fmworld.net/register/entrance/UserReg.CAB
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll [2015-06-11] ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-21] (DivX, LLC.)
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2014-02-17] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2014-02-17] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-06-11] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll [2013-04-03] (Adobe Systems, Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2011-04-21] (CANON INC.)
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll [2011-12-13] (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-21] (DivX, LLC.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2014-02-17] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2011-12-21] (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-11-07] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-11-07] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2014-02-17] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-02] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2342459129-2340425143-2486070026-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2014-02-17] (Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-2342459129-2340425143-2486070026-1001: @tools.google.com/Google Update;version=3 -> C:\Users\xxxxxx\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin HKU\S-1-5-21-2342459129-2340425143-2486070026-1001: @tools.google.com/Google Update;version=9 -> C:\Users\xxxxxx\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\coFFPlgn [2015-06-11]
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &video& - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-12-02]

Chrome:
=======
CHR Profile: C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-20]
CHR Extension: (TokyoLoader for Chrome) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl [2014-10-12]
CHR Extension: (Google Search) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-20]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-30]
CHR Extension: (Norton Security Toolbar) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2012-07-30]
CHR Extension: (Google Wallet) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-31]
CHR Extension: (DivX Plus Web Player HTML5 <video>) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm [2011-12-04]
CHR Extension: (Gmail) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-20]
CHR Extension: (TokyoLoader) - C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj [2014-02-14]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\Exts\Chrome.crx [2015-03-20]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\Exts\Chrome.crx [2015-03-20]
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2011-12-12]
StartMenuInternet: Google Chrome - C:\Users\xxxxxx\AppData\Local\Google\Chrome\Application\chrome.exe

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
R2 BeatJamVideoService; C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe [58664 2009-03-24] (株式会社ジャストシステム)
R2 bgsvclib; D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe [145504 2007-06-15] (B.H.A Corporation)
R2 CLHNService3; C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe [87336 2011-01-11] ()
R2 DiXiM Digital TV Service(21); C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe [53296 2012-02-16] (DigiOn, Inc.)
R2 DMRService plus; C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe [68944 2010-09-27] (DigiOn)
R2 FjDstService; C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe [62824 2011-02-09] (FUJITSU LIMITED)
R2 FlinkService; C:\Program Files (x86)\Fujitsu\F-LINK\FLinkService.exe [243056 2011-09-27] (FUJITSU LIMITED)
R2 FUJ02E3Service; C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe [73328 2011-02-16] (FUJITSU LIMITED)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 IoDevMgrService; C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe [207736 2011-01-21] (I-O DATA DEVICE, INC.)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-03-30] ()
R2 N360; C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe [265000 2015-03-07] (Symantec Corporation)
R2 NasPmService; C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe [251760 2012-03-30] (BUFFALO INC.)
R2 NaviStudioSvc; C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe [391088 2010-03-23] (PIONEER CORPORATION)
R2 NetworkPlayer Server; C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe [107792 2009-07-02] ()
R2 omniserv; C:\Program Files\Softex\OmniPass\OmniServ.exe [42496 2011-02-16] (Softex Inc.) [File not signed]
S3 PACSPTISVR; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [120168 2009-10-07] (Sony Corporation)
R2 PCToolsSSDMonitorSvc; C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe [793048 2012-01-04] (PC Tools)
R2 PFNService; C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe [331776 2010-12-27] (FUJITSU LIMITED) [File not signed]
R2 PGService; C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe [53080 2011-05-09] (PointGrab LTD)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [487960 2014-12-15] (Sony Corporation)
R2 PowerSavingUtilityService; C:\Program Files\Fujitsu\PSUtility\PSUService.exe [63336 2010-06-17] (FUJITSU LIMITED)
R2 PUSCSRVC; C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe [216688 2011-01-14] (FUJITSU LIMITED)
R2 UDSS; c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe [30064 2011-01-27] ()
R2 UpdateNaviInstallService; C:\Program Files\Fujitsu\chitose\updnvsrv.exe [14336 2010-06-16] (FUJITSU LIMITED) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WysePocketCloud; C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe [16176 2013-11-11] ()
R2 WyseRemoteAccess; C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe [1785344 2013-11-08] (DELL Inc.) [File not signed]
S3 MSCSPTISRV; "C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe" [X]
S3 SPTISRV; "C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe" [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 androidusb; C:\Windows\System32\Drivers\androidusb.sys [31744 2011-01-04] (Google Inc)
R3 AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys [109256 2007-06-01] (SlySoft, Inc.)
R3 AnyDVD; C:\Windows\SysWOW64\Drivers\AnyDVD.sys [109256 2007-06-01] (SlySoft, Inc.)
R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\BASHDefs\20150602.001\BHDrvx64.sys [1640152 2015-05-22] (Symantec Corporation)
R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1507000.00B\ccSetx64.sys [162392 2013-09-26] (Symantec Corporation)
R1 DiximDd; C:\Windows\System32\DRIVERS\diximdd.sys [18704 2009-07-08] (Windows (R) Win 7 DDK provider)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-21] (Disc Soft Ltd)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [489776 2015-06-02] (Symantec Corporation)
R2 ElbyCDIO; C:\Windows\SysWOW64\Drivers\ElbyCDIO.sys [9728 2005-01-02] (Elaborate Bytes AG) [File not signed]
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [145200 2015-06-02] (Symantec Corporation)
R0 FBIOSDRV; C:\Windows\System32\Drivers\FBIOSDRV.sys [21104 2009-06-24] (FUJITSU LIMITED)
R3 FUJ02B1; C:\Windows\system32\drivers\FUJ02B1.sys [7808 2006-11-01] (FUJITSU LIMITED)
R3 FUJ02E3; C:\Windows\system32\drivers\FUJ02E3.sys [7296 2006-11-01] (FUJITSU LIMITED)
R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\IPSDefs\20150609.002\IDSvia64.sys [684248 2015-06-02] (Symantec Corporation)
R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150609.032\ENG64.SYS [129752 2015-01-22] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150609.032\EX64.SYS [2137304 2015-01-22] (Symantec Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-23] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-13] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1801216 2010-10-09] ()
R3 SRTSP; C:\Windows\System32\Drivers\N360x64\1507000.00B\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1507000.00B\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\N360x64\1507000.00B\SYMDS64.SYS [493656 2013-09-10] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\N360x64\1507000.00B\SYMEFA64.SYS [1148120 2014-03-04] (Symantec Corporation)
R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2013-11-20] (Symantec Corporation)
R1 SymIM; C:\Windows\System32\DRIVERS\SymIMv.sys [78936 2013-09-10] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360x64\1507000.00B\Ironx64.SYS [266968 2014-08-07] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\N360x64\1507000.00B\SYMNETS.SYS [593112 2014-02-18] (Symantec Corporation)
R1 TRArcsyA21; \??\C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\TRArc\TRArcsyA21.sd [186944 2011-12-14] ()
R1 TRArcsyC21; \??\C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\TRArc\TRArcsyC21.sd [186944 2011-12-14] ()
R1 TxDevCmd; C:\Windows\System32\Drivers\TxDevCmd.sys [18456 2008-12-11] (Texim Corporation)
S0 feyuxr; System32\drivers\eptwud.sys [X]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-06-11 03:39 - 2015-06-11 03:40 - 00038095 _____ C:\Users\xxxxxx\Desktop\FRST.txt
2015-06-11 03:39 - 2015-06-11 03:39 - 00000000 ____D C:\FRST
2015-06-11 03:38 - 2015-06-11 03:38 - 02108928 _____ (Farbar) C:\Users\xxxxxx\Desktop\FRST64.exe
2015-06-11 03:35 - 2015-06-11 03:35 - 00005134 _____ C:\Users\xxxxxx\Desktop\ske.txt
2015-06-11 03:35 - 2015-06-11 03:35 - 00002108 _____ C:\Users\xxxxxx\Desktop\kon.txt
2015-06-11 03:16 - 2015-06-11 03:16 - 00002996 _____ C:\avenger.txt
2015-06-11 03:16 - 2015-06-11 03:16 - 00000000 ____D C:\Avenger
2015-06-11 03:03 - 2015-06-11 03:03 - 00002044 _____ C:\Users\xxxxxx\Desktop\MAMH 結果.txt
2015-06-11 02:28 - 2015-06-11 02:29 - 00096812 _____ C:\Users\xxxxxx\Desktop\Extras.Txt
2015-06-11 02:27 - 2015-06-11 02:28 - 00246948 _____ C:\Users\xxxxxx\Desktop\OTL.Txt
2015-06-11 02:20 - 2015-06-11 03:29 - 00136408 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2015-06-11 02:19 - 2015-06-11 02:19 - 00001066 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-06-11 02:19 - 2015-06-11 02:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-06-11 02:19 - 2015-06-11 02:19 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-06-11 02:19 - 2015-06-11 02:19 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-06-11 02:19 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2015-06-11 02:19 - 2015-04-14 09:37 - 00063704 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys
2015-06-11 02:19 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys
2015-06-11 02:12 - 2015-06-11 02:18 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\xxxxxx\Desktop\mbam-setup-2.1.6.1022.exe
2015-06-11 02:12 - 2015-06-11 02:12 - 00000000 ____D C:\Users\xxxxxx\Desktop\新しいフォルダー (2)
2015-06-11 02:09 - 2015-06-11 02:09 - 00602112 _____ (OldTimer Tools) C:\Users\xxxxxx\Desktop\OTL.exe
2015-06-11 01:07 - 2015-06-11 01:32 - 00004756 _____ C:\Users\xxxxxx\Desktop\aswMBR.txt
2015-06-11 01:07 - 2015-06-11 01:07 - 00000512 _____ C:\Users\xxxxxx\Desktop\MBR.dat
2015-06-11 00:57 - 2015-06-11 00:57 - 05200384 _____ (AVAST Software) C:\Users\xxxxxx\Desktop\aswmbr.exe
2015-06-11 00:49 - 2015-06-11 01:21 - 00012464 _____ C:\Users\xxxxxx\Desktop\startup.txt
2015-06-11 00:47 - 2015-06-11 00:47 - 00002794 _____ C:\windows\System32\Tasks\CCleanerSkipUAC
2015-06-11 00:47 - 2015-06-11 00:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-06-11 00:47 - 2015-06-11 00:47 - 00000000 ____D C:\Program Files\CCleaner
2015-06-11 00:46 - 2015-06-11 00:46 - 06549184 _____ (Piriform Ltd) C:\Users\xxxxxx\Desktop\ccsetup506.exe
2015-06-10 23:52 - 2015-06-10 23:52 - 00000036 _____ C:\Users\xxxxxx\AppData\Local\housecall.guid.cache
2015-06-10 23:45 - 2015-05-26 02:08 - 03206144 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-06-10 23:45 - 2015-04-30 03:22 - 14635008 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2015-06-10 23:45 - 2015-04-30 03:21 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\spwmp.dll
2015-06-10 23:45 - 2015-04-30 03:21 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\msdxm.ocx
2015-06-10 23:45 - 2015-04-30 03:21 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\dxmasf.dll
2015-06-10 23:45 - 2015-04-30 03:19 - 12625920 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2015-06-10 23:45 - 2015-04-30 03:07 - 11411456 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2015-06-10 23:45 - 2015-04-30 03:07 - 00008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\spwmp.dll
2015-06-10 23:45 - 2015-04-30 03:07 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\msdxm.ocx
2015-06-10 23:45 - 2015-04-30 03:07 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxmasf.dll
2015-06-10 23:45 - 2015-04-30 03:05 - 12625408 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2015-06-10 23:45 - 2015-04-25 03:17 - 00633856 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2015-06-10 23:45 - 2015-04-25 02:56 - 00530432 _____ (Microsoft Corporation) C:\windows\SysWOW64\comctl32.dll
2015-06-10 23:43 - 2015-05-31 10:05 - 17884672 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-06-10 23:43 - 2015-05-31 09:50 - 00448512 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-06-10 23:43 - 2015-05-31 09:49 - 10935296 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-06-10 23:43 - 2015-05-31 09:48 - 02343424 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-06-10 23:43 - 2015-05-31 09:42 - 01392128 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-06-10 23:43 - 2015-05-31 09:42 - 01387520 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-06-10 23:43 - 2015-05-31 09:41 - 02158080 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-06-10 23:43 - 2015-05-31 09:41 - 01494016 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-06-10 23:43 - 2015-05-31 09:41 - 00816640 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-06-10 23:43 - 2015-05-31 09:41 - 00729088 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-06-10 23:43 - 2015-05-31 09:41 - 00599040 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-06-10 23:43 - 2015-05-31 09:41 - 00237056 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2015-06-10 23:43 - 2015-05-31 09:41 - 00173056 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-06-10 23:43 - 2015-05-31 09:41 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-06-10 23:43 - 2015-05-31 09:40 - 02382848 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-06-10 23:43 - 2015-05-31 09:40 - 00453120 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-06-10 23:43 - 2015-05-31 09:40 - 00282112 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-06-10 23:43 - 2015-05-31 09:40 - 00248320 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-06-10 23:43 - 2015-05-31 09:40 - 00096768 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-06-10 23:43 - 2015-05-31 09:40 - 00055296 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2015-06-10 23:43 - 2015-05-31 09:40 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2015-06-10 23:43 - 2015-05-31 09:40 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2015-06-10 23:43 - 2015-05-31 09:03 - 12385280 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-06-10 23:43 - 2015-05-31 08:55 - 01809920 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-06-10 23:43 - 2015-05-31 08:54 - 00367616 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2015-06-10 23:43 - 2015-05-31 08:53 - 09750528 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-06-10 23:43 - 2015-05-31 08:50 - 01139712 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-06-10 23:43 - 2015-05-31 08:49 - 01427968 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-06-10 23:43 - 2015-05-31 08:49 - 01129472 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-06-10 23:43 - 2015-05-31 08:49 - 00718336 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-06-10 23:43 - 2015-05-31 08:49 - 00421888 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-06-10 23:43 - 2015-05-31 08:48 - 01804288 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-06-10 23:43 - 2015-05-31 08:48 - 00607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-06-10 23:43 - 2015-05-31 08:48 - 00353792 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-06-10 23:43 - 2015-05-31 08:48 - 00231936 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2015-06-10 23:43 - 2015-05-31 08:48 - 00223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-06-10 23:43 - 2015-05-31 08:48 - 00142848 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-06-10 23:43 - 2015-05-31 08:48 - 00065024 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-06-10 23:43 - 2015-05-31 08:48 - 00041472 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2015-06-10 23:43 - 2015-05-31 08:47 - 02382848 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-06-10 23:43 - 2015-05-31 08:47 - 00176640 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-06-10 23:43 - 2015-05-31 08:47 - 00073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-06-10 23:43 - 2015-05-31 08:47 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2015-06-10 23:43 - 2015-05-31 08:47 - 00010752 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2015-06-08 23:54 - 2015-06-08 23:54 - 00000000 ____D C:\Users\xxxxxx\AppData\Roaming\SUPERAntiSpyware.com
2015-06-08 23:53 - 2015-06-08 23:54 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2015-06-08 23:53 - 2015-06-08 23:53 - 00001808 _____ C:\Users\xxxxxx\Desktop\SUPERAntiSpyware Free Edition.lnk
2015-06-08 23:53 - 2015-06-08 23:53 - 00000000 ____D C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-06-08 23:53 - 2015-06-08 23:53 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2015-06-07 23:42 - 2015-05-26 03:24 - 05569984 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-06-07 23:42 - 2015-05-26 03:23 - 00155584 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-06-07 23:42 - 2015-05-26 03:23 - 00095680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-06-07 23:42 - 2015-05-26 03:21 - 01728960 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 01255424 _____ (Microsoft Corporation) C:\windows\system32\diagtrack.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 01162752 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00879104 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00728576 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00342016 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00113664 _____ (Microsoft Corporation) C:\windows\system32\sechost.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2015-06-07 23:42 - 2015-05-26 03:19 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2015-06-07 23:42 - 2015-05-26 03:18 - 00879104 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2015-06-07 23:42 - 2015-05-26 03:18 - 00404992 _____ (Microsoft Corporation) C:\windows\system32\tracerpt.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00104448 _____ (Microsoft Corporation) C:\windows\system32\logman.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00047104 _____ (Microsoft Corporation) C:\windows\system32\typeperf.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-06-07 23:42 - 2015-05-26 03:18 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\relog.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-06-07 23:42 - 2015-05-26 03:18 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-06-07 23:42 - 2015-05-26 03:18 - 00019456 _____ (Microsoft Corporation) C:\windows\system32\diskperf.exe
2015-06-07 23:42 - 2015-05-26 03:14 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-06-07 23:42 - 2015-05-26 03:14 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:11 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 03:07 - 03989440 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-06-07 23:42 - 2015-05-26 03:07 - 03934144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-06-07 23:42 - 2015-05-26 03:04 - 01310744 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00641536 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00635392 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00551424 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00092160 _____ (Microsoft Corporation) C:\windows\SysWOW64\sechost.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-06-07 23:42 - 2015-05-26 03:01 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2015-06-07 23:42 - 2015-05-26 03:00 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\tracerpt.exe
2015-06-07 23:42 - 2015-05-26 03:00 - 00082944 _____ (Microsoft Corporation) C:\windows\SysWOW64\logman.exe
2015-06-07 23:42 - 2015-05-26 03:00 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-06-07 23:42 - 2015-05-26 03:00 - 00040448 _____ (Microsoft Corporation) C:\windows\SysWOW64\typeperf.exe
2015-06-07 23:42 - 2015-05-26 03:00 - 00037888 _____ (Microsoft Corporation) C:\windows\SysWOW64\relog.exe
2015-06-07 23:42 - 2015-05-26 03:00 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2015-06-07 23:42 - 2015-05-26 03:00 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\diskperf.exe
2015-06-07 23:42 - 2015-05-26 02:59 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2015-06-07 23:42 - 2015-05-26 02:59 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2015-06-07 23:42 - 2015-05-26 02:59 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-06-07 23:42 - 2015-05-26 02:59 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2015-06-07 23:42 - 2015-05-26 02:57 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-06-07 23:42 - 2015-05-26 02:57 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:55 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 02:00 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\UtcResources.dll
2015-06-07 23:42 - 2015-05-26 01:50 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2015-06-07 23:42 - 2015-05-26 01:50 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2015-06-07 23:42 - 2015-05-26 01:48 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 01:48 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 01:48 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-06-07 23:42 - 2015-05-26 01:48 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-06-07 23:42 - 2015-05-09 12:27 - 03147776 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-06-07 23:42 - 2015-05-09 12:27 - 02589184 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-06-07 23:42 - 2015-05-09 12:27 - 00696320 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-06-07 23:42 - 2015-05-09 12:27 - 00191488 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-06-07 23:42 - 2015-05-09 12:27 - 00098304 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-06-07 23:42 - 2015-05-09 12:27 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-06-07 23:42 - 2015-05-09 12:27 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-06-07 23:42 - 2015-05-09 12:26 - 00135168 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-06-07 23:42 - 2015-05-09 12:26 - 00087040 _____ (Microsoft Corporation) C:\windows\system32
  • tomoaki_2000tox
  • 2015/06/11 (Thu) 03:45:27
操作把握もかねて、追加のログをお願いします
おはようございます。
「このサイトで最弱の小物」「伏魔殿の面汚し」の悪代官です。

avastやMalwareBytes(MBAM)やCCの各ログを見せていただきました。
PC Tools Registry Mechanic等の曲者が見えてますね。
ですがそれ以外にも気になるものがあるようです。
最悪PCのリカバリも視野に入れて、必要なデータのバックアップも最優先でとっておくようにお勧めします。

ユーザー名を編集してから投稿されたのは良い対応です。
個人特定可能な情報はネット上に公開しないほうが安全ですから。

では作業の前に別のログもとってもらえますか。
FRST等のツールとログでは自分はまだうまく対応できない所があるのと、この先の作業の上で各作業ツールの使い方を相談者さんにも把握してもらう必要があるので。

下記のページの説明をよく読んでから
http://otherplace.html.xdomain.jp/prepare.html

その説明に従ってHJTとインストール情報ログをとってから、それを返信欄に丸ごと貼り付けてレスで見せてください。
それを見たうえで本格的な対処していきます。
特にCCの使い方は相談者さん自身にもつかんでおいてもらうと、以後のPC運用のうえで大きく役立ちます
  • 悪代官
  • 2015/06/11 (Thu) 08:12:48
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
ご指導ありがとうございます。

HJTのログです

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 22:09:56, on 2015/06/11
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16659)
CHROME: 43.0.2357.124

Boot mode: Normal

Running processes:
C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPCMNT.EXE
C:\Program Files\Softex\OmniPass\hook\OpHook32BitProcess.exe
C:\Windows\vsnp2uvc.exe
D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe
C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe
C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe
C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
C:\Program Files\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
D:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe
D:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
C:\Users\xxxxxx\Desktop\HijackThis.exe

O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\7_3_0_18\Modules\ypho.dll
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Trixie.Bho - {B0744341-96E0-4341-9ED2-8BC36CE0CCD0} - mscoree.dll (file missing)
O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - D:\Program Files (x86)\Xi\NetTransport 2\NTIEHelper.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\7_3_0_18\Modules\YahooToolBar.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\7_3_0_18\Modules\YahooToolBar.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O3 - Toolbar: CEBar for Internet Explorer(&C) - {711516D4-8154-45b6-97F0-2924C5827AE8} - C:\Program Files\CravingExplorer\Toolbar\bin32\ToolBarBand.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [IndicatorUtility] "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
O4 - HKLM\..\Run: [FJDust] C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
O4 - HKLM\..\Run: [NetworkPlayerServerHelper] "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
O4 - HKLM\..\Run: [snp2uvc] C:\windows\vsnp2uvc.exe
O4 - HKLM\..\Run: [IME JPN 2007 Migration] C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IoSecShadow] C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
O4 - HKLM\..\Run: [SSDMonitor] C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
O4 - HKLM\..\Run: [BSMLW06] "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun (User '?')
O4 - HKUS\S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [Google Update] "C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe" /c (User '?')
O4 - HKUS\S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (User '?')
O4 - HKUS\S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR (User '?')
O4 - S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 Startup: Bgcall.lnk = C:\Program Files (x86)\Bgcall\Bgcall.exe (User '?')
O4 - S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 Startup: BUFFALO NAS Navigator2.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe (User '?')
O4 - S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 Startup: NAS Scheduler.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe (User '?')
O4 - S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 Startup: TokyoLoader.lnk = C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe (User '?')
O4 - Startup: Bgcall.lnk = C:\Program Files (x86)\Bgcall\Bgcall.exe
O4 - Startup: BUFFALO NAS Navigator2.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
O4 - Startup: NAS Scheduler.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
O4 - Startup: TokyoLoader.lnk = C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe
O4 - Global Startup: Camera Monitor HD.lnk = D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
O4 - Global Startup: ImageBrowser EX Agent.lnk = C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
O4 - Global Startup: PointGrab ハンドジェスチャーコントロール.lnk = ?
O4 - Global Startup: SetPoint.lnk = C:\Program Files\SetPoint\SetPoint.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Net Transportでダウンロード - D:\Program Files (x86)\Xi\NetTransport 2\NTAddLink.html
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\Pioneer\NaviStudio3\DriveManager\System\navislink.html
O8 - Extra context menu item: 全てをNet Transportでダウンロード - D:\Program Files (x86)\Xi\NetTransport 2\NTAddList.html
O9 - Extra button: (no name) - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\windows\system32\mscoree.DLL
O9 - Extra 'Tools' menuitem: Tri&xie Options... - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\windows\system32\mscoree.DLL
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0E15796F-7B3A-4FB3-BF69-7B11D20A4A62} (AzbyClub ユーザー登録用 コントロール) - https://azby.fmworld.net/register/entrance/UserReg.CAB
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\ATService.exe
O23 - Service: BeatJam Video SCSI Service (BeatJamVideoService) - 株式会社ジャストシステム - C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe
O23 - Service: B's Recorder GOLD Library Service (bgsvclib) - B.H.A Corporation - D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe
O23 - Service: DiXiM Digital TV Service(21) - DigiOn, Inc. - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe
O23 - Service: DMRService plus - DigiOn - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: FjDstService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe
O23 - Service: FlinkService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\FLinkService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google アップデート サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: I-O DATA Device Management Service (IoDevMgrService) - I-O DATA DEVICE, INC. - C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: MSCSPTISRV - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe
O23 - Service: NAS PM Service (NasPmService) - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe
O23 - Service: NaviStudio3 EventNotificationService (NaviStudioSvc) - PIONEER CORPORATION - C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NetworkPlayer Server - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe
O23 - Service: O2FLASH - Unknown owner - C:\windows\system32\DRIVERS\o2flash.exe (file missing)
O23 - Service: Softex OmniPass Service (omniserv) - Softex Inc. - C:\Program Files\Softex\OmniPass\OmniServ.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - Unknown owner - C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: PowerUtility - スケジュール機能 (PUSCSRVC) - FUJITSU LIMITED - C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wyse PocketCloud (WysePocketCloud) - Unknown owner - C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe
O23 - Service: Wyse RemoteAccess (WyseRemoteAccess) - DELL Inc. - C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe

--
End of file - 19280 bytes



CCleanerのインストール情報ログです

+Lhaca
4Videosoft ブルーレイリッピング 5.0.56 4Videosoft Studio 2013/09/14 5.0.56
ACER ICONIA 3G DRIVER INSTALL acer 2012/06/18 1.00.0524
ACER ICONIA TAB Driver Installation acer 2012/05/18 1.06.1500
Adobe AIR Adobe Systems Incorporated 2015/05/18 17.0.0.172
Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 17.0.0.188
Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 17.0.0.188
Adobe Reader XI (11.0.11) - Japanese Adobe Systems Incorporated 2015/05/16 206 MB 11.0.11
Adobe Shockwave Player 12.0 Adobe Systems, Inc. 12.0.2.122
AnyDVD SlySoft
Apple Application Support Apple Inc. 2011/12/26 61.2 MB 2.1.5
Apple Software Update Apple Inc. 2011/12/26 2.38 MB 2.1.3.127
AuthenTec Fingerprint Software AuthenTec, Inc. 2011/03/23 11.4 MB 9.0.8.35
AzbyClubガジェットプログラム FUJITSU LIMITED 2011/03/23 3.10
BeatJam 株式会社ジャストシステム 2013/03/31 2.12
BeatJam Video Converter 株式会社ジャストシステム 2012/06/04 62.1 MB 1.02.0010
Bgcall 2.24 Hiroshi Inagaki 2011/11/03
Bluetooth Stack for Windows by Toshiba TOSHIBA CORPORATION 2011/11/01 62.7 MB v6.00.05
BSMLW06 BUFFALO 2012/01/20 1.0.2
BUFFALO NAS Navigator2
Canon Easy-PhotoPrint EX
Canon Easy-PhotoPrint Pro
Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data
Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data
Canon Easy-WebPrint EX
Canon IJ Network Scanner Selector EX
Canon IJ Network Tool
Canon MG6200 series MP Drivers
Canon MG6200 series On-screen Manual
Canon MP Navigator EX 5.0
Canon Utilities Digital Photo Professional Canon Inc. 3.12.51.2
Canon Utilities EOS Sample Music Canon Inc. 1.0.1.1
Canon Utilities EOS Utility Canon Inc. 2.12.2.1
Canon Utilities ImageBrowser EX Canon Inc. 1.5.0.6
Canon Utilities Picture Style Editor Canon Inc. 1.12.2.0
CCleaner Piriform 5.06
CEBar for Internet Explorer T-Craft / tuck 2015/03/14
CloneDVD2 Elaborate Bytes
Combined Community Codec Pack 2011-07-30 CCCP Project 2011/11/06 2011.07.30.0
ConcatPDF 1.2.5 Ujihara 2014/05/27 208 KB 1.2.5
Corel Digital Studio for FUJITSU Corel Corporation 1.5.9.563
Corel Graphics - Windows Shell Extension Corel Corporation 2012/03/18 15.2.0.686
Corel VideoStudio 12 Corel Corporation 2013/11/16 12.0.0.0000
Corel WinDVD Corel Inc. 2011/11/01 213 MB 10.0.6.127
CorelDRAW Essentials X5 Corel Corporation 2012/04/15 15.2.0.686
CorelDRAW Essentials X5 - Extra Content Corel Corporation 2012/04/15
Craving Explorer Version 1.6.17 T-Craft 2015/04/19 1.6.17.0
CyberLink YouCam CyberLink Corp. 2011/11/01 3.1.3904
DAEMON Tools Lite Disc Soft Ltd 4.48.1.0347
Device Management Service I-O DATA DEVICE, INC. 2011/12/04 1.28
DigiBookBrowser Version 1.5.2.68 TriWorks Corp.JAPAN 2011/03/23 1.5.2.68
DivXセットアップ DivX, LLC 2.6.1.28
DiXiM Digital TV plus DigiOn 2012/09/18 2.1.4.5
DVDFab 9.0.2.0 (08/01/2013) Qt Fengtao Software Inc. 2013/01/28
Everio MediaBrowser HD Edition PIXELA 2015/01/27 2.02.222
F-LINK FUJITSU LIMITED 2011/11/01 1.2.0.0
Fate/stay night TYPE-MOON 2013/03/08 1.2.1
ffdshow v1.2.4422 [2012-04-09] 2012/06/04 1.2.4422.0
FJ Camera Sonix 2011/11/01 5.8.52016.0
Free Hide Folder
Fujitsu Display Manager 2011/03/23
GAMEPACK2011F DATT JAPAN INC. 2011/03/23 920 MB 2.11.0105
GetASFStream
GIZMO ants Inc. 2011/03/23 8.50 MB 3.20.8000
GIZMO テレビ連携 for PIXELA 2 ants Inc. 2011/03/23 18.0 KB 1.0.0
GIZMO テレビ連携 for Windows Media Center ants Inc. 2011/03/23 6.00 KB 1.1.2
GIZMO テレビ連携 コアコンポーネント ants Inc. 2011/03/23 26.0 KB 1.0.1
Google Chrome Google Inc. 2011/11/01 43.0.2357.124
HDDロック I-O DATA 2011/12/04 2.33
Hoppysoft QTConverter 1.3.0
IndicatorUtility FUJITSU LIMITED 2011/03/23 3.70.0.0
Inspirium辞書検索ライブラリ Fujitsu 2011/03/23 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 8.15.10.2287
Intel(R) Wireless Display Intel Corporation 2011/11/01 119 MB 2.0.27.0
Java 8 Update 25 Oracle Corporation 2014/11/07 73.3 MB 8.0.250
JavaFX 2.1.1 Oracle Corporation 2012/07/09 20.8 MB 2.1.1
JUSTオンラインアップデート 株式会社ジャストシステム 2013/03/31 1.0.1.0
K-Lite Codec Pack 5.4.0 (64-bit) 2011/11/06 5.4.0
Malwarebytes Anti-Malware バージョン 2.1.6.1022 Malwarebytes Corporation 2015/06/11 2.1.6.1022
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/05/17 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 4.5.51209
Microsoft Office Enterprise 2007 Microsoft Corporation 2015/06/11 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office ナビ 2010 Microsoft Corporation 2013/09/14 16.9 MB 14.0.7015.1000
Microsoft Silverlight Microsoft Corporation 2015/05/17 298 MB 5.1.40416.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/03/23 1.69 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2013/11/16 2.51 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2011/11/02 572 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 Microsoft Corporation 2014/01/26 238 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/01 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 2011/11/01 778 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2011/11/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/01 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/01 586 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/11/02 600 KB 9.0.30729.6161
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 11.0.61030.0
Microsoft Visual Studio Tools for Applications 2.0 - ENU Microsoft Corporation 2012/03/20 211 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Language Pack - JPN Microsoft Corporation 2012/03/18 98.2 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Microsoft Corporation 2012/03/18 158 KB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - JPN Microsoft Corporation 2012/03/18 226 KB 9.0.30729
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2011/11/02 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2011/11/02 1.33 MB 4.20.9876.0
NAVI*STUDIO3 DriveManager Pioneer 2011/11/03 40.5 MB 3.0.6.0
NAVI*STUDIO3 Launcher Pioneer 2011/11/03 2.16 MB 3.2
NAVI*STUDIO3 MaintenanceManager PIONEER CORPORATION 2011/11/03 10.6 MB 3.01.0007
NAVI*STUDIO3 UpdateManager Pioneer 2011/11/03 1.86 MB 1.00
NetTransport
NetworkPlayer CyberLink Corp. 1.58.8511
NetworkPlayer サーバー DigiOn 2011/03/23 4.40
Norton 360 Symantec Corporation 2013/11/20 21.7.0.11
O2Micro Flash Memory Card Windows Driver O2Micro International LTD. 2013/12/25 3.2.00.05
OmniPass Softex Inc. 26.0 MB 7.00.61(x64)
OmniPass Softex Inc. 2011/03/23 7.00.61(x64)
PC Tools Registry Mechanic 11.0 PC Tools 2012/02/05 11.0
PC乗換ガイド 富士通株式会社 2011/03/23 V6.0C
PDF-Viewer Tracker Software Products Ltd 2014/05/07 2.5.214.2
Picasa 3 Google, Inc. 3.8
PictBear Version 2.03 Fenrir Inc. 2011/11/01
PlayMemories Home Sony Corporation 2015/01/27 4.1.00.12152
Plugfree NETWORK 富士通株式会社 2011/03/23 5.5.0.1
PocketCloud 会社名 2014/01/19 24.8 MB 2.7.18
PointGrab Hand Gesture Control PointGrab 2011/11/03 02.00.01.1623
PowerUtility - スケジュール機能 FUJITSU LIMITED 2011/03/23 4.12.0.0
QuickTime Apple Inc. 2012/01/07 67.1 MB 7.62.14.0
QuickTime Alternative 1.80 2011/12/26 1.80
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2011/03/23 6.0.1.6263
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2011/03/23 2.0.32.0
Roxio Creator LJ Roxio 2011/03/23 12.1.98.8
Scanner Mouse Dacuda 2014/04/24 87.1 MB 1.7.3
Sense YOU Technology 設定 Fujitsu LIMITED 2011/11/01 2.0.1.0
SetPoint ロジクール 2011/11/01 4.80
ShowRoom for PowerPoint GlobFX Technologies 2011/11/23
Skype(TM) 7.0 Skype Technologies S.A. 2015/04/17 47.9 MB 7.0.102
Sleipnir Version 3.0.0 Fenrir Inc. 2011/11/01 300
SmartSound Quicktracks Plugin SmartSound Software Inc 2013/11/16 3.0.5.0
Sony Media Library Earth 6.0.00 Sony Corporation 2011/11/03 6.0.00.10070
Sound Player Lilith for Unicode OSs 1.0 beta.3 http://www.project9k.jp/ 2014/01/26
Sound_Player_Lilith_0991b (Uninstall Only)
SoundEngine Free Coderium 2012/02/05 4.6.0.17
Stella Theater Lite
Stellarium 0.10.6.1 2011/11/02
StreamTransport version: 1.0.2.2171 2013/09/10
SUPERAntiSpyware SUPERAntiSpyware.com 6.0.1194
Swiff Player 1.7.2 GlobFX Technologies 2011/11/23 1.7.2
Synaptics Pointing Device Driver Synaptics Incorporated 14.0.16.0
TMPGEnc MovieStyle for carrozzeria Pegasys Inc. 2012/06/04 88.4 MB 1.1.3.55
TokyoLoader UNKNOWN 2015/02/23 0.6.42
Trixie Bhelpuri 2014/02/14 7.83 MB 1.0.3
WebM Project Directshow Filters
Windows Live Essentials Microsoft Corporation 2011/03/23 15.4.3508.1109
Windows Media Encoder 9 Series 2011/11/01
Windows Media Player Firefox Plugin Microsoft Corp 2012/05/12 296 KB 1.0.0.8
Yahoo!ツールバー Yahoo! JAPAN. 7.3.0.18
いつもNAVI PC ZENRIN 2011/03/23 6.1.2
うれしレシピ Fujitsu 2011/03/23 2.1.0.3
お手入れナビ FUJITSU LIMITED 2011/03/23 4.40.00.000
かんたんバックアップ FUJITSU LIMITED 2011/03/23 7.0.01
ゆったり設定2 FUJITSU LIMITED 2011/03/23 4.0.2.0
らくらく手書き入力 FUJITSU LIMITED 2011/03/23 7.24 MB 5.0.30
らくらく無線スタートEX NEC AccessTechnica, Ltd.
アタマスキャン 2011/11/01
アップデートナビ FUJITSU LIMITED 2011/11/03 8.06 MB 1.3.0016
インテル(R) PROSet/Wireless WiFi ソフトウェア Intel Corporation 2011/11/01 130 MB 14.01.0000
ウォーキング日記 FUJITSU LIMITED 2011/11/03 1.1.0.0
ギコナビ 2011/11/02
サポートナビ FUJITSU LIMITED 2011/03/23 3.1.0.0
スクリーンセーバー for FUJITSU PC FUJITSU LIMITED 2011/03/23 2.5.1.5
セキュリティ対策ソフト選択 FUJITSU LIMITED 2011/03/23 2.2.0.0
テレビNaviガジェット 株式会社プレゼントキャスト 2011/03/23 7.96 MB 1.12.0000
テレビ出力ユーティリティ 2011/03/23
デジカメde!!ムービーシアター Aisoft 2011/11/02 3.04
デジカメde!!同時プリント A.I.Soft,Inc. 8.00
バッテリーユーティリティ FUJITSU LIMITED 2011/03/23 3.01.04.004
ポチっとな I-O DATA DEVICE,INC. 2011/12/04 2.43
マイフォト Corel Corporation 2011/11/01 51.5 MB 1.001.0017
ラベル屋さん9 A-one Co.,Ltd. 2014/05/13 9.0.610
リモート接続用の Windows Live Mesh ActiveX コントロール (日本語) Microsoft Corporation 2011/03/23 5.57 MB 15.4.5722.2
ワンタッチボタン設定 FUJITSU LIMITED 2011/03/23 8.2.2.0
一太郎ビューア2013 株式会社ジャストシステム 2013/11/17 43.9 MB 23.0.3
富士通PC 辞書セット(広辞苑第六版+現代用語の基礎知識+学研パーソナル統合辞典+家庭医学館) 富士通株式会社 2011/03/23 5.00 KB 2.0.0
富士通モビリティセンター拡張 FUJITSU LIMITED 2011/03/23 3.01.02.001
富士通拡張機能ユーティリティ FUJITSU LIMITED 2011/03/23 3.4.1.0
省電力ユーティリティ FUJITSU LIMITED 2011/11/01 32.01.02.027
筆ぐるめ Ver.18 富士ソフト株式会社 2011/03/23 704 MB 18.00.0000
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2012/07/02 39.2 MB 1.14.0000
電子辞書 FUJITSU LIMITED 2011/03/23 V4.2
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2011/03/23 1.00.00.002
@メニュー FUJITSU LIMITED 2011/03/23 5.3.4.0
  • tomoaki_2000tox
  • 2015/06/11 (Thu) 22:15:34
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
MBAMのスキャンの2回目をしたところ脅威の検出はされませんでした。
Nortonの「脅威の遮断」もMBAMの1回目のスキャンと処理後、でなくなったようです。
  • tomoaki_2000tox
  • 2015/06/11 (Thu) 22:48:45
では本格作業開始です
作業と報告、ご苦労様です。
続きのログも見せてもらってだいぶ状況が見えてきました。
では本格的に作業にかかりますか。

まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「GeekUninstaller」(通称:GU)
説明ページ↓
http://www.gigafree.net/system/install/geekuninstaller.html
ダウンロード↓
http://www.geekuninstaller.com/download
「download free」をクリック、保存後、解凍してください。
片付ける時はフォルダごと手動で削除してください。

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

そして下記ページは作業開始前に必ず熟読して、必要な場合が出たらそれに沿って対処してください。この対処が必要な事例が増えています。
http://note.chiebukuro.yahoo.co.jp/detail/n335704

準備できたら作業開始です。
なお、このあとの作業で探しても見つからないものはスルーして進めていいですが、指示した対象外の物は絶対にいじらないようによく見て作業してください。

>Platform: Windows 7 SP1 (WinNT 6.00.3505)
>MSIE: Internet Explorer v9.00 (9.00.8112.16659)
Win7用のIE最新版は現在11です。
これを含めてWindowsの各種更新(WindowsUpdate)は常に最新に適用しておかないと、それだけで危険な感染はすぐにでも起きますよ。

また、少なくとも下記のアプリは旧バージョンです。
>Adobe Reader XI (11.0.11) - Japanese Adobe Systems Incorporated 2015/05/16 206 MB 11.0.11

>Adobe Shockwave Player 12.0 Adobe Systems, Inc. 12.0.2.122

>ffdshow v1.2.4422 [2012-04-09] 2012/06/04 1.2.4422.0

>Java 8 Update 25 Oracle Corporation 2014/11/07 73.3 MB 8.0.250

>K-Lite Codec Pack 5.4.0 (64-bit) 2011/11/06 5.4.0

>Skype(TM) 7.0 Skype Technologies S.A. 2015/04/17 47.9 MB 7.0.102

>Sleipnir Version 3.0.0 Fenrir Inc. 2011/11/01 300

各種アプリの更新を怠っただけでも、脆弱性を悪用されて深刻な感染はあっさり起きます。
使うなら最新版に更新してください。使わないアプリならアンインストールが安全です。
他にも旧バージョンないか調べて、あれば同様に更新するか、アンインストールしてください。

>CEBar for Internet Explorer T-Craft / tuck 2015/03/14
>Craving Explorer Version 1.6.17 T-Craft 2015/04/19 1.6.17.0

ダウンロード支援ツールはできればアンインストールをお勧めします。
DLツールは各社のアンチウイルスソフトでサポート外です。
つまり、これらDLツールを使って危険なサイトやファイルにアクセスすると、マルウェアがあってもブロックできずに感染してしまう危険が高くなります。
ただでさえDLツールを使う人が多い動画サイトは現在、その隙を狙う危険な罠リンクや悪質広告の巣窟に成り果てています。
どうしても使うなら最新版に更新したうえで、これによるいかなトラブルに遭っても自己責任で。

ここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

今度はPCをセーフモードで起動してください(やり方↓)
http://www.pc-master.jp/sousa/s-safemode.html

セーフモードでGUを使って、下記をアンインストールしてください。
4Videosoft ブルーレイリッピング 5.0.56 4Videosoft Studio 2013/09/14 5.0.56

DAEMON Tools Lite Disc Soft Ltd 4.48.1.0347

GIZMO ants Inc. 2011/03/23 8.50 MB 3.20.8000

GIZMO テレビ連携 for PIXELA 2 ants Inc. 2011/03/23 18.0 KB 1.0.0

GIZMO テレビ連携 for Windows Media Center ants Inc. 2011/03/23 6.00 KB 1.1.2

GIZMO テレビ連携 コアコンポーネント ants Inc. 2011/03/23 26.0 KB 1.0.1

Malwarebytes Anti-Malware バージョン 2.1.6.1022 Malwarebytes Corporation 2015/06/11 2.1.6.1022

PC Tools Registry Mechanic 11.0 PC Tools 2012/02/05 11.0

Swiff Player 1.7.2 GlobFX Technologies 2011/11/23 1.7.2

TokyoLoader UNKNOWN 2015/02/23 0.6.42

Trixie Bhelpuri 2014/02/14 7.83 MB 1.0.3

続いてセーフモードのままでスタートメニューの「アクセサリ」→「システムツール」から「ディスククリーンアップ」を起動してください。
起動したら対象ドライブでCドライブを選択してスキャンして、表示された中の「ダウンロードされたプログラムファイル」「インターネット一時ファイル」「一時ファイル」の項目だけチェックを入れてから「OK」「ファイルの削除」を押してください。
これを実行すると選択した部分のゴミファイルが掃除されます。

これを実行することで作業時にスキャンで検出される無駄なゴミファイルも減るのでその分かなり時間や解析も楽になるのです。
「ごみ箱」など他の項目にチェックしないのは、間違って正常なファイルを削除しないためと、もし正常なファイルを削除してごみ箱に入れても戻せるようにするための措置です。

HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、こちらが指示した以外のものは絶対にチェックを入れないでください。
O2 - BHO: Trixie.Bho - {B0744341-96E0-4341-9ED2-8BC36CE0CCD0} - mscoree.dll (file missing)

O2 - BHO: NTIECatcher Class - {C56CB6B0-0D96-11D6-8C65-B2868B609932} - D:\Program Files (x86)\Xi\NetTransport 2\NTIEHelper.dll

O4 - HKLM\..\Run: [SSDMonitor] C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe

O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun

O4 - HKUS\S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun (User '?')

O4 - S-1-5-21-2342459129-2340425143-2486070026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 Startup: TokyoLoader.lnk = C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe (User '?')

O4 - Startup: TokyoLoader.lnk = C:\Program Files (x86)\TokyoLoader\TokyoLoader.exe

O8 - Extra context menu item: 全てをNet Transportでダウンロード - D:\Program Files (x86)\Xi\NetTransport 2\NTAddList.html

O23 - Service: PC Tools Startup and Shutdown Monitor service (PCToolsSSDMonitorSvc) - Unknown owner - C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
探しても見つからないものはスルーして進めていいです。

マイコンピュータのCドライブを開いて、下記のフォルダを探して、見つかればゴミ箱に削除してください。
C:\Program Files (x86)\Common Files\PC Tools

C:\Program Files (x86)\DAEMON Tools Lite

D:\Program Files (x86)\Xi

C:\Program Files (x86)\TokyoLoader\

ここでPCを通常モードで再起動してから、今度はCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

続いて「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。
ただし、「コンテキストメニュー」のログは取らなくていいです。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにHJTとCCでのインストール情報ログを取り直してください。

取り直した両ログと、CCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。
  • 悪代官
  • 2015/06/12 (Fri) 20:05:30
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
指示された作業をやってみました。

とりあえずNortonからは前に書いたように、侵入の検知はなくなっています。
PCも安定しているようです。


HJTのログ

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 1:26:44, on 2015/06/14
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16659)
CHROME: 43.0.2357.124

Boot mode: Normal

Running processes:
C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPCMNT.EXE
C:\Program Files\Softex\OmniPass\hook\OpHook32BitProcess.exe
C:\Windows\vsnp2uvc.exe
D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe
C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
C:\Program Files\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe
C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe
C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
D:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe
D:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
C:\Users\TOMORO\Desktop\HijackThis.exe

O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [IndicatorUtility] "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
O4 - HKLM\..\Run: [FJDust] C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
O4 - HKLM\..\Run: [NetworkPlayerServerHelper] "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
O4 - HKLM\..\Run: [snp2uvc] C:\windows\vsnp2uvc.exe
O4 - HKLM\..\Run: [IME JPN 2007 Migration] C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IoSecShadow] C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
O4 - HKLM\..\Run: [BSMLW06] "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Users\TOMORO\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Bgcall.lnk = C:\Program Files (x86)\Bgcall\Bgcall.exe
O4 - Startup: BUFFALO NAS Navigator2.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
O4 - Startup: NAS Scheduler.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
O4 - Global Startup: Camera Monitor HD.lnk = D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
O4 - Global Startup: ImageBrowser EX Agent.lnk = C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
O4 - Global Startup: PointGrab ハンドジェスチャーコントロール.lnk = ?
O4 - Global Startup: SetPoint.lnk = C:\Program Files\SetPoint\SetPoint.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\Pioneer\NaviStudio3\DriveManager\System\navislink.html
O9 - Extra button: (no name) - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\windows\system32\mscoree.DLL
O9 - Extra 'Tools' menuitem: Tri&xie Options... - {20CCCFEC-D26F-4ffe-996B-388B39C8CCCA} - C:\windows\system32\mscoree.DLL
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0E15796F-7B3A-4FB3-BF69-7B11D20A4A62} (AzbyClub ユーザー登録用 コントロール) - https://azby.fmworld.net/register/entrance/UserReg.CAB
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\ATService.exe
O23 - Service: BeatJam Video SCSI Service (BeatJamVideoService) - 株式会社ジャストシステム - C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe
O23 - Service: B's Recorder GOLD Library Service (bgsvclib) - B.H.A Corporation - D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe
O23 - Service: DiXiM Digital TV Service(21) - DigiOn, Inc. - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe
O23 - Service: DMRService plus - DigiOn - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: FjDstService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe
O23 - Service: FlinkService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\FLinkService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google アップデート サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: I-O DATA Device Management Service (IoDevMgrService) - I-O DATA DEVICE, INC. - C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MSCSPTISRV - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe
O23 - Service: NAS PM Service (NasPmService) - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe
O23 - Service: NaviStudio3 EventNotificationService (NaviStudioSvc) - PIONEER CORPORATION - C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NetworkPlayer Server - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe
O23 - Service: O2FLASH - Unknown owner - C:\windows\system32\DRIVERS\o2flash.exe (file missing)
O23 - Service: Softex OmniPass Service (omniserv) - Softex Inc. - C:\Program Files\Softex\OmniPass\OmniServ.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: PowerUtility - スケジュール機能 (PUSCSRVC) - FUJITSU LIMITED - C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wyse PocketCloud (WysePocketCloud) - Unknown owner - C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe
O23 - Service: Wyse RemoteAccess (WyseRemoteAccess) - DELL Inc. - C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe

--
End of file - 15790 bytes


CCのインストール情報ログ

+Lhaca 2012/02/08
ACER ICONIA 3G DRIVER INSTALL acer 2012/06/18 1.00.0524
ACER ICONIA TAB Driver Installation acer 2012/05/18 30.2 MB 1.06.1500
Adobe AIR Adobe Systems Incorporated 2015/05/18 17.0.0.172
Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/06/10 6.00 MB 17.0.0.188
Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/06/11 6.00 MB 17.0.0.188
Adobe Reader XI (11.0.11) - Japanese Adobe Systems Incorporated 2015/05/16 206 MB 11.0.11
Adobe Shockwave Player 12.0 Adobe Systems, Inc. 2013/04/11 12.0.2.122
AnyDVD SlySoft 2011/11/02
Apple Application Support Apple Inc. 2011/12/26 61.2 MB 2.1.5
Apple Software Update Apple Inc. 2011/12/26 2.38 MB 2.1.3.127
AuthenTec Fingerprint Software AuthenTec, Inc. 2011/03/23 11.4 MB 9.0.8.35
AzbyClubガジェットプログラム FUJITSU LIMITED 2011/03/23 3.10
BeatJam 株式会社ジャストシステム 2013/03/31 2.12
BeatJam Video Converter 株式会社ジャストシステム 2012/06/04 62.1 MB 1.02.0010
Bgcall 2.24 Hiroshi Inagaki 2011/11/03 1.05 MB
Bluetooth Stack for Windows by Toshiba TOSHIBA CORPORATION 2011/11/01 62.7 MB v6.00.05
BSMLW06 BUFFALO 2012/01/20 1.0.2
BUFFALO NAS Navigator2 2015/01/25
Canon Easy-PhotoPrint EX 2012/07/02
Canon Easy-PhotoPrint Pro 2012/07/02
Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data 2012/07/02
Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data 2012/07/02
Canon Easy-WebPrint EX 2012/07/02
Canon IJ Network Scanner Selector EX 2012/07/02
Canon IJ Network Tool 2012/07/02
Canon MG6200 series MP Drivers 2012/07/02
Canon MG6200 series On-screen Manual 2012/07/02
Canon MP Navigator EX 5.0 2012/07/02
Canon Utilities Digital Photo Professional Canon Inc. 2014/10/13 3.12.51.2
Canon Utilities EOS Sample Music Canon Inc. 2014/10/13 1.0.1.1
Canon Utilities EOS Utility Canon Inc. 2014/10/13 2.12.2.1
Canon Utilities ImageBrowser EX Canon Inc. 2014/10/13 1.5.0.6
Canon Utilities Picture Style Editor Canon Inc. 2014/10/13 1.12.2.0
CCleaner Piriform 2015/06/11 5.06
CloneDVD2 Elaborate Bytes 2011/11/02
Combined Community Codec Pack 2011-07-30 CCCP Project 2011/11/06 28.5 MB 2011.07.30.0
ConcatPDF 1.2.5 Ujihara 2014/05/27 208 KB 1.2.5
Corel Digital Studio for FUJITSU Corel Corporation 2011/11/01 883 MB 1.5.9.563
Corel Graphics - Windows Shell Extension Corel Corporation 2012/03/21 2.93 MB 15.2.0.686
Corel VideoStudio 12 Corel Corporation 2013/11/16 276 MB 12.0.0.0000
Corel WinDVD Corel Inc. 2011/11/01 213 MB 10.0.6.127
CorelDRAW Essentials X5 Corel Corporation 2012/04/15 3.39 GB 15.2.0.686
CorelDRAW Essentials X5 - Extra Content Corel Corporation 2012/04/15
CyberLink YouCam CyberLink Corp. 2011/11/01 129 MB 3.1.3904
Device Management Service I-O DATA DEVICE, INC. 2011/12/04 1.28
DigiBookBrowser Version 1.5.2.68 TriWorks Corp.JAPAN 2011/03/23 8.51 MB 1.5.2.68
DivXセットアップ DivX, LLC 2013/04/20 2.6.1.28
DiXiM Digital TV plus DigiOn 2012/09/18 2.1.4.5
Everio MediaBrowser HD Edition PIXELA 2015/01/27 2.02.222
F-LINK FUJITSU LIMITED 2011/11/01 3.87 MB 1.2.0.0
Fate/stay night TYPE-MOON 2013/03/08 1.2.1
ffdshow v1.2.4422 [2012-04-09] 2012/06/04 13.9 MB 1.2.4422.0
FJ Camera Sonix 2011/11/01 5.8.52016.0
Free Hide Folder 2014/02/27
Fujitsu Display Manager 2011/11/01
GAMEPACK2011F DATT JAPAN INC. 2011/03/23 920 MB 2.11.0105
GetASFStream 2012/12/30
GIZMO 2011/03/23
GIZMO テレビ連携 for PIXELA 2 2011/03/23
GIZMO テレビ連携 for Windows Media Center 2011/03/23
GIZMO テレビ連携 コアコンポーネント 2011/03/23
Google Chrome Google Inc. 2011/11/01 43.0.2357.124
HDDロック I-O DATA 2011/12/04 2.33
Hoppysoft QTConverter 1.3.0 2012/02/05
IndicatorUtility FUJITSU LIMITED 2011/03/23 1.27 MB 3.70.0.0
Inspirium辞書検索ライブラリ Fujitsu 2011/03/23 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 2011/03/23 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 2011/03/23 8.15.10.2287
Intel(R) Wireless Display Intel Corporation 2011/11/01 119 MB 2.0.27.0
Java 8 Update 25 Oracle Corporation 2014/11/07 73.3 MB 8.0.250
JavaFX 2.1.1 Oracle Corporation 2012/07/09 20.8 MB 2.1.1
JUSTオンラインアップデート 株式会社ジャストシステム 2013/03/31 1.0.1.0
K-Lite Codec Pack 5.4.0 (64-bit) 2011/11/06 31.9 MB 5.4.0
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/05/10 38.8 MB 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 2015/06/07 2.93 MB 4.5.51209
Microsoft Office Enterprise 2007 Microsoft Corporation 2012/01/11 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office ナビ 2010 Microsoft Corporation 2013/09/14 16.9 MB 14.0.7015.1000
Microsoft Silverlight Microsoft Corporation 2015/05/17 298 MB 5.1.40416.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/03/23 1.69 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/11/02 300 KB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2011/03/23 840 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 Microsoft Corporation 2014/01/26 238 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/01 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 2011/11/01 778 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2011/11/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/01 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/01 586 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/11/02 600 KB 9.0.30729.6161
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 2015/02/12 20.5 MB 11.0.61030.0
Microsoft Visual Studio Tools for Applications 2.0 - ENU Microsoft Corporation 2012/03/20 211 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Language Pack - JPN Microsoft Corporation 2012/03/18 98.2 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Microsoft Corporation 2012/03/18 158 KB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - JPN Microsoft Corporation 2012/03/18 226 KB 9.0.30729
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2011/11/02 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2011/11/02 1.33 MB 4.20.9876.0
NAVI*STUDIO3 DriveManager Pioneer 2011/11/03 40.5 MB 3.0.6.0
NAVI*STUDIO3 Launcher Pioneer 2011/11/03 2.16 MB 3.2
NAVI*STUDIO3 MaintenanceManager PIONEER CORPORATION 2011/11/03 10.6 MB 3.01.0007
NAVI*STUDIO3 UpdateManager Pioneer 2011/11/03 1.86 MB 1.00
NetworkPlayer CyberLink Corp. 2011/11/01 1.58.8511
NetworkPlayer サーバー DigiOn 2011/03/23 4.40
Norton 360 Symantec Corporation 2013/11/20 21.7.0.11
O2Micro Flash Memory Card Windows Driver O2Micro International LTD. 2013/12/25 6.65 MB 3.2.00.05
OmniPass Softex Inc. 2011/11/01 26.0 MB 7.00.61(x64)
OmniPass Softex Inc. 2011/03/23 7.00.61(x64)
PC乗換ガイド 富士通株式会社 2011/03/23 7.62 MB V6.0C
PDF-Viewer Tracker Software Products Ltd 2014/05/07 55.6 MB 2.5.214.2
PictBear Version 2.03 Fenrir Inc. 2011/11/01 7.67 MB
PlayMemories Home Sony Corporation 2015/01/27 4.1.00.12152
Plugfree NETWORK 富士通株式会社 2011/03/23 5.5.0.1
PocketCloud 会社名 2014/01/19 24.8 MB 2.7.18
PointGrab Hand Gesture Control PointGrab 2011/11/03 65.5 MB 02.00.01.1623
PowerUtility - スケジュール機能 FUJITSU LIMITED 2011/03/23 22.2 MB 4.12.0.0
QuickTime Apple Inc. 2012/01/07 67.1 MB 7.62.14.0
QuickTime Alternative 1.80 2011/12/26 1.80
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2011/03/23 6.0.1.6263
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2011/03/23 1.00 MB 2.0.32.0
Roxio Creator LJ Roxio 2011/11/01 128 MB 12.1.98.8
Scanner Mouse Dacuda 2014/04/24 87.1 MB 1.7.3
Sense YOU Technology 設定 Fujitsu LIMITED 2011/11/01 2.0.1.0
SetPoint ロジクール 2011/11/01 17.0 KB 4.80
ShowRoom for PowerPoint GlobFX Technologies 2011/11/23
Skype(TM) 7.0 Skype Technologies S.A. 2015/04/17 47.9 MB 7.0.102
Sleipnir Version 3.0.0 Fenrir Inc. 2011/11/01 102 MB 300
SmartSound Quicktracks Plugin SmartSound Software Inc 2013/11/16 16.1 MB 3.0.5.0
Sony Media Library Earth 6.0.00 Sony Corporation 2011/11/03 42.0 MB 6.0.00.10070
Sound Player Lilith for Unicode OSs 1.0 beta.3 http://www.project9k.jp/ 2014/01/26
Sound_Player_Lilith_0991b (Uninstall Only) 2014/01/26
SoundEngine Free Coderium 2012/02/05 4.6.0.17
Stella Theater Lite 2011/11/02
Stellarium 0.10.6.1 2011/11/02 66.6 MB
StreamTransport version: 1.0.2.2171 2013/09/10
SUPERAntiSpyware SUPERAntiSpyware.com 2015/06/08 51.9 MB 6.0.1194
Synaptics Pointing Device Driver Synaptics Incorporated 2011/03/23 14.0.16.0
TMPGEnc MovieStyle for carrozzeria Pegasys Inc. 2012/06/04 88.4 MB 1.1.3.55
Trixie 2011/03/23
WebM Project Directshow Filters 2012/06/04
Windows Live Essentials Microsoft Corporation 2011/03/23 15.4.3508.1109
Windows Media Encoder 9 Series 2011/11/01
Windows Media Player Firefox Plugin Microsoft Corp 2012/05/12 296 KB 1.0.0.8
いつもNAVI PC ZENRIN 2011/03/23 6.1.2
うれしレシピ Fujitsu 2011/03/23 2.1.0.3
お手入れナビ FUJITSU LIMITED 2011/03/23 4.26 MB 4.40.00.000
かんたんバックアップ FUJITSU LIMITED 2011/03/23 7.0.01
ゆったり設定2 FUJITSU LIMITED 2011/03/23 7.72 MB 4.0.2.0
らくらく手書き入力 FUJITSU LIMITED 2011/03/23 7.24 MB 5.0.30
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2012/08/13
アタマスキャン 2011/11/01
アップデートナビ FUJITSU LIMITED 2011/11/03 8.06 MB 1.3.0016
インテル(R) PROSet/Wireless WiFi ソフトウェア Intel Corporation 2011/11/01 130 MB 14.01.0000
ウォーキング日記 FUJITSU LIMITED 2011/11/03 27.8 MB 1.1.0.0
サポートナビ FUJITSU LIMITED 2011/03/23 9.78 MB 3.1.0.0
スクリーンセーバー for FUJITSU PC FUJITSU LIMITED 2011/03/23 308 KB 2.5.1.5
セキュリティ対策ソフト選択 FUJITSU LIMITED 2011/03/23 1.37 MB 2.2.0.0
テレビNaviガジェット 株式会社プレゼントキャスト 2011/03/23 7.96 MB 1.12.0000
テレビ出力ユーティリティ 2011/11/01
デジカメde!!ムービーシアター Aisoft 2011/11/02 3.04
デジカメde!!同時プリント A.I.Soft,Inc. 2011/11/11 8.00
バッテリーユーティリティ FUJITSU LIMITED 2011/03/23 3.01.04.004
ポチっとな I-O DATA DEVICE,INC. 2011/12/04 2.43
マイフォト Corel Corporation 2011/11/01 51.5 MB 1.001.0017
ラベル屋さん9 A-one Co.,Ltd. 2014/05/13 9.0.610
リモート接続用の Windows Live Mesh ActiveX コントロール (日本語) Microsoft Corporation 2011/03/23 5.57 MB 15.4.5722.2
ワンタッチボタン設定 FUJITSU LIMITED 2011/03/23 3.36 MB 8.2.2.0
一太郎ビューア2013 株式会社ジャストシステム 2013/11/17 43.9 MB 23.0.3
富士通PC 辞書セット(広辞苑第六版+現代用語の基礎知識+学研パーソナル統合辞典+家庭医学館) 富士通株式会社 2011/03/23 5.00 KB 2.0.0
富士通モビリティセンター拡張 FUJITSU LIMITED 2011/03/23 390 KB 3.01.02.001
富士通拡張機能ユーティリティ FUJITSU LIMITED 2011/03/23 2.75 MB 3.4.1.0
省電力ユーティリティ FUJITSU LIMITED 2011/11/01 32.01.02.027
筆ぐるめ Ver.18 富士ソフト株式会社 2011/03/23 704 MB 18.00.0000
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2012/07/02 39.2 MB 1.14.0000
電子辞書 FUJITSU LIMITED 2011/03/23 19.0 MB V4.2
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2011/03/23 1.00.00.002
@メニュー FUJITSU LIMITED 2011/03/23 6.65 MB 5.3.4.0


CCの各ログ

スタートアップwindows
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run Google Update Google Inc. "C:\Users\TOMORO\AppData\Local\Google\Update\GoogleUpdate.exe" /c
有効 HKCU:Run SUPERAntiSpyware SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run ATSwpNav "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run
有効 HKLM:Run BSMLW06 DEXIN Corporation "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
無効 HKLM:Run Corel Photo Downloader Corel, Inc. "C:\Program Files (x86)\Corel\Corel MyPhoto\Corel Photo Downloader.exe" -startup
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
無効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
無効 HKLM:Run EzSptBtn FUJITSU LIMITED C:\Fujitsu\sptnavi\EzSptBtn4.exe
有効 HKLM:Run FDM7 FUJITSU LIMITED C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe
有効 HKLM:Run FJBATAID2 FUJITSU LIMITED C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe
有効 HKLM:Run FJDust FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
無効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
無効 HKLM:Run GIZMO2 "C:\Program Files (x86)\GIZMO2\GIZMO.exe" -BootProcess
有効 HKLM:Run GrooveMonitor Microsoft Corporation "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\WINDOWS\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\WINDOWS\system32\igfxtray.exe
有効 HKLM:Run IJNetworkScannerSelectorEX CANON INC. C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
無効 HKLM:Run IME14 JPN Uninstall Microsoft Corporation C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /JPN /Log
有効 HKLM:Run IndicatorUtility FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
有効 HKLM:Run IntelPAN Intel(R) Corporation "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
有効 HKLM:Run IoSecShadow I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
無効 HKLM:Run ITSecMng TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
無効 HKLM:Run JustOnlineUpdate 株式会社ジャストシステム "C:\Program Files (x86)\Common Files\Justsystem\JustOnlineUpdate\JustOnlineUpdate.exe" /startup
有効 HKLM:Run LoadBtnHnd FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe
有効 HKLM:Run LoadFUJ02E3 FUJITSU LIMITED C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
有効 HKLM:Run LoadFujitsuQuickTouch FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe
有効 HKLM:Run LoadPUSCDaemon FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe
無効 HKLM:Run NaviStudio3User PIONEER CORPORATION C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 User.exe
有効 HKLM:Run NetworkPlayerServerHelper DigiOn, Inc. "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
有効 HKLM:Run NUSB3MON Renesas Electronics Corporation "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
有効 HKLM:Run OmniPass Softex Inc. C:\Program Files\Softex\OmniPass\scureapp.exe
有効 HKLM:Run Persistence Intel Corporation C:\WINDOWS\system32\igfxpers.exe
有効 HKLM:Run PfNet FUJITSU LIMITED "C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
無効 HKLM:Run PSUTility FUJITSU LIMITED C:\Program Files\Fujitsu\PSUtility\TrayManager.exe
有効 HKLM:Run PUSCKAPLEXE FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe
無効 HKLM:Run PushButton I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\PushButton\PushButton.exe
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime Alternative\qttask.exe" -atboottime
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORDTSUPTBT
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run snp2uvc Sonix C:\windows\vsnp2uvc.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
無効 HKLM:Run UVS12 Preload Corel TW Corp. C:\Program Files (x86)\Corel\Corel VideoStudio 12\uvPL.exe
無効 HKLM:Run WSHelperSetup.exe C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
無効 HKLM:Run YouCam Mirage CyberLink "C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
無効 HKLM:Run YouCam Tray CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe" /s
有効 Startup Common Camera Monitor HD.lnk PIXELA CORPORATION D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
有効 Startup Common ImageBrowser EX Agent.lnk C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
有効 Startup Common PointGrab ハンドジェスチャーコントロール.lnk Acresso Software Inc. C:\windows\Installer\{8D0794C2-FE40-49FB-8695-E4A933A8BC98}\PointgrabShortcut_875D56C048FF45BAA9B778F0EEBE2A5E.exe
有効 Startup Common SetPoint.lnk Logicool, Inc. C:\Program Files\SetPoint\SetPoint.exe
有効 Startup User Bgcall.lnk C:\Program Files (x86)\Bgcall\Bgcall.exe
有効 Startup User BUFFALO NAS Navigator2.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
有効 Startup User NAS Scheduler.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe


スタートアップIE
有効 Extension OneNote に送る Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
有効 Extension Research Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
有効 Extension Trixie Options... Microsoft Corporation C:\windows\system32\mscoree.DLL
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Helper Canon Easy-WebPrint EX BHO CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
無効 Helper DivX Plus Web Player HTML5 <video> DivX, LLC C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
無効 Helper Groove GFS Browser Helper Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper C:\Program Files\Java\jre6\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll
無効 Helper Norton Vulnerability Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
有効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Toolbar Canon Easy-WebPrint EX CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll


スタートアップChorome
有効 App Gmail 8.1 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension DivX Plus Web Player HTML5 <video> 2.1.2.145 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
有効 Extension Norton Security Toolbar 2014.7.12.21 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.21_0
有効 Extension TokyoLoader 0.67.0 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0
有効 Extension TokyoLoader for Chrome 0.71.0 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0
無効 Plugin Adobe Acrobat 10.1.3.23 最初のユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\Application\43.0.2357.124\pdf.dll
有効 Plugin DivX Plus Web Player 2, 2, 0, 52 最初のユーザー C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
有効 Plugin DivX VOD Helper Plug-in 1.1.0.6 最初のユーザー C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
有効 Plugin Google Update 1.3.21.111 最初のユーザー C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.290.11 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U29 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Native Client 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\Application\43.0.2357.124\ppGoogleNaClPluginChrome.dll
有効 Plugin Picasa 3, 1, 0, 0 最初のユーザー C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
有効 Plugin Remoting Viewer 最初のユーザー internal-remoting-viewer
有効 Plugin Shockwave Flash 11,2,202,235 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\Application\43.0.2357.124\gcswf32.dll
有効 Plugin Shockwave for Director 11.6.1r629 最初のユーザー C:\windows\system32\Adobe\Director\np32dsw.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初のユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live™ Photo Gallery 15.4.3508.1109_ship.wlx.w4m4 (ship) 最初のユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll


スタートアップスケジュールされたタスク
有効 Task Adobe Acrobat Update Task Adobe Systems Incorporated C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task GoogleUpdateTaskUserS-1-5-21-2342459129-2340425143-2486070026-1001Core Google Inc. C:\Users\TOMORO\AppData\Local\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskUserS-1-5-21-2342459129-2340425143-2486070026-1001UA Google Inc. C:\Users\TOMORO\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PocketCloud Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudDesktopApp.exe
有効 Task PocketCloudUpdater Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\Updater.exe
有効 Task PocketCloudVirtualChannel Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\WPCRDPVirtualChannelServer.exe
有効 Task RMSmartUpdate "C:\Program Files (x86)\PC Tools Registry Mechanic\update.exe" /SILENT /PRODUCT=RM /VERSION=11.0.0.302 /PID=238 /SUBPRODUCT=REGNOW
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /c "D:\Applications\fmvuser\Signup.gadget" && pause
有効 Task {3EAA12F1-71D3-4EA0-9717-9BA1E47DC363} Microsoft Corporation C:\windows\system32\pcalua.exe -a "C:\Program Files (x86)\DAEMON Tools Lite\InstallGadget.exe" -d "C:\Program Files (x86)\DAEMON Tools Lite"
有効 Task {6033623A-FA9A-4AF6-A79C-242BD05E3C2B} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\TOMORO\Desktop\bj2011upm.exe -d C:\Users\TOMORO\Desktop
有効 Task {777B8897-AECE-4403-B972-D2A021F73EF2} Fenrir Inc. "d:\program files (x86)\fenrir inc\sleipnir\bin\sleipnir.exe" http://ui.skype.com/ui/0/5.5.59.124/ja/abandoninstall?source=lightinstaller&page=tsPlugin&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled
有効 Task {AC9FB714-3A59-41B4-8DA2-F74DE7C6FD72} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\TOMORO\Downloads\Creator12U-Fujitsu.exe -d C:\Users\TOMORO\Downloads
有効 Task {F631EB80-3B33-4B3E-8EE5-E9B4909798A5} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\ProgramData\DivX\Setup\DivXSetup.exe -c /uninstall
  • tomoaki_2000tox
  • 2015/06/14 (Sun) 01:35:58
いくつか作業の再試行を
作業と報告、ご苦労様です。

>とりあえずNortonからは前に書いたように、侵入の検知はなくなっています。

はい、異常が沈静化しているならこれはいいでしょう。

ですがまだ色々残っているものがありますね。
順番に調べながら次の作業を進めましょう。

先に指示した下記アプリの更新がまだできてないようです。
Adobe Reader XI (11.0.11) - Japanese Adobe Systems Incorporated 2015/05/16 206 MB 11.0.11

Adobe Shockwave Player 12.0 Adobe Systems, Inc. 2013/04/11 12.0.2.122

ffdshow v1.2.4422 [2012-04-09] 2012/06/04 13.9 MB 1.2.4422.0

Java 8 Update 25 Oracle Corporation 2014/11/07 73.3 MB 8.0.250

K-Lite Codec Pack 5.4.0 (64-bit) 2011/11/06 31.9 MB 5.4.0

Skype(TM) 7.0 Skype Technologies S.A. 2015/04/17 47.9 MB 7.0.102

Sleipnir Version 3.0.0 Fenrir Inc. 2011/11/01 102 MB 300
これらは一度GUを使ってアンインストールしてみてください。
削除できたらそのあとディスククリーンアップした後に、各アプリの公式サイトに行って各アプリの最新版をダウンロードと再インストールしてください。
普通はこれで最新版になるはずです。

次に下記アプリの削除もまだできてないようです。
GetASFStream 2012/12/30

GIZMO 2011/03/23

GIZMO テレビ連携 for PIXELA 2 2011/03/23

GIZMO テレビ連携 for Windows Media Center 2011/03/23

GIZMO テレビ連携 コアコンポーネント 2011/03/23

Trixie 2011/03/23
これらはGUを使って強制削除を試してください。
GU上から対象アプリを選択して「エントリの削除」です。
これで強制削除が可能ですが、これでも削除できないときは次回レスでその旨教えてください。

次はPCを通常モード状態でCCを起動して、「Windows」タブ内の下記を右クリックから「エントリの削除」してください。
無効 HKLM:Run GIZMO2 "C:\Program Files (x86)\GIZMO2\GIZMO.exe" -BootProcess

無効 HKLM:Run WSHelperSetup.exe C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

次に「IE」タブ内の下記も同様に処置です。
有効 Extension Trixie Options... Microsoft Corporation C:\windows\system32\mscoree.DLL

続いて「Chrome」タブ内の下記と
有効 Extension TokyoLoader 0.67.0 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0

有効 Extension TokyoLoader for Chrome 0.71.0 最初のユーザー C:\Users\TOMORO\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0

「スケジュールされたタスク」内の下記も同様に処置です。
有効 Task RMSmartUpdate "C:\Program Files (x86)\PC Tools Registry Mechanic\update.exe" /SILENT /PRODUCT=RM /VERSION=11.0.0.302 /PID=238 /SUBPRODUCT=REGNOW

有効 Task {3EAA12F1-71D3-4EA0-9717-9BA1E47DC363} Microsoft Corporation C:\windows\system32\pcalua.exe -a "C:\Program Files (x86)\DAEMON Tools Lite\InstallGadget.exe" -d "C:\Program Files (x86)\DAEMON Tools Lite"

ここまでできたら次は下記のツールを準備してください。
「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。
使い方は下記サイト様に詳しい説明があるのでサンショウウオ↓
http://www.japan-secure.com/entry/adwcleaner.html

Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ですが、MBAMは現在安定性や動作でかなり難が出ており、普通に使っても正常にスキャンができないバグまで多発中です。
そのため本家サイトから最新版のダウンロードせず、ここではあえて旧バージョンで作業します。

旧バージョンの説明サイト↓
http://www.japan-secure.com/entry/blog-entry-7.html

以下のURLからMBAMの旧バージョンをダウンロードしてください。
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
ファイル直リンです。保存しておいてください。

注)インストール時に日本語でインストールすると文字化けすることがあります。英語でインストール後に日本語化してください。
MBAM起動して「Settings」タブ→「Language」→「Japanese」で日本語化できます。

準備できたらMBAMをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。
なお、ここでMBAMの更新で「プログラム」自体は更新せず、定義だけ更新しておいてください。
プログラム本体を更新すると、バグ多発中の最新版になってしまうので、せっかく旧バージョンでインストールした意味がなくなります。

続いてここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

両ツールのアップデートができたらPCをセーフモードで再起動してから、ディスククリーンアップを使ってゴミファイルの掃除してください。

続いてPCをセーフモード起動してから、先に一度起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

ACでの作業ができたら次はMBAMの作業です。
セーフモードのままMBAM起動してスキャンしてください。
MBAM起動したら「スキャナー」タブから「フルスキャン」です。
対象ドライブはCを含めて全ドライブを選択してください。
ですが、もし「フルスキャン」というボタンが表示されない場合はMBAMを最新版に更新してしまった可能性があるので、この時は「カスタムスキャン」を選択してください。
この操作が最新版MBAMでのフルスキャンにあたります。
スキャン対象は全ドライブを選択(チェック)してください。時間はかかりますができるだけ細かくスキャンするためです。
順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、「詳細を表示」を押すとその結果が表示されるはずなので、そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

このあとしばらくPC状態を様子見後、作業後に保存したACとMBAMのログを返信に貼り付けて、それを状態報告とともにレスで見せてください。
  • 悪代官
  • 2015/06/14 (Sun) 17:50:46
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
いろいろとありがとうございます。
言われた通り作業をすすめていますが、うまくいってないところもあります。

GIZMOの関係は前回、強制削除でけされているはずが、ログには出てしまっているようです。何か残っているのでしょうか・・
また、CCでのChromeの2項目 有効 Extension TokyoLoader~ はブラウザの保護のため…というようなメッセージが出て削除できていません。



ACのログ

# AdwCleaner v4.206 - ログファイルの作成日 15/06/2015 作成時間 01:57:25
# 更新日 01/06/2015 作成元 Xplode
# データベース : 2015-05-31.5 [ローカル]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (x64)
# ユーザー名 : xxxxxx - MOONLIGHT
# 実行場所 : C:\Users\xxxxxx\Desktop\AdwCleaner.exe
# オプション : 削除

***** [ サービス ] *****


***** [ ファイル / フォルダ ] *****

フォルダ 削除済み項目 : C:\ProgramData\Uniblue
フォルダ 削除済み項目 : C:\Users\xxxxxx\AppData\Roaming\KingSoft

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Classes\driverscanner
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
キー 削除済み項目 : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}
キー 削除済み項目 : HKCU\Software\Softonic
キー 削除済み項目 : HKLM\SOFTWARE\Uniblue

***** [ Webブラウザ ] *****

-\\ Internet Explorer v9.0.8112.16659


-\\ Google Chrome v

[C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://nortonsafe.search.ask.com/web?q={searchTerms}&o=APN10506&l=dis&prt=360&chn=retail&geo=JP&ver=21&locale=ja_JP&gct=sb&qsrc=2869

*************************

AdwCleaner[R0].txt - [1836 bytes] - [15/06/2015 01:54:58]
AdwCleaner[S0].txt - [1406 bytes] - [15/06/2015 01:57:25]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1465 bytes] ##########




MBAMのログ

Malwarebytes Anti-Malware (試用) 1.75.0.1300
www.malwarebytes.org

定義バージョン: v2015.06.14.04

Windows 7 Service Pack 1 x64 NTFS (セーフモード)
Internet Explorer 9.0.8112.16421
:: MOONLIGHT [管理者]

リアルタイム保護: 無効

2015/06/15 2:27:51
MBAM-log-2015-06-15 (05-59-52).txt

スキャンタイプ: フルスキャン (C:\|D:\|)
有効なスキャン領域: メモリ | スタートアップ | レジストリ | ファイルシステム | ヒューリスティック/追加アイテムのスキャン  | ヒューリスティック/Shuriken エンジンを使用してスキャン  | 不審なプログラム (PUP) | 不審な変更 (PUM)
無効なスキャン領域: ピア・ツー・ピアプログラム(P2P)
スキャンしたアイテム数: 617620
経過時間: 1 時間, 30 分, 50 秒

メモリプロセスの検出: 0
(悪意のあるアイテムは検出されていません。)

メモリモジュールの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリキーの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリ値の検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリデータ項目の検出: 0
(悪意のあるアイテムは検出されていません。)

フォルダの検出: 0
(悪意のあるアイテムは検出されていません。)

ファイルの検出: 2
C:\Users\\Documents\事務\地デジをDVDに\cprmgetkey.exe (HackTool.Agent) -> 何の措置も取られませんでした。
C:\Users\\Documents\事務\極窓\CnsMin.dll (Adware.CnsMin) -> 何の措置も取られませんでした。

(終)


MBAMのログからですが、ファイルが2種類検出されています。
cprmgetkey.exe は、地デジをDVDにということで、たぶん何年も前に雑誌か何かでの付録ROMで紹介されていたものだと思います。
また、CnsMin.dll (Adware.CnsMin) の極窓も、ずっと昔に入れていたものです。

全然使ってはなかったのですが、昔から危険な状態でいたということでしょうか?
  • tomoaki_2000tox
  • 2015/06/16 (Tue) 00:35:29
次はOTLで解析します
作業と報告、ご苦労様です。

>言われた通り作業をすすめていますが、うまくいってないところもあります。


はい、作業が多いうえに自分の説明がまずいので手間取らせてしまいましたね。

GIZMOはGUの画面やコントロールパネルから消えていて、CCのログだけで表示されている状態でしょうか?
それならアプリ自体は既に削除されている状態で、わずかに残った残骸にCCだけが反応して、CCのログに名前だけが残っている状態です。
実際GIZMOは強制削除ツールを使ってもこうして残骸だけが残ることが多いのですが、実質削除できているなら以後は動くこともないので大丈夫です。

>cprmgetkey.exe は、地デジをDVDにということで、たぶん何年も前に雑誌か何かでの付録ROMで紹介されていたものだと思います。
>また、CnsMin.dll (Adware.CnsMin) の極窓も、ずっと昔に入れていたものです。

雑誌付録のフリーソフトやリンクに飛んだらそこでよくないものを食らったという事例は枚挙にいとまがありません。
他の相談者さんでもそういう経緯で感染受けた方は多いです。
極窓は本来は便利で有用なソフトですが、これは作者さんへの支援の意味で同梱されたアドウェアのCnsMinが入っていたのが原因でしょう。
CnsMinは危険度は薄いものなのであまり気にしなくてもいいですが、ネット上で配布されているフリーソフトの多くに同梱されていることも多いので、どうしてもCnsMinを入れたくないならそのフリーソフトの使用をあきらめることも検討ください。

それらのアドウェアは確かに色々と悪評も多いですが、各種フリーソフトの開発している作者さんがたにとっては貴重なスポンサーとなることも少なくないです。
フリーソフトを作成配布している個人のプログラマーさんがたは、おそらく一般のユーザーが考えているよりももっと厳しい開発と生活環境で活動されています。
なのでアドウェア同梱を認めた作者さんがたを頭から批判はされないようお願いします。

そしてこれが重要なのですが、無償及び格安のソフトの中には、アドウェア同梱をその使用条件にしているものもあります。
なのでその無償ソフトを入れる際に同梱のアドウェアだけを削除してフリーソフトのみをインストールすると、使用条件に反してしまうおそれもあるのです。
アドウェアのない状態でそのソフトを使いたいなら、多くの場合はそのソフトの正規有料版を購入して使うことになります。
無料版ではアドウェア同梱されても有料版ではアドウェアが付属しないというのも一般的な事例です。

MBAMとACでは少し検出がありましたが、両ツール上からそれも全部処置していればいいです。
処置が済んだら両ツールは片付けてください。

次は大詰めの解析していきます。
以下のツールを準備してください。
OTL(OldTimer Listit)
ファイル直リンなので、DLしたら保存しておいてください。
http://oldtimer.geekstogo.com/OTL.exe
片付けるときは起動後に「Cleanup」ボタンを押せば自動で削除されます。

他のプログラムを起動しない状態でOTLを起動してください。
起動したら、ウィンドウの上の方にある「Scan All Users」にチェックを入れ、以下のコマンドを「Custom Scan/Fixes」にコピペしてください。

%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
CREATERESTOREPOINT

その後、左上の「Run Scan」を押すとスキャン開始されます。
スキャン開始後、PC環境にもよりますが数分ほどすると、「OTL.txt」と「Extras.txt」がOTL.exeと同じ場所に作成されるはずなので、この2つのファイルをデスクトップあたりに保存しておいてください。
なお、Extras.txtは出ないこともありますが、その場合はOTL.txtだけでもいいです。

このあとOTLログを丸ごと返信に貼り付けてレスで見せてください。
ただしOTLログはかなり長くなるため、一度に送信してもfc2の文字数制限で途切れます。
なのでログも適当なところで分割して、複数回に分けてレス送信してください。

OTLでスキャンしただけでは何も変化は起きません。
この結果を見て、検出されたものを次回以降の作業で処置することになるはずです
  • 悪代官
  • 2015/06/16 (Tue) 21:45:28
OTLのログ1
ありがとうございます。
GIZMOはそんな感じなんですね。

フリーソフトについていろいろと教えていただきありがとうございます。
まだまだ知らないことがたくさんありました。

OTLのログです。

OTL logfile created on: 2015/06/16 22:45:32 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\xxxxxx\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.92 Gb Total Physical Memory | 4.45 Gb Available Physical Memory | 56.27% Memory free
15.83 Gb Paging File | 12.23 Gb Available in Paging File | 77.23% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 338.00 Gb Total Space | 182.34 Gb Free Space | 53.95% Space Free | Partition Type: NTFS
Drive D: | 340.44 Gb Total Space | 242.22 Gb Free Space | 71.15% Space Free | Partition Type: NTFS

Computer Name: MOONLIGHT | User Name: xxxxxx | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - File not found --
PRC - [2015/06/16 22:44:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\xxxxxx\Desktop\OTL.exe
PRC - [2015/04/20 13:32:20 | 000,787,992 | ---- | M] (Fenrir Inc.) -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe
PRC - [2015/04/20 13:32:20 | 000,439,320 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
PRC - [2015/03/07 15:29:03 | 000,265,000 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\n360.exe
PRC - [2014/12/15 23:23:26 | 000,487,960 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
PRC - [2014/12/15 23:19:36 | 002,728,472 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
PRC - [2014/04/08 09:13:18 | 000,069,120 | ---- | M] () -- C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
PRC - [2014/01/16 10:34:08 | 000,495,248 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
PRC - [2013/11/08 11:01:10 | 001,785,344 | ---- | M] (DELL Inc.) -- C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe
PRC - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2013/04/04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2013/03/29 18:33:54 | 001,945,700 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
PRC - [2013/02/13 11:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2012/03/30 02:31:26 | 000,251,760 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe
PRC - [2012/02/16 14:44:10 | 000,053,296 | ---- | M] (DigiOn, Inc.) -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe
PRC - [2011/09/27 10:54:58 | 000,243,056 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\F-LINK\FlinkService.exe
PRC - [2011/05/09 13:03:34 | 014,321,496 | ---- | M] (PointGrab LTD) -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe
PRC - [2011/02/16 11:03:04 | 000,065,536 | ---- | M] () -- C:\Program Files\Softex\OmniPass\Hook\OpHook32BitProcess.exe
PRC - [2011/02/09 17:49:14 | 000,142,696 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
PRC - [2011/02/09 17:49:14 | 000,062,824 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe
PRC - [2011/01/27 20:32:20 | 000,030,064 | ---- | M] () -- c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
PRC - [2011/01/21 01:28:00 | 000,207,736 | ---- | M] (I-O DATA DEVICE, INC.) -- C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe
PRC - [2011/01/15 16:48:44 | 000,452,016 | ---- | M] (CANON INC.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
PRC - [2011/01/11 18:35:40 | 000,087,336 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe
PRC - [2010/12/20 18:30:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010/12/20 18:30:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010/11/17 09:53:16 | 000,113,288 | ---- | M] (Renesas Electronics Corporation) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
PRC - [2010/09/29 18:05:32 | 000,048,752 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe
PRC - [2010/09/27 11:43:20 | 000,068,944 | ---- | M] (DigiOn) -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe
PRC - [2010/07/28 09:27:18 | 001,386,280 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
PRC - [2010/05/20 16:15:00 | 000,110,736 | R--- | M] (InterVideo) -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2010/03/23 13:38:40 | 000,391,088 | ---- | M] (PIONEER CORPORATION) -- C:\Program Files (x86)\pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe
PRC - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2009/10/09 13:48:08 | 000,297,520 | ---- | M] (I-O DATA DEVICE, INC.) -- C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
PRC - [2009/10/08 20:13:58 | 000,451,920 | ---- | M] (DigiOn, Inc.) -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe
PRC - [2009/10/03 23:39:04 | 000,581,636 | ---- | M] (ArcSoft) -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\TrArc\arcsys.exe
PRC - [2009/08/13 06:06:00 | 000,662,016 | ---- | M] (Sonix) -- C:\Windows\vsnp2uvc.exe
PRC - [2009/07/21 17:25:42 | 000,541,976 | ---- | M] (PIXELA CORPORATION) -- D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
PRC - [2009/07/20 04:00:00 | 000,081,920 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
PRC - [2009/07/02 20:09:24 | 000,107,792 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe
PRC - [2009/05/15 19:37:00 | 000,206,128 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
PRC - [2009/03/24 12:00:00 | 000,058,664 | ---- | M] (株式会社ジャストシステム) -- C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe
PRC - [2007/06/15 12:59:58 | 000,145,504 | ---- | M] (B.H.A Corporation) -- D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2015/06/15 01:26:56 | 001,842,200 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\extension\SuperDragExtension.fx
MOD - [2015/06/15 01:26:56 | 001,163,776 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\panel\HeadlineFeedPanel.fx
MOD - [2015/06/15 01:26:56 | 000,786,968 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\dock\headlinearticledock.fx
MOD - [2015/06/15 01:26:56 | 000,372,760 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\dock\headlinetooldock.fx
MOD - [2015/06/15 01:26:54 | 006,675,480 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\SmartSearch.fx
MOD - [2015/06/15 01:26:54 | 001,583,640 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\RecoveryManagerExtension.fx
MOD - [2015/06/15 01:26:54 | 001,554,968 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\PassConnectExtension.fx
MOD - [2015/06/15 01:26:54 | 000,755,224 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\SnapCrabToolbar.fx
MOD - [2015/05/17 03:00:16 | 000,212,992 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\716ee14dc9aafde2b5f7f387d842661d\System.ServiceProcess.ni.dll
MOD - [2015/05/17 03:00:01 | 014,340,096 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ea543310204d0addfaf9792d820e958d\PresentationFramework.ni.dll
MOD - [2015/05/17 02:59:52 | 012,438,016 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6949c4470a81970ec3de0a575d93babc\System.Windows.Forms.ni.dll
MOD - [2015/05/17 02:59:47 | 001,593,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5a401fd2a7689ff13fb54182953f9c40\System.Drawing.ni.dll
MOD - [2015/05/17 02:59:45 | 000,978,432 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\007fc007edc388d9806dff94ee04f129\System.Configuration.ni.dll
MOD - [2015/05/17 02:59:43 | 012,254,208 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\ef204c8310562595a0518e356fb15387\PresentationCore.ni.dll
MOD - [2015/05/17 02:59:13 | 012,897,280 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\a0b4e6b92d9c147d801a6f2e3a15080b\System.Windows.Forms.ni.dll
MOD - [2015/05/17 02:59:07 | 000,967,680 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\908075c4922acdf834c67ac802814c9d\System.Configuration.ni.dll
MOD - [2015/05/17 02:56:41 | 003,348,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1c3513960037508558358652f2d202a1\WindowsBase.ni.dll
MOD - [2015/05/17 02:55:52 | 000,368,128 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\b3eb55fa5864a2fc7accbbbbe7fa7246\PresentationFramework.Aero.ni.dll
MOD - [2015/05/17 00:05:02 | 010,069,504 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System\d18e2115a3270f89663fce831547f534\System.ni.dll
MOD - [2015/05/17 00:03:43 | 000,798,720 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runt73a1fc9d#\f504b5348a87122eeabdec67d806148b\System.Runtime.Remoting.ni.dll
MOD - [2015/05/10 16:47:56 | 001,642,496 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\dd2f9ea99ac0f984b9dc430824638c9f\System.Drawing.ni.dll
MOD - [2015/05/10 16:47:35 | 007,793,664 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\3d6ee4ffbd9a86ac1e7b01800b6fe9c7\System.Xml.ni.dll
MOD - [2015/05/10 16:46:21 | 017,207,296 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d1265d6159ea876f9d63ea4c1361b587\mscorlib.ni.dll
MOD - [2015/04/20 13:32:22 | 001,018,392 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Supplement.fx
MOD - [2015/04/20 13:32:20 | 009,370,136 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Core.fx
MOD - [2015/04/20 13:32:20 | 000,969,240 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\FenrirLib.fx
MOD - [2015/04/20 13:32:20 | 000,439,320 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
MOD - [2015/04/20 13:32:20 | 000,237,592 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\ipc.fx
MOD - [2014/10/18 23:42:48 | 005,467,648 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
MOD - [2014/10/18 23:42:22 | 007,991,808 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
MOD - [2014/09/12 23:01:47 | 011,497,984 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
MOD - [2014/04/08 09:13:18 | 000,069,120 | ---- | M] () -- C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
MOD - [2014/04/08 09:08:24 | 000,112,128 | ---- | M] () -- C:\Program Files (x86)\Canon\ImageBrowser EX\MFMFileSystemWatcher.dll
MOD - [2013/02/13 11:38:06 | 000,100,688 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2013/02/13 11:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
MOD - [2011/05/09 13:03:46 | 000,028,504 | ---- | M] () -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\WebCamCtrl.dll
MOD - [2011/05/09 13:03:08 | 000,066,920 | ---- | M] () -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\AxInterop.WMPLib.dll
MOD - [2011/02/16 11:03:04 | 000,065,536 | ---- | M] () -- C:\Program Files\Softex\OmniPass\Hook\OpHook32BitProcess.exe
MOD - [2011/02/16 10:08:02 | 000,061,440 | ---- | M] () -- C:\Program Files\Softex\OmniPass\Hook\scuredll.dll
MOD - [2010/11/13 08:18:15 | 000,466,944 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_ja_b77a5c561934e089\System.Windows.Forms.resources.dll
MOD - [2010/11/13 08:18:15 | 000,348,160 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_ja_b77a5c561934e089\mscorlib.resources.dll
MOD - [2010/09/14 16:29:20 | 000,157,480 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\Hook.dll
MOD - [2010/07/28 09:27:18 | 001,386,280 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
MOD - [2009/11/25 13:45:36 | 001,193,768 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\XWheel.dll
MOD - [2009/07/20 04:00:00 | 000,081,920 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
MOD - [2009/07/07 19:12:34 | 000,024,576 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_playlist.dll
MOD - [2009/07/02 20:09:24 | 000,020,480 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_crawler.dll
MOD - [2009/06/19 15:50:40 | 000,131,072 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_msd.dll
MOD - [2009/06/18 17:58:04 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_crawler_fs.dll
MOD - [2009/06/12 00:07:58 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_av.dll
MOD - [2009/06/12 00:07:58 | 000,159,744 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_util.dll
MOD - [2009/06/12 00:07:58 | 000,159,744 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_upnp.dll
MOD - [2009/06/12 00:07:58 | 000,053,248 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_media.dll
MOD - [2009/06/12 00:07:58 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_access_control.dll
MOD - [2009/06/12 00:07:58 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_char_util.dll
MOD - [2009/06/12 00:07:58 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_metadata.dll
MOD - [2009/06/12 00:07:58 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_device_manager.dll
MOD - [2009/06/12 00:07:58 | 000,024,576 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_printer.dll
MOD - [2009/04/30 17:24:42 | 000,937,984 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\libxml2.dll
MOD - [2009/04/30 17:24:42 | 000,499,246 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\sqlite3.dll
MOD - [2009/04/30 17:24:42 | 000,180,224 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\uchardet.dll
MOD - [2008/08/20 18:03:38 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\scew.dll
MOD - [2008/05/13 19:47:28 | 001,443,212 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\iconv.dll
MOD - [2008/05/13 19:47:28 | 000,151,552 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\libexpat.dll
MOD - [2004/09/09 17:13:00 | 000,364,544 | ---- | M] () -- D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\pxl_m17n_tool.dll

  • tomoaki_2000tox
  • 2015/06/16 (Tue) 23:22:38
OTLのログ2
つづきです。

[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/05/26 03:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
SRV:[b]64bit:[/b] - [2014/07/23 08:31:23 | 000,172,344 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore64.exe -- (!SASCORE)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2012/10/23 16:42:28 | 000,035,256 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe -- (SKARUTE)
SRV:[b]64bit:[/b] - [2011/12/01 10:04:56 | 000,289,952 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe -- (SpfService)
SRV:[b]64bit:[/b] - [2011/06/28 18:44:06 | 000,014,336 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\chitose\updnvsrv.exe -- (UpdateNaviInstallService)
SRV:[b]64bit:[/b] - [2011/03/30 07:56:20 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:[b]64bit:[/b] - [2011/03/30 07:43:42 | 000,340,240 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV:[b]64bit:[/b] - [2011/03/30 07:40:30 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:[b]64bit:[/b] - [2011/02/16 22:21:36 | 000,073,328 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe -- (FUJ02E3Service)
SRV:[b]64bit:[/b] - [2011/02/16 11:13:10 | 000,042,496 | ---- | M] (Softex Inc.) [Auto | Running] -- C:\Program Files\Softex\OmniPass\OmniServ.exe -- (omniserv)
SRV:[b]64bit:[/b] - [2011/01/14 11:55:28 | 000,216,688 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe -- (PUSCSRVC)
SRV:[b]64bit:[/b] - [2010/12/27 13:58:24 | 000,331,776 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe -- (PFNService)
SRV:[b]64bit:[/b] - [2010/09/22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:[b]64bit:[/b] - [2010/06/17 15:47:12 | 000,063,336 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\PSUtility\PSUService.exe -- (PowerSavingUtilityService)
SRV:[b]64bit:[/b] - [2010/06/02 18:05:42 | 002,734,400 | ---- | M] (AuthenTec, Inc.) [Auto | Running] -- C:\Program Files\Fingerprint Sensor\ATService.exe -- (ATService)
SRV:[b]64bit:[/b] - [2010/02/10 17:50:50 | 000,072,296 | ---- | M] (O2Micro International) [Auto | Running] -- C:\Windows\SysNative\drivers\o2flash.exe -- (O2FLASH)
SRV - [2015/06/15 02:12:45 | 000,268,976 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/03/07 15:29:03 | 000,265,000 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe -- (N360)
SRV - [2014/12/15 23:23:26 | 000,487,960 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
SRV - [2014/04/11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2014/01/16 10:34:08 | 000,495,248 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe -- (SOHDms)
SRV - [2013/12/03 10:56:50 | 000,079,000 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -- (SOHDs)
SRV - [2013/11/11 08:34:28 | 000,016,176 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe -- (WysePocketCloud)
SRV - [2013/11/08 11:01:10 | 001,785,344 | ---- | M] (DELL Inc.) [Auto | Running] -- C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe -- (WyseRemoteAccess)
SRV - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/03/30 02:31:26 | 000,251,760 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe -- (NasPmService)
SRV - [2012/02/16 14:44:10 | 000,053,296 | ---- | M] (DigiOn, Inc.) [Auto | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe -- (DiXiM Digital TV Service(21)
SRV - [2011/09/27 10:54:58 | 000,243,056 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files (x86)\Fujitsu\F-LINK\FlinkService.exe -- (FlinkService)
SRV - [2011/05/09 13:03:30 | 000,053,080 | ---- | M] (PointGrab LTD) [Auto | Running] -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe -- (PGService)
SRV - [2011/02/09 17:49:14 | 000,062,824 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe -- (FjDstService)
SRV - [2011/01/27 20:32:20 | 000,030,064 | ---- | M] () [Auto | Running] -- c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe -- (UDSS)
SRV - [2011/01/21 01:28:00 | 000,207,736 | ---- | M] (I-O DATA DEVICE, INC.) [Auto | Running] -- C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe -- (IoDevMgrService)
SRV - [2011/01/11 18:35:40 | 000,087,336 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe -- (CLHNService3)
SRV - [2010/12/20 18:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/20 18:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/09/27 11:43:20 | 000,068,944 | ---- | M] (DigiOn) [Auto | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe -- (DMRService plus)
SRV - [2010/05/20 16:15:00 | 000,110,736 | R--- | M] (InterVideo) [Auto | Running] -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
SRV - [2010/03/23 13:38:40 | 000,391,088 | ---- | M] (PIONEER CORPORATION) [Auto | Running] -- C:\Program Files (x86)\pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe -- (NaviStudioSvc)
SRV - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2009/10/07 01:30:08 | 000,120,168 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe -- (PACSPTISVR)
SRV - [2009/07/02 20:09:24 | 000,107,792 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe -- (NetworkPlayer Server)
SRV - [2009/03/24 12:00:00 | 000,058,664 | ---- | M] (株式会社ジャストシステム) [Auto | Running] -- C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe -- (BeatJamVideoService)
SRV - [2007/09/28 16:06:42 | 000,168,296 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- (TOSHIBA Bluetooth Service)
SRV - [2007/06/15 12:59:58 | 000,145,504 | ---- | M] (B.H.A Corporation) [Auto | Running] -- D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe -- (bgsvclib)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2014/08/26 11:20:22 | 000,876,248 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\srtsp64.sys -- (SRTSP)
DRV:[b]64bit:[/b] - [2014/08/26 11:20:22 | 000,037,592 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\srtspx64.sys -- (SRTSPX)
DRV:[b]64bit:[/b] - [2014/08/07 04:48:16 | 000,266,968 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\ironx64.sys -- (SymIRON)
DRV:[b]64bit:[/b] - [2014/03/04 13:18:12 | 001,148,120 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\symefa64.sys -- (SymEFA)
DRV:[b]64bit:[/b] - [2014/02/18 10:32:41 | 000,593,112 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\symnets.sys -- (SymNetS)
DRV:[b]64bit:[/b] - [2013/11/20 00:57:37 | 000,177,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:[b]64bit:[/b] - [2013/10/02 11:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/09/26 11:50:25 | 000,162,392 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\ccsetx64.sys -- (ccSet_N360)
DRV:[b]64bit:[/b] - [2013/09/10 11:47:43 | 000,078,936 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SymIMV.sys -- (SymIM)
DRV:[b]64bit:[/b] - [2013/09/10 11:47:26 | 000,493,656 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\symds64.sys -- (SymDS)
DRV:[b]64bit:[/b] - [2013/04/04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2013/02/12 13:12:06 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:[b]64bit:[/b] - [2012/08/23 23:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2012/08/23 23:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/10/21 09:30:02 | 012,310,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2011/08/23 05:12:56 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2011/07/23 01:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:[b]64bit:[/b] - [2011/07/13 06:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:[b]64bit:[/b] - [2011/05/05 13:51:24 | 000,084,840 | ---- | M] (O2Micro ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\o2sdjw7x64.sys -- (O2SDJRDR)
DRV:[b]64bit:[/b] - [2011/03/16 16:15:58 | 008,590,336 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011/03/04 23:49:52 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:[b]64bit:[/b] - [2011/01/12 17:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2011/01/04 11:29:00 | 000,031,744 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\androidusb.sys -- (androidusb)
DRV:[b]64bit:[/b] - [2011/01/03 14:19:56 | 000,074,984 | ---- | M] (O2Micro ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\O2MDRw7x64.sys -- (O2MDRRDR)
DRV:[b]64bit:[/b] - [2011/01/03 12:04:44 | 000,072,808 | ---- | M] (O2Micro ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\o2mdfw7x64.sys -- (O2MDFRDR)
DRV:[b]64bit:[/b] - [2010/12/29 03:45:54 | 000,412,776 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2010/12/10 13:50:36 | 000,181,248 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:[b]64bit:[/b] - [2010/12/10 13:50:36 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:[b]64bit:[/b] - [2010/12/01 05:02:22 | 000,042,392 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WDKMD.sys -- (wdkmd)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/10/19 16:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2010/10/09 05:35:38 | 001,801,216 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:[b]64bit:[/b] - [2010/06/02 18:27:04 | 000,770,152 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ATSwpWDF.sys -- (ATSwpWDF)
DRV:[b]64bit:[/b] - [2010/03/19 03:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2009/11/19 21:45:08 | 000,299,568 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/08 15:55:10 | 000,018,704 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\diximdd.sys -- (DiximDd)
DRV:[b]64bit:[/b] - [2009/06/24 14:31:30 | 000,021,104 | ---- | M] (FUJITSU LIMITED) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\FBIOSDRV.sys -- (FBIOSDRV)
DRV:[b]64bit:[/b] - [2009/06/11 05:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009/04/29 16:28:30 | 000,030,208 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV:[b]64bit:[/b] - [2008/12/11 14:10:40 | 000,018,456 | ---- | M] (Texim Corporation) [Kernel | System | Running] -- C:\windows\SysNative\drivers\TxDevCmd.sys -- (TxDevCmd)
DRV:[b]64bit:[/b] - [2008/03/25 16:24:44 | 000,165,760 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfbd.sys -- (tosrfbd)
DRV:[b]64bit:[/b] - [2008/03/25 13:54:26 | 000,049,152 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tosporte.sys -- (tosporte)
DRV:[b]64bit:[/b] - [2008/03/19 11:38:46 | 000,088,192 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Tosrfhid.sys -- (Tosrfhid)
DRV:[b]64bit:[/b] - [2008/01/22 20:58:12 | 000,056,320 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TosRfSnd.sys -- (TosRfSnd)
DRV:[b]64bit:[/b] - [2007/11/29 09:45:58 | 000,044,800 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfbnp.sys -- (tosrfbnp)
DRV:[b]64bit:[/b] - [2007/10/18 14:25:00 | 000,051,328 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfusb.sys -- (Tosrfusb)
DRV:[b]64bit:[/b] - [2007/10/02 11:43:08 | 000,076,160 | ---- | M] (TOSHIBA Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tosrfcom.sys -- (Tosrfcom)
DRV:[b]64bit:[/b] - [2007/06/01 12:04:51 | 000,109,256 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AnyDVD.sys -- (AnyDVD)
DRV:[b]64bit:[/b] - [2007/04/17 11:51:50 | 000,014,112 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\regi.sys -- (regi)
DRV:[b]64bit:[/b] - [2007/03/01 05:52:00 | 000,017,616 | ---- | M] (Elaborate Bytes AG) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:[b]64bit:[/b] - [2006/11/01 19:59:24 | 000,007,296 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\fuj02e3.sys -- (FUJ02E3)
DRV:[b]64bit:[/b] - [2006/11/01 19:20:28 | 000,007,808 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\fuj02b1.sys -- (FUJ02B1)
DRV:[b]64bit:[/b] - [2005/07/13 06:43:00 | 000,028,160 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfnds.sys -- (tosrfnds)
DRV - [2015/06/02 02:41:49 | 000,684,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\IPSDefs\20150612.001\IDSviA64.sys -- (IDSVia64)
DRV - [2015/06/02 02:41:16 | 000,489,776 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2015/06/02 02:41:16 | 000,145,200 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2015/05/22 00:44:33 | 001,640,152 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\BASHDefs\20150602.001\BHDrvx64.sys -- (BHDrvx64)
DRV - [2015/01/22 01:04:55 | 002,137,304 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150614.001\ex64.sys -- (NAVEX15)
DRV - [2015/01/22 01:04:54 | 000,129,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150614.001\eng64.sys -- (NAVENG)
DRV - [2011/12/14 15:27:34 | 000,186,944 | ---- | M] () [Kernel | System | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\TrArc\TRArcsyC21.sd -- (TRArcsyC21)
DRV - [2011/12/14 15:27:34 | 000,186,944 | ---- | M] () [Kernel | System | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\TrArc\TRArcsyA21.sd -- (TRArcsyA21)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2007/06/01 12:04:51 | 000,109,256 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2005/01/02 10:07:05 | 000,009,728 | ---- | M] (Elaborate Bytes AG) [Kernel | Auto | Running] -- C:\Windows\SysWOW64\drivers\ElbyCDIO.sys -- (ElbyCDIO)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}: "URL" = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}: "URL" = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}: "URL" = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}: "URL" = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}: "URL" = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
IE - HKLM\..\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}: "URL" = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
IE - HKLM\..\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}: "URL" = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
IE - HKLM\..\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}: "URL" = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://azby.fmworld.net/?ref=201105
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.co.jp/
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?FORM=BDT3DF&PC=BDT3&dt=062613&q={searchTerms}&src=IE-SearchBox
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes\DA74EF2F3D6C457EA242B5F26FA31B6F: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7FTJB_jaJP456
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll ()
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF - HKCU\Software\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\coFFPlgn\ [2015/06/16 22:30:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/12/02 21:57:52 | 000,000,000 | ---D | M]


[color=#E56717]========== Chrome ==========[/color]

CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.12_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.21_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0\

O1 HOSTS File: ([2009/06/11 06:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coieplg.dll (Symantec Corporation)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\ips\ipsbho.dll (Symantec Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coieplg.dll (Symantec Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3:[b]64bit:[/b] - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coieplg.dll (Symantec Corporation)
O3 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coieplg.dll (Symantec Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [ATSwpNav] C:\Program Files\Fingerprint Sensor\ATSwpNav.exe (AuthenTec, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [FDM7] C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [FJBATAID2] C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\chitose\updatenv.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IntelPAN] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadFUJ02E3] C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadPUSCDaemon] C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [OmniPass] C:\Program Files\Softex\OmniPass\scureapp.exe (Softex Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [PfNet] C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [PUSCKAPLEXE] C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
O4 - HKLM..\Run: [BSMLW06] C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe ()
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [FJDust] C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.)
O4 - HKLM..\Run: [IndicatorUtility] C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [IoSecShadow] C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe (I-O DATA DEVICE, INC.)
O4 - HKLM..\Run: [NetworkPlayerServerHelper] C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe (DigiOn, Inc.)
O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Bgcall.lnk = C:\Program Files (x86)\Bgcall\Bgcall.exe ()
O4 - Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BUFFALO NAS Navigator2.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe (BUFFALO INC.)
O4 - Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NAS Scheduler.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe (BUFFALO INC.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:[b]64bit:[/b] - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O8:[b]64bit:[/b] - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\pioneer\NaviStudio3\DriveManager\System\navislink.html ()
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\pioneer\NaviStudio3\DriveManager\System\navislink.html ()
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:[b]64bit:[/b] - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab (Reg Error: Key error.)
O16:[b]64bit:[/b] - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {0E15796F-7B3A-4FB3-BF69-7B11D20A4A62} https://azby.fmworld.net/register/entrance/UserReg.CAB (AzbyClub ユーザー登録用 コントロール)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0018-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3393CC9B-8EE3-4A2E-9B63-6340651373C3}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{64F2D18B-2AB4-4B6B-A937-E9B150FD3A94}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E229BC23-4127-489E-B145-28F9DE780FEB}: DhcpNameServer = 192.168.0.1
O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{04804795-45ad-11e1-b1af-001bdc0f7b10}\Shell - "" = AutoRun
O33 - MountPoints2\{04804795-45ad-11e1-b1af-001bdc0f7b10}\Shell\AutoRun\command - "" = H:\AutoRun.exe
O33 - MountPoints2\{0480479a-45ad-11e1-b1af-001bdc0f7b10}\Shell - "" = AutoRun
O33 - MountPoints2\{0480479a-45ad-11e1-b1af-001bdc0f7b10}\Shell\AutoRun\command - "" = H:\AutoRun.exe
O33 - MountPoints2\{3bb5edb1-0487-11e1-b01b-5c9ad8e76c24}\Shell - "" = AutoRun
O33 - MountPoints2\{3bb5edb1-0487-11e1-b01b-5c9ad8e76c24}\Shell\AutoRun\command - "" = F:\SNLoader.exe
O33 - MountPoints2\{3bb5ee11-0487-11e1-b01b-5c9ad8e76c24}\Shell - "" = AutoRun
O33 - MountPoints2\{3bb5ee11-0487-11e1-b01b-5c9ad8e76c24}\Shell\AutoRun\command - "" = F:\SNLoader.exe
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell - "" = AutoRun
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\AUTOMENU\COMMAND - "" = G:\winsoft\MENU.EXE
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\AutoRun\command - "" = G:\winsoft\AUTOCRD.exe
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\PUSHBUTTON\COMMAND - "" = G:\winsoft\AUTOCRD.EXE /pochi
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\UNLOCK\COMMAND - "" = G:\winsoft\Unlock.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/06/16 02:14:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCカルテ
[2015/06/16 02:09:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\アップデートナビ
[2015/06/16 01:21:07 | 000,000,000 | ---D | C] -- C:\windows\CheckSur
[2015/06/15 20:34:38 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\100CASIO
[2015/06/15 02:06:30 | 057,400,016 | ---- | C] (Microsoft Corporation) -- C:\Users\xxxxxx\Desktop\IE11-Windows6.1-x64-ja-jp.exe
[2015/06/15 01:40:53 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015/06/15 01:38:13 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Malwarebytes
[2015/06/15 01:38:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2015/06/15 01:38:09 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2015/06/15 01:38:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2015/06/15 01:36:57 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-1.75.0.1300.exe
[2015/06/14 00:08:06 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\backups
[2015/06/13 23:30:38 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Geek Uninstaller
[2015/06/13 23:09:21 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\geek
[2015/06/12 23:35:27 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\ログ1
[2015/06/12 22:18:36 | 000,000,000 | ---D | C] -- C:\BUFFALO
[2015/06/11 22:06:38 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\xxxxxx\Desktop\HijackThis.exe
[2015/06/11 03:39:31 | 000,000,000 | ---D | C] -- C:\FRST
[2015/06/11 03:38:50 | 002,108,928 | ---- | C] (Farbar) -- C:\Users\xxxxxx\Desktop\FRST64.exe
[2015/06/11 03:16:35 | 000,000,000 | ---D | C] -- C:\Avenger
[2015/06/11 02:19:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/06/11 02:12:06 | 021,546,080 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-2.1.6.1022.exe
[2015/06/11 02:09:19 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\xxxxxx\Desktop\OTL.exe
[2015/06/11 00:57:34 | 005,200,384 | ---- | C] (AVAST Software) -- C:\Users\xxxxxx\Desktop\aswmbr.exe
[2015/06/11 00:47:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/06/11 00:47:50 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/06/11 00:46:55 | 006,549,184 | ---- | C] (Piriform Ltd) -- C:\Users\xxxxxx\Desktop\ccsetup506.exe
[2015/06/10 23:45:19 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\comctl32.dll
[2015/06/10 23:45:18 | 014,635,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmp.dll
[2015/06/10 23:45:17 | 011,411,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmp.dll
[2015/06/10 23:45:15 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spwmp.dll
[2015/06/10 23:45:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spwmp.dll
[2015/06/10 23:45:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdxm.ocx
[2015/06/10 23:45:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxmasf.dll
[2015/06/10 23:45:14 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmploc.DLL
[2015/06/10 23:45:14 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmploc.DLL
[2015/06/10 23:45:14 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msdxm.ocx
[2015/06/10 23:45:14 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dxmasf.dll
[2015/06/10 23:43:30 | 002,343,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
[2015/06/10 23:43:30 | 000,718,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript.dll
[2015/06/10 23:43:30 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
[2015/06/10 23:43:30 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
[2015/06/10 23:43:29 | 000,453,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll
[2015/06/10 23:43:29 | 000,282,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll
[2015/06/10 23:43:29 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
[2015/06/10 23:43:29 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
[2015/06/10 23:43:28 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
[2015/06/10 23:43:25 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript.dll
[2015/06/10 23:43:23 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
[2015/06/10 23:43:23 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\url.dll
[2015/06/10 23:43:23 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshta.exe
[2015/06/10 23:43:22 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\html.iec
[2015/06/10 23:43:22 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe
[2015/06/10 23:43:22 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe
[2015/06/10 23:43:21 | 001,494,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
[2015/06/10 23:43:21 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
[2015/06/10 23:43:21 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\url.dll
[2015/06/10 23:43:19 | 000,367,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\html.iec
[2015/06/10 23:43:18 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeedssync.exe
[2015/06/10 23:43:18 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msfeedssync.exe
[2015/06/08 23:54:23 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\SUPERAntiSpyware.com
[2015/06/08 23:53:12 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2015/06/08 23:53:07 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2015/06/08 23:53:07 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2015/06/07 23:42:43 | 001,255,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diagtrack.dll
[2015/06/07 23:42:43 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll
[2015/06/07 23:42:42 | 005,569,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2015/06/07 23:42:42 | 003,989,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe
[2015/06/07 23:42:42 | 001,728,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll
[2015/06/07 23:42:42 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll
[2015/06/07 23:42:42 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll
[2015/06/07 23:42:42 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\advapi32.dll
[2015/06/07 23:42:42 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe
[2015/06/07 23:42:42 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64.dll
[2015/06/07 23:42:41 | 003,934,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe
[2015/06/07 23:42:41 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tdh.dll
[2015/06/07 23:42:41 | 000,635,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tdh.dll
[2015/06/07 23:42:41 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll
[2015/06/07 23:42:41 | 000,404,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tracerpt.exe
[2015/06/07 23:42:41 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tracerpt.exe
[2015/06/07 23:42:41 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll
[2015/06/07 23:42:41 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncrypt.dll
[2015/06/07 23:42:41 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe
[2015/06/07 23:42:41 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll
[2015/06/07 23:42:41 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspicli.dll
[2015/06/07 23:42:41 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sechost.dll
[2015/06/07 23:42:41 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\smss.exe
[2015/06/07 23:42:41 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\logman.exe
[2015/06/07 23:42:41 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\logman.exe
[2015/06/07 23:42:41 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\auditpol.exe
[2015/06/07 23:42:41 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srclient.dll
[2015/06/07 23:42:41 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\auditpol.exe
[2015/06/07 23:42:41 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\typeperf.exe
[2015/06/07 23:42:41 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\csrsrv.dll
[2015/06/07 23:42:41 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\relog.exe
[2015/06/07 23:42:41 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\typeperf.exe
[2015/06/07 23:42:41 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\relog.exe
[2015/06/07 23:42:41 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspisrv.dll
[2015/06/07 23:42:41 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secur32.dll
[2015/06/07 23:42:41 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setup16.exe
[2015/06/07 23:42:41 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diskperf.exe
[2015/06/07 23:42:41 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\diskperf.exe
[2015/06/07 23:42:41 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntvdm64.dll
[2015/06/07 23:42:41 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntvdm64.dll
[2015/06/07 23:42:41 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64cpu.dll
[2015/06/07 23:42:41 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wow32.dll
[2015/06/07 23:42:40 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2015/06/07 23:42:40 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2015/06/07 23:42:40 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2015/06/07 23:42:40 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2015/06/07 23:42:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\instnm.exe
[2015/06/07 23:42:39 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\apisetschema.dll
[2015/06/07 23:42:39 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\apisetschema.dll
[2015/06/07 23:42:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2015/06/07 23:42:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2015/06/07 23:42:39 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\user.exe
[2015/06/07 23:42:38 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\adtschema.dll
[2015/06/07 23:42:38 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\adtschema.dll
[2015/06/07 23:42:38 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msaudite.dll
[2015/06/07 23:42:38 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msaudite.dll
[2015/06/07 23:42:38 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msobjs.dll
[2015/06/07 23:42:38 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msobjs.dll
[2015/06/07 23:42:38 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UtcResources.dll
[2015/06/07 23:42:33 | 003,147,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wucltux.dll
  • tomoaki_2000tox
  • 2015/06/16 (Tue) 23:23:47
OTLのログ3
さらに続きです

[2015/06/07 23:42:33 | 000,696,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapi.dll
[2015/06/07 23:42:33 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapi.dll
[2015/06/07 23:42:33 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuwebv.dll
[2015/06/07 23:42:33 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuwebv.dll
[2015/06/07 23:42:33 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuauclt.exe
[2015/06/07 23:42:33 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wudriver.dll
[2015/06/07 23:42:33 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wudriver.dll
[2015/06/07 23:42:33 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSetupUI.dll
[2015/06/07 23:42:33 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups2.dll
[2015/06/07 23:42:33 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups.dll
[2015/06/07 23:42:33 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapp.exe
[2015/06/07 23:42:33 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapp.exe
[2015/06/07 23:42:33 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wups.dll
[2015/06/07 23:42:33 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wu.upgrade.ps.dll
[2015/06/07 23:40:28 | 000,069,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\stream.sys
[2015/06/07 23:38:04 | 000,078,936 | R--- | C] (Symantec Corporation) -- C:\windows\SysNative\drivers\SymIMV.sys
[2015/06/07 19:31:20 | 001,119,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
[2015/06/07 19:31:20 | 001,021,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\appraiser.dll
[2015/06/07 19:31:20 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\invagent.dll
[2015/06/07 19:31:20 | 000,700,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
[2015/06/07 19:31:20 | 000,423,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll
[2015/06/07 19:31:20 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll
[2015/06/07 19:31:20 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepic.dll
[2015/06/07 19:31:20 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\acmigration.dll
[2015/06/07 17:53:43 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Teegm
[2015/05/31 17:28:46 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Local\Downloaded Installations
[2015/05/31 08:19:04 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Roamaz
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/06/16 22:44:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\xxxxxx\Desktop\OTL.exe
[2015/06/16 22:44:03 | 000,024,400 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/06/16 22:44:03 | 000,024,400 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/06/16 22:43:00 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/06/16 22:37:19 | 001,313,238 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2015/06/16 22:37:19 | 000,654,480 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2015/06/16 22:37:19 | 000,411,428 | ---- | M] () -- C:\windows\SysNative\perfh011.dat
[2015/06/16 22:37:19 | 000,122,442 | ---- | M] () -- C:\windows\SysNative\perfc011.dat
[2015/06/16 22:37:19 | 000,122,352 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2015/06/16 22:32:18 | 000,018,200 | ---- | M] () -- C:\windows\SysNative\results.xml
[2015/06/16 22:31:58 | 000,000,686 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/06/16 22:30:16 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2015/06/16 22:29:44 | 2080,378,879 | -HS- | M] () -- C:\hiberfil.sys
[2015/06/16 01:58:48 | 000,000,134 | ---- | M] () -- C:\Users\xxxxxx\Desktop\Internet Explorer トラブルシューティング.url
[2015/06/16 01:27:00 | 000,000,690 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/06/16 01:13:04 | 057,400,016 | ---- | M] (Microsoft Corporation) -- C:\Users\xxxxxx\Desktop\IE11-Windows6.1-x64-ja-jp.exe
[2015/06/15 02:12:44 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerApp.exe
[2015/06/15 02:12:44 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
[2015/06/15 01:38:10 | 000,001,073 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/06/15 01:37:06 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-1.75.0.1300.exe
[2015/06/15 01:36:32 | 002,231,296 | ---- | M] () -- C:\Users\xxxxxx\Desktop\AdwCleaner.exe
[2015/06/15 01:26:43 | 000,001,287 | ---- | M] () -- C:\Users\Public\Desktop\Sleipnir.lnk
[2015/06/15 00:57:40 | 000,030,733 | ---- | M] () -- C:\Users\xxxxxx\Desktop\Sleipnir ブックマーク.html
[2015/06/12 23:37:34 | 000,204,800 | ---- | M] () -- C:\Users\xxxxxx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2015/06/11 22:06:41 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\xxxxxx\Desktop\HijackThis.exe
[2015/06/11 03:38:53 | 002,108,928 | ---- | M] (Farbar) -- C:\Users\xxxxxx\Desktop\FRST64.exe
[2015/06/11 03:20:53 | 000,617,440 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2015/06/11 02:18:55 | 021,546,080 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-2.1.6.1022.exe
[2015/06/11 00:57:35 | 005,200,384 | ---- | M] (AVAST Software) -- C:\Users\xxxxxx\Desktop\aswmbr.exe
[2015/06/11 00:46:56 | 006,549,184 | ---- | M] (Piriform Ltd) -- C:\Users\xxxxxx\Desktop\ccsetup506.exe
[2015/06/10 23:52:48 | 000,000,036 | ---- | M] () -- C:\Users\xxxxxx\AppData\Local\housecall.guid.cache
[2015/06/08 23:53:13 | 000,001,808 | ---- | M] () -- C:\Users\xxxxxx\Desktop\SUPERAntiSpyware Free Edition.lnk
[2015/06/08 23:49:56 | 000,007,605 | ---- | M] () -- C:\Users\xxxxxx\AppData\Local\Resmon.ResmonCfg
[2015/06/07 23:45:56 | 001,293,022 | ---- | M] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2015/06/02 03:51:58 | 000,000,040 | -HS- | M] () -- C:\ProgramData\.zreglib
[2015/06/02 03:31:10 | 000,001,890 | -HS- | M] () -- C:\ProgramData\KGyGaAvL.sys
[2015/05/31 09:50:00 | 000,448,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\html.iec
[2015/05/31 09:48:14 | 002,343,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
[2015/05/31 09:41:33 | 001,494,016 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
[2015/05/31 09:41:20 | 000,237,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\url.dll
[2015/05/31 09:41:17 | 000,599,040 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
[2015/05/31 09:41:08 | 000,816,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript.dll
[2015/05/31 09:41:04 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe
[2015/05/31 09:41:03 | 000,729,088 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
[2015/05/31 09:40:48 | 000,453,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll
[2015/05/31 09:40:44 | 000,282,112 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll
[2015/05/31 09:40:37 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
[2015/05/31 09:40:33 | 000,248,320 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
[2015/05/31 09:40:33 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msfeedssync.exe
[2015/05/31 09:40:18 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mshta.exe
[2015/05/31 08:54:04 | 000,367,616 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\html.iec
[2015/05/31 08:49:08 | 001,427,968 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
[2015/05/31 08:49:04 | 000,718,336 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\jscript.dll
[2015/05/31 08:48:44 | 000,231,936 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\url.dll
[2015/05/31 08:48:29 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe
[2015/05/31 08:47:59 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
[2015/05/31 08:47:55 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msfeedssync.exe
[2015/05/31 08:47:49 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
[2015/05/26 03:24:00 | 005,569,984 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2015/05/26 03:21:21 | 001,728,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll
[2015/05/26 03:19:27 | 000,362,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll
[2015/05/26 03:19:27 | 000,243,712 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wow64.dll
[2015/05/26 03:19:27 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wow64cpu.dll
[2015/05/26 03:19:26 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll
[2015/05/26 03:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\diagtrack.dll
[2015/05/26 03:19:10 | 000,879,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\tdh.dll
[2015/05/26 03:19:10 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sspicli.dll
[2015/05/26 03:19:10 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sspisrv.dll
[2015/05/26 03:19:09 | 000,503,808 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll
[2015/05/26 03:19:09 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sechost.dll
[2015/05/26 03:19:09 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srclient.dll
[2015/05/26 03:19:09 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\secur32.dll
[2015/05/26 03:19:04 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ncrypt.dll
[2015/05/26 03:19:04 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ntvdm64.dll
[2015/05/26 03:19:02 | 001,461,760 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll
[2015/05/26 03:19:02 | 001,162,752 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll
[2015/05/26 03:19:02 | 000,424,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll
[2015/05/26 03:18:56 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\csrsrv.dll
[2015/05/26 03:18:54 | 000,879,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\advapi32.dll
[2015/05/26 03:18:45 | 000,404,992 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\tracerpt.exe
[2015/05/26 03:18:45 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\typeperf.exe
[2015/05/26 03:18:39 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\smss.exe
[2015/05/26 03:18:32 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe
[2015/05/26 03:18:30 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\relog.exe
[2015/05/26 03:18:19 | 000,104,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\logman.exe
[2015/05/26 03:18:11 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\diskperf.exe
[2015/05/26 03:18:08 | 000,338,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe
[2015/05/26 03:18:04 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\auditpol.exe
[2015/05/26 03:14:26 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msobjs.dll
[2015/05/26 03:14:04 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msaudite.dll
[2015/05/26 03:11:40 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\apisetschema.dll
[2015/05/26 03:11:40 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2015/05/26 03:11:39 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2015/05/26 03:11:38 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\adtschema.dll
[2015/05/26 03:07:34 | 003,989,440 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe
[2015/05/26 03:07:34 | 003,934,144 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe
[2015/05/26 03:01:42 | 000,635,392 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\tdh.dll
[2015/05/26 03:01:35 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ntvdm64.dll
[2015/05/26 03:00:44 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\typeperf.exe
[2015/05/26 03:00:40 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\tracerpt.exe
[2015/05/26 03:00:28 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\setup16.exe
[2015/05/26 03:00:25 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\relog.exe
[2015/05/26 03:00:17 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\logman.exe
[2015/05/26 03:00:09 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\diskperf.exe
[2015/05/26 03:00:04 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\auditpol.exe
[2015/05/26 02:59:52 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wow32.dll
[2015/05/26 02:57:31 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msobjs.dll
[2015/05/26 02:57:15 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msaudite.dll
[2015/05/26 02:55:18 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\apisetschema.dll
[2015/05/26 02:55:18 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2015/05/26 02:55:17 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\adtschema.dll
[2015/05/26 02:00:56 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\UtcResources.dll
[2015/05/26 01:50:38 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\instnm.exe
[2015/05/26 01:50:36 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\user.exe
[2015/05/26 01:48:25 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2015/05/26 01:48:25 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2015/05/26 01:48:25 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2015/05/26 01:48:25 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2015/05/23 03:18:41 | 000,700,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
[2015/05/23 03:18:29 | 000,757,248 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\invagent.dll
[2015/05/23 03:18:24 | 000,423,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll
[2015/05/23 03:18:22 | 001,021,440 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\appraiser.dll
[2015/05/23 03:18:21 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll
[2015/05/23 03:18:21 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\acmigration.dll
[2015/05/23 03:13:03 | 001,119,232 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
[2015/05/21 22:19:52 | 000,193,536 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aepic.dll
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/06/15 02:21:04 | 000,000,134 | ---- | C] () -- C:\Users\xxxxxx\Desktop\Internet Explorer トラブルシューティング.url
[2015/06/15 01:38:10 | 000,001,073 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/06/15 01:36:29 | 002,231,296 | ---- | C] () -- C:\Users\xxxxxx\Desktop\AdwCleaner.exe
[2015/06/15 01:26:43 | 000,001,287 | ---- | C] () -- C:\Users\Public\Desktop\Sleipnir.lnk
[2015/06/15 00:57:40 | 000,030,733 | ---- | C] () -- C:\Users\xxxxxx\Desktop\Sleipnir ブックマーク.html
[2015/06/10 23:52:48 | 000,000,036 | ---- | C] () -- C:\Users\xxxxxx\AppData\Local\housecall.guid.cache
[2015/06/08 23:53:13 | 000,001,808 | ---- | C] () -- C:\Users\xxxxxx\Desktop\SUPERAntiSpyware Free Edition.lnk
[2014/09/21 16:53:08 | 000,007,605 | ---- | C] () -- C:\Users\xxxxxx\AppData\Local\Resmon.ResmonCfg
[2014/04/24 00:58:19 | 002,261,050 | ---- | C] () -- C:\Users\xxxxxx\Scan_4月-24-2014-12-58-13-692-AM.png
[2014/01/31 02:36:37 | 001,293,022 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2013/11/16 19:26:20 | 000,210,192 | ---- | C] () -- C:\windows\SysWow64\IVIresizeW7.dll
[2013/11/16 19:26:20 | 000,206,096 | ---- | C] () -- C:\windows\SysWow64\IVIresizeA6.dll
[2013/11/16 19:26:20 | 000,197,904 | ---- | C] () -- C:\windows\SysWow64\IVIresizeP6.dll
[2013/11/16 19:26:20 | 000,197,904 | ---- | C] () -- C:\windows\SysWow64\IVIresizeM6.dll
[2013/11/16 19:26:20 | 000,193,808 | ---- | C] () -- C:\windows\SysWow64\IVIresizePX.dll
[2013/11/16 19:26:20 | 000,025,872 | ---- | C] () -- C:\windows\SysWow64\IVIresize.dll
[2011/11/08 00:52:17 | 000,204,800 | ---- | C] () -- C:\Users\xxxxxx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/02 22:34:05 | 000,000,040 | -HS- | C] () -- C:\ProgramData\.zreglib
[2011/11/02 01:19:14 | 000,001,890 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2010/02/21 17:28:02 | 000,001,179 | R--- | C] () -- C:\Users\xxxxxx\AppData\Local\事務.lnk

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 14:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 14:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 12:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/06/16 22:43:00 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/06/16 22:31:58 | 000,000,686 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/06/16 01:27:00 | 000,000,690 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: WDC WD7500BPVT-16HXZT2
Partitions: 4
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 20.00GB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 200.00MB
Starting Offset: 21475885056
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 338.00GB
Starting Offset: 21685600256
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 340.00GB
Starting Offset: 384610336768
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2015/03/04 13:41:26 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2013/02/27 14:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2015/05/26 03:18:19 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:56 | 000,187,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2015/02/03 12:12:14 | 000,143,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/21 12:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 13:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2012/02/11 15:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2015/05/26 03:18:19 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2015/05/26 03:18:19 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/21 12:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/21 12:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/19 12:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/21 12:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/21 12:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2015/05/09 12:27:37 | 002,589,184 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

[color=#A23BEC]< >[/color]

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 112 bytes -> C:\ProgramData\Temp:D1B5B4F1

< End of report >
  • tomoaki_2000tox
  • 2015/06/16 (Tue) 23:31:11
Extraのログの確認も
レスが遅くなってすみません。
OTLスキャンログを見せていただきました。
ここでちょっと確認ですが、OTLスキャン後にExtra.txtのログは出ませんでしたか?
一応これも検索して、見つかればそのログ内容を追加で見せてください。
探しても見つからないときはそのことだけ教えてください
  • 悪代官
  • 2015/06/17 (Wed) 21:57:50
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
みあたらなかったのでもう一度スキャンしました。
extra.txtも作成されました。

OTLのログ
OTL logfile created on: 2015/06/18 6:03:48 - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\xxxxxx\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.92 Gb Total Physical Memory | 4.79 Gb Available Physical Memory | 60.49% Memory free
15.83 Gb Paging File | 12.56 Gb Available in Paging File | 79.31% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 338.00 Gb Total Space | 182.23 Gb Free Space | 53.91% Space Free | Partition Type: NTFS
Drive D: | 340.44 Gb Total Space | 242.22 Gb Free Space | 71.15% Space Free | Partition Type: NTFS

Computer Name: MOONLIGHT | User Name: xxxxxx | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - File not found --
PRC - [2015/06/16 22:44:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\xxxxxx\Desktop\OTL.exe
PRC - [2015/04/20 13:32:20 | 000,787,992 | ---- | M] (Fenrir Inc.) -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe
PRC - [2015/04/20 13:32:20 | 000,439,320 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
PRC - [2015/03/07 15:29:03 | 000,265,000 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\n360.exe
PRC - [2014/12/15 23:23:26 | 000,487,960 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
PRC - [2014/12/15 23:19:36 | 002,728,472 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
PRC - [2014/04/08 09:13:18 | 000,069,120 | ---- | M] () -- C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
PRC - [2014/01/16 10:34:08 | 000,495,248 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
PRC - [2013/11/08 11:01:10 | 001,785,344 | ---- | M] (DELL Inc.) -- C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe
PRC - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2013/04/04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2013/03/29 18:33:54 | 001,945,700 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
PRC - [2013/02/13 11:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2012/03/30 02:31:26 | 000,251,760 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe
PRC - [2012/02/16 14:44:10 | 000,053,296 | ---- | M] (DigiOn, Inc.) -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe
PRC - [2011/09/27 10:54:58 | 000,243,056 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\F-LINK\FlinkService.exe
PRC - [2011/05/09 13:03:34 | 014,321,496 | ---- | M] (PointGrab LTD) -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe
PRC - [2011/02/16 11:03:04 | 000,065,536 | ---- | M] () -- C:\Program Files\Softex\OmniPass\Hook\OpHook32BitProcess.exe
PRC - [2011/02/09 17:49:14 | 000,142,696 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
PRC - [2011/02/09 17:49:14 | 000,062,824 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe
PRC - [2011/01/27 20:32:20 | 000,030,064 | ---- | M] () -- c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
PRC - [2011/01/21 01:28:00 | 000,207,736 | ---- | M] (I-O DATA DEVICE, INC.) -- C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe
PRC - [2011/01/15 16:48:44 | 000,452,016 | ---- | M] (CANON INC.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
PRC - [2011/01/11 18:35:40 | 000,087,336 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe
PRC - [2010/12/20 18:30:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010/12/20 18:30:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010/11/17 09:53:16 | 000,113,288 | ---- | M] (Renesas Electronics Corporation) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
PRC - [2010/09/29 18:05:32 | 000,048,752 | ---- | M] (FUJITSU LIMITED) -- C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe
PRC - [2010/09/27 11:43:20 | 000,068,944 | ---- | M] (DigiOn) -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe
PRC - [2010/07/28 09:27:18 | 001,386,280 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
PRC - [2010/05/20 16:15:00 | 000,110,736 | R--- | M] (InterVideo) -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
PRC - [2010/03/23 13:38:40 | 000,391,088 | ---- | M] (PIONEER CORPORATION) -- C:\Program Files (x86)\pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe
PRC - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
PRC - [2009/10/09 13:48:08 | 000,297,520 | ---- | M] (I-O DATA DEVICE, INC.) -- C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
PRC - [2009/10/08 20:13:58 | 000,451,920 | ---- | M] (DigiOn, Inc.) -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe
PRC - [2009/10/03 23:39:04 | 000,581,636 | ---- | M] (ArcSoft) -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\TrArc\arcsys.exe
PRC - [2009/08/13 06:06:00 | 000,662,016 | ---- | M] (Sonix) -- C:\Windows\vsnp2uvc.exe
PRC - [2009/07/21 17:25:42 | 000,541,976 | ---- | M] (PIXELA CORPORATION) -- D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
PRC - [2009/07/20 04:00:00 | 000,081,920 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
PRC - [2009/07/02 20:09:24 | 000,107,792 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe
PRC - [2009/05/15 19:37:00 | 000,206,128 | R--- | M] (BUFFALO INC.) -- C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
PRC - [2009/03/24 12:00:00 | 000,058,664 | ---- | M] (株式会社ジャストシステム) -- C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe
PRC - [2007/06/15 12:59:58 | 000,145,504 | ---- | M] (B.H.A Corporation) -- D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2015/06/15 01:26:56 | 001,842,200 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\extension\SuperDragExtension.fx
MOD - [2015/06/15 01:26:56 | 001,163,776 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\panel\HeadlineFeedPanel.fx
MOD - [2015/06/15 01:26:56 | 000,786,968 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\dock\headlinearticledock.fx
MOD - [2015/06/15 01:26:56 | 000,372,760 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\plugins\dock\headlinetooldock.fx
MOD - [2015/06/15 01:26:54 | 006,675,480 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\SmartSearch.fx
MOD - [2015/06/15 01:26:54 | 001,583,640 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\RecoveryManagerExtension.fx
MOD - [2015/06/15 01:26:54 | 001,554,968 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\PassConnectExtension.fx
MOD - [2015/06/15 01:26:54 | 000,755,224 | ---- | M] () -- C:\Users\xxxxxx\AppData\Roaming\Fenrir Inc\Sleipnir\~temp\bin\SnapCrabToolbar.fx
MOD - [2015/05/17 03:00:16 | 000,212,992 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\716ee14dc9aafde2b5f7f387d842661d\System.ServiceProcess.ni.dll
MOD - [2015/05/17 03:00:01 | 014,340,096 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\ea543310204d0addfaf9792d820e958d\PresentationFramework.ni.dll
MOD - [2015/05/17 02:59:52 | 012,438,016 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6949c4470a81970ec3de0a575d93babc\System.Windows.Forms.ni.dll
MOD - [2015/05/17 02:59:47 | 001,593,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5a401fd2a7689ff13fb54182953f9c40\System.Drawing.ni.dll
MOD - [2015/05/17 02:59:45 | 000,978,432 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\007fc007edc388d9806dff94ee04f129\System.Configuration.ni.dll
MOD - [2015/05/17 02:59:43 | 012,254,208 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\ef204c8310562595a0518e356fb15387\PresentationCore.ni.dll
MOD - [2015/05/17 02:59:13 | 012,897,280 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\a0b4e6b92d9c147d801a6f2e3a15080b\System.Windows.Forms.ni.dll
MOD - [2015/05/17 02:59:07 | 000,967,680 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\908075c4922acdf834c67ac802814c9d\System.Configuration.ni.dll
MOD - [2015/05/17 02:56:41 | 003,348,480 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1c3513960037508558358652f2d202a1\WindowsBase.ni.dll
MOD - [2015/05/17 02:55:52 | 000,368,128 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\b3eb55fa5864a2fc7accbbbbe7fa7246\PresentationFramework.Aero.ni.dll
MOD - [2015/05/17 00:05:02 | 010,069,504 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System\d18e2115a3270f89663fce831547f534\System.ni.dll
MOD - [2015/05/17 00:03:43 | 000,798,720 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Runt73a1fc9d#\f504b5348a87122eeabdec67d806148b\System.Runtime.Remoting.ni.dll
MOD - [2015/05/10 16:47:56 | 001,642,496 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\dd2f9ea99ac0f984b9dc430824638c9f\System.Drawing.ni.dll
MOD - [2015/05/10 16:47:35 | 007,793,664 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\System.Xml\3d6ee4ffbd9a86ac1e7b01800b6fe9c7\System.Xml.ni.dll
MOD - [2015/05/10 16:46:21 | 017,207,296 | ---- | M] () -- C:\windows\assembly\NativeImages_v4.0.30319_32\mscorlib\d1265d6159ea876f9d63ea4c1361b587\mscorlib.ni.dll
MOD - [2015/04/20 13:32:22 | 001,018,392 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Supplement.fx
MOD - [2015/04/20 13:32:20 | 009,370,136 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Core.fx
MOD - [2015/04/20 13:32:20 | 000,969,240 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\FenrirLib.fx
MOD - [2015/04/20 13:32:20 | 000,439,320 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
MOD - [2015/04/20 13:32:20 | 000,237,592 | ---- | M] () -- C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\ipc.fx
MOD - [2014/10/18 23:42:48 | 005,467,648 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
MOD - [2014/10/18 23:42:22 | 007,991,808 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
MOD - [2014/09/12 23:01:47 | 011,497,984 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
MOD - [2014/04/08 09:13:18 | 000,069,120 | ---- | M] () -- C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
MOD - [2014/04/08 09:08:24 | 000,112,128 | ---- | M] () -- C:\Program Files (x86)\Canon\ImageBrowser EX\MFMFileSystemWatcher.dll
MOD - [2013/02/13 11:38:06 | 000,100,688 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2013/02/13 11:37:16 | 001,263,952 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
MOD - [2011/05/09 13:03:46 | 000,028,504 | ---- | M] () -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\WebCamCtrl.dll
MOD - [2011/05/09 13:03:08 | 000,066,920 | ---- | M] () -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\AxInterop.WMPLib.dll
MOD - [2011/02/16 11:03:04 | 000,065,536 | ---- | M] () -- C:\Program Files\Softex\OmniPass\Hook\OpHook32BitProcess.exe
MOD - [2011/02/16 10:08:02 | 000,061,440 | ---- | M] () -- C:\Program Files\Softex\OmniPass\Hook\scuredll.dll
MOD - [2010/11/13 08:18:15 | 000,466,944 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_ja_b77a5c561934e089\System.Windows.Forms.resources.dll
MOD - [2010/11/13 08:18:15 | 000,348,160 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_ja_b77a5c561934e089\mscorlib.resources.dll
MOD - [2010/09/14 16:29:20 | 000,157,480 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\Hook.dll
MOD - [2010/07/28 09:27:18 | 001,386,280 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
MOD - [2009/11/25 13:45:36 | 001,193,768 | ---- | M] () -- C:\Program Files (x86)\BUFFALO\BSMLW06\XWheel.dll
MOD - [2009/07/20 04:00:00 | 000,081,920 | ---- | M] () -- C:\Program Files\SetPoint\x86\SetPoint32.exe
MOD - [2009/07/07 19:12:34 | 000,024,576 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_playlist.dll
MOD - [2009/07/02 20:09:24 | 000,020,480 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_crawler.dll
MOD - [2009/06/19 15:50:40 | 000,131,072 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_msd.dll
MOD - [2009/06/18 17:58:04 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_crawler_fs.dll
MOD - [2009/06/12 00:07:58 | 000,167,936 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_av.dll
MOD - [2009/06/12 00:07:58 | 000,159,744 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_util.dll
MOD - [2009/06/12 00:07:58 | 000,159,744 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_upnp.dll
MOD - [2009/06/12 00:07:58 | 000,053,248 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_media.dll
MOD - [2009/06/12 00:07:58 | 000,049,152 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_access_control.dll
MOD - [2009/06/12 00:07:58 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_char_util.dll
MOD - [2009/06/12 00:07:58 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_metadata.dll
MOD - [2009/06/12 00:07:58 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_device_manager.dll
MOD - [2009/06/12 00:07:58 | 000,024,576 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\dixim_printer.dll
MOD - [2009/04/30 17:24:42 | 000,937,984 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\libxml2.dll
MOD - [2009/04/30 17:24:42 | 000,499,246 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\sqlite3.dll
MOD - [2009/04/30 17:24:42 | 000,180,224 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\uchardet.dll
MOD - [2008/08/20 18:03:38 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\scew.dll
MOD - [2008/05/13 19:47:28 | 001,443,212 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\iconv.dll
MOD - [2008/05/13 19:47:28 | 000,151,552 | ---- | M] () -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\libexpat.dll
MOD - [2004/09/09 17:13:00 | 000,364,544 | ---- | M] () -- D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\pxl_m17n_tool.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/05/26 03:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
SRV:[b]64bit:[/b] - [2014/07/23 08:31:23 | 000,172,344 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore64.exe -- (!SASCORE)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2012/10/23 16:42:28 | 000,035,256 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe -- (SKARUTE)
SRV:[b]64bit:[/b] - [2011/12/01 10:04:56 | 000,289,952 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe -- (SpfService)
SRV:[b]64bit:[/b] - [2011/06/28 18:44:06 | 000,014,336 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\chitose\updnvsrv.exe -- (UpdateNaviInstallService)
SRV:[b]64bit:[/b] - [2011/03/30 07:56:20 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:[b]64bit:[/b] - [2011/03/30 07:43:42 | 000,340,240 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV:[b]64bit:[/b] - [2011/03/30 07:40:30 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:[b]64bit:[/b] - [2011/02/16 22:21:36 | 000,073,328 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe -- (FUJ02E3Service)
SRV:[b]64bit:[/b] - [2011/02/16 11:13:10 | 000,042,496 | ---- | M] (Softex Inc.) [Auto | Running] -- C:\Program Files\Softex\OmniPass\OmniServ.exe -- (omniserv)
SRV:[b]64bit:[/b] - [2011/01/14 11:55:28 | 000,216,688 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe -- (PUSCSRVC)
SRV:[b]64bit:[/b] - [2010/12/27 13:58:24 | 000,331,776 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe -- (PFNService)
SRV:[b]64bit:[/b] - [2010/09/22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV:[b]64bit:[/b] - [2010/06/17 15:47:12 | 000,063,336 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files\Fujitsu\PSUtility\PSUService.exe -- (PowerSavingUtilityService)
SRV:[b]64bit:[/b] - [2010/06/02 18:05:42 | 002,734,400 | ---- | M] (AuthenTec, Inc.) [Auto | Running] -- C:\Program Files\Fingerprint Sensor\ATService.exe -- (ATService)
SRV:[b]64bit:[/b] - [2010/02/10 17:50:50 | 000,072,296 | ---- | M] (O2Micro International) [Auto | Running] -- C:\Windows\SysNative\drivers\o2flash.exe -- (O2FLASH)
SRV - [2015/06/15 02:12:45 | 000,268,976 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/03/07 15:29:03 | 000,265,000 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe -- (N360)
SRV - [2014/12/15 23:23:26 | 000,487,960 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
SRV - [2014/04/11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2014/01/16 10:34:08 | 000,495,248 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe -- (SOHDms)
SRV - [2013/12/03 10:56:50 | 000,079,000 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -- (SOHDs)
SRV - [2013/11/11 08:34:28 | 000,016,176 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe -- (WysePocketCloud)
SRV - [2013/11/08 11:01:10 | 001,785,344 | ---- | M] (DELL Inc.) [Auto | Running] -- C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe -- (WyseRemoteAccess)
SRV - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012/03/30 02:31:26 | 000,251,760 | R--- | M] (BUFFALO INC.) [Auto | Running] -- C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe -- (NasPmService)
SRV - [2012/02/16 14:44:10 | 000,053,296 | ---- | M] (DigiOn, Inc.) [Auto | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe -- (DiXiM Digital TV Service(21)
SRV - [2011/09/27 10:54:58 | 000,243,056 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files (x86)\Fujitsu\F-LINK\FlinkService.exe -- (FlinkService)
SRV - [2011/05/09 13:03:30 | 000,053,080 | ---- | M] (PointGrab LTD) [Auto | Running] -- C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe -- (PGService)
SRV - [2011/02/09 17:49:14 | 000,062,824 | ---- | M] (FUJITSU LIMITED) [Auto | Running] -- C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe -- (FjDstService)
SRV - [2011/01/27 20:32:20 | 000,030,064 | ---- | M] () [Auto | Running] -- c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe -- (UDSS)
SRV - [2011/01/21 01:28:00 | 000,207,736 | ---- | M] (I-O DATA DEVICE, INC.) [Auto | Running] -- C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe -- (IoDevMgrService)
SRV - [2011/01/11 18:35:40 | 000,087,336 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe -- (CLHNService3)
SRV - [2010/12/20 18:30:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010/12/20 18:30:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2010/09/27 11:43:20 | 000,068,944 | ---- | M] (DigiOn) [Auto | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe -- (DMRService plus)
SRV - [2010/05/20 16:15:00 | 000,110,736 | R--- | M] (InterVideo) [Auto | Running] -- C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
SRV - [2010/03/23 13:38:40 | 000,391,088 | ---- | M] (PIONEER CORPORATION) [Auto | Running] -- C:\Program Files (x86)\pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe -- (NaviStudioSvc)
SRV - [2010/03/10 14:26:48 | 000,189,728 | ---- | M] (Protexis Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2009/10/07 01:30:08 | 000,120,168 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe -- (PACSPTISVR)
SRV - [2009/07/02 20:09:24 | 000,107,792 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe -- (NetworkPlayer Server)
SRV - [2009/03/24 12:00:00 | 000,058,664 | ---- | M] (株式会社ジャストシステム) [Auto | Running] -- C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe -- (BeatJamVideoService)
SRV - [2007/09/28 16:06:42 | 000,168,296 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe -- (TOSHIBA Bluetooth Service)
SRV - [2007/06/15 12:59:58 | 000,145,504 | ---- | M] (B.H.A Corporation) [Auto | Running] -- D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe -- (bgsvclib)
  • tomoaki_2000tox
  • 2015/06/18 (Thu) 06:42:24
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2014/08/26 11:20:22 | 000,876,248 | ---- | M] (Symantec Corporation) [File_System | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\srtsp64.sys -- (SRTSP)
DRV:[b]64bit:[/b] - [2014/08/26 11:20:22 | 000,037,592 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\srtspx64.sys -- (SRTSPX)
DRV:[b]64bit:[/b] - [2014/08/07 04:48:16 | 000,266,968 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\ironx64.sys -- (SymIRON)
DRV:[b]64bit:[/b] - [2014/03/04 13:18:12 | 001,148,120 | ---- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\symefa64.sys -- (SymEFA)
DRV:[b]64bit:[/b] - [2014/02/18 10:32:41 | 000,593,112 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\symnets.sys -- (SymNetS)
DRV:[b]64bit:[/b] - [2013/11/20 00:57:37 | 000,177,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:[b]64bit:[/b] - [2013/10/02 11:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/09/26 11:50:25 | 000,162,392 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\ccsetx64.sys -- (ccSet_N360)
DRV:[b]64bit:[/b] - [2013/09/10 11:47:43 | 000,078,936 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\SymIMV.sys -- (SymIM)
DRV:[b]64bit:[/b] - [2013/09/10 11:47:26 | 000,493,656 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\N360x64\1507000.00B\symds64.sys -- (SymDS)
DRV:[b]64bit:[/b] - [2013/04/04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2013/02/12 13:12:06 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:[b]64bit:[/b] - [2012/08/23 23:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2012/08/23 23:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/10/21 09:30:02 | 012,310,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2011/08/23 05:12:56 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2011/07/23 01:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:[b]64bit:[/b] - [2011/07/13 06:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:[b]64bit:[/b] - [2011/05/05 13:51:24 | 000,084,840 | ---- | M] (O2Micro ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\o2sdjw7x64.sys -- (O2SDJRDR)
DRV:[b]64bit:[/b] - [2011/03/16 16:15:58 | 008,590,336 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011/03/04 23:49:52 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:[b]64bit:[/b] - [2011/01/12 17:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2011/01/04 11:29:00 | 000,031,744 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\androidusb.sys -- (androidusb)
DRV:[b]64bit:[/b] - [2011/01/03 14:19:56 | 000,074,984 | ---- | M] (O2Micro ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\O2MDRw7x64.sys -- (O2MDRRDR)
DRV:[b]64bit:[/b] - [2011/01/03 12:04:44 | 000,072,808 | ---- | M] (O2Micro ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\o2mdfw7x64.sys -- (O2MDFRDR)
DRV:[b]64bit:[/b] - [2010/12/29 03:45:54 | 000,412,776 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2010/12/10 13:50:36 | 000,181,248 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:[b]64bit:[/b] - [2010/12/10 13:50:36 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:[b]64bit:[/b] - [2010/12/01 05:02:22 | 000,042,392 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WDKMD.sys -- (wdkmd)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/10/19 16:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2010/10/09 05:35:38 | 001,801,216 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:[b]64bit:[/b] - [2010/06/02 18:27:04 | 000,770,152 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ATSwpWDF.sys -- (ATSwpWDF)
DRV:[b]64bit:[/b] - [2010/03/19 03:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2009/11/19 21:45:08 | 000,299,568 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/08 15:55:10 | 000,018,704 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\diximdd.sys -- (DiximDd)
DRV:[b]64bit:[/b] - [2009/06/24 14:31:30 | 000,021,104 | ---- | M] (FUJITSU LIMITED) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\FBIOSDRV.sys -- (FBIOSDRV)
DRV:[b]64bit:[/b] - [2009/06/11 05:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009/04/29 16:28:30 | 000,030,208 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\KMWDFILTER.sys -- (KMWDFILTER)
DRV:[b]64bit:[/b] - [2008/12/11 14:10:40 | 000,018,456 | ---- | M] (Texim Corporation) [Kernel | System | Running] -- C:\windows\SysNative\drivers\TxDevCmd.sys -- (TxDevCmd)
DRV:[b]64bit:[/b] - [2008/03/25 16:24:44 | 000,165,760 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfbd.sys -- (tosrfbd)
DRV:[b]64bit:[/b] - [2008/03/25 13:54:26 | 000,049,152 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tosporte.sys -- (tosporte)
DRV:[b]64bit:[/b] - [2008/03/19 11:38:46 | 000,088,192 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Tosrfhid.sys -- (Tosrfhid)
DRV:[b]64bit:[/b] - [2008/01/22 20:58:12 | 000,056,320 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TosRfSnd.sys -- (TosRfSnd)
DRV:[b]64bit:[/b] - [2007/11/29 09:45:58 | 000,044,800 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfbnp.sys -- (tosrfbnp)
DRV:[b]64bit:[/b] - [2007/10/18 14:25:00 | 000,051,328 | ---- | M] (TOSHIBA CORPORATION) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfusb.sys -- (Tosrfusb)
DRV:[b]64bit:[/b] - [2007/10/02 11:43:08 | 000,076,160 | ---- | M] (TOSHIBA Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\tosrfcom.sys -- (Tosrfcom)
DRV:[b]64bit:[/b] - [2007/06/01 12:04:51 | 000,109,256 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AnyDVD.sys -- (AnyDVD)
DRV:[b]64bit:[/b] - [2007/04/17 11:51:50 | 000,014,112 | ---- | M] (InterVideo) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\regi.sys -- (regi)
DRV:[b]64bit:[/b] - [2007/03/01 05:52:00 | 000,017,616 | ---- | M] (Elaborate Bytes AG) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV:[b]64bit:[/b] - [2006/11/01 19:59:24 | 000,007,296 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\fuj02e3.sys -- (FUJ02E3)
DRV:[b]64bit:[/b] - [2006/11/01 19:20:28 | 000,007,808 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\fuj02b1.sys -- (FUJ02B1)
DRV:[b]64bit:[/b] - [2005/07/13 06:43:00 | 000,028,160 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tosrfnds.sys -- (tosrfnds)
DRV - [2015/06/02 02:41:49 | 000,684,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\IPSDefs\20150612.001\IDSviA64.sys -- (IDSVia64)
DRV - [2015/06/02 02:41:16 | 000,489,776 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2015/06/02 02:41:16 | 000,145,200 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2015/05/22 00:44:33 | 001,640,152 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\BASHDefs\20150602.001\BHDrvx64.sys -- (BHDrvx64)
DRV - [2015/01/22 01:04:55 | 002,137,304 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150615.033\ex64.sys -- (NAVEX15)
DRV - [2015/01/22 01:04:54 | 000,129,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton 360\NortonData\21.1.0.18\Definitions\VirusDefs\20150615.033\eng64.sys -- (NAVENG)
DRV - [2011/12/14 15:27:34 | 000,186,944 | ---- | M] () [Kernel | System | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\TrArc\TRArcsyC21.sd -- (TRArcsyC21)
DRV - [2011/12/14 15:27:34 | 000,186,944 | ---- | M] () [Kernel | System | Running] -- C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\TrArc\TRArcsyA21.sd -- (TRArcsyA21)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2007/06/01 12:04:51 | 000,109,256 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2005/01/02 10:07:05 | 000,009,728 | ---- | M] (Elaborate Bytes AG) [Kernel | Auto | Running] -- C:\Windows\SysWOW64\drivers\ElbyCDIO.sys -- (ElbyCDIO)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}: "URL" = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}: "URL" = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}: "URL" = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}: "URL" = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}: "URL" = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
IE - HKLM\..\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}: "URL" = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
IE - HKLM\..\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}: "URL" = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
IE - HKLM\..\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}: "URL" = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://azby.fmworld.net/?ref=201105
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.co.jp/
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?FORM=BDT3DF&PC=BDT3&dt=062613&q={searchTerms}&src=IE-SearchBox
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\SearchScopes\DA74EF2F3D6C457EA242B5F26FA31B6F: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7FTJB_jaJP456
IE - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll ()
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF - HKCU\Software\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.1.0.18\coFFPlgn\ [2015/06/16 22:30:53 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012/12/02 21:57:52 | 000,000,000 | ---D | M]


[color=#E56717]========== Chrome ==========[/color]

CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.12_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.21_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0\

O1 HOSTS File: ([2009/06/11 06:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coieplg.dll (Symantec Corporation)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll File not found
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Canon Easy-WebPrint EX BHO) - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\ips\ipsbho.dll (Symantec Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coieplg.dll (Symantec Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Canon Easy-WebPrint EX) - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coieplg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
O3:[b]64bit:[/b] - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coieplg.dll (Symantec Corporation)
O3 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coieplg.dll (Symantec Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [ATSwpNav] C:\Program Files\Fingerprint Sensor\ATSwpNav.exe (AuthenTec, Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [FDM7] C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [FJBATAID2] C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [FJUPDNV_Chitose] C:\Program Files\Fujitsu\chitose\updatenv.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IntelPAN] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadFUJ02E3] C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [LoadPUSCDaemon] C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [OmniPass] C:\Program Files\Softex\OmniPass\scureapp.exe (Softex Inc.)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [PfNet] C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [PUSCKAPLEXE] C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe (FUJITSU LIMITED)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
O4 - HKLM..\Run: [BSMLW06] C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe ()
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [FJDust] C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.)
O4 - HKLM..\Run: [IndicatorUtility] C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [IoSecShadow] C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe (I-O DATA DEVICE, INC.)
O4 - HKLM..\Run: [NetworkPlayerServerHelper] C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe (DigiOn, Inc.)
O4 - HKLM..\Run: [NUSB3MON] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Renesas Electronics Corporation)
O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Sony Corporation)
O4 - HKLM..\Run: [snp2uvc] C:\Windows\vsnp2uvc.exe (Sonix)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Bgcall.lnk = C:\Program Files (x86)\Bgcall\Bgcall.exe ()
O4 - Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BUFFALO NAS Navigator2.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe (BUFFALO INC.)
O4 - Startup: C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\NAS Scheduler.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe (BUFFALO INC.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Low Rights present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:[b]64bit:[/b] - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O8:[b]64bit:[/b] - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\pioneer\NaviStudio3\DriveManager\System\navislink.html ()
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105 File not found
O8 - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\pioneer\NaviStudio3\DriveManager\System\navislink.html ()
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:[b]64bit:[/b] - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab (Reg Error: Key error.)
O16:[b]64bit:[/b] - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {0E15796F-7B3A-4FB3-BF69-7B11D20A4A62} https://azby.fmworld.net/register/entrance/UserReg.CAB (AzbyClub ユーザー登録用 コントロール)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0018-0000-0025-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.8.0/jinstall-1_8_0_25-windows-i586.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3393CC9B-8EE3-4A2E-9B63-6340651373C3}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{64F2D18B-2AB4-4B6B-A937-E9B150FD3A94}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E229BC23-4127-489E-B145-28F9DE780FEB}: DhcpNameServer = 192.168.0.1
O18:[b]64bit:[/b] - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\livecall - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\ms-help - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\msnim - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{04804795-45ad-11e1-b1af-001bdc0f7b10}\Shell - "" = AutoRun
O33 - MountPoints2\{04804795-45ad-11e1-b1af-001bdc0f7b10}\Shell\AutoRun\command - "" = H:\AutoRun.exe
O33 - MountPoints2\{0480479a-45ad-11e1-b1af-001bdc0f7b10}\Shell - "" = AutoRun
O33 - MountPoints2\{0480479a-45ad-11e1-b1af-001bdc0f7b10}\Shell\AutoRun\command - "" = H:\AutoRun.exe
O33 - MountPoints2\{3bb5edb1-0487-11e1-b01b-5c9ad8e76c24}\Shell - "" = AutoRun
O33 - MountPoints2\{3bb5edb1-0487-11e1-b01b-5c9ad8e76c24}\Shell\AutoRun\command - "" = F:\SNLoader.exe
O33 - MountPoints2\{3bb5ee11-0487-11e1-b01b-5c9ad8e76c24}\Shell - "" = AutoRun
O33 - MountPoints2\{3bb5ee11-0487-11e1-b01b-5c9ad8e76c24}\Shell\AutoRun\command - "" = F:\SNLoader.exe
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell - "" = AutoRun
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\AUTOMENU\COMMAND - "" = G:\winsoft\MENU.EXE
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\AutoRun\command - "" = G:\winsoft\AUTOCRD.exe
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\PUSHBUTTON\COMMAND - "" = G:\winsoft\AUTOCRD.EXE /pochi
O33 - MountPoints2\{7000310b-1e16-11e1-a15d-001bdc0f7b10}\Shell\UNLOCK\COMMAND - "" = G:\winsoft\Unlock.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point
  • tomoaki_2000tox
  • 2015/06/18 (Thu) 06:43:07
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/06/16 02:14:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCカルテ
[2015/06/16 02:09:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\アップデートナビ
[2015/06/16 01:21:07 | 000,000,000 | ---D | C] -- C:\windows\CheckSur
[2015/06/15 20:34:38 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\100CASIO
[2015/06/15 02:06:30 | 057,400,016 | ---- | C] (Microsoft Corporation) -- C:\Users\xxxxxx\Desktop\IE11-Windows6.1-x64-ja-jp.exe
[2015/06/15 01:40:53 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015/06/15 01:38:13 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Malwarebytes
[2015/06/15 01:38:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2015/06/15 01:38:09 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mbam.sys
[2015/06/15 01:38:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2015/06/15 01:36:57 | 010,285,040 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-1.75.0.1300.exe
[2015/06/14 00:08:06 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\backups
[2015/06/13 23:30:38 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Geek Uninstaller
[2015/06/13 23:09:21 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\geek
[2015/06/12 23:35:27 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\Desktop\ログ1
[2015/06/12 22:18:36 | 000,000,000 | ---D | C] -- C:\BUFFALO
[2015/06/11 22:06:38 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\xxxxxx\Desktop\HijackThis.exe
[2015/06/11 03:39:31 | 000,000,000 | ---D | C] -- C:\FRST
[2015/06/11 03:38:50 | 002,108,928 | ---- | C] (Farbar) -- C:\Users\xxxxxx\Desktop\FRST64.exe
[2015/06/11 03:16:35 | 000,000,000 | ---D | C] -- C:\Avenger
[2015/06/11 02:19:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/06/11 02:12:06 | 021,546,080 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-2.1.6.1022.exe
[2015/06/11 02:09:19 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\xxxxxx\Desktop\OTL.exe
[2015/06/11 00:57:34 | 005,200,384 | ---- | C] (AVAST Software) -- C:\Users\xxxxxx\Desktop\aswmbr.exe
[2015/06/11 00:47:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/06/11 00:47:50 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/06/11 00:46:55 | 006,549,184 | ---- | C] (Piriform Ltd) -- C:\Users\xxxxxx\Desktop\ccsetup506.exe
[2015/06/10 23:45:19 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\comctl32.dll
[2015/06/10 23:45:18 | 014,635,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmp.dll
[2015/06/10 23:45:17 | 011,411,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmp.dll
[2015/06/10 23:45:15 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\spwmp.dll
[2015/06/10 23:45:15 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\spwmp.dll
[2015/06/10 23:45:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msdxm.ocx
[2015/06/10 23:45:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxmasf.dll
[2015/06/10 23:45:14 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wmploc.DLL
[2015/06/10 23:45:14 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wmploc.DLL
[2015/06/10 23:45:14 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msdxm.ocx
[2015/06/10 23:45:14 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\dxmasf.dll
[2015/06/10 23:43:30 | 002,343,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
[2015/06/10 23:43:30 | 000,718,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\jscript.dll
[2015/06/10 23:43:30 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
[2015/06/10 23:43:30 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
[2015/06/10 23:43:29 | 000,453,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll
[2015/06/10 23:43:29 | 000,282,112 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll
[2015/06/10 23:43:29 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
[2015/06/10 23:43:29 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
[2015/06/10 23:43:28 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
[2015/06/10 23:43:25 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\jscript.dll
[2015/06/10 23:43:23 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
[2015/06/10 23:43:23 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\url.dll
[2015/06/10 23:43:23 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\mshta.exe
[2015/06/10 23:43:22 | 000,448,512 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\html.iec
[2015/06/10 23:43:22 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe
[2015/06/10 23:43:22 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe
[2015/06/10 23:43:21 | 001,494,016 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
[2015/06/10 23:43:21 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
[2015/06/10 23:43:21 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\url.dll
[2015/06/10 23:43:19 | 000,367,616 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\html.iec
[2015/06/10 23:43:18 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msfeedssync.exe
[2015/06/10 23:43:18 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msfeedssync.exe
[2015/06/08 23:54:23 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\SUPERAntiSpyware.com
[2015/06/08 23:53:12 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2015/06/08 23:53:07 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2015/06/08 23:53:07 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2015/06/07 23:42:43 | 001,255,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diagtrack.dll
[2015/06/07 23:42:43 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll
[2015/06/07 23:42:42 | 005,569,984 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2015/06/07 23:42:42 | 003,989,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe
[2015/06/07 23:42:42 | 001,728,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll
[2015/06/07 23:42:42 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll
[2015/06/07 23:42:42 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll
[2015/06/07 23:42:42 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\advapi32.dll
[2015/06/07 23:42:42 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe
[2015/06/07 23:42:42 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64.dll
[2015/06/07 23:42:41 | 003,934,144 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe
[2015/06/07 23:42:41 | 000,879,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tdh.dll
[2015/06/07 23:42:41 | 000,635,392 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tdh.dll
[2015/06/07 23:42:41 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll
[2015/06/07 23:42:41 | 000,404,992 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\tracerpt.exe
[2015/06/07 23:42:41 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\tracerpt.exe
[2015/06/07 23:42:41 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll
[2015/06/07 23:42:41 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ncrypt.dll
[2015/06/07 23:42:41 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe
[2015/06/07 23:42:41 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll
[2015/06/07 23:42:41 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspicli.dll
[2015/06/07 23:42:41 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sechost.dll
[2015/06/07 23:42:41 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\smss.exe
[2015/06/07 23:42:41 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\logman.exe
[2015/06/07 23:42:41 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\logman.exe
[2015/06/07 23:42:41 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\auditpol.exe
[2015/06/07 23:42:41 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\srclient.dll
[2015/06/07 23:42:41 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\auditpol.exe
[2015/06/07 23:42:41 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\typeperf.exe
[2015/06/07 23:42:41 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\csrsrv.dll
[2015/06/07 23:42:41 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\relog.exe
[2015/06/07 23:42:41 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\typeperf.exe
[2015/06/07 23:42:41 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\relog.exe
[2015/06/07 23:42:41 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\sspisrv.dll
[2015/06/07 23:42:41 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\secur32.dll
[2015/06/07 23:42:41 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\setup16.exe
[2015/06/07 23:42:41 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\diskperf.exe
[2015/06/07 23:42:41 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\diskperf.exe
[2015/06/07 23:42:41 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\ntvdm64.dll
[2015/06/07 23:42:41 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\ntvdm64.dll
[2015/06/07 23:42:41 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wow64cpu.dll
[2015/06/07 23:42:41 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wow32.dll
[2015/06/07 23:42:40 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2015/06/07 23:42:40 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2015/06/07 23:42:40 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2015/06/07 23:42:40 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2015/06/07 23:42:40 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2015/06/07 23:42:40 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2015/06/07 23:42:39 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\instnm.exe
[2015/06/07 23:42:39 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\apisetschema.dll
[2015/06/07 23:42:39 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\apisetschema.dll
[2015/06/07 23:42:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2015/06/07 23:42:39 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2015/06/07 23:42:39 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2015/06/07 23:42:39 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\user.exe
[2015/06/07 23:42:38 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\adtschema.dll
[2015/06/07 23:42:38 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\adtschema.dll
[2015/06/07 23:42:38 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msaudite.dll
[2015/06/07 23:42:38 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msaudite.dll
[2015/06/07 23:42:38 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\msobjs.dll
[2015/06/07 23:42:38 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\msobjs.dll
[2015/06/07 23:42:38 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\UtcResources.dll
[2015/06/07 23:42:33 | 003,147,776 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wucltux.dll
[2015/06/07 23:42:33 | 000,696,320 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapi.dll
[2015/06/07 23:42:33 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapi.dll
[2015/06/07 23:42:33 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuwebv.dll
[2015/06/07 23:42:33 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuwebv.dll
[2015/06/07 23:42:33 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuauclt.exe
[2015/06/07 23:42:33 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wudriver.dll
[2015/06/07 23:42:33 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wudriver.dll
[2015/06/07 23:42:33 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\WinSetupUI.dll
[2015/06/07 23:42:33 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups2.dll
[2015/06/07 23:42:33 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wups.dll
[2015/06/07 23:42:33 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wuapp.exe
[2015/06/07 23:42:33 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wuapp.exe
[2015/06/07 23:42:33 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\SysWow64\wups.dll
[2015/06/07 23:42:33 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\wu.upgrade.ps.dll
[2015/06/07 23:40:28 | 000,069,888 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\drivers\stream.sys
[2015/06/07 23:38:04 | 000,078,936 | R--- | C] (Symantec Corporation) -- C:\windows\SysNative\drivers\SymIMV.sys
[2015/06/07 19:31:20 | 001,119,232 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
[2015/06/07 19:31:20 | 001,021,440 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\appraiser.dll
[2015/06/07 19:31:20 | 000,757,248 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\invagent.dll
[2015/06/07 19:31:20 | 000,700,416 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
[2015/06/07 19:31:20 | 000,423,424 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll
[2015/06/07 19:31:20 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll
[2015/06/07 19:31:20 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\aepic.dll
[2015/06/07 19:31:20 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\windows\SysNative\acmigration.dll
[2015/06/07 17:53:43 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Teegm
[2015/05/31 17:28:46 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Local\Downloaded Installations
[2015/05/31 08:19:04 | 000,000,000 | ---D | C] -- C:\Users\xxxxxx\AppData\Roaming\Roamaz
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/06/18 06:02:05 | 000,000,690 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/06/18 06:01:16 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/06/18 06:01:12 | 000,000,686 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/06/18 06:01:09 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2015/06/16 22:44:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\xxxxxx\Desktop\OTL.exe
[2015/06/16 22:44:03 | 000,024,400 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/06/16 22:44:03 | 000,024,400 | -H-- | M] () -- C:\windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/06/16 22:37:19 | 001,313,238 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2015/06/16 22:37:19 | 000,654,480 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2015/06/16 22:37:19 | 000,411,428 | ---- | M] () -- C:\windows\SysNative\perfh011.dat
[2015/06/16 22:37:19 | 000,122,442 | ---- | M] () -- C:\windows\SysNative\perfc011.dat
[2015/06/16 22:37:19 | 000,122,352 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2015/06/16 22:32:18 | 000,018,200 | ---- | M] () -- C:\windows\SysNative\results.xml
[2015/06/16 22:29:44 | 2080,378,879 | -HS- | M] () -- C:\hiberfil.sys
[2015/06/16 01:58:48 | 000,000,134 | ---- | M] () -- C:\Users\xxxxxx\Desktop\Internet Explorer トラブルシューティング.url
[2015/06/16 01:13:04 | 057,400,016 | ---- | M] (Microsoft Corporation) -- C:\Users\xxxxxx\Desktop\IE11-Windows6.1-x64-ja-jp.exe
[2015/06/15 02:12:44 | 000,778,416 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerApp.exe
[2015/06/15 02:12:44 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
[2015/06/15 01:38:10 | 000,001,073 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/06/15 01:37:06 | 010,285,040 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-1.75.0.1300.exe
[2015/06/15 01:36:32 | 002,231,296 | ---- | M] () -- C:\Users\xxxxxx\Desktop\AdwCleaner.exe
[2015/06/15 01:26:43 | 000,001,287 | ---- | M] () -- C:\Users\Public\Desktop\Sleipnir.lnk
[2015/06/15 00:57:40 | 000,030,733 | ---- | M] () -- C:\Users\xxxxxx\Desktop\Sleipnir ブックマーク.html
[2015/06/12 23:37:34 | 000,204,800 | ---- | M] () -- C:\Users\xxxxxx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2015/06/11 22:06:41 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\xxxxxx\Desktop\HijackThis.exe
[2015/06/11 03:38:53 | 002,108,928 | ---- | M] (Farbar) -- C:\Users\xxxxxx\Desktop\FRST64.exe
[2015/06/11 03:20:53 | 000,617,440 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2015/06/11 02:18:55 | 021,546,080 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\xxxxxx\Desktop\mbam-setup-2.1.6.1022.exe
[2015/06/11 00:57:35 | 005,200,384 | ---- | M] (AVAST Software) -- C:\Users\xxxxxx\Desktop\aswmbr.exe
[2015/06/11 00:46:56 | 006,549,184 | ---- | M] (Piriform Ltd) -- C:\Users\xxxxxx\Desktop\ccsetup506.exe
[2015/06/10 23:52:48 | 000,000,036 | ---- | M] () -- C:\Users\xxxxxx\AppData\Local\housecall.guid.cache
[2015/06/08 23:53:13 | 000,001,808 | ---- | M] () -- C:\Users\xxxxxx\Desktop\SUPERAntiSpyware Free Edition.lnk
[2015/06/08 23:49:56 | 000,007,605 | ---- | M] () -- C:\Users\xxxxxx\AppData\Local\Resmon.ResmonCfg
[2015/06/07 23:45:56 | 001,293,022 | ---- | M] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2015/06/02 03:51:58 | 000,000,040 | -HS- | M] () -- C:\ProgramData\.zreglib
[2015/06/02 03:31:10 | 000,001,890 | -HS- | M] () -- C:\ProgramData\KGyGaAvL.sys
[2015/05/31 09:50:00 | 000,448,512 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\html.iec
[2015/05/31 09:48:14 | 002,343,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript9.dll
[2015/05/31 09:41:33 | 001,494,016 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\inetcpl.cpl
[2015/05/31 09:41:20 | 000,237,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\url.dll
[2015/05/31 09:41:17 | 000,599,040 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\vbscript.dll
[2015/05/31 09:41:08 | 000,816,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\jscript.dll
[2015/05/31 09:41:04 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieUnatt.exe
[2015/05/31 09:41:03 | 000,729,088 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msfeeds.dll
[2015/05/31 09:40:48 | 000,453,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtmsft.dll
[2015/05/31 09:40:44 | 000,282,112 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\dxtrans.dll
[2015/05/31 09:40:37 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mshtmled.dll
[2015/05/31 09:40:33 | 000,248,320 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ieui.dll
[2015/05/31 09:40:33 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msfeedssync.exe
[2015/05/31 09:40:18 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\mshta.exe
[2015/05/31 08:54:04 | 000,367,616 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\html.iec
[2015/05/31 08:49:08 | 001,427,968 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\inetcpl.cpl
[2015/05/31 08:49:04 | 000,718,336 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\jscript.dll
[2015/05/31 08:48:44 | 000,231,936 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\url.dll
[2015/05/31 08:48:29 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieUnatt.exe
[2015/05/31 08:47:59 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\mshtmled.dll
[2015/05/31 08:47:55 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msfeedssync.exe
[2015/05/31 08:47:49 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ieui.dll
[2015/05/26 03:24:00 | 005,569,984 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ntoskrnl.exe
[2015/05/26 03:21:21 | 001,728,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ntdll.dll
[2015/05/26 03:19:27 | 000,362,496 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wow64win.dll
[2015/05/26 03:19:27 | 000,243,712 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wow64.dll
[2015/05/26 03:19:27 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\wow64cpu.dll
[2015/05/26 03:19:26 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\winsrv.dll
[2015/05/26 03:19:13 | 001,255,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\diagtrack.dll
[2015/05/26 03:19:10 | 000,879,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\tdh.dll
[2015/05/26 03:19:10 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sspicli.dll
[2015/05/26 03:19:10 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sspisrv.dll
[2015/05/26 03:19:09 | 000,503,808 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srcore.dll
[2015/05/26 03:19:09 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\sechost.dll
[2015/05/26 03:19:09 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\srclient.dll
[2015/05/26 03:19:09 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\secur32.dll
[2015/05/26 03:19:04 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ncrypt.dll
[2015/05/26 03:19:04 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\ntvdm64.dll
[2015/05/26 03:19:02 | 001,461,760 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\lsasrv.dll
[2015/05/26 03:19:02 | 001,162,752 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\kernel32.dll
[2015/05/26 03:19:02 | 000,424,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\KernelBase.dll
[2015/05/26 03:18:56 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\csrsrv.dll
[2015/05/26 03:18:54 | 000,879,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\advapi32.dll
[2015/05/26 03:18:45 | 000,404,992 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\tracerpt.exe
[2015/05/26 03:18:45 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\typeperf.exe
[2015/05/26 03:18:39 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\smss.exe
[2015/05/26 03:18:32 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\rstrui.exe
[2015/05/26 03:18:30 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\relog.exe
[2015/05/26 03:18:19 | 000,104,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\logman.exe
[2015/05/26 03:18:11 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\diskperf.exe
[2015/05/26 03:18:08 | 000,338,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\conhost.exe
[2015/05/26 03:18:04 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\auditpol.exe
[2015/05/26 03:14:26 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msobjs.dll
[2015/05/26 03:14:04 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\msaudite.dll
[2015/05/26 03:11:40 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\apisetschema.dll
[2015/05/26 03:11:40 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2015/05/26 03:11:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2015/05/26 03:11:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2015/05/26 03:11:39 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2015/05/26 03:11:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2015/05/26 03:11:38 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\adtschema.dll
[2015/05/26 03:07:34 | 003,989,440 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ntkrnlpa.exe
[2015/05/26 03:07:34 | 003,934,144 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ntoskrnl.exe
[2015/05/26 03:01:42 | 000,635,392 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\tdh.dll
[2015/05/26 03:01:35 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\ntvdm64.dll
[2015/05/26 03:00:44 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\typeperf.exe
[2015/05/26 03:00:40 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\tracerpt.exe
[2015/05/26 03:00:28 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\setup16.exe
[2015/05/26 03:00:25 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\relog.exe
[2015/05/26 03:00:17 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\logman.exe
[2015/05/26 03:00:09 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\diskperf.exe
[2015/05/26 03:00:04 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\auditpol.exe
[2015/05/26 02:59:52 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\wow32.dll
[2015/05/26 02:57:31 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msobjs.dll
[2015/05/26 02:57:15 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\msaudite.dll
[2015/05/26 02:55:18 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\apisetschema.dll
[2015/05/26 02:55:18 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2015/05/26 02:55:18 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2015/05/26 02:55:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2015/05/26 02:55:17 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\adtschema.dll
[2015/05/26 02:00:56 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\UtcResources.dll
[2015/05/26 01:50:38 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\instnm.exe
[2015/05/26 01:50:36 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\windows\SysWow64\user.exe
[2015/05/26 01:48:25 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2015/05/26 01:48:25 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2015/05/26 01:48:25 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2015/05/26 01:48:25 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2015/05/23 03:18:41 | 000,700,416 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\generaltel.dll
[2015/05/23 03:18:29 | 000,757,248 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\invagent.dll
[2015/05/23 03:18:24 | 000,423,424 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\devinv.dll
[2015/05/23 03:18:22 | 001,021,440 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\appraiser.dll
[2015/05/23 03:18:21 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aepdu.dll
[2015/05/23 03:18:21 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\acmigration.dll
[2015/05/23 03:13:03 | 001,119,232 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aeinv.dll
[2015/05/21 22:19:52 | 000,193,536 | ---- | M] (Microsoft Corporation) -- C:\windows\SysNative\aepic.dll
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]
  • tomoaki_2000tox
  • 2015/06/18 (Thu) 06:43:51
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)

[2015/06/15 02:21:04 | 000,000,134 | ---- | C] () -- C:\Users\xxxxxx\Desktop\Internet Explorer トラブルシューティング.url
[2015/06/15 01:38:10 | 000,001,073 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/06/15 01:36:29 | 002,231,296 | ---- | C] () -- C:\Users\xxxxxx\Desktop\AdwCleaner.exe
[2015/06/15 01:26:43 | 000,001,287 | ---- | C] () -- C:\Users\Public\Desktop\Sleipnir.lnk
[2015/06/15 00:57:40 | 000,030,733 | ---- | C] () -- C:\Users\xxxxxx\Desktop\Sleipnir ブックマーク.html
[2015/06/10 23:52:48 | 000,000,036 | ---- | C] () -- C:\Users\xxxxxx\AppData\Local\housecall.guid.cache
[2015/06/08 23:53:13 | 000,001,808 | ---- | C] () -- C:\Users\xxxxxx\Desktop\SUPERAntiSpyware Free Edition.lnk
[2014/09/21 16:53:08 | 000,007,605 | ---- | C] () -- C:\Users\xxxxxx\AppData\Local\Resmon.ResmonCfg
[2014/04/24 00:58:19 | 002,261,050 | ---- | C] () -- C:\Users\xxxxxx\Scan_4月-24-2014-12-58-13-692-AM.png
[2014/01/31 02:36:37 | 001,293,022 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2013/11/16 19:26:20 | 000,210,192 | ---- | C] () -- C:\windows\SysWow64\IVIresizeW7.dll
[2013/11/16 19:26:20 | 000,206,096 | ---- | C] () -- C:\windows\SysWow64\IVIresizeA6.dll
[2013/11/16 19:26:20 | 000,197,904 | ---- | C] () -- C:\windows\SysWow64\IVIresizeP6.dll
[2013/11/16 19:26:20 | 000,197,904 | ---- | C] () -- C:\windows\SysWow64\IVIresizeM6.dll
[2013/11/16 19:26:20 | 000,193,808 | ---- | C] () -- C:\windows\SysWow64\IVIresizePX.dll
[2013/11/16 19:26:20 | 000,025,872 | ---- | C] () -- C:\windows\SysWow64\IVIresize.dll
[2011/11/08 00:52:17 | 000,204,800 | ---- | C] () -- C:\Users\xxxxxx\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/11/02 22:34:05 | 000,000,040 | -HS- | C] () -- C:\ProgramData\.zreglib
[2011/11/02 01:19:14 | 000,001,890 | -HS- | C] () -- C:\ProgramData\KGyGaAvL.sys
[2010/02/21 17:28:02 | 000,001,179 | R--- | C] () -- C:\Users\xxxxxx\AppData\Local\事務.lnk

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 14:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 14:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 12:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/06/18 06:01:16 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/06/18 06:01:12 | 000,000,686 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/06/18 06:02:05 | 000,000,690 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: WDC WD7500BPVT-16HXZT2
Partitions: 4
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 20.00GB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 200.00MB
Starting Offset: 21475885056
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 338.00GB
Starting Offset: 21685600256
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 340.00GB
Starting Offset: 384610336768
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2015/03/04 13:41:26 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2013/02/27 14:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2015/05/26 03:18:19 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:56 | 000,187,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2015/02/03 12:12:14 | 000,143,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/21 12:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 13:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2012/02/11 15:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2015/05/26 03:18:19 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2015/05/26 03:18:19 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/21 12:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/21 12:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/19 12:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/21 12:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/21 12:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2015/05/09 12:27:37 | 002,589,184 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

[color=#A23BEC]< >[/color]

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 112 bytes -> C:\ProgramData\Temp:D1B5B4F1

< End of report >
  • tomoaki_2000tox
  • 2015/06/18 (Thu) 06:44:24
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
Extra.txtのログ

OTL Extras logfile created on: 2015/06/18 6:03:48 - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\xxxxxx\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.92 Gb Total Physical Memory | 4.79 Gb Available Physical Memory | 60.49% Memory free
15.83 Gb Paging File | 12.56 Gb Available in Paging File | 79.31% Paging File free
Paging file location(s): c:\pagefile.sys 0 0 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 338.00 Gb Total Space | 182.23 Gb Free Space | 53.91% Space Free | Partition Type: NTFS
Drive D: | 340.44 Gb Total Space | 242.22 Gb Free Space | 71.15% Space Free | Partition Type: NTFS

Computer Name: MOONLIGHT | User Name: xxxxxx | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- Reg Error: Key error. File not found
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- Reg Error: Key error.
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe" (Fenrir Inc.)
https [open] -- "C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe" (Fenrir Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\windows\System32\rundll32.exe" "C:\windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [Digital Photo Professional] -- C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1" (CANON INC.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- Reg Error: Key error.
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [open] -- Reg Error: Key error.
htmlfile [opennew] -- Reg Error: Key error.
http [open] -- "C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe" (Fenrir Inc.)
https [open] -- "C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe" (Fenrir Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [Digital Photo Professional] -- C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1" (CANON INC.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- Reg Error: Key error.
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04E23F8D-F65C-40DA-9C38-958770101C8D}" = rport=137 | protocol=17 | dir=out | app=system |
"{09A3C1C8-19E6-4424-8345-7BDF01FEE7C8}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{0C3F1CAD-BA3C-47F8-A667-1D479C5EC398}" = rport=10243 | protocol=6 | dir=out | app=system |
"{0D502B56-86D0-43DB-B83D-FBC4A275B030}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{108CFD8E-AFF0-4BE8-876E-2D585186DE03}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{12D74126-0BDE-4801-8A13-2B8A74656ED9}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{1DB071A0-AA34-4F62-B84B-372F3C90F67E}" = rport=445 | protocol=6 | dir=out | app=system |
"{2AE3C933-FE54-4346-98D6-3D0655A8BBA0}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{2FC037C2-BFF4-4556-94D5-412B7CFB717B}" = lport=138 | protocol=17 | dir=in | app=system |
"{380DEE4D-0B80-4095-A9B8-8BEE8786B1C4}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=c:\windows\system32\svchost.exe |
"{3877AB26-8733-4603-A4FF-FEFCE5D0AD64}" = lport=445 | protocol=6 | dir=in | app=system |
"{404A8293-3046-4760-8574-F3BF4B39D103}" = lport=2869 | protocol=6 | dir=in | app=system |
"{5058D787-C7FE-4161-92E3-5ED83C736F3F}" = lport=137 | protocol=17 | dir=in | app=system |
"{5F5E51D5-3983-41CD-A336-DCBE2A0802A6}" = lport=2869 | protocol=6 | dir=in | app=system |
"{616B9B74-C5D9-49C2-A245-C5D9B0148D90}" = rport=139 | protocol=6 | dir=out | app=system |
"{6A588657-275D-4D96-895F-9903045D28F9}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe |
"{75D801CD-A25A-4DD8-96CB-CA043DC6F432}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=c:\windows\system32\spoolsv.exe |
"{7EC4C82C-05C4-48E1-B364-F32BA97965C1}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=c:\windows\system32\svchost.exe |
"{80C1C881-3469-44F4-B429-CD5C680B7C63}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{827A4F59-C7DE-4678-8BFA-B38BE6A64B86}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{87615A0A-72C7-4F52-B3F3-9FAD76A7A9EB}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{8FB7C604-E762-48CF-99BF-18B92FAB140E}" = rport=2869 | protocol=6 | dir=out | app=system |
"{B13FB69B-0727-4787-844B-51AF7D15756C}" = lport=139 | protocol=6 | dir=in | app=system |
"{B2556594-C6E7-4A0E-B7D5-B48AF5F7D0C0}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{B70338AA-FC26-4855-8983-F3AB78305550}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe |
"{B757FBA9-54C7-49A2-8772-CA17712B3B13}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\sony\playmemories home\pmbbrowser.exe |
"{C268CF8E-A7CE-44ED-A2B0-64C7F960EF6A}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{CE48246E-0837-4A00-A2B7-6852C950108E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{D7256F5C-0465-4DA2-8938-A7D9DA6098F7}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{D9ED6D6F-CC27-4BB7-862B-0268C8758E82}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{DD0B2FAC-7944-45CB-B583-D6719A396345}" = lport=1900 | protocol=17 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohds.exe |
"{F018FB72-C82A-4B45-AB7E-D6B979D287F1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=ファイルとプリンターの共有 (スプーラー サービス - rpc-epmap) |
"{F2945091-51B4-438C-B457-44E5BDF4B6EF}" = lport=10243 | protocol=6 | dir=in | app=system |
"{FD98E0DB-3C39-4FD1-A2F7-A823AA213A4C}" = rport=138 | protocol=17 | dir=out | app=system |
"{FEB084C8-5B3B-40BF-941B-E30E8BEA2F09}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{007D9EE5-DCE0-46AC-BD3C-B02F32E94046}" = dir=in | app=c:\program files (x86)\fujitsu\f-link\f-link.exe |
"{00C61A01-6E16-431D-957F-61F664F1FBA1}" = dir=in | app=c:\program files (x86)\wyse\pocketcloud\wyseremoteaccess.exe |
"{02A46D04-483A-4F6A-94AF-FC63D1F4D14E}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{046EB5CE-0D59-497B-8FEC-3447959659A8}" = protocol=17 | dir=in | app=c:\program files (x86)\digion\dixim digital tv plus\dixim4_loader.exe |
"{0B17B806-8868-4080-8A62-FF14A566875A}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{101C72CE-3E9C-4331-935C-46CA3EC9D347}" = protocol=6 | dir=in | app=c:\program files (x86)\digion\dixim digital tv plus\dixim4_loader.exe |
"{10474C10-7B0F-4AB7-8C01-07C339E0A3C3}" = protocol=17 | dir=in | app=c:\program files (x86)\buffalo\nasnavi\nasnavi.exe |
"{123B0CA0-EB8B-4EAA-B6EC-0E241C2B4EDA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{1FD877B5-1992-41B4-96C9-5FAF7369AB1D}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe |
"{21111324-FA87-4119-AF13-0040ABA94E4B}" = protocol=17 | dir=in | app=c:\windows\syswow64\explorer.exe |
"{21AEDB55-E52D-4B39-B375-A2BB4A4D1006}" = protocol=17 | dir=in | app=c:\windows\explorer.exe |
"{3FF13CBC-7110-4C75-BA40-EB01F8BF55CD}" = dir=in | app=c:\program files (x86)\fujitsu\networkplayer\networkplayer.exe |
"{41D713C5-7BFC-443A-8E52-FC9B9D5A6FE3}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{45167265-A047-4BC6-9D03-BC6EF24D7039}" = protocol=17 | dir=in | app=c:\program files (x86)\digion\dixim digital tv plus\dixim digital tv plus.exe |
"{4655C7D4-AAD1-4C73-9C89-734102752EAA}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe |
"{4813C0FB-5008-4397-A891-AFBB4F44406D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{50DCE729-0245-45F3-9B00-55F6D2DBB3E2}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{55028620-150D-4D0D-B3E3-0CAB87C97298}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{59E79E99-6F67-4C02-A7FD-4A1D3C3409AE}" = dir=in | app=c:\program files (x86)\fujitsu\networkplayer server\fmvsttool.exe |
"{5AB304D8-8BA5-41E3-A633-7956B37125A1}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{611B15FA-B967-48EC-B6C6-E979189A8A30}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{6286B939-F6ED-4181-AAFC-F8E3BE698000}" = protocol=6 | dir=in | app=c:\program files (x86)\digion\dixim digital tv plus\dixim digital tv plus.exe |
"{62AC9ACC-B873-4904-9BF4-5933786D1A77}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{63E42091-C1FE-4318-92D3-756CDC2DF22E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{64B65B51-A694-4CBD-BB3A-717274528478}" = protocol=6 | dir=out | app=system |
"{6EFED162-7109-466F-9544-2184FDF6C7CD}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe |
"{76CD08E7-8DBF-452F-93DF-6602A2FA8659}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{7752535B-C439-461D-8DBC-11C7AF77298B}" = protocol=58 | dir=in | name=ファイルとプリンターの共有 (エコー要求 - icmpv6 受信) |
"{7F6ACE3D-1728-4544-8FB0-EE14F2D5F8A2}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 |
"{875A0EB1-14EA-4951-BE87-165DFD211E36}" = dir=in | app=c:\program files\nec\atermwrex\wrstexv.exe |
"{8A9DC0F6-C29F-4CA4-AA9C-6025528BB9ED}" = protocol=1 | dir=out | name=ファイルとプリンターの共有 (エコー要求 - icmpv4 送信) |
"{8E0D238F-18C7-4B3A-9C90-C6835D3E63BA}" = protocol=58 | dir=out | name=ファイルとプリンターの共有 (エコー要求 - icmpv6 送信) |
"{9A63750D-D8E2-4845-8925-5B85294ABBC3}" = protocol=6 | dir=in | app=c:\windows\explorer.exe |
"{9BEAA0BA-6165-4C85-84D5-75DE076467E2}" = dir=in | app=c:\program files (x86)\wyse\pocketcloud\pocketclouddesktopapp.exe |
"{9EBD95CF-A08A-468B-83B9-121B8778C5A2}" = protocol=6 | dir=in | app=c:\program files (x86)\sony\playmemories home\pmbbrowser.exe |
"{A1AF4DFF-24CD-4CAD-AAB3-5A68BF3E6E86}" = protocol=6 | dir=in | app=c:\program files (x86)\common files\sony shared\sohlib\sohdms.exe |
"{A2849C5A-926C-4028-AF29-2EBCB0355E1C}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{A4C2402A-3E14-419C-8718-BFBFA1A8D951}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{A4E1E81C-5077-4EC9-AB38-DBA0BCD46F67}" = protocol=17 | dir=in | app=c:\program files (x86)\digion\dixim digital tv plus\dmrservice plus.exe |
"{A9D09FD9-2F52-4C1D-AA1B-F902011AFE60}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{AEE84705-7AEB-430D-9AF3-F9191B260021}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{B9FEFB1B-CF9E-4A35-8376-2656E3479C8E}" = protocol=6 | dir=in | app=c:\program files (x86)\buffalo\nasnavi\nasnavi.exe |
"{BD23E116-950F-4C4A-8570-98C5E1CB28B9}" = protocol=1 | dir=in | name=ファイルとプリンターの共有 (エコー要求 - icmpv4 受信) |
"{C06B0F2C-E666-4452-9582-7D38B9A305EA}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{C10690D8-83E6-4A51-A37C-D7122BFEFFD5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{C24898B0-C293-4663-ABD1-A5E0369CDCD7}" = dir=in | app=c:\program files (x86)\wyse\pocketcloud\aetherwindowsservice.exe |
"{C24CE629-9476-47D8-B199-04CD0FC02C7E}" = protocol=6 | dir=in | app=c:\program files (x86)\digion\dixim digital tv plus\dmrservice plus.exe |
"{CBEFB158-3A87-4FFB-903D-F374728DCC40}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\groove.exe |
"{CE9825CB-8B8E-4BDE-B310-A7AA9A68DFB9}" = dir=in | app=c:\program files (x86)\fujitsu\networkplayer server\networkplayerserver.exe |
"{CF84FE4F-733B-4D4D-B21F-29EF0009A7DC}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{DD4F7F06-D246-4EFE-A5E7-65DCC7323445}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe |
"{DDC0E562-F88E-4F83-ADE3-647A6E8C4C18}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{F0A62E92-4F9A-48C2-889B-36E576B25DB5}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{F15E54EB-7431-4C88-990C-FA1D6FCC1141}" = dir=in | app=c:\program files (x86)\intel corporation\intel wireless display\widiapp.exe |
"{F3161F53-C1BB-4CBC-89EC-CE85BCCAD5AD}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{FA5EAAF2-C59B-4AC3-98F1-95ED7570E8F4}" = protocol=6 | dir=in | app=c:\windows\syswow64\explorer.exe |
"TCP Query User{256CFB00-7D0B-4E88-9896-79EC8613DC93}C:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe" = protocol=6 | dir=in | app=c:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe |
"TCP Query User{5BCADB0F-67F3-453E-9804-66E68B9E7107}C:\program files (x86)\buffalo\nasnavi\nasnavi.exe" = protocol=6 | dir=in | app=c:\program files (x86)\buffalo\nasnavi\nasnavi.exe |
"TCP Query User{97FCEFAB-5989-498C-8C1A-9976FA2F2A72}C:\windows\syswow64\explorer.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\explorer.exe |
"TCP Query User{B48B311F-3B25-438A-912B-39788B919202}C:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe" = protocol=6 | dir=in | app=c:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe |
"UDP Query User{650EE1AA-30AB-41C5-A664-DF6246F2A69B}C:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe" = protocol=17 | dir=in | app=c:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe |
"UDP Query User{72B0F6B9-0BEA-4428-8F9C-BC37730D59EF}C:\windows\syswow64\explorer.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\explorer.exe |
"UDP Query User{B76D8E93-0E3C-410F-B0FE-F0AF8F4E9F58}C:\program files (x86)\buffalo\nasnavi\nasnavi.exe" = protocol=17 | dir=in | app=c:\program files (x86)\buffalo\nasnavi\nasnavi.exe |
"UDP Query User{D79977D1-6FDA-405E-8BA8-4CD283C9756E}C:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe" = protocol=17 | dir=in | app=c:\users\xxxxxx\appdata\roaming\kingsoft\klive\bin\klive.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0AE28F1D-054C-4B48-BFD0-C09F3F937C59}" = PCカルテ
"{0C826C5B-B131-423A-A229-C71B3CACCD6A}" = CDDRV_Installer
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6200_series" = Canon MG6200 series MP Drivers
"{1B8ABA62-74F0-47ED-B18C-A43128E591B8}" = Windows Live ID Sign-in Assistant
"{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2
"{28EF7372-9087-4AC3-9B9F-D9751FCDF830}" = Intel(R) Wireless Display
"{314FAD12-F785-4471-BCE8-AB506642B9A1}" = OmniPass
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{3BF2C0A8-2C44-4A36-AA96-3BD6FB7BB01F}" = Windows Live Remote Client Resources
"{3D576235-F0CE-4B50-A9C6-0775B9E50B63}" = MergeModule_x64
"{4108974B-DE87-4AD4-9167-930C62C45691}" = Fujitsu Display Manager
"{47BC37A3-35C8-484A-8CBD-851914EB095E}" = アップデートナビ
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{51DDB4F9-7FFF-4970-AED4-DB3C22A5C522}" = Corel Graphics - Windows Shell Extension 64 Bit
"{54C5B89F-0A8C-4C07-A51D-7380974DA459}" = Windows Live Remote Service Resources
"{5DE7A07C-F6E1-45B7-B431-E69730B9003A}" = Inst5657
"{5F1DFCC1-595D-4235-A044-E05B706D800A}" = AuthenTec Fingerprint Software
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = ワンタッチボタン設定
"{63B4D665-34F5-333A-BE00-6DDE0CBD4A6C}" = Microsoft .NET Framework 4.5.2 (JPN)
"{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{7BA0ECC1-2636-4169-9BF0-F49A1F7AAD87}" = 富士通起動ユーティリティ
"{7BA64D21-EE46-4a9a-8145-52B0175C3F86}" = Plugfree NETWORK
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{82AAA3CA-973A-4EC5-9CF6-2A33B58A4344}" = 富士通モビリティセンター拡張
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0028-0411-1000-0000000FF1CE}" = Microsoft Office IME (Japanese) 2007
"{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007
"{90120000-002A-0411-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (Japanese) 2007
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041" = Microsoft .NET Framework 4.5.2 (日本語)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95140000-011C-0411-1000-0000000FF1CE}" = Microsoft Office ナビ 2010
"{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1" = PDF-Viewer
"{A96702F7-EFC8-3EED-BE46-22C809D4EBE5}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B351DC34-2758-492A-ADEE-66C17A61860E}" = PowerUtility - スケジュール機能
"{B95CFA6A-E0E0-4437-A2F0-BE0948B68946}" = インテル(R) PROSet/Wireless WiFi ソフトウェア
"{C111CE25-B8D1-459A-A870-B3DFA18A124A}" = O2Micro Flash Memory Card Windows Driver
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{D07A61E5-A59C-433C-BCBD-22025FA2287B}" = Windows Live Language Selector
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{E2C24FE1-C6BB-4A4B-8B7F-BF2521DEB91E}" = Share64
"{E55D36C7-F4A8-46A4-A086-139C10413268}" = Plugfree NETWORK
"{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = 富士通拡張機能ユーティリティ
"{E9327EB0-7209-4E47-8EE2-999D5E567CAE}" = テレビ出力ユーティリティ
"{F07F9109-D141-4E88-BFF5-0206D61994F5}" = SOHLib for PlayMemories Home
"{F3F18612-7B5D-4C05-86C9-AB50F6F71727}" = KhalInstallWrapper
"CCleaner" = CCleaner
"ProInst" = Intel PROSet Wireless
"SynTPDeinstKey" = Synaptics Pointing Device Driver

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{5A10CFDA-FA2B-453C-B561-AE864E62EAC8}" = CorelDRAW Essentials X5 - Extra Content
"_{B6BFCD02-BA0E-41A9-9C9C-6624C4BB475F}" = Corel Graphics - Windows Shell Extension
"_{E185BD5C-0E10-479F-AF44-63D3A068446A}" = Corel Digital Studio for FUJITSU
"_{EDBEBF07-F880-48FB-9AA5-0E8E71E02D83}" = CorelDRAW Essentials X5
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"{04AF2E12-ADE0-413A-9806-ACFC7B55578E}" = 筆ぐるめ Ver.18
"{0A15E040-3E30-4C36-BF28-4EBAEDA507AB}" = DiXiM Digital TV plus
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{10AB1F40-BDEC-4A8D-B427-30F9429378B0}" = Windows Live Movie Maker
"{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
"{15D95497-8F76-41E5-8894-EDDB59E39BD9}" = Windows Live メール
"{19FEBF46-AE2C-45C7-BF9F-E254A4B3E717}" = PMB_ModeEditor
"{1B76F675-12D9-4183-A8EA-87733B4041A7}" = Device Management Service
"{1C64A33A-A013-45DC-9436-2A629B4A8BE7}" = 富士通PC 辞書セット(広辞苑第六版+現代用語の基礎知識+学研パーソナル統合辞典+家庭医学館)
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{2011F001-451D-4150-8814-5831A100D44F}" = GAMEPACK2011F
"{21357E10-BDCB-4CDD-B2A3-905DD7ED653D}_is1" = DigiBookBrowser Version 1.5.2.68
"{22A1A1C1-CEEC-4911-B36F-121464642478}" = ゆったり設定2
"{24FB1BEA-1946-448A-958E-A73FC79CBEFA}" = 電源オフUSB充電ユーティリティ
"{25E96E7C-439F-48A5-A4FB-55AF5B2E650F}" = ConcatPDF 1.2.5
"{29276E3F-15EF-49FC-9793-B07811C8059D}" = PC乗換ガイド
"{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime
"{2A853304-6DB2-4F4E-BC72-9A60EEA2CD6A}" = テレビNaviガジェット
"{2C12184B-F547-455E-8B36-D81ED4E17C46}" = Roxio Creator LJ
"{2C39CCE7-1098-3BC1-94D6-A63D1772DD82}" = Microsoft Visual Studio Tools for Applications 2.0 Language Pack - JPN
"{2EF73726-9C12-42A0-952D-9753FBF86E58}" = IFL
"{2F14F550-0FFC-4285-B673-880744D428A3}" = CorelDRAW Essentials X5 - Custom Data
"{306CBA87-E890-4FBB-9AB8-E65C96D352B2}" = MergeModule_x86
"{3280C6F4-E3AC-45E5-8F57-F698F9357315}" = らくらく手書き入力
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34809713-7886-4F6A-B9D5-CC74DBC1C77E}" = CorelDRAW Essentials X5 - Redist
"{34927EBC-98D4-4D53-98BE-510DF5999F50}" = Adobe AIR
"{362E3F90-7937-4aa9-806D-0C40260C3D98}" = テレビNaviガジェット
"{378C547F-7AE3-467D-9E11-C888B026F62D}" = NetworkPlayer サーバー
"{37CEF18E-0428-4168-92AC-0C709B64B6A6}" = バッテリーユーティリティ
"{399C37FB-08AF-493B-BFED-20FBD85EDF7F}" = FJ Camera
"{3B1EF0C5-8855-416F-A6F4-5CC5FCF267CA}" = CorelDRAW Essentials X5 - WT
"{3C569633-C8DE-46E2-BB8F-F65198681C2F}" = マイフォト
"{3D104259-DDE9-4331-BFAC-39F712735E10}" = BeatJam
"{3DBD9C11-7309-4393-9358-95FD1ECE5659}" = Scanner Mouse
"{41938788-1E1C-4A8B-A1CD-F34C7A4D3E0D}" = セキュリティ対策ソフト選択
"{4433CEC6-DA32-4D7B-BA95-B47C68498287}" = CorelDRAW Essentials X5 - Connect
"{4612A138-0673-47F4-99C9-0E47B3B719F0}" = HDDロック
"{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"{4C50034D-123F-410B-AB9A-17447BE91CC1}" = 省電力ユーティリティ
"{4D85A957-11F7-49FA-B070-F87D1A1C987E}" = NAVI*STUDIO3 MaintenanceManager
"{532B87EB-42A8-459D-A529-F7BBD658D3BE}" = 一太郎ビューア2013
"{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"{548F12A2-BD2E-4B5A-9B62-BBC0AA8EB3DD}" = Everio MediaBrowser HD Edition
"{55641498-D428-4EE8-9694-5534706C4A62}" = JUSTオンラインアップデート
"{5705EC66-E894-454D-A014-ADF1DF920C10}" = いつもNAVI PC
"{575B8A9F-EDAA-42B8-9208-F8E23239E17A}" = NAVI*STUDIO3 UpdateManager
"{582B87B4-BFA2-402F-88CA-986C67AA474A}" = ACER ICONIA 3G DRIVER INSTALL
"{5A10CFDA-FA2B-453C-B561-AE864E62EAC8}" = CorelDRAW Essentials X5 - Extra Content
"{5C1F18D2-F6B7-4242-B803-B5A78648185D}" = Corel WinDVD
"{5F2B4420-3659-4421-8D2B-8BDC6D19B1E3}" = テレビNaviガジェット
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{666D7CED-12E0-4BA3-B594-5681961E7B02}" = CorelDRAW Essentials X5 - IPM
"{675D8E1E-2388-4718-902C-E5FC4888AC0E}" = Windows Live Essentials
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6C3F8916-D6A5-4A31-9DA8-80C973CE437F}" = Windows Live Writer
"{6DFD069C-CC99-A146-C12E-C0F84BF1F631}" = TokyoLoader
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7134EF35-DA07-41F8-A71F-66709E194BB5}" = Windows Live Mesh
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74DC8A26-4E05-40B6-AD11-C9428A1AE150}" = Roxio Creator LJ
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7AF2D692-EC1A-41B2-B1C2-7132EA20402D}" = Sony Media Library Earth 6.0.00
"{7C212D89-F69D-49A9-8745-EF7194A68005}" = BeatJam Video Converter
"{7E4CB404-F1E4-4E81-A1CB-2CBB310481D1}" = MLE
"{7FD4969B-6284-4B69-9B59-C30AFBDA53CA}" = ポチっとな
"{81292102-D6B7-4ada-A43B-FC3E08921AB0}" = テレビNaviガジェット
"{82F4EA7F-BBBD-4860-A347-5EC89897C7A4}" = Inspirium辞書検索ライブラリ
"{834F4E2F-E9DF-4FA9-8499-FF6B91012898}" = CorelDRAW Essentials X5
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{83F00304-550B-4652-A12C-E301CB8B1EE4}" = スクリーンセーバー for FUJITSU PC
"{85E8F38F-0303-401E-A518-0302DF88EB07}" = CorelDRAW Essentials X5 - Draw
"{865D7FF8-3BC0-35A4-8D4F-7CFBFBC6D8F5}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - JPN
"{88A686A9-D687-4295-B633-50D8A4B88371}" = Windows Live Writer Resources
"{89A15676-78AE-4D51-BF5B-DEE3E0D46C94}" = Roxio Creator LJ
"{89BA6E81-B60A-49BC-B283-80560A9E60DF}" = CorelDRAW Essentials X5 - PHOTO-PAINT
"{8A66A2C8-0032-4949-8D99-C293A3EACF79}" = Windows Live Photo Common
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8D0794C2-FE40-49FB-8695-E4A933A8BC98}" = PointGrab Hand Gesture Control
"{8D59BE38-3A4F-4525-AD0D-8980E9E31EFA}" = Windows Live フォト ギャラリー
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E38F042-3863-43D6-9430-04B3610298C3}" = かんたんバックアップ
"{8F153B0A-B1A6-4F8A-9E29-D85CCC1D2312}" = デジカメde!!同時プリント
"{90120000-0015-0411-0000-0000000FF1CE}" = Microsoft Office Access MUI (Japanese) 2007
"{90120000-0015-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0016-0411-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Japanese) 2007
"{90120000-0016-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0411-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Japanese) 2007
"{90120000-0018-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0019-0411-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Japanese) 2007
"{90120000-0019-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0411-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Japanese) 2007
"{90120000-001A-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0411-0000-0000000FF1CE}" = Microsoft Office Word MUI (Japanese) 2007
"{90120000-001B-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0411-0000-0000000FF1CE}" = Microsoft Office Proof (Japanese) 2007
"{90120000-001F-0411-0000-0000000FF1CE}_ENTERPRISE_{8B0BBAAA-BB10-41E1-B27E-24CF08CBB253}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-0028-0411-0000-0000000FF1CE}" = Microsoft Office IME (Japanese) 2007
"{90120000-0028-0411-0000-0000000FF1CE}_ENTERPRISE_{277B1BCF-97A7-40F2-87A5-3CACB0E9714B}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0028-0411-1000-0000000FF1CE}_ENTERPRISE_{8A3FCBEB-9029-40E2-8799-2299CBBEF4D8}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002A-0411-1000-0000000FF1CE}_ENTERPRISE_{84C84010-F698-443E-84B4-A82DD01A17FE}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-002C-0411-0000-0000000FF1CE}" = Microsoft Office Proofing (Japanese) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0044-0411-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Japanese) 2007
"{90120000-0044-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-006E-0411-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Japanese) 2007
"{90120000-006E-0411-0000-0000000FF1CE}_ENTERPRISE_{84C84010-F698-443E-84B4-A82DD01A17FE}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00A1-0411-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Japanese) 2007
"{90120000-00A1-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-00BA-0411-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Japanese) 2007
"{90120000-00BA-0411-0000-0000000FF1CE}_ENTERPRISE_{209FA1DF-E70E-436A-BB71-9ECB81FC3776}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{93AA5B49-0994-4EF6-80F3-868C9CEA88ED}" = PlayMemories Home
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9E240F13-3115-4AB1-B1DB-51D0A8D0D18E}" = PocketCloud
"{A4B06531-D9D1-4BB3-9B61-0DCB54155177}" = ウォーキング日記
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU
"{AA4BF92B-2AAF-11DA-9D78-000129760D75}" = NetworkPlayer
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AB2636B5-35C4-55E1-B930-4C8F72EB00FA}" = ラベル屋さん9
"{AD0850B3-5B60-40B0-A942-FCC2DBE68B5D}" = NAVI*STUDIO3 DriveManager
"{B05B64BA-D9C8-47B9-A2CB-A1F8E796C843}" = Windows Live Messenger
"{B0BB9F4D-DA80-47AC-BAE0-5C3A463A2F52}" = F-LINK
"{B3926F02-DBF4-4EF9-93CB-B737BE2C359A}" = テレビNaviガジェット
"{B6BFCD02-BA0E-41A9-9C9C-6624C4BB475F}" = Corel Graphics - Windows Shell Extension
"{B88D6A78-019D-42FA-A597-1C8F4743CDEC}" = BSMLW06
"{BAF0CA91-4642-46C8-9BCD-C93B61508701}" = リモート接続用の Windows Live Mesh ActiveX コントロール (日本語)
"{BBAD955E-4CDE-4E27-B80A-4BFC0DA15A1C}" = Fate/stay night
"{BC5E517D-DC71-4DBC-8C71-C7554E6DF7A5}" = テレビNaviガジェット
"{C24447C3-CACD-4ce3-BA95-1BE092E0C4F8}" = AzbyClubガジェットプログラム
"{C78EAC6F-7A73-452E-8134-DBB2165C5A68}" = QuickTime
"{C8E4B31D-337C-483D-822D-16F11441669B}" = IndicatorUtility
"{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"{CE61D0D8-6D26-456C-BA11-7FC81F0D61A7}" = デジカメde!!ムービーシアター
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{D0A231B2-5921-45B7-A2FC-4EC937D6E020}" = PMB_ServiceUploader
"{D0ADBC86-5827-4D96-8B06-DE0B64479A3D}" = CorelDRAW Essentials X5 - JP
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D0BEB150-2046-4F94-AE7B-EA76772592F6}" = CorelDRAW Essentials X5 - Common
"{D1A1B85E-328C-47C0-80EB-3AF2C567114E}" = 電子辞書
"{D383C230-CA7B-4A22-921E-49A5ED7F9CA2}" = NAVI*STUDIO3 Launcher
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E1754ED2-CD39-4F5F-AC98-0271EAE1C116}" = Setup
"{E185BD5C-0E10-479F-AF44-63D3A068446A}" = ICA
"{E1E98A6B-880A-4212-9BE0-65637D4D59F8}" = BeatJam
"{E24A5C1E-8647-43FD-838B-DF7149D492E4}" = DeviceIO
"{E2C2F547-4C5B-45F9-8445-C59E223CCB08}" = ContentHD
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{E3C1C994-CA69-4B3C-A290-C311617DE271}" = Contents
"{E3D34B39-EA44-4277-B236-A8E6851537F9}" = 読取革命Lite
"{E3D98871-36D1-492B-95B4-AB8BC64E1E4C}" = ACER ICONIA TAB Driver Installation
"{E4BE9367-168B-4B30-B198-EE37C99FB147}" = CorelDRAW Essentials X5 - Filters
"{E5636C06-A318-4CF3-803B-5BD9F5C10822}" = PureHD
"{E5B25FBF-FAED-4E6F-B63C-5135E09C3A1E}" = お手入れナビ
"{E5D50A9A-B973-46DE-89E4-8BDDD8A9F988}" = Share
"{E6ABA0E9-65E7-4366-9770-514ED4341611}" = VIO
"{E7EFA8C8-4CDE-4466-8E0E-01C04589ED90}" = ISCOM
"{E91C1011-2083-4DD6-858D-11753DCDFF2D}" = Corel Direct DiscRecorder
"{EA6625D5-E563-4FE3-8D98-B3F5B64CBC67}" = IPM_OEM
"{EB4DF488-AAEF-406F-A341-CB2AAA315B90}" = Windows Live Messenger
"{EBB8970C-B344-4448-9CB5-9E819B650BDA}" = TMPGEnc MovieStyle for carrozzeria
"{EDBEBF07-F880-48FB-9AA5-0E8E71E02D83}" = CorelDRAW Essentials X5 - Setup Files
"{EDD9E0C4-B402-40DF-B33D-405CA1E23BA6}" = DFPro
"{EE408577-9C0E-4E5F-BCB2-DB5B3A220958}" = Windows Live UX Platform Language Pack
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F0FDF9C9-1DDC-401F-B638-36F1CAE8A875}" = VideoStudio
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}" = SetPoint
"{F37A2CB1-90B7-4AF9-BFFE-9B6DB8431E07}" = サポートナビ
"{F41DAAD0-58A1-4A9D-B0E8-304D3748D555}" = うれしレシピ
"{F84906ED-BB54-4889-B131-FED9C9056FC8}" = Intel(R) Wireless Display
"{FA0BBB87-91A1-4BFD-9005-EB058BBA0E14}_is1" = StreamTransport version: 1.0.2.2171
"{FD3700D3-192F-432A-9064-9E45F1894312}" = 
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 18 ActiveX
"Adobe Flash Player NPAPI" = Adobe Flash Player 17 NPAPI
"AnyDVD" = AnyDVD
"Bgcall_is1" = Bgcall 2.24
"Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data" = Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data
"Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data" = Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data
"Canon MG6200 series On-screen Manual" = Canon MG6200 series On-screen Manual
"Canon_IJ_Network_Scanner_Selector_EX" = Canon IJ Network Scanner Selector EX
"Canon_IJ_Network_UTILITY" = Canon IJ Network Tool
"CloneDVD2" = CloneDVD2
"com.itec.ngl.NGL" = ラベル屋さん9
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2011-07-30
"Digital Photo Professional" = Canon Utilities Digital Photo Professional
"DivX Setup" = DivXセットアップ
"Easy-PhotoPrint EX" = Canon Easy-PhotoPrint EX
"Easy-PhotoPrint Pro" = Canon Easy-PhotoPrint Pro
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EOS Sample Music" = Canon Utilities EOS Sample Music
"EOS Utility" = Canon Utilities EOS Utility
"FaceSave" = Sense YOU Technology 設定
"FenrirSleipnirV3_is1" = Sleipnir Version 4.4.3
"Free Hide Folder" = Free Hide Folder
"Hoppysoft QTConverter 1.3.0" = Hoppysoft QTConverter 1.3.0
"ImageBrowser EX" = Canon Utilities ImageBrowser EX
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam
"InstallShield_{1C725459-5053-42A5-B22A-F3E91484DF65}" = @メニュー
"InstallShield_{22A1A1C1-CEEC-4911-B36F-121464642478}" = ゆったり設定2
"InstallShield_{29276E3F-15EF-49FC-9793-B07811C8059D}" = PC乗換ガイド
"InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}" = OmniPass
"InstallShield_{4108974B-DE87-4AD4-9167-930C62C45691}" = Fujitsu Display Manager
"InstallShield_{41938788-1E1C-4A8B-A1CD-F34C7A4D3E0D}" = セキュリティ対策ソフト選択
"InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}" = Renesas Electronics USB 3.0 Host Controller Driver
"InstallShield_{582B87B4-BFA2-402F-88CA-986C67AA474A}" = ACER ICONIA 3G DRIVER INSTALL
"InstallShield_{6226477E-444F-4DFE-BA19-9F4F7D4565BC}" = ワンタッチボタン設定
"InstallShield_{7AF2D692-EC1A-41B2-B1C2-7132EA20402D}" = Sony Media Library Earth 6.0.00
"InstallShield_{7BA0ECC1-2636-4169-9BF0-F49A1F7AAD87}" = 富士通起動ユーティリティ
"InstallShield_{82AAA3CA-973A-4EC5-9CF6-2A33B58A4344}" = 富士通モビリティセンター拡張
"InstallShield_{83F00304-550B-4652-A12C-E301CB8B1EE4}" = スクリーンセーバー for FUJITSU PC
"InstallShield_{8D0794C2-FE40-49FB-8695-E4A933A8BC98}" = PointGrab Hand Gesture Control
"InstallShield_{A4B06531-D9D1-4BB3-9B61-0DCB54155177}" = ウォーキング日記
"InstallShield_{B0BB9F4D-DA80-47AC-BAE0-5C3A463A2F52}" = F-LINK
"InstallShield_{B351DC34-2758-492A-ADEE-66C17A61860E}" = PowerUtility - スケジュール機能
"InstallShield_{C111CE25-B8D1-459A-A870-B3DFA18A124A}" = O2Micro Flash Memory Card Windows Driver
"InstallShield_{C8E4B31D-337C-483D-822D-16F11441669B}" = IndicatorUtility
"InstallShield_{D1A1B85E-328C-47C0-80EB-3AF2C567114E}" = 電子辞書
"InstallShield_{DFEA0A70-42C9-43A2-9455-93EDAB702E4B}" = なるほどパソコン入門
"InstallShield_{E3D98871-36D1-492B-95B4-AB8BC64E1E4C}" = ACER ICONIA TAB Driver Installation
"InstallShield_{E5B25FBF-FAED-4E6F-B63C-5135E09C3A1E}" = お手入れナビ
"InstallShield_{E8A5B78F-4456-4511-AB3D-E7BFFB974A7A}" = 富士通拡張機能ユーティリティ
"InstallShield_{E91C1011-2083-4DD6-858D-11753DCDFF2D}" = Corel Direct DiscRecorder 3.7
"InstallShield_{E9327EB0-7209-4E47-8EE2-999D5E567CAE}" = テレビ出力ユーティリティ
"InstallShield_{F0FDF9C9-1DDC-401F-B638-36F1CAE8A875}" = Corel VideoStudio 12
"InstallShield_{F37A2CB1-90B7-4AF9-BFFE-9B6DB8431E07}" = サポートナビ
"Lhaca" = +Lhaca
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"MP Navigator EX 5.0" = Canon MP Navigator EX 5.0
"N360" = Norton 360
"PictBear Second Edition_is1" = PictBear Version 2.03
"Picture Style Editor" = Canon Utilities Picture Style Editor
"QuicktimeAlt_is1" = QuickTime Alternative 1.80
"ShowRoom" = ShowRoom for PowerPoint
"Sound Player Lilith for Unicode OSs_is1" = Sound Player Lilith for Unicode OSs 1.0 beta.3
"Sound_Player_Lilith_0991b" = Sound_Player_Lilith_0991b (Uninstall Only)
"SoundEngine Free" = SoundEngine Free
"Stellarium_is1" = Stellarium 0.10.6.1
"StellaTheaterLite" = Stella Theater Lite
"UN060501" = BUFFALO NAS Navigator2
"Windows Media Encoder 9" = Windows Media Encoder 9 Series
"WinLiveSuite" = Windows Live Essentials
"アタマスキャン" = アタマスキャン
"らくらく無線スタートEX" = らくらく無線スタートEX

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-2342459129-2340425143-2486070026-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"webmdshow" = WebM Project Directshow Filters

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2013/08/23 5:04:16 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/23 10:21:07 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/24 3:28:02 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/24 23:23:49 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/26 3:01:11 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/27 7:04:28 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/28 4:51:03 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/28 4:53:44 | Computer Name = Moonlight | Source = Application Hang | ID = 1002
Description = プログラム Sleipnir.exe バージョン 4.3.2.4000 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: 183c 開始時刻: 01cea3cbf3be5c5a 終了時刻: 8 アプリケーション
パス: D:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe レポート ID: 4382d890-0fbf-11e3-b1a9-5c9ad8e76c24


Error - 2013/08/29 7:24:40 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

Error - 2013/08/30 6:02:46 | Computer Name = Moonlight | Source = WinMgmt | ID = 10
Description =

[ Media Center Events ]
Error - 2011/11/08 8:33:18 | Computer Name = Moonlight | Source = MCUpdate | ID = 0
Description = 21:33:18 - インターネットの接続中にエラーが発生しました。 21:33:18 - サーバーと通信できません。.

Error - 2011/11/08 8:33:28 | Computer Name = Moonlight | Source = MCUpdate | ID = 0
Description = 21:33:23 - インターネットの接続中にエラーが発生しました。 21:33:23 - サーバーと通信できません。.

Error - 2011/12/04 8:10:37 | Computer Name = Moonlight | Source = MCUpdate | ID = 0
Description = 21:10:37 - インターネットの接続中にエラーが発生しました。 21:10:37 - サーバーと通信できません。.

Error - 2011/12/04 8:10:47 | Computer Name = Moonlight | Source = MCUpdate | ID = 0
Description = 21:10:42 - インターネットの接続中にエラーが発生しました。 21:10:42 - サーバーと通信できません。.

[ OSession Events ]
Error - 2015/05/26 12:06:07 | Computer Name = Moonlight | Source = Microsoft Office 12 Sessions | ID = 7001
Description = ID: 1, Application Name: Microsoft Office Excel, Application Version:
12.0.6718.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 519
seconds with 480 seconds of active time. This session ended with a crash.

[ System Events ]
Error - 2015/06/15 7:33:20 | Computer Name = Moonlight | Source = Service Control Manager | ID = 7000
Description = Wyse RemoteAccess サービスを、次のエラーが原因で開始できませんでした: %%1053

Error - 2015/06/15 7:33:35 | Computer Name = Moonlight | Source = Service Control Manager | ID = 7026
Description = 次のブート開始ドライバーまたはシステム開始ドライバーを読み込めませんでした: feyuxr

Error - 2015/06/15 7:39:10 | Computer Name = Moonlight | Source = Service Control Manager | ID = 7022
Description = Windows Update サービスは開始時にハングしました。

Error - 2015/06/15 12:00:32 | Computer Name = Moonlight | Source = Service Control Manager | ID = 7026
Description = 次のブート開始ドライバーまたはシステム開始ドライバーを読み込めませんでした: feyuxr

Error - 2015/06/15 12:48:55 | Computer Name = Moonlight | Source = Service Control Manager | ID = 7026
Description = 次のブート開始ドライバーまたはシステム開始ドライバーを読み込めませんでした: feyuxr

Error - 2015/06/16 9:31:15 | Computer Name = Moonlight | Source = Service Control Manager | ID = 7026
Description = 次のブート開始ドライバーまたはシステム開始ドライバーを読み込めませんでした: feyuxr

Error - 2015/06/16 9:36:43 | Computer Name = Moonlight | Source = Service Control Manager | ID = 7022
Description = Windows Update サービスは開始時にハングしました。

Error - 2015/06/17 17:01:10 | Computer Name = Moonlight | Source = ipnathlp | ID = 31004
Description =

Error - 2015/06/17 17:01:14 | Computer Name = Moonlight | Source = ipnathlp | ID = 31004
Description =

Error - 2015/06/17 17:01:14 | Computer Name = Moonlight | Source = ipnathlp | ID = 31004
Description =


< End of report >
  • tomoaki_2000tox
  • 2015/06/18 (Thu) 06:46:18
それではOTLから処置にかかります
レスが遅くなってすみません。
再スキャンでExtraを含む全体のログを見せていただきました。
お手数かけましたが、おかげでだいぶ見えてきました。

それではスキャンで見つかったものをOTLから処置しましょう。

このレスの最後にスクリプトを貼っておくので、それを丸ごとコピーして、それをWindowsのメモ帳ファイルに貼り付けて保存しておいてください。
ただしユーザー名にあたる下記の箇所は
>C:\Users\xxxxxx
作業の前にご自身で本来のユーザー名に書き換えておいてください。

用意できたらPCをまたセーフモードで再起動してOTL起動してください。
起動したらOTLのウインドウ下部にスクリプトを貼り付けて、今度は「Run fix」(赤字のボタン)を押してください。
これでOTLでの処置が開始されます。

しばらく待って処置ができたらPCを通常モードで再起動すると、またOTLのログが出るはずなので、それを保存してから、しばらく様子見の後、OTLのログとともに状態報告をレスください。
OTLのスクリプトは以下になります。破線(-----)を含まない箇所を丸ごとコピーして、それをOTLに貼って作業してください
------------------------------------------
:OTL
DRV:[b]64bit:[/b] - [2007/06/01 12:04:51 | 000,109,256 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AnyDVD.sys -- (AnyDVD)
DRV - [2007/06/01 12:04:51 | 000,109,256 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\AnyDVD.sys -- (AnyDVD)
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}: "URL" = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}: "URL" = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}: "URL" = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}: "URL" = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
IE - HKLM\..\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}: "URL" = http://ck.jp.ap.valuecommerce.com/servlet/referral?sid=2597372&pid=879140005&vc_url=http%3a%2f%2fshopping%2esearch%2eyahoo%2eco%2ejp%2fsearch%3fp%3d{searchTerms}
IE - HKLM\..\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}: "URL" = http://www.amazon.co.jp/s/ref=azs_osd_ieajp?ie=UTF-8&tag=fujitsu07baawps-22&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
IE - HKLM\..\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}: "URL" = http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
IE - HKLM\..\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}: "URL" = http://pt.afl.rakuten.co.jp/c/0c1426d1.3abb9778/_RTfujt11011201?v=2&s=1&sitem={searchTerms}
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\
CHR - Extension: No name found = C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0\
[2015/06/02 03:51:58 | 000,000,040 | -HS- | M] () -- C:\ProgramData\.zreglib
[2011/11/02 22:34:05 | 000,000,040 | -HS- | C] () -- C:\ProgramData\.zreglib
"{6DFD069C-CC99-A146-C12E-C0F84BF1F631}" = TokyoLoader

:Files
C:\Windows\SysWOW64\drivers\AnyDVD.sys
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj
C:\ProgramData\.zreglib

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------------------------------------------
  • 悪代官
  • 2015/06/18 (Thu) 15:06:27
処理後のOTLログ
たいへんお世話になっています。
忙しい中、返信していただいでありがとうございます。

処理をすすめています。
自分なりにログを見てもいますがあまりよくわかっていません。
勉強不足で、すいません。
この作業で感染した原因などが分かるのでしょうか?


All processes killed
========== OTL ==========
Error: Unable to stop service AnyDVD!
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AnyDVD deleted successfully.
C:\Windows\SysNative\drivers\AnyDVD.sys moved successfully.
Error: Unable to stop service AnyDVD!
Service\Driver key AnyDVD not found.
C:\Windows\SysWOW64\drivers\AnyDVD.sys moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{090C073F-ED8B-44E9-960E-D15D01EDB224}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{090C073F-ED8B-44E9-960E-D15D01EDB224}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{090C073F-ED8B-44E9-960E-D15D01EDB224}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0E44C65B-A59E-4700-B305-90C2AA4E05C5}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1B3B647D-885B-452A-94D6-A26E2FAB5EB9}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4F3F8558-07EB-4980-9094-9F2E89ABE5AE}\ not found.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\_platform_specific\x86-64_ja folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\_platform_specific folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\_metadata folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0\audio folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.2_0 folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\_platform_specific\x86-64_ja folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\_platform_specific folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\_metadata folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\audio folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0 folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\zh_TW folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\zh_CN folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\pt_BR folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\ja folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\fr folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\es folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\en folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales\de folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\_locales folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0\images folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0 folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0\_metadata folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0 folder moved successfully.
C:\ProgramData\.zreglib moved successfully.
File C:\ProgramData\.zreglib not found.
========== FILES ==========
File\Folder C:\Windows\SysWOW64\drivers\AnyDVD.sys not found.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm folder moved successfully.
C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj folder moved successfully.
File\Folder C:\ProgramData\.zreglib not found.
========== COMMANDS ==========
C:\windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 81920 bytes
->Temporary Internet Files folder emptied: 49554 bytes
->Flash cache emptied: 57767 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: dub_cm_auto

User: Public

User: xxxxxx
->Temp folder emptied: 42364029 bytes
->Temporary Internet Files folder emptied: 109131668 bytes
->Java cache emptied: 922738 bytes
->Google Chrome cache emptied: 89569967 bytes
->Flash cache emptied: 171061 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 3794990 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 43665069 bytes
%systemroot%\sysnative\config\systemprofile\AppData\LocalLow\Sun\Java\Deployment folder emptied: 749 bytes
RecycleBin emptied: 7990537891 bytes

Total Files Cleaned = 7,897.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 06182015_221039

Files\Folders moved on Reboot...
C:\Users\xxxxxx\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • tomoaki_2000tox
  • 2015/06/18 (Thu) 23:00:44
OTLでの処置もできたようですね
作業と報告、ご苦労様です。
処置後のOTLログを見せていただきました。
では説明しながらレスしましょうか。

>自分なりにログを見てもいますがあまりよくわかっていません。

はい、ほとんどの一般ユーザーさんにとってはそれが普通ですよ。
気にする必要はないです。

>この作業で感染した原因などが分かるのでしょうか?

はい、OTLを含む各種解析ツールで解析したログには、そのPC内の正常なものから異常なものも含めて多数のデータが表示されます。
その中で、明らかに正規ではない異常なプログラムが見つかったらそれを慎重に調べてから、悪玉と判断できたらそれを処置していくわけですね。
HJTでもCCでもログに表示される内容は悪玉ばかりではありませんから、ログに出たものを片っ端から全部削除したらPCそのものが正常に起動もしなくなります。

PCに明るい方なら各ログを見れば自分よりも早く悪玉を見つけてその処置も効率的に進めてくれるはずです。
自分はログを解析してから処置レスしていくことから、某有名サイトで「ログバカ」なる称号をつけられたことがありますが、自分にとってはこれはむしろ名誉と受け止めています。
もっとも前置詞の「ログ-」は不要ですね。
あえてつけるなら「単なる-」か「ただの-」が適切でしょう。
自分としては「悪質な-」が目標ですが(←夜8時45分に成敗されちゃえ

PCのログはじっくり調べれば膨大な量の情報を解析することも可能です。
そこまで行かなくても、各ユーザー自身にとってもログは貴重な使い方ができますよ。
アンチウイルスソフトでもスキャンや警告の際には必ずログ(またはレポートとも表示されます)が作成されますが、そのログを見ることで検出されたものの名前とその情報類がユーザーにもある程度わかります。
ログを見ることでそのソフトの設定や操作もつかむことが可能なので、そのソフトを含むPCの運用がうまくできているかの確認もできるんですね。

セキュリティ以外のどんなソフトでもログを見ることができるなら暇を見てひとつずつ見ていくといいです。
ログを見るだけなら良くも悪くも変化は起きませんから。

さて本題の処置結果ですが、OTLで処置できるものはできたようですね。
各エントリもsuccessfully(処置成功)となってます。
事前に処置用スクリプトのユーザー名書き換えも正しく行ってくれたおかげですね。
お手間かかったでしょうがその甲斐ありましたよ。よく頑張ってくれましたね。

では現在異常は消えているかと思いますが、何か異常残っているならその内容をレスください。

特に異常なくなってるなら各ログから全体の再確認しましょう。
またCCで「コンテキストメニュー」タブを含む各タブのログとインストール情報ログと、HJTのログを取り直して、それらをまた見せてください。
一度処置した後に再感染や別口の感染受けてしまう事例も多いので、表面上で異常が見えなくてもまだ油断しないでください
  • 悪代官
  • 2015/06/19 (Fri) 18:46:53
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
返信が遅くなりました。
本当にお世話になりありがとうございます。
こうやって通りすがりの私も助けていただいて本当によかったと思っています。
ウィルス対策ソフトにまかせっきりではダメだったようですね。
PCの使用方法にも問題があったので、そこをもっと気をつけていこうと思います。


PCの様子ですが、とりあえずいまのところ異状はなさそうです。


HJTログです。
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 1:31:33, on 2015/06/21
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Unable to get Internet Explorer version!


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPCMNT.EXE
C:\Windows\vsnp2uvc.exe
C:\Program Files\Softex\OmniPass\hook\OpHook32BitProcess.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe
C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe
C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe
C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe
C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
C:\Users\xxxxxx\Desktop\HijackThis.exe

O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [IndicatorUtility] "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
O4 - HKLM\..\Run: [FJDust] C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
O4 - HKLM\..\Run: [NetworkPlayerServerHelper] "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
O4 - HKLM\..\Run: [snp2uvc] C:\windows\vsnp2uvc.exe
O4 - HKLM\..\Run: [IME JPN 2007 Migration] C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IoSecShadow] C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
O4 - HKLM\..\Run: [BSMLW06] "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
O4 - HKLM\..\Run: [IJNetworkScannerSelectorEX] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Startup: Bgcall.lnk = C:\Program Files (x86)\Bgcall\Bgcall.exe
O4 - Startup: BUFFALO NAS Navigator2.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
O4 - Startup: NAS Scheduler.lnk = C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe
O4 - Global Startup: Camera Monitor HD.lnk = D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
O4 - Global Startup: ImageBrowser EX Agent.lnk = C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
O4 - Global Startup: PointGrab ハンドジェスチャーコントロール.lnk = ?
O4 - Global Startup: SetPoint.lnk = C:\Program Files\SetPoint\SetPoint.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\Pioneer\NaviStudio3\DriveManager\System\navislink.html
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0E15796F-7B3A-4FB3-BF69-7B11D20A4A62} (AzbyClub ユーザー登録用 コントロール) - https://azby.fmworld.net/register/entrance/UserReg.CAB
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\ATService.exe
O23 - Service: BeatJam Video SCSI Service (BeatJamVideoService) - 株式会社ジャストシステム - C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe
O23 - Service: B's Recorder GOLD Library Service (bgsvclib) - B.H.A Corporation - D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe
O23 - Service: DiXiM Digital TV Service(21) - DigiOn, Inc. - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe
O23 - Service: DMRService plus - DigiOn - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: FjDstService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe
O23 - Service: FlinkService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\FLinkService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google アップデート サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: I-O DATA Device Management Service (IoDevMgrService) - I-O DATA DEVICE, INC. - C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: MSCSPTISRV - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe
O23 - Service: NAS PM Service (NasPmService) - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe
O23 - Service: NaviStudio3 EventNotificationService (NaviStudioSvc) - PIONEER CORPORATION - C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NetworkPlayer Server - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe
O23 - Service: O2FLASH - Unknown owner - C:\windows\system32\DRIVERS\o2flash.exe (file missing)
O23 - Service: Softex OmniPass Service (omniserv) - Softex Inc. - C:\Program Files\Softex\OmniPass\OmniServ.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: PowerUtility - スケジュール機能 (PUSCSRVC) - FUJITSU LIMITED - C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PCカルテ スケジュール サービス (SKARUTE) - FUJITSU LIMITED - C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wyse PocketCloud (WysePocketCloud) - Unknown owner - C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe
O23 - Service: Wyse RemoteAccess (WyseRemoteAccess) - DELL Inc. - C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe

--
End of file - 15285 bytes

CCのログです
インストール情報
+Lhaca 2012/02/08
ACER ICONIA 3G DRIVER INSTALL acer 2012/06/18 1.00.0524
ACER ICONIA TAB Driver Installation acer 2012/05/18 30.2 MB 1.06.1500
Adobe AIR Adobe Systems Incorporated 2015/05/18 17.0.0.172
Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/06/11 6.00 MB 17.0.0.188
Adobe Flash Player 18 ActiveX Adobe Systems Incorporated 2015/06/15 17.0 MB 18.0.0.160
AnyDVD SlySoft 2011/11/02
Apple Application Support Apple Inc. 2011/12/26 61.2 MB 2.1.5
Apple Software Update Apple Inc. 2011/12/26 2.38 MB 2.1.3.127
AuthenTec Fingerprint Software AuthenTec, Inc. 2011/03/23 11.4 MB 9.0.8.35
AzbyClubガジェットプログラム FUJITSU LIMITED 2011/03/23 3.10
BeatJam 株式会社ジャストシステム 2013/03/31 2.12
BeatJam Video Converter 株式会社ジャストシステム 2012/06/04 62.1 MB 1.02.0010
Bgcall 2.24 Hiroshi Inagaki 2011/11/03 1.05 MB
Bluetooth Stack for Windows by Toshiba TOSHIBA CORPORATION 2011/11/01 62.7 MB v6.00.05
BSMLW06 BUFFALO 2012/01/20 1.0.2
BUFFALO NAS Navigator2 2015/01/25
Canon Easy-PhotoPrint EX 2012/07/02
Canon Easy-PhotoPrint Pro 2012/07/02
Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data 2012/07/02
Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data 2012/07/02
Canon Easy-WebPrint EX 2012/07/02
Canon IJ Network Scanner Selector EX 2012/07/02
Canon IJ Network Tool 2012/07/02
Canon MG6200 series MP Drivers 2012/07/02
Canon MG6200 series On-screen Manual 2012/07/02
Canon MP Navigator EX 5.0 2012/07/02
Canon Utilities Digital Photo Professional Canon Inc. 2014/10/13 3.12.51.2
Canon Utilities EOS Sample Music Canon Inc. 2014/10/13 1.0.1.1
Canon Utilities EOS Utility Canon Inc. 2014/10/13 2.12.2.1
Canon Utilities ImageBrowser EX Canon Inc. 2014/10/13 1.5.0.6
Canon Utilities Picture Style Editor Canon Inc. 2014/10/13 1.12.2.0
CCleaner Piriform 2015/06/11 5.06
CloneDVD2 Elaborate Bytes 2011/11/02
Combined Community Codec Pack 2011-07-30 CCCP Project 2011/11/06 28.5 MB 2011.07.30.0
ConcatPDF 1.2.5 Ujihara 2014/05/27 208 KB 1.2.5
Corel Digital Studio for FUJITSU Corel Corporation 2011/11/01 883 MB 1.5.9.563
Corel Graphics - Windows Shell Extension Corel Corporation 2012/03/21 2.93 MB 15.2.0.686
Corel VideoStudio 12 Corel Corporation 2013/11/16 276 MB 12.0.0.0000
Corel WinDVD Corel Inc. 2011/11/01 213 MB 10.8.0.392
CorelDRAW Essentials X5 Corel Corporation 2012/04/15 3.39 GB 15.2.0.686
CorelDRAW Essentials X5 - Extra Content Corel Corporation 2012/04/15
CyberLink YouCam CyberLink Corp. 2011/11/01 129 MB 3.1.3904
Device Management Service I-O DATA DEVICE, INC. 2011/12/04 1.28
DigiBookBrowser Version 1.5.2.68 TriWorks Corp.JAPAN 2011/03/23 8.51 MB 1.5.2.68
DivXセットアップ DivX, LLC 2013/04/20 2.6.1.28
DiXiM Digital TV plus DigiOn 2012/09/18 2.1.4.5
Everio MediaBrowser HD Edition PIXELA 2015/01/27 2.02.222
F-LINK FUJITSU LIMITED 2011/11/01 3.87 MB 1.2.0.0
Fate/stay night TYPE-MOON 2013/03/08 1.2.1
FJ Camera Sonix 2011/11/01 5.8.52016.0
Free Hide Folder 2014/02/27
Fujitsu Display Manager 2011/11/01
GAMEPACK2011F DATT JAPAN INC. 2011/03/23 920 MB 2.11.0105
GIZMO 2011/03/23
GIZMO テレビ連携 for PIXELA 2 2011/03/23
GIZMO テレビ連携 for Windows Media Center 2011/03/23
GIZMO テレビ連携 コアコンポーネント 2011/03/23
HDDロック I-O DATA 2011/12/04 2.33
Hoppysoft QTConverter 1.3.0 2012/02/05
IndicatorUtility FUJITSU LIMITED 2011/03/23 1.27 MB 3.70.0.0
Inspirium辞書検索ライブラリ Fujitsu 2011/03/23 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 2011/03/23 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 2015/06/16 8.15.10.2559
Intel(R) Wireless Display Intel Corporation 2011/11/01 119 MB 2.0.27.0
JavaFX 2.1.1 Oracle Corporation 2012/07/09 20.8 MB 2.1.1
JUSTオンラインアップデート 株式会社ジャストシステム 2013/03/31 1.0.1.0
Malwarebytes Anti-Malware version 1.75.0.1300 Malwarebytes Corporation 2015/06/15 19.2 MB 1.75.0.1300
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/05/10 38.8 MB 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 2015/06/07 2.93 MB 4.5.51209
Microsoft Office Enterprise 2007 Microsoft Corporation 2012/01/11 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office ナビ 2010 Microsoft Corporation 2013/09/14 16.9 MB 14.0.7015.1000
Microsoft Silverlight Microsoft Corporation 2015/05/17 298 MB 5.1.40416.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/03/23 1.69 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2011/11/02 300 KB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2011/03/23 840 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 Microsoft Corporation 2014/01/26 238 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/01 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 2011/11/01 778 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2011/11/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/01 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/01 586 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/11/02 600 KB 9.0.30729.6161
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 2015/02/12 20.5 MB 11.0.61030.0
Microsoft Visual Studio Tools for Applications 2.0 - ENU Microsoft Corporation 2012/03/20 211 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Language Pack - JPN Microsoft Corporation 2012/03/18 98.2 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Microsoft Corporation 2012/03/18 158 KB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - JPN Microsoft Corporation 2012/03/18 226 KB 9.0.30729
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2011/11/02 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2011/11/02 1.33 MB 4.20.9876.0
NAVI*STUDIO3 DriveManager Pioneer 2011/11/03 40.5 MB 3.0.6.0
NAVI*STUDIO3 Launcher Pioneer 2011/11/03 2.16 MB 3.2
NAVI*STUDIO3 MaintenanceManager PIONEER CORPORATION 2011/11/03 10.6 MB 3.01.0007
NAVI*STUDIO3 UpdateManager Pioneer 2011/11/03 1.86 MB 1.00
NetworkPlayer CyberLink Corp. 2011/11/01 1.58.8511
NetworkPlayer サーバー DigiOn 2011/03/23 4.40
Norton 360 Symantec Corporation 2013/11/20 21.7.0.11
O2Micro Flash Memory Card Windows Driver O2Micro International LTD. 2013/12/25 6.65 MB 3.2.00.05
OmniPass Softex Inc. 2011/11/01 26.0 MB 7.00.61(x64)
OmniPass Softex Inc. 2011/03/23 7.00.61(x64)
PCカルテ FUJITSU LIMITED 2015/06/16 5.31 MB 1.1.0.1
PC乗換ガイド 富士通株式会社 2011/03/23 7.62 MB V6.0C
PDF-Viewer Tracker Software Products Ltd 2014/05/07 55.6 MB 2.5.214.2
PictBear Version 2.03 Fenrir Inc. 2011/11/01 7.67 MB
PlayMemories Home Sony Corporation 2015/01/27 4.1.00.12152
Plugfree NETWORK 富士通株式会社 2011/03/23 5.5.0.1
PocketCloud 会社名 2014/01/19 24.8 MB 2.7.18
PointGrab Hand Gesture Control PointGrab 2011/11/03 65.5 MB 02.00.01.1623
PowerUtility - スケジュール機能 FUJITSU LIMITED 2011/03/23 22.2 MB 4.12.0.0
QuickTime Apple Inc. 2012/01/07 67.1 MB 7.62.14.0
QuickTime Alternative 1.80 2011/12/26 1.80
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2011/03/23 6.0.1.6263
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2011/03/23 1.00 MB 2.0.32.0
Roxio Creator LJ Roxio 2011/11/01 128 MB 12.1.98.8
Scanner Mouse Dacuda 2014/04/24 87.1 MB 1.7.3
Sense YOU Technology 設定 Fujitsu LIMITED 2011/11/01 2.0.1.0
SetPoint ロジクール 2011/11/01 17.0 KB 4.80
ShowRoom for PowerPoint GlobFX Technologies 2011/11/23
Sleipnir Version 4.4.3 Fenrir Inc. 2015/06/15 261 MB 4.4.3
SmartSound Quicktracks Plugin SmartSound Software Inc 2013/11/16 16.1 MB 3.0.5.0
Sony Media Library Earth 6.0.00 Sony Corporation 2011/11/03 42.0 MB 6.0.00.10070
Sound Player Lilith for Unicode OSs 1.0 beta.3 http://www.project9k.jp/ 2014/01/26
Sound_Player_Lilith_0991b (Uninstall Only) 2014/01/26
SoundEngine Free Coderium 2012/02/05 4.6.0.17
Stella Theater Lite 2011/11/02
Stellarium 0.10.6.1 2011/11/02 66.6 MB
StreamTransport version: 1.0.2.2171 2013/09/10
SUPERAntiSpyware SUPERAntiSpyware.com 2015/06/08 51.9 MB 6.0.1194
Synaptics Pointing Device Driver Synaptics Incorporated 2011/03/23 14.0.16.0
TMPGEnc MovieStyle for carrozzeria Pegasys Inc. 2012/06/04 88.4 MB 1.1.3.55
Trixie 2011/03/23
WebM Project Directshow Filters 2012/06/04
Windows Live Essentials Microsoft Corporation 2011/03/23 15.4.3508.1109
Windows Media Encoder 9 Series 2011/11/01
Windows Media Player Firefox Plugin Microsoft Corp 2012/05/12 296 KB 1.0.0.8
いつもNAVI PC ZENRIN 2011/03/23 6.1.2
うれしレシピ Fujitsu 2011/03/23 2.1.0.3
お手入れナビ FUJITSU LIMITED 2011/03/23 4.26 MB 4.40.00.000
かんたんバックアップ FUJITSU LIMITED 2011/03/23 7.0.01
ゆったり設定2 FUJITSU LIMITED 2011/03/23 7.72 MB 4.0.2.0
らくらく手書き入力 FUJITSU LIMITED 2011/03/23 7.24 MB 5.0.30
らくらく無線スタートEX NEC AccessTechnica, Ltd. 2012/08/13
アタマスキャン 2011/11/01
アップデートナビ FUJITSU LIMITED 2015/06/16 2.03 MB 1.3.0021
インテル(R) PROSet/Wireless WiFi ソフトウェア Intel Corporation 2011/11/01 130 MB 14.01.0000
ウォーキング日記 FUJITSU LIMITED 2011/11/03 27.8 MB 1.1.0.3
サポートナビ FUJITSU LIMITED 2011/03/23 9.78 MB 3.1.0.0
スクリーンセーバー for FUJITSU PC FUJITSU LIMITED 2011/03/23 308 KB 2.5.1.5
セキュリティ対策ソフト選択 FUJITSU LIMITED 2011/03/23 1.37 MB 2.2.0.0
テレビNaviガジェット 株式会社プレゼントキャスト 2011/03/23 7.96 MB 1.12.0000
テレビ出力ユーティリティ 2011/11/01
デジカメde!!ムービーシアター Aisoft 2011/11/02 3.04
デジカメde!!同時プリント A.I.Soft,Inc. 2011/11/11 8.00
バッテリーユーティリティ FUJITSU LIMITED 2011/03/23 3.01.04.004
ポチっとな I-O DATA DEVICE,INC. 2011/12/04 2.43
マイフォト Corel Corporation 2011/11/01 51.5 MB 1.001.0017
ラベル屋さん9 A-one Co.,Ltd. 2014/05/13 9.0.610
リモート接続用の Windows Live Mesh ActiveX コントロール (日本語) Microsoft Corporation 2011/03/23 5.57 MB 15.4.5722.2
ワンタッチボタン設定 FUJITSU LIMITED 2011/03/23 3.36 MB 8.2.2.0
一太郎ビューア2013 株式会社ジャストシステム 2013/11/17 43.9 MB 23.0.3
富士通PC 辞書セット(広辞苑第六版+現代用語の基礎知識+学研パーソナル統合辞典+家庭医学館) 富士通株式会社 2011/03/23 5.00 KB 2.0.0
富士通モビリティセンター拡張 FUJITSU LIMITED 2011/03/23 390 KB 3.01.02.001
富士通拡張機能ユーティリティ FUJITSU LIMITED 2011/03/23 2.75 MB 3.4.1.0
省電力ユーティリティ FUJITSU LIMITED 2011/11/01 32.01.02.027
筆ぐるめ Ver.18 富士ソフト株式会社 2011/03/23 704 MB 18.00.0000
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2012/07/02 39.2 MB 1.14.0000
電子辞書 FUJITSU LIMITED 2011/03/23 19.0 MB V4.2
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2011/03/23 1.00.00.002
@メニュー FUJITSU LIMITED 2011/03/23 6.65 MB 5.3.4.0

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run Google Update "C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe" /c
有効 HKCU:Run SUPERAntiSpyware SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run ATSwpNav "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run
有効 HKLM:Run BSMLW06 DEXIN Corporation "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
無効 HKLM:Run Corel Photo Downloader Corel, Inc. "C:\Program Files (x86)\Corel\Corel MyPhoto\Corel Photo Downloader.exe" -startup
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
無効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
無効 HKLM:Run EzSptBtn FUJITSU LIMITED C:\Fujitsu\sptnavi\EzSptBtn4.exe
有効 HKLM:Run FDM7 FUJITSU LIMITED C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe
有効 HKLM:Run FJBATAID2 FUJITSU LIMITED C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe
有効 HKLM:Run FJDust FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
有効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
有効 HKLM:Run GrooveMonitor Microsoft Corporation "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run IJNetworkScannerSelectorEX CANON INC. C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
無効 HKLM:Run IME14 JPN Uninstall Microsoft Corporation C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /JPN /Log
有効 HKLM:Run IndicatorUtility FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
有効 HKLM:Run IntelPAN Intel(R) Corporation "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
有効 HKLM:Run IoSecShadow I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
無効 HKLM:Run ITSecMng TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
無効 HKLM:Run JustOnlineUpdate 株式会社ジャストシステム "C:\Program Files (x86)\Common Files\Justsystem\JustOnlineUpdate\JustOnlineUpdate.exe" /startup
有効 HKLM:Run LoadBtnHnd FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe
有効 HKLM:Run LoadFUJ02E3 FUJITSU LIMITED C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
有効 HKLM:Run LoadFujitsuQuickTouch FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe
有効 HKLM:Run LoadPUSCDaemon FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe
無効 HKLM:Run NaviStudio3User PIONEER CORPORATION C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 User.exe
有効 HKLM:Run NetworkPlayerServerHelper DigiOn, Inc. "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
有効 HKLM:Run NUSB3MON Renesas Electronics Corporation "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
有効 HKLM:Run OmniPass Softex Inc. C:\Program Files\Softex\OmniPass\scureapp.exe
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run PfNet FUJITSU LIMITED "C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
無効 HKLM:Run PSUTility FUJITSU LIMITED C:\Program Files\Fujitsu\PSUtility\TrayManager.exe
有効 HKLM:Run PUSCKAPLEXE FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe
無効 HKLM:Run PushButton I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\PushButton\PushButton.exe
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime Alternative\qttask.exe" -atboottime
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORDTSUPTBT
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run snp2uvc Sonix C:\windows\vsnp2uvc.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
無効 HKLM:Run UVS12 Preload Corel TW Corp. C:\Program Files (x86)\Corel\Corel VideoStudio 12\uvPL.exe
無効 HKLM:Run YouCam Mirage CyberLink "C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
無効 HKLM:Run YouCam Tray CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe" /s
有効 Startup Common Camera Monitor HD.lnk PIXELA CORPORATION D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
有効 Startup Common ImageBrowser EX Agent.lnk C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
有効 Startup Common PointGrab ハンドジェスチャーコントロール.lnk Acresso Software Inc. C:\windows\Installer\{8D0794C2-FE40-49FB-8695-E4A933A8BC98}\PointgrabShortcut_875D56C048FF45BAA9B778F0EEBE2A5E.exe
有効 Startup Common SetPoint.lnk Logicool, Inc. C:\Program Files\SetPoint\SetPoint.exe
有効 Startup User Bgcall.lnk C:\Program Files (x86)\Bgcall\Bgcall.exe
有効 Startup User BUFFALO NAS Navigator2.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
有効 Startup User NAS Scheduler.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe

IE
有効 Extension OneNote に送る Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
有効 Extension Research Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Helper Canon Easy-WebPrint EX BHO CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
無効 Helper DivX Plus Web Player HTML5 <video> DivX, LLC C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
無効 Helper Groove GFS Browser Helper Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper C:\Program Files\Java\jre6\bin\jp2ssv.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll
無効 Helper Norton Vulnerability Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
有効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Toolbar Canon Easy-WebPrint EX CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll

Chrome
有効 App Gmail 8.1 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension DivX Plus Web Player HTML5 <video> 2.1.2.145 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
有効 Extension Norton Security Toolbar 2014.7.12.21 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.21_0
有効 Extension TokyoLoader 0.67.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0
有効 Extension TokyoLoader for Chrome 0.71.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0
無効 Plugin Adobe Acrobat 10.1.3.23 最初のユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\Application\43.0.2357.124\pdf.dll
有効 Plugin DivX Plus Web Player 2, 2, 0, 52 最初のユーザー C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
有効 Plugin DivX VOD Helper Plug-in 1.1.0.6 最初のユーザー C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
有効 Plugin Google Update 1.3.21.111 最初のユーザー C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.290.11 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U29 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Native Client 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\Application\43.0.2357.124\ppGoogleNaClPluginChrome.dll
有効 Plugin Picasa 3, 1, 0, 0 最初のユーザー C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
有効 Plugin Remoting Viewer 最初のユーザー internal-remoting-viewer
有効 Plugin Shockwave Flash 11,2,202,235 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\Application\43.0.2357.124\gcswf32.dll
有効 Plugin Shockwave for Director 11.6.1r629 最初のユーザー C:\windows\system32\Adobe\Director\np32dsw.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初のユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live™ Photo Gallery 15.4.3508.1109_ship.wlx.w4m4 (ship) 最初のユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

スケジュールされたタスク
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PocketCloud Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudDesktopApp.exe
有効 Task PocketCloudUpdater Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\Updater.exe
有効 Task PocketCloudVirtualChannel Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\WPCRDPVirtualChannelServer.exe
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /c "D:\Applications\fmvuser\Signup.gadget" && pause
有効 Task {6033623A-FA9A-4AF6-A79C-242BD05E3C2B} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Desktop\bj2011upm.exe -d C:\Users\xxxxxx\Desktop
有効 Task {777B8897-AECE-4403-B972-D2A021F73EF2} "d:\program files (x86)\fenrir inc\sleipnir\bin\sleipnir.exe" http://ui.skype.com/ui/0/5.5.59.124/ja/abandoninstall?source=lightinstaller&page=tsPlugin&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled
有効 Task {AC9FB714-3A59-41B4-8DA2-F74DE7C6FD72} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Downloads\Creator12U-Fujitsu.exe -d C:\Users\xxxxxx\Downloads
有効 Task {F631EB80-3B33-4B3E-8EE5-E9B4909798A5} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\ProgramData\DivX\Setup\DivXSetup.exe -c /uninstall

コンテキストメニュー
有効 Directory Digital Photo Professional CANON INC. C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1"
有効 Drive Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 File MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 File Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 File TMPGEnc MovieStyle ShellExtension ContextMenu for carrozzeria Pegasys Inc. C:\Program Files (x86)\Pegasys Inc\TMPGEnc MovieStyle for carrozzeria\TMSShellExt.dll
有効 Folder BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 Folder MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 Folder Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"

  • tomoaki_2000tox
  • 2015/06/21 (Sun) 01:44:42
Adobe更新もしましょう
おはようございます。
現在は異常もないみたいですね。
ログも見せていただきました。

では以下の確認と作業をお願いします。

下記の更新をしておいてください。
ブラウザをIEでAdobe公式サイトに行って、下記を更新してください。
>Adobe Flash Player 17 NPAPI Adobe Systems Incorporated 2015/06/11 6.00 MB 17.0.0.188

次に下記アプリはよほど必要でなければアンインストール推奨です。
>AnyDVD SlySoft 2011/11/02
>CloneDVD2 Elaborate Bytes 2011/11/02
どうしても使いたいなら、それによるどんなトラブルもすべて自己責任で。

このあとまたCCでインストール情報ログだけ取り直して、また見せてください
  • 悪代官
  • 2015/06/21 (Sun) 07:38:35
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
お世話になっています
異状なしのままです。

Adobe Flash Player 17は、調べたところあまり必要そうではなかったのでアンインストールしています。
AnyDVDとCloneDVD2もアンインストールしています。

+Lhaca
ACER ICONIA 3G DRIVER INSTALL acer 2012/06/18 1.00.0524
ACER ICONIA TAB Driver Installation acer 2012/05/18 1.06.1500
Adobe AIR Adobe Systems Incorporated 2015/05/18 17.0.0.172
Adobe Flash Player 18 ActiveX Adobe Systems Incorporated 18.0.0.160
Apple Application Support Apple Inc. 2011/12/26 61.2 MB 2.1.5
Apple Software Update Apple Inc. 2011/12/26 2.38 MB 2.1.3.127
AuthenTec Fingerprint Software AuthenTec, Inc. 2011/03/23 11.4 MB 9.0.8.35
AzbyClubガジェットプログラム FUJITSU LIMITED 2011/03/23 3.10
BeatJam 株式会社ジャストシステム 2013/03/31 2.12
BeatJam Video Converter 株式会社ジャストシステム 2012/06/04 62.1 MB 1.02.0010
Bgcall 2.24 Hiroshi Inagaki 2011/11/03
Bluetooth Stack for Windows by Toshiba TOSHIBA CORPORATION 2011/11/01 62.7 MB v6.00.05
BSMLW06 BUFFALO 2012/01/20 1.0.2
BUFFALO NAS Navigator2
Canon Easy-PhotoPrint EX
Canon Easy-PhotoPrint Pro
Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data
Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data
Canon Easy-WebPrint EX
Canon IJ Network Scanner Selector EX
Canon IJ Network Tool
Canon MG6200 series MP Drivers
Canon MG6200 series On-screen Manual
Canon MP Navigator EX 5.0
Canon Utilities Digital Photo Professional Canon Inc. 3.12.51.2
Canon Utilities EOS Sample Music Canon Inc. 1.0.1.1
Canon Utilities EOS Utility Canon Inc. 2.12.2.1
Canon Utilities ImageBrowser EX Canon Inc. 1.5.0.6
Canon Utilities Picture Style Editor Canon Inc. 1.12.2.0
CCleaner Piriform 5.06
Combined Community Codec Pack 2011-07-30 CCCP Project 2011/11/06 2011.07.30.0
ConcatPDF 1.2.5 Ujihara 2014/05/27 208 KB 1.2.5
Corel Digital Studio for FUJITSU Corel Corporation 1.5.9.563.3
Corel Graphics - Windows Shell Extension Corel Corporation 2012/03/18 15.2.0.686
Corel VideoStudio 12 Corel Corporation 2013/11/16 12.0.0.0000
Corel WinDVD Corel Inc. 2011/11/01 213 MB 10.8.0.392
CorelDRAW Essentials X5 Corel Corporation 2012/04/15 15.2.0.686
CorelDRAW Essentials X5 - Extra Content Corel Corporation 2012/04/15
CyberLink YouCam CyberLink Corp. 2011/11/01 3.1.3904
Device Management Service I-O DATA DEVICE, INC. 2011/12/04 1.28
DigiBookBrowser Version 1.5.2.68 TriWorks Corp.JAPAN 2011/03/23 1.5.2.68
DivXセットアップ DivX, LLC 2.6.1.28
DiXiM Digital TV plus DigiOn 2012/09/18 2.1.4.5
Everio MediaBrowser HD Edition PIXELA 2015/01/27 2.02.222
F-LINK FUJITSU LIMITED 2015/06/21 3.1.0.0
Fate/stay night TYPE-MOON 2013/03/08 1.2.1
FJ Camera Sonix 2011/11/01 5.8.52016.0
Free Hide Folder
Fujitsu Display Manager 2011/03/23
GAMEPACK2011F DATT JAPAN INC. 2011/03/23 920 MB 2.11.0105
GIZMO
GIZMO テレビ連携 for PIXELA 2
GIZMO テレビ連携 for Windows Media Center
GIZMO テレビ連携 コアコンポーネント
Google Chrome Google Inc. 2015/06/21 43.0.2357.124
HDDロック I-O DATA 2011/12/04 2.33
Hoppysoft QTConverter 1.3.0
IndicatorUtility FUJITSU LIMITED 2011/03/23 3.70.0.0
Inspirium辞書検索ライブラリ Fujitsu 2011/03/23 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 8.15.10.2559
Intel(R) Wireless Display Intel Corporation 2011/11/01 119 MB 2.0.27.0
JavaFX 2.1.1 Oracle Corporation 2012/07/09 20.8 MB 2.1.1
JUSTオンラインアップデート 株式会社ジャストシステム 2013/03/31 1.0.1.0
Malwarebytes Anti-Malware version 1.75.0.1300 Malwarebytes Corporation 2015/06/15 1.75.0.1300
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/05/17 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 4.5.51209
Microsoft Office Enterprise 2007 Microsoft Corporation 2015/06/11 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office ナビ 2010 Microsoft Corporation 2013/09/14 16.9 MB 14.0.7015.1000
Microsoft Silverlight Microsoft Corporation 2015/05/17 298 MB 5.1.40416.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/03/23 1.69 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2013/11/16 2.51 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2011/11/02 572 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 Microsoft Corporation 2014/01/26 238 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/01 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 2011/11/01 778 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2011/11/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/01 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/01 586 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/11/02 600 KB 9.0.30729.6161
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 11.0.61030.0
Microsoft Visual Studio Tools for Applications 2.0 - ENU Microsoft Corporation 2012/03/20 211 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Language Pack - JPN Microsoft Corporation 2012/03/18 98.2 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Microsoft Corporation 2012/03/18 158 KB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - JPN Microsoft Corporation 2012/03/18 226 KB 9.0.30729
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2011/11/02 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2011/11/02 1.33 MB 4.20.9876.0
NAVI*STUDIO3 DriveManager Pioneer 2011/11/03 40.5 MB 3.0.6.0
NAVI*STUDIO3 Launcher Pioneer 2011/11/03 2.16 MB 3.2
NAVI*STUDIO3 MaintenanceManager PIONEER CORPORATION 2011/11/03 10.6 MB 3.01.0007
NAVI*STUDIO3 UpdateManager Pioneer 2011/11/03 1.86 MB 1.00
NetworkPlayer CyberLink Corp. 1.58.8511
NetworkPlayer サーバー DigiOn 2011/03/23 4.40
Norton 360 Symantec Corporation 2013/11/20 21.7.0.11
O2Micro Flash Memory Card Windows Driver O2Micro International LTD. 2013/12/25 3.2.00.05
OmniPass Softex Inc. 26.0 MB 7.00.61(x64)
OmniPass Softex Inc. 2011/03/23 7.00.61(x64)
PCカルテ FUJITSU LIMITED 2015/06/16 5.31 MB 1.1.0.1
PC乗換ガイド 富士通株式会社 2011/03/23 V6.0C
PDF-Viewer Tracker Software Products Ltd 2014/05/07 2.5.214.2
PictBear Version 2.03 Fenrir Inc. 2011/11/01
PlayMemories Home Sony Corporation 2015/01/27 4.1.00.12152
Plugfree NETWORK 富士通株式会社 2011/03/23 5.5.0.1
PocketCloud 会社名 2014/01/19 24.8 MB 2.7.18
PointGrab Hand Gesture Control PointGrab 2011/11/03 02.00.01.1623
PowerUtility - スケジュール機能 FUJITSU LIMITED 2011/03/23 4.12.0.0
QuickTime Apple Inc. 2012/01/07 67.1 MB 7.62.14.0
QuickTime Alternative 1.80 2011/12/26 1.80
Realtek Ethernet Controller Driver Realtek 2015/06/21 7.72.410.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2011/03/23 6.0.1.6263
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2011/03/23 2.0.32.0
Roxio Creator LJ Roxio 2015/06/21 12.1.7.3
Scanner Mouse Dacuda 2014/04/24 87.1 MB 1.7.3
Sense YOU Technology 設定 Fujitsu LIMITED 2011/11/01 2.0.1.0
SetPoint ロジクール 2011/11/01 4.80
ShowRoom for PowerPoint GlobFX Technologies 2011/11/23
Sleipnir Version 4.4.3 Fenrir Inc. 2015/06/15 4.4.3
SmartSound Quicktracks Plugin SmartSound Software Inc 2013/11/16 3.0.5.0
Sony Media Library Earth 6.0.00 Sony Corporation 2011/11/03 6.0.00.10070
Sound Player Lilith for Unicode OSs 1.0 beta.3 http://www.project9k.jp/ 2014/01/26
Sound_Player_Lilith_0991b (Uninstall Only)
SoundEngine Free Coderium 2012/02/05 4.6.0.17
Stella Theater Lite
Stellarium 0.10.6.1 2011/11/02
StreamTransport version: 1.0.2.2171 2013/09/10
SUPERAntiSpyware SUPERAntiSpyware.com 6.0.1194
Synaptics Pointing Device Driver Synaptics Incorporated 14.0.16.0
TMPGEnc MovieStyle for carrozzeria Pegasys Inc. 2012/06/04 88.4 MB 1.1.3.55
Trixie
WebM Project Directshow Filters
Windows Live Essentials Microsoft Corporation 2011/03/23 15.4.3508.1109
Windows Media Encoder 9 Series 2011/11/01
Windows Media Player Firefox Plugin Microsoft Corp 2012/05/12 296 KB 1.0.0.8
いつもNAVI PC ZENRIN 2011/03/23 6.1.2
うれしレシピ Fujitsu 2011/03/23 2.1.0.3
お手入れナビ FUJITSU LIMITED 2011/03/23 4.40.00.000
かんたんバックアップ FUJITSU LIMITED 2011/03/23 7.0.01
ゆったり設定2 FUJITSU LIMITED 2011/03/23 4.0.2.0
らくらく手書き入力 FUJITSU LIMITED 2011/03/23 7.24 MB 5.0.30
らくらく無線スタートEX NEC AccessTechnica, Ltd.
アタマスキャン 2011/11/01
アップデートナビ FUJITSU LIMITED 2015/06/16 2.03 MB 1.3.0021
インテル® PROSet/Wireless ソフトウェア Intel Corporation 16.7.0
ウォーキング日記 FUJITSU LIMITED 2011/11/03 1.1.0.3
サポートナビ FUJITSU LIMITED 2011/03/23 3.1.0.0
スクリーンセーバー for FUJITSU PC FUJITSU LIMITED 2011/03/23 2.5.1.5
セキュリティ対策ソフト選択 FUJITSU LIMITED 2011/03/23 2.2.0.0
テレビNaviガジェット 株式会社プレゼントキャスト 2011/03/23 7.96 MB 1.12.0000
テレビ出力ユーティリティ 2011/03/23
デジカメde!!ムービーシアター Aisoft 2011/11/02 3.04
デジカメde!!同時プリント A.I.Soft,Inc. 8.00
バッテリーユーティリティ FUJITSU LIMITED 2011/03/23 3.01.04.004
ポチっとな I-O DATA DEVICE,INC. 2011/12/04 2.43
マイフォト Corel Corporation 2011/11/01 51.5 MB 1.001.0017
ラベル屋さん9 A-one Co.,Ltd. 2014/05/13 9.0.610
リモート接続用の Windows Live Mesh ActiveX コントロール (日本語) Microsoft Corporation 2011/03/23 5.57 MB 15.4.5722.2
ワンタッチボタン設定 FUJITSU LIMITED 2011/03/23 8.2.2.0
一太郎ビューア2013 株式会社ジャストシステム 2013/11/17 43.9 MB 23.0.3
富士通PC 辞書セット(広辞苑第六版+現代用語の基礎知識+学研パーソナル統合辞典+家庭医学館) 富士通株式会社 2011/03/23 5.00 KB 2.0.0
富士通モビリティセンター拡張 FUJITSU LIMITED 2011/03/23 3.01.02.001
富士通拡張機能ユーティリティ FUJITSU LIMITED 2011/03/23 3.4.1.0
省電力ユーティリティ FUJITSU LIMITED 2011/11/01 32.01.02.027
筆ぐるめ Ver.18 富士ソフト株式会社 2011/03/23 704 MB 18.00.0000
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2012/07/02 39.2 MB 1.14.0000
電子辞書 FUJITSU LIMITED 2011/03/23 V4.2
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2011/03/23 1.00.00.002
@メニュー FUJITSU LIMITED 2011/03/23 5.3.4.0
  • tomoaki_2000tox
  • 2015/06/22 (Mon) 01:11:23
CCでのログを再度見せてもらえますか
またレスがおそくなってすみません。

AnyDVDとCloneDVD2は片付けたようなのでいいです。
Adobeも更新できてますね。

それでは念押しの確認します。

今度はCCでの各タブのログだけ取り直して、それを見せてもらえますか。
ここで感染が見つからなければそれはいいのですが、スタートアップに登録しているプロセスが多いみたいなので、それらを調べたうえでいくつか無効化で動作の負担を軽くしてみましょうか
  • 悪代官
  • 2015/06/22 (Mon) 21:27:03
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
いえいえお世話になっているので。。

CCスタートアップログ

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run Google Update "C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe" /c
有効 HKCU:Run SUPERAntiSpyware SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
有効 HKLM:Run ATSwpNav "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run
有効 HKLM:Run BSMLW06 DEXIN Corporation "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
無効 HKLM:Run Corel Photo Downloader Corel, Inc. "C:\Program Files (x86)\Corel\Corel MyPhoto\Corel Photo Downloader.exe" -startup
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
無効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
無効 HKLM:Run EzSptBtn FUJITSU LIMITED C:\Fujitsu\sptnavi\EzSptBtn4.exe
有効 HKLM:Run FDM7 FUJITSU LIMITED C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe
有効 HKLM:Run FJBATAID2 FUJITSU LIMITED C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe
有効 HKLM:Run FJDust FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
有効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
有効 HKLM:Run GrooveMonitor Microsoft Corporation "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
有効 HKLM:Run IJNetworkScannerSelectorEX CANON INC. C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
無効 HKLM:Run IME14 JPN Uninstall Microsoft Corporation C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /JPN /Log
有効 HKLM:Run IndicatorUtility FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
有効 HKLM:Run IoSecShadow I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
無効 HKLM:Run ITSecMng TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
無効 HKLM:Run JustOnlineUpdate 株式会社ジャストシステム "C:\Program Files (x86)\Common Files\Justsystem\JustOnlineUpdate\JustOnlineUpdate.exe" /startup
有効 HKLM:Run LoadBtnHnd FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe
有効 HKLM:Run LoadFUJ02E3 FUJITSU LIMITED C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
有効 HKLM:Run LoadFujitsuQuickTouch FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe
有効 HKLM:Run LoadPUSCDaemon FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe
無効 HKLM:Run NaviStudio3User PIONEER CORPORATION C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 User.exe
有効 HKLM:Run NetworkPlayerServerHelper DigiOn, Inc. "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
有効 HKLM:Run NUSB3MON Renesas Electronics Corporation "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
有効 HKLM:Run OmniPass Softex Inc. C:\Program Files\Softex\OmniPass\scureapp.exe
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run PfNet FUJITSU LIMITED "C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
無効 HKLM:Run PSUTility FUJITSU LIMITED C:\Program Files\Fujitsu\PSUtility\TrayManager.exe
有効 HKLM:Run PUSCKAPLEXE FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe
無効 HKLM:Run PushButton I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\PushButton\PushButton.exe
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime Alternative\qttask.exe" -atboottime
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORDTSUPTBT
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run snp2uvc Sonix C:\windows\vsnp2uvc.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
無効 HKLM:Run UVS12 Preload Corel TW Corp. C:\Program Files (x86)\Corel\Corel VideoStudio 12\uvPL.exe
無効 HKLM:Run YouCam Mirage CyberLink "C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
無効 HKLM:Run YouCam Tray CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe" /s
有効 Startup Common Camera Monitor HD.lnk PIXELA CORPORATION D:\Program Files (x86)\PIXELA\Everio MediaBrowser HD Edition\MBCameraMonitor.exe
有効 Startup Common ImageBrowser EX Agent.lnk C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe
有効 Startup Common PointGrab ハンドジェスチャーコントロール.lnk Acresso Software Inc. C:\windows\Installer\{8D0794C2-FE40-49FB-8695-E4A933A8BC98}\PointgrabShortcut_875D56C048FF45BAA9B778F0EEBE2A5E.exe
有効 Startup Common SetPoint.lnk Logicool, Inc. C:\Program Files\SetPoint\SetPoint.exe
有効 Startup User Bgcall.lnk C:\Program Files (x86)\Bgcall\Bgcall.exe
有効 Startup User BUFFALO NAS Navigator2.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\NasNavi.exe
有効 Startup User NAS Scheduler.lnk BUFFALO INC. C:\Program Files (x86)\BUFFALO\NASNAVI\nassche.exe

IEログ
有効 Extension OneNote に送る Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
有効 Extension Research Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Helper Canon Easy-WebPrint EX BHO CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
無効 Helper DivX Plus Web Player HTML5 <video> DivX, LLC C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
無効 Helper Groove GFS Browser Helper Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper C:\Program Files\Java\jre6\bin\jp2ssv.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll
無効 Helper Norton Vulnerability Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
有効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Toolbar Canon Easy-WebPrint EX CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll

Chrome

有効 App Gmail 8.1 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension DivX Plus Web Player HTML5 <video> 2.1.2.145 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
有効 Extension Norton Security Toolbar 2014.7.12.21 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.21_0
有効 Extension TokyoLoader 0.67.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0
有効 Extension TokyoLoader for Chrome 0.71.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0
無効 Plugin Adobe Acrobat 10.1.3.23 最初のユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\pdf.dll
有効 Plugin DivX Plus Web Player 2, 2, 0, 52 最初のユーザー C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
有効 Plugin DivX VOD Helper Plug-in 1.1.0.6 最初のユーザー C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
有効 Plugin Google Update 1.3.21.111 最初のユーザー C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.290.11 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U29 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Native Client 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\ppGoogleNaClPluginChrome.dll
有効 Plugin Picasa 3, 1, 0, 0 最初のユーザー C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
有効 Plugin Remoting Viewer 最初のユーザー internal-remoting-viewer
有効 Plugin Shockwave Flash 11,2,202,235 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.124\gcswf32.dll
有効 Plugin Shockwave for Director 11.6.1r629 最初のユーザー C:\windows\system32\Adobe\Director\np32dsw.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初のユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live™ Photo Gallery 15.4.3508.1109_ship.wlx.w4m4 (ship) 最初のユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

スケジュールされたタスク

有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PocketCloud Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudDesktopApp.exe
有効 Task PocketCloudUpdater Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\Updater.exe
有効 Task PocketCloudVirtualChannel Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\WPCRDPVirtualChannelServer.exe
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /c "D:\Applications\fmvuser\Signup.gadget" && pause
有効 Task {6033623A-FA9A-4AF6-A79C-242BD05E3C2B} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Desktop\bj2011upm.exe -d C:\Users\xxxxxx\Desktop
有効 Task {777B8897-AECE-4403-B972-D2A021F73EF2} "d:\program files (x86)\fenrir inc\sleipnir\bin\sleipnir.exe" http://ui.skype.com/ui/0/5.5.59.124/ja/abandoninstall?source=lightinstaller&page=tsPlugin&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled
有効 Task {79F520B2-B61C-4034-A416-F4B357414A59} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Desktop\新しいフォルダー\Creator12U-Fujitsu.exe -d C:\Users\xxxxxx\Desktop\新しいフォルダー
有効 Task {AC9FB714-3A59-41B4-8DA2-F74DE7C6FD72} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Downloads\Creator12U-Fujitsu.exe -d C:\Users\xxxxxx\Downloads
有効 Task {F631EB80-3B33-4B3E-8EE5-E9B4909798A5} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\ProgramData\DivX\Setup\DivXSetup.exe -c /uninstall

コンテキストメニュー

有効 Directory Digital Photo Professional CANON INC. C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1"
有効 Drive Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 File MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 File Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 File TMPGEnc MovieStyle ShellExtension ContextMenu for carrozzeria Pegasys Inc. C:\Program Files (x86)\Pegasys Inc\TMPGEnc MovieStyle for carrozzeria\TMSShellExt.dll
有効 Folder BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 Folder MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 Folder Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
  • tomoaki_2000tox
  • 2015/06/22 (Mon) 22:20:10
スタートアップを軽減しましょうか
おはようございます。
続きのログも見せていただきました。

やはりスタートアップがかなり多いですね。
富士通PCって現在そんなにプリインストールも多いんでしょうかね。

では以下の確認してみてください。

まずCCの「Windows」タブを開いてから、その中の下記を見てください。

有効 HKCU:Run SUPERAntiSpyware SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

有効 HKLM:Run ATSwpNav "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run

有効 HKLM:Run OmniPass Softex Inc. C:\Program Files\Softex\OmniPass\scureapp.exe

有効 Startup Common ImageBrowser EX Agent.lnk C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe

これらはPC起動時から必要でなければCC上から「無効」にしておくといいです。削除はしないように。
指紋認証やImageBrowserをPC起動時から必要なら有効のままでもいいですが、無効にしておいても各アプリ自体は手動で起動すれば普通に使えます。

他にもWinodwsタブ内のエントリで、あまり必要がないものは無効しておくとそれだけで動作負担が軽くなります。
アプリ自体が必要でないものはコンパネからアプリ自体をアンインストールをお勧めします。

このあとまたCCでWinodwsタブのログだけ取り直して、それをまた見せてください
  • 悪代官
  • 2015/06/23 (Tue) 08:11:22
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
お世話になっています。
いくつか無効にしてみました。

ところで今回の感染のなんですが、アップデートをしていないソフトがあったことや
フリーのソフトの中で危険なものがありそれをダウンロードして使っていたことが原因と考えていいんでしょうか?
今後、同じような感染を防ぐためにはどんなことに気をつければいいのでしょうか?
(聞いてばっかりですいません)

スタートアップのログ
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
無効 HKCU:Run Google Update "C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe" /c
無効 HKCU:Run SUPERAntiSpyware SUPERAntiSpyware C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
無効 HKLM:Run ATSwpNav "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run
有効 HKLM:Run BSMLW06 DEXIN Corporation "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
無効 HKLM:Run Corel Photo Downloader Corel, Inc. "C:\Program Files (x86)\Corel\Corel MyPhoto\Corel Photo Downloader.exe" -startup
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
無効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
無効 HKLM:Run EzSptBtn FUJITSU LIMITED C:\Fujitsu\sptnavi\EzSptBtn4.exe
有効 HKLM:Run FDM7 FUJITSU LIMITED C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe
有効 HKLM:Run FJBATAID2 FUJITSU LIMITED C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe
有効 HKLM:Run FJDust FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
有効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
有効 HKLM:Run GrooveMonitor Microsoft Corporation "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
無効 HKLM:Run IJNetworkScannerSelectorEX CANON INC. C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
無効 HKLM:Run IME14 JPN Uninstall Microsoft Corporation C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /JPN /Log
有効 HKLM:Run IndicatorUtility FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
有効 HKLM:Run IoSecShadow I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
無効 HKLM:Run ITSecMng TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
無効 HKLM:Run JustOnlineUpdate 株式会社ジャストシステム "C:\Program Files (x86)\Common Files\Justsystem\JustOnlineUpdate\JustOnlineUpdate.exe" /startup
有効 HKLM:Run LoadBtnHnd FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe
有効 HKLM:Run LoadFUJ02E3 FUJITSU LIMITED C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
有効 HKLM:Run LoadFujitsuQuickTouch FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe
有効 HKLM:Run LoadPUSCDaemon FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe
無効 HKLM:Run NaviStudio3User PIONEER CORPORATION C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 User.exe
有効 HKLM:Run NetworkPlayerServerHelper DigiOn, Inc. "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
有効 HKLM:Run NUSB3MON Renesas Electronics Corporation "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
無効 HKLM:Run OmniPass Softex Inc. C:\Program Files\Softex\OmniPass\scureapp.exe
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run PfNet FUJITSU LIMITED "C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
無効 HKLM:Run PSUTility FUJITSU LIMITED C:\Program Files\Fujitsu\PSUtility\TrayManager.exe
有効 HKLM:Run PUSCKAPLEXE FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe
無効 HKLM:Run PushButton I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\PushButton\PushButton.exe
無効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime Alternative\qttask.exe" -atboottime
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORDTSUPTBT
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run snp2uvc Sonix C:\windows\vsnp2uvc.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
無効 HKLM:Run UVS12 Preload Corel TW Corp. C:\Program Files (x86)\Corel\Corel VideoStudio 12\uvPL.exe
無効 HKLM:Run YouCam Mirage CyberLink "C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
無効 HKLM:Run YouCam Tray CyberLink Corp. "C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe" /s
無効 Startup Common Camera Monitor HD.lnk PIXELA CORPORATION D:\PROGRA~1\PIXELA\EVERIO~1\MBCAME~1.EXE
無効 Startup Common ImageBrowser EX Agent.lnk C:\PROGRA~2\Canon\IMAGEB~1\MFMANA~1.EXE
有効 Startup Common PointGrab ハンドジェスチャーコントロール.lnk Acresso Software Inc. C:\windows\Installer\{8D0794C2-FE40-49FB-8695-E4A933A8BC98}\PointgrabShortcut_875D56C048FF45BAA9B778F0EEBE2A5E.exe
有効 Startup Common SetPoint.lnk Logicool, Inc. C:\Program Files\SetPoint\SetPoint.exe
有効 Startup User Bgcall.lnk C:\Program Files (x86)\Bgcall\Bgcall.exe
無効 Startup User BUFFALO NAS Navigator2.lnk BUFFALO INC. C:\PROGRA~2\BUFFALO\NASNAVI\NasNavi.exe
無効 Startup User NAS Scheduler.lnk BUFFALO INC. C:\PROGRA~2\BUFFALO\NASNAVI\nassche.exe
  • tomoaki_2000tox
  • 2015/06/23 (Tue) 23:01:29
CCの設定確認も
今日もレスが遅くなってすみません。
梅雨時にちなんでカタツムリ悪代官とでも呼んでください(爆

>アップデートをしていないソフトがあったことや
>フリーのソフトの中で危険なものがありそれをダウンロードして使っていたことが原因と考えていいんでしょうか?

各種更新の重要性は、意外と理解されない方が多いのです。
例を挙げるとAdobe系アプリやJavaはその脆弱性を突いての攻撃や感染が古くから世界中でもっとも多い感染原因とも言われます。
また圧縮解凍ソフトでも脆弱性を修正しないと、ネット上でDLしたファイルに悪意の仕掛けがされていたらそれを解凍したために感染する恐れもあります。

そしてこれも重要ですが、WindowsUpdateの更新を怠ったことによる感染は、どんな高性能なセキュリティソフトを入れていても【まったく】防げません。
ユーザーが自身でPCの各プログラムの確認とその修正をしない限り、セキュリティソフト側が自動で修正はしません。
本日またAdobe Flash Playerの更新がリリースされましたが、これはその脆弱性を突く感染事例が判明したための修正です。

感染を受けて目に見える異常や被害が出ないとわからない方も多いでしょうが、それを知った時には既に手遅れで処置もできなくなっている場合も少なくないです。
そういった重篤な感染被害者さんも幾度となく見てきました。

さてCCログを見せていただきましたが、指示したエントリは無効化されましたね。
それだけでもいくつかは軽くなったはずですが、他にもPC起動時に必要ないものがあれば無効化しておくといいです。

それとCCで以下の設定もしてください。
CC起動して「オプション」から「モニタリング」画面で、「システムモニタリング」「アクティブモニタリング」欄のチェックをともに外してください。
この時警告が出るでしょうが、構わず「はい」で進めていいです。

CCはしばらく前のバージョンからこの機能で常駐化したため、それが有効になっているとPC動作にも結構負荷をかける仕様になったのです。
これを外すだけでも動作が軽くなるので、CCの常駐監視機能が必要でなければ無効化しておいていいです。
どのみち今回のスレが解決したらCCを含む各作業ツールは片付けしてもらうのですが、以後もCCを継続使用するならこれを含めて各設定と機能を把握して正しく使ってください。

それではCCの設定修正後に動作確認のあと、また状態報告をレスください
  • 悪代官
  • 2015/06/24 (Wed) 22:01:42
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
私も遅くなってしまいました
忙しいところありがとうございます

これからAdobeアプリやJavaなどの更新をに気をつけてみたいとおもいます。
さっそくAdobe Flash Playerは更新しました(笑)

CCに設定は今後使用するかはわかりませんが、設定しました。
また、スタートアップを減らしてから、起動してから安定するまでの時間が短くなったように感じます。
今のところPCの方は安定しているようです。

また、なんとなく気になってノートンやMBAMでのスキャンをもう一度やってみましたが、何も検出されておりません。
  • tomoaki_2000tox
  • 2015/06/26 (Fri) 00:02:57
様子見の結果が最後のヤマでしょう
またレスが遅くなってすみません。

>スタートアップを減らしてから、起動してから安定するまでの時間が短くなったように感じます。
>今のところPCの方は安定しているようです。

はい、CCの設定変更でやはり軽くなりましたか。
ではそこはいいでしょう。

他にも異常は出てないようですね。

それでは最後の様子見しましょう。
そのままPCを使いながら1週間様子見してから、そこでまたCCの各ログとインストール情報ログとHJTログを取り直して、それらを状態報告とともにレスください。

この様子見後のログと状態でどうなっているかが最後のヤマになるでしょう
  • 悪代官
  • 2015/06/26 (Fri) 21:36:06
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
返信ありがとうございます。

いまのところ安定しています。
一週間様子をみてみます。

またご指導ください。
  • tomoaki_2000tox
  • 2015/06/27 (Sat) 22:32:16
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
お世話になっています。

一週間たちましたが、PCは普通に使えています。
MBAMやNortonでは特に脅威は検出されていません。

Nortonのログで昨日、重大度中で「権限がないアクセスを遮断しました (プロセスデータのアクセス)」遮断しましたC:\WINDOWS\SYSTEM32\CONHOST.EXEとか、C:\WINDOWS\SYSTEM32\SVCHOST.EXE
というようなログが出ていたのが気にはなりましたが、調べてみると大丈夫そうですが、これはかんけいなさそうですか?

HJTログ
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 0:25:41, on 2015/07/05
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Unable to get Internet Explorer version!


Boot mode: Normal

Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPCMNT.EXE
C:\Windows\vsnp2uvc.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe
C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe
C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe
C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe
C:\Program Files\SetPoint\x86\SetPoint32.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\Sleipnir.exe
C:\Program Files (x86)\Fenrir Inc\Sleipnir\bin\TouchPaging.exe
C:\Users\xxxxxx\Desktop\HijackThis.exe

O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Increase performance and video formats for your HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [IndicatorUtility] "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
O4 - HKLM\..\Run: [FJDust] C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
O4 - HKLM\..\Run: [snp2uvc] C:\windows\vsnp2uvc.exe
O4 - HKLM\..\Run: [IME JPN 2007 Migration] C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [IoSecShadow] C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
O4 - HKLM\..\Run: [BSMLW06] "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
O4 - HKLM\..\Run: [NetworkPlayerServerHelper] "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
O4 - Startup: Bgcall.lnk = C:\Program Files (x86)\Bgcall\Bgcall.exe
O4 - Global Startup: PointGrab ハンドジェスチャーコントロール.lnk = ?
O4 - Global Startup: SetPoint.lnk = C:\Program Files\SetPoint\SetPoint.exe
O8 - Extra context menu item: Microsoft Excel にエクスポート(&X) - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: OneNote に送る(&N) - res://C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: ドライブマネージャーで検索する - C:\Program Files (x86)\Pioneer\NaviStudio3\DriveManager\System\navislink.html
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: OneNote に送る - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {0E15796F-7B3A-4FB3-BF69-7B11D20A4A62} (AzbyClub ユーザー登録用 コントロール) - https://azby.fmworld.net/register/entrance/UserReg.CAB
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: IntelR CentrinoR Wireless BluetoothR + High Speed Service (AMPPALR3) - Intel Corporation - C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
O23 - Service: AuthenTec Fingerprint Service (ATService) - AuthenTec, Inc. - C:\Program Files\Fingerprint Sensor\ATService.exe
O23 - Service: BeatJam Video SCSI Service (BeatJamVideoService) - 株式会社ジャストシステム - C:\Program Files (x86)\JustSystems\BeatJam Video Converter\BjvPSsvc.exe
O23 - Service: B's Recorder GOLD Library Service (bgsvclib) - B.H.A Corporation - D:\Program Files (x86)\JustSystems\OpenMG BeatJam\Plugin\bgsvclib.exe
O23 - Service: Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service (BTHSSecurityMgr) - Intel(R) Corporation - C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
O23 - Service: CLHNService3 - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe
O23 - Service: DataExchangeUtilityService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\F-LINK\DEUService.exe
O23 - Service: DiXiM Digital TV Service(21) - DigiOn, Inc. - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\Service\DoDMCService.exe
O23 - Service: DMRService plus - DigiOn - C:\Program Files (x86)\DigiOn\DiXiM Digital TV plus\DMRService plus.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: FjDstService - FUJITSU LIMITED - C:\Program Files (x86)\Fujitsu\DustSolution\FJDService.exe
O23 - Service: FUJ02E3Service - FUJITSU LIMITED - C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
O23 - Service: Google アップデート サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: I-O DATA Device Management Service (IoDevMgrService) - I-O DATA DEVICE, INC. - C:\Program Files (x86)\I-O DATA\IoDevMgrService\IoDevMgrService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: MSCSPTISRV - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\N360.exe
O23 - Service: NAS PM Service (NasPmService) - BUFFALO INC. - C:\Program Files (x86)\BUFFALO\NASNAVI\nassvc.exe
O23 - Service: NaviStudio3 EventNotificationService (NaviStudioSvc) - PIONEER CORPORATION - C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 EventNotificationService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: NetworkPlayer Server - Unknown owner - C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe
O23 - Service: O2FLASH - Unknown owner - C:\windows\system32\DRIVERS\o2flash.exe (file missing)
O23 - Service: Softex OmniPass Service (omniserv) - Softex Inc. - C:\Program Files\Softex\OmniPass\OmniServ.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: PFNService - FUJITSU LIMITED - C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe
O23 - Service: PGService - PointGrab LTD - C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGService.exe
O23 - Service: PMBDeviceInfoProvider - Sony Corporation - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
O23 - Service: PowerSavingUtilityService - FUJITSU LIMITED - C:\Program Files\Fujitsu\PSUtility\PSUService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: PowerUtility - スケジュール機能 (PUSCSRVC) - FUJITSU LIMITED - C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PCカルテ スケジュール サービス (SKARUTE) - FUJITSU LIMITED - C:\Program Files\Fujitsu\SKARUTE\fjkartemon.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: Sony Digital Media Server (SOHDms) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe
O23 - Service: Sony Device Searcher (SOHDs) - Sony Corporation - C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe
O23 - Service: VAIO Entertainment Common Service (SpfService) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Unknown owner - C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe (file missing)
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
O23 - Service: UDSS - Unknown owner - c:\Program Files (x86)\Common Files\Ulead Systems\UDSS\UDSS.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: UpdateNaviInstallService - FUJITSU LIMITED - C:\Program Files\Fujitsu\chitose\updnvsrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wyse PocketCloud (WysePocketCloud) - Unknown owner - C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudService.exe
O23 - Service: Wyse RemoteAccess (WyseRemoteAccess) - DELL Inc. - C:\Program Files (x86)\Wyse\PocketCloud\WyseRemoteAccess.exe
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - IntelR Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 14758 bytes
  • tomoaki_2000tox
  • 2015/07/05 (Sun) 00:48:04
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
続きですCCでのログです

インストール情報

+Lhaca
ACER ICONIA 3G DRIVER INSTALL acer 2012/06/18 1.00.0524
ACER ICONIA TAB Driver Installation acer 2012/05/18 1.06.1500
Adobe AIR Adobe Systems Incorporated 2015/05/18 17.0.0.172
Adobe Flash Player 18 ActiveX Adobe Systems Incorporated 18.0.0.194
Apple Application Support Apple Inc. 2011/12/26 61.2 MB 2.1.5
Apple Software Update Apple Inc. 2011/12/26 2.38 MB 2.1.3.127
AuthenTec Fingerprint Software AuthenTec, Inc. 2011/03/23 11.4 MB 9.0.8.35
AzbyClubガジェットプログラム FUJITSU LIMITED 2011/03/23 3.10
BeatJam 株式会社ジャストシステム 2013/03/31 2.12
BeatJam Video Converter 株式会社ジャストシステム 2012/06/04 62.1 MB 1.02.0010
Bgcall 2.24 Hiroshi Inagaki 2011/11/03
Bluetooth Stack for Windows by Toshiba TOSHIBA CORPORATION 2011/11/01 62.7 MB v6.00.05
BSMLW06 BUFFALO 2012/01/20 1.0.2
BUFFALO NAS Navigator2
Canon Easy-PhotoPrint EX
Canon Easy-PhotoPrint Pro
Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data
Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data
Canon Easy-WebPrint EX
Canon IJ Network Scanner Selector EX
Canon IJ Network Tool
Canon MG6200 series MP Drivers
Canon MG6200 series On-screen Manual
Canon MP Navigator EX 5.0
Canon Utilities Digital Photo Professional Canon Inc. 3.12.51.2
Canon Utilities EOS Sample Music Canon Inc. 1.0.1.1
Canon Utilities EOS Utility Canon Inc. 2.12.2.1
Canon Utilities ImageBrowser EX Canon Inc. 1.5.0.6
Canon Utilities Picture Style Editor Canon Inc. 1.12.2.0
CCleaner Piriform 5.06
Combined Community Codec Pack 2011-07-30 CCCP Project 2011/11/06 2011.07.30.0
ConcatPDF 1.2.5 Ujihara 2014/05/27 208 KB 1.2.5
Corel Digital Studio for FUJITSU Corel Corporation 1.5.9.563.3
Corel Graphics - Windows Shell Extension Corel Corporation 2012/03/18 15.2.0.686
Corel VideoStudio 12 Corel Corporation 2013/11/16 12.0.0.0000
Corel WinDVD Corel Inc. 2011/11/01 213 MB 10.8.0.392
CorelDRAW Essentials X5 Corel Corporation 2012/04/15 15.2.0.686
CorelDRAW Essentials X5 - Extra Content Corel Corporation 2012/04/15
CyberLink YouCam CyberLink Corp. 2011/11/01 3.1.3904
Device Management Service I-O DATA DEVICE, INC. 2011/12/04 1.28
DigiBookBrowser Version 1.5.2.68 TriWorks Corp.JAPAN 2011/03/23 1.5.2.68
DivXセットアップ DivX, LLC 2.6.1.28
DiXiM Digital TV plus DigiOn 2012/09/18 2.1.4.5
Everio MediaBrowser HD Edition PIXELA 2015/01/27 2.02.222
F-LINK FUJITSU LIMITED 2015/06/21 3.1.0.0
Fate/stay night TYPE-MOON 2013/03/08 1.2.1
FJ Camera Sonix 2011/11/01 5.8.52016.0
Free Hide Folder
Fujitsu Display Manager 2011/03/23
GAMEPACK2011F DATT JAPAN INC. 2011/03/23 920 MB 2.11.0105
GIZMO
GIZMO テレビ連携 for PIXELA 2
GIZMO テレビ連携 for Windows Media Center
GIZMO テレビ連携 コアコンポーネント
Google Chrome Google Inc. 2015/06/21 43.0.2357.130
HDDロック I-O DATA 2011/12/04 2.33
Hoppysoft QTConverter 1.3.0
IndicatorUtility FUJITSU LIMITED 2011/03/23 3.70.0.0
Inspirium辞書検索ライブラリ Fujitsu 2011/03/23 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 8.15.10.2559
Intel(R) Wireless Display Intel Corporation 2011/11/01 119 MB 2.0.27.0
JavaFX 2.1.1 Oracle Corporation 2012/07/09 20.8 MB 2.1.1
JUSTオンラインアップデート 株式会社ジャストシステム 2013/03/31 1.0.1.0
Malwarebytes Anti-Malware version 1.75.0.1300 Malwarebytes Corporation 2015/06/15 1.75.0.1300
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/05/17 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 4.5.51209
Microsoft Office Enterprise 2007 Microsoft Corporation 2015/06/11 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office ナビ 2010 Microsoft Corporation 2013/09/14 16.9 MB 14.0.7015.1000
Microsoft Silverlight Microsoft Corporation 2015/05/17 298 MB 5.1.40416.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/03/23 1.69 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2013/11/16 2.51 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2011/11/02 572 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 Microsoft Corporation 2014/01/26 238 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/01 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 2011/11/01 778 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2011/11/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/01 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/01 586 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/11/02 600 KB 9.0.30729.6161
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 11.0.61030.0
Microsoft Visual Studio Tools for Applications 2.0 - ENU Microsoft Corporation 2012/03/20 211 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Language Pack - JPN Microsoft Corporation 2012/03/18 98.2 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Microsoft Corporation 2012/03/18 158 KB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - JPN Microsoft Corporation 2012/03/18 226 KB 9.0.30729
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2011/11/02 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2011/11/02 1.33 MB 4.20.9876.0
NAVI*STUDIO3 DriveManager Pioneer 2011/11/03 40.5 MB 3.0.6.0
NAVI*STUDIO3 Launcher Pioneer 2011/11/03 2.16 MB 3.2
NAVI*STUDIO3 MaintenanceManager PIONEER CORPORATION 2011/11/03 10.6 MB 3.01.0007
NAVI*STUDIO3 UpdateManager Pioneer 2011/11/03 1.86 MB 1.00
NetworkPlayer CyberLink Corp. 1.58.8511
NetworkPlayer サーバー DigiOn 2011/03/23 4.40
Norton 360 Symantec Corporation 2013/11/20 21.7.0.11
O2Micro Flash Memory Card Windows Driver O2Micro International LTD. 2013/12/25 3.2.00.05
OmniPass Softex Inc. 26.0 MB 7.00.61(x64)
OmniPass Softex Inc. 2011/03/23 7.00.61(x64)
PCカルテ FUJITSU LIMITED 2015/06/16 5.31 MB 1.1.0.1
PC乗換ガイド 富士通株式会社 2011/03/23 V6.0C
PDF-Viewer Tracker Software Products Ltd 2014/05/07 2.5.214.2
PictBear Version 2.03 Fenrir Inc. 2011/11/01
PlayMemories Home Sony Corporation 2015/01/27 4.1.00.12152
Plugfree NETWORK 富士通株式会社 2011/03/23 5.5.0.1
PocketCloud 会社名 2014/01/19 24.8 MB 2.7.18
PointGrab Hand Gesture Control PointGrab 2011/11/03 02.00.01.1623
PowerUtility - スケジュール機能 FUJITSU LIMITED 2011/03/23 4.12.0.0
QuickTime Apple Inc. 2012/01/07 67.1 MB 7.62.14.0
QuickTime Alternative 1.80 2011/12/26 1.80
Realtek Ethernet Controller Driver Realtek 2015/06/21 7.72.410.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2011/03/23 6.0.1.6263
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2011/03/23 2.0.32.0
Roxio Creator LJ Roxio 2015/06/21 12.1.7.3
Scanner Mouse Dacuda 2014/04/24 87.1 MB 1.7.3
Sense YOU Technology 設定 Fujitsu LIMITED 2011/11/01 2.0.1.0
SetPoint ロジクール 2011/11/01 4.80
ShowRoom for PowerPoint GlobFX Technologies 2011/11/23
Sleipnir Version 4.4.4 Fenrir Inc. 2015/06/15 4.4.4
SmartSound Quicktracks Plugin SmartSound Software Inc 2013/11/16 3.0.5.0
Sony Media Library Earth 6.0.00 Sony Corporation 2011/11/03 6.0.00.10070
Sound Player Lilith for Unicode OSs 1.0 beta.3 http://www.project9k.jp/ 2014/01/26
Sound_Player_Lilith_0991b (Uninstall Only)
SoundEngine Free Coderium 2012/02/05 4.6.0.17
Stella Theater Lite
Stellarium 0.10.6.1 2011/11/02
StreamTransport version: 1.0.2.2171 2013/09/10
SUPERAntiSpyware SUPERAntiSpyware.com 6.0.1194
Synaptics Pointing Device Driver Synaptics Incorporated 14.0.16.0
TMPGEnc MovieStyle for carrozzeria Pegasys Inc. 2012/06/04 88.4 MB 1.1.3.55
Trixie
WebM Project Directshow Filters
Windows Live Essentials Microsoft Corporation 2011/03/23 15.4.3508.1109
Windows Media Encoder 9 Series 2011/11/01
Windows Media Player Firefox Plugin Microsoft Corp 2012/05/12 296 KB 1.0.0.8
いつもNAVI PC ZENRIN 2011/03/23 6.1.2
うれしレシピ Fujitsu 2011/03/23 2.1.0.3
お手入れナビ FUJITSU LIMITED 2011/03/23 4.40.00.000
かんたんバックアップ FUJITSU LIMITED 2011/03/23 7.0.01
ゆったり設定2 FUJITSU LIMITED 2011/03/23 4.0.2.0
らくらく手書き入力 FUJITSU LIMITED 2011/03/23 7.24 MB 5.0.30
らくらく無線スタートEX NEC AccessTechnica, Ltd.
アタマスキャン 2011/11/01
アップデートナビ FUJITSU LIMITED 2015/06/16 2.03 MB 1.3.0021
インテル® PROSet/Wireless ソフトウェア Intel Corporation 16.7.0
ウォーキング日記 FUJITSU LIMITED 2011/11/03 1.1.0.3
サポートナビ FUJITSU LIMITED 2011/03/23 3.1.0.0
スクリーンセーバー for FUJITSU PC FUJITSU LIMITED 2011/03/23 2.5.1.5
セキュリティ対策ソフト選択 FUJITSU LIMITED 2011/03/23 2.2.0.0
テレビNaviガジェット 株式会社プレゼントキャスト 2011/03/23 7.96 MB 1.12.0000
テレビ出力ユーティリティ 2011/03/23
デジカメde!!ムービーシアター Aisoft 2011/11/02 3.04
デジカメde!!同時プリント A.I.Soft,Inc. 8.00
バッテリーユーティリティ FUJITSU LIMITED 2011/03/23 3.01.04.004
ポチっとな I-O DATA DEVICE,INC. 2011/12/04 2.43
マイフォト Corel Corporation 2011/11/01 51.5 MB 1.001.0017
ラベル屋さん9 A-one Co.,Ltd. 2014/05/13 9.0.610
リモート接続用の Windows Live Mesh ActiveX コントロール (日本語) Microsoft Corporation 2011/03/23 5.57 MB 15.4.5722.2
ワンタッチボタン設定 FUJITSU LIMITED 2011/03/23 8.2.2.0
一太郎ビューア2013 株式会社ジャストシステム 2013/11/17 43.9 MB 23.0.3
富士通PC 辞書セット(広辞苑第六版+現代用語の基礎知識+学研パーソナル統合辞典+家庭医学館) 富士通株式会社 2011/03/23 5.00 KB 2.0.0
富士通モビリティセンター拡張 FUJITSU LIMITED 2011/03/23 3.01.02.001
富士通拡張機能ユーティリティ FUJITSU LIMITED 2011/03/23 3.4.1.0
省電力ユーティリティ FUJITSU LIMITED 2011/11/01 32.01.02.027
筆ぐるめ Ver.18 富士ソフト株式会社 2011/03/23 704 MB 18.00.0000
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2012/07/02 39.2 MB 1.14.0000
電子辞書 FUJITSU LIMITED 2011/03/23 V4.2
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2011/03/23 1.00.00.002
@メニュー FUJITSU LIMITED 2011/03/23 5.3.4.0

スタートアップwindows
無効 HKCU:Run Google Update "C:\Users\xxxxxx\AppData\Local\Google\Update\GoogleUpdate.exe" /c
無効 HKLM:Run APSDaemon Apple Inc. "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
無効 HKLM:Run ATSwpNav "C:\Program Files\Fingerprint Sensor\ATSwpNav" -run
有効 HKLM:Run BSMLW06 DEXIN Corporation "C:\Program Files (x86)\BUFFALO\BSMLW06\Panel.exe"
無効 HKLM:Run Corel Photo Downloader Corel, Inc. "C:\Program Files (x86)\Corel\Corel MyPhoto\Corel Photo Downloader.exe" -startup
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
無効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
無効 HKLM:Run EzSptBtn FUJITSU LIMITED C:\Fujitsu\sptnavi\EzSptBtn4.exe
有効 HKLM:Run FDM7 FUJITSU LIMITED C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe
有効 HKLM:Run FJBATAID2 FUJITSU LIMITED C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe
有効 HKLM:Run FJDust FUJITSU LIMITED C:\Program Files (x86)\Fujitsu\DustSolution\HokoriApp.exe
無効 HKLM:Run FJUPDNV_Chitose FUJITSU LIMITED C:\Program Files\Fujitsu\chitose\updatenv.exe
有効 HKLM:Run GrooveMonitor Microsoft Corporation "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
有効 HKLM:Run HotKeysCmds Intel Corporation C:\windows\system32\hkcmd.exe
有効 HKLM:Run IgfxTray Intel Corporation C:\windows\system32\igfxtray.exe
無効 HKLM:Run IJNetworkScannerSelectorEX CANON INC. C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE
有効 HKLM:Run IME JPN 2007 Migration Microsoft Corporation C:\PROGRA~2\COMMON~1\MICROS~1\IME12\IMEJP\IMJPKLMG.EXE /Preload
無効 HKLM:Run IME14 JPN Uninstall Microsoft Corporation C:\Program Files\Common Files\Microsoft Shared\IME14\SHARED\IMEKLMG.EXE /Uninstall /JPN /Log
有効 HKLM:Run IndicatorUtility FUJITSU LIMITED "C:\Program Files (x86)\Fujitsu\IndicatorUtility\IndicatorUty.exe"
有効 HKLM:Run IoSecShadow I-O DATA DEVICE, INC. C:\Program Files (x86)\I-O DATA\HDDロック\IoSecShadow.exe
無効 HKLM:Run ITSecMng TOSHIBA CORPORATION %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
無効 HKLM:Run JustOnlineUpdate 株式会社ジャストシステム "C:\Program Files (x86)\Common Files\Justsystem\JustOnlineUpdate\JustOnlineUpdate.exe" /startup
有効 HKLM:Run LoadBtnHnd FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe
有効 HKLM:Run LoadFUJ02E3 FUJITSU LIMITED C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
有効 HKLM:Run LoadFujitsuQuickTouch FUJITSU LIMITED C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe
有効 HKLM:Run LoadPUSCDaemon FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe
無効 HKLM:Run NaviStudio3User PIONEER CORPORATION C:\Program Files (x86)\Pioneer\NaviStudio3\NaviStudio3 User.exe
有効 HKLM:Run NetworkPlayerServerHelper DigiOn, Inc. "C:\Program Files (x86)\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe"
有効 HKLM:Run NUSB3MON Renesas Electronics Corporation "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
無効 HKLM:Run OmniPass Softex Inc. C:\Program Files\Softex\OmniPass\scureapp.exe
有効 HKLM:Run Persistence Intel Corporation C:\windows\system32\igfxpers.exe
有効 HKLM:Run PfNet FUJITSU LIMITED "C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r
有効 HKLM:Run PMBVolumeWatcher Sony Corporation C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun
無効 HKLM:Run PSUTility FUJITSU LIMITED C:\Program Files\Fujitsu\PSUtility\TrayManager.exe
有効 HKLM:Run PUSCKAPLEXE FUJITSU LIMITED C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe
有効 HKLM:Run RtHDVBg Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORDTSUPTBT
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run snp2uvc Sonix C:\windows\vsnp2uvc.exe
有効 HKLM:Run SynTPEnh Synaptics Incorporated %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
有効 Startup Common PointGrab ハンドジェスチャーコントロール.lnk Acresso Software Inc. C:\windows\Installer\{8D0794C2-FE40-49FB-8695-E4A933A8BC98}\PointgrabShortcut_875D56C048FF45BAA9B778F0EEBE2A5E.exe
有効 Startup Common SetPoint.lnk Logicool, Inc. C:\Program Files\SetPoint\SetPoint.exe
有効 Startup User Bgcall.lnk C:\Program Files (x86)\Bgcall\Bgcall.exe

スタートアップIE
有効 Extension OneNote に送る Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\ONBttnIE.dll
有効 Extension Research Microsoft Corporation C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
有効 Extension このコンテンツを引用 Microsoft Corporation C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
有効 Helper Canon Easy-WebPrint EX BHO CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
無効 Helper DivX Plus Web Player HTML5 <video> DivX, LLC C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
無効 Helper Groove GFS Browser Helper Microsoft Corporation C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper C:\Program Files\Java\jre6\bin\jp2ssv.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Helper Norton Identity Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll
無効 Helper Norton Vulnerability Protection Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL
有効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Helper Windows Live ID サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
有効 Toolbar Canon Easy-WebPrint EX CANON INC. C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\coIEPlg.dll
有効 Toolbar Norton Toolbar Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\coIEPlg.dll

スタートアップChrome
有効 App Gmail 8.1 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension DivX Plus Web Player HTML5 <video> 2.1.2.145 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
有効 Extension Norton Security Toolbar 2014.7.12.21 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.21_0
有効 Extension TokyoLoader 0.67.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0
有効 Extension TokyoLoader for Chrome 0.71.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0
無効 Plugin Adobe Acrobat 10.1.3.23 最初のユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\pdf.dll
有効 Plugin DivX Plus Web Player 2, 2, 0, 52 最初のユーザー C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
有効 Plugin DivX VOD Helper Plug-in 1.1.0.6 最初のユーザー C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
有効 Plugin Google Update 1.3.21.111 最初のユーザー C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.290.11 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U29 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Native Client 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\ppGoogleNaClPluginChrome.dll
有効 Plugin Picasa 3, 1, 0, 0 最初のユーザー C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
有効 Plugin Remoting Viewer 最初のユーザー internal-remoting-viewer
有効 Plugin Shockwave Flash 11,2,202,235 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\gcswf32.dll
有効 Plugin Shockwave for Director 11.6.1r629 最初のユーザー C:\windows\system32\Adobe\Director\np32dsw.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初のユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live™ Photo Gallery 15.4.3508.1109_ship.wlx.w4m4 (ship) 最初のユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

スタートアップタスク
有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
無効 Task PocketCloud Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\PocketCloudDesktopApp.exe
有効 Task PocketCloudUpdater Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\Updater.exe
有効 Task PocketCloudVirtualChannel Wyse Technology LLC C:\Program Files (x86)\Wyse\PocketCloud\WPCRDPVirtualChannelServer.exe
有効 Task SidebarExecute Microsoft Corporation C:\Program Files\Windows Sidebar\sidebar.exe /c "D:\Applications\fmvuser\Signup.gadget" && pause
有効 Task {6033623A-FA9A-4AF6-A79C-242BD05E3C2B} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Desktop\bj2011upm.exe -d C:\Users\xxxxxx\Desktop
有効 Task {777B8897-AECE-4403-B972-D2A021F73EF2} "d:\program files (x86)\fenrir inc\sleipnir\bin\sleipnir.exe" http://ui.skype.com/ui/0/5.5.59.124/ja/abandoninstall?source=lightinstaller&page=tsPlugin&installinfo=google-toolbar:notoffered;notincluded,google-chrome:notoffered;disabled
有効 Task {79F520B2-B61C-4034-A416-F4B357414A59} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Desktop\新しいフォルダー\Creator12U-Fujitsu.exe -d C:\Users\xxxxxx\Desktop\新しいフォルダー
有効 Task {AC9FB714-3A59-41B4-8DA2-F74DE7C6FD72} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\Users\xxxxxx\Downloads\Creator12U-Fujitsu.exe -d C:\Users\xxxxxx\Downloads
有効 Task {F631EB80-3B33-4B3E-8EE5-E9B4909798A5} Microsoft Corporation C:\windows\system32\pcalua.exe -a C:\ProgramData\DivX\Setup\DivXSetup.exe -c /uninstall

スタートアップコンテキスト
有効 Directory Digital Photo Professional CANON INC. C:\Program Files (x86)\Canon\Digital Photo Professional\DPPViewer.exe /path "%1"
有効 Drive Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 Drive Ulead UDF Driver Ulead Systems, Inc. c:\Program Files (x86)\Common Files\Ulead Systems\DVD\USIShex.dll
有効 File BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 File MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 File Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"
有効 File TMPGEnc MovieStyle ShellExtension ContextMenu for carrozzeria Pegasys Inc. C:\Program Files (x86)\Pegasys Inc\TMPGEnc MovieStyle for carrozzeria\TMSShellExt.dll
有効 Folder BUContextMenu Symantec Corporation C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\buShell.dll
有効 Folder MBAMShlExt Malwarebytes Corporation C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll
有効 Folder Symantec.Norton.Antivirus.IEContextMenu Symantec Corporation "C:\Program Files (x86)\Norton 360\Engine64\21.7.0.11\NavShExt.dll"

以上です
よろしくおねがいします
  • tomoaki_2000tox
  • 2015/07/05 (Sun) 00:51:40
Chromeの拡張修正もしましょう
おはようございます。
様子見後の報告ですね。

ログを見たところ怪しい痕跡もなさそうですが、

>Nortonのログで昨日、重大度中で「権限がないアクセスを遮断しました (プロセスデータのアクセス)」遮断しましたC:\WINDOWS\SYSTEM32\CONHOST.EXEとか、C:\WINDOWS\SYSTEM32\SVCHOST.EXE
>というようなログが出ていたのが気にはなりましたが、調べてみると大丈夫そうですが、これはかんけいなさそうですか?

これは先日から他の方の相談でも出ているのと同じものみたいですね。
ノートンの過剰反応です。
見せてもらったHJT等のログでは変なものも見えないので、ノートン側の修正を待つことになるでしょう。

ただ少し問題も残っているので、下記の処置もしておいてください。

CC起動して「chrome」タブ内の下記を「エントリの削除」してみてください。
>有効 Extension TokyoLoader 0.67.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\plgbccmjomiejfmopncdemenipnelpcj\0.67.0_0
>有効 Extension TokyoLoader for Chrome 0.71.0 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coihpngclddhabbmolcacebmnaffhncl\0.71.0_0

これで削除できればいいですが、できないときはもう少し作業してもらうことになるでしょう。
一応作業後に同タブのログだけ取り直して、それをまた見せてください
  • 悪代官
  • 2015/07/05 (Sun) 07:19:44
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
ありがとうございます。

Nortonの件は安心しました。

Chromeの件ですが、エントリの削除ではブラウザの保護~とかが出て消せませんでした。
Chromeの拡張設定に削除マークがあったので、それをすると削除されログにも出なくなりました。
これでよかったのでしょうか?勝手にやっちゃってすいません。

CCのChromeのログ
有効 App Gmail 8.1 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google Search 0.0.0.30 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
無効 Extension DivX Plus Web Player HTML5 <video> 2.1.2.145 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.145_0
有効 Extension Norton Security Toolbar 2014.7.12.21 最初のユーザー C:\Users\xxxxxx\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.7.12.21_0
無効 Plugin Adobe Acrobat 10.1.3.23 最初のユーザー C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
有効 Plugin Chrome PDF Viewer 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\pdf.dll
有効 Plugin DivX Plus Web Player 2, 2, 0, 52 最初のユーザー C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
有効 Plugin DivX VOD Helper Plug-in 1.1.0.6 最初のユーザー C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
有効 Plugin Google Update 1.3.21.111 最初のユーザー C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 6.0.290.11 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 6 U29 6.0.290.11 最初のユーザー C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll
有効 Plugin Native Client 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\ppGoogleNaClPluginChrome.dll
有効 Plugin Picasa 3, 1, 0, 0 最初のユーザー C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
有効 Plugin Remoting Viewer 最初のユーザー internal-remoting-viewer
有効 Plugin Shockwave Flash 11,2,202,235 最初のユーザー C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.130\gcswf32.dll
有効 Plugin Shockwave for Director 11.6.1r629 最初のユーザー C:\windows\system32\Adobe\Director\np32dsw.dll
有効 Plugin Silverlight Plug-In 4.1.10329.0 最初のユーザー c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll
有効 Plugin Windows Live™ Photo Gallery 15.4.3508.1109_ship.wlx.w4m4 (ship) 最初のユーザー C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
  • tomoaki_2000tox
  • 2015/07/05 (Sun) 10:30:24
あとは旧バージョンエンコーダの削除も
いつもながらレスが遅くなってすみません。

>Chromeの件ですが、エントリの削除ではブラウザの保護~とかが出て消せませんでした。
>Chromeの拡張設定に削除マークがあったので、それをすると削除されログにも出なくなりました

はい、その場合はその対処でもいいです。
どうしてもCC等のツールから処置できないときはChrome本体から手動で設定変更することもできるので、そのこともいざという時に実行してもらったでしょうが、自力で対処されたならいいです。
そういう風にトラブル時に角度を変えて別の方向から見直すと、対処法が見つかることも多いのです。
柔軟な対応と思考はいろいろな場面で役立つので、以後もトラブル時にはひとつの角度や手順にこだわらず違った見方もするといいでしょう。

現在のログでも不審拡張類は消えているのでいいですね。

あとひとつ修正もしておきましょうか。

以下のソフトですが、
>Windows Media Encoder 9 Series 2011/11/01

これは既にMSでの配布も終了している旧バージョンです。
http://blogs.msdn.com/b/windows_multimedia_jp/archive/2009/06/24/windows-media-encoder-9-windows-7.aspx

現在は下記のソフトになっています。
「Microsoft Expression Encoder 3 」
http://www.microsoft.com/ja-jp/download/details.aspx?id=2721

旧バージョンソフトを使っているとその脆弱性や、ソフト自体の不具合もありうるので、必要なら旧エンコーダは一度アンインストールのあと、最新版のEE3をインストールすることをお勧めします。

同ソフトが不要ならエンコーダのアンインストール後に最新版の入れなおしも不要です。

なお、最新版は旧エンコーダよりも高性能になってますが、その分動作時の負荷もいくらか増えているので、使用するならできるだけ他のアプリは事前に終了した状態で使うのがいいでしょう。

同ソフトの削除か更新できたらまたインストール情報ログだけ取り直して、それをまた見せてください。

この時点で問題もなくなってればヤマも越えられそうです
  • 悪代官
  • 2015/07/05 (Sun) 18:39:29
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
ありがとうございます。

とりあえずWindows Media Encoder 9 Seriesはアンインストールしました。
最新版は現時点では必要でなはなさそうなので保留にしておきます。

古い方も何で必要になったのか覚えてませんので・・・(汗)

以前に少し使用して今は使っていないソフト等がまだまだありそうなので、確認しながら処理していこうと思います。

インストール情報ログ
+Lhaca
ACER ICONIA 3G DRIVER INSTALL acer 2012/06/18 1.00.0524
ACER ICONIA TAB Driver Installation acer 2012/05/18 1.06.1500
Adobe AIR Adobe Systems Incorporated 2015/05/18 17.0.0.172
Adobe Flash Player 18 ActiveX Adobe Systems Incorporated 18.0.0.194
Apple Application Support Apple Inc. 2011/12/26 61.2 MB 2.1.5
Apple Software Update Apple Inc. 2011/12/26 2.38 MB 2.1.3.127
AuthenTec Fingerprint Software AuthenTec, Inc. 2011/03/23 11.4 MB 9.0.8.35
AzbyClubガジェットプログラム FUJITSU LIMITED 2011/03/23 3.10
BeatJam 株式会社ジャストシステム 2013/03/31 2.12
BeatJam Video Converter 株式会社ジャストシステム 2012/06/04 62.1 MB 1.02.0010
Bgcall 2.24 Hiroshi Inagaki 2011/11/03
Bluetooth Stack for Windows by Toshiba TOSHIBA CORPORATION 2011/11/01 62.7 MB v6.00.05
BSMLW06 BUFFALO 2012/01/20 1.0.2
BUFFALO NAS Navigator2
Canon Easy-PhotoPrint EX
Canon Easy-PhotoPrint Pro
Canon Easy-PhotoPrint Pro - Pro9000 series Extention Data
Canon Easy-PhotoPrint Pro - Pro9500 series Extention Data
Canon Easy-WebPrint EX
Canon IJ Network Scanner Selector EX
Canon IJ Network Tool
Canon MG6200 series MP Drivers
Canon MG6200 series On-screen Manual
Canon MP Navigator EX 5.0
Canon Utilities Digital Photo Professional Canon Inc. 3.12.51.2
Canon Utilities EOS Sample Music Canon Inc. 1.0.1.1
Canon Utilities EOS Utility Canon Inc. 2.12.2.1
Canon Utilities ImageBrowser EX Canon Inc. 1.5.0.6
Canon Utilities Picture Style Editor Canon Inc. 1.12.2.0
CCleaner Piriform 5.06
Combined Community Codec Pack 2011-07-30 CCCP Project 2011/11/06 2011.07.30.0
ConcatPDF 1.2.5 Ujihara 2014/05/27 208 KB 1.2.5
Corel Digital Studio for FUJITSU Corel Corporation 1.5.9.563.3
Corel Graphics - Windows Shell Extension Corel Corporation 2012/03/18 15.2.0.686
Corel VideoStudio 12 Corel Corporation 2013/11/16 12.0.0.0000
Corel WinDVD Corel Inc. 2011/11/01 213 MB 10.8.0.392
CorelDRAW Essentials X5 Corel Corporation 2012/04/15 15.2.0.686
CorelDRAW Essentials X5 - Extra Content Corel Corporation 2012/04/15
CyberLink YouCam CyberLink Corp. 2011/11/01 3.1.3904
Device Management Service I-O DATA DEVICE, INC. 2011/12/04 1.28
DigiBookBrowser Version 1.5.2.68 TriWorks Corp.JAPAN 2011/03/23 1.5.2.68
DivXセットアップ DivX, LLC 2.6.1.28
DiXiM Digital TV plus DigiOn 2012/09/18 2.1.4.5
Everio MediaBrowser HD Edition PIXELA 2015/01/27 2.02.222
F-LINK FUJITSU LIMITED 2015/06/21 3.1.0.0
Fate/stay night TYPE-MOON 2013/03/08 1.2.1
FJ Camera Sonix 2011/11/01 5.8.52016.0
Free Hide Folder
Fujitsu Display Manager 2011/03/23
GAMEPACK2011F DATT JAPAN INC. 2011/03/23 920 MB 2.11.0105
GIZMO
GIZMO テレビ連携 for PIXELA 2
GIZMO テレビ連携 for Windows Media Center
GIZMO テレビ連携 コアコンポーネント
Google Chrome Google Inc. 2015/06/21 43.0.2357.130
HDDロック I-O DATA 2011/12/04 2.33
Hoppysoft QTConverter 1.3.0
IndicatorUtility FUJITSU LIMITED 2011/03/23 3.70.0.0
Inspirium辞書検索ライブラリ Fujitsu 2011/03/23 1.16 MB 2.0.8
Intel(R) Management Engine Components Intel Corporation 7.0.0.1144
Intel(R) Processor Graphics Intel Corporation 8.15.10.2559
Intel(R) Wireless Display Intel Corporation 2011/11/01 119 MB 2.0.27.0
JavaFX 2.1.1 Oracle Corporation 2012/07/09 20.8 MB 2.1.1
JUSTオンラインアップデート 株式会社ジャストシステム 2013/03/31 1.0.1.0
Malwarebytes Anti-Malware version 1.75.0.1300 Malwarebytes Corporation 2015/06/15 1.75.0.1300
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/05/17 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 4.5.51209
Microsoft Office Enterprise 2007 Microsoft Corporation 2015/06/11 12.0.6612.1000
Microsoft Office File Validation Add-In Microsoft Corporation 2014/05/15 10.9 MB 14.0.5130.5003
Microsoft Office ナビ 2010 Microsoft Corporation 2013/09/14 16.9 MB 14.0.7015.1000
Microsoft Silverlight Microsoft Corporation 2015/05/17 298 MB 5.1.40416.0
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2011/03/23 1.69 MB 3.1.0000
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2013/11/16 2.51 MB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2011/11/02 572 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 Microsoft Corporation 2014/01/26 238 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2011/11/01 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 Microsoft Corporation 2011/11/01 778 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2011/11/02 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2011/11/01 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Corporation 2011/11/01 586 KB 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2011/11/02 600 KB 9.0.30729.6161
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 Microsoft Corporation 11.0.61030.0
Microsoft Visual Studio Tools for Applications 2.0 - ENU Microsoft Corporation 2012/03/20 211 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Language Pack - JPN Microsoft Corporation 2012/03/18 98.2 MB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Microsoft Corporation 2012/03/18 158 KB 9.0.30729
Microsoft Visual Studio Tools for Applications 2.0 Runtime Language Pack - JPN Microsoft Corporation 2012/03/18 226 KB 9.0.30729
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2011/11/02 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2011/11/02 1.33 MB 4.20.9876.0
NAVI*STUDIO3 DriveManager Pioneer 2011/11/03 40.5 MB 3.0.6.0
NAVI*STUDIO3 Launcher Pioneer 2011/11/03 2.16 MB 3.2
NAVI*STUDIO3 MaintenanceManager PIONEER CORPORATION 2011/11/03 10.6 MB 3.01.0007
NAVI*STUDIO3 UpdateManager Pioneer 2011/11/03 1.86 MB 1.00
NetworkPlayer CyberLink Corp. 1.58.8511
NetworkPlayer サーバー DigiOn 2011/03/23 4.40
Norton 360 Symantec Corporation 2013/11/20 21.7.0.11
O2Micro Flash Memory Card Windows Driver O2Micro International LTD. 2013/12/25 3.2.00.05
OmniPass Softex Inc. 26.0 MB 7.00.61(x64)
OmniPass Softex Inc. 2011/03/23 7.00.61(x64)
PCカルテ FUJITSU LIMITED 2015/06/16 5.31 MB 1.1.0.1
PC乗換ガイド 富士通株式会社 2011/03/23 V6.0C
PDF-Viewer Tracker Software Products Ltd 2014/05/07 2.5.214.2
PictBear Version 2.03 Fenrir Inc. 2011/11/01
PlayMemories Home Sony Corporation 2015/01/27 4.1.00.12152
Plugfree NETWORK 富士通株式会社 2011/03/23 5.5.0.1
PocketCloud 会社名 2014/01/19 24.8 MB 2.7.18
PointGrab Hand Gesture Control PointGrab 2011/11/03 02.00.01.1623
PowerUtility - スケジュール機能 FUJITSU LIMITED 2011/03/23 4.12.0.0
QuickTime Apple Inc. 2012/01/07 67.1 MB 7.62.14.0
QuickTime Alternative 1.80 2011/12/26 1.80
Realtek Ethernet Controller Driver Realtek 2015/06/21 7.72.410.2013
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2011/03/23 6.0.1.6263
Renesas Electronics USB 3.0 Host Controller Driver Renesas Electronics Corporation 2011/03/23 2.0.32.0
Roxio Creator LJ Roxio 2015/06/21 12.1.7.3
Scanner Mouse Dacuda 2014/04/24 87.1 MB 1.7.3
Sense YOU Technology 設定 Fujitsu LIMITED 2011/11/01 2.0.1.0
SetPoint ロジクール 2011/11/01 4.80
ShowRoom for PowerPoint GlobFX Technologies 2011/11/23
Sleipnir Version 4.4.4 Fenrir Inc. 2015/06/15 4.4.4
SmartSound Quicktracks Plugin SmartSound Software Inc 2013/11/16 3.0.5.0
Sony Media Library Earth 6.0.00 Sony Corporation 2011/11/03 6.0.00.10070
Sound Player Lilith for Unicode OSs 1.0 beta.3 http://www.project9k.jp/ 2014/01/26
Sound_Player_Lilith_0991b (Uninstall Only)
SoundEngine Free Coderium 2012/02/05 4.6.0.17
Stella Theater Lite
Stellarium 0.10.6.1 2011/11/02
StreamTransport version: 1.0.2.2171 2013/09/10
SUPERAntiSpyware SUPERAntiSpyware.com 6.0.1194
Synaptics Pointing Device Driver Synaptics Incorporated 14.0.16.0
TMPGEnc MovieStyle for carrozzeria Pegasys Inc. 2012/06/04 88.4 MB 1.1.3.55
Trixie
WebM Project Directshow Filters
Windows Live Essentials Microsoft Corporation 2011/03/23 15.4.3508.1109
Windows Media Player Firefox Plugin Microsoft Corp 2012/05/12 296 KB 1.0.0.8
いつもNAVI PC ZENRIN 2011/03/23 6.1.2
うれしレシピ Fujitsu 2011/03/23 2.1.0.3
お手入れナビ FUJITSU LIMITED 2011/03/23 4.40.00.000
かんたんバックアップ FUJITSU LIMITED 2011/03/23 7.0.01
ゆったり設定2 FUJITSU LIMITED 2011/03/23 4.0.2.0
らくらく手書き入力 FUJITSU LIMITED 2011/03/23 7.24 MB 5.0.30
らくらく無線スタートEX NEC AccessTechnica, Ltd.
アタマスキャン 2011/11/01
アップデートナビ FUJITSU LIMITED 2015/06/16 2.03 MB 1.3.0021
インテル® PROSet/Wireless ソフトウェア Intel Corporation 16.7.0
ウォーキング日記 FUJITSU LIMITED 2011/11/03 1.1.0.3
サポートナビ FUJITSU LIMITED 2011/03/23 3.1.0.0
スクリーンセーバー for FUJITSU PC FUJITSU LIMITED 2011/03/23 2.5.1.5
セキュリティ対策ソフト選択 FUJITSU LIMITED 2011/03/23 2.2.0.0
テレビNaviガジェット 株式会社プレゼントキャスト 2011/03/23 7.96 MB 1.12.0000
テレビ出力ユーティリティ 2011/03/23
デジカメde!!ムービーシアター Aisoft 2011/11/02 3.04
デジカメde!!同時プリント A.I.Soft,Inc. 8.00
バッテリーユーティリティ FUJITSU LIMITED 2011/03/23 3.01.04.004
ポチっとな I-O DATA DEVICE,INC. 2011/12/04 2.43
マイフォト Corel Corporation 2011/11/01 51.5 MB 1.001.0017
ラベル屋さん9 A-one Co.,Ltd. 2014/05/13 9.0.610
リモート接続用の Windows Live Mesh ActiveX コントロール (日本語) Microsoft Corporation 2011/03/23 5.57 MB 15.4.5722.2
ワンタッチボタン設定 FUJITSU LIMITED 2011/03/23 8.2.2.0
一太郎ビューア2013 株式会社ジャストシステム 2013/11/17 43.9 MB 23.0.3
富士通PC 辞書セット(広辞苑第六版+現代用語の基礎知識+学研パーソナル統合辞典+家庭医学館) 富士通株式会社 2011/03/23 5.00 KB 2.0.0
富士通モビリティセンター拡張 FUJITSU LIMITED 2011/03/23 3.01.02.001
富士通拡張機能ユーティリティ FUJITSU LIMITED 2011/03/23 3.4.1.0
省電力ユーティリティ FUJITSU LIMITED 2011/11/01 32.01.02.027
筆ぐるめ Ver.18 富士ソフト株式会社 2011/03/23 704 MB 18.00.0000
読取革命Lite パナソニック ソリューションテクノロジー株式会社 2012/07/02 39.2 MB 1.14.0000
電子辞書 FUJITSU LIMITED 2011/03/23 V4.2
電源オフUSB充電ユーティリティ FUJITSU LIMITED 2011/03/23 1.00.00.002
@メニュー FUJITSU LIMITED 2011/03/23 5.3.4.0


  • tomoaki_2000tox
  • 2015/07/05 (Sun) 23:01:20
ようやく乗り切れましたね
今日もまたレスが遅くなりました。
エンコーダは特に必要ないとのことですね。それなら削除だけでいいでしょう。

それでは他に異常もなくなってれば本題の処置もようやく終了ですね。
作業に使った各ツールも準備時の説明に沿って片付けてください。

以後の再被害を防ぐための自衛もお忘れなく。
ブラウザの設定を少し固めるだけでも、セキュリティ上の効果を高めることが可能です。
「インターネットオプション」→「プライバシー」→「詳細設定」と開いて、「自動cookie処理」と「サードパーティのcookieをブロック」にチェックして「適用」して「OK」。
これをやっておくと、多くの危険サイトからの保護にかなり有効です。
が、これもすべての危険サイトに有効でもないし、本物の危険サイトではこの程度ではまったく太刀打ちできないので、過信はしないこと。
また、「すべてのcookieをブロックする」設定にすると、プロバイダのメールボックスなどログイン必要なページに入れなくなる弊害も出るので、これは状況を考えて使い分けるといいでしょう。
安全なサイトでもcookieブロックだと閲覧や投稿ができなくなるところもあるのでこれも注意。

次に、アンチウイルスやファイアウォール等のセキュリティソフトの使い方も注意してください。
セキュリティソフトはただ入れてさえいればそれだけでフル機能を発揮するものではありません。
設定と機能をできるだけ把握して、正しく使うことが重要です。
間違った使い方すると、本来ならブロックできた感染でもあっさりスルーします。

また、いくら高性能なセキュリティソフトがあっても、ユーザーが自分から危険なサイトやファイルにアクセスしてたらまったく保護もできません。
セキュリティソフトは使い方次第でその性能を、倍にも半にも無にも変動させます。

そして百聞は一見にしかず。
現在この掲示板で継続中や解決済みの他スレもできるだけ見ておくことをおすすめします。
同様、類似、別種含めて参考になる部分は多いでしょう。

長期間面倒な作業をよく頑張ってくれましたが、その苦労を糧に変えて以後の再被害に対する自衛も目指してください。

お疲れ様でした。
以後は安全で快適なPCライフを
  • 悪代官
  • 2015/07/06 (Mon) 19:39:19
本当にありがとうございました
お礼が遅くなりました
今回は本当にありがとうございました

いろいろと教えていただいて勉強になりましたし、自分でもセキュリティについてもっと知りたいと思えるようになりました
また、セキュリティソフトが入っているから…と安易に考えて
危険の可能性のあるサイトへのリンクを踏むことやフリーソフトの乱用をしていたのがよくなかったのだと思い知らされました…
今後のPCの使い方やフリーソフト等の使用方法なども考えさせられました
アップデートの必要性もよくわかりました


こうやってウィルス対策を善意でして下さっている方がおられることを知り、本当に頭が下がる思いです
また、私も含めてたくさんの相談者に丁寧に対応されておられてとてもありがたいことだなと思いました
お体に気をつけられて今後も活躍されることをねがっております
(本来はトラブルになる前に、私も含めて個人個人がしっかりと自衛することで負担も減るのでしょうけど…)
本当にありがとうございました
  • tomoaki_2000tox
  • 2015/07/08 (Wed) 22:45:17
crara06さんへ
ここに書き込むのが正解かわかりませんが…

知恵袋からこちらへ案内していただいてありがとうございました

回答をたくさんしていただいていたのにベストアンサーに選ぶのを放置してしまっていて
投票になってしまっていましたごめんなさい
(crara06さんを選ぶつもりでした)

このページを案内していただいて解決していただけましたし、たくさん勉強になりました
本当にありがとうございました
  • tomoaki_2000tox
  • 2015/07/08 (Wed) 22:50:36
Re: 知恵袋からきました(ノートンの警告System Infected: Trojan Bedep Activity 2)
tomoakiさん、解決できてよかったですね。同じ感染事例でリカバリに発展した案件もあるので、解決できて本当に良かったと思います。勿論、誘導したので最後まで眺めておりましたよ。悪代官さんの名奉行遠山の金さん的采配が的中し、解決できたわけで、伏魔殿万歳ってな感じですね。

そして、tomoakiさん自身も、今回の一連の作業を経験して、知識もskillも、間違いなくupしたはずですし、今後の「転ばぬ先の杖」とは、どんなものなのか、も肌で感じたと確信しています。ウイルス対策ソフトだけでPCを保護する時代は、疾うの昔に終わっており、今は、脆弱性対策+自分の知識で防御しなければいけない時代になりました。

ここでの訓練を、是非、今後に活用されてくださいね。

何かあれば知恵袋のセキュカテで、お待ちしておりますよ。

悪代官さん、ご苦労様でした。お二人に、ねぎらいの乾杯を。

  • crara06
  • 2015/07/09 (Thu) 01:44:00

返信フォーム※初心者、通りすがり等、重複しやすい名前の利用はご遠慮ください。




プレビュー (投稿前に内容を確認)