始めまして
知恵袋より来させてもらいました
一応追跡防止設定やサードパーティーのCookieをブロックしたりなどでかなり楽になっているのですがまだ別窓が勝手に開いたり重かったりします
やはり根本的な部分を叩く必要があるんでしょうか
  • khjkighuygbkyu
  • URL
  • 2015/03/18 (Wed) 00:26:45
本体ごと消せば一瞬です
こんばんは、そちらでも回答いたしましたIVNOと申します。
臭いが気になるなら臭いは元から断てば良いのです。
重さと言うのも元を断てば解消されます。

それでは早速ですが、まずは調査のため利用規約のご確認とログの取得をしていただいております。
まずは以下の利用規約で違反事項がないかどうかご確認をお願いいたします。

http://otherplace.html.xdomain.jp/

違反事項がないようでしたら問題ございませんので、以下URLよりHJTとCCのログをそれぞれ回収し、
回収された2つのログを両方とも貼り付けてご連絡をお願いいたします。

http://otherplace.html.xdomain.jp/prepare.html
  • IVNO
  • MAIL
  • 2015/03/18 (Wed) 00:31:16
HJTログ取得完了です
HJTログ
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 11:27:50, on 2015/03/18
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\gmsd_jp_311\gmsd_jp_311.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll
O2 - BHO: saviNsHop - {11cd4cc5-fde2-471a-9181-178d927c16dc} - C:\Program Files (x86)\saviNsHop\NRrdVbpiaoHvV6.dll
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: CoolSaoLeeCouuPOn - {36b0fb90-ec22-4f60-a546-ae99a32aceea} - C:\Program Files (x86)\CoolSaoLeeCouuPOn\OrnDfvN1p9CJHg.dll
O2 - BHO: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll (file missing)
O2 - BHO: SalesMagneTT - {74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7} - C:\ProgramData\SalesMagneTT\RR.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: web waltz 1.0.0.7 - {77980a3c-fa45-4070-8bde-7e9af6d76228} - C:\Program Files (x86)\web waltz\webwaltzbho.dll (file missing)
O2 - BHO: SalEsChheckEr - {82669D77-3D9D-03B8-B76F-71DFDFCD8A86} - C:\ProgramData\SalEsChheckEr\U.dll (file missing)
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: TiicTuaCioUpooN - {AED17436-6472-69EA-4313-FDFB678370C5} - C:\ProgramData\TiicTuaCioUpooN\Q.dll (file missing)
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: SAleesCHeckerr - {ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6} - C:\ProgramData\SAleesCHeckerr\2mUn89qnPN.dll (file missing)
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [gmsd_jp_311] "C:\Program Files (x86)\gmsd_jp_311\gmsd_jp_311.exe"
O4 - HKLM\..\RunOnce: [upgmsd_jp_311.exe] C:\Users\keiko\AppData\Local\gmsd_jp_311\upgmsd_jp_311.exe -runonce
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1426645194
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs: c:\progra~2\optimi~1\optpro~1.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files (x86)\MyPC Backup\BackupStack.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SaveSenseLive Service (savesenselive) (savesenselive) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: SaveSenseLive Service (savesenselivem) (savesenselivem) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - SysTool PasSame LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14766 bytes

CCはログの出し方がわかりませんでしたので一旦これで
  • khjkighuygbkyu
  • URL
  • 2015/03/18 (Wed) 11:38:46
CCの件ですね
CCはソフトウェアのインストール方法から順番にログの取得方法までを
ご案内したページに記載しております。
つまりツール→インストール情報→テキストとして保存ボタンを押すですね。
こちらでログが出ます。
  • IVNO
  • MAIL
  • 2015/03/18 (Wed) 12:21:02
CC出ました
Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/03/16 6.00 MB 17.0.0.134
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/13 203 MB 11.0.10
ALTools Update ESTsoft Corp. 2015/02/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/02/18 v8.61
Any Audio Converter 4.0.3 Any-Audio-Converter.com 2014/03/01 53.3 MB
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/01/26 2.12
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
CoolSaoLeeCouuPOn CoolSaleCoupon 2015/03/14
deal2dealIt deal22dealit 2014/04/05
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2014/12/17 2.7.0.31
Dll-Files Fixer Dll-Files.com 2014/07/06 17.2 MB 3.1.81
DriverScanner Uniblue Systems Ltd 2015/03/15 28.8 MB 4.0.14.0
EAsytoshop "" 2015/03/15
ecolight-gg 2014/12/01 1.20.01.16
GamesDesktop 015.311 GAMESDESKTOP 2015/03/15 11.1 MB
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2014/03/28 7.5.5111.1712
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
istartsurf uninstall istartsurf 2015/03/15
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 7 Update 75 Oracle 2015/02/14 120 MB 7.0.750
Java 7 Update 75 (64-bit) Oracle 2015/02/14 118 MB 7.0.750
Java 8 Update 31 Oracle Corporation 2015/02/13 6.07 MB 8.0.310
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2014/04/02
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
LuuckyShopper LucKySShOpper 2014/04/05
McAfee Security Scan Plus McAfee, Inc. 2014/12/19 10.2 MB 3.8.150.1
MetasequoiaLE R3.0 2015/03/16
Microsoft .NET Framework 4.5.1 Microsoft Corporation 2014/03/01 38.8 MB 4.5.50938
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/03/14 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2014/03/08 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MyPC Backup JDi Backup Ltd 2015/03/15
NVIDIA 3D Vision コントローラー ドライバー 340.50 NVIDIA Corporation 2014/08/15 340.50
NVIDIA 3D Vision ドライバー 340.52 NVIDIA Corporation 2014/08/15 340.52
NVIDIA GeForce Experience 2.1.5 NVIDIA Corporation 2015/01/12 2.1.5
NVIDIA HD オーディオ ドライバー 1.3.30.1 NVIDIA Corporation 2014/08/15 1.3.30.1
NVIDIA PhysX システム ソフトウェア 9.13.1220 NVIDIA Corporation 2014/03/03 9.13.1220
NVIDIA グラフィックス ドライバー 340.52 NVIDIA Corporation 2014/08/15 340.52
Open It! OpenIt 2014/03/01 15.8 MB 1.1.1
Optimizer Pro v3.2 2014/03/08 30.5 MB
ParoShopper ProShopper 2015/01/12
PepperZip 2.0 PepperWare Co.Ltd. 2015/03/15 2.0
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RecordPad 音声録音ソフト NCH Software 2015/02/18 5.14
RPGツクール2000 ランタイムパッケージ 2014/04/02
RPGツクール2000 体験版 2014/03/02
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
SAleesCHeckerr SaeLesChieckker 2014/08/17
SalesMagneTT SalesMagnet 2014/09/07
SAovvErPro SaverPro 2015/01/12
SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
saviNsHop "" 2015/03/14
Search App by Ask APN, LLC 2015/02/15 4.30 MB 12.25.2.60
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Super Optimizer v3.2 Super PC Tools ltd 2015/03/15 13.6 MB 3.2.0.1
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
TiicTuaCioUpooN TicTaaCooupon 2014/08/14
topdeal "" 2014/11/07
UltraCoupon UltraCoupon 2014/02/22
Update for Zip Extractor Update for Zip Extractor 2014/03/01
WavePad 音声編集ソフト NCH Software 2015/03/02 5.71
web waltz web waltz 2015/03/15 673 KB 2015.03.15.070507
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/01/12 4.01 MB 8.0.0.3
Zip Extractor Packages 2014/03/01
ハンターヒーロー X-Legend 2014/10/28 1.0000
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/02/23 13.6.1529
幻想神域 X-Legend 2014/10/29 1.0000
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108
  • khjkighuygbkyu
  • URL
  • 2015/03/18 (Wed) 12:52:20
マルウェアでカオスです
ログを確認いたしました。
もうマルウェアだらけでPC内がカオスです。
こんな状態でよく普通に起動できますね。
そして旧バージョンソフトウェアもチラホラと見えます。
まずは動きを止めるところからやっていきましょう。
具体的な駆除はその後になります。

それでは作業準備を行いましょう。

まずはじめに連絡事項がございます。
相談いただいてから回答できるまでに、毎回1日かそれ以上かかる可能性もございます。
ご不便をおかけいたしますが、ご理解とご協力を賜りますよう、お願い申し上げます。
また、回答者側から「解決」と通達があるまで、駆除作業は続いております。
そのため、途中でPCの状況が良くなったかのように感じたからと言って、解決のご案内を待たずして作業を中断なされると、
高確率で再発しているのが現状で、再発時にこちらにお戻りになられる方が続出しております。
回答者から「解決」と「自衛策」の案内があるまでは、作業を続けるようにしてください。

それでは以下の説明を熟読し、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のソフトウェアをダウンロードしろと勧めてくるような広告も出てくる可能性がありますが、
それらは絶対にクリックしないでください。
「ATF-Cleaner」(通称:ATF)
説明↓
http://freesoft.tvbok.com/freesoft/pc_system/atf-cleaner.html
ダウンロード↓
http://www.atribune.org/index.php?option=com_content&task=view&id=25&Itemid=1
中央の赤い文字がダウンロードリンクです。
片付けるときはファイルを直接削除してください。
説明ページではWindowsXpと2000対応と書かれてますが、Win7やVistaにも対応です。

GeekUninstaller(通称:Geek)
ダウンロード
http://www.geekuninstaller.com/geek.zip
ファイル直リンクです。zipファイルですので使用前に展開してください。
解説
http://www.gigafree.net/system/install/geekuninstaller.html

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードするようにしましょう。
なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
削除の際はGeekなどでアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【操作次第ではWindowsが動作しなくなる可能性もある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、こちらが指示した以外の操作はしないようにしてください。

準備できたら作業を開始しましょう。

まずは、Javaをご利用の方は以下URLの「Javaアンインストール・ツール」と言う文字をクリックし、
最新バージョンの確認と旧バージョンの削除を行われてください。
https://java.com/ja/download/faq/remove_olderversions.xml

Javaの処置が完了した方、Javaを導入されていない方は以下から作業をお願いいたします。

以降の駆除作業でトラブルが発生しても直ちに復旧できるよう、システムの復元ポイントを手動で作成しましょう。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point
しかし、システムの復元はPCにかなりのダメージを与えますので、できれば使わないほうが望ましいです。
システムの復元が必要のない、慎重な作業を心がけましょう。

PCをセーフモードで起動してください(やり方↓)
http://www.pc-master.jp/sousa/s-safemode.html
Windows 8または8.1の方は以下を参考になされてください。
http://121ware.com/qasearch/1007/app/servlet/relatedqa?QID=015917
HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、
こちらが指示した以外のものは絶対にチェックを入れないでください。

O2 - BHO: saviNsHop - {11cd4cc5-fde2-471a-9181-178d927c16dc} - C:\Program Files (x86)\saviNsHop\NRrdVbpiaoHvV6.dll
O2 - BHO: CoolSaoLeeCouuPOn - {36b0fb90-ec22-4f60-a546-ae99a32aceea} - C:\Program Files (x86)\CoolSaoLeeCouuPOn\OrnDfvN1p9CJHg.dll
O2 - BHO: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll (file missing)
O2 - BHO: SalesMagneTT - {74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7} - C:\ProgramData\SalesMagneTT\RR.dll (file missing)
O2 - BHO: web waltz 1.0.0.7 - {77980a3c-fa45-4070-8bde-7e9af6d76228} - C:\Program Files (x86)\web waltz\webwaltzbho.dll (file missing)
O2 - BHO: SalEsChheckEr - {82669D77-3D9D-03B8-B76F-71DFDFCD8A86} - C:\ProgramData\SalEsChheckEr\U.dll (file missing)
O2 - BHO: TiicTuaCioUpooN - {AED17436-6472-69EA-4313-FDFB678370C5} - C:\ProgramData\TiicTuaCioUpooN\Q.dll (file missing)
O2 - BHO: SAleesCHeckerr - {ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6} - C:\ProgramData\SAleesCHeckerr\2mUn89qnPN.dll (file missing)
O4 - HKLM\..\Run: [gmsd_jp_311] "C:\Program Files (x86)\gmsd_jp_311\gmsd_jp_311.exe"
O4 - HKLM\..\RunOnce: [upgmsd_jp_311.exe] C:\Users\keiko\AppData\Local\gmsd_jp_311\upgmsd_jp_311.exe -runonce
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
O20 - AppInit_DLLs: c:\progra~2\optimi~1\optpro~1.dll
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Computer Backup (MyPC Backup) (BackupStack) - Just Develop It - C:\Program Files (x86)\MyPC Backup\BackupStack.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe
O23 - Service: SaveSenseLive Service (savesenselive) (savesenselive) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: SaveSenseLive Service (savesenselivem) (savesenselivem) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
上記のFixが完了したら、Geek起動させ、以下を削除してください。

CoolSaoLeeCouuPOn CoolSaleCoupon 2015/03/14
deal2dealIt deal22dealit 2014/04/05
Dll-Files Fixer Dll-Files.com 2014/07/06 17.2 MB 3.1.81
DriverScanner Uniblue Systems Ltd 2015/03/15 28.8 MB 4.0.14.0
EAsytoshop "" 2015/03/15
ecolight-gg 2014/12/01 1.20.01.16
GamesDesktop 015.311 GAMESDESKTOP 2015/03/15 11.1 MB
istartsurf uninstall istartsurf 2015/03/15
LuuckyShopper LucKySShOpper 2014/04/05
McAfee Security Scan Plus McAfee, Inc. 2014/12/19 10.2 MB 3.8.150.1
MyPC Backup JDi Backup Ltd 2015/03/15
Optimizer Pro v3.2 2014/03/08 30.5 MB
ParoShopper ProShopper 2015/01/12
PepperZip 2.0 PepperWare Co.Ltd. 2015/03/15 2.0
SAleesCHeckerr SaeLesChieckker 2014/08/17
SalesMagneTT SalesMagnet 2014/09/07
SAovvErPro SaverPro 2015/01/12
SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
saviNsHop "" 2015/03/14
Search App by Ask APN, LLC 2015/02/15 4.30 MB 12.25.2.60
Super Optimizer v3.2 Super PC Tools ltd 2015/03/15 13.6 MB 3.2.0.1
TiicTuaCioUpooN TicTaaCooupon 2014/08/14
topdeal "" 2014/11/07
UltraCoupon UltraCoupon 2014/02/22
Update for Zip Extractor Update for Zip Extractor 2014/03/01
web waltz web waltz 2015/03/15 673 KB 2015.03.15.070507
Zip Extractor Packages 2014/03/01
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108

ダブルクリックで削除できます。
削除が完了したら自動的にスキャンが始まりますので、検出されたごみすべてにチェックを入れてOKを押してください。
Geekでのアンインストールが完了しましたらGeekを終了させ、ATFで掃除を行ってください。
Select Allにチェックを入れ、Empty Selectedをクリックします。
ATFでの掃除が完了しましたら、PCを通常モードで再起動させてください。
PCが通常モードで再起動できましたら、CCを起動させてください。
起動したら、「ツール」→「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できますので、
デスクトップ等、分かりやすい場所に最新のログのみ保存しておきましょう。
続いて「InternetExplorer」タブのログ、導入されておられるのであれば「Firefox」タブ、
同じく導入されておられるのであれば「Google Chrome」タブ、そして「スケジュールされたタスク」タブのログを取得してください。
ただし、「コンテキストメニュー」のログは取得していただく必要がございません。
CCの各ログを取得されましたら、インストール情報タブに移動します。
インストール情報のログを再度取得してください。
インストール情報ログとスタートアップの各ログの取得が完了しましたら、CCは終了させて問題ありません。
その後HJTを起動させてログ取得を行ってください。
HJTのログ、CCの各ログを返信欄に貼り付けていただき、ご報告をお願いいたします。
上記ログを確認後、次の作業内容をご案内いたします。
  • IVNO
  • MAIL
  • 2015/03/18 (Wed) 13:50:03
Re: 始めまして
CCログ
【Windows】
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKCU:RunOnce Adobe Speed Launcher 1426658422
有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run ApnTBMon APN "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run gmsd_jp_311
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

【InternetExplorer】
有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
有効 Helper SalEsChheckEr C:\ProgramData\SalEsChheckEr\U.dll
有効 Helper SalEsChheckEr C:\ProgramData\SalEsChheckEr\U.x64.dll
有効 Helper SaveSense C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll
有効 Helper TiicTuaCioUpooN C:\ProgramData\TiicTuaCioUpooN\Q.dll
有効 Helper TiicTuaCioUpooN C:\ProgramData\TiicTuaCioUpooN\Q.x64.dll
無効 Helper web waltz 1.0.0.7 C:\Program Files (x86)\web waltz\webwaltzbho.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

【Google Chrome】
有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Anydo Extension 239 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem\239
有効 Extension FlaSheCOupon 1.6 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcohoidoikimjibedeanbdfdgjopbbkd\1.6
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142
有効 Extension savernet 1.3 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpccokclleemfepkipokponejgbgkmal\1.3
有効 Extension SAverPro 4.31 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\oackjcfphhkoacpfmkfkaabnljiakkci\4.31
有効 Extension Screen Resolution Tester 223 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbpeddmakpmblddofjnoghpjminhjph\223
無効 Extension Search App By Ask v2 55.11 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf\55.11_0
有効 Extension Thunder,QQDownload Files Downloader 121 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof\121
有効 Extension Time Warp 191 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

【インストール情報】
Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/03/16 6.00 MB 17.0.0.134
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/13 203 MB 11.0.10
ALTools Update ESTsoft Corp. 2015/02/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/02/18 v8.61
Any Audio Converter 4.0.3 Any-Audio-Converter.com 2014/03/01 53.3 MB
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/01/26 2.12
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2014/12/17 2.7.0.31
ecolight-gg 2014/12/01 1.20.01.16
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2014/03/28 7.5.5111.1712
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 7 Update 75 Oracle 2015/02/14 120 MB 7.0.750
Java 7 Update 75 (64-bit) Oracle 2015/02/14 118 MB 7.0.750
Java 8 Update 31 Oracle Corporation 2015/02/13 6.07 MB 8.0.310
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2014/04/02
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
MetasequoiaLE R3.0 2015/03/16
Microsoft .NET Framework 4.5.1 Microsoft Corporation 2014/03/01 38.8 MB 4.5.50938
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/03/14 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2014/03/08 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
NVIDIA 3D Vision コントローラー ドライバー 340.50 NVIDIA Corporation 2014/08/15 340.50
NVIDIA 3D Vision ドライバー 340.52 NVIDIA Corporation 2014/08/15 340.52
NVIDIA GeForce Experience 2.1.5 NVIDIA Corporation 2015/01/12 2.1.5
NVIDIA HD オーディオ ドライバー 1.3.30.1 NVIDIA Corporation 2014/08/15 1.3.30.1
NVIDIA PhysX システム ソフトウェア 9.13.1220 NVIDIA Corporation 2014/03/03 9.13.1220
NVIDIA グラフィックス ドライバー 340.52 NVIDIA Corporation 2014/08/15 340.52
Open It! OpenIt 2014/03/01 15.8 MB 1.1.1
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RecordPad 音声録音ソフト NCH Software 2015/02/18 5.14
RPGツクール2000 ランタイムパッケージ 2014/04/02
RPGツクール2000 体験版 2014/03/02
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
Search App by Ask 2015/02/15
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
Update for Zip Extractor Update for Zip Extractor 2014/03/01
WavePad 音声編集ソフト NCH Software 2015/03/02 5.71
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/01/12 4.01 MB 8.0.0.3
Zip Extractor Packages 2014/03/01
ハンターヒーロー X-Legend 2014/10/28 1.0000
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/02/23 13.6.1529
幻想神域 X-Legend 2014/10/29 1.0000
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108

(すみません、日本hao123ショートカット等一部がGeekに表示されず削除できませんでした)

HTJ

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 15:05:31, on 2015/03/18
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: web waltz 1.0.0.7 - {77980a3c-fa45-4070-8bde-7e9af6d76228} - C:\Program Files (x86)\web waltz\webwaltzbho.dll (file missing)
O2 - BHO: SalEsChheckEr - {82669D77-3D9D-03B8-B76F-71DFDFCD8A86} - C:\ProgramData\SalEsChheckEr\U.dll (file missing)
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: TiicTuaCioUpooN - {AED17436-6472-69EA-4313-FDFB678370C5} - C:\ProgramData\TiicTuaCioUpooN\Q.dll (file missing)
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1426658422
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SaveSenseLive Service (savesenselive) (savesenselive) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: SaveSenseLive Service (savesenselivem) (savesenselivem) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - SysTool PasSame LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13489 bytes

以上です
  • khjkighuygbkyu
  • URL
  • 2015/03/18 (Wed) 15:11:34
今一度処置を
ではhao123はとりあえず置いておきましょう。
まだまだ消し残しがありますので、そちらの処置をしましょう。
しかし、CCのスタートアップのスケジュールされたタスクのタブが出ていません。
こちらも非常に重要になってきますので、次回レスの際に必ずご提示ください。

以下URLの「Javaアンインストール・ツール」と言う文字をクリックし、
最新バージョンの確認と旧バージョンの削除を行われてください。
https://java.com/ja/download/faq/remove_olderversions.xml

Javaの最新バージョンの導入と旧バージョンの削除が完了しましたら、以下の作業を続行してください。

PCをセーフモードで起動してください(やり方↓)
HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、
こちらが指示した以外のものは絶対にチェックを入れないでください。

O2 - BHO: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll (file missing)
O2 - BHO: web waltz 1.0.0.7 - {77980a3c-fa45-4070-8bde-7e9af6d76228} - C:\Program Files (x86)\web waltz\webwaltzbho.dll (file missing)
O2 - BHO: SalEsChheckEr - {82669D77-3D9D-03B8-B76F-71DFDFCD8A86} - C:\ProgramData\SalEsChheckEr\U.dll (file missing)
O2 - BHO: TiicTuaCioUpooN - {AED17436-6472-69EA-4313-FDFB678370C5} - C:\ProgramData\TiicTuaCioUpooN\Q.dll (file missing)
O23 - Service: SaveSenseLive Service (savesenselive) (savesenselive) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: SaveSenseLive Service (savesenselivem) (savesenselivem) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
上記のFixが完了したら、Geek起動させ、以下を削除してください。

SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
Search App by Ask 2015/02/15
Update for Zip Extractor Update for Zip Extractor 2014/03/01
Zip Extractor Packages 2014/03/01

ダブルクリックで削除できます。
削除が完了したら自動的にスキャンが始まりますので、検出されたごみすべてにチェックを入れてOKを押してください。
その後PCを通常モードで再起動させてください。
CCを起動させ、ツール→スタートアップの各項目を開き、
該当するものを無効→エントリの削除の順番でクリックしてください。

Windows
有効 HKLM:Run gmsd_jp_311

Internet Explorer
有効 Helper SalEsChheckEr C:\ProgramData\SalEsChheckEr\U.dll
有効 Helper SalEsChheckEr C:\ProgramData\SalEsChheckEr\U.x64.dll
有効 Helper SaveSense C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll
有効 Helper TiicTuaCioUpooN C:\ProgramData\TiicTuaCioUpooN\Q.dll
有効 Helper TiicTuaCioUpooN C:\ProgramData\TiicTuaCioUpooN\Q.x64.dll
無効 Helper web waltz 1.0.0.7 C:\Program Files (x86)\web waltz\webwaltzbho.dll

Google Chrome
有効 Extension Anydo Extension 239 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem\239
有効 Extension FlaSheCOupon 1.6 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcohoidoikimjibedeanbdfdgjopbbkd\1.6
有効 Extension savernet 1.3 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpccokclleemfepkipokponejgbgkmal\1.3
有効 Extension SAverPro 4.31 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\oackjcfphhkoacpfmkfkaabnljiakkci\4.31
無効 Extension Search App By Ask v2 55.11 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf\55.11_0
有効 Extension Thunder,QQDownload Files Downloader 121 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof\121

無効にできないもの、既に無効になっているものはそのままエントリの削除を、
エントリが存在しない場合は放置で先に進みましょう。
またGoogle Chrome等で削除ができない場合も放置で先に進みましょう。
処置が完了しましたら今一度見直しますので、HJTのログ、CCのインストール情報ログ、
同じくCCのスタートアップの各項目のログを再取得し、貼り付けてご連絡ください。
  • IVNO
  • MAIL
  • 2015/03/18 (Wed) 15:27:29
ちょっと収穫少なめ
やはり
SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
Search App by Ask 2015/02/15
Update for Zip Extractor Update for Zip Extractor 2014/03/01
Zip Extractor Packages 2014/03/01
この4つが表示されず、検索しても該当がありませんでした
また、CCのwindowsとInternet Explorerの項目が無効には出来たもののアクセス拒否により全く削除できませんでした

『HJT』

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 17:33:37, on 2015/03/18
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: web waltz 1.0.0.7 - {77980a3c-fa45-4070-8bde-7e9af6d76228} - C:\Program Files (x86)\web waltz\webwaltzbho.dll (file missing)
O2 - BHO: SalEsChheckEr - {82669D77-3D9D-03B8-B76F-71DFDFCD8A86} - C:\ProgramData\SalEsChheckEr\U.dll (file missing)
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: TiicTuaCioUpooN - {AED17436-6472-69EA-4313-FDFB678370C5} - C:\ProgramData\TiicTuaCioUpooN\Q.dll (file missing)
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1426666620
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SaveSenseLive Service (savesenselive) (savesenselive) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: SaveSenseLive Service (savesenselivem) (savesenselivem) - SaveSense - C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: WindowsMangerProtect Service (WindowsMangerProtect) - SysTool PasSame LIMITED - C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13434 bytes

『前回載せ忘れたスケジュールされたタスク』

有効 Task Digital Sites C:\Users\METALS~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE /Check
有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

『今回のスケジュールさr(ry』

有効 Task Digital Sites C:\Users\METALS~1\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE /Check
有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

『CC』

【インストール情報】

Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/03/16 6.00 MB 17.0.0.134
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/13 203 MB 11.0.10
ALTools Update ESTsoft Corp. 2015/02/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/02/18 v8.61
Any Audio Converter 4.0.3 Any-Audio-Converter.com 2014/03/01 53.3 MB
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/01/26 2.12
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2014/12/17 2.7.0.31
ecolight-gg 2014/12/01 1.20.01.16
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2014/03/28 7.5.5111.1712
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 7 Update 75 Oracle 2015/02/14 120 MB 7.0.750
Java 7 Update 75 (64-bit) Oracle 2015/02/14 118 MB 7.0.750
Java 8 Update 31 Oracle Corporation 2015/02/13 6.07 MB 8.0.310
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2014/04/02
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
MetasequoiaLE R3.0 2015/03/16
Microsoft .NET Framework 4.5.1 Microsoft Corporation 2014/03/01 38.8 MB 4.5.50938
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/03/14 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2014/03/08 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
NVIDIA 3D Vision コントローラー ドライバー 340.50 NVIDIA Corporation 2014/08/15 340.50
NVIDIA 3D Vision ドライバー 340.52 NVIDIA Corporation 2014/08/15 340.52
NVIDIA GeForce Experience 2.1.5 NVIDIA Corporation 2015/01/12 2.1.5
NVIDIA HD オーディオ ドライバー 1.3.30.1 NVIDIA Corporation 2014/08/15 1.3.30.1
NVIDIA PhysX システム ソフトウェア 9.13.1220 NVIDIA Corporation 2014/03/03 9.13.1220
NVIDIA グラフィックス ドライバー 340.52 NVIDIA Corporation 2014/08/15 340.52
Open It! OpenIt 2014/03/01 15.8 MB 1.1.1
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RecordPad 音声録音ソフト NCH Software 2015/02/18 5.14
RPGツクール2000 ランタイムパッケージ 2014/04/02
RPGツクール2000 体験版 2014/03/02
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
Search App by Ask 2015/02/15
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
Update for Zip Extractor Update for Zip Extractor 2014/03/01
WavePad 音声編集ソフト NCH Software 2015/03/02 5.71
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/01/12 4.01 MB 8.0.0.3
Zip Extractor Packages 2014/03/01
ハンターヒーロー X-Legend 2014/10/28 1.0000
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/02/23 13.6.1529
幻想神域 X-Legend 2014/10/29 1.0000
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108

【windows】

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKCU:RunOnce Adobe Speed Launcher 1426666620
有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run ApnTBMon APN "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run gmsd_jp_311
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

【Internet Explorer】

有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper SalEsChheckEr C:\ProgramData\SalEsChheckEr\U.dll
無効 Helper SalEsChheckEr C:\ProgramData\SalEsChheckEr\U.x64.dll
無効 Helper SaveSense C:\Users\Noriyuki\AppData\Local\SaveSense\SaveSenseIE.dll
無効 Helper TiicTuaCioUpooN C:\ProgramData\TiicTuaCioUpooN\Q.dll
無効 Helper TiicTuaCioUpooN C:\ProgramData\TiicTuaCioUpooN\Q.x64.dll
無効 Helper web waltz 1.0.0.7 C:\Program Files (x86)\web waltz\webwaltzbho.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

【Google Chrome】

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142
有効 Extension Screen Resolution Tester 223 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbpeddmakpmblddofjnoghpjminhjph\223
有効 Extension Time Warp 191 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142


windows  Internet Explorer
この二つ変わってないですよね…ハイ…
  • khjkighuygbkyu
  • URL
  • 2015/03/18 (Wed) 17:47:05
ではまずはジャブから
良いお風呂でした。
これから買い物に行くのでしばらく返答できなくなりそうです。
ではまずはジャブと言うことで、ACを使って駆除作業を行いましょう。
以下のソフトウェアをご用意ください。

「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンクです。アクセスしてファイルを分かりやすい場所に保存しておいてください。
ソフトウェアを一度起動させることにより自動的にアップデートが始まります。
アップデートが完了しましたら今は何もせずに終了させてください。
本ソフトウェアの削除指示があった際は起動後に「アンインストール」ボタンを押せば自動で削除されます。

準備できたら作業を開始しましょう。

ACのアップデートが完了しましたら、PCをセーフモードで起動させてください。
ACを起動させ、Scanまたはスキャンをクリックします。
スキャンが終了しましたら、Cleaningまたは除去をクリックして掃除を行います。
掃除が完了すると再起動を求められますので、指示に従って通常モードで再起動を行ってください。
これでセーフモードから通常モードに移行します。
再起動前後いずれかにACのログが表示さますので、出力されたログを貼り付けてご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2015/03/18 (Wed) 18:28:04
完了でございます
スキャン

# AdwCleaner v4.112 - ログファイルの作成日 18/03/2015 作成時間 19:42:26
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-05.1 [ローカル]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (x64)
# ユーザー名 : keiko - METALSLIME-PC
# 実行場所 : C:\Users\METALSLIME\Desktop\AdwCleaner.exe
# オプション : スキャン

***** [ サービス ] *****

サービス 検出済み項目 : APNMCP
サービス 検出済み項目 : savesenselive
サービス 検出済み項目 : savesenselivem
サービス 検出済み項目 : WindowsMangerProtect

***** [ ファイル / フォルダ ] *****

ファイル 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Hao123.lnk
ファイル 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Hao123.lnk
ファイル 検出済み項目 : C:\Users\Noriyuki\Desktop\PepperZip.lnk
ファイル 検出済み項目 : C:\Windows\System32\roboot64.exe
フォルダ 検出済み項目 : C:\Program Files (x86)\AskPartnerNetwork
フォルダ 検出済み項目 : C:\Program Files (x86)\openit
フォルダ 検出済み項目 : C:\Program Files (x86)\ParoShopper
フォルダ 検出済み項目 : C:\Program Files (x86)\predm
フォルダ 検出済み項目 : C:\Program Files (x86)\SAleesCHeckerr
フォルダ 検出済み項目 : C:\Program Files (x86)\SalesMagneTT
フォルダ 検出済み項目 : C:\Program Files (x86)\SAovvErPro
フォルダ 検出済み項目 : C:\Program Files (x86)\SaveSenseLive
フォルダ 検出済み項目 : C:\Program Files (x86)\topdeal
フォルダ 検出済み項目 : C:\Program Files (x86)\topdeal
フォルダ 検出済み項目 : C:\ProgramData\6479a2d9000032bd
フォルダ 検出済み項目 : C:\ProgramData\apn
フォルダ 検出済み項目 : C:\ProgramData\AskPartnerNetwork
フォルダ 検出済み項目 : C:\ProgramData\e7f59268e9cd8d82
フォルダ 検出済み項目 : C:\ProgramData\GoldenCoupon
フォルダ 検出済み項目 : C:\ProgramData\lowpricesapp
フォルダ 検出済み項目 : C:\ProgramData\LowPricesApp
フォルダ 検出済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it!
フォルダ 検出済み項目 : C:\ProgramData\OnlineLowDeals
フォルダ 検出済み項目 : C:\ProgramData\SalEsChheckEr
フォルダ 検出済み項目 : C:\ProgramData\SaveSenseLive
フォルダ 検出済み項目 : C:\ProgramData\WindowsMangerProtect
フォルダ 検出済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
フォルダ 検出済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcohoidoikimjibedeanbdfdgjopbbkd
フォルダ 検出済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpccokclleemfepkipokponejgbgkmal
フォルダ 検出済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\oackjcfphhkoacpfmkfkaabnljiakkci
フォルダ 検出済み項目 : C:\Users\keiko\AppData\Local\Temp\apn
フォルダ 検出済み項目 : C:\Users\keiko\AppData\Roaming\Super Optimizer
フォルダ 検出済み項目 : C:\Users\keiko\AppData\Roaming\Systweak
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Local\AskPartnerNetwork
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Local\gmsd_jp_311
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Local\SaveSense
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Local\SaveSenseLive
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\0D0S1L2Z1P1B
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\baidu
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\DigitalSites
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\dll-files.com
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\SaveSense
フォルダ 検出済み項目 : C:\Users\METALSLIME\AppData\Roaming\Systweak
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcohoidoikimjibedeanbdfdgjopbbkd
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpccokclleemfepkipokponejgbgkmal
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\oackjcfphhkoacpfmkfkaabnljiakkci
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Local\SaveSense
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Local\SaveSenseLive
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Roaming\1H1Q
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Roaming\baidu
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Roaming\dll-files.com
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Roaming\SaveSense
フォルダ 検出済み項目 : C:\Users\Noriyuki\AppData\Roaming\Systweak
フォルダ 検出済み項目 : C:\Users\Noriyuki\Documents\Optimizer Pro

***** [ スケジュールタスク ] *****

タスク 検出済み項目 : Digital Sites
タスク 検出済み項目 : driverscanner
タスク 検出済み項目 : dsmonitor
タスク 検出済み項目 : LaunchSignup
タスク 検出済み項目 : SaveSense
タスク 検出済み項目 : SaveSenseLiveUpdateTaskMachineCore
タスク 検出済み項目 : SaveSenseLiveUpdateTaskMachineUA
タスク 検出済み項目 : Super Optimizer Schedule

***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 検出済み項目 : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 検出済み項目 : HKCU\Software\AskPartnerNetwork
キー 検出済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 検出済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 検出済み項目 : HKCU\Software\SaveSenseLive
キー 検出済み項目 : HKCU\Software\systweak
キー 検出済み項目 : [x64] HKCU\Software\AskPartnerNetwork
キー 検出済み項目 : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 検出済み項目 : [x64] HKCU\Software\SaveSenseLive
キー 検出済み項目 : [x64] HKCU\Software\systweak
キー 検出済み項目 : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 検出済み項目 : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
キー 検出済み項目 : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
キー 検出済み項目 : HKLM\SOFTWARE\AskPartnerNetwork
キー 検出済み項目 : HKLM\SOFTWARE\Classes\AppID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\AppID\{A2D3FB7A-6873-45E8-AF96-57092D721828}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\AppID\SaveSenseLive.exe
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1070C156-160B-47A0-B7D9-1860396BAB57}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{27CE191D-733B-4450-AFCD-096D105288C3}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{39A29266-D3E4-462D-AB05-F93B1053F6CF}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{44FC7A33-2E5C-48DC-B6F5-B81E8005D122}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{73192D81-6D24-4C40-BF7B-2507C6FA0B1A}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{88C606E7-BA26-41CB-8CC3-D1E313E34E75}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{93D3100A-BBB6-456C-96FC-82CAC5F383AC}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{998745A3-2AE4-488D-8092-B98FB20A00C2}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{9E0546FF-D44F-4FE4-A324-995FCACB8D33}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{A18D16ED-27B2-4B83-B70C-15E73F099546}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{A2D3FB7A-6873-45E8-AF96-57092D721828}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{C1424421-D274-491E-9D47-11C8D8CB5F9A}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{CDDAB3A4-E64D-4AE0-9E1D-F3132F5F913F}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{E66A759D-367F-433E-85C6-ED7F040BCC32}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\CLSID\{F4B8D46C-4EEE-401B-8607-DC03025F34B1}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\driverscanner
キー 検出済み項目 : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
キー 検出済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SAAlesChecker.SAAlesChecker
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SAAlesChecker.SAAlesChecker.2.2
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaeLesChieckker.SaeLesChieckker
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaeLesChieckker.SaeLesChieckker.2.2
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SalesMagnet.SalesMagnet
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SalesMagnet.SalesMagnet.1.8
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickCtrl.9
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.Update3WebControl.3
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass.1
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass.1
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc
キー 検出済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc.1.0
キー 検出済み項目 : HKLM\SOFTWARE\Classes\speedupmypc
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TicTaaCooupon.TicTaaCooupon
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TicTaaCooupon.TicTaaCooupon.2.5
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{41F978F3-431A-4464-A789-5C0692D562FB}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
キー 検出済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
キー 検出済み項目 : HKLM\SOFTWARE\Conduit
キー 検出済み項目 : HKLM\SOFTWARE\DealPlyLive
キー 検出済み項目 : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
キー 検出済み項目 : HKLM\SOFTWARE\istartsurfSoftware
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27CE191D-733B-4450-AFCD-096D105288C3}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A18D16ED-27B2-4B83-B70C-15E73F099546}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SaveSenseLive.exe
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A18D16ED-27B2-4B83-B70C-15E73F099546}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\openit open it!
キー 検出済み項目 : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=3
キー 検出済み項目 : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=9
キー 検出済み項目 : HKLM\SOFTWARE\SaveSenseLive
キー 検出済み項目 : HKLM\SOFTWARE\systweak
キー 検出済み項目 : HKLM\SOFTWARE\Tutorials
キー 検出済み項目 : HKLM\SOFTWARE\Uniblue
キー 検出済み項目 : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
データ 検出済み項目 : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command [(Default)] - "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" hxxp://www.istartsurf.com/?type=sc&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
データ 検出済み項目 : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command [(Default)] - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
値 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
値 検出済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_jp_311]

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17689

設定 検出済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.istartsurf.com/?type=hp&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.istartsurf.com/web/?type=ds&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974&q={searchTerms}
設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.istartsurf.com/?type=hp&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.istartsurf.com/web/?type=ds&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974&q={searchTerms}
設定 検出済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] - hxxp://jp.hao123.com/?tn=al_hp_hao123_jp
設定 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] - hxxp://www.istartsurf.com/web/?type=ds&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974&q={searchTerms}
設定 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] - hxxp://www.istartsurf.com/?type=hp&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
設定 検出済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] - hxxp://www.istartsurf.com/web/?type=ds&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974&q={searchTerms}

-\\ Google Chrome v33.0.1750.154

[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Web data] - 検出済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-SPE&o=APN11412&l=dis&pf=V7&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.51&doi=2015-02-13&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Extension] : aaaaaiabcopkplhgaedhbloeejhhankf
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Extension] : jcohoidoikimjibedeanbdfdgjopbbkd
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Extension] : mpccokclleemfepkipokponejgbgkmal
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Extension] : oackjcfphhkoacpfmkfkaabnljiakkci
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Homepage] : hxxp://www.search.ask.com/?gct=hp
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Homepage] : hxxp://www.istartsurf.com/?type=hp&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Startup_URLs] : hxxp://www.istartsurf.com/?type=hp&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Web data] - 検出済み項目 [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3321906&octid=EB_ORIGINAL_CTID&ISID=M5455A364-2D00-457B-A9D1-3380C3A48844&SearchSource=58&CUI=&UM=5&UP=SP9E4DDAA7-0F0E-453E-9F8E-3CDC1747AFA6&q={searchTerms}&SSPV=
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Web data] - 検出済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-SPE&o=APN11412&l=dis&pf=V7&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.51&doi=2015-02-13&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Homepage] : hxxp://search.gboxapp.com/?aff=p
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Startup_URLs] : hxxp://search.gboxapp.com/?aff=p
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Web data] - 検出済み項目 [Search Provider] : hxxp://search.conduit.com/Results.aspx?gd=&ctid=CT3321906&octid=EB_ORIGINAL_CTID&ISID=M5455A364-2D00-457B-A9D1-3380C3A48844&SearchSource=58&CUI=&UM=5&UP=SP9E4DDAA7-0F0E-453E-9F8E-3CDC1747AFA6&q={searchTerms}&SSPV=
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Web data] - 検出済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-SPE&o=APN11412&l=dis&pf=V7&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.51&doi=2015-02-13&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Extension] : aaaaaiabcopkplhgaedhbloeejhhankf
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Extension] : mpccokclleemfepkipokponejgbgkmal
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Homepage] : hxxp://www.search.ask.com/?gct=hp
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Startup_URLs] : hxxp://www.search.ask.com/?tpid=ORJ-SPE&o=APN11412&pf=V7&trgb=CR&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=hp&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&itbv=12.24.1.51&doi=2015-02-13&psv=&pt=tb
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Homepage] : hxxp://search.gboxapp.com/?aff=p
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 検出済み項目 [Startup_URLs] : hxxp://search.gboxapp.com/?aff=p
*************************

AdwCleaner[R0].txt - [23961 bytes] - [18/03/2015 19:42:26]

########## EOF - \AdwCleaner\AdwCleaner[R0].txt - [24021 bytes] ##########


削除

# AdwCleaner v4.112 - ログファイルの作成日 18/03/2015 作成時間 19:43:30
# 更新日 09/03/2015 作成元 Xplode
# データベース : 2015-03-05.1 [ローカル]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (x64)
# ユーザー名 : keiko - METALSLIME-PC
# 実行場所 : C:\Users\METALSLIME\Desktop\AdwCleaner.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : APNMCP
[#] サービス 削除済み項目 : savesenselive
[#] サービス 削除済み項目 : savesenselivem
[#] サービス 削除済み項目 : WindowsMangerProtect

***** [ ファイル / フォルダ ] *****

フォルダ 削除済み項目 : C:\ProgramData\apn
フォルダ 削除済み項目 : C:\ProgramData\AskPartnerNetwork
フォルダ 削除済み項目 : C:\ProgramData\SaveSenseLive
フォルダ 削除済み項目 : C:\ProgramData\WindowsMangerProtect
フォルダ 削除済み項目 : C:\ProgramData\lowpricesapp
フォルダ 削除済み項目 : C:\ProgramData\OnlineLowDeals
フォルダ 削除済み項目 : C:\ProgramData\GoldenCoupon
フォルダ 削除済み項目 : C:\ProgramData\SalEsChheckEr
フォルダ 削除済み項目 : C:\ProgramData\6479a2d9000032bd
フォルダ 削除済み項目 : C:\ProgramData\e7f59268e9cd8d82
フォルダ 削除済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it!
フォルダ 削除済み項目 : C:\Program Files (x86)\AskPartnerNetwork
フォルダ 削除済み項目 : C:\Program Files (x86)\openit
フォルダ 削除済み項目 : C:\Program Files (x86)\predm
フォルダ 削除済み項目 : C:\Program Files (x86)\SaveSenseLive
フォルダ 削除済み項目 : C:\Program Files (x86)\topdeal
フォルダ 削除済み項目 : C:\Program Files (x86)\ParoShopper
フォルダ 削除済み項目 : C:\Program Files (x86)\SAleesCHeckerr
フォルダ 削除済み項目 : C:\Program Files (x86)\SalesMagneTT
フォルダ 削除済み項目 : C:\Program Files (x86)\SAovvErPro
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Temp\apn
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Roaming\Systweak
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Roaming\Super Optimizer
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Local\AskPartnerNetwork
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Local\SaveSense
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Local\SaveSenseLive
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Local\gmsd_jp_311
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\0D0S1L2Z1P1B
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\baidu
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\DigitalSites
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\SaveSense
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\Systweak
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\dll-files.com
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Local\SaveSense
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Local\SaveSenseLive
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Roaming\1H1Q
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Roaming\baidu
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Roaming\SaveSense
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Roaming\Systweak
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Roaming\dll-files.com
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SaveSense
フォルダ 削除済み項目 : C:\Users\Noriyuki\Documents\Optimizer Pro
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcohoidoikimjibedeanbdfdgjopbbkd
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcohoidoikimjibedeanbdfdgjopbbkd
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpccokclleemfepkipokponejgbgkmal
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpccokclleemfepkipokponejgbgkmal
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\oackjcfphhkoacpfmkfkaabnljiakkci
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\oackjcfphhkoacpfmkfkaabnljiakkci
ファイル 削除済み項目 : C:\Windows\System32\roboot64.exe
ファイル 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Hao123.lnk
ファイル 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Hao123.lnk
ファイル 削除済み項目 : C:\Users\Noriyuki\Desktop\PepperZip.lnk

***** [ スケジュールタスク ] *****

タスク 削除済み項目 : Digital Sites
タスク 削除済み項目 : driverscanner
タスク 削除済み項目 : dsmonitor
タスク 削除済み項目 : LaunchSignup
タスク 削除済み項目 : SaveSense
タスク 削除済み項目 : SaveSenseLiveUpdateTaskMachineCore
タスク 削除済み項目 : SaveSenseLiveUpdateTaskMachineUA
タスク 削除済み項目 : Super Optimizer Schedule

***** [ ショートカット ] *****

ショートカット 駆除済み項目 : C:\Users\keiko\Desktop\Google Chrome.lnk
ショートカット 駆除済み項目 : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (2).lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (3).lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (4).lnk
ショートカット 駆除済み項目 : C:\Users\keiko\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk

***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf
キー 削除済み項目 : HKLM\SOFTWARE\Classes\AppID\SaveSenseLive.exe
キー 削除済み項目 : HKLM\SOFTWARE\Classes\driverscanner
キー 削除済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
キー 削除済み項目 : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickCtrl.9
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.OneClickProcessLauncherMachine.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLive.Update3WebControl.3
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoCreateAsync.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreClass.1
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CoreMachineClass.1
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.CredentialDialogMachine.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachine.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassMachineFallback.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.OnDemandCOMClassSvc.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.ProcessLauncher.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3COMClassService.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachine.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebMachineFallback.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaveSenseLiveUpdate.Update3WebSvc.1.0
キー 削除済み項目 : HKLM\SOFTWARE\Classes\speedupmypc
値 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
キー 削除済み項目 : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=3
キー 削除済み項目 : HKLM\SOFTWARE\MozillaPlugins\@tools.updaterss.com/SaveSenseLive Update;version=9
キー 削除済み項目 : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SalesMagnet.SalesMagnet
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SalesMagnet.SalesMagnet.1.8
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SAAlesChecker.SAAlesChecker
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SAAlesChecker.SAAlesChecker.2.2
キー 削除済み項目 : HKLM\SOFTWARE\Classes\TicTaaCooupon.TicTaaCooupon
キー 削除済み項目 : HKLM\SOFTWARE\Classes\TicTaaCooupon.TicTaaCooupon.2.5
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaeLesChieckker.SaeLesChieckker
キー 削除済み項目 : HKLM\SOFTWARE\Classes\SaeLesChieckker.SaeLesChieckker.2.2
値 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [gmsd_jp_311]
キー 削除済み項目 : HKLM\SOFTWARE\Classes\AppID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\AppID\{A2D3FB7A-6873-45E8-AF96-57092D721828}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1070C156-160B-47A0-B7D9-1860396BAB57}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{27CE191D-733B-4450-AFCD-096D105288C3}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{39A29266-D3E4-462D-AB05-F93B1053F6CF}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{44FC7A33-2E5C-48DC-B6F5-B81E8005D122}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{73192D81-6D24-4C40-BF7B-2507C6FA0B1A}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{88C606E7-BA26-41CB-8CC3-D1E313E34E75}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{93D3100A-BBB6-456C-96FC-82CAC5F383AC}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{997E3BFB-F821-411C-8B96-D61D415EC8FA}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{998745A3-2AE4-488D-8092-B98FB20A00C2}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{9E0546FF-D44F-4FE4-A324-995FCACB8D33}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{A18D16ED-27B2-4B83-B70C-15E73F099546}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{A2D3FB7A-6873-45E8-AF96-57092D721828}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{C1424421-D274-491E-9D47-11C8D8CB5F9A}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{CDDAB3A4-E64D-4AE0-9E1D-F3132F5F913F}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{E66A759D-367F-433E-85C6-ED7F040BCC32}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{F4B8D46C-4EEE-401B-8607-DC03025F34B1}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
キー 削除済み項目 : HKLM\SOFTWARE\Classes\TypeLib\{41F978F3-431A-4464-A789-5C0692D562FB}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{71E129FF-6C2A-4984-818C-7E2C998B8D99}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A18D16ED-27B2-4B83-B70C-15E73F099546}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27CE191D-733B-4450-AFCD-096D105288C3}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A18D16ED-27B2-4B83-B70C-15E73F099546}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BEE7E029-5037-4DAD-A2DB-82E397AB1A44}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{74C1CC98-1FFF-5F3A-76FF-9E810BFE88D7}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{AED17436-6472-69EA-4313-FDFB678370C5}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{ED9504ED-ABAE-F3FE-EA0E-F7D54C9B9DC6}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{82669D77-3D9D-03B8-B76F-71DFDFCD8A86}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AED17436-6472-69EA-4313-FDFB678370C5}
データ 復元済み項目 : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
データ 復元済み項目 : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
キー 削除済み項目 : HKCU\Software\AskPartnerNetwork
キー 削除済み項目 : HKCU\Software\SaveSenseLive
キー 削除済み項目 : HKCU\Software\systweak
キー 削除済み項目 : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 削除済み項目 : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
キー 削除済み項目 : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
キー 削除済み項目 : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
キー 削除済み項目 : HKLM\SOFTWARE\AskPartnerNetwork
キー 削除済み項目 : HKLM\SOFTWARE\Conduit
キー 削除済み項目 : HKLM\SOFTWARE\DealPlyLive
キー 削除済み項目 : HKLM\SOFTWARE\istartsurfSoftware
キー 削除済み項目 : HKLM\SOFTWARE\SaveSenseLive
キー 削除済み項目 : HKLM\SOFTWARE\systweak
キー 削除済み項目 : HKLM\SOFTWARE\Tutorials
キー 削除済み項目 : HKLM\SOFTWARE\Uniblue
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\openit open it!
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
キー 削除済み項目 : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SaveSenseLive.exe

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17689

設定 復元済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
設定 復元済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
設定 復元済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]

-\\ Google Chrome v33.0.1750.154

[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-SPE&o=APN11412&l=dis&pf=V7&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.51&doi=2015-02-13&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Extension] : aaaaaiabcopkplhgaedhbloeejhhankf
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Extension] : jcohoidoikimjibedeanbdfdgjopbbkd
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Extension] : mpccokclleemfepkipokponejgbgkmal
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Extension] : oackjcfphhkoacpfmkfkaabnljiakkci
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Homepage] : hxxp://www.search.ask.com/?gct=hp
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Homepage] : hxxp://www.istartsurf.com/?type=hp&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Startup_URLs] : hxxp://www.istartsurf.com/?type=hp&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3321906&octid=EB_ORIGINAL_CTID&ISID=M5455A364-2D00-457B-A9D1-3380C3A48844&SearchSource=58&CUI=&UM=5&UP=SP9E4DDAA7-0F0E-453E-9F8E-3CDC1747AFA6&q={searchTerms}&SSPV=
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-SPE&o=APN11412&l=dis&pf=V7&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.51&doi=2015-02-13&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Homepage] : hxxp://search.gboxapp.com/?aff=p
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Startup_URLs] : hxxp://search.gboxapp.com/?aff=p
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://search.conduit.com/Results.aspx?gd=&ctid=CT3321906&octid=EB_ORIGINAL_CTID&ISID=M5455A364-2D00-457B-A9D1-3380C3A48844&SearchSource=58&CUI=&UM=5&UP=SP9E4DDAA7-0F0E-453E-9F8E-3CDC1747AFA6&q={searchTerms}&SSPV=
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-SPE&o=APN11412&l=dis&pf=V7&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.51&doi=2015-02-13&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Extension] : aaaaaiabcopkplhgaedhbloeejhhankf
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Extension] : mpccokclleemfepkipokponejgbgkmal
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Homepage] : hxxp://www.search.ask.com/?gct=hp
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Startup_URLs] : hxxp://www.search.ask.com/?tpid=ORJ-SPE&o=APN11412&pf=V7&trgb=CR&p2=%5EBBK%5EOSJ000%5EYY%5EJP&gct=hp&apn_ptnrs=BBK&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&apn_uid=D1A3A7DC-351E-4252-A866-D080EB296C49&itbv=12.24.1.51&doi=2015-02-13&psv=&pt=tb
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Homepage] : hxxp://search.gboxapp.com/?aff=p
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Startup_URLs] : hxxp://search.gboxapp.com/?aff=p

*************************

AdwCleaner[R0].txt - [24171 bytes] - [18/03/2015 19:42:26]
AdwCleaner[S0].txt - [23689 bytes] - [18/03/2015 19:43:30]

########## EOF - \AdwCleaner\AdwCleaner[S0].txt - [23749 bytes] ##########

以上となります
  • khjkighuygbkyu
  • URL
  • 2015/03/18 (Wed) 19:52:57
盛大なジャブでした
ACの結果は良好・・・と言うより大収穫です。
ACは不要となりますので、ACを起動させてアンインストールボタンを押して削除なされてください。

以下のソフトウェアをご用意ください。

Malwarebytes Anti-Malware(通称:MBAM)
旧バージョンダウンロード↓(ファイル直リンクです。表示して数秒後にダウンロード開始の表示が出ます)
http://www.oldapps.com/malwarebytes.php?old_malwarebytes=12090?download
最新バージョンには動作しなくなるなどの不具合があるため、ここでは旧バージョンを利用します。
インストールの最後に出てくるMalwarebytes Anti-Malware Pro版の無料試用を開始する。のチェックを外します。
このソフトウェアは日本語対応ではありますが、初回起動時は文字化けしておりますので、以下の手順で日本語化を行ってください。
MBAMを起動させてください。
MBAMを起動時に自動アップデートが始まります。
最新バージョンをダウンロードしたと表示されたら、必ずキャンセルを押してください。
次にウイルス定義ファイルのアップデートが始まりますので、アップデート終了までお待ちください。
ウイルス定義ファイルのバージョンアップが完了すると、再度最新バージョンをダウンロードしたと出ますので、
再びキャンセルを押してアップデートを中止してください。
MBAMが起動したら設定タブを開き、Languageの項目の部分をJapaneseに再度変更することで日本語化が可能です。
この段階ではスキャンは行いませんので、設定が完了したらMBAMを終了させておいてください。
最新バージョンと旧バージョンは操作方法が大幅に異なりますので、
万一バージョン2.0以降を導入されてしまった場合はご連絡ください。
片付け時はセーフモードからGeekを利用してアンインストールしてください。

ここで使うのはFree(無償版)です。

準備が完了しましたら作業を開始いたします。
PCをセーフモードで起動してください。
MBAMを使ってスキャンしてください。
MBAMを起動させます。
フルスキャンを選択し、スキャン開始をクリックします。
スキャン終了まで30分~1時間半程度お待ちください。
スキャンが完了したら、詳細を表示をクリックします。
検出されたものの一覧が出ますので、検出されたものすべてを駆除するため、
検出されたものの左側にあるチェックボックスすべてにチェックを入れます。
すべての箇所にチェックを入れたら選択されたアイテムを隔離ボタンを押します。
処置の設定が完了するとPCの再起動を促されますので、指示に従って通常モードで再起動してください。
再起動後にログが出ますので、取得されたログを貼り付け、ご報告をお願いいたします。
  • IVNO
  • MAIL
  • 2015/03/18 (Wed) 21:02:06
完了です(`・ω・´)キリッ
ログってこれであってますよね?

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

定義バージョン: v2015.03.18.03

Windows 7 Service Pack 1 x64 NTFS (セーフモード)
Internet Explorer 11.0.9600.17691
METALSLIME :: METALSLIME-PC [標準ユーザー]

2015/03/18 21:19:01
mbam-log-2015-03-18 (21-19-01).txt

スキャンタイプ: フルスキャン (C:\|D:\|)
有効なスキャン領域: メモリ | スタートアップ | レジストリ | ファイルシステム | ヒューリスティック/追加アイテムのスキャン  | ヒューリスティック/Shuriken エンジンを使用してスキャン  | 不審なプログラム (PUP) | 不審な変更 (PUM)
無効なスキャン領域: ピア・ツー・ピアプログラム(P2P)
スキャンしたアイテム数: 533801
経過時間: 46 分, 39 秒

メモリプロセスの検出: 0
(悪意のあるアイテムは検出されていません。)

メモリモジュールの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリキーの検出: 20
HKCR\CLSID\{77980a3c-fa45-4070-8bde-7e9af6d76228} (PUP.Optional.WebWaltz.A) -> 再起動後に削除されます。
HKCR\TypeLib\{5fc664f1-35b0-4b59-88ef-6dbaf922a848} (PUP.Optional.WebWaltz.A) -> 再起動後に削除されます。
HKCR\Interface\{F123A39C-3725-4D63-8FC5-D4D3B5BB8E6D} (PUP.Optional.WebWaltz.A) -> 再起動後に削除されます。
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77980A3C-FA45-4070-8BDE-7E9AF6D76228} (PUP.Optional.WebWaltz.A) -> 再起動後に削除されます。
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{77980A3C-FA45-4070-8BDE-7E9AF6D76228} (PUP.Optional.WebWaltz.A) -> 正常に隔離され削除されました。
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{77980A3C-FA45-4070-8BDE-7E9AF6D76228} (PUP.Optional.WebWaltz.A) -> 正常に隔離され削除されました。
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} (PUP.Optional.SearchProtect.A) -> 正常に隔離され削除されました。
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{71e129ff-6c2a-4984-818c-7e2c998b8d99} (PUP.Optional.SaveSense.A) -> 正常に隔離され削除されました。
HKCU\SOFTWARE\SaveSense (PUP.Optional.SaveSense.A) -> 正常に隔離され削除されました。
HKCU\SOFTWARE\SaveSenseLive (PUP.Optional.SaveSense.A) -> 正常に隔離され削除されました。
HKCU\Software\DSiteproducts (PUP.Optional.DigitalSites.A) -> 正常に隔離され削除されました。
HKCU\Software\InstallCore\1I1T1Q1S (PUP.Optional.InstallCore.A) -> 正常に隔離され削除されました。
HKCU\SOFTWARE\INSTALLCORE (PUP.Optional.InstallCore.A) -> 正常に隔離され削除されました。
HKCU\Software\Systweak\Advanced System Protector (PUP.Optional.AdvancedSystemProtector.A) -> 正常に隔離され削除されました。
HKCU\Software\Systweak\RegClean Pro (PUP.Optional.RegCleanerPro.A) -> 正常に隔離され削除されました。
HKCU\Software\systweak\ssd (PUP.Optional.SystemSpeedup) -> 正常に隔離され削除されました。
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{cae99edb} (PUP.Optional.Booster.A) -> 再起動後に削除されます。
HKLM\SYSTEM\CurrentControlSet\Services\Update web waltz (PUP.Optional.WebWaltz.A) -> 再起動後に削除されます。
HKLM\SYSTEM\CurrentControlSet\Services\Util web waltz (PUP.Optional.WebWaltz.A) -> 再起動後に削除されます。
HKLM\Software\web waltz (PUP.Optional.WebWaltz.A) -> 再起動後に削除されます。

レジストリ値の検出: 1
HKCU\Software\InstallCore|tb (PUP.Optional.InstallCore.A) -> データ: 0V1N2Y1S0V1R1H -> 正常に隔離され削除されました。

レジストリデータ項目の検出: 0
(悪意のあるアイテムは検出されていません。)

フォルダの検出: 0
(悪意のあるアイテムは検出されていません。)

ファイルの検出: 8
C:\Users\METALSLIME\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SP70K6II\setup.exe (PUP.Optional.PremiumInstaller) -> 正常に隔離され削除されました。
C:\Users\METALSLIME\Desktop\backups\backup-20150318-143933-118.dll (PUP.Optional.Multiplug.A) -> 正常に隔離され削除されました。
C:\Users\METALSLIME\Desktop\backups\backup-20150318-143933-263.dll (PUP.Optional.Multiplug.A) -> 正常に隔離され削除されました。
C:\Users\METALSLIME\Desktop\音関係\soundengine.exe (PUP.Optional.InstallCore) -> 正常に隔離され削除されました。
C:\Windows\Tasks\SaveSense.job (PUP.Optional.SaveSense.A) -> 再起動後に削除されます。
C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job (PUP.Optional.SaveSense.A) -> 再起動後に削除されます。
C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job (PUP.Optional.SaveSense.A) -> 再起動後に削除されます。
C:\Windows\Tasks\Digital Sites.job (PUP.Optional.DigitalSites.A) -> 再起動後に削除されます。

(終)

再起動前に出たので不安でして
  • khjkighuygbkyu
  • URL
  • 2015/03/18 (Wed) 22:27:56
MBAMは削除しHPとOTLでスキャンを
MBAMの結果は良好です。
SaveSenseが絡むといつもログが膨大になります。
そしてこれだけ駆除されてもまだSaveSenseが残っているのですからタチが悪いです。
さて残りも一掃するためにログ取得と行きましょう。
MBAMは必要ありませんので、導入時の指示に従って削除なされてください。

以下のソフトウェアをご用意ください。

HerdProtect(通称:HP)
http://www.herdprotect.com/downloads.aspx
インストール版でもポータブル版でも構いません。
インストール版の場合、アンインストールの際は、セーフモードでGeekを利用してアンインストールされてください。
また、トレンドマイクロのウイルスバスターとの相性が悪いとの報告も受けております。
相性の問題でスキャンが正常にできないときは、その旨をご報告ください。
さらに、本ソフトウェアにより検出されたものすべてがマルウェアと言うわけではありません。
HPは駆除機能もありますが、まずは駆除は行わず、検出のみに使用いたします。

OldTimer Listit(通称:OTL)
http://oldtimer.geekstogo.com/OTL.exe
直リンクです。デスクトップ等、分かりやすい場所に保存してください。
削除する際は起動後に「Cleanup」ボタンを押すことにより、自動的に削除されます。

準備ができましたら、まずゲームのインストーラーなど、極端に重たいファイルがある場合は、
そちらの不要ファイルを事前にPC内から手動削除し、ごみ箱からも消しておいてください。
これらをHPが不審プログラムとして拾うと、1日や2日は平気でスキャンにかかってしまいます。
PCが通常モードで起動していることを確認し、HerdProtectを起動させます。
ソフトウェアの特性として、ファイルのスキャンにインターネット回線を利用します。
インターネット回線がご利用できないセーフモード時では正常に動作しませんので、
セーフモードで起動中の場合は通常モードに切り替えてください。
Scanボタンがありますので、こちらを押してスキャンを行ってください。
スキャンに必要な情報を収集したり、発見された不審なソフトウェアを
各種セキュリティソフトで調査している間は、スキャン作業が停止します。
スキャンが進行しないからと言ってフリーズしたわけではありませんので、
スキャンが完了するまで今しばらくお待ちください。
スキャンが完了しましたらスキャン結果が表示されますので、
画面右上にあるSave resultsという文字をクリックしてログを出力してください。
ログは任意のお名前をつけて、分かりやすいところに保存してください。

以下をメモ帳にコピペしてください。

------コピペこの下より------
%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
CREATERESTOREPOINT
------コピペこの上まで------

コピペが完了しましたら、任意のお名前をつけて分かりやすい場所に保存されてください。
保存が完了しましたら、PCをセーフモードで起動させてください。
OTLを起動させ、表示画面上部中央にあるScan All Usersにチェックを入れてください。
設定が完了しましたら、Custom Scan/Fixesの項目内に先ほど保存したメモ帳の内容を貼り付けてください。
コピペが完了しましたらメモ帳を終了させ、[Run Scan]をクリックしてスキャンを行ってください。
スキャン完了まで数分程度かかりますので、今しばらくお待ちください。
スキャンが完了しましたら、OTLを保存した場所と同じところに、
OTL.txtとExtras.txtが出力されますので、こちら2つと先に保存したHPのログを貼り付けてご連絡ください。
なお、OTLもHPもその特性上、非常に長文となりがちです。
こちらの掲示板の文字数上限がひらがな換算で約3万文字、ローマ字換算で約6万文字です。
(より正確には件名を含めてJIS換算65,535バイトまで。全角文字・全角記号2バイト、
半角文字・半角記号1バイト、絵文字等特殊文字3バイト)
確実に文字数オーバーとなりますので、余裕を見て5万5千文字程度になるように、
以下のURLの文字数カウンター等で確認しつつ、ログを分割されてご連絡ください。
http://www2u.biglobe.ne.jp/~yuichi/rest/strcount.html
  • IVNO
  • MAIL
  • 2015/03/18 (Wed) 22:45:33
壱符「ハードプロテクトスキャン」
HP其の壱

Saved date: 2015/03/19 16:14:42
Files detected: 152
Files scanned: 10,299
Processes scanned: 76
Modules scanned: 707
ASEPs scanned: 487
Downloads scanned: 0
Deep analysis: 0/0
---------------------------------------------------------------------------------

Files

---------------------------------------------------------------------------------

File path: c:\programdata\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
Publisher: Super PC Tools Ltd
Signer: Super PC Tools Limited
MD5: 9fa5580215029dafc787e15cacb375c9
SHA-1: 841577a4626358f2e600eb953a0beb1c6dc43339
Created: 2014/03/15 21:01:51
Detections: 38
Determination: Adware
- Reason Heuristics as PUP.Installer.PC Utilities (Adware)
- Clam AntiVirus as Win.Trojan.Optimizerpro-18 (Undefined)
- Avira AntiVirus as APPL/OptimizPro.RE (Adware)
- Rising Antivirus as PE:Trojan.Win32.Generic.17876B26!394750758 (Undefined)
- F-Secure as Gen:Variant.Strictor.66909 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Strictor.66909 (Undefined)
- MicroWorld eScan as Gen:Variant.Strictor.66909 (Undefined)
- avast! as Adware-gen [Adw] (Adware)
- Panda Antivirus as Trj/CI.A (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Strictor.66909 (Undefined)
- Bitdefender as Gen:Variant.Strictor.66909 (Undefined)
- Trend Micro as TROJ_GEN.R02KC0OK314 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Comodo Security as ApplicUnwnt (Undefined)
- Trend Micro House Call as TROJ_GEN.R02KC0OK314 (Undefined)
- Qihoo 360 Security as HEUR/QVM41.1.Malware.Gen (Undefined)
- AVG as Generic (Undefined)
- Fortinet FortiGate as Riskware/OptimizerPro (Undefined)
- ESET NOD32 as Win32/Adware.SpeedingUpMyPC.U application (Adware)
- G Data as Win32.Application.OptimizerPro (Undefined)
- AhnLab V3 Security as PUP/Win32.Optimizer (Adware)
- Antiy Labs AVL as Trojan/Win32.SGeneric (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Dr.Web as riskware program Program.Unwanted.134 (Undefined)
- NANO AntiVirus as Riskware.Win32.OptimizerPro.dgmsiw (Adware)
- Kaspersky as not-a-virus:RiskTool.Win32.SProtector (Adware)
- Total Defense as Win32/Tnega.SZHEWKB (Undefined)
- F-Prot as W32/A-fcdc4a04 (Undefined)
- Agnitum Outpost as Riskware.OptimizerPro (Adware)
- K7 AntiVirus as Adware (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- Zillya! Antivirus as Trojan.Black.Win32.18731 (Undefined)
- McAfee as Artemis!D9C65562DB38 (Undefined)
- IKARUS anti.virus as PUA.SpeedingUpMyPC (Adware)
- Baidu Antivirus as PUA.Win32.Rezimitpo (Adware)
- Jiangmin as Trojan/Delf.abfl (Undefined)
- Vba32 AntiVirus as Trojan.Delf (Undefined)
- Sophos as Generic PUA JH (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files (x86)\loilo\loiloscope 2\loiloscopelauncher.exe
Publisher:
MD5: a7c1cbab6eb0b8b49e550e279f3b9ef5
SHA-1: 0b57a800994f60aa3151d32b23f9540118f5376c
Created: 2014/02/28 21:40:22
Detections: 1
Determination: Ignore detections (false positive)
- Trend Micro House Call as TROJ_GEN.R0C1H0AK613 (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\bnbpeddmakpmblddofjnoghpjminhjph\223\manifest.json
Publisher:
MD5: 90654ca93d7d78c6dcc43cf41be7473d
SHA-1: f6b11b62ad86145ab0653e378884b2857ec6818d
Created: 2014/09/07 17:24:01
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142\manifest.json
Publisher:
MD5: 2001a9388932c3fa9689a5a016ae0370
SHA-1: 57209ac6bfa22fc28deb8d73471a0f9d903e1e98
Created: 2014/11/07 23:52:59
Detections: 1
Determination: Adware
- Reason as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\kdadialhpiikehpdeejjeiikopddkjem\239\manifest.json
Publisher:
MD5: b0572e0687954171d091cd0ab08a7370
SHA-1: 9522ff5bc314c32834dbf55db0665cc3768c4fb7
Created: 2014/08/15 16:13:13
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mgnplfeogpkbplfamjbigeekindmicbe\142\manifest.json
Publisher:
MD5: 97e3a87c2283847628df864093b2d39f
SHA-1: 7fa18a4656773bf5969184d13926498a23ab05d7
Created: 2014/08/17 11:01:10
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191\manifest.json
Publisher:
MD5: 6b29dc3076c2ed191da75d6d37d903fc
SHA-1: 16aec2ea30e2f30c1088675dd9c9dfe367aec01a
Created: 2014/08/14 13:10:24
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof\121\manifest.json
Publisher:
MD5: f6cd6e75fbb6e5e7b28c2aff2abc0512
SHA-1: 977304f1e963716143e96834bc74281fe080d675
Created: 2014/08/14 13:24:00
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\manifest.json
Publisher:
MD5: 144a763fd7dd2c5821abd14a9d2c64b3
SHA-1: a7a7c5a9416270207f851d42e317328771d61bfc
Created: 2014/05/16 21:04:04
Detections: 1
Determination: Adware
- Reason as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\manifest.json
Publisher:
MD5: 2d922aa30def0a058f85601f8acb5ce5
SHA-1: 62f069a274a987013c2c75ad46a4487355b0dea2
Created: 2014/03/21 18:58:05
Detections: 1
Determination: Adware
- Reason as PUP.Chrome.Extension (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn11f2.tmp
Publisher:
MD5: d2956f4ea9566f8f19715ac6b6a0bb99
SHA-1: c947b5bb9c0329082083303a316a0a09a0770e43
Created: 2014/12/03 21:16:08
Detections: 19
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KQ14 (Undefined)
- avast! as Win32:Rootkit-gen [Rtk] (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA MJ (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!D2956F4EA956 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn123e.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 15:52:58
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn1420.tmp
Publisher:
MD5: 2a69464bb57ccc3fc145c5e7b1dbd5b2
SHA-1: a060ebbfdfe9f9ffe94b6049c96b38c5ab15c4dd
Created: 2014/11/30 19:01:49
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- K7 Gateway Antivirus as Trojan (Undefined)
- K7 AntiVirus as Adware (Adware)
- NANO AntiVirus as Trojan.Win32.ZPACK.djpswu (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05L114 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA KA (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!2A69464BB57C (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn148d.tmp
Publisher:
MD5: e04243a4f31efe1fbd88cbf62e3d5eed
SHA-1: 73a53dc5102b808a4f8ecde286bbd9c37cc17c94
Created: 2014/11/23 11:42:15
Detections: 24
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Yontoo (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Norman as Suspicious_Gen5.AYZZY
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as UnclassifiedMalware (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!E04243A4F31E (Undefined)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn1789.tmp
Publisher:
MD5: 6f41c37146856f753e0d5d8424f73513
SHA-1: deb82f0c9c75ec825d57c02ca86e886ba50b3e98
Created: 2014/11/29 10:15:59
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn183c.tmp
Publisher:
MD5: 125d54d6c77ac655bda62d539882d94d
SHA-1: f74d46fe110c8e541062e81754c7d01a6c637d45
Created: 2014/11/24 12:32:01
Detections: 10
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KM14 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn18b9.tmp
Publisher:
MD5: e8caf3fbaa77493c20d2b68abf361c1a
SHA-1: e5cb6c9f9fa95fa09eb6b535d2c60cb8b9ae4b8f
Created: 2014/11/24 16:33:24
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E8CAF3FBAA77 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KM14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/CI.A (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn190d.tmp
Publisher:
MD5: 1d5468456cb6f738e803508bd44d8b44
SHA-1: 153dc37af85f3b0e85180f1e298cb24bdc7cc8d8
Created: 2014/11/23 16:22:50
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!1D5468456CB6 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)
- K7 Gateway Antivirus as Unwanted-File (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09L314 (Undefined)
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- AVG as Adware Generic_r (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Norman as Gen:Variant.Adware.Graftor.164575 (Adware)
- Rising Antivirus as PE:Trojan.Win32.Generic.17ACA540!397190464 (Undefined)
- Baidu Antivirus as Adware.Win32.Generic (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn19f3.tmp
Publisher:
MD5: bdf46d4426759de566169040cd327b0c
SHA-1: e0d88d261e6fab13230d2102d89ee9e92576ce13
Created: 2014/12/03 21:56:34
Detections: 22
Determination: Adware
- MicroWorld eScan as Adware.Generic.1140187 (Adware)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0EAF15 (Undefined)
- avast! as Win32:PUP-gen [PUP] (Adware)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Bitdefender as Adware.Generic.1140187 (Adware)
- Lavasoft Ad-Aware as Adware.Generic.1140187 (Adware)
- Emsisoft Anti-Malware as Adware.Generic.1140187 (Adware)
- F-Secure as Adware.Generic.1140187 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.R021C0EAF15 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA OA (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus,HEUR]/Win32.AGeneric (Adware)
- G Data as Adware.Generic.1140187 (Adware)
- McAfee as Artemis!BDF46D442675 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Esprot (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn20af.tmp
Publisher:
MD5: bcb8dd22e0fdc9c3293c2799ee3dc70a
SHA-1: 4e542f8544800ba4a1427c27e42e641222366857
Created: 2014/11/23 11:43:23
Detections: 11
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KM14 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn2435.tmp
Publisher:
MD5: d4d16b16d9d2ab779d542ce3a373d51f
SHA-1: 3eaf75a32ccbe51de8421b0be48e32c10782d016
Created: 2014/11/23 11:31:23
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn266a.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 15:53:03
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn288f.tmp
Publisher:
MD5: bdf46d4426759de566169040cd327b0c
SHA-1: e0d88d261e6fab13230d2102d89ee9e92576ce13
Created: 2014/12/03 21:16:13
Detections: 22
Determination: Adware
- MicroWorld eScan as Adware.Generic.1140187 (Adware)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0EAF15 (Undefined)
- avast! as Win32:PUP-gen [PUP] (Adware)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Bitdefender as Adware.Generic.1140187 (Adware)
- Lavasoft Ad-Aware as Adware.Generic.1140187 (Adware)
- Emsisoft Anti-Malware as Adware.Generic.1140187 (Adware)
- F-Secure as Adware.Generic.1140187 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.R021C0EAF15 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA OA (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus,HEUR]/Win32.AGeneric (Adware)
- G Data as Adware.Generic.1140187 (Adware)
- McAfee as Artemis!BDF46D442675 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Esprot (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn2916.tmp
Publisher:
MD5: 121e68ee23f726243b66c2e95179788a
SHA-1: 6c182d91c12c045a21301ef7e4b2501a27cbd123
Created: 2014/11/24 11:50:35
Detections: 26
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!121E68EE23F7 (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Norman as Troj_Generic.XIXSF (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KO14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as UnclassifiedMalware (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Dr.Web as Trojan.KillProc.32936 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn2bf4.tmp
Publisher:
MD5: 100b99f7bc89b82a4dd5a328d28ad2c6
SHA-1: 6713f0680d10349ea4dfccd9b2aed561e3999e34
Created: 2014/11/29 10:16:04
Detections: 17
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Symmi.46887 (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- K7 AntiVirus as Adware (Adware)
- Trend Micro House Call as TROJ_GEN.R047H09L114 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Adware.Symmi.46887 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Symmi.46887 (Adware)
- F-Secure as Gen:Variant.Adware.Symmi.46887 (Adware)
- Sophos as Generic PUA GH (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Symmi.46887 (Adware)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn2d96.tmp
Publisher:
MD5: a5e4c4a277a5f7ade227cb4d385ccdcd
SHA-1: 7587063e881b58236b09764a98d24a7ec0b3be79
Created: 2014/11/26 16:44:39
Detections: 18
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Sophos as Generic PUA HF (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- McAfee as Artemis!A5E4C4A277A5 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Trojan.Multi.daf (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn2e35.tmp
Publisher:
MD5: d4d16b16d9d2ab779d542ce3a373d51f
SHA-1: 3eaf75a32ccbe51de8421b0be48e32c10782d016
Created: 2014/11/23 11:42:21
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn2fac.tmp
Publisher:
MD5: 69d07da00e715af8f4a68730bb12095b
SHA-1: 9d58a95cb0e2c2cb5758dadf4710cc123390e28f
Created: 2014/11/22 12:44:31
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn3026.tmp
Publisher:
MD5: e9fffae22bc7250f76308529083e447c
SHA-1: 965800ea4df35a3ee3dd48fd4efc12e263d123a9
Created: 2014/12/03 13:14:34
Detections: 18
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E9FFFAE22BC7 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA JG (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn302b.tmp
Publisher:
MD5: e04243a4f31efe1fbd88cbf62e3d5eed
SHA-1: 73a53dc5102b808a4f8ecde286bbd9c37cc17c94
Created: 2014/11/23 12:04:13
Detections: 24
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Yontoo (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Norman as Suspicious_Gen5.AYZZY
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as UnclassifiedMalware (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!E04243A4F31E (Undefined)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn306e.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 16:33:30
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn34b7.tmp
Publisher:
MD5: 9c7014a6c84f6802625a776ab553fac3
SHA-1: 8983c58ef33938df08a0ca04ceca89114a0ed89e
Created: 2014/11/29 14:56:49
Detections: 27
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Mplug.26 (Adware)
- Quick Heal as Adware.Generic.g5 (Not a Virus) (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- K7 AntiVirus as Adware (Adware)
- Bitdefender as Gen:Variant.Adware.Mplug.26 (Adware)
- K7 Gateway Antivirus as DoS-Trojan (Undefined)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0OLU14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:HEUR:AdWare.Win32.Generic (Adware)
- NANO AntiVirus as Riskware.Win32.ZPACK.dlkuug (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Mplug.26 (Adware)
- Sophos as Generic PUA IJ (Undefined)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Mplug.26 (Adware)
- Trend Micro as TROJ_GEN.R021C0OLU14 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Mplug.26 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Adware.Mplug.26 (Adware)
- McAfee as Artemis!9C7014A6C84F (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Generic (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn3b57.tmp
Publisher:
MD5: 9c7014a6c84f6802625a776ab553fac3
SHA-1: 8983c58ef33938df08a0ca04ceca89114a0ed89e
Created: 2014/11/29 14:16:26
Detections: 27
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Mplug.26 (Adware)
- Quick Heal as Adware.Generic.g5 (Not a Virus) (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- K7 AntiVirus as Adware (Adware)
- Bitdefender as Gen:Variant.Adware.Mplug.26 (Adware)
- K7 Gateway Antivirus as DoS-Trojan (Undefined)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0OLU14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:HEUR:AdWare.Win32.Generic (Adware)
- NANO AntiVirus as Riskware.Win32.ZPACK.dlkuug (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Mplug.26 (Adware)
- Sophos as Generic PUA IJ (Undefined)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Mplug.26 (Adware)
- Trend Micro as TROJ_GEN.R021C0OLU14 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Mplug.26 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Adware.Mplug.26 (Adware)
- McAfee as Artemis!9C7014A6C84F (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Generic (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn3c35.tmp
Publisher:
MD5: 61034a9de8235cee83f6e17e93a7526b
SHA-1: a5efcd5d8d88e95c3db2a5f38a9394b07ecae10a
Created: 2014/11/23 21:03:42
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!61034A9DE823 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Dr.Web as Trojan.KillProc.32920 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn3ff2.tmp
Publisher:
MD5: f358ff4bb523ddada0b6ef8a1b5d9d8c
SHA-1: 84e4c8dff2a331d0518752338d5bc57d9feb3464
Created: 2014/11/29 10:16:09
Detections: 19
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- Trend Micro House Call as TROJ_GEN.R08NH06KS14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as MultiPlug-FRG (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- McAfee as MultiPlug-FRG (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn44d9.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 16:33:36
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn459c.tmp
Publisher:
MD5: 125d54d6c77ac655bda62d539882d94d
SHA-1: f74d46fe110c8e541062e81754c7d01a6c637d45
Created: 2014/11/24 11:50:42
Detections: 10
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KM14 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn46a8.tmp
Publisher:
MD5: d4d16b16d9d2ab779d542ce3a373d51f
SHA-1: 3eaf75a32ccbe51de8421b0be48e32c10782d016
Created: 2014/11/23 12:04:18
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn4802.tmp
Publisher:
MD5: 61034a9de8235cee83f6e17e93a7526b
SHA-1: a5efcd5d8d88e95c3db2a5f38a9394b07ecae10a
Created: 2014/11/23 20:23:20
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!61034A9DE823 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Dr.Web as Trojan.KillProc.32920 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn4aad.tmp
Publisher:
MD5: e9fffae22bc7250f76308529083e447c
SHA-1: 965800ea4df35a3ee3dd48fd4efc12e263d123a9
Created: 2014/12/03 13:55:06
Detections: 18
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E9FFFAE22BC7 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA JG (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn4ab5.tmp
Publisher:
MD5: bb9a03ce4c09a117931410a29cbb017e
SHA-1: 3b2f3d9c8c2865dca78ca28e263aa5295a68da7b
Created: 2014/12/03 17:35:44
Detections: 21
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- Trend Micro House Call as TROJ_GEN.R08NH09KT14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- McAfee as Artemis!BB9A03CE4C09 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn4b12.tmp
Publisher:
MD5: c80ec5aad95b07bb62e02b8899651684
SHA-1: f64e6180ced1f570d7713f1722d835092374f5a9
Created: 2014/11/22 16:27:28
Detections: 11
Determination: Adware
- avast! as Win32:Malware-gen (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn4b53.tmp
Publisher:
MD5: 2a69464bb57ccc3fc145c5e7b1dbd5b2
SHA-1: a060ebbfdfe9f9ffe94b6049c96b38c5ab15c4dd
Created: 2014/11/30 18:21:38
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- K7 Gateway Antivirus as Trojan (Undefined)
- K7 AntiVirus as Adware (Adware)
- NANO AntiVirus as Trojan.Win32.ZPACK.djpswu (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05L114 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA KA (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!2A69464BB57C (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn4d18.tmp
Publisher:
MD5: 09aa08097fa75245aa3c3594d6c4b8e1
SHA-1: d95ce6e22330dde8b2c750dbe8434331bdba8adb
Created: 2014/11/29 14:56:56
Detections: 9
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn4ec.tmp
Publisher:
MD5: d2956f4ea9566f8f19715ac6b6a0bb99
SHA-1: c947b5bb9c0329082083303a316a0a09a0770e43
Created: 2014/12/03 21:56:29
Detections: 19
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KQ14 (Undefined)
- avast! as Win32:Rootkit-gen [Rtk] (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA MJ (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!D2956F4EA956 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

 /L_____________
< To Be Continued… l\l /
 \「‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 16:45:26
弐符「ハードプロテクトスキャン」
HP其の弐

File path: c:\windows\temp\dn5283.tmp
Publisher:
MD5: 3eeab79d824e84780f2f967f67ac05dd
SHA-1: 418088d91f8af50e9b459401de64f388d77dcda2
Created: 2014/11/23 21:03:47
Detections: 17
Determination: Adware
- K7 AntiVirus as Adware (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KQ14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Dr.Web as Trojan.KillProc.32962 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Sophos as Generic PUA EB (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn54b1.tmp
Publisher:
MD5: 09aa08097fa75245aa3c3594d6c4b8e1
SHA-1: d95ce6e22330dde8b2c750dbe8434331bdba8adb
Created: 2014/11/29 14:16:33
Detections: 9
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn5a37.tmp
Publisher:
MD5: 121e68ee23f726243b66c2e95179788a
SHA-1: 6c182d91c12c045a21301ef7e4b2501a27cbd123
Created: 2014/11/24 12:11:32
Detections: 26
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!121E68EE23F7 (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Norman as Troj_Generic.XIXSF (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KO14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as UnclassifiedMalware (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Dr.Web as Trojan.KillProc.32936 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn5df3.tmp
Publisher:
MD5: 3eeab79d824e84780f2f967f67ac05dd
SHA-1: 418088d91f8af50e9b459401de64f388d77dcda2
Created: 2014/11/23 20:23:26
Detections: 17
Determination: Adware
- K7 AntiVirus as Adware (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KQ14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Dr.Web as Trojan.KillProc.32962 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Sophos as Generic PUA EB (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn5fbc.tmp
Publisher:
MD5: ddf392b352ea8664a533c821c3066e2c
SHA-1: 9ec75d9eef9017e910f5d023a4f7f37d089c95c0
Created: 2014/11/22 16:27:33
Detections: 15
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!DDF392B352EA (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn607b.tmp
Publisher:
MD5: ba6b36d9c198d0075880771d71147cd9
SHA-1: 8bc7feaf2db48189655f6e144c4af7c640ccf5df
Created: 2014/11/27 17:16:05
Detections: 17
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!BA6B36D9C198 (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Trend Micro House Call as Suspicious_GEN.F47V1121 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn61e1.tmp
Publisher:
MD5: 8a3c1c2e84bda476f9c00a877f866712
SHA-1: 2c718f39693b3d65bb3b4ed4b1e01f17ab0c171a
Created: 2014/12/03 13:14:47
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA CM (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn6335.tmp
Publisher:
MD5: fd525d20ad483f77c4336061143ad956
SHA-1: ccf13ce97ec2559c9047e3ccc8b211b7782dbad3
Created: 2014/11/22 20:10:02
Detections: 19
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!FD525D20AD48 (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Dr.Web as Trojan.KillProc.32904 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn6b31.tmp
Publisher:
MD5: e8caf3fbaa77493c20d2b68abf361c1a
SHA-1: e5cb6c9f9fa95fa09eb6b535d2c60cb8b9ae4b8f
Created: 2014/11/24 15:32:35
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E8CAF3FBAA77 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KM14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/CI.A (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn6d86.tmp
Publisher:
MD5: f1fe20f143ac10ff8daca204b16cd5f0
SHA-1: 49238fb94174db127f14d225848e173580387573
Created: 2014/11/25 20:37:40
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!F1FE20F143AC (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn72c8.tmp
Publisher:
MD5: bcb8dd22e0fdc9c3293c2799ee3dc70a
SHA-1: 4e542f8544800ba4a1427c27e42e641222366857
Created: 2014/11/23 12:04:30
Detections: 11
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KM14 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn74a5.tmp
Publisher:
MD5: daf2c9d5f9f9d2ca7f0e294e46586f02
SHA-1: 00ad1fdab63c20ee8e95be95a65179f4545599eb
Created: 2014/12/01 17:02:54
Detections: 13
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!DAF2C9D5F9F9 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn7852.tmp
Publisher:
MD5: 125d54d6c77ac655bda62d539882d94d
SHA-1: f74d46fe110c8e541062e81754c7d01a6c637d45
Created: 2014/11/24 12:11:40
Detections: 10
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KM14 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn7a3a.tmp
Publisher:
MD5: b956b50fed7bd39b5c53ac7f077de413
SHA-1: 5892f3bca123d63b87a4ae9592dad67456ab8fe4
Created: 2014/11/24 12:32:26
Detections: 28
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.167020 (Adware)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Agnitum Outpost as PUA.MultiPlug (Adware)
- Norman as Troj_Generic.XJEYX (Undefined)
- Trend Micro House Call as TROJ_GEN.F0CBOC0LC14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.167020 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.167020 (Adware)
- Sophos as Generic PUA FI (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.167020 (Adware)
- Dr.Web as Trojan.KillProc.33291 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.F0CBOC0LC14 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.167020 (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- ViRobot as Trojan.Win32.S.Agent.6425088[h] (Undefined)
- G Data as Gen:Variant.Adware.Graftor.167020 (Adware)
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- McAfee as Artemis!B956B50FED7B (Undefined)
- Vba32 AntiVirus as AdWare.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn7b58.tmp
Publisher:
MD5: c80ec5aad95b07bb62e02b8899651684
SHA-1: f64e6180ced1f570d7713f1722d835092374f5a9
Created: 2014/11/22 20:10:08
Detections: 11
Determination: Adware
- avast! as Win32:Malware-gen (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn7ca1.tmp
Publisher:
MD5: 1d5468456cb6f738e803508bd44d8b44
SHA-1: 153dc37af85f3b0e85180f1e298cb24bdc7cc8d8
Created: 2014/11/23 16:42:55
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!1D5468456CB6 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)
- K7 Gateway Antivirus as Unwanted-File (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09L314 (Undefined)
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- AVG as Adware Generic_r (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Norman as Gen:Variant.Adware.Graftor.164575 (Adware)
- Rising Antivirus as PE:Trojan.Win32.Generic.17ACA540!397190464 (Undefined)
- Baidu Antivirus as Adware.Win32.Generic (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn7d91.tmp
Publisher:
MD5: 1d3f42067516d10a892830d0c797fb5d
SHA-1: 21cc68970142ae6574f1e33728ab90d9ee9b0110
Created: 2014/11/28 23:38:13
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn7f85.tmp
Publisher:
MD5: 3e4380b608499e7d4b6bdb3d78f5a839
SHA-1: 7e630c67bcaa8ef8cce946c45b972dd1ccabc308
Created: 2014/11/23 0:26:50
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!3E4380B60849 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047C0OKP14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Panda Antivirus as Trj/CI.A (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn7fba.tmp
Publisher:
MD5: b956b50fed7bd39b5c53ac7f077de413
SHA-1: 5892f3bca123d63b87a4ae9592dad67456ab8fe4
Created: 2014/11/24 11:30:12
Detections: 28
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.167020 (Adware)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Agnitum Outpost as PUA.MultiPlug (Adware)
- Norman as Troj_Generic.XJEYX (Undefined)
- Trend Micro House Call as TROJ_GEN.F0CBOC0LC14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.167020 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.167020 (Adware)
- Sophos as Generic PUA FI (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.167020 (Adware)
- Dr.Web as Trojan.KillProc.33291 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.F0CBOC0LC14 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.167020 (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- ViRobot as Trojan.Win32.S.Agent.6425088[h] (Undefined)
- G Data as Gen:Variant.Adware.Graftor.167020 (Adware)
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- McAfee as Artemis!B956B50FED7B (Undefined)
- Vba32 AntiVirus as AdWare.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------


File path: c:\windows\temp\dn7fd.tmp
Publisher:
MD5: e04243a4f31efe1fbd88cbf62e3d5eed
SHA-1: 73a53dc5102b808a4f8ecde286bbd9c37cc17c94
Created: 2014/11/23 11:31:16
Detections: 24
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Yontoo (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Norman as Suspicious_Gen5.AYZZY
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as UnclassifiedMalware (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!E04243A4F31E (Undefined)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn83a0.tmp
Publisher:
MD5: 6f41c37146856f753e0d5d8424f73513
SHA-1: deb82f0c9c75ec825d57c02ca86e886ba50b3e98
Created: 2014/11/29 9:55:42
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn87d0.tmp
Publisher:
MD5: 1d3f42067516d10a892830d0c797fb5d
SHA-1: 21cc68970142ae6574f1e33728ab90d9ee9b0110
Created: 2014/11/29 0:08:50
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn8af8.tmp
Publisher:
MD5: e8caf3fbaa77493c20d2b68abf361c1a
SHA-1: e5cb6c9f9fa95fa09eb6b535d2c60cb8b9ae4b8f
Created: 2014/11/24 16:13:08
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E8CAF3FBAA77 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KM14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/CI.A (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn8c60.tmp
Publisher:
MD5: b956b50fed7bd39b5c53ac7f077de413
SHA-1: 5892f3bca123d63b87a4ae9592dad67456ab8fe4
Created: 2014/11/24 12:11:45
Detections: 28
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.167020 (Adware)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Agnitum Outpost as PUA.MultiPlug (Adware)
- Norman as Troj_Generic.XJEYX (Undefined)
- Trend Micro House Call as TROJ_GEN.F0CBOC0LC14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.167020 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.167020 (Adware)
- Sophos as Generic PUA FI (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.167020 (Adware)
- Dr.Web as Trojan.KillProc.33291 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.F0CBOC0LC14 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.167020 (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- ViRobot as Trojan.Win32.S.Agent.6425088[h] (Undefined)
- G Data as Gen:Variant.Adware.Graftor.167020 (Adware)
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- McAfee as Artemis!B956B50FED7B (Undefined)
- Vba32 AntiVirus as AdWare.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn8e25.tmp
Publisher:
MD5: d2956f4ea9566f8f19715ac6b6a0bb99
SHA-1: c947b5bb9c0329082083303a316a0a09a0770e43
Created: 2014/12/03 21:36:19
Detections: 19
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KQ14 (Undefined)
- avast! as Win32:Rootkit-gen [Rtk] (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA MJ (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!D2956F4EA956 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn9233.tmp
Publisher:
MD5: ddf392b352ea8664a533c821c3066e2c
SHA-1: 9ec75d9eef9017e910f5d023a4f7f37d089c95c0
Created: 2014/11/22 20:10:14
Detections: 15
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!DDF392B352EA (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn93af.tmp
Publisher:
MD5: 8a3c1c2e84bda476f9c00a877f866712
SHA-1: 2c718f39693b3d65bb3b4ed4b1e01f17ab0c171a
Created: 2014/12/03 13:55:24
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA CM (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn9665.tmp
Publisher:
MD5: e9fffae22bc7250f76308529083e447c
SHA-1: 965800ea4df35a3ee3dd48fd4efc12e263d123a9
Created: 2014/12/03 12:54:15
Detections: 18
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E9FFFAE22BC7 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA JG (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn9943.tmp
Publisher:
MD5: 100b99f7bc89b82a4dd5a328d28ad2c6
SHA-1: 6713f0680d10349ea4dfccd9b2aed561e3999e34
Created: 2014/11/29 9:55:47
Detections: 17
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Symmi.46887 (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- K7 AntiVirus as Adware (Adware)
- Trend Micro House Call as TROJ_GEN.R047H09L114 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Adware.Symmi.46887 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Symmi.46887 (Adware)
- F-Secure as Gen:Variant.Adware.Symmi.46887 (Adware)
- Sophos as Generic PUA GH (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Symmi.46887 (Adware)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dn9f72.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 16:13:14
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dna1d5.tmp
Publisher:
MD5: bdf46d4426759de566169040cd327b0c
SHA-1: e0d88d261e6fab13230d2102d89ee9e92576ce13
Created: 2014/12/03 21:36:24
Detections: 22
Determination: Adware
- MicroWorld eScan as Adware.Generic.1140187 (Adware)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0EAF15 (Undefined)
- avast! as Win32:PUP-gen [PUP] (Adware)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Bitdefender as Adware.Generic.1140187 (Adware)
- Lavasoft Ad-Aware as Adware.Generic.1140187 (Adware)
- Emsisoft Anti-Malware as Adware.Generic.1140187 (Adware)
- F-Secure as Adware.Generic.1140187 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.R021C0EAF15 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA OA (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus,HEUR]/Win32.AGeneric (Adware)
- G Data as Adware.Generic.1140187 (Adware)
- McAfee as Artemis!BDF46D442675 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Esprot (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dna5b1.tmp
Publisher:
MD5: 69d07da00e715af8f4a68730bb12095b
SHA-1: 9d58a95cb0e2c2cb5758dadf4710cc123390e28f
Created: 2014/11/22 12:01:20
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dna727.tmp
Publisher:
MD5: daf2c9d5f9f9d2ca7f0e294e46586f02
SHA-1: 00ad1fdab63c20ee8e95be95a65179f4545599eb
Created: 2014/12/01 16:22:42
Detections: 13
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!DAF2C9D5F9F9 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dna9bc.tmp
Publisher:
MD5: f1fe20f143ac10ff8daca204b16cd5f0
SHA-1: 49238fb94174db127f14d225848e173580387573
Created: 2014/11/25 20:47:45
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!F1FE20F143AC (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnaa5f.tmp
Publisher:
MD5: bb9a03ce4c09a117931410a29cbb017e
SHA-1: 3b2f3d9c8c2865dca78ca28e263aa5295a68da7b
Created: 2014/12/03 17:05:33
Detections: 21
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- Trend Micro House Call as TROJ_GEN.R08NH09KT14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- McAfee as Artemis!BB9A03CE4C09 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnadcc.tmp
Publisher:
MD5: bb9a03ce4c09a117931410a29cbb017e
SHA-1: 3b2f3d9c8c2865dca78ca28e263aa5295a68da7b
Created: 2014/12/03 17:55:49
Detections: 21
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- Trend Micro House Call as TROJ_GEN.R08NH09KT14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- McAfee as Artemis!BB9A03CE4C09 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnaf25.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 15:42:43
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnaf26.tmp
Publisher:
MD5: 2a69464bb57ccc3fc145c5e7b1dbd5b2
SHA-1: a060ebbfdfe9f9ffe94b6049c96b38c5ab15c4dd
Created: 2014/11/30 18:41:44
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- K7 Gateway Antivirus as Trojan (Undefined)
- K7 AntiVirus as Adware (Adware)
- NANO AntiVirus as Trojan.Win32.ZPACK.djpswu (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05L114 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA KA (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!2A69464BB57C (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnb05e.tmp
Publisher:
MD5: 09aa08097fa75245aa3c3594d6c4b8e1
SHA-1: d95ce6e22330dde8b2c750dbe8434331bdba8adb
Created: 2014/11/29 15:17:01
Detections: 9
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnb1e3.tmp
Publisher:
MD5: f358ff4bb523ddada0b6ef8a1b5d9d8c
SHA-1: 84e4c8dff2a331d0518752338d5bc57d9feb3464
Created: 2014/11/29 9:55:53
Detections: 19
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- Trend Micro House Call as TROJ_GEN.R08NH06KS14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as MultiPlug-FRG (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- McAfee as MultiPlug-FRG (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnb313.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 16:13:19
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnb6e0.tmp
Publisher:
MD5: bcb8dd22e0fdc9c3293c2799ee3dc70a
SHA-1: 4e542f8544800ba4a1427c27e42e641222366857
Created: 2014/11/23 11:21:06
Detections: 11
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KM14 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnb96e.tmp
Publisher:
MD5: 9c7014a6c84f6802625a776ab553fac3
SHA-1: 8983c58ef33938df08a0ca04ceca89114a0ed89e
Created: 2014/11/29 14:36:38
Detections: 27
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Mplug.26 (Adware)
- Quick Heal as Adware.Generic.g5 (Not a Virus) (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- K7 AntiVirus as Adware (Adware)
- Bitdefender as Gen:Variant.Adware.Mplug.26 (Adware)
- K7 Gateway Antivirus as DoS-Trojan (Undefined)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0OLU14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:HEUR:AdWare.Win32.Generic (Adware)
- NANO AntiVirus as Riskware.Win32.ZPACK.dlkuug (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Mplug.26 (Adware)
- Sophos as Generic PUA IJ (Undefined)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Mplug.26 (Adware)
- Trend Micro as TROJ_GEN.R021C0OLU14 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Mplug.26 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Adware.Mplug.26 (Adware)
- McAfee as Artemis!9C7014A6C84F (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Generic (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnbe26.tmp
Publisher:
MD5: d2956f4ea9566f8f19715ac6b6a0bb99
SHA-1: c947b5bb9c0329082083303a316a0a09a0770e43
Created: 2014/12/03 21:05:56
Detections: 19
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KQ14 (Undefined)
- avast! as Win32:Rootkit-gen [Rtk] (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA MJ (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!D2956F4EA956 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnbfb.tmp
Publisher:
MD5: 3eeab79d824e84780f2f967f67ac05dd
SHA-1: 418088d91f8af50e9b459401de64f388d77dcda2
Created: 2014/11/23 20:13:15
Detections: 17
Determination: Adware
- K7 AntiVirus as Adware (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KQ14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Dr.Web as Trojan.KillProc.32962 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Sophos as Generic PUA EB (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnbfc.tmp
Publisher:
MD5: 1d3f42067516d10a892830d0c797fb5d
SHA-1: 21cc68970142ae6574f1e33728ab90d9ee9b0110
Created: 2014/11/28 23:48:39
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnc286.tmp
Publisher:
MD5: c80440811dbb2cd457c862e183528cf2
SHA-1: 2663bea49a4d92f94aa6e79728f92abf7d6b064c
Created: 2014/11/24 15:42:48
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!C80440811DBB (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KL14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnc33c.tmp
Publisher:
MD5: 61034a9de8235cee83f6e17e93a7526b
SHA-1: a5efcd5d8d88e95c3db2a5f38a9394b07ecae10a
Created: 2014/11/23 20:43:31
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!61034A9DE823 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Dr.Web as Trojan.KillProc.32920 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnc575.tmp
Publisher:
MD5: e9fffae22bc7250f76308529083e447c
SHA-1: 965800ea4df35a3ee3dd48fd4efc12e263d123a9
Created: 2014/12/03 13:34:52
Detections: 18
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E9FFFAE22BC7 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA JG (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnc77d.tmp
Publisher:
MD5: 9c7014a6c84f6802625a776ab553fac3
SHA-1: 8983c58ef33938df08a0ca04ceca89114a0ed89e
Created: 2014/11/29 13:56:17
Detections: 27
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Mplug.26 (Adware)
- Quick Heal as Adware.Generic.g5 (Not a Virus) (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- K7 AntiVirus as Adware (Adware)
- Bitdefender as Gen:Variant.Adware.Mplug.26 (Adware)
- K7 Gateway Antivirus as DoS-Trojan (Undefined)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0OLU14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:HEUR:AdWare.Win32.Generic (Adware)
- NANO AntiVirus as Riskware.Win32.ZPACK.dlkuug (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Mplug.26 (Adware)
- Sophos as Generic PUA IJ (Undefined)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Mplug.26 (Adware)
- Trend Micro as TROJ_GEN.R021C0OLU14 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Mplug.26 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Adware.Mplug.26 (Adware)
- McAfee as Artemis!9C7014A6C84F (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Generic (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnccb2.tmp
Publisher:
MD5: 121e68ee23f726243b66c2e95179788a
SHA-1: 6c182d91c12c045a21301ef7e4b2501a27cbd123
Created: 2014/11/24 11:40:21
Detections: 26
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!121E68EE23F7 (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Norman as Troj_Generic.XIXSF (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KO14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as UnclassifiedMalware (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Dr.Web as Trojan.KillProc.32936 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dncfee.tmp
Publisher:
MD5: 69d07da00e715af8f4a68730bb12095b
SHA-1: 9d58a95cb0e2c2cb5758dadf4710cc123390e28f
Created: 2014/11/22 12:23:22
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 16:52:46
参符「ハードプロテクトスキャン」
其の参 HPはこれで最後になります

File path: c:\windows\temp\dnd824.tmp
Publisher:
MD5: 3eeab79d824e84780f2f967f67ac05dd
SHA-1: 418088d91f8af50e9b459401de64f388d77dcda2
Created: 2014/11/23 20:43:36
Detections: 17
Determination: Adware
- K7 AntiVirus as Adware (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KQ14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Dr.Web as Trojan.KillProc.32962 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Sophos as Generic PUA EB (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnd9ee.tmp
Publisher:
MD5: daf2c9d5f9f9d2ca7f0e294e46586f02
SHA-1: 00ad1fdab63c20ee8e95be95a65179f4545599eb
Created: 2014/12/01 17:23:00
Detections: 13
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!DAF2C9D5F9F9 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dndc2b.tmp
Publisher:
MD5: 1d5468456cb6f738e803508bd44d8b44
SHA-1: 153dc37af85f3b0e85180f1e298cb24bdc7cc8d8
Created: 2014/11/23 16:12:45
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!1D5468456CB6 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)
- K7 Gateway Antivirus as Unwanted-File (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09L314 (Undefined)
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- AVG as Adware Generic_r (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Norman as Gen:Variant.Adware.Graftor.164575 (Adware)
- Rising Antivirus as PE:Trojan.Win32.Generic.17ACA540!397190464 (Undefined)
- Baidu Antivirus as Adware.Win32.Generic (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dne10f.tmp
Publisher:
MD5: 1d5468456cb6f738e803508bd44d8b44
SHA-1: 153dc37af85f3b0e85180f1e298cb24bdc7cc8d8
Created: 2014/11/23 17:03:00
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!1D5468456CB6 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)
- K7 Gateway Antivirus as Unwanted-File (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09L314 (Undefined)
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- AVG as Adware Generic_r (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Norman as Gen:Variant.Adware.Graftor.164575 (Adware)
- Rising Antivirus as PE:Trojan.Win32.Generic.17ACA540!397190464 (Undefined)
- Baidu Antivirus as Adware.Win32.Generic (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dne5ca.tmp
Publisher:
MD5: bb9a03ce4c09a117931410a29cbb017e
SHA-1: 3b2f3d9c8c2865dca78ca28e263aa5295a68da7b
Created: 2014/12/03 17:15:38
Detections: 21
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- Trend Micro House Call as TROJ_GEN.R08NH09KT14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as ApplicUnwnt (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- AhnLab V3 Security as Adware/Win32.MultiPlug (Adware)
- McAfee as Artemis!BB9A03CE4C09 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dne723.tmp
Publisher:
MD5: 2a69464bb57ccc3fc145c5e7b1dbd5b2
SHA-1: a060ebbfdfe9f9ffe94b6049c96b38c5ab15c4dd
Created: 2014/11/30 18:01:33
Detections: 22
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- K7 Gateway Antivirus as Trojan (Undefined)
- K7 AntiVirus as Adware (Adware)
- NANO AntiVirus as Trojan.Win32.ZPACK.djpswu (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05L114 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA KA (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!2A69464BB57C (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dne740.tmp
Publisher:
MD5: ddf392b352ea8664a533c821c3066e2c
SHA-1: 9ec75d9eef9017e910f5d023a4f7f37d089c95c0
Created: 2014/11/22 16:07:23
Detections: 15
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!DDF392B352EA (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as HEUR/QVM10.1.Malware.Gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dne786.tmp
Publisher:
MD5: 8a3c1c2e84bda476f9c00a877f866712
SHA-1: 2c718f39693b3d65bb3b4ed4b1e01f17ab0c171a
Created: 2014/12/03 13:35:00
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA CM (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dne927.tmp
Publisher:
MD5: ba6b36d9c198d0075880771d71147cd9
SHA-1: 8bc7feaf2db48189655f6e144c4af7c640ccf5df
Created: 2014/11/27 16:55:55
Detections: 17
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!BA6B36D9C198 (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Trend Micro House Call as Suspicious_GEN.F47V1121 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Panda Antivirus as Trj/Chgt.L (Undefined)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnec72.tmp
Publisher:
MD5: 125d54d6c77ac655bda62d539882d94d
SHA-1: f74d46fe110c8e541062e81754c7d01a6c637d45
Created: 2014/11/24 11:40:29
Detections: 10
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KM14 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnec95.tmp
Publisher:
MD5: b956b50fed7bd39b5c53ac7f077de413
SHA-1: 5892f3bca123d63b87a4ae9592dad67456ab8fe4
Created: 2014/11/24 11:51:25
Detections: 28
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.167020 (Adware)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Agnitum Outpost as PUA.MultiPlug (Adware)
- Norman as Troj_Generic.XJEYX (Undefined)
- Trend Micro House Call as TROJ_GEN.F0CBOC0LC14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.MultiPlug (Adware)
- Bitdefender as Gen:Variant.Adware.Graftor.167020 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.167020 (Adware)
- Sophos as Generic PUA FI (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.167020 (Adware)
- Dr.Web as Trojan.KillProc.33291 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.F0CBOC0LC14 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.167020 (Adware)
- F-Prot as W32/A-02fe1359 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- ViRobot as Trojan.Win32.S.Agent.6425088[h] (Undefined)
- G Data as Gen:Variant.Adware.Graftor.167020 (Adware)
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- McAfee as Artemis!B956B50FED7B (Undefined)
- Vba32 AntiVirus as AdWare.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic6 (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnecc3.tmp
Publisher:
MD5: c472dcdf686d4fc825688146800fc455
SHA-1: 347e454bdf0f5531cc24694e5feb34345bd0f1fd
Created: 2014/11/22 20:20:27
Detections: 20
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!C472DCDF686D (Undefined)
- Agnitum Outpost as Trojan.KillProc (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Dr.Web as Trojan.KillProc.32928 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnf335.tmp
Publisher:
MD5: 8a3c1c2e84bda476f9c00a877f866712
SHA-1: 2c718f39693b3d65bb3b4ed4b1e01f17ab0c171a
Created: 2014/12/03 13:04:28
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Sophos as Generic PUA CM (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnf49.tmp
Publisher:
MD5: 1d3f42067516d10a892830d0c797fb5d
SHA-1: 21cc68970142ae6574f1e33728ab90d9ee9b0110
Created: 2014/11/29 0:29:05
Detections: 12
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- AVG as Generic_r (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnf4b1.tmp
Publisher:
MD5: 69d07da00e715af8f4a68730bb12095b
SHA-1: 9d58a95cb0e2c2cb5758dadf4710cc123390e28f
Created: 2014/11/22 13:06:07
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnf629.tmp
Publisher:
MD5: 61034a9de8235cee83f6e17e93a7526b
SHA-1: a5efcd5d8d88e95c3db2a5f38a9394b07ecae10a
Created: 2014/11/23 20:13:09
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!61034A9DE823 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro House Call as TROJ_GEN.R08NH09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Dr.Web as Trojan.KillProc.32920 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnf9d3.tmp
Publisher:
MD5: 121e68ee23f726243b66c2e95179788a
SHA-1: 6c182d91c12c045a21301ef7e4b2501a27cbd123
Created: 2014/11/24 12:31:53
Detections: 26
Determination: Adware
- MicroWorld eScan as Gen:Variant.Adware.Graftor.164575 (Adware)
- McAfee as Artemis!121E68EE23F7 (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- Norman as Troj_Generic.XIXSF (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H05KO14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Adware.Graftor.164575 (Adware)
- Lavasoft Ad-Aware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Comodo Security as UnclassifiedMalware (Undefined)
- F-Secure as Gen:Variant.Adware.Graftor.164575 (Adware)
- Dr.Web as Trojan.KillProc.32936 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Adware.Graftor.164575 (Adware)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as PUP/Win32.MultiPlug (Adware)
- G Data as Gen:Variant.Adware.Graftor.164575 (Adware)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Fortinet FortiGate as Riskware/MultiPlug (Undefined)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)
- Reason Heuristics as Threat.Win.Reputation.IMP (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnfd9.tmp
Publisher:
MD5: daf2c9d5f9f9d2ca7f0e294e46586f02
SHA-1: 00ad1fdab63c20ee8e95be95a65179f4545599eb
Created: 2014/12/01 16:42:49
Detections: 13
Determination: Adware
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- AhnLab V3 Security as Adware/Win32.Agent (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!DAF2C9D5F9F9 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnfe40.tmp
Publisher:
MD5: e8caf3fbaa77493c20d2b68abf361c1a
SHA-1: e5cb6c9f9fa95fa09eb6b535d2c60cb8b9ae4b8f
Created: 2014/11/24 15:52:53
Detections: 16
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- McAfee as Artemis!E8CAF3FBAA77 (Undefined)
- Trend Micro House Call as TROJ_GEN.R047H09KM14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/CI.A (Undefined)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\gur4165.exe
Publisher:
MD5: d41d8cd98f00b204e9800998ecf8427e
SHA-1: da39a3ee5e6b4b0d3255bfef95601890afd80709
Created: 2014/07/31 19:29:10
Detections: 8
Determination: Ignore detections (false positive)
- Lavasoft Ad-Aware as Gen:Variant.Zusy.122341 (Undefined)
- ESET NOD32 as Win32/Toolbar.CrossRider.AV potentially unwanted application (Adware)
- Avira AntiVirus as W32/Sality.AT (Undefined)
- Kaspersky as not-a-virus:WebToolbar.Win32.CrossRider (Adware)
- Dr.Web as Trojan.Crossrider.36840 (Adware)
- Microsoft Security Essentials as Threat.Undefined (Undefined)
- avast! as Adware-CKT [PUP] (Adware)
- Clam AntiVirus as Win.Adware.Crossrider-259 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\gur6354.exe
Publisher:
MD5: d41d8cd98f00b204e9800998ecf8427e
SHA-1: da39a3ee5e6b4b0d3255bfef95601890afd80709
Created: 2014/10/05 12:26:13
Detections: 8
Determination: Ignore detections (false positive)
- Lavasoft Ad-Aware as Gen:Variant.Zusy.122341 (Undefined)
- ESET NOD32 as Win32/Toolbar.CrossRider.AV potentially unwanted application (Adware)
- Avira AntiVirus as W32/Sality.AT (Undefined)
- Kaspersky as not-a-virus:WebToolbar.Win32.CrossRider (Adware)
- Dr.Web as Trojan.Crossrider.36840 (Adware)
- Microsoft Security Essentials as Threat.Undefined (Undefined)
- avast! as Adware-CKT [PUP] (Adware)
- Clam AntiVirus as Win.Adware.Crossrider-259 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\gur93c6.exe
Publisher:
MD5: d41d8cd98f00b204e9800998ecf8427e
SHA-1: da39a3ee5e6b4b0d3255bfef95601890afd80709
Created: 2014/08/12 19:24:45
Detections: 8
Determination: Ignore detections (false positive)
- Lavasoft Ad-Aware as Gen:Variant.Zusy.122341 (Undefined)
- ESET NOD32 as Win32/Toolbar.CrossRider.AV potentially unwanted application (Adware)
- Avira AntiVirus as W32/Sality.AT (Undefined)
- Kaspersky as not-a-virus:WebToolbar.Win32.CrossRider (Adware)
- Dr.Web as Trojan.Crossrider.36840 (Adware)
- Microsoft Security Essentials as Threat.Undefined (Undefined)
- avast! as Adware-CKT [PUP] (Adware)
- Clam AntiVirus as Win.Adware.Crossrider-259 (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\nsc7ec5.exe
Publisher: Conduit
MD5: 096e0d55823fdeb3916584071e9b7aca
SHA-1: 805e562d2dd87c4df01d8d43a9f7e8cdb8adca71
Created: 2014/04/08 22:06:40
Detections: 6
Determination: Adware
- Reason Heuristics as PUP.Conduit.H (Adware)
- Malwarebytes as PUP.Optional.SearchProtect.A (Adware)
- Panda Antivirus as PUP/Conduit.A (Adware)
- Trend Micro House Call as TROJ_GEN.F47V0301 (Undefined)
- Baidu Antivirus as Adware.Win32.Conduit (Adware)
- XVirus List as Win.Detected (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\nsn143f.exe
Publisher: Client Connect LTD
MD5: 02c162fd7706e887624dfcc410979355
SHA-1: fa61f495558b294eb796b8d6c44f75631fa57e7d
Created: 2014/05/03 22:26:18
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.ClientConnect.H (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\nsn2b1a.exe
Publisher: Client Connect LTD
MD5: 02c162fd7706e887624dfcc410979355
SHA-1: fa61f495558b294eb796b8d6c44f75631fa57e7d
Created: 2014/05/03 22:26:18
Detections: 1
Determination: Adware
- Reason Heuristics as PUP.ClientConnect.H (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\nsn680f.exe
Publisher: Conduit
MD5: 096e0d55823fdeb3916584071e9b7aca
SHA-1: 805e562d2dd87c4df01d8d43a9f7e8cdb8adca71
Created: 2014/03/30 20:05:16
Detections: 6
Determination: Adware
- Reason Heuristics as PUP.Conduit.H (Adware)
- Malwarebytes as PUP.Optional.SearchProtect.A (Adware)
- Panda Antivirus as PUP/Conduit.A (Adware)
- Trend Micro House Call as TROJ_GEN.F47V0301 (Undefined)
- Baidu Antivirus as Adware.Win32.Conduit (Adware)
- XVirus List as Win.Detected (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\nsr649f.exe
Publisher: Conduit
MD5: 096e0d55823fdeb3916584071e9b7aca
SHA-1: 805e562d2dd87c4df01d8d43a9f7e8cdb8adca71
Created: 2014/04/08 22:06:40
Detections: 6
Determination: Adware
- Reason Heuristics as PUP.Conduit.H (Adware)
- Malwarebytes as PUP.Optional.SearchProtect.A (Adware)
- Panda Antivirus as PUP/Conduit.A (Adware)
- Trend Micro House Call as TROJ_GEN.F47V0301 (Undefined)
- Baidu Antivirus as Adware.Win32.Conduit (Adware)
- XVirus List as Win.Detected (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\nsy7827.exe
Publisher: Conduit
MD5: 096e0d55823fdeb3916584071e9b7aca
SHA-1: 805e562d2dd87c4df01d8d43a9f7e8cdb8adca71
Created: 2014/03/30 20:05:16
Detections: 6
Determination: Adware
- Reason Heuristics as PUP.Conduit.H (Adware)
- Malwarebytes as PUP.Optional.SearchProtect.A (Adware)
- Panda Antivirus as PUP/Conduit.A (Adware)
- Trend Micro House Call as TROJ_GEN.F47V0301 (Undefined)
- Baidu Antivirus as Adware.Win32.Conduit (Adware)
- XVirus List as Win.Detected (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\a9e7.tmp
Publisher:
MD5: 66a4988e6963fef561533e0c29d6de46
SHA-1: 5bebbc2785d830a183eff2bf731ee15441408e31
Created: 2015/03/15 21:00:46
Detections: 5
Determination: Adware
- avast! as SoftPulse-CU [PUP] (Adware)
- ESET NOD32 as Win32/SoftPulse.X potentially unwanted application (Adware)
- Clam AntiVirus as Win.Adware.MultiPlug-31138 (Adware)
- Avira AntiVirus as PUA/Softpulse.Gen (Undefined)
- Baidu Antivirus as PUA.Win32.SoftPulse (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\a9e7.tmp.exe
Publisher:
MD5: 66a4988e6963fef561533e0c29d6de46
SHA-1: 5bebbc2785d830a183eff2bf731ee15441408e31
Created: 2015/03/15 21:00:46
Detections: 5
Determination: Adware
- avast! as SoftPulse-CU [PUP] (Adware)
- ESET NOD32 as Win32/SoftPulse.X potentially unwanted application (Adware)
- Clam AntiVirus as Win.Adware.MultiPlug-31138 (Adware)
- Avira AntiVirus as PUA/Softpulse.Gen (Undefined)
- Baidu Antivirus as PUA.Win32.SoftPulse (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\apnsetup.exe
Publisher: Ask Partner Network
Signer: APN LLC
MD5: 7929e365f15eade08164e731869dfe71
SHA-1: 8f2c4810bb28c43913c57a2bb22a39f604df667e
Created: 2015/02/13 20:03:29
Detections: 12
Determination: Adware
- Trend Micro House Call as Suspicious_GEN.F47V0206 (Undefined)
- ESET NOD32 as Win32/Bundled.Toolbar.Ask.E potentially unsafe (variant) (Undefined)
- Baidu Antivirus as PUA.Win32.AskToolbar (Adware)
- Reason Heuristics as PUP.Installer.Ask (Adware)
- G Data as Win32.Trojan.Agent.YA0M5C (Undefined)
- IKARUS anti.virus as Win32.Malware (Undefined)
- Bkav FE as HW32.Pedka (Undefined)
- McAfee as Artemis!23F69DA31ECC (Undefined)
- Dr.Web as Adware.Toolbar.261 (Adware)
- McAfee Web Gateway as Artemis (Undefined)
- Antiy Labs AVL as Trojan/Win32.SGeneric (Undefined)
- Fortinet FortiGate as Riskware/Ask (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\backupsetup.exe
Publisher:
Signer: Backup Software Limited
MD5: bcba8747ab53932f8613c006444078e9
SHA-1: 4495024b25f21088902fbd82fc915e621187fe85
Created: 2015/03/15 21:01:39
Detections: 3
Determination: Adware
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- AVG as MyBackup (Undefined)
- Reason Heuristics as PUP.Optional.Installer.L (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\supoptsetup.exe
Publisher: Super PC Tools ltd
Signer: Super PC Tools Limited
MD5: 7945f1044656b39232f78c0068dd6327
SHA-1: 153982efb9550dd1a5c7bad4209531826bacf3e7
Created: 2015/03/15 21:01:53
Detections: 18
Determination: Adware
- Agnitum Outpost as Riskware.SpeedingUpMyPC (Adware)
- Dr.Web as Program.Unwanted.134 (Adware)
- ESET NOD32 as Win32/SpeedingUpMyPC (variant) (Undefined)
- AVG as SuperPCTools (Undefined)
- Reason Heuristics as PUP.Installer.PC Utilities (Adware)
- McAfee as Artemis!A0269184E842 (Undefined)
- K7 Gateway Antivirus as Trojan (Undefined)
- NANO AntiVirus as Riskware.Win32.OptimizerPro.dllldz (Adware)
- Comodo Security as ApplicUnwnt (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Avira AntiVirus as Adware/SpdUpMyPC.5740344 (Adware)
- Antiy Labs AVL as RiskWare[RiskTool:not-a-virus]/Win32.OptimizerPro (Adware)
- Fortinet FortiGate as Riskware/SpeedingUpMyPC (Undefined)
- Trend Micro House Call as Suspicious_GEN.F47V1125 (Undefined)
- G Data as Win32.Trojan.Agent.DWGUU0 (Undefined)
- Trend Micro as ADW_SPEEDUPMYPC (Adware)
- Baidu Antivirus as Adware.Win32.SpeedingUpMyPC (Adware)
- avast! as Win32:Malware-gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\0cd4fa0a-d34f-4c28-b69d-a6da0178e8c6\cloud_backup_setup.exe
Publisher:
Signer: PC Backup Software Limited
MD5: af37247590f4e4b8a8a214a091ea6067
SHA-1: af023cd20c85601e6874cb788bcaa49ae325a40d
Created: 2015/03/15 21:01:38
Detections: 7
Determination: Adware
- VIPRE Antivirus as Threat.4150696 (Undefined)
- Dr.Web as riskware program Program.Unwanted.72 (Undefined)
- McAfee as Artemis!AF37247590F4 (Undefined)
- Sophos as Generic PUA KP (Undefined)
- McAfee Web Gateway as Artemis!AF37247590F4 (Undefined)
- ESET NOD32 as Win32/MyPCBackup.A potentially unwanted application (Adware)
- Reason Heuristics as PUP.Optional.Installer.S (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\1c70d95f-c49e-4bf8-9556-96ec9474d261\lly_istartsurf.exe
Publisher: HTabp.com
Signer: Shulan Hou
MD5: b7893b0e3ae06373428ab30064d17708
SHA-1: 72e1175e0ed30b183a734c6dafc1964aeaa219c2
Created: 2015/03/15 21:01:38
Detections: 3
Determination: Adware
- Reason Heuristics as PUP.Ma Lin (Adware)
- Sophos as PUA 'Elex' (of type Adware) (Adware)
- Malwarebytes as PUP.Optional.IStartsurf.A (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\5790cdf0-bc8f-4859-9c6c-3e8980f7ef2a\driverscanner.exe
Publisher: Uniblue Systems Ltd
Signer: Uniblue Systems
MD5: 143d502f65772b87c2c3e368f21966d3
SHA-1: 052d55add7463e88b758ce320bdbf164710442bd
Created: 2015/03/15 21:01:39
Detections: 3
Determination: Inconclusive
- Agnitum Outpost as Trojan.DR.Agent (Undefined)
- Dr.Web as Program.Uniblue.12 (Adware)
- AVG as Uniblue (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\bbf2ad07-1a3c-43d0-9c0a-7d7d82e90369\setup.exe
Publisher:
MD5: d67d3058ec11297cc4c078911ff3d05a
SHA-1: dcf6a8f1699d9a6dca89cab0719ff34d7bd2b7db
Created: 2015/03/15 21:01:38
Detections: 1
Determination: Inconclusive
- AhnLab V3 Security as Adware/Win32.Zusy (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\ce927c75-3d02-4e66-adf3-8895d01b8042\webwaltzsetup.exe
Publisher:
Signer: web waltz
MD5: 0591dc2c7367c733a7ee293af16d1c17
SHA-1: 9db34707ef5621cefda36d1f1f17f712ad5ca71a
Created: 2015/03/15 21:01:38
Detections: 20
Determination: Adware
- Malwarebytes as PUP.Optional.BPlug (Adware)
- F-Prot as W32/S-c9f3cc61 (Undefined)
- avast! as Win32:PUP-gen [PUP] (Adware)
- NANO AntiVirus as Trojan.Win32.BPlug.dfsehz (Undefined)
- Dr.Web as Trojan.BPlug.181 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Jiangmin as AdWare/SwiftBrowse.bhs (Adware)
- Avira AntiVirus as ADWARE/BrowseFox.Gen (Adware)
- Antiy Labs AVL as Trojan/Win32.SGeneric (Undefined)
- AhnLab V3 Security as PUP/Win32.SwiftBrowse (Adware)
- G Data as NSIS.Application.BrowseFox (Undefined)
- McAfee as Artemis!0591DC2C7367 (Undefined)
- Baidu Antivirus as Adware.Win32.BrowseFox (Adware)
- ESET NOD32 as Win32/BrowseFox.C potentially unwanted (Adware)
- Rising Antivirus as NS:PUF.SilenceInstaller!1.9DDF (Undefined)
- IKARUS anti.virus as AdWare.BrowseFox (Adware)
- AVG as BrowseFox.H (Undefined)
- Qihoo 360 Security as HEUR/QVM42.0.Malware.Gen (Undefined)
- Reason Heuristics as PUP.Installer.Yontoo (Adware)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\d933aaa3-20cc-4e0b-9cf8-8a9fb5f25a0e\games desktop.exe
Publisher:
Signer: TUTO4PC COM INTERNATIONAL SL
MD5: e57092682a0d0a3a69811ca975ead3a5
SHA-1: faed339460f34a960258ca2fb9c2f4eb9d46160d
Created: 2015/03/15 21:01:38
Detections: 25
Determination: Adware
- Reason Heuristics as PUP.Installer.Eorezo (Adware)
- VIPRE Antivirus as Threat.4739248 (Undefined)
- Kaspersky as not-a-virus:AdWare.Win32.Eorezo (Adware)
- Lavasoft Ad-Aware as Adware.Eorezo.CD (Adware)
- MicroWorld eScan as Adware.Eorezo.CD (Adware)
- nProtect as Adware.Eorezo.CD (Adware)
- Quick Heal as Adware.Eorezo.S5 (Adware)
- Malwarebytes as PUP.Optional.Tuto4PC.A (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- K7 AntiVirus as Adware (Adware)
- NANO AntiVirus as Trojan.Win32.DownLoader11.dozdlx (Undefined)
- F-Prot as W32/S-c61ac5f0 (Undefined)
- Trend Micro House Call as TROJ_GEN.R0C1B01CE15 (Undefined)
- avast! as Win32:Adware-ASG [PUP] (Adware)
- Bitdefender as Adware.Eorezo.CD (Adware)
- Sophos as Eorezo (Undefined)
- F-Secure as Adware.Eorezo.CD (Adware)
- Dr.Web as Adware.Eorezo.31 (Adware)
- Emsisoft Anti-Malware as Adware.Eorezo.CD (Adware)
- Avira AntiVirus as Adware/EoRezo.bonc (Adware)
- Antiy Labs AVL as Trojan/Win32.TSGeneric (Undefined)
- G Data as Adware.Eorezo.CD (Adware)
- AhnLab V3 Security as Win-PUP/EoRezo (Undefined)
- ESET NOD32 as Win32/AdWare.EoRezo.AU (variant) (Adware)
- AVG as Generic (Undefined)

---------------------------------------------------------------------------------

File path: c:\users\keiko\appdata\local\temp\d9b7aca6-481f-465f-b04d-69e5100abf67\superoptimizersetup.exe
Publisher: Super PC Tools Ltd
Signer: Super PC Tools Limited
MD5: 9fa5580215029dafc787e15cacb375c9
SHA-1: 841577a4626358f2e600eb953a0beb1c6dc43339
Created: 2015/03/15 21:01:38
Detections: 38
Determination: Adware
- Reason Heuristics as PUP.Installer.PC Utilities (Adware)
- Clam AntiVirus as Win.Trojan.Optimizerpro-18 (Undefined)
- Avira AntiVirus as APPL/OptimizPro.RE (Adware)
- Rising Antivirus as PE:Trojan.Win32.Generic.17876B26!394750758 (Undefined)
- F-Secure as Gen:Variant.Strictor.66909 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Strictor.66909 (Undefined)
- MicroWorld eScan as Gen:Variant.Strictor.66909 (Undefined)
- avast! as Adware-gen [Adw] (Adware)
- Panda Antivirus as Trj/CI.A (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Strictor.66909 (Undefined)
- Bitdefender as Gen:Variant.Strictor.66909 (Undefined)
- Trend Micro as TROJ_GEN.R02KC0OK314 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Comodo Security as ApplicUnwnt (Undefined)
- Trend Micro House Call as TROJ_GEN.R02KC0OK314 (Undefined)
- Qihoo 360 Security as HEUR/QVM41.1.Malware.Gen (Undefined)
- AVG as Generic (Undefined)
- Fortinet FortiGate as Riskware/OptimizerPro (Undefined)
- ESET NOD32 as Win32/Adware.SpeedingUpMyPC.U application (Adware)
- G Data as Win32.Application.OptimizerPro (Undefined)
- AhnLab V3 Security as PUP/Win32.Optimizer (Adware)
- Antiy Labs AVL as Trojan/Win32.SGeneric (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Dr.Web as riskware program Program.Unwanted.134 (Undefined)
- NANO AntiVirus as Riskware.Win32.OptimizerPro.dgmsiw (Adware)
- Kaspersky as not-a-virus:RiskTool.Win32.SProtector (Adware)
- Total Defense as Win32/Tnega.SZHEWKB (Undefined)
- F-Prot as W32/A-fcdc4a04 (Undefined)
- Agnitum Outpost as Riskware.OptimizerPro (Adware)
- K7 AntiVirus as Adware (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- Zillya! Antivirus as Trojan.Black.Win32.18731 (Undefined)
- McAfee as Artemis!D9C65562DB38 (Undefined)
- IKARUS anti.virus as PUA.SpeedingUpMyPC (Adware)
- Baidu Antivirus as PUA.Win32.Rezimitpo (Adware)
- Jiangmin as Trojan/Delf.abfl (Undefined)
- Vba32 AntiVirus as Trojan.Delf (Undefined)
- Sophos as Generic PUA JH (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\divx.dll
Publisher: DivX, Inc.
MD5: f42e95bfb193754e9148db6434d2e88e
SHA-1: f7e2bbebb5efee13b3c8df04d4983a089abf011d
Created: 2010/02/20 4:27:36
Detections: 1
Determination: Ignore detections (false positive)
- CMC Antivirus as Packed.Win32.PolyCrypt.2!O

---------------------------------------------------------------------------------

File path: c:\windows\syswow64\iscsicpl.dll
Publisher: Microsoft Corporation
MD5: f945adcef203e6104aec8ec9c337cfd0
SHA-1: 85fe50b2c2fcbec2c09c5039c8f8c1d38523780a
Created: 2009/07/14 8:46:13
Detections: 1
Determination: Ignore detections (false positive)
- Bkav FE as W32.HfsAutoA (Undefined)

---------------------------------------------------------------------------------

File path: c:\programdata\application data\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
Publisher: Super PC Tools Ltd
Signer: Super PC Tools Limited
MD5: 9fa5580215029dafc787e15cacb375c9
SHA-1: 841577a4626358f2e600eb953a0beb1c6dc43339
Created: 2014/03/15 21:01:51
Detections: 38
Determination: Adware
- Reason Heuristics as PUP.Installer.PC Utilities (Adware)
- Clam AntiVirus as Win.Trojan.Optimizerpro-18 (Undefined)
- Avira AntiVirus as APPL/OptimizPro.RE (Adware)
- Rising Antivirus as PE:Trojan.Win32.Generic.17876B26!394750758 (Undefined)
- F-Secure as Gen:Variant.Strictor.66909 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Strictor.66909 (Undefined)
- MicroWorld eScan as Gen:Variant.Strictor.66909 (Undefined)
- avast! as Adware-gen [Adw] (Adware)
- Panda Antivirus as Trj/CI.A (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Strictor.66909 (Undefined)
- Bitdefender as Gen:Variant.Strictor.66909 (Undefined)
- Trend Micro as TROJ_GEN.R02KC0OK314 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Comodo Security as ApplicUnwnt (Undefined)
- Trend Micro House Call as TROJ_GEN.R02KC0OK314 (Undefined)
- Qihoo 360 Security as HEUR/QVM41.1.Malware.Gen (Undefined)
- AVG as Generic (Undefined)
- Fortinet FortiGate as Riskware/OptimizerPro (Undefined)
- ESET NOD32 as Win32/Adware.SpeedingUpMyPC.U application (Adware)
- G Data as Win32.Application.OptimizerPro (Undefined)
- AhnLab V3 Security as PUP/Win32.Optimizer (Adware)
- Antiy Labs AVL as Trojan/Win32.SGeneric (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Dr.Web as riskware program Program.Unwanted.134 (Undefined)
- NANO AntiVirus as Riskware.Win32.OptimizerPro.dgmsiw (Adware)
- Kaspersky as not-a-virus:RiskTool.Win32.SProtector (Adware)
- Total Defense as Win32/Tnega.SZHEWKB (Undefined)
- F-Prot as W32/A-fcdc4a04 (Undefined)
- Agnitum Outpost as Riskware.OptimizerPro (Adware)
- K7 AntiVirus as Adware (Adware)
- K7 Gateway Antivirus as Adware (Adware)
- Zillya! Antivirus as Trojan.Black.Win32.18731 (Undefined)
- McAfee as Artemis!D9C65562DB38 (Undefined)
- IKARUS anti.virus as PUA.SpeedingUpMyPC (Adware)
- Baidu Antivirus as PUA.Win32.Rezimitpo (Adware)
- Jiangmin as Trojan/Delf.abfl (Undefined)
- Vba32 AntiVirus as Trojan.Delf (Undefined)
- Sophos as Generic PUA JH (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\intel\intel(r) rapid storage technology\fi-fi\iastorhelp.resources.dll
Publisher: Intel Corporation
MD5: 9cfd7c2215739b17d6a01070f2080e45
SHA-1: f9b7f59bd5fcaa447dba9c6243072a2b8e07e42a
Created: 2013/08/07 14:24:02
Detections: 1
Determination: Ignore detections (false positive)
- The Hacker as Trojan/Dropper.MSIL.Agent.q (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\intel\intel(r) rapid storage technology\hu-hu\iastoricon.resources.dll
Publisher: Intel Corporation
MD5: 7c2a34f6336d0ae9d3c9797893e7e19d
SHA-1: 9657d0f33081c635f827f865e973b4409e44fe74
Created: 2013/08/07 14:24:02
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as DeepScan:Generic.Malware.SP!Pk!g.0E8D1A48 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\intel\intel(r) rapid storage technology\ja-jp\intelvisualdesign.resources.dll
Publisher: Intel Corporation
MD5: 455418b3148f1a2de0d003b819457d62
SHA-1: 8fd6cd38e93bb07ac7018e8e30b99681fe018275
Created: 2013/08/07 14:24:02
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as DeepScan:Generic.Malware.SP!Pk!g.0E8D1A48 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\intel\intel(r) rapid storage technology\pl-pl\iastorviewmodel.resources.dll
Publisher: Intel Corporation
MD5: 2aa466fc74054ac178305fad443e6ade
SHA-1: 8e55ec594f5bd165716da28d568972d53ac77d23
Created: 2013/08/07 14:24:04
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.2529 (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\intel\intel(r) rapid storage technology\pt-br\iastorutil.resources.dll
Publisher: Intel Corporation
MD5: 9f424393bd1fe2aab3698ee99aed700e
SHA-1: 551c4cf7afe2c25f1ecce1bc0e46757e9e9fe760
Created: 2013/08/07 14:24:04
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Win32.Almanahe (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\intel\intel(r) rapid storage technology\ru-ru\intelvisualdesign.resources.dll
Publisher: Intel Corporation
MD5: 6045c1c97bc0e783e1f993119337566a
SHA-1: 0c4409f7bb8dcf495952ad7a2fae4e3716d721c9
Created: 2013/08/07 14:24:04
Detections: 1
Determination: Ignore detections (false positive)
- Emsisoft Anti-Malware as Trojan.JS.Redirector.BPJ (Undefined)

---------------------------------------------------------------------------------

File path: c:\program files\mcafee\msc\compatibilitytester.exe
Publisher: McAfee, Inc.
Signer: McAfee, Inc.
MD5: f3ed4740058c6eaa215c925491820b5c
SHA-1: 34062adff2c997044d1288486292e03887faa21f
Created: 2011/09/17 18:26:44
Detections: 1
Determination: Ignore detections (false positive)
- Comodo Security as Heur.Suspicious

---------------------------------------------------------------------------------

File path: c:\program files\nvidia corporation\installer2\nvidia.update.{85b37044-8784-40c6-9cdf-6de523148a5d}\easydaemonapiu64.dll
Publisher: NVIDIA Corporation
Signer: NVIDIA Corporation
MD5: 477850598439e869db647b1f3565e814
SHA-1: 35550bcb3bff6b9bbfee2004e3da1d2faf7ee9ef
Created: 2014/02/24 13:46:15
Detections: 1
Determination: Ignore detections (false positive)
- Clam AntiVirus as PUA.Win32.Packer.SetupExeSection

 /L_____________
< To Be Continued… l\l /
 \「‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾‾
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 16:54:25
orzパート1
OTL其の壱

OTL logfile created on: 2015/03/19 16:23:42 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\METALSLIME\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17691)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.92 Gb Total Physical Memory | 6.77 Gb Available Physical Memory | 85.42% Memory free
15.84 Gb Paging File | 14.71 Gb Available in Paging File | 92.89% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 200.00 Gb Total Space | 29.43 Gb Free Space | 14.71% Space Free | Partition Type: NTFS
Drive D: | 1652.53 Gb Total Space | 1482.46 Gb Free Space | 89.71% Space Free | Partition Type: NTFS

Computer Name: METALSLIME-PC | User Name: keiko | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/03/19 15:29:26 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\METALSLIME\Desktop\orz.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/02/20 11:35:05 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2015/02/10 03:55:42 | 002,714,800 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc)
SRV:[b]64bit:[/b] - [2015/01/13 16:11:30 | 000,562,200 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\mcafee\msc\McAPExe.exe -- (McAPExe)
SRV:[b]64bit:[/b] - [2015/01/07 19:37:22 | 000,601,864 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\mcafee\virusscan\mcods.exe -- (McODS)
SRV:[b]64bit:[/b] - [2014/12/13 09:13:04 | 001,148,560 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe -- (GfExperienceService)
SRV:[b]64bit:[/b] - [2014/12/13 09:13:03 | 019,823,248 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
SRV:[b]64bit:[/b] - [2014/11/22 00:17:58 | 000,422,632 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\CSP\1.3.336.0\McCSPServiceHost.exe -- (mccspsvc)
SRV:[b]64bit:[/b] - [2014/11/06 06:34:38 | 001,050,952 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe -- (mfecore)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (MSK80Service)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (McProxy)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (mcpltsvc)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (McOobeSv2)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (HomeNetSvc)
SRV:[b]64bit:[/b] - [2014/10/01 12:18:08 | 000,189,920 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Windows\SysNative\mfevtps.exe -- (mfevtp)
SRV:[b]64bit:[/b] - [2014/10/01 12:15:18 | 000,221,832 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:[b]64bit:[/b] - [2013/08/07 14:24:00 | 000,015,720 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV:[b]64bit:[/b] - [2013/07/24 18:21:46 | 000,334,608 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe -- (McAWFwk)
SRV:[b]64bit:[/b] - [2013/07/08 21:30:24 | 000,195,336 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Windows\SysNative\IPROSetMonitor.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/06/18 20:18:38 | 000,246,488 | ---- | M] (Realtek Semiconductor) [Auto | Stopped] -- C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE -- (RtkAudioService)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:54 | 000,822,232 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:38 | 000,733,696 | ---- | M] (Intel(R) Corporation) [Auto | Stopped] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/03/14 14:42:48 | 000,182,248 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe -- (ISCTAgent)
SRV - [2015/03/16 10:31:27 | 000,268,464 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/01/02 19:45:12 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014/12/13 09:13:04 | 001,701,520 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
SRV - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/12/01 16:48:00 | 003,472,368 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2014/07/03 02:44:41 | 000,411,936 | ---- | M] (NVIDIA Corporation) [Auto | Stopped] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013/09/11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013/09/03 16:53:04 | 000,390,616 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2013/09/03 16:52:04 | 000,169,432 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/03/19 09:45:10 | 000,034,752 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WPRO_41_2001.sys -- (WPRO_41_2001)
DRV:[b]64bit:[/b] - [2014/12/13 09:13:03 | 000,019,600 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
DRV:[b]64bit:[/b] - [2014/11/22 19:46:30 | 000,038,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
DRV:[b]64bit:[/b] - [2014/10/29 17:59:08 | 000,086,352 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\hxsyj64.sys -- (hxsyol)
DRV:[b]64bit:[/b] - [2014/10/28 00:29:23 | 000,086,448 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\slzj64.sys -- (slzjs)
DRV:[b]64bit:[/b] - [2014/10/01 12:20:58 | 000,072,136 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:[b]64bit:[/b] - [2014/10/01 12:18:18 | 000,348,560 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:[b]64bit:[/b] - [2014/10/01 12:16:28 | 000,786,304 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:[b]64bit:[/b] - [2014/10/01 12:15:28 | 000,526,360 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:[b]64bit:[/b] - [2014/10/01 12:14:48 | 000,313,680 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:[b]64bit:[/b] - [2014/10/01 12:14:26 | 000,181,584 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfeapfk.sys -- (mfeapfk)
DRV:[b]64bit:[/b] - [2014/09/19 02:44:18 | 000,096,600 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfencrk.sys -- (mfencrk)
DRV:[b]64bit:[/b] - [2014/09/19 02:43:24 | 000,447,440 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfencbdc.sys -- (mfencbdc)
DRV:[b]64bit:[/b] - [2014/07/28 14:52:00 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2014/03/11 17:32:21 | 000,034,512 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\debutfilterx64.sys -- (debutfilter)
DRV:[b]64bit:[/b] - [2013/12/24 13:00:00 | 000,451,872 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvstusb.sys -- (NvStUSB)
DRV:[b]64bit:[/b] - [2013/11/28 22:38:18 | 000,197,408 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2013/10/02 11:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/09/23 13:49:22 | 000,197,704 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HipShieldK.sys -- (HipShieldK)
DRV:[b]64bit:[/b] - [2013/09/03 16:52:04 | 000,099,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2013/08/07 14:23:46 | 000,644,968 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
DRV:[b]64bit:[/b] - [2013/08/07 14:23:46 | 000,028,008 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorF.sys -- (iaStorF)
DRV:[b]64bit:[/b] - [2013/05/30 09:54:40 | 000,495,376 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\e1d62x64.sys -- (e1dexpress)
DRV:[b]64bit:[/b] - [2013/04/26 11:24:58 | 000,020,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:[b]64bit:[/b] - [2013/04/26 11:24:56 | 000,786,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:[b]64bit:[/b] - [2013/04/26 11:24:56 | 000,368,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:[b]64bit:[/b] - [2013/03/14 14:34:46 | 000,046,568 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ISCTD64.sys -- (ISCT)
DRV:[b]64bit:[/b] - [2013/03/14 14:34:44 | 000,021,048 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\imsevent.sys -- (imsevent)
DRV:[b]64bit:[/b] - [2013/03/14 14:34:44 | 000,021,048 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ikbevent.sys -- (ikbevent)
DRV:[b]64bit:[/b] - [2012/08/23 23:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2012/08/23 23:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/08/15 23:41:38 | 000,030,208 | ---- | M] (Tobias Erichsen) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\teVirtualMIDI64.sys -- (teVirtualMIDI64)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/08/23 22:57:24 | 000,565,352 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009/11/16 08:45:26 | 000,042,192 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\qd262x64.sys -- (ioatdma2)
DRV:[b]64bit:[/b] - [2009/11/16 08:45:22 | 000,040,144 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\qd162x64.sys -- (ioatdma1)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{25B3A18A-C722-476B-A6D6-F0DD791B35DB}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{FCFD4D02-9D00-423C-A20B-9826F35749E9}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://localoem.msn.com
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.dospara.co.jp/ [binary data]
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.co.jp/
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\..\SearchScopes,DefaultScope = {AF73464D-68BE-41F3-8EEF-65B526AE9521}
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\..\SearchScopes\{AF73464D-68BE-41F3-8EEF-65B526AE9521}: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=tbtopie&p={searchTerms}
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.dospara.co.jp/ [binary data]
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.75.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.75.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@kunlun.com/Launcher: C:\X-Legend\HH\npLauncher.dll File not found
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK [2015/02/19 12:12:26 | 000,000,000 | ---D | M]


[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: istartsurf (Enabled)
CHR - default_search_provider: search_url = http://www.istartsurf.com/web/?type=ds&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974&q={searchTerms}
CHR - default_search_provider: suggest_url = http://ss.websearch.ask.com/query?li=ff&sstype=prefix&q={searchTerms},
CHR - homepage:
CHR - plugin: Error reading preferences file
CHR - Extension: Google テ」ツδ嘉」ツつュテ」ツδ・テ」ツδ。テ」ツδウテ」ツδ・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: Google テ」ツδ嘉」ツつュテ」ツδ・テ」ツδ。テ」ツδウテ」ツδ・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\
CHR - Extension: Google 繝峨Λ繧、繝・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: Google 繝峨Λ繧、繝・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: Google 繝峨Λ繧、繝・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: YouTube = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: YouTube = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: Screen Resolution Tester = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbpeddmakpmblddofjnoghpjminhjph\223\
CHR - Extension: Google テヲツ、ツ愿ァツエツ「 = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Google テヲツ、ツ愿ァツエツ「 = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Paste It = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142\
CHR - Extension: Anydo Extension = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem\239\
CHR - Extension: ZipList Recipe Clipper = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142\
CHR - Extension: Time Warp = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191\
CHR - Extension: Google テδ」テつづつヲテδ」テつづつゥテδ」テつεつャテδ」テつεつεδ」テつεつ・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Thunder,QQDownload Files Downloader = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof\121\
CHR - Extension: Gmail = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Gmail = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\

O1 HOSTS File: ([2009/06/11 06:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Yahoo!ツールバーフィッシング警告) - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll (Yahoo Japan Corporation. )
O2:[b]64bit:[/b] - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\urlredir.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2:[b]64bit:[/b] - BHO: (Yahoo!ツールバーヘルパー) - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O2 - BHO: (Yahoo!ツールバーフィッシング警告) - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll (Yahoo Japan Corporation. )
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (web waltz 1.0.0.7) - {77980a3c-fa45-4070-8bde-7e9af6d76228} - C:\Program Files (x86)\web waltz\webwaltzbho.dll File not found
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\urlredir.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Yahoo!ツールバーヘルパー) - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Yahoo!ツールバー) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Yahoo!ツールバー) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" File not found
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
O4 - HKLM..\Run: [mcpltui_exe] C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (McAfee, Inc.)
O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe (Yahoo! Japan Corporation.)
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\RunOnce: [Adobe Speed Launcher] 1426725921 File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003..\RunOnce: [Adobe Speed Launcher] 1426376288 File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003..\RunOnce: [Report] \AdwCleaner\AdwCleaner[S0].txt File not found
O4 - Startup: C:\Users\keiko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superoptimizersetup.lnk = C:\ProgramData\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe (Super PC Tools Ltd)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O7 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\..Trusted Domains: pokemon-matome.net ([]http in 信頼済みサイト)
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB (LoadPrg Class)
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} https://hh.x-legend.co.jp/X-LegendGameStarter.cab (X-Legend GameStarter Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F991E613-3BAB-40B5-B84E-25C12BEC9826}: DhcpNameServer = 192.168.0.1
O18:[b]64bit:[/b] - Protocol\Handler\osf - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\msosb.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/03/19 15:33:06 | 000,000,000 | ---D | C] -- C:\Program Files\Reason
[2015/03/18 21:13:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2015/03/18 21:13:42 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2015/03/18 21:08:12 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Roaming\Malwarebytes
[2015/03/18 21:07:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/03/18 21:07:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2015/03/18 19:45:49 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\ElevatedDiagnostics
[2015/03/18 14:47:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\マカフィー
[2015/03/18 14:41:00 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Roaming\Geek Uninstaller
[2015/03/18 14:22:45 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2015/03/18 11:31:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/03/18 11:30:56 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/03/16 19:22:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetasequoiaLE R3.0
[2015/03/16 19:22:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MetaseqLE30
[2015/03/15 21:39:15 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\Trend Micro
[2015/03/15 21:35:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Trend Micro Installer
[2015/03/15 21:01:51 | 000,000,000 | ---D | C] -- C:\ProgramData\{b42ace8b-894d-4979-b42a-ace8b8943a2e}
[2015/03/15 21:01:49 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\Programs
[2015/03/15 09:13:17 | 000,000,000 | ---D | C] -- C:\ProgramData\16714426571352280450UL
[2015/03/11 15:50:32 | 000,372,224 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2015/03/11 15:50:31 | 000,299,008 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2015/03/11 15:50:31 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2015/03/11 15:50:31 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2015/03/11 15:50:31 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2015/03/11 15:50:31 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2015/03/11 15:50:31 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2015/03/11 15:50:31 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2015/03/11 15:50:20 | 011,411,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2015/03/11 15:50:20 | 005,554,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2015/03/11 15:50:20 | 003,209,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2015/03/11 15:50:19 | 003,973,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2015/03/11 15:50:19 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2015/03/11 15:50:18 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2015/03/11 15:50:18 | 000,616,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2015/03/11 15:50:17 | 014,632,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2015/03/11 15:50:17 | 004,121,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2015/03/11 15:50:15 | 001,574,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2015/03/11 15:50:15 | 001,329,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2015/03/11 15:50:15 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmv2clt.dll
[2015/03/11 15:50:15 | 001,069,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2015/03/11 15:50:15 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmv2clt.dll
[2015/03/11 15:50:15 | 000,693,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2015/03/11 15:50:15 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2015/03/11 15:50:15 | 000,619,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe
[2015/03/11 15:50:15 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2015/03/11 15:50:14 | 001,005,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2015/03/11 15:50:14 | 000,782,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2015/03/11 15:50:14 | 000,744,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2015/03/11 15:50:14 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2015/03/11 15:50:14 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2015/03/11 15:50:13 | 000,842,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2015/03/11 15:50:13 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2015/03/11 15:50:13 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2015/03/11 15:50:12 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2015/03/11 15:50:12 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2015/03/11 15:50:12 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2015/03/11 15:50:12 | 000,500,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AUDIOKSE.dll
[2015/03/11 15:50:12 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2015/03/11 15:50:12 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2015/03/11 15:50:12 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AUDIOKSE.dll
[2015/03/11 15:50:12 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEng.dll
[2015/03/11 15:50:12 | 000,432,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfplat.dll
[2015/03/11 15:50:12 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2015/03/11 15:50:12 | 000,371,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2015/03/11 15:50:12 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfplat.dll
[2015/03/11 15:50:12 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2015/03/11 15:50:12 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2015/03/11 15:50:12 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2015/03/11 15:50:12 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2015/03/11 15:50:12 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidpolicyconverter.exe
[2015/03/11 15:50:12 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2015/03/11 15:50:12 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2015/03/11 15:50:12 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfps.dll
[2015/03/11 15:50:12 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidapi.dll
[2015/03/11 15:50:12 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rrinstaller.exe
[2015/03/11 15:50:12 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appidapi.dll
[2015/03/11 15:50:12 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rrinstaller.exe
[2015/03/11 15:50:12 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcadm.dll
[2015/03/11 15:50:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcawrk.exe
[2015/03/11 15:50:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmmsp.dll
[2015/03/11 15:50:11 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2015/03/11 15:50:11 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2015/03/11 15:50:11 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDump.dll
[2015/03/11 15:50:11 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptsp.dll
[2015/03/11 15:50:11 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setbcdlocale.dll
[2015/03/11 15:50:11 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2015/03/11 15:50:11 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2015/03/11 15:50:11 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfpmp.exe
[2015/03/11 15:50:11 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfpmp.exe
[2015/03/11 15:50:11 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidcertstorecheck.exe
[2015/03/11 15:50:11 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2015/03/11 15:50:11 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcalua.exe
[2015/03/11 15:50:11 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcaevts.dll
[2015/03/11 15:50:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2015/03/11 15:50:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2015/03/11 15:50:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2015/03/11 15:50:11 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2015/03/11 15:50:11 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2015/03/11 15:50:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2015/03/11 15:50:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2015/03/11 15:50:11 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mferror.dll
[2015/03/11 15:50:11 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mferror.dll
[2015/03/11 15:50:03 | 003,179,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2015/03/11 15:50:03 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2015/03/11 15:50:03 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
[2015/03/11 15:49:57 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ubpm.dll
[2015/03/11 15:49:57 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ubpm.dll
[2015/03/11 15:49:51 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2015/03/11 15:49:51 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2015/03/11 15:49:51 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2015/03/11 15:49:51 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2015/03/11 15:49:51 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2015/03/11 15:49:51 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2015/03/11 15:49:51 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2015/03/11 15:49:51 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2015/03/11 15:49:51 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2015/03/11 15:49:51 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2015/03/11 15:49:51 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2015/03/11 15:49:51 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2015/03/11 15:49:51 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2015/03/11 15:49:49 | 001,067,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msctf.dll
[2015/03/11 15:49:47 | 001,424,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2015/03/11 15:49:45 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2015/03/11 15:49:45 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015/03/11 15:49:45 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015/03/11 15:49:45 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2015/03/11 15:49:45 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2015/03/11 15:49:45 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2015/03/11 15:49:44 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015/03/11 15:49:44 | 000,718,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2015/03/11 15:49:44 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015/03/11 15:49:44 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2015/03/11 15:49:44 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2015/03/11 15:49:44 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2015/03/11 15:49:44 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2015/03/11 15:49:43 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015/03/11 15:49:43 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2015/03/11 15:49:43 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015/03/11 15:49:43 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015/03/11 15:49:43 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2015/03/11 15:49:43 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2015/03/11 15:49:43 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015/03/11 15:49:43 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2015/03/11 15:49:43 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2015/03/11 15:49:43 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2015/03/11 15:49:42 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2015/03/11 15:49:42 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2015/03/11 15:49:42 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2015/03/11 15:49:42 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2015/03/11 15:49:42 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2015/03/11 15:49:41 | 006,035,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015/03/11 15:49:41 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2015/03/11 15:49:41 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015/03/11 15:49:41 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015/03/11 15:49:41 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2015/03/11 15:49:41 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015/03/11 15:49:41 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015/03/11 15:49:39 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2015/03/11 15:49:39 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2015/03/04 11:09:14 | 000,950,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\perftrack.dll
[2015/03/04 11:09:14 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powertracker.dll
[2015/02/18 18:38:10 | 000,197,704 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\drivers\HipShieldK.sys
[2015/01/10 17:51:04 | 002,975,440 | ---- | C] (SEGA ) -- C:\Program Files (x86)\PSO2_SETUP.exe

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/03/19 16:21:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/03/19 16:21:14 | 2083,839,999 | -HS- | M] () -- C:\hiberfil.sys
[2015/03/19 16:13:01 | 000,000,698 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/03/19 16:11:01 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/03/19 09:52:18 | 000,031,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/03/19 09:52:18 | 000,031,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/03/19 09:52:02 | 001,315,260 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2015/03/19 09:52:02 | 000,654,968 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015/03/19 09:52:02 | 000,411,876 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
[2015/03/19 09:52:02 | 000,122,420 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
[2015/03/19 09:52:02 | 000,122,338 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015/03/19 09:45:21 | 000,000,694 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/03/19 09:45:10 | 000,034,752 | ---- | M] () -- C:\Windows\SysNative\drivers\WPRO_41_2001.sys
[2015/03/18 21:13:43 | 000,001,120 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/03/18 19:43:38 | 000,001,307 | ---- | M] () -- C:\Users\keiko\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/03/18 19:43:38 | 000,001,283 | ---- | M] () -- C:\Users\keiko\Desktop\Google Chrome.lnk
[2015/03/18 19:43:38 | 000,000,948 | ---- | M] () -- C:\Users\keiko\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2015/03/18 19:29:00 | 000,000,940 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job
[2015/03/18 19:29:00 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job
[2015/03/18 19:24:00 | 000,000,304 | ---- | M] () -- C:\Windows\tasks\SaveSense.job
[2015/03/18 18:59:00 | 000,000,308 | ---- | M] () -- C:\Windows\tasks\Digital Sites.job
[2015/03/18 14:43:41 | 000,000,020 | ---- | M] () -- C:\Users\keiko\AppData\Roaming\appdataFr3.bin
[2015/03/16 10:31:27 | 000,778,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2015/03/16 10:31:27 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2015/03/15 21:01:52 | 000,002,002 | ---- | M] () -- C:\Users\keiko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superoptimizersetup.lnk
[2015/03/12 12:43:25 | 000,356,288 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2015/03/06 14:42:35 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2015/03/06 14:42:35 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2015/03/06 14:42:33 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2015/03/06 14:42:29 | 000,309,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2015/03/06 14:42:27 | 001,461,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2015/03/06 14:41:31 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2015/03/06 14:39:16 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2015/03/06 14:38:57 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2015/03/06 14:36:56 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2015/03/06 14:09:31 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2015/03/06 14:07:50 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2015/03/06 14:07:43 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2015/03/06 14:06:20 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2015/02/21 08:58:53 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015/02/21 08:32:48 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015/02/20 13:41:01 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2015/02/20 13:40:59 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2015/02/20 13:40:56 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2015/02/20 13:40:55 | 000,046,080 | ---- | M] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2015/02/20 13:13:49 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2015/02/20 13:13:43 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2015/02/20 12:29:16 | 000,372,224 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2015/02/20 12:09:16 | 000,299,008 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2015/02/20 12:05:49 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2015/02/20 11:50:14 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2015/02/20 11:49:29 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2015/02/20 11:49:19 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015/02/20 11:47:56 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015/02/20 11:40:12 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2015/02/20 11:36:40 | 000,633,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2015/02/20 11:35:17 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2015/02/20 11:35:05 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2015/02/20 11:34:24 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015/02/20 11:32:34 | 006,035,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015/02/20 11:26:12 | 000,968,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2015/02/20 11:22:02 | 000,490,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2015/02/20 11:13:57 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2015/02/20 11:08:59 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2015/02/20 11:08:58 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2015/02/20 11:08:13 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2015/02/20 11:06:44 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015/02/20 11:05:05 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015/02/20 11:00:34 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2015/02/20 10:58:14 | 000,478,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2015/02/20 10:56:54 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2015/02/20 10:56:07 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2015/02/20 10:49:33 | 000,718,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2015/02/20 10:49:28 | 000,801,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015/02/20 10:47:06 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2015/02/20 10:46:45 | 002,125,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015/02/20 10:41:52 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScr
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 16:58:30
orzパート2
最後の行の続きからです

| ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
| ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2015/02/20 10:24:21 | 002,052,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015/02/20 10:23:19 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2015/02/20 10:03:34 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015/02/20 09:55:38 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015/02/18 19:21:31 | 000,001,216 | ---- | M] () -- C:\Users\keiko\Application Data\Microsoft\Internet Explorer\Quick Launch\ALZip.lnk
[2015/02/18 19:21:31 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\ALZip.lnk

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/03/18 21:13:43 | 000,001,120 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/03/15 21:01:52 | 000,002,002 | ---- | C] () -- C:\Users\keiko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superoptimizersetup.lnk
[2015/03/15 08:39:16 | 000,000,020 | ---- | C] () -- C:\Users\keiko\AppData\Roaming\appdataFr3.bin
[2015/02/18 19:21:31 | 000,001,216 | ---- | C] () -- C:\Users\keiko\Application Data\Microsoft\Internet Explorer\Quick Launch\ALZip.lnk
[2015/02/18 19:21:31 | 000,001,096 | ---- | C] () -- C:\Users\Public\Desktop\ALZip.lnk
[2013/10/02 17:26:43 | 001,294,108 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/05/11 17:17:52 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
[2002/01/15 21:35:34 | 000,548,864 | ---- | C] () -- C:\Program Files\ALLEG40.DLL

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 14:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 14:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 12:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/03/19 16:11:01 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/03/18 18:59:00 | 000,000,308 | ---- | M] () -- C:\Windows\tasks\Digital Sites.job
[2015/03/19 09:45:21 | 000,000,694 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/03/19 16:13:01 | 000,000,698 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/03/18 19:24:00 | 000,000,304 | ---- | M] () -- C:\Windows\tasks\SaveSense.job
[2015/03/18 19:29:00 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job
[2015/03/18 19:29:00 | 000,000,940 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: WDC WD20EZRX-00D8PB0 SCSI Disk Device
Partitions: 4
Status: OK
Status Info: 0

Drive: \\\\.\\PHYSICALDRIVE1 -
Interface type: USB
Media Type:
Model: Generic STORAGE DEVICE USB Device
Partitions: 0
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 490.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 10.00GB
Starting Offset: 514850816
Hidden sectors: 0


DeviceID: Disk #0, Partition #2
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 200.00GB
Starting Offset: 11252269056
Hidden sectors: 0


DeviceID: Disk #0, Partition #3
PartitionType: Extended w/Extended Int 13
Bootable: False
BootPartition: False
PrimaryPartition: False
Size: 1,653.00GB
Starting Offset: 226005876736
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2009/07/14 10:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2013/02/27 14:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:51 | 000,849,920 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2015/03/06 14:41:46 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:56 | 000,187,904 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2015/02/03 12:12:14 | 000,143,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:00 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/21 12:24:09 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 13:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2012/02/11 15:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2015/03/06 14:41:46 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:17 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:01 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2015/03/06 14:41:46 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:48 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/21 12:24:03 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2010/11/21 12:24:16 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/21 12:24:00 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/19 12:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/21 12:25:06 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/21 12:23:55 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:28 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:48 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:15 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/21 12:24:28 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2014/05/15 01:23:46 | 002,477,536 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:09 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/21 12:24:32 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

< End of report >
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 17:01:21
Re: 始めまして
HP2と3の抜けていた部分の補完です

File path: c:\windows\temp\dncfee.tmp
Publisher:
MD5: 69d07da00e715af8f4a68730bb12095b
SHA-1: 9d58a95cb0e2c2cb5758dadf4710cc123390e28f
Created: 2014/11/22 12:23:22
Detections: 10
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnd0c5.tmp
Publisher:
MD5: 09aa08097fa75245aa3c3594d6c4b8e1
SHA-1: d95ce6e22330dde8b2c750dbe8434331bdba8adb
Created: 2014/11/29 14:36:44
Detections: 9
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.ZPACK.Gen2
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnd1f5.tmp
Publisher:
MD5: bdf46d4426759de566169040cd327b0c
SHA-1: e0d88d261e6fab13230d2102d89ee9e92576ce13
Created: 2014/12/03 21:06:01
Detections: 22
Determination: Adware
- MicroWorld eScan as Adware.Generic.1140187 (Adware)
- F-Prot as W32/S-66f02221 (Undefined)
- Trend Micro House Call as TROJ_GEN.R021C0EAF15 (Undefined)
- avast! as Win32:PUP-gen [PUP] (Adware)
- Kaspersky as not-a-virus:AdWare.Win32.Esprot (Adware)
- Bitdefender as Adware.Generic.1140187 (Adware)
- Lavasoft Ad-Aware as Adware.Generic.1140187 (Adware)
- Emsisoft Anti-Malware as Adware.Generic.1140187 (Adware)
- F-Secure as Adware.Generic.1140187 (Adware)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- Trend Micro as TROJ_GEN.R021C0EAF15 (Undefined)
- McAfee Web Gateway as Artemis (Undefined)
- Sophos as Generic PUA OA (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- Antiy Labs AVL as GrayWare[AdWare:not-a-virus,HEUR]/Win32.AGeneric (Adware)
- G Data as Adware.Generic.1140187 (Adware)
- McAfee as Artemis!BDF46D442675 (Undefined)
- Baidu Antivirus as Adware.Win32.MultiPlug (Adware)
- ESET NOD32 as Win32/Adware.MultiPlug.DX (variant) (Adware)
- Fortinet FortiGate as Adware/Esprot (Adware)
- AVG as Generic_r (Undefined)
- Panda Antivirus as Trj/Genetic.gen (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnd371.tmp
Publisher:
MD5: c80ec5aad95b07bb62e02b8899651684
SHA-1: f64e6180ced1f570d7713f1722d835092374f5a9
Created: 2014/11/22 16:07:18
Detections: 11
Determination: Adware
- avast! as Win32:Malware-gen (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as TR/Crypt.XPACK.Gen3
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- Qihoo 360 Security as Win32/Trojan.160 (Undefined)

---------------------------------------------------------------------------------

File path: c:\windows\temp\dnd51d.tmp
Publisher:
MD5: 1c9cc2b0b4029e94104b1c6c6e69faf1
SHA-1: 7ec82fc85cad98f2fb0a063bf1ac82888ccb338c
Created: 2014/11/22 20:20:21
Detections: 17
Determination: Adware
- MicroWorld eScan as Gen:Variant.Graftor.164575 (Undefined)
- VIPRE Antivirus as Trojan.Win32.Generic (Undefined)
- K7 Gateway Antivirus as Riskware (Undefined)
- K7 AntiVirus as Riskware (Undefined)
- Trend Micro House Call as TROJ_GEN.R00GH09KN14 (Undefined)
- avast! as Win32:Malware-gen (Undefined)
- Kaspersky as UDS:DangerousObject.Multi.Generic (Undefined)
- Bitdefender as Gen:Variant.Graftor.164575 (Undefined)
- Lavasoft Ad-Aware as Gen:Variant.Graftor.164575 (Undefined)
- F-Secure as Gen:Variant.Graftor.164575 (Undefined)
- Emsisoft Anti-Malware as Gen:Variant.Graftor.164575 (Undefined)
- Avira AntiVirus as ADWARE/MultiPlug.Gen4 (Adware)
- G Data as Gen:Variant.Graftor.164575 (Undefined)
- Vba32 AntiVirus as SScope.Adware.MultiPlug (Adware)
- IKARUS anti.virus as Win32.SuspectCrc (Undefined)
- Panda Antivirus as Trj/CI.A (Undefined)
- Qihoo 360 Security as Win32/Virus.Adware.f45 (Adware)
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 17:10:07
Extrasの結果
OTL Extras logfile created on: 2015/03/19 16:23:42 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\METALSLIME\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17691)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.92 Gb Total Physical Memory | 6.77 Gb Available Physical Memory | 85.42% Memory free
15.84 Gb Paging File | 14.71 Gb Available in Paging File | 92.89% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 200.00 Gb Total Space | 29.43 Gb Free Space | 14.71% Space Free | Partition Type: NTFS
Drive D: | 1652.53 Gb Total Space | 1482.46 Gb Free Space | 89.71% Space Free | Partition Type: NTFS

Computer Name: METALSLIME-PC | User Name: keiko | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_USERS\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06074B58-E5B3-41C0-85D4-88410C9B09EC}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{3B62C420-0362-4A4B-8C4F-6D4DB611B685}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{3DB3120D-F8FC-461A-A0B4-AD8959896A63}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{5479B4D3-485B-48FD-BC73-AFE6EC6523CF}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{5C6E02E7-9FF2-4DC0-ACD2-5C1572D308C4}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{76099A25-BDF7-480C-B7A9-C32AEFFDEB94}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{9504A662-B7A2-4D3B-AF3C-4492522E35E2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{9E879F82-B168-4305-999A-35B043011EDF}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{A4C88F42-8E73-436B-9591-2B410056500B}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{D064BD76-C0A9-4C72-8E44-C947A3303E78}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{F15E4D50-651E-4FFC-A63E-C61E6F821F7E}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{F7C8F0BB-F39D-40E2-83C6-D9B53D0E5FC1}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{F9959C5F-F446-45C2-95E8-A7C5F1710CBF}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{FA2C11C2-FE84-4D72-AD26-52F327D4CEF4}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{087553D6-0A27-4B3F-B33E-5C4DD95C71E3}" = dir=in | app=c:\users\metalslime\desktop\音関係\apowersoft free audio recorder.exe |
"{21C66D84-E7D7-4024-9B6E-1B92E3AB8177}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{3131DF9A-0AC8-478C-A246-0EA14A0B9D6F}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{3D39B00A-B0C9-4DC1-B686-464BF636FF35}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{3F75AB3B-653E-4843-96F2-C83B7AE8357B}" = dir=in | app=c:\users\metalslime\appdata\local\microsoft\skydrive\skydrive.exe |
"{430112A4-9C7F-465E-A560-76DCBB77682A}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{831F9727-E525-4026-B68B-EEC400F12A9E}" = protocol=58 | dir=in | app=system |
"{9ADA2E54-E7D2-49CA-8D22-B0AB0E33DFF1}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{BB0DAE14-9DDC-472D-AAE6-C3372D59CA6D}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{C24FCA9B-A069-4DD3-9B27-6016F9DAD87A}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{CA0CBC54-B8D9-435E-A679-D5F77EF572D2}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E4762CE1-008E-46BA-8BA3-5BBD37E0104E}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{E4EC7F8F-CDD1-4ACF-999F-132618068D7E}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{FA41B5F9-5CEA-401F-BB34-7DCE9747FB56}" = dir=out | app=c:\users\metalslime\desktop\音関係\apowersoft free audio recorder.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1AAF6669-31B2-3840-9346-F0F653840FD1}" = Microsoft .NET Framework 4.5.1 (JPN)
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{26A24AE4-039D-4CA4-87B4-2F06417075FF}" = Java 7 Update 75 (64-bit)
"{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}" = iTunes
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{4B5B6BB3-DA04-4B56-AE17-DDBF3F446888}" = Intel(R) Network Connections 18.5.54.0
"{54F2237F-018C-483B-8884-9FC0D88840C3}" = VC_CRT_x64
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89AFB053-A343-46EF-97E4-D593AD7184E6}" = Intel® Trusted Connect Service Client
"{89E4163C-BD19-45A9-BCEB-980741786799}_is1" = LoiLo Game Recorder
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041" = Microsoft .NET Framework 4.5.1 (日本語)
"{93F692D4-0C4D-4EED-9BFE-657C1D5959FE}" = Intel(R) Rapid Storage Technology
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision ドライバー 340.52
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA コントロール パネル 340.52
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA グラフィックス ドライバー 340.52
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1.5
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision コントローラー ドライバー 340.50
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX システム ソフトウェア 9.13.1220
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 16.18.9
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD オーディオ ドライバー 1.3.30.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 16.18.9
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.27
"{B71910C5-BE1F-4091-A685-3FA2342A7635}" = Intel(R) Smart Connect Technology 4.1 x64
"{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}" = Apple Mobile Device Support
"{C6E57DC0-5699-47D4-9263-CEE00A4BB1FC}" = Windows Live MIME IFilter
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{D2837730-4960-3B35-8088-201387FD3BDB}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"CCleaner" = CCleaner
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語
"PC-Doctor for Windows" = パソコン診断ソフト PC-Doctor
"PersonalRetail - ja-jp" = Microsoft Office Personal 2013 - ja-jp
"PROSetDX" = Intel(R) Network Connections 18.5.54.0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{24758B1D-9345-4538-A69A-05660F63A296}" = Junk Mail filter update
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype(TM) 7.1
"{26A24AE4-039D-4CA4-87B4-2F03217075FF}" = Java 7 Update 75
"{26A24AE4-039D-4CA4-87B4-2F83218031F0}" = Java 8 Update 31
"{2E037507-E75B-4AAE-A419-2AE25C87B6A2}" = Windows Live Writer Resources
"{2F17C57A-F37C-4436-89FA-3D61B5D6843A}" = X-Downloader
"{33F7A957-A66D-45A1-BADF-6576083B14E2}" = RPGツクール2000 ランタイムパッケージ
"{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}" = Microsoft ASP.NET MVC 4 Runtime
"{4260CAAE-D108-4223-A1C5-96B67062FE86}" = Windows Live Installer
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56DE8696-FE79-4981-AF9D-70825B512005}" = RPGツクール2000 体験版
"{59307833-CB98-4440-B644-0CD352F61907}" = Windows Live PIMT Platform
"{5D9A58F8-ADE0-431A-BB8D-AD248683C13E}" = Windows Live メール
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{72D9236D-C6EA-4DA6-A18C-CC24521A70D4}" = Windows Live Mail
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7B0AEAF4-3C01-4169-9036-45573CF767D6}" = Windows Live Essentials
"{80407BA7-7763-4395-AB98-5233F1B34E65}" = NVIDIA PhysX
"{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}" = Apple Application Support
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8F5320EB-DC7C-46EF-9ACC-A58669001BDE}" = Photo Common
"{8F66BFDE-B213-48E2-93EF-7151277A2916}" = Windows Live SOXE Definitions
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0411-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{94532CD5-C66D-49E3-9131-5FB04D7647A1}" = Windows Live UX Platform
"{9797D7BA-A333-4DF1-AF55-AC745D216EDB}" = Windows Live Writer
"{983FA94A-A7DD-40B1-B7F9-F45D2B4FD1DE}" = Windows Live Photo Common
"{9BEE68DF-7061-4DEB-B4E2-E5C567B84634}" = ハンターヒーロー
"{A6057B4B-F75B-418A-8A26-C9F27859A150}" = 幻想神域
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9FFEC6C-9C44-4597-8E23-EDD78BF5D0B2}" = Windows Live Communications Platform
"{AC76BA86-7AD7-1041-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Japanese
"{AEAF7978-3204-451D-8593-BC53EBDDA31D}" = loopMIDI
"{C87DF7BB-4F5C-4BBE-B041-A59FFF4A1D07}" = Windows Live SOXE
"{CAB75FFC-2377-4B95-A8FA-C9234B812A92}_is1" = LoiLoScope 2
"{CCB3F587-BAD0-4F32-99FC-301E6F9ABAB4}" = MIDI Yoke
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E35F91E4-C68C-43E8-BE90-35CDEE4E5730}_is1" = Apowersoft フリー音声録音ソフト V2.1.7
"{EC317B1E-FC13-403D-BD0D-B22324DDE414}" = Emil chronicle online
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1FB514E-F90C-4CFC-B381-B2D98856FC0C}" = Windows Live UX Platform Language Pack
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"Adobe Flash Player ActiveX" = Adobe Flash Player 17 ActiveX
"ALUpdate_is1" = ALTools Update
"ALZip_is1" = ALZip 8.61
"Any Audio Converter_is1" = Any Audio Converter 4.0.3
"ASIO4ALL" = ASIO4ALL
"DivX Setup" = DivXセットアップ
"Google Chrome" = Google Chrome
"http://pso2.jp/appid/release_is1" = PHANTASY STAR ONLINE 2
"Lhaplus" = Lhaplus
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware バージョン 1.75.0.1300
"MetasequoiaLE R3,0" = MetasequoiaLE R3.0
"Minecraft" = Minecraft
"MSC" = マカフィーインターネットセキュリティ
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"RPGツクールVX RTP_is1" = RPGツクールVX RTP
"WinLiveSuite" = Windows Live Essentials
"Yahoo!Jツールバー" = Yahoo!ツールバー

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Debut" = Debut 動画キャプチャソフト
"Digital Sites" = Update for Zip Extractor
"hao123desk-jp" = 日本hao123ショートカット
"Kalydo App ecolight-gg" = ecolight-gg
"KalydoPlayer" = Kalydo Player 6.04.02
"MixPad" = MixPad 多重録音ソフト
"OneDriveSetup.exe" = Microsoft OneDrive
"Recordpad" = RecordPad 音声録音ソフト
"SaveSense" = SaveSense
"Switch" = Switch 音声ファイル変換ソフト
"WavePad" = WavePad 音声編集ソフト
"Yahoo!かんたんパソコン設定" = Yahoo!かんたんパソコン設定
"Zip Extractor Packages" = Zip Extractor Packages

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2015/01/21 3:58:39 | Computer Name = METALSLIME-PC | Source = Application Hang | ID = 1002
Description = プログラム IEXPLORE.EXE バージョン 11.0.9600.17496 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: ac 開始時刻: 01d0354fd5f2ca59 終了時刻: 17 アプリケーション
パス: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE レポート ID:

Error - 2015/01/21 4:00:57 | Computer Name = METALSLIME-PC | Source = Application Hang | ID = 1002
Description = プログラム IEXPLORE.EXE バージョン 11.0.9600.17496 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: 1668 開始時刻: 01d0354fb4f240c1 終了時刻: 10 アプリケーション
パス: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE レポート ID:

Error - 2015/01/21 4:08:54 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/22 3:18:24 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/23 2:05:44 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/23 2:20:57 | Computer Name = METALSLIME-PC | Source = Application Hang | ID = 1002
Description = プログラム UNKNOWN バージョン 0.0.0.0 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: 1470 開始時刻: 01d036d487d349f0 終了時刻: 77 アプリケーション
パス: UNKNOWN レポート ID: fcac7a65-a2c7-11e4-8019-bc5ff4fd6e65

Error - 2015/01/23 23:15:55 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/23 23:17:04 | Computer Name = METALSLIME-PC | Source = .NET Runtime | ID = 1026
Description =

Error - 2015/01/23 23:17:06 | Computer Name = METALSLIME-PC | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: IAStorDataMgrSvc.exe、バージョン: 12.8.0.1016、タイム スタンプ:
0x51fb0c50 障害が発生しているモジュール名: unknown、バージョン: 0.0.0.0、タイム スタンプ: 0x00000000 例外コード: 0xc0000005
障害オフセット:
0x03a04c0d 障害が発生しているプロセス ID: 0xb10 障害が発生しているアプリケーションの開始時刻: 0x01d037841f0c7d37 障害が発生しているアプリケーション
パス: C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
障害が発生しているモジュール
パス: unknown レポート ID: 794abe57-a377-11e4-bb5a-bc5ff4fd6e65

Error - 2015/01/24 21:24:08 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 2015/03/19 3:21:39 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:21:39 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:21:40 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:21:40 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:21:40 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:21:40 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:21:40 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:21:40 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2015/03/19 3:23:20 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7009
Description = McAfee Platform Services サービスの接続を待機中にタイムアウト (30000 ミリ秒) になりました。

Error - 2015/03/19 3:23:20 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7000
Description = McAfee Platform Services サービスを、次のエラーが原因で開始できませんでした: %%1053


< End of report >

これで最後となります
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 17:12:01
まずはTEMPファイルの一掃と再構築から
とりあえずTEMPフォルダ内がえげつないことになっていますので、面倒ですのでフォルダごと一掃しましょう。

左Ctrlの横にあるスタートボタンを押しながらRキーを押します。
ファイル名を指定して実行が表示されましたら、以下を貼り付けてください。

cmd /c rd /s /q c:\windows\temp\

これでTEMPフォルダごと削除できます。
次に同じ手順で以下を貼り付けてください。

cmd /c rd /s /q %userprofile%\appdata\local\temp\

これで厄介なものは全部一掃できます。
TEMPフォルダは自動的に生成されますので、このまま放置で結構です。
次にOTLでの処置をご案内しますので、まずはこちらの処置をお願いいたします。
  • IVNO
  • MAIL
  • 2015/03/19 (Thu) 17:19:29
続けてOTLで処置を
では前回のTEMPファイル全削除が完了しましたら、以下の処置を行ってください。
HPは不要ですので、導入時の指示に従って削除なされてください。

メモ帳を起動させ、以下をコピペしてください。
なお、:OTL、:Files、:Commands等はOTLでの処理方法を決める命令文です。
削除なされないようご注意ください。

------コピペこの下より------
:OTL
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.75.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.75.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR - default_search_provider: search_url = http://www.istartsurf.com/web/?type=ds&ts=1426420929&from=tugs&uid=WDCXWD20EZRX-00D8PB0_WD-WMC4M282497424974&q={searchTerms}
CHR - default_search_provider: suggest_url = http://ss.websearch.ask.com/query?li=ff&sstype=prefix&q={searchTerms},
O2 - BHO: (web waltz 1.0.0.7) - {77980a3c-fa45-4070-8bde-7e9af6d76228} - C:\Program Files (x86)\web waltz\webwaltzbho.dll File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003..\RunOnce: [Report] \AdwCleaner\AdwCleaner[S0].txt File not found
O4 - Startup: C:\Users\keiko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superoptimizersetup.lnk = C:\ProgramData\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe (Super PC Tools Ltd)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2015/03/18 19:24:00 | 000,000,304 | ---- | M] () -- C:\Windows\tasks\SaveSense.job
[2015/03/18 18:59:00 | 000,000,308 | ---- | M] () -- C:\Windows\tasks\Digital Sites.job
[2015/03/18 19:29:00 | 000,000,936 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineCore.job
[2015/03/18 19:29:00 | 000,000,940 | ---- | M] () -- C:\Windows\tasks\SaveSenseLiveUpdateTaskMachineUA.job

:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{087553D6-0A27-4B3F-B33E-5C4DD95C71E3}"=-
"{FA41B5F9-5CEA-401F-BB34-7DCE9747FB56}"=-

:Files
c:\programdata\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\bnbpeddmakpmblddofjnoghpjminhjph
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\flkmjdnckhfkjkldogocpnmljokfnbln
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\kdadialhpiikehpdeejjeiikopddkjem
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mgnplfeogpkbplfamjbigeekindmicbe
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda
c:\programdata\application data\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
c:\windows\temp\gur4165.exe
c:\windows\temp\gur6354.exe
c:\windows\temp\gur93c6.exe
c:\windows\temp\nsc7ec5.exe
c:\windows\temp\nsn143f.exe
c:\windows\temp\nsn2b1a.exe
c:\windows\temp\nsn680f.exe
c:\windows\temp\nsr649f.exe
c:\windows\temp\nsy7827.exe
c:\users\keiko\appdata\local\temp\a9e7.tmp.exe
c:\users\keiko\appdata\local\temp\apnsetup.exe
c:\users\keiko\appdata\local\temp\backupsetup.exe
c:\users\keiko\appdata\local\temp\supoptsetup.exe
c:\users\keiko\appdata\local\temp\0cd4fa0a-d34f-4c28-b69d-a6da0178e8c6\cloud_backup_setup.exe
c:\users\keiko\appdata\local\temp\1c70d95f-c49e-4bf8-9556-96ec9474d261\lly_istartsurf.exe
c:\users\keiko\appdata\local\temp\5790cdf0-bc8f-4859-9c6c-3e8980f7ef2a\driverscanner.exe
c:\users\keiko\appdata\local\temp\bbf2ad07-1a3c-43d0-9c0a-7d7d82e90369\setup.exe
c:\users\keiko\appdata\local\temp\ce927c75-3d02-4e66-adf3-8895d01b8042\webwaltzsetup.exe
c:\users\keiko\appdata\local\temp\d933aaa3-20cc-4e0b-9cf8-8a9fb5f25a0e\games desktop.exe
c:\users\keiko\appdata\local\temp\d9b7aca6-481f-465f-b04d-69e5100abf67\superoptimizersetup.exe
c:\programdata\application data\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
c:\users\metalslime\desktop\音関係\apowersoft free audio recorder.exe

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------コピペこの上まで------

コピペが完了しましたら、分かりやすいお名前をつけて保存してください。
その後、PCをセーフモードで起動させてください。
再度OTLを起動させ、Custom Scan/Fixesの項目内に上記で保存した内容をコピペしてください。
今回は駆除作業のため、その他のチェック項目はありません。
赤い文字の[Run Fix]をクリックして処置を開始してください。
OTLの処置に従って進めてゆき、通常モードで再起動を行う前後いずれかに処置ログが表示されますので、
そちらのログを貼り付けてご連絡ください。
またその際に状況報告もお願いいたします。
  • IVNO
  • MAIL
  • 2015/03/19 (Thu) 18:04:50
処置OKです
All processes killed
========== OTL ==========
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@java.com/DTPlugin,version=10.75.2\ not found.
C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.75.2\ not found.
C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll moved successfully.
Use Chrome's Settings page to remove the default_search_provider items.
Use Chrome's Settings page to remove the default_search_provider items.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{77980a3c-fa45-4070-8bde-7e9af6d76228}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{77980a3c-fa45-4070-8bde-7e9af6d76228}\ deleted successfully.
Registry value HKEY_USERS\S-1-5-21-1750649425-1320342663-1156795937-1003\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Report deleted successfully.
C:\Users\keiko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\superoptimizersetup.lnk moved successfully.
C:\ProgramData\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe moved successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Windows\Tasks\SaveSense.job moved successfully.
C:\Windows\Tasks\Digital Sites.job moved successfully.
C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job moved successfully.
C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job moved successfully.
File EY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] not found.
File EY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] not found.
File rity] not found.
File sethosts] not found.
File ptytemp] not found.
File eaterestorepoint] not found.
File boot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 03192015_202119

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

以上です
  • khjkighuygbkyu
  • URL
  • 2015/03/19 (Thu) 20:29:35
OTLの処置しなおしを
最近OTLがまともに動作してくれません。
今一度、いやさ二度、OTLで処置をお願いいたします。
もしOTLがエラーを吐いたらそれは飛ばしてください。

一度目
------コピペこの下から------
:Reg
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{087553D6-0A27-4B3F-B33E-5C4DD95C71E3}"=-
"{FA41B5F9-5CEA-401F-BB34-7DCE9747FB56}"=-

:Commands
[purity]
[resethosts]
[emptyflash]
[emptyjava]
[emptytemp]
[createrestorepoint]
[reboot]
------コピペこの上まで------

二度目
------コピペこの下から------
:Files
c:\programdata\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\bnbpeddmakpmblddofjnoghpjminhjph
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\flkmjdnckhfkjkldogocpnmljokfnbln
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\kdadialhpiikehpdeejjeiikopddkjem
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mgnplfeogpkbplfamjbigeekindmicbe
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda
c:\programdata\application data\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
c:\windows\temp\gur4165.exe
c:\windows\temp\gur6354.exe
c:\windows\temp\gur93c6.exe
c:\windows\temp\nsc7ec5.exe
c:\windows\temp\nsn143f.exe
c:\windows\temp\nsn2b1a.exe
c:\windows\temp\nsn680f.exe
c:\windows\temp\nsr649f.exe
c:\windows\temp\nsy7827.exe
c:\users\keiko\appdata\local\temp\a9e7.tmp.exe
c:\users\keiko\appdata\local\temp\apnsetup.exe
c:\users\keiko\appdata\local\temp\backupsetup.exe
c:\users\keiko\appdata\local\temp\supoptsetup.exe
c:\users\keiko\appdata\local\temp\0cd4fa0a-d34f-4c28-b69d-a6da0178e8c6\cloud_backup_setup.exe
c:\users\keiko\appdata\local\temp\1c70d95f-c49e-4bf8-9556-96ec9474d261\lly_istartsurf.exe
c:\users\keiko\appdata\local\temp\5790cdf0-bc8f-4859-9c6c-3e8980f7ef2a\driverscanner.exe
c:\users\keiko\appdata\local\temp\bbf2ad07-1a3c-43d0-9c0a-7d7d82e90369\setup.exe
c:\users\keiko\appdata\local\temp\ce927c75-3d02-4e66-adf3-8895d01b8042\webwaltzsetup.exe
c:\users\keiko\appdata\local\temp\d933aaa3-20cc-4e0b-9cf8-8a9fb5f25a0e\games desktop.exe
c:\users\keiko\appdata\local\temp\d9b7aca6-481f-465f-b04d-69e5100abf67\superoptimizersetup.exe
c:\programdata\application data\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe
c:\users\metalslime\desktop\音関係\apowersoft free audio recorder.exe

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------コピペこの上まで------
  • IVNO
  • MAIL
  • 2015/03/19 (Thu) 20:42:57
2回OKです
1回目
All processes killed
========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{087553D6-0A27-4B3F-B33E-5C4DD95C71E3} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{087553D6-0A27-4B3F-B33E-5C4DD95C71E3}\ not found.
Registry value HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FA41B5F9-5CEA-401F-BB34-7DCE9747FB56} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FA41B5F9-5CEA-401F-BB34-7DCE9747FB56}\ not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYFLASH]

User: All Users

User: Default

User: Default User

User: keiko
->Flash cache emptied: 1201 bytes

User: METALSLIME
->Flash cache emptied: 32807 bytes

User: Noriyuki
->Flash cache emptied: 2803 bytes

User: Public

Total Flash Files Cleaned = 0.00 mb


[EMPTYJAVA]

User: All Users

User: Default

User: Default User

User: keiko
->Java cache emptied: 0 bytes

User: METALSLIME
->Java cache emptied: 322801 bytes

User: Noriyuki
->Java cache emptied: 0 bytes

User: Public

Total Java Files Cleaned = 0.00 mb


[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 125346 bytes
->Temporary Internet Files folder emptied: 79334835 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: keiko
->Temp folder emptied: 101445627 bytes
->Temporary Internet Files folder emptied: 11781207 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 6407905 bytes
->Flash cache emptied: 0 bytes

User: METALSLIME
->Temp folder emptied: 3230237 bytes
->Temporary Internet Files folder emptied: 5704089673 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 10183186 bytes
->Flash cache emptied: 0 bytes

User: Noriyuki
->Temp folder emptied: 1001320055 bytes
->Temporary Internet Files folder emptied: 368178799 bytes
->Java cache emptied: 0 bytes
->Google Chrome cache emptied: 145665378 bytes
->Flash cache emptied: 0 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 950139108 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 128 bytes
RecycleBin emptied: 2209793046 bytes

Total Files Cleaned = 10,101.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 03202015_125533

Files\Folders moved on Reboot...
File move failed. C:\Users\METALSLIME\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be moved on reboot.
File move failed. C:\Users\METALSLIME\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat scheduled to be moved on reboot.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

2回目
All processes killed
========== FILES ==========
File\Folder c:\programdata\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe not found.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\bnbpeddmakpmblddofjnoghpjminhjph\223 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\bnbpeddmakpmblddofjnoghpjminhjph folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\flkmjdnckhfkjkldogocpnmljokfnbln folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\kdadialhpiikehpdeejjeiikopddkjem\239 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\kdadialhpiikehpdeejjeiikopddkjem folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mgnplfeogpkbplfamjbigeekindmicbe\142 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mgnplfeogpkbplfamjbigeekindmicbe folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof\121 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_metadata folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\zh_TW folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\zh_CN folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\vi folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\uk folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\tr folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\th folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\sv folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\sr folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\sl folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\sk folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\ru folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\ro folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\pt_PT folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\pt_BR folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\pl folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\no folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\nl folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\ms folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\lv folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\lt folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\ko folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\ja folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\it folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\id folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\hu folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\hi folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\he folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\fr folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\fil folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\fi folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\et folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\es_419 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\es folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\en_US folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\en_GB folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\el folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\de folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\da folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\cs folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\ca folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\bg folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales\ar folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0\_locales folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.6_0 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\__MACOSX folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\aohghmighlieiainnegkcijnfilokake folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_TW folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\zh_CN folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\vi folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\uk folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\tr folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\th folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sv folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sr folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sl folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\sk folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ru folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ro folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_PT folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pt_BR folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\pl folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nl folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\nb folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lv folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\lt folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ko folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ja folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\it folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\id folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hu folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hr folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\hi folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fr folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fil folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\fi folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\et folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es_419 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\es folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en_GB folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\en folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\el folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\de folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\da folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\cs folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\ca folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales\bg folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\_locales folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\images folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\html folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\css folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0 folder moved successfully.
c:\users\keiko\appdata\local\google\chrome\user data\default\extensions\nmmhkkegccagdldgiimedpiccmgmieda folder moved successfully.
File\Folder c:\programdata\application data\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe not found.
File\Folder c:\windows\temp\gur4165.exe not found.
File\Folder c:\windows\temp\gur6354.exe not found.
File\Folder c:\windows\temp\gur93c6.exe not found.
File\Folder c:\windows\temp\nsc7ec5.exe not found.
File\Folder c:\windows\temp\nsn143f.exe not found.
File\Folder c:\windows\temp\nsn2b1a.exe not found.
File\Folder c:\windows\temp\nsn680f.exe not found.
File\Folder c:\windows\temp\nsr649f.exe not found.
File\Folder c:\windows\temp\nsy7827.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\a9e7.tmp.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\apnsetup.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\backupsetup.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\supoptsetup.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\0cd4fa0a-d34f-4c28-b69d-a6da0178e8c6\cloud_backup_setup.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\1c70d95f-c49e-4bf8-9556-96ec9474d261\lly_istartsurf.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\5790cdf0-bc8f-4859-9c6c-3e8980f7ef2a\driverscanner.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\bbf2ad07-1a3c-43d0-9c0a-7d7d82e90369\setup.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\ce927c75-3d02-4e66-adf3-8895d01b8042\webwaltzsetup.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\d933aaa3-20cc-4e0b-9cf8-8a9fb5f25a0e\games desktop.exe not found.
File\Folder c:\users\keiko\appdata\local\temp\d9b7aca6-481f-465f-b04d-69e5100abf67\superoptimizersetup.exe not found.
File\Folder c:\programdata\application data\{b42ace8b-894d-4979-b42a-ace8b8943a2e}\superoptimizersetup.exe not found.
File\Folder c:\users\metalslime\desktop\音関係\apowersoft free audio recorder.exe not found.
File\Folder :Commands not found.
File\Folder [purity] not found.
File\Folder [resethosts] not found.
File\Folder [emptytemp] not found.
File\Folder [createrestorepoint] not found.
File\Folder [reboot] not found.

OTL by OldTimer - Version 3.2.69.0 log created on 03202015_130545

Files\Folders moved on Reboot...

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

以上となっております
  • khjkighuygbkyu
  • URL
  • 2015/03/20 (Fri) 13:11:25
現状の報告をお願いいたします
OTLでの2度の処置も正常に終了した模様です。
正確にはリトライ2度目はエラーが出ていますが、
出るのが分かっていたのでそこは織り込み済みです。
OTLは必要ありませんので、導入時の指示に従って削除なされてください。
ここで現状の確認を行いたいと思います。
現段階で全アカウントを通して問題点等は発生しているでしょうか。
そちらをご連絡ください。
  • IVNO
  • MAIL
  • 2015/03/20 (Fri) 16:16:50
申し上げます!
今のところはなんら問題ないです
戻るボタンも一回で反応するようになり、PCも軽くなにより勝手に広告が開かなくなっています
  • khjkighuygbkyu
  • URL
  • 2015/03/20 (Fri) 18:31:19
今しばらく様子見を行い、その後ログ取得を
現状では特に問題点は発生していないとのことですので、
ここで一度処置を止めて再発するか否かを見極めましょう。
もし再発する場合は1週間程度で再発するのですが、
厄介なことに再発するとPC内でひっそりと起動すると言うマルウェアもいます。
そのため様子見期間が完了しましたら、
HJTのログ、CCのインストール情報ログ、
同じくCCのスタートアップのすべてのタブのログを添え、
様子見期間の状況報告とともにご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2015/03/20 (Fri) 18:38:09
1週間経ってませんが異変が起きたので
タイトルの通りです
ブルースクリーンが出たり急に重くなったり何もしてないのにDドラの空き容量が残り僅かだったりで…
ブルースクリーンはいつものことなんですがねw

HJT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:42:00, on 2015/03/25
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.10.106\McAfeeMSS_IE.dll
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1427247582
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.10.106\SSScheduler.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.10.106\McCHSvc.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12814 bytes

CC

インストール

Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/03/20 6.00 MB 17.0.0.134
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/13 203 MB 11.0.10
ALTools Update ESTsoft Corp. 2015/03/20 v10.4
ALZip 8.61 ESTsoft Corp. 2015/03/20 v8.61
Any Audio Converter 4.0.3 Any-Audio-Converter.com 2014/03/01 53.3 MB
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/03/20 2.12
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/03/20 2.7.0.31
ecolight-gg 2014/12/01 1.20.01.16
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/03/20 7.5.5111.1712
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 7 Update 75 Oracle 2015/02/14 120 MB 7.0.750
Java 7 Update 75 (64-bit) Oracle 2015/02/14 118 MB 7.0.750
Java 8 Update 31 Oracle Corporation 2015/02/13 6.07 MB 8.0.310
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/03/20
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
McAfee Security Scan Plus McAfee, Inc. 2015/03/23 10.2 MB 3.10.106.1
MetasequoiaLE R3.0 2015/03/20
Microsoft .NET Framework 4.5.1 Microsoft Corporation 2014/03/01 38.8 MB 4.5.50938
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/03/14 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/03/20 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RecordPad 音声録音ソフト NCH Software 2015/02/18 5.14
RPGツクール2000 ランタイムパッケージ 2015/03/20
RPGツクール2000 体験版 2015/03/20
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
Search App by Ask 2015/02/15
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
Update for Zip Extractor Update for Zip Extractor 2014/03/01
WavePad 音声編集ソフト NCH Software 2015/03/02 5.71
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/03/20 4.01 MB 8.0.0.3
Zip Extractor Packages 2014/03/01
ハンターヒーロー X-Legend 2014/10/28 1.0000
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/03/20 13.6.1529
幻想神域 X-Legend 2014/10/29 1.0000
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKCU:RunOnce Adobe Speed Launcher 1427247582
有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
有効 Startup Common McAfee Security Scan Plus.lnk McAfee, Inc. C:\Program Files\McAfee Security Scan\3.10.106\SSScheduler.exe

エクスプローラー

有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper MSS+ Identifier McAfee, Inc. C:\Program Files\McAfee Security Scan\3.10.106\McAfeeMSS_IE.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

グーグル

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142
有効 Extension Screen Resolution Tester 223 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbpeddmakpmblddofjnoghpjminhjph\223
有効 Extension Time Warp 191 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上です
  • khjkighuygbkyu
  • URL
  • 2015/03/25 (Wed) 18:51:54
とりあえずやることやりましょうか
原因はある程度分かっていますが、まずは目先のことから終わらせましょう。

JavaとSkypeの更新ができていません。
ソフトウェアは更新を怠ると隙を突かれやすく、感染源となる可能性が高いです。
特にソフトウェアが独自にネット通信を行うものはその可能性が格段に高くなります。
Java、Adobe製品、Skypeなどはすべて独自にネット通信を行いますので、感染源としても常に上位に位置します。
Java 8 Update 40が最新バージョンですのでこちらをダウンロードし、
それ以外のバージョンのものはすべて削除なされてください。
Skypeも7.2が最新バージョンですので、こちらは更新してください。

CCを起動させ、ツール→アンインストール情報を開き、以下ソフトウェアをアンインストールしてください。

SaveSense SaveSense 2014/03/01 1.28 MB 6.4.0.0
Search App by Ask 2015/02/15
Update for Zip Extractor Update for Zip Extractor 2014/03/01
Zip Extractor Packages 2014/03/01

CCでなら消えるはずです。
削除が完了しましたら、今一度HJTのログ、CCのインストール情報ログを再取得し、
それらを貼り付けてご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2015/03/25 (Wed) 19:29:56
完了ですが…
Skypeは使っていないため更新できていません
また、Java7はMINECRAFTForge1.7.2の起動に必要なため終了後に再度インストールします

HJT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 19:59:29, on 2015/03/25
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
C:\Users\METALSLIME\AppData\Local\AskPartnerNetwork\Toolbar\Updater\IDC\IdcLdr.exe
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.10.106\McAfeeMSS_IE.dll
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1427247582
O4 - Global Startup: McAfee Security Scan Plus.lnk = C:\Program Files\McAfee Security Scan\3.10.106\SSScheduler.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\3.10.106\McCHSvc.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13137 bytes

インストール

Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/03/20 6.00 MB 17.0.0.134
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/13 203 MB 11.0.10
ALTools Update ESTsoft Corp. 2015/03/20 v10.4
ALZip 8.61 ESTsoft Corp. 2015/03/20 v8.61
Any Audio Converter 4.0.3 Any-Audio-Converter.com 2014/03/01 53.3 MB
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/03/20 2.12
Baidu The Desktop Weather 1.1 Baidu Japan Inc. 2015/03/25 1.1.1.13
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/03/20 2.7.0.31
ecolight-gg 2014/12/01 1.20.01.16
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/03/20 7.5.5111.1712
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 8 Update 40 Oracle Corporation 2015/03/25 9.10 MB 8.0.400
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/03/20
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
McAfee Security Scan Plus McAfee, Inc. 2015/03/23 10.2 MB 3.10.106.1
MetasequoiaLE R3.0 2015/03/20
Microsoft .NET Framework 4.5.1 Microsoft Corporation 2014/03/01 38.8 MB 4.5.50938
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/03/14 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/03/20 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PC SpeedScan Pro Ascentive 2015/03/25 8.2.3
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RecordPad 音声録音ソフト NCH Software 2015/02/18 5.14
RPGツクール2000 ランタイムパッケージ 2015/03/20
RPGツクール2000 体験版 2015/03/20
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask APN, LLC 2015/03/25 4.08 MB 12.25.2.61
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
WavePad 音声編集ソフト NCH Software 2015/03/02 5.71
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/03/20 4.01 MB 8.0.0.3
ハンターヒーロー X-Legend 2014/10/28 1.0000
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/03/20 13.6.1529
幻想神域 X-Legend 2014/10/29 1.0000
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKCU:RunOnce Adobe Speed Launcher 1427247582
有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run ApnTBMon APN "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
有効 Startup Common McAfee Security Scan Plus.lnk McAfee, Inc. C:\Program Files\McAfee Security Scan\3.10.106\SSScheduler.exe

エクスプローラー

有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper MSS+ Identifier McAfee, Inc. C:\Program Files\McAfee Security Scan\3.10.106\McAfeeMSS_IE.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Toolbar Google Toolbar Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

グーグル

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142
有効 Extension Screen Resolution Tester 223 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbpeddmakpmblddofjnoghpjminhjph\223
有効 Extension Time Warp 191 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

スケジュールされたタスク

有効 Task PC SpeedScan Pro@Logon Ascentive LLC C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上です
  • khjkighuygbkyu
  • URL
  • 2015/03/25 (Wed) 20:05:54
Dドライブの容量を解放する方法です
Minecraftは以下の手順でJava 8でも起動できるそうです。
http://forum.minecraftuser.jp/viewtopic.php?t=22412

まぁ消えていない部分が多いですが置いておきましょう。
容量が圧迫される原因につきましては以下URLが参考になるでしょう。
https://technet.microsoft.com/ja-jp/windows/ee307951.aspx?f=255&MSPPError=-2147217396
これの作業結果を再度ご報告ください。
続いてcmdによる作業をご案内いたします。
  • IVNO
  • MAIL
  • 2015/03/25 (Wed) 20:38:41
Dドラについて
すみません、勘違いでした
圧迫されていたのはCの方でキャプチャしっぱなしなのが原因でした
誤って撮っていた動画を削除したところその問題も解決致しました
誠に申し訳御座いませんでした
  • khjkighuygbkyu
  • URL
  • 2015/03/26 (Thu) 22:38:47
改めまして駆除のやり直しです
どうやら3月23日と3月25日にいくつか再感染していますね。
さてこの日に何をインストールなされたのでしょうか。
それが感染原因ですね。
駆除を最初からやり直しましょう。
以下のソフトウェアをご用意ください。

「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンクです。アクセスしてファイルを分かりやすい場所に保存しておいてください。
ソフトウェアを一度起動させることにより自動的にアップデートが始まります。
アップデートが完了しましたら今は何もせずに終了させてください。
本ソフトウェアの削除指示があった際は起動後に「アンインストール」ボタンを押せば自動で削除されます。

PCをセーフモードで起動させてください。
HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、
こちらが指示した以外のものは絶対にチェックを入れないでください。

O23 - Service: Ask Update Service (APNMCP) - APN LLC. - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
上記のFixが完了したら、Geek起動させ、以下を削除してください。

Any Audio Converter 4.0.3 Any-Audio-Converter.com 2014/03/01 53.3 MB
Baidu The Desktop Weather 1.1 Baidu Japan Inc. 2015/03/25 1.1.1.13
McAfee Security Scan Plus McAfee, Inc. 2015/03/23 10.2 MB 3.10.106.1
PC SpeedScan Pro Ascentive 2015/03/25 8.2.3
Search App by Ask 2015/02/15
Shopping App by Ask APN, LLC 2015/03/25 4.08 MB 12.25.2.61
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108

ダブルクリックで削除できます。
削除が完了したら自動的にスキャンが始まりますので、検出されたごみすべてにチェックを入れてOKを押してください。
Geekでのアンインストールが完了しましたらGeekを終了させ、ATFで掃除を行ってください。
Select Allにチェックを入れ、Empty Selectedをクリックします。
ATFでの掃除が完了しましたら、ACを使用してマルウェアの掃除を行いましょう。
ACを起動させ、Scanまたはスキャンをクリックします。
スキャンが終了しましたら、Cleaningまたは除去をクリックして掃除を行います。
掃除が完了すると再起動を求められますので、指示に従って通常モードで再起動を行ってください。
これでセーフモードから通常モードに移行します。
再起動前後いずれかにACのログが表示さますので、分かりやすい場所に保存しておいてください。

その後、CCを起動させてください。
ツール→スタートアップの各項目を開き、該当するものを無効→エントリの削除の順番でクリックしてください。

Windows
有効 HKLM:Run ApnTBMon APN "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
有効 Startup Common McAfee Security Scan Plus.lnk McAfee, Inc. C:\Program Files\McAfee Security Scan\3.10.106\SSScheduler.exe

Google Chrome
有効 Extension Screen Resolution Tester 223 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbpeddmakpmblddofjnoghpjminhjph\223
有効 Extension Time Warp 191 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

スケジュールされたタスク
有効 Task PC SpeedScan Pro@Logon Ascentive LLC C:\Program Files (x86)\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m

無効にできないもの、既に無効になっているものはそのままエントリの削除を、
エントリが存在しない場合は放置で先に進みましょう。
またGoogle Chrome等で削除ができない場合も放置で先に進みましょう。
CCでの作業が完了しましたら、HJTのログ、CCのインストール情報ログ、
同じくCCのスタートアップのすべてのタブのログを取得し、貼り付けてご連絡ください。
  • IVNO
  • MAIL
  • 2015/03/26 (Thu) 22:59:05
削除できました
ログ

AdwCleaner

# AdwCleaner v4.113 - ログファイルの作成日 27/03/2015 作成時間 18:12:47
# 更新日 22/03/2015 作成元 Xplode
# データベース : 2015-03-22.2 [ローカル]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (x64)
# ユーザー名 : keiko - METALSLIME-PC
# 実行場所 : C:\Users\METALSLIME\Desktop\AdwCleaner.exe
# オプション : 削除

***** [ サービス ] *****

[#] サービス 削除済み項目 : APNMCP

***** [ ファイル / フォルダ ] *****

フォルダ 削除済み項目 : C:\ProgramData\apn
フォルダ 削除済み項目 : C:\ProgramData\AskPartnerNetwork
フォルダ 削除済み項目 : C:\ProgramData\baidu
フォルダ 削除済み項目 : C:\Program Files (x86)\AskPartnerNetwork
フォルダ 削除済み項目 : C:\Program Files (x86)\baidu
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Temp\apn
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Temp\baidu
フォルダ 削除済み項目 : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\baidu
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Roaming\baidu
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Local\AskPartnerNetwork
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Roaming\baidu
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Roaming\baidu
フォルダ 削除済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaahlfahldnilidgnlikdckbfehhca

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaahaeginbdcckocjkhbciadcafnep
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaahaeginbdcckocjkhbciadcafnep
キー 削除済み項目 : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaahlfahldnilidgnlikdckbfehhca
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaahlfahldnilidgnlikdckbfehhca
キー 削除済み項目 : HKLM\SOFTWARE\3f3e68af-dd9e-94f1-4d12-eb5f2e3bd4cc
キー 削除済み項目 : HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
キー 削除済み項目 : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
値 削除済み項目 : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}
値 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
キー 削除済み項目 : HKCU\Software\AskPartnerNetwork
キー 削除済み項目 : HKCU\Software\Baidu
キー 削除済み項目 : HKLM\SOFTWARE\AskPartnerNetwork
キー 削除済み項目 : HKLM\SOFTWARE\Conduit
キー 削除済み項目 : HKLM\SOFTWARE\Baidu
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Baidu
キー 削除済み項目 : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\hao123.com
キー 削除済み項目 : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\jp.hao123.com

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17689

設定 復元済み項目 : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]

-\\ Google Chrome v33.0.1750.154

[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-ST-SPE&o=APN11467&l=dis&pf=V7&p2=%5EBED%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.53&doi=2015-03-25&apn_uid=5EDC27FD-8D34-4D99-A3FF-74150FD1D52A&apn_ptnrs=BED&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Extension] : aaaaahlfahldnilidgnlikdckbfehhca
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Homepage] : hxxp://www.search.ask.com/?gct=hp
[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Homepage] : hxxp://jp.hao123.com/?tn=incore_pay_hp_ex01_hao123_jp
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-ST-SPE&o=APN11467&l=dis&pf=V7&p2=%5EBED%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.53&doi=2015-03-25&apn_uid=5EDC27FD-8D34-4D99-A3FF-74150FD1D52A&apn_ptnrs=BED&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\preferences] - 削除済み項目 [Startup_URLs] : hxxp://www.search.ask.com/?tpid=ORJ-ST-SPE&o=APN11467&pf=V7&trgb=CR&p2=%5EBED%5EOSJ000%5EYY%5EJP&gct=hp&apn_ptnrs=BED&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&apn_uid=5EDC27FD-8D34-4D99-A3FF-74150FD1D52A&itbv=12.24.1.53&doi=2015-03-25&psv=&pt=tb
[C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Web Data] - 削除済み項目 [Search Provider] : hxxp://www.search.ask.com/web?tpid=ORJ-ST-SPE&o=APN11467&l=dis&pf=V7&p2=%5EBED%5EOSJ000%5EYY%5EJP&gct=&itbv=12.24.1.53&doi=2015-03-25&apn_uid=5EDC27FD-8D34-4D99-A3FF-74150FD1D52A&apn_ptnrs=BED&apn_dtid=%5EOSJ000%5EYY%5EJP&apn_dbr=cr_33.0.1750.154&psv=&pt=tb&trgb=CR&q={searchTerms}

*************************

AdwCleaner[R0].txt - [5651 bytes] - [27/03/2015 18:11:37]
AdwCleaner[S0].txt - [5390 bytes] - [27/03/2015 18:12:47]

########## EOF - \AdwCleaner\AdwCleaner[S0].txt - [5449 bytes] ##########

HjT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:22:47, on 2015/03/27
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17689)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1427447928
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12098 bytes

以下CC

インストール情報

Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/03/20 6.00 MB 17.0.0.134
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/13 203 MB 11.0.10
ALTools Update ESTsoft Corp. 2015/03/20 v10.4
ALZip 8.61 ESTsoft Corp. 2015/03/20 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/03/20 2.12
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/03/20 2.7.0.31
ecolight-gg 2014/12/01 1.20.01.16
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/03/20 7.5.5111.1712
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 8 Update 40 Oracle Corporation 2015/03/25 9.10 MB 8.0.400
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/03/20
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/03/20
Microsoft .NET Framework 4.5.1 Microsoft Corporation 2014/03/01 38.8 MB 4.5.50938
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/03/14 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/03/20 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RecordPad 音声録音ソフト NCH Software 2015/02/18 5.14
RPGツクール2000 ランタイムパッケージ 2015/03/20
RPGツクール2000 体験版 2015/03/20
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
WavePad 音声編集ソフト NCH Software 2015/03/26 5.71
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/03/20 4.01 MB 8.0.0.3
ハンターヒーロー X-Legend 2014/10/28 1.0000
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/03/20 13.6.1529
幻想神域 X-Legend 2014/10/29 1.0000
日本hao123ショートカット hao123 2014/03/01 1.0.0.1108
真・三國無双 Online Koei 2015/03/26 5.2.0.0

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKCU:RunOnce Adobe Speed Launcher 1427447928
有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

エクスプローラー

有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

Google

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上です
  • khjkighuygbkyu
  • URL
  • 2015/03/27 (Fri) 18:30:34
ACは削除しMBAMでスキャンを
ログを拝見しましたが、どんどんフリーソフトをインストールしていますね。
無暗にインストールばかりしていると解決しなくなりますよ。
ACは不要ですので、ACを起動させてアンインストールボタンを押して削除なされてください。

MBAMを起動させて定義ファイルの更新を行ってください。
定義ファイルの更新が終わりましたら、MBAMを終了させてPCをセーフモードで起動させてください。
MBAMを使ってフルスキャンを行い、結果を貼り付けてご連絡ください。
  • IVNO
  • MAIL
  • 2015/03/27 (Fri) 21:49:39
出来ました
何日か放置ですみませんでした

MBAC

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

定義バージョン: v2015.03.18.03

Windows 7 Service Pack 1 x64 NTFS (セーフモード)
Internet Explorer 11.0.9600.17691
METALSLIME :: METALSLIME-PC [標準ユーザー]

2015/03/30 16:31:02
MBAM-log-2015-03-30 (17-45-36).txt

スキャンタイプ: フルスキャン (C:\|D:\|)
有効なスキャン領域: メモリ | スタートアップ | レジストリ | ファイルシステム | ヒューリスティック/追加アイテムのスキャン  | ヒューリスティック/Shuriken エンジンを使用してスキャン  | 不審なプログラム (PUP) | 不審な変更 (PUM)
無効なスキャン領域: ピア・ツー・ピアプログラム(P2P)
スキャンしたアイテム数: 501644
経過時間: 47 分, 5 秒

メモリプロセスの検出: 0
(悪意のあるアイテムは検出されていません。)

メモリモジュールの検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリキーの検出: 4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1146AC44-2F03-4431-B4FD-889BC837521F}{cae99edb} (PUP.Optional.Booster.A) -> 何の措置も取られませんでした。
HKLM\SYSTEM\CurrentControlSet\Services\Update web waltz (PUP.Optional.WebWaltz.A) -> 何の措置も取られませんでした。
HKLM\SYSTEM\CurrentControlSet\Services\Util web waltz (PUP.Optional.WebWaltz.A) -> 何の措置も取られませんでした。
HKLM\Software\web waltz (PUP.Optional.WebWaltz.A) -> 何の措置も取られませんでした。

レジストリ値の検出: 0
(悪意のあるアイテムは検出されていません。)

レジストリデータ項目の検出: 0
(悪意のあるアイテムは検出されていません。)

フォルダの検出: 0
(悪意のあるアイテムは検出されていません。)

ファイルの検出: 0
(悪意のあるアイテムは検出されていません。)

(終)
  • khjkighuygbkyu
  • URL
  • 2015/03/30 (Mon) 18:54:09
MBAMで処置しOTLでスキャンを
MBAMのスキャン結果は良好です。
MBAMで検出されたものはすべてチェックして隔離しておいてください。
隔離が完了しましたらMBAMは不要となりますので、導入時の指示に従って削除なされてください。

再度OTLをご用意いただき、前回の内容に従ってスキャンし、
その結果を貼り付けてご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2015/03/30 (Mon) 19:01:14
OTL
OTL logfile created on: 2015/04/06 16:16:21 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\METALSLIME\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17691)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.92 Gb Total Physical Memory | 5.40 Gb Available Physical Memory | 68.14% Memory free
15.84 Gb Paging File | 13.43 Gb Available in Paging File | 84.76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 200.00 Gb Total Space | 24.90 Gb Free Space | 12.45% Space Free | Partition Type: NTFS
Drive D: | 1652.53 Gb Total Space | 1411.89 Gb Free Space | 85.44% Space Free | Partition Type: NTFS

Computer Name: METALSLIME-PC | User Name: keiko | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/04/06 16:13:50 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\METALSLIME\Desktop\OTL.exe
PRC - [2015/03/14 00:38:38 | 000,410,768 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2015/01/16 15:42:47 | 002,585,928 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
PRC - [2015/01/16 15:42:37 | 001,706,312 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
PRC - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014/01/10 14:26:44 | 001,861,968 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
PRC - [2013/09/03 16:53:04 | 000,390,616 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2013/09/03 16:52:04 | 000,169,432 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
PRC - [2013/08/07 14:24:00 | 000,287,592 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2013/08/07 14:24:00 | 000,015,720 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2013/04/26 11:25:54 | 000,292,848 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
PRC - [2013/03/08 21:21:22 | 000,157,064 | ---- | M] (Yahoo! Japan Corporation.) -- C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2014/10/16 17:08:51 | 001,091,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servf73e6522#\8c9f9e94e93956d68b43e34324790c6d\System.ServiceModel.Web.ni.dll
MOD - [2014/10/16 17:08:03 | 002,997,248 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\92a3b88ac6300af062edd6503bc5903c\System.IdentityModel.ni.dll
MOD - [2014/10/16 17:08:01 | 019,696,640 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\316b149dbb031d0e35c9d57bb2fc4b6e\System.ServiceModel.ni.dll
MOD - [2014/10/16 17:07:43 | 000,794,112 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\35d3a1b878542de59cb4fc0593992404\System.ServiceModel.Internals.ni.dll
MOD - [2014/10/16 17:07:43 | 000,122,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\046058f81b039ab6fd839e03e67595f8\SMDiagnostics.ni.dll
MOD - [2014/10/16 17:07:42 | 002,822,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f9f13cd8fe1cefaad78579a7c3a41464\System.Runtime.Serialization.ni.dll
MOD - [2014/10/16 00:06:14 | 012,894,208 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\db563d596d76daed04e9b5d25b2f4cb9\System.Windows.Forms.ni.dll
MOD - [2014/10/16 00:06:13 | 007,668,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\7147fa233a070283dba824da40089bf1\System.Xml.ni.dll
MOD - [2014/10/16 00:06:13 | 006,990,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\691c1ad89d16f49d80e84fa06a79089a\System.Core.ni.dll
MOD - [2014/10/16 00:06:12 | 001,889,792 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\8b133e0d94535a7534719f70873ca7fe\System.Xaml.ni.dll
MOD - [2014/10/16 00:06:10 | 001,644,544 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\b4c08872c259018b17b2801da33ac80f\System.Drawing.ni.dll
MOD - [2014/10/16 00:06:10 | 000,976,384 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\0648dbecb7e3fb9523565107e04a5caf\System.Configuration.ni.dll
MOD - [2014/10/16 00:06:09 | 010,100,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\17a393b77ae757f0768501fb95ff5af6\System.ni.dll
MOD - [2014/10/11 13:05:58 | 001,044,776 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2014/03/02 12:39:10 | 016,953,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\ce5f61c5754789df97be8dc991c47d07\mscorlib.ni.dll
MOD - [2014/02/12 20:58:32 | 000,073,544 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2014/01/10 14:28:18 | 000,100,688 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
MOD - [2014/01/10 14:26:44 | 001,861,968 | ---- | M] () -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/02/20 11:35:05 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2015/02/10 03:55:42 | 002,714,800 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc)
SRV:[b]64bit:[/b] - [2015/01/16 15:42:37 | 001,148,744 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe -- (GfExperienceService)
SRV:[b]64bit:[/b] - [2015/01/16 15:42:33 | 021,833,544 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
SRV:[b]64bit:[/b] - [2015/01/13 16:11:30 | 000,562,200 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\mcafee\msc\McAPExe.exe -- (McAPExe)
SRV:[b]64bit:[/b] - [2015/01/07 19:37:22 | 000,601,864 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\mcafee\virusscan\mcods.exe -- (McODS)
SRV:[b]64bit:[/b] - [2014/11/22 00:17:58 | 000,422,632 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Program Files\Common Files\mcafee\CSP\1.3.336.0\McCSPServiceHost.exe -- (mccspsvc)
SRV:[b]64bit:[/b] - [2014/11/06 06:34:38 | 001,050,952 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe -- (mfecore)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (MSK80Service)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (McProxy)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (mcpltsvc)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (McOobeSv2)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe -- (McNaiAnn)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (McMPFSvc)
SRV:[b]64bit:[/b] - [2014/10/31 20:10:34 | 000,335,064 | ---- | M] (McAfee, Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe -- (HomeNetSvc)
SRV:[b]64bit:[/b] - [2014/10/01 12:18:08 | 000,189,920 | ---- | M] (McAfee, Inc.) [Auto | Running] -- C:\Windows\SysNative\mfevtps.exe -- (mfevtp)
SRV:[b]64bit:[/b] - [2014/10/01 12:15:18 | 000,221,832 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe -- (mfefire)
SRV:[b]64bit:[/b] - [2013/08/07 14:24:00 | 000,015,720 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV:[b]64bit:[/b] - [2013/07/24 18:21:46 | 000,334,608 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe -- (McAWFwk)
SRV:[b]64bit:[/b] - [2013/07/08 21:30:24 | 000,195,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\IPROSetMonitor.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/06/18 20:18:38 | 000,246,488 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE -- (RtkAudioService)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:54 | 000,822,232 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/05/11 17:45:38 | 000,733,696 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/03/14 14:42:48 | 000,182,248 | ---- | M] () [Auto | Running] -- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe -- (ISCTAgent)
SRV - [2015/03/16 10:31:27 | 000,268,464 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/03/14 00:38:38 | 000,410,768 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2015/01/16 15:42:37 | 001,706,312 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
SRV - [2015/01/02 19:45:12 | 000,315,488 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/12/01 16:48:00 | 003,472,368 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013/09/11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013/09/03 16:53:04 | 000,390,616 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2013/09/03 16:52:04 | 000,169,432 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/04/06 16:11:02 | 000,034,752 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WPRO_41_2001.sys -- (WPRO_41_2001)
DRV:[b]64bit:[/b] - [2015/03/14 04:41:47 | 000,195,728 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:[b]64bit:[/b] - [2015/01/16 15:42:32 | 000,019,784 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms)
DRV:[b]64bit:[/b] - [2014/11/22 19:46:30 | 000,038,032 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
DRV:[b]64bit:[/b] - [2014/10/29 17:59:08 | 000,086,352 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\hxsyj64.sys -- (hxsyol)
DRV:[b]64bit:[/b] - [2014/10/28 00:29:23 | 000,086,448 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\slzj64.sys -- (slzjs)
DRV:[b]64bit:[/b] - [2014/10/01 12:20:58 | 000,072,136 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\cfwids.sys -- (cfwids)
DRV:[b]64bit:[/b] - [2014/10/01 12:18:18 | 000,348,560 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfewfpk.sys -- (mfewfpk)
DRV:[b]64bit:[/b] - [2014/10/01 12:16:28 | 000,786,304 | ---- | M] (McAfee, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\mfehidk.sys -- (mfehidk)
DRV:[b]64bit:[/b] - [2014/10/01 12:15:28 | 000,526,360 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfefirek.sys -- (mfefirek)
DRV:[b]64bit:[/b] - [2014/10/01 12:14:48 | 000,313,680 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfeavfk.sys -- (mfeavfk)
DRV:[b]64bit:[/b] - [2014/10/01 12:14:26 | 000,181,584 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfeapfk.sys -- (mfeapfk)
DRV:[b]64bit:[/b] - [2014/09/19 02:44:18 | 000,096,600 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mfencrk.sys -- (mfencrk)
DRV:[b]64bit:[/b] - [2014/09/19 02:43:24 | 000,447,440 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mfencbdc.sys -- (mfencbdc)
DRV:[b]64bit:[/b] - [2014/07/28 14:52:00 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2014/03/11 17:32:21 | 000,034,512 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\debutfilterx64.sys -- (debutfilter)
DRV:[b]64bit:[/b] - [2013/12/24 13:00:00 | 000,451,872 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nvstusb.sys -- (NvStUSB)
DRV:[b]64bit:[/b] - [2013/10/02 11:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/09/23 13:49:22 | 000,197,704 | ---- | M] (McAfee, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HipShieldK.sys -- (HipShieldK)
DRV:[b]64bit:[/b] - [2013/09/03 16:52:04 | 000,099,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TeeDriverx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2013/08/07 14:23:46 | 000,644,968 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
DRV:[b]64bit:[/b] - [2013/08/07 14:23:46 | 000,028,008 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorF.sys -- (iaStorF)
DRV:[b]64bit:[/b] - [2013/05/30 09:54:40 | 000,495,376 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1d62x64.sys -- (e1dexpress)
DRV:[b]64bit:[/b] - [2013/04/26 11:24:58 | 000,020,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:[b]64bit:[/b] - [2013/04/26 11:24:56 | 000,786,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:[b]64bit:[/b] - [2013/04/26 11:24:56 | 000,368,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:[b]64bit:[/b] - [2013/03/14 14:34:46 | 000,046,568 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ISCTD64.sys -- (ISCT)
DRV:[b]64bit:[/b] - [2013/03/14 14:34:44 | 000,021,048 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\imsevent.sys -- (imsevent)
DRV:[b]64bit:[/b] - [2013/03/14 14:34:44 | 000,021,048 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ikbevent.sys -- (ikbevent)
DRV:[b]64bit:[/b] - [2012/08/23 23:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2012/08/23 23:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012/08/15 23:41:38 | 000,030,208 | ---- | M] (Tobias Erichsen) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\teVirtualMIDI64.sys -- (teVirtualMIDI64)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2011/08/23 22:57:24 | 000,565,352 | ---- | M] (Realtek ) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2010/11/21 12:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2009/11/16 08:45:26 | 000,042,192 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\qd262x64.sys -- (ioatdma2)
DRV:[b]64bit:[/b] - [2009/11/16 08:45:22 | 000,040,144 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\qd162x64.sys -- (ioatdma1)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{25B3A18A-C722-476B-A6D6-F0DD791B35DB}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{FCFD4D02-9D00-423C-A20B-9826F35749E9}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASBJS


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}

IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://localoem.msn.com
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.dospara.co.jp/ [binary data]
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.co.jp/
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\..\SearchScopes\{AF73464D-68BE-41F3-8EEF-65B526AE9521}: "URL" = http://search.yahoo.co.jp/search?ei=UTF-8&fr=tbtopie&p={searchTerms}
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.dospara.co.jp/ [binary data]
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



[color=#E56717]========== FireFox ==========[/color]

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0: C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.40.2: C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.40.2: C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@kunlun.com/Launcher: C:\X-Legend\HH\npLauncher.dll File not found
FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK [2015/02/19 12:12:26 | 000,000,000 | ---D | M]


[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - plugin: Error reading preferences file
CHR - Extension: Google 繝峨Λ繧、繝・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: Google 繝峨Λ繧、繝・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: Google 繝峨Λ繧、繝・ = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: YouTube = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: YouTube = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: YouTube = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: Google テヲツ、ツ愿ァツエツ「 = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Google テヲツ、ツ愿ァツエツ「 = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Gmail = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: Gmail = C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\

O1 HOSTS File: ([2015/03/20 12:55:34 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2:[b]64bit:[/b] - BHO: (Yahoo!ツールバーフィッシング警告) - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll (Yahoo Japan Corporation. )
O2:[b]64bit:[/b] - BHO: (Lync Browser Helper) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\urlredir.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Microsoft SkyDrive Pro Browser Helper) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll (Microsoft Corporation)
O2:[b]64bit:[/b] - BHO: (Yahoo!ツールバーヘルパー) - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O2 - BHO: (Yahoo!ツールバーフィッシング警告) - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll (Yahoo Japan Corporation. )
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\urlredir.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Yahoo!ツールバーヘルパー) - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (Yahoo!ツールバー) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (Yahoo!ツールバー) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll (Yahoo! JAPAN)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [IAStorIcon] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [NvBackend] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" File not found
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [DivXUpdate] C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
O4 - HKLM..\Run: [mcpltui_exe] C:\Program Files\Common Files\mcafee\platform\McUICnt.exe (McAfee, Inc.)
O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe (Yahoo! Japan Corporation.)
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll (Malwarebytes Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\RunOnce: [Adobe Speed Launcher] 1428304264 File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64" File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003..\RunOnce: [Adobe Speed Launcher] 1427425416 File not found
O4 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003..\RunOnce: [Report] \AdwCleaner\AdwCleaner[S0].txt File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O7 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:[b]64bit:[/b] - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnielinkednotes.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1750649425-1320342663-1156795937-1001\..Trusted Domains: pokemon-matome.net ([]http in 信頼済みサイト)
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB (LoadPrg Class)
O16 - DPF: {AA07EBD2-EBDD-4BD6-9F8F-114BD513492C} http://dist.cdnetworks.co.jp/cdndist/neffy/NeffyLauncher_v1013.cab (NeffyLauncherCtl Class)
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} https://hh.x-legend.co.jp/X-LegendGameStarter.cab (X-Legend GameStarter Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F991E613-3BAB-40B5-B84E-25C12BEC9826}: DhcpNameServer = 192.168.0.1
O18:[b]64bit:[/b] - Protocol\Handler\osf - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\msosb.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
O18 - Protocol\Filter\application/x-mfe-ipt {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/04/05 00:15:12 | 000,000,000 | --SD | C] -- C:\Windows\SysWow64\GWX
[2015/04/05 00:15:11 | 000,000,000 | --SD | C] -- C:\Windows\SysNative\GWX
[2015/03/28 06:05:52 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Roaming\Awesomium
[2015/03/28 06:05:45 | 000,000,000 | ---D | C] -- C:\Users\keiko\Documents\BnS
[2015/03/28 05:30:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NCSoft
[2015/03/28 05:30:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blade&Soul
[2015/03/28 03:56:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
[2015/03/28 03:56:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NCJapan
[2015/03/27 21:00:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FireAlpaca
[2015/03/27 21:00:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FireAlpaca
[2015/03/27 00:56:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2015/03/27 00:06:19 | 000,000,000 | ---D | C] -- C:\Users\keiko\Documents\KOEI
[2015/03/25 19:52:41 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\MiniService
[2015/03/25 19:52:41 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Baidu
[2015/03/25 19:48:16 | 000,272,296 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2015/03/25 19:48:16 | 000,191,400 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2015/03/25 19:48:16 | 000,190,888 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2015/03/25 19:42:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2015/03/25 10:46:16 | 001,107,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2015/03/25 10:46:16 | 000,943,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/03/25 10:46:16 | 000,760,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/03/25 10:46:16 | 000,677,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/03/25 10:46:16 | 000,414,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/03/25 10:46:16 | 000,227,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/03/25 10:46:16 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/03/25 10:46:16 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll
[2015/03/21 11:43:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2015/03/21 11:42:37 | 000,622,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvStreaming.exe
[2015/03/21 11:41:19 | 032,114,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
[2015/03/21 11:41:19 | 025,460,880 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
[2015/03/21 11:41:19 | 024,775,368 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
[2015/03/21 11:41:19 | 020,466,376 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
[2015/03/21 11:41:19 | 018,580,512 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
[2015/03/21 11:41:19 | 017,258,024 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
[2015/03/21 11:41:19 | 016,022,016 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
[2015/03/21 11:41:19 | 013,297,144 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvopencl.dll
[2015/03/21 11:41:19 | 013,210,080 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
[2015/03/21 11:41:19 | 010,775,080 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll
[2015/03/21 11:41:19 | 010,715,864 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
[2015/03/21 11:41:19 | 003,611,792 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
[2015/03/21 11:41:19 | 003,249,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
[2015/03/21 11:41:19 | 002,906,928 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
[2015/03/21 11:41:19 | 001,896,136 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6434788.dll
[2015/03/21 11:41:19 | 001,557,648 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6434788.dll
[2015/03/21 11:41:19 | 000,997,856 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvumdshimx.dll
[2015/03/21 11:41:19 | 000,970,384 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFR64.dll
[2015/03/21 11:41:19 | 000,944,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvFBC64.dll
[2015/03/21 11:41:19 | 000,930,448 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll
[2015/03/21 11:41:19 | 000,909,512 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll
[2015/03/21 11:41:19 | 000,878,328 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvumdshim.dll
[2015/03/21 11:41:19 | 000,496,272 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvEncodeAPI64.dll
[2015/03/21 11:41:19 | 000,400,584 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvEncodeAPI.dll
[2015/03/21 11:41:19 | 000,390,288 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFROpenGL.dll
[2015/03/21 11:41:19 | 000,354,112 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglshim64.dll
[2015/03/21 11:41:19 | 000,346,824 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFROpenGL.dll
[2015/03/21 11:41:19 | 000,306,208 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll
[2015/03/21 11:41:19 | 000,195,728 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvhda64v.sys
[2015/03/21 11:41:19 | 000,178,512 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvinitx.dll
[2015/03/21 11:41:19 | 000,164,568 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvinit.dll
[2015/03/21 11:41:19 | 000,030,536 | ---- | C] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdap64.dll
[2015/03/19 15:33:06 | 000,000,000 | ---D | C] -- C:\Program Files\Reason
[2015/03/18 21:08:12 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Roaming\Malwarebytes
[2015/03/18 21:07:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/03/18 19:45:49 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\ElevatedDiagnostics
[2015/03/18 14:47:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\マカフィー
[2015/03/18 14:41:00 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Roaming\Geek Uninstaller
[2015/03/18 14:22:45 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2015/03/18 11:31:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/03/18 11:30:56 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/03/16 19:22:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetasequoiaLE R3.0
[2015/03/16 19:22:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MetaseqLE30
[2015/03/15 21:39:15 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\Trend Micro
[2015/03/15 21:35:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Trend Micro Installer
[2015/03/15 21:01:51 | 000,000,000 | ---D | C] -- C:\ProgramData\{b42ace8b-894d-4979-b42a-ace8b8943a2e}
[2015/03/15 21:01:49 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\Programs
[2015/03/15 09:13:17 | 000,000,000 | ---D | C] -- C:\ProgramData\16714426571352280450UL
[2015/03/11 15:50:32 | 000,372,224 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2015/03/11 15:50:31 | 000,299,008 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2015/03/11 15:50:31 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2015/03/11 15:50:31 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2015/03/11 15:50:31 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2015/03/11 15:50:31 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2015/03/11 15:50:31 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2015/03/11 15:50:31 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2015/03/11 15:50:20 | 011,411,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2015/03/11 15:50:20 | 005,554,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2015/03/11 15:50:20 | 003,209,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mf.dll
[2015/03/11 15:50:19 | 003,973,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2015/03/11 15:50:19 | 001,480,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2015/03/11 15:50:18 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2015/03/11 15:50:18 | 000,616,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2015/03/11 15:50:17 | 014,632,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2015/03/11 15:50:17 | 004,121,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mf.dll
[2015/03/11 15:50:15 | 001,574,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2015/03/11 15:50:15 | 001,329,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2015/03/11 15:50:15 | 001,202,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmv2clt.dll
[2015/03/11 15:50:15 | 001,069,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptui.dll
[2015/03/11 15:50:15 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmv2clt.dll
[2015/03/11 15:50:15 | 000,693,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2015/03/11 15:50:15 | 000,641,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscp.dll
[2015/03/11 15:50:15 | 000,619,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe
[2015/03/11 15:50:15 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2015/03/11 15:50:14 | 001,005,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptui.dll
[2015/03/11 15:50:14 | 000,782,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmdrmsdk.dll
[2015/03/11 15:50:14 | 000,744,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\blackbox.dll
[2015/03/11 15:50:14 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2015/03/11 15:50:14 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2015/03/11 15:50:13 | 000,842,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\blackbox.dll
[2015/03/11 15:50:13 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2015/03/11 15:50:13 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2015/03/11 15:50:12 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\evr.dll
[2015/03/11 15:50:12 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmdrmsdk.dll
[2015/03/11 15:50:12 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscp.dll
[2015/03/11 15:50:12 | 000,500,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AUDIOKSE.dll
[2015/03/11 15:50:12 | 000,497,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drmmgrtn.dll
[2015/03/11 15:50:12 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\evr.dll
[2015/03/11 15:50:12 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AUDIOKSE.dll
[2015/03/11 15:50:12 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEng.dll
[2015/03/11 15:50:12 | 000,432,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfplat.dll
[2015/03/11 15:50:12 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drmmgrtn.dll
[2015/03/11 15:50:12 | 000,371,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2015/03/11 15:50:12 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfplat.dll
[2015/03/11 15:50:12 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msnetobj.dll
[2015/03/11 15:50:12 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2015/03/11 15:50:12 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msnetobj.dll
[2015/03/11 15:50:12 | 000,206,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2015/03/11 15:50:12 | 000,146,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidpolicyconverter.exe
[2015/03/11 15:50:12 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\audiodg.exe
[2015/03/11 15:50:12 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2015/03/11 15:50:12 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfps.dll
[2015/03/11 15:50:12 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidapi.dll
[2015/03/11 15:50:12 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rrinstaller.exe
[2015/03/11 15:50:12 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appidapi.dll
[2015/03/11 15:50:12 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rrinstaller.exe
[2015/03/11 15:50:12 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcadm.dll
[2015/03/11 15:50:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcawrk.exe
[2015/03/11 15:50:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmmsp.dll
[2015/03/11 15:50:11 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2015/03/11 15:50:11 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2015/03/11 15:50:11 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDump.dll
[2015/03/11 15:50:11 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptsp.dll
[2015/03/11 15:50:11 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setbcdlocale.dll
[2015/03/11 15:50:11 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2015/03/11 15:50:11 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2015/03/11 15:50:11 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfpmp.exe
[2015/03/11 15:50:11 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfpmp.exe
[2015/03/11 15:50:11 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidcertstorecheck.exe
[2015/03/11 15:50:11 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\spwmp.dll
[2015/03/11 15:50:11 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcalua.exe
[2015/03/11 15:50:11 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pcaevts.dll
[2015/03/11 15:50:11 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\spwmp.dll
[2015/03/11 15:50:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2015/03/11 15:50:11 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2015/03/11 15:50:11 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdxm.ocx
[2015/03/11 15:50:11 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxmasf.dll
[2015/03/11 15:50:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msdxm.ocx
[2015/03/11 15:50:11 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dxmasf.dll
[2015/03/11 15:50:11 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mferror.dll
[2015/03/11 15:50:11 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mferror.dll
[2015/03/11 15:50:03 | 003,179,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2015/03/11 15:50:03 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2015/03/11 15:50:03 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
[2015/03/11 15:49:57 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ubpm.dll
[2015/03/11 15:49:57 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ubpm.dll
[2015/03/11 15:49:51 | 001,461,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2015/03/11 15:49:51 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2015/03/11 15:49:51 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2015/03/11 15:49:51 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2015/03/11 15:49:51 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2015/03/11 15:49:51 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2015/03/11 15:49:51 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2015/03/11 15:49:51 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2015/03/11 15:49:51 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2015/03/11 15:49:51 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2015/03/11 15:49:51 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2015/03/11 15:49:51 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2015/03/11 15:49:51 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2015/03/11 15:49:49 | 001,067,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msctf.dll
[2015/03/11 15:49:47 | 001,424,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2015/03/11 15:49:45 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2015/03/11 15:49:45 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015/03/11 15:49:45 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015/03/11 15:49:45 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2015/03/11 15:49:45 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2015/03/11 15:49:45 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2015/03/11 15:49:44 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015/03/11 15:49:44 | 000,718,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2015/03/11 15:49:44 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015/03/11 15:49:44 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2015/03/11 15:49:44 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2015/03/11 15:49:44 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2015/03/11 15:49:44 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2015/03/11 15:49:43 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015/03/11 15:49:43 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2015/03/11 15:49:43 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015/03/11 15:49:43 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015/03/11 15:49:43 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2015/03/11 15:49:43 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2015/03/11 15:49:43 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015/03/11 15:49:43 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2015/03/11 15:49:43 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2015/03/11 15:49:43 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2015/03/11 15:49:42 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2015/03/11 15:49:42 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2015/03/11 15:49:42 | 000,490,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2015/03/11 15:49:42 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2015/03/11 15:49:42 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2015/03/11 15:49:41 | 006,035,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015/03/11 15:49:41 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2015/03/11 15:49:41 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015/03/11 15:49:41 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015/03/11 15:49:41 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2015/03/11 15:49:41 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015/03/11 15:49:41 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015/03/11 15:49:39 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2015/03/11 15:49:39 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]

続く
  • khjkighuygbkyu
  • URL
  • 2015/04/06 (Mon) 16:29:06
OTL
続き

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/04/06 16:18:06 | 000,031,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/04/06 16:18:06 | 000,031,072 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/04/06 16:13:00 | 000,000,698 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/04/06 16:11:02 | 000,034,752 | ---- | M] () -- C:\Windows\SysNative\drivers\WPRO_41_2001.sys
[2015/04/06 16:11:00 | 000,000,694 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/04/06 16:11:00 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2015/04/06 16:11:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B}.job
[2015/04/06 16:10:47 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/04/06 16:10:42 | 2083,839,999 | -HS- | M] () -- C:\hiberfil.sys
[2015/04/03 01:32:54 | 000,001,152 | ---- | M] () -- C:\Users\Public\Desktop\WavePad 音声編集ソフト.lnk
[2015/03/31 17:47:01 | 001,315,260 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2015/03/31 17:47:01 | 000,654,968 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015/03/31 17:47:01 | 000,411,876 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
[2015/03/31 17:47:01 | 000,122,420 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
[2015/03/31 17:47:01 | 000,122,338 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015/03/28 05:30:33 | 000,002,256 | ---- | M] () -- C:\Users\Public\Desktop\Blade&Soul.lnk
[2015/03/27 21:00:15 | 000,001,187 | ---- | M] () -- C:\Users\Public\Desktop\FireAlpaca.lnk
[2015/03/26 23:22:53 | 000,001,892 | ---- | M] () -- C:\Users\keiko\Desktop\真・三國無双 Online.lnk
[2015/03/25 19:57:15 | 000,002,681 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2015/03/25 19:42:14 | 000,272,296 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2015/03/25 19:42:14 | 000,191,400 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2015/03/25 19:42:14 | 000,190,888 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2015/03/25 19:42:14 | 000,098,216 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2015/03/24 23:31:47 | 000,001,417 | ---- | M] () -- C:\Users\keiko\Desktop\Google Chrome.lnk
[2015/03/24 12:16:04 | 000,000,020 | ---- | M] () -- C:\Users\keiko\AppData\Roaming\appdataFr3.bin
[2015/03/20 12:55:34 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
[2015/03/18 19:43:38 | 000,001,307 | ---- | M] () -- C:\Users\keiko\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/03/18 19:43:38 | 000,000,948 | ---- | M] () -- C:\Users\keiko\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2015/03/16 10:31:27 | 000,778,928 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2015/03/16 10:31:27 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2015/03/14 04:41:47 | 032,114,888 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglv64.dll
[2015/03/14 04:41:47 | 025,460,880 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcompiler.dll
[2015/03/14 04:41:47 | 024,775,368 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglv32.dll
[2015/03/14 04:41:47 | 020,466,376 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcompiler.dll
[2015/03/14 04:41:47 | 018,580,512 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvwgf2umx.dll
[2015/03/14 04:41:47 | 017,258,024 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvd3dumx.dll
[2015/03/14 04:41:47 | 016,022,016 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvwgf2um.dll
[2015/03/14 04:41:47 | 014,121,624 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvd3dum.dll
[2015/03/14 04:41:47 | 013,297,144 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvopencl.dll
[2015/03/14 04:41:47 | 013,210,080 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuda.dll
[2015/03/14 04:41:47 | 010,775,080 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvopencl.dll
[2015/03/14 04:41:47 | 010,715,864 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuda.dll
[2015/03/14 04:41:47 | 003,611,792 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcuvid.dll
[2015/03/14 04:41:47 | 003,303,448 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvapi64.dll
[2015/03/14 04:41:47 | 003,249,352 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvcuvid.dll
[2015/03/14 04:41:47 | 002,906,928 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvapi.dll
[2015/03/14 04:41:47 | 001,896,136 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispco6434788.dll
[2015/03/14 04:41:47 | 001,557,648 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvdispgenco6434788.dll
[2015/03/14 04:41:47 | 001,540,240 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdagenco6420103.dll
[2015/03/14 04:41:47 | 000,997,856 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvumdshimx.dll
[2015/03/14 04:41:47 | 000,970,384 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFR64.dll
[2015/03/14 04:41:47 | 000,944,784 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\NvFBC64.dll
[2015/03/14 04:41:47 | 000,930,448 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFR.dll
[2015/03/14 04:41:47 | 000,909,512 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvFBC.dll
[2015/03/14 04:41:47 | 000,878,328 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvumdshim.dll
[2015/03/14 04:41:47 | 000,496,272 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvEncodeAPI64.dll
[2015/03/14 04:41:47 | 000,400,584 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvEncodeAPI.dll
[2015/03/14 04:41:47 | 000,390,288 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\NvIFROpenGL.dll
[2015/03/14 04:41:47 | 000,354,112 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvoglshim64.dll
[2015/03/14 04:41:47 | 000,346,824 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\NvIFROpenGL.dll
[2015/03/14 04:41:47 | 000,306,208 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvoglshim32.dll
[2015/03/14 04:41:47 | 000,195,728 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\drivers\nvhda64v.sys
[2015/03/14 04:41:47 | 000,178,512 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvinitx.dll
[2015/03/14 04:41:47 | 000,164,568 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvinit.dll
[2015/03/14 04:41:47 | 000,073,872 | ---- | M] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2015/03/14 04:41:47 | 000,060,560 | ---- | M] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2015/03/14 04:41:47 | 000,030,536 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvhdap64.dll
[2015/03/14 04:41:47 | 000,027,441 | ---- | M] () -- C:\Windows\SysNative\nvinfo.pb
[2015/03/14 01:16:47 | 006,861,968 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvcpl.dll
[2015/03/14 01:16:47 | 003,526,856 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvc64.dll
[2015/03/14 01:16:45 | 002,559,808 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvsvcr.dll
[2015/03/14 01:16:45 | 000,386,248 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvmctray.dll
[2015/03/14 01:16:45 | 000,062,608 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysNative\nvshext.dll
[2015/03/14 00:38:39 | 000,622,224 | ---- | M] (NVIDIA Corporation) -- C:\Windows\SysWow64\nvStreaming.exe
[2015/03/12 12:43:25 | 000,356,288 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2015/03/11 22:10:00 | 004,246,327 | ---- | M] () -- C:\Windows\SysNative\nvcoproc.bin
[2015/03/11 13:06:14 | 000,677,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2015/03/11 13:06:05 | 000,760,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2015/03/11 13:06:02 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2015/03/11 13:06:00 | 000,943,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2015/03/11 13:05:59 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2015/03/11 13:05:59 | 000,192,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2015/03/11 13:05:59 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll
[2015/03/11 13:02:07 | 001,107,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/04/03 01:29:40 | 000,001,152 | ---- | C] () -- C:\Users\Public\Desktop\WavePad 音声編集ソフト.lnk
[2015/03/28 05:30:33 | 000,002,256 | ---- | C] () -- C:\Users\Public\Desktop\Blade&Soul.lnk
[2015/03/27 21:00:15 | 000,001,187 | ---- | C] () -- C:\Users\Public\Desktop\FireAlpaca.lnk
[2015/03/26 23:22:53 | 000,001,892 | ---- | C] () -- C:\Users\keiko\Desktop\真・三國無双 Online.lnk
[2015/03/25 19:52:44 | 000,000,520 | ---- | C] () -- C:\Windows\tasks\BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B}.job
[2015/03/15 08:39:16 | 000,000,020 | ---- | C] () -- C:\Users\keiko\AppData\Roaming\appdataFr3.bin
[2013/10/02 17:26:43 | 001,294,108 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/05/11 17:17:52 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
[2002/01/15 21:35:34 | 000,548,864 | ---- | C] () -- C:\Program Files\ALLEG40.DLL

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/13 14:22:33 | 014,177,280 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 14:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/21 12:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

< End of report >
  • khjkighuygbkyu
  • URL
  • 2015/04/06 (Mon) 16:30:02
Extras
OTL Extras logfile created on: 2015/04/06 16:16:21 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\METALSLIME\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17691)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

7.92 Gb Total Physical Memory | 5.40 Gb Available Physical Memory | 68.14% Memory free
15.84 Gb Paging File | 13.43 Gb Available in Paging File | 84.76% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 200.00 Gb Total Space | 24.90 Gb Free Space | 12.45% Space Free | Partition Type: NTFS
Drive D: | 1652.53 Gb Total Space | 1411.89 Gb Free Space | 85.44% Space Free | Partition Type: NTFS

Computer Name: METALSLIME-PC | User Name: keiko | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = BaiduSparkHTML] -- Reg Error: Key error. File not found
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = BaiduSparkHTML] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[HKEY_USERS\S-1-5-21-1750649425-1320342663-1156795937-1003\SOFTWARE\Classes\<extension>]
.html [@ = BaiduSparkHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\baidu\Spark\Spark.exe" -- "%1"
https [open] -- "C:\Program Files (x86)\baidu\Spark\Spark.exe" -- "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\baidu\Spark\Spark.exe" -- "%1"
https [open] -- "C:\Program Files (x86)\baidu\Spark\Spark.exe" -- "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{06074B58-E5B3-41C0-85D4-88410C9B09EC}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{3B62C420-0362-4A4B-8C4F-6D4DB611B685}" = lport=47995 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{3DB3120D-F8FC-461A-A0B4-AD8959896A63}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{5479B4D3-485B-48FD-BC73-AFE6EC6523CF}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{5C6E02E7-9FF2-4DC0-ACD2-5C1572D308C4}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{76099A25-BDF7-480C-B7A9-C32AEFFDEB94}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{9504A662-B7A2-4D3B-AF3C-4492522E35E2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=c:\windows\system32\svchost.exe |
"{9E879F82-B168-4305-999A-35B043011EDF}" = lport=47987 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{A4C88F42-8E73-436B-9591-2B410056500B}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{D064BD76-C0A9-4C72-8E44-C947A3303E78}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{F15E4D50-651E-4FFC-A63E-C61E6F821F7E}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{F7C8F0BB-F39D-40E2-83C6-D9B53D0E5FC1}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe |
"{F9959C5F-F446-45C2-95E8-A7C5F1710CBF}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{FA2C11C2-FE84-4D72-AD26-52F327D4CEF4}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{21C66D84-E7D7-4024-9B6E-1B92E3AB8177}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{3131DF9A-0AC8-478C-A246-0EA14A0B9D6F}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{3D39B00A-B0C9-4DC1-B686-464BF636FF35}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 |
"{3F75AB3B-653E-4843-96F2-C83B7AE8357B}" = dir=in | app=c:\users\metalslime\appdata\local\microsoft\skydrive\skydrive.exe |
"{430112A4-9C7F-465E-A560-76DCBB77682A}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{831F9727-E525-4026-B68B-EEC400F12A9E}" = protocol=58 | dir=in | app=system |
"{9ADA2E54-E7D2-49CA-8D22-B0AB0E33DFF1}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{BB0DAE14-9DDC-472D-AAE6-C3372D59CA6D}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\platform\mcsvchost\mcsvhost.exe |
"{C24FCA9B-A069-4DD3-9B27-6016F9DAD87A}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{CA0CBC54-B8D9-435E-A679-D5F77EF572D2}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{E4762CE1-008E-46BA-8BA3-5BBD37E0104E}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{E4EC7F8F-CDD1-4ACF-999F-132618068D7E}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1AAF6669-31B2-3840-9346-F0F653840FD1}" = Microsoft .NET Framework 4.5.1 (JPN)
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}" = iTunes
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{4B5B6BB3-DA04-4B56-AE17-DDBF3F446888}" = Intel(R) Network Connections 18.5.54.0
"{54F2237F-018C-483B-8884-9FC0D88840C3}" = VC_CRT_x64
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89AFB053-A343-46EF-97E4-D593AD7184E6}" = Intel® Trusted Connect Service Client
"{89E4163C-BD19-45A9-BCEB-980741786799}_is1" = LoiLo Game Recorder
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041" = Microsoft .NET Framework 4.5.1 (日本語)
"{93F692D4-0C4D-4EED-9BFE-657C1D5959FE}" = Intel(R) Rapid Storage Technology
"{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision ドライバー 347.88
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA コントロール パネル 347.88
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA グラフィックス ドライバー 347.88
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.2.2
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision コントローラー ドライバー 347.09
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX システム ソフトウェア 9.14.0702
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 17.12.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService" = NVIDIA GeForce Experience Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD オーディオ ドライバー 1.3.33.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 17.12.8
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = SHIELD Wireless Controller Driver
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.27
"{B71910C5-BE1F-4091-A685-3FA2342A7635}" = Intel(R) Smart Connect Technology 4.1 x64
"{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}" = Apple Mobile Device Support
"{C6E57DC0-5699-47D4-9263-CEE00A4BB1FC}" = Windows Live MIME IFilter
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{D2837730-4960-3B35-8088-201387FD3BDB}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"CCleaner" = CCleaner
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - JPN" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語
"PC-Doctor for Windows" = パソコン診断ソフト PC-Doctor
"PersonalRetail - ja-jp" = Microsoft Office Personal 2013 - ja-jp
"PROSetDX" = Intel(R) Network Connections 18.5.54.0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01670638-5575-4B29-9072-052889773822}" = 真・三國無双 Online
"{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
"{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{24758B1D-9345-4538-A69A-05660F63A296}" = Junk Mail filter update
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype(TM) 7.1
"{26A24AE4-039D-4CA4-87B4-2F83218040F0}" = Java 8 Update 40
"{2E037507-E75B-4AAE-A419-2AE25C87B6A2}" = Windows Live Writer Resources
"{2F17C57A-F37C-4436-89FA-3D61B5D6843A}" = X-Downloader
"{33F7A957-A66D-45A1-BADF-6576083B14E2}" = RPGツクール2000 ランタイムパッケージ
"{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}" = Microsoft ASP.NET MVC 4 Runtime
"{4260CAAE-D108-4223-A1C5-96B67062FE86}" = Windows Live Installer
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{56de8696-fe79-4981-af9d-70825b512005}" = RPGツクール2000 体験版
"{59307833-CB98-4440-B644-0CD352F61907}" = Windows Live PIMT Platform
"{5D9A58F8-ADE0-431A-BB8D-AD248683C13E}" = Windows Live メール
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{72D9236D-C6EA-4DA6-A18C-CC24521A70D4}" = Windows Live Mail
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{79266C57-ADAB-4095-B037-FBC024F5891D}" = Blade&Soul
"{7B0AEAF4-3C01-4169-9036-45573CF767D6}" = Windows Live Essentials
"{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}" = Apple Application Support
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8F5320EB-DC7C-46EF-9ACC-A58669001BDE}" = Photo Common
"{8F66BFDE-B213-48E2-93EF-7151277A2916}" = Windows Live SOXE Definitions
"{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component
"{90150000-008C-0411-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component
"{933B4015-4618-4716-A828-5289FC03165F}" = VC80CRTRedist - 8.0.50727.6195
"{94532CD5-C66D-49E3-9131-5FB04D7647A1}" = Windows Live UX Platform
"{9797D7BA-A333-4DF1-AF55-AC745D216EDB}" = Windows Live Writer
"{983FA94A-A7DD-40B1-B7F9-F45D2B4FD1DE}" = Windows Live Photo Common
"{9BEE68DF-7061-4DEB-B4E2-E5C567B84634}" = ハンターヒーロー
"{A6057B4B-F75B-418A-8A26-C9F27859A150}" = 幻想神域
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9FFEC6C-9C44-4597-8E23-EDD78BF5D0B2}" = Windows Live Communications Platform
"{AC76BA86-7AD7-1041-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Japanese
"{AEAF7978-3204-451D-8593-BC53EBDDA31D}" = loopMIDI
"{B455E95A-B804-439F-B533-336B1635AE97}" = NVIDIA PhysX
"{C87DF7BB-4F5C-4BBE-B041-A59FFF4A1D07}" = Windows Live SOXE
"{CAB75FFC-2377-4B95-A8FA-C9234B812A92}_is1" = LoiLoScope 2
"{CCB3F587-BAD0-4F32-99FC-301E6F9ABAB4}" = MIDI Yoke
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E35F91E4-C68C-43E8-BE90-35CDEE4E5730}_is1" = Apowersoft フリー音声録音ソフト V2.1.7
"{EC317B1E-FC13-403D-BD0D-B22324DDE414}" = Emil chronicle online
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F1FB514E-F90C-4CFC-B381-B2D98856FC0C}" = Windows Live UX Platform Language Pack
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"Adobe Flash Player ActiveX" = Adobe Flash Player 17 ActiveX
"ALUpdate_is1" = ALTools Update
"ALZip_is1" = ALZip 8.61
"ASIO4ALL" = ASIO4ALL
"DivX Setup" = DivXセットアップ
"FireAlpaca_is1" = FireAlpaca 1.2.0
"Google Chrome" = Google Chrome
"http://pso2.jp/appid/release_is1" = PHANTASY STAR ONLINE 2
"Lhaplus" = Lhaplus
"MetasequoiaLE R3,0" = MetasequoiaLE R3.0
"Minecraft" = Minecraft
"MSC" = マカフィーインターネットセキュリティ
"NCLauncher_NCJapan" = NCLauncher (NCSOFT)
"Neffy" = Neffy 1,2,5,0
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"RPGツクールVX RTP_is1" = RPGツクールVX RTP
"WavePad" = WavePad 音声編集ソフト
"WinLiveSuite" = Windows Live Essentials
"Yahoo!Jツールバー" = Yahoo!ツールバー

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-1750649425-1320342663-1156795937-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Debut" = Debut 動画キャプチャソフト
"KalydoPlayer" = Kalydo Player 6.04.02
"MixPad" = MixPad 多重録音ソフト
"OneDriveSetup.exe" = Microsoft OneDrive
"Recordpad" = RecordPad 音声録音ソフト
"Switch" = Switch 音声ファイル変換ソフト
"Yahoo!かんたんパソコン設定" = Yahoo!かんたんパソコン設定

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2015/01/21 3:58:39 | Computer Name = METALSLIME-PC | Source = Application Hang | ID = 1002
Description = プログラム IEXPLORE.EXE バージョン 11.0.9600.17496 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: ac 開始時刻: 01d0354fd5f2ca59 終了時刻: 17 アプリケーション
パス: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE レポート ID:

Error - 2015/01/21 4:00:57 | Computer Name = METALSLIME-PC | Source = Application Hang | ID = 1002
Description = プログラム IEXPLORE.EXE バージョン 11.0.9600.17496 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: 1668 開始時刻: 01d0354fb4f240c1 終了時刻: 10 アプリケーション
パス: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE レポート ID:

Error - 2015/01/21 4:08:54 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/22 3:18:24 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/23 2:05:44 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/23 2:20:57 | Computer Name = METALSLIME-PC | Source = Application Hang | ID = 1002
Description = プログラム UNKNOWN バージョン 0.0.0.0 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: 1470 開始時刻: 01d036d487d349f0 終了時刻: 77 アプリケーション
パス: UNKNOWN レポート ID: fcac7a65-a2c7-11e4-8019-bc5ff4fd6e65

Error - 2015/01/23 23:15:55 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

Error - 2015/01/23 23:17:04 | Computer Name = METALSLIME-PC | Source = .NET Runtime | ID = 1026
Description =

Error - 2015/01/23 23:17:06 | Computer Name = METALSLIME-PC | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: IAStorDataMgrSvc.exe、バージョン: 12.8.0.1016、タイム スタンプ:
0x51fb0c50 障害が発生しているモジュール名: unknown、バージョン: 0.0.0.0、タイム スタンプ: 0x00000000 例外コード: 0xc0000005
障害オフセット:
0x03a04c0d 障害が発生しているプロセス ID: 0xb10 障害が発生しているアプリケーションの開始時刻: 0x01d037841f0c7d37 障害が発生しているアプリケーション
パス: C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
障害が発生しているモジュール
パス: unknown レポート ID: 794abe57-a377-11e4-bb5a-bc5ff4fd6e65

Error - 2015/01/24 21:24:08 | Computer Name = METALSLIME-PC | Source = WinMgmt | ID = 10
Description =

[ System Events ]
Error - 2015/04/06 3:10:59 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7009
Description = McAfee Anti-Spam Service サービスの接続を待機中にタイムアウト (30000 ミリ秒) になりました。

Error - 2015/04/06 3:10:59 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7000
Description = McAfee Anti-Spam Service サービスを、次のエラーが原因で開始できませんでした: %%1053

Error - 2015/04/06 3:13:00 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7009
Description = McAfee Home Network サービスの接続を待機中にタイムアウト (30000 ミリ秒) になりました。

Error - 2015/04/06 3:13:00 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7000
Description = McAfee Home Network サービスを、次のエラーが原因で開始できませんでした: %%1053

Error - 2015/04/06 3:13:03 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7009
Description = McAfee VirusScan Announcer サービスの接続を待機中にタイムアウト (30000 ミリ秒) になりました。

Error - 2015/04/06 3:13:03 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7000
Description = McAfee VirusScan Announcer サービスを、次のエラーが原因で開始できませんでした: %%1053

Error - 2015/04/06 3:13:04 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7009
Description = McAfee Platform Services サービスの接続を待機中にタイムアウト (30000 ミリ秒) になりました。

Error - 2015/04/06 3:13:04 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7000
Description = McAfee Platform Services サービスを、次のエラーが原因で開始できませんでした: %%1053

Error - 2015/04/06 3:13:04 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7009
Description = McAfee Anti-Spam Service サービスの接続を待機中にタイムアウト (30000 ミリ秒) になりました。

Error - 2015/04/06 3:13:04 | Computer Name = METALSLIME-PC | Source = Service Control Manager | ID = 7000
Description = McAfee Anti-Spam Service サービスを、次のエラーが原因で開始できませんでした: %%1053


< End of report >

以上です
  • khjkighuygbkyu
  • URL
  • 2015/04/06 (Mon) 16:31:18
大変遅くなりました
仕事が立て込んでいて見直す時間がほとんどありませんでした。
大変お待たせして申し訳ありませんでした。
OTLでいくつか検出されていますので、処置を行いましょう。

メモ帳を起動させ、以下をコピペしてください。
なお、:OTL、:Files、:Commands等はOTLでの処理方法を決める命令文です。
削除なされないようご注意ください。

------コピペこの下より------
:OTL
[2015/03/25 19:52:41 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Baidu
[2015/03/15 21:39:15 | 000,000,000 | ---D | C] -- C:\Users\keiko\AppData\Local\Trend Micro
[2015/03/15 21:35:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Trend Micro Installer
[2015/04/06 16:11:00 | 000,000,520 | ---- | M] () -- C:\Windows\tasks\BaiduJP_Update_{8099779F-A13B-403e-B39A-65133857586B}.job

:Files

:Commands
[purity]
[resethosts]
[emptyflash]
[emptyjava]
[emptytemp]
[createrestorepoint]
[reboot]
------コピペこの上まで------

コピペが完了しましたら、分かりやすいお名前をつけて保存してください。
その後、PCをセーフモードで起動させてください。
再度OTLを起動させ、Custom Scan/Fixesの項目内に上記で保存した内容をコピペしてください。
今回は駆除作業のため、その他のチェック項目はありません。
赤い文字の[Run Fix]をクリックして処置を開始してください。
OTLの処置に従って進めてゆき、通常モードで再起動を行う前後いずれかに処置ログが表示されますので、
そちらのログを貼り付けてご連絡ください。
またその際に状況報告もお願いいたします。
  • IVNO
  • MAIL
  • 2015/04/10 (Fri) 15:20:03
お待たせです
All processes killed
========== OTL ==========
C:\Users\Public\Documents\Baidu\Common\I18N\IPCSUpdateCache\weather folder moved successfully.
C:\Users\Public\Documents\Baidu\Common\I18N\IPCSUpdateCache\uninstall_temp folder moved successfully.
C:\Users\Public\Documents\Baidu\Common\I18N\IPCSUpdateCache\InstallHelper folder moved successfully.
C:\Users\Public\Documents\Baidu\Common\I18N\IPCSUpdateCache\baidujp_update folder moved successfully.
C:\Users\Public\Documents\Baidu\Common\I18N\IPCSUpdateCache folder moved successfully.
C:\Users\Public\Documents\Baidu\Common\I18N folder moved successfully.
C:\Users\Public\Documents\Baidu\Common folder moved successfully.
C:\Users\Public\Documents\Baidu folder moved successfully.
C:\Users\keiko\AppData\Local\Trend Micro\UBMReport folder moved successfully.
C:\Users\keiko\AppData\Local\Trend Micro folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor64 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32\locales folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32\l10n\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32\l10n folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32\extensions\WebEngine.cmpt\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32\extensions\WebEngine.cmpt\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32\extensions\WebEngine.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32\extensions folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\Vizor32 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c3t1208222007v0.0.0l-1p-1r-1o-1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\PlatinumPrivacy.cmpt\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\PlatinumPrivacy.cmpt\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\PlatinumPrivacy.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\Platinum.cmpt\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\Platinum.cmpt\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\Platinum.cmpt\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\Platinum.cmpt\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1\Platinum.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1787v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\x64\product\win32\inspect folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\x64\product\win32 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\x64\product folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\x64\foundation\win32 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\x64\foundation folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\x64 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\util folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\UnShaper\startup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\UnShaper\dupFileScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\UnShaper folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\vulnerability folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\startup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\program folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\general folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\fileFinder folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\dupFileScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\diskUsage folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\bootup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\bigFileScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper\Addon folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Shaper folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Intelli\ScanComplete folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Intelli\BootupComplete folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\Intelli folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\FixShaper\startup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script\FixShaper folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\Script folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\pattern folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\configuration folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product\cache folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common\product folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1\common folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\win32\product\inspect folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\win32\product folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\win32\foundation folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\win32 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\util folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\UnShaper\startup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\UnShaper\dupFileScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\UnShaper folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\vulnerability folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\startup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\program folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\general folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\fileFinder folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\dupFileScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\diskUsage folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\bootup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\bigFileScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper\Addon folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Shaper folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Intelli\ScanComplete folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Intelli\BootupComplete folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\Intelli folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\FixShaper\startup folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script\FixShaper folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\Script folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\pattern folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\configuration folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product\cache folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common\product folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1\common folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1786v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1784v0.0.0l1p5889r1o1\plugin\Win8Cpnt\TileTemplate\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1784v0.0.0l1p5889r1o1\plugin\Win8Cpnt\TileTemplate folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1784v0.0.0l1p5889r1o1\plugin\Win8Cpnt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1784v0.0.0l1p5889r1o1\plugin folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1784v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1783v0.0.0l1p1r1o1\plugin\Win8Cpnt\TileTemplate\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1783v0.0.0l1p1r1o1\plugin\Win8Cpnt\TileTemplate folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1783v0.0.0l1p1r1o1\plugin\Win8Cpnt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1783v0.0.0l1p1r1o1\plugin folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1783v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1782v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1782v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1782v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1781v0.0.0l1p-1r1o1\Workflow_ResetDefaultConfig folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1781v0.0.0l1p-1r1o1\Workflow_ELAMReport folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1781v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1780v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1780v0.0.0l1p-1r1o1\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1780v0.0.0l1p-1r1o1\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1780v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1780v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1778v0.0.0l1p-1r1o1\Workflow_ScanExceptions folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1778v0.0.0l1p-1r1o1\Workflow_ResetDefaultConfig folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1778v0.0.0l1p-1r1o1\Workflow_PEMReport folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1778v0.0.0l1p-1r1o1\Workflow_PEMAsk folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1778v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1776v0.0.0l1p5889r1o1\util folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1776v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1775v0.0.0l1p1r1o1\util folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1775v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1774v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1774v0.0.0l1p-1r1o1\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1774v0.0.0l1p-1r1o1\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1774v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1774v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1772v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1772v0.0.0l1p-1r1o1\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1772v0.0.0l1p-1r1o1\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1772v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1772v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\Toolbar folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\TMAS folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\ScheduledScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\Platinum folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\MainConsole folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\MailScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\IM folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\FwOpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\ELAM folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\BEP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\AEGIS folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile\AdvancedProtection folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\SettingProfile folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\Core folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\AdvancedProtection\medium folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\AdvancedProtection\low folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\AdvancedProtection\high folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\AdvancedProtection\disabled folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1\AdvancedProtection folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1771v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1769v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1768v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1765v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1765v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1765v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1\workflows\Workflow_ResetDefaultConfig folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1\workflows\Workflow_ProxyScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1\workflows\Workflow_PreinstallComplete folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1\workflows\Workflow_ContinueBrowsing folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1\workflows\util folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1754v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1\workflows\Workflow_ResetDefaultConfig folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1\workflows\Workflow_ProxyScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1\workflows\Workflow_PreinstallComplete folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1\workflows\Workflow_ContinueBrowsing folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1\workflows\util folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1753v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\content_script\PSPattern\Twitter folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\content_script\PSPattern\MFacebook folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\content_script\PSPattern\Linkedin folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\content_script\PSPattern\GooglePlus folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\content_script\PSPattern\Facebook folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\content_script\PSPattern folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\content_script folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner\BPSPattern folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\PrivacyScanner folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1\CRPattern folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1752v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1748v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1748v0.0.0l1p-1r1o1\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1748v0.0.0l1p-1r1o1\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1748v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1748v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1\workflows\Workflow_SessionChanged folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1\workflows\Workflow_ProxyScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1\workflows\Workflow_PEMAsk folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1\workflows\Workflow_PasswordProtection folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1\workflows\Workflow_ContinueBrowsing folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1747v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1\workflows\Workflow_SessionChanged folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1\workflows\Workflow_ProxyScan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1\workflows\Workflow_PEMAsk folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1\workflows\Workflow_PasswordProtection folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1\workflows\Workflow_ContinueBrowsing folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1746v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1742v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1742v0.0.0l1p-1r1o1\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1742v0.0.0l1p-1r1o1\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1742v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1742v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1741v0.0.0l1p5889r1o1\workflows\Workflow_SystemShutdown folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1741v0.0.0l1p5889r1o1\workflows\Workflow_PasswordProtection folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1741v0.0.0l1p5889r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1741v0.0.0l1p5889r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1741v0.0.0l1p5889r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1741v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1740v0.0.0l1p1r1o1\workflows\Workflow_SystemShutdown folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1740v0.0.0l1p1r1o1\workflows\Workflow_PasswordProtection folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1740v0.0.0l1p1r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1740v0.0.0l1p1r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1740v0.0.0l1p1r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1740v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\Toolbar.cmpt\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\Toolbar.cmpt\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\Toolbar.cmpt\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\Toolbar.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PrivacyScanner.cmpt\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PrivacyScanner.cmpt\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PrivacyScanner.cmpt\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PrivacyScanner.cmpt\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PrivacyScanner.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PageRating.cmpt\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PageRating.cmpt\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PageRating.cmpt\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PageRating.cmpt\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\PageRating.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\IM.cmpt\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\IM.cmpt\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\IM.cmpt\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins\IM.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt\plugins folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www\MainConsole.cmpt folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\www folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\PSPromotion\locale\JA-JP\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\PSPromotion\locale\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\PSPromotion\locale\en-US\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\PSPromotion\locale\en-US folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\PSPromotion\locale folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\PSPromotion folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\locale\JA-JP\img folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\locale\JA-JP\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\locale\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\locale\en-US\img folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\locale\en-US\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\locale\en-US folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner\locale folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\PrivacyScanner folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\JA-JP\SRResource folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\JA-JP\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\IMPlugins\YIMRating\MANIFEST folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\IMPlugins\YIMRating\js folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\IMPlugins\YIMRating\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\IMPlugins\YIMRating\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\IMPlugins\YIMRating folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\IMPlugins folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\en-us\SRResource folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\en-us\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\en-us\directpass_promotion folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource\en-us folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\IEResource folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\locale\JA-JP\TBMenuSearchResult folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\locale\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\locale\en-US\TBMenuSearchResult folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\locale\en-US folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\locale folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\chrome\tmtoolbar\locale\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\chrome\tmtoolbar\locale folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\chrome\tmtoolbar folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension\chrome folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\firefoxextension folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\chromeextension\_locales\JA-JP folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\chromeextension\_locales folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1\chromeextension folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1739v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\workflows\Workflow_SystemShutdown folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\workflows\Workflow_SessionChanged folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\workflows\Workflow_CfgBroker folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\defaults\preferences folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\defaults folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\components folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\Tooltip folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\privacy_scan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\directpass_promotion folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\content folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\3rd_party folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension\chrome folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\firefoxextension folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\components folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\chromeextension\NativeMessageHost folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar\chromeextension folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\Toolbar folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork\implugins folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\UIFrameWork folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\ToolbarIE64 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\PSPromotion\img folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\PSPromotion\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\PSPromotion folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\local_page\js\3rd_party folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\local_page\js folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\local_page\img folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\local_page\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\local_page folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\content_script\PSEngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\content_script\LocalPageEngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\content_script\CommunicatorEngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner\content_script folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\PrivacyScanner folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\CREngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1\common_resource folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1738v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\workflows\Workflow_SystemShutdown folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\workflows\Workflow_SessionChanged folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\workflows\Workflow_CfgBroker folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\defaults\preferences folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\defaults folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\components folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\Tooltip folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\privacy_scan folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin\directpass_promotion folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\skin folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar\content folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\tmtoolbar folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome\3rd_party folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension\chrome folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\firefoxextension folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\components folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\chromeextension\NativeMessageHost folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar\chromeextension folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\Toolbar folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork\implugins folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\UIFrameWork folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\PSPromotion\img folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\PSPromotion\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\PSPromotion folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\local_page\js\3rd_party folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\local_page\js folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\local_page\img folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\local_page\css folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\local_page folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\content_script\PSEngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\content_script\LocalPageEngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\content_script\CommunicatorEngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner\content_script folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\PrivacyScanner folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\CREngine folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1\common_resource folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1737v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1736v0.0.0l1p-1r1o1\resources\ja-jp.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1736v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1736v0.0.0l1p-1r1o1\resources\common.lproj\images folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1736v0.0.0l1p-1r1o1\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1736v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1736v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1735v0.0.0l1p5889r1o1\workflows\Workflow_SecureEraseContextMenuStatus folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1735v0.0.0l1p5889r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1735v0.0.0l1p5889r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1735v0.0.0l1p5889r1o1\workflows\Workflow_ContextMenuHandler folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1735v0.0.0l1p5889r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1735v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1734v0.0.0l1p1r1o1\workflows\Workflow_SecureEraseContextMenuStatus folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1734v0.0.0l1p1r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1734v0.0.0l1p1r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1734v0.0.0l1p1r1o1\workflows\Workflow_ContextMenuHandler folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1734v0.0.0l1p1r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1734v0.0.0l1p1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1733v0.0.0l1p-1r1o1\resources\ja-jp.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1733v0.0.0l1p-1r1o1\resources\common.lproj folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1733v0.0.0l1p-1r1o1\resources folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1733v0.0.0l1p-1r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1732v0.0.0l1p5889r1o1\workflows\Workflow_WIFIStatus folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1732v0.0.0l1p5889r1o1\workflows\Workflow_SystemStatusChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1732v0.0.0l1p5889r1o1\workflows\Workflow_LogOnEvent folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1732v0.0.0l1p5889r1o1\workflows\Workflow_FeatureToggleChange folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1732v0.0.0l1p5889r1o1\workflows folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1732v0.0.0l1p5889r1o1 folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1731v0.0.0l1p1r1o1\workflows\Workflow_WIFIStatus folder moved successfully.
C:\ProgramData\Trend Micro Installer\TrendMicro-TTi_8.0_HE_Full_1426423007\UCPlugin\c17t1731v0.0.0l1p1r1o1\workflows\Workflow_SystemStatusChange folder moved successfully.
C:\ProgramData\Trend Micro Instal
  • khjkighuygbkyu
  • URL
  • 2015/04/16 (Thu) 19:05:40
OTLは削除し状況報告を
OTLのログが膨大で途中で途切れていますが、処置できていると思われるので良いでしょう。
OTLは不要となりますので、導入時の指示に従って削除なされてください。
HJTのログ、CCのインストール情報ログを再取得し、PCの状況報告を添えてご連絡ください。
  • IVNO
  • MAIL
  • 2015/04/17 (Fri) 03:04:30
途切れてましたね
HJT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 12:24:12, on 2015/04/18
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Adobe Speed Launcher] 1429327269
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {AA07EBD2-EBDD-4BD6-9F8F-114BD513492C} (NeffyLauncherCtl Class) - http://dist.cdnetworks.co.jp/cdndist/neffy/NeffyLauncher_v1013.cab
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Protocol hijack: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol hijack: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6}
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Protocol hijack: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol hijack: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
O18 - Protocol hijack: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13939 bytes

インストール情報

Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/04/18 6.00 MB 17.0.0.169
Adobe Reader XI (11.0.10) - Japanese Adobe Systems Incorporated 2015/02/13 203 MB 11.0.10
ALTools Update ESTsoft Corp. 2015/04/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/04/18 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/04/18 2.12
Audacity 2.1.0 Audacity Team 2015/04/11 49.8 MB 2.1.0
Blade&Soul NCSoft 2015/03/28 3.00.0000
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/04/18 2.7.0.31
FireAlpaca 1.2.0 firealpaca.com 2015/03/27 35.5 MB 1.2.0
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/04/18 7.5.5111.1712
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 8 Update 40 Oracle Corporation 2015/03/25 9.10 MB 8.0.400
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/04/18
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/04/18
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/04/08 38.8 MB 4.5.51209
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/03/14 15.0.4701.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/04/18 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NCLauncher (NCSOFT) NCSOFT 2015/04/18
Neffy 1,2,5,0 CDNetworks 2015/04/18 1,2,5,0
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RecordPad 音声録音ソフト NCH Software 2015/02/18 5.14
RPGツクール2000 ランタイムパッケージ 2015/04/18
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/04/18 4.01 MB 8.0.0.3
ハンターヒーロー X-Legend 2014/10/28 1.0000
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/04/18 13.6.1529
幻想神域 X-Legend 2014/10/29 1.0000
真・三國無双 Online Koei 2015/03/26 5.2.0.0

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKCU:RunOnce Adobe Speed Launcher 1429327269
有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
有効 HKLM:Run Adobe ARM Adobe Systems Incorporated "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

インターネット

有効 Extension Lync Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll
有効 Helper Lync Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

Google

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上となります
  • khjkighuygbkyu
  • URL
  • 2015/04/18 (Sat) 12:28:04
まだ感染しています
ログを確認いたしました。
まだ若干感染しているのが確認できます。
それと更新がまだ完了していないソフトウェアがありますので、
そちらの更新も行うことにしましょう。

以下のソフトウェアをダウンロード、インストールしてください。

Adobe Acrobat Reader DC
https://get.adobe.com/reader/?loc=jp
オプションのプログラムの部分は必ずチェックを外してからダウンロードしてください。

Java 8 Update 45
https://java.com/ja/download/
インストール途中で出てくるAskツールバーは、駆除対象ソフトウェアです。
チェックを必ず外してからインストールしてください。

インストールが完了しましたら、CCを起動させてください。
ツール→スタートアップからツール→スタートアップの各項目を開き、
該当するものを無効→エントリの削除の順番でクリックしてください。

Google Chrome
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

無効にできないもの、既に無効になっているものはそのままエントリの削除を、
エントリが存在しない場合は放置で先に進みましょう。
またGoogle Chrome等で削除ができない場合も放置で先に進みましょう。
CCでの作業が完了しましたら、今一度ACをご用意いただき、アップデートまで行ってください。
PCをセーフモードで起動させてください。
HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、
こちらが指示した以外のものは絶対にチェックを入れないでください。

O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
上記のFixが完了したら、Geek起動させ、以下を削除してください。

Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25

ダブルクリックで削除できます。
削除が完了したら自動的にスキャンが始まりますので、検出されたごみすべてにチェックを入れてOKを押してください。
Geekでのアンインストールが完了しましたらGeekを終了させ、ACを使用してマルウェアの掃除を行いましょう。
ACを起動させ、Scanまたはスキャンをクリックします。
スキャンが終了しましたら、Cleaningまたは除去をクリックして掃除を行います。
掃除が完了すると再起動を求められますので、指示に従って通常モードで再起動を行ってください。
これでセーフモードから通常モードに移行します。
再起動前後いずれかにACのログが表示さますので、そちらを貼り付けてご連絡をお願いいたします。
  • IVNO
  • MAIL
  • 2015/04/19 (Sun) 03:21:35
2週間程間が空いてしまいすみません
一応HJTでの処理は済んだのですが何故かセーフモードでgeekが起動できません
どうなっているのでしょう
  • khjkighuygbkyu
  • URL
  • 2015/05/02 (Sat) 00:35:24
その箇所は通常モードで作業を
こんばんは。
いかにも怪しいIDの悪代官です。
IVNOさんがご多忙なので、極道な自分が代打レスします(←どこのヒットマンだよ

>一応HJTでの処理は済んだのですが何故かセーフモードでgeekが起動できません

その症状は自分のほうではまだ見ていませんが、とりあえず通常モードでならgeek起動するなら通常モードでその部分の作業してください。
ブラウザや他のアプリを事前にできるだけ終了させてからgeekでの作業をお願いします
  • 悪代官
  • 2015/05/02 (Sat) 19:12:02
微妙な感じですね
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25

この二つがgeekに表示されず削除できませんでした



# AdwCleaner v4.202 - ログファイルの作成日 04/05/2015 作成時間 11:47:30
# 更新日 23/04/2015 作成元 Xplode
# データベース : 2015-04-23.1 [ローカル]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (x64)
# ユーザー名 : keiko - METALSLIME-PC
# 実行場所 : C:\Users\METALSLIME\Desktop\adwcleaner_4.202.exe
# オプション : 削除

***** [ サービス ] *****


***** [ ファイル / フォルダ ] *****

フォルダ 削除済み項目 : C:\ProgramData\{b42ace8b-894d-4979-b42a-ace8b8943a2e}
フォルダ 削除済み項目 : C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
フォルダ 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
ファイル 削除済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_ja.reimageplus.com_0.localstorage
ファイル 削除済み項目 : C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_ja.reimageplus.com_0.localstorage-journal
ファイル 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_ja.reimageplus.com_0.localstorage
ファイル 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_ja.reimageplus.com_0.localstorage-journal
ファイル 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_jp.hao123.com_0.localstorage
ファイル 削除済み項目 : C:\Users\Noriyuki\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_jp.hao123.com_0.localstorage-journal

***** [ スケジュールタスク ] *****


***** [ ショートカット ] *****


***** [ レジストリ ] *****

キー 削除済み項目 : HKLM\SOFTWARE\Conduit
キー 削除済み項目 : HKU\.DEFAULT\Software\AskPartnerNetwork

***** [ Webブラウザ ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Google Chrome v33.0.1750.154

[C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Preferences] - 削除済み項目 [Extension] : nmmhkkegccagdldgiimedpiccmgmieda
[C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Preferences] - 削除済み項目 [Extension] : nmmhkkegccagdldgiimedpiccmgmieda

*************************

AdwCleaner[R0].txt - [2401 bytes] - [04/05/2015 11:46:47]
AdwCleaner[S0].txt - [2320 bytes] - [04/05/2015 11:47:30]

########## EOF - \AdwCleaner\AdwCleaner[S0].txt - [2379 bytes] ##########

以上です
  • khjkighuygbkyu
  • URL
  • 2015/05/04 (Mon) 11:54:07
では全体の見直しします
作業と報告、ご苦労様です。

>Search App by Ask 2015/02/15
>Shopping App by Ask 2015/03/25

>この二つがgeekに表示されず削除できませんでした

なるほど、またその状況ですか。
他の方のスレでもたびたび出ている症状です。
ですがそれならask自体はもう削除されて動くこともないので、残骸で名前だけが張り付いて残っている状態です。
実質無害化されているので不安がらなくていいです。

ACログを見るといくつか検出されてますが、それらもAC上から処置できていればいいです。

ではここで一度全体の見直しします。
またCCで各タブのログと、インストール情報とHJTログを取り直して、それらをレスで見せてください。
それらを見てから残っている問題を少しずつでも修正しましょう
  • 悪代官
  • 2015/05/04 (Mon) 21:39:28
最近間隔が開き気味で申し訳ない
出来ましたので報告いたします

HJT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 18:25:40, on 2015/05/12
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {134DD8EF-7716-4538-A430-EFEB7517E6E7} (WebLauncher Control) - http://icarus.gamecom.jp/Common/cab/WebLauncher.cab
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {AA07EBD2-EBDD-4BD6-9F8F-114BD513492C} (NeffyLauncherCtl Class) - http://dist.cdnetworks.co.jp/cdndist/neffy/NeffyLauncher_v1013.cab
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12272 bytes

CC
インストール情報

Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2015/04/19 190 MB 15.007.20033
Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/04/18 6.00 MB 17.0.0.169
ALTools Update ESTsoft Corp. 2015/04/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/04/18 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/04/18 2.12
Blade&Soul NCSoft 2015/03/28 3.00.0000
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/04/18 2.7.0.31
FireAlpaca 1.2.0 firealpaca.com 2015/03/27 35.5 MB 1.2.0
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/04/18 7.5.5111.1712
ICARUSONLINE Uninstaller 2015/04/24
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 8 Update 45 Oracle Corporation 2015/04/19 77.1 MB 8.0.450
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/04/18
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/04/18
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/04/08 38.8 MB 4.5.51209
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/05/06 15.0.4711.1003
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2014/07/24 199 MB 5.1.30514.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/04/23 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/04/25 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2015/04/24 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/04/18 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NCLauncher (NCSOFT) NCSOFT 2015/04/18
Neffy 1,2,5,0 CDNetworks 2015/04/18 1,2,5,0
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RPGツクール2000 ランタイムパッケージ 2015/04/18
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
X-Downloader X-Legend 2014/10/27 1.0000
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/04/18 4.01 MB 8.0.0.3
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/04/18 13.6.1529

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

エクスプローラー

有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
有効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

google

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上です
  • khjkighuygbkyu
  • URL
  • 2015/05/12 (Tue) 18:32:15
CCでまた少し処置を
作業と報告、ご苦労様です。

各ログを見たところ、またいくつか問題が見えてます。
順番に修正しましょうか。

下記はまだ最新になってないので、使うなら最新に更新必須です。
>Skype(TM) 7.1 Skype Technologies S.A. 2015/02/13 48.1 MB 7.1.105

次にPCをセーフモードで、GUを使って下記をアンインストールしてください。
>X-Downloader X-Legend 2014/10/27 1.0000

PCを通常モードで再起動したら今度はCCの「Windows」タブを開いて、下記のエントリを「エントリの削除」してください。
>有効 HKCU:RunOnce Uninstall C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64 Microsoft Corporation C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\METALSLIME\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"

これができたらまたPC再起動後に様子見した後、CCでインストール情報ログと「Windows」タブのログだけ取り直して、それを状態報告とともにレスください
  • 悪代官
  • 2015/05/12 (Tue) 20:36:27
初っ端から分からずで…
すみません、GUって何ですかね
多分一度も使ってないので分からなくて
  • khjkighuygbkyu
  • URL
  • 2015/05/18 (Mon) 21:40:20
GUの案内です
こんばんは。
自分の指示がまずくてわかりにくかったですね。

>GUって何ですかね

これはスレの初めのほうでIVNOさんが案内された削除支援ツールです。
(以下引用)
GeekUninstaller(通称:Geek)
ダウンロード
http://www.geekuninstaller.com/geek.zip
ファイル直リンクです。zipファイルですので使用前に展開してください。
解説
http://www.gigafree.net/system/install/geekuninstaller.html
(引用終わり)

これを使って削除対象アプリを選択して「アンインストール」すれば削除可能です。

またわからないところがあれば、レスで訊いてきていいです
  • 悪代官
  • 2015/05/18 (Mon) 21:52:41
セーフで起動しなかったので通常で処理しました
GUってgeekのことだったんですかw

インストール情報

Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2015/04/19 190 MB 15.007.20033
Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/04/18 6.00 MB 17.0.0.169
ALTools Update ESTsoft Corp. 2015/04/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/04/18 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/04/18 2.12
Blade&Soul NCSoft 2015/03/28 3.00.0000
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/04/18 2.7.0.31
FireAlpaca 1.2.0 firealpaca.com 2015/03/27 35.5 MB 1.2.0
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/04/18 7.5.5111.1712
ICARUSONLINE Uninstaller 2015/04/24
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 8 Update 45 Oracle Corporation 2015/04/19 77.1 MB 8.0.450
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/04/18
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/04/18
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/04/08 38.8 MB 4.5.51209
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/05/06 15.0.4711.1003
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2015/05/14 249 MB 5.1.40416.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/04/23 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/04/25 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2015/04/24 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/04/18 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NCLauncher (NCSOFT) NCSOFT 2015/04/18
Neffy 1,2,5,0 CDNetworks 2015/04/18 1,2,5,0
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RPGツクール2000 ランタイムパッケージ 2015/04/18
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype Click to Call Microsoft Corporation 2015/05/12 6.91 MB 7.3.16540.9015
Skype(TM) 7.4 Skype Technologies S.A. 2015/05/12 48.7 MB 7.4.102
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/04/18 4.01 MB 8.0.0.3
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/04/18 13.6.1529

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

以上です
  • khjkighuygbkyu
  • URL
  • 2015/05/19 (Tue) 22:17:52
峠の様子見です
今夜もレスが遅れてすみません。
まあ人生が手遅れなのでこれが芸風と思ってください(謎

ログを見たところ、先の処置はできたようですね。

ログを見た範囲ではおかしなものはなさそうですが、現在もう他に異常は出てませんか?

何も異常がなくなっているなら、しばらく様子見に入りましょう。
そのまま普通にPCを使いながら1週間様子見してから、そこでまたCCで各タブのログとインストール情報ログとHJTのログを取り直して、それらを様子見中の状態報告とともにレスください。

この時点でログにも状態にも異常がなくなってれば峠も越せるでしょう。
野麦峠を越えたことろで楽になりましょう(←ヲマエ一人で逝け
  • 悪代官
  • 2015/05/20 (Wed) 21:21:40
伝説の超御無沙汰です
一週間と言わず一ヶ月待ってみましたが特に気になる点は無いようです(イカでペンキ塗ってたなんて言えない…)
一応ログを

HJT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 22:57:40, on 2015/06/19
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {134DD8EF-7716-4538-A430-EFEB7517E6E7} (WebLauncher Control) - http://icarus.gamecom.jp/Common/cab/WebLauncher.cab
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {AA07EBD2-EBDD-4BD6-9F8F-114BD513492C} (NeffyLauncherCtl Class) - http://dist.cdnetworks.co.jp/cdndist/neffy/NeffyLauncher_v1013.cab
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12495 bytes

インストール情報

Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2015/04/19 190 MB 15.007.20033
Adobe Flash Player 17 ActiveX Adobe Systems Incorporated 2015/06/10 6.00 MB 17.0.0.188
ALTools Update ESTsoft Corp. 2015/04/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/04/18 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/04/18 2.12
Blade&Soul NCSoft 2015/03/28 3.00.0000
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
CosmicBreak2 CyberStep, Inc. 2015/05/28 1.00.0000
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/04/18 2.7.0.31
FireAlpaca 1.2.0 firealpaca.com 2015/03/27 35.5 MB 1.2.0
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/04/18 7.5.5111.1712
ICARUSONLINE Uninstaller 2015/04/24
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 8 Update 45 Oracle Corporation 2015/04/19 77.1 MB 8.0.450
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/04/18
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/04/18
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/04/08 38.8 MB 4.5.51209
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/05/20 15.0.4719.1002
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2015/05/14 249 MB 5.1.40416.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/04/23 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/04/25 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2015/04/24 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/04/18 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NCLauncher (NCSOFT) NCSOFT 2015/04/18
Neffy 1,2,5,0 CDNetworks 2015/04/18 1,2,5,0
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RPGツクール2000 ランタイムパッケージ 2015/04/18
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype Click to Call Microsoft Corporation 2015/05/27 9.94 MB 7.4.0.9058
Skype(TM) 7.4 Skype Technologies S.A. 2015/05/12 48.7 MB 7.4.102
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/04/18 4.01 MB 8.0.0.3
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/04/18 13.6.1529

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run MRT Microsoft Corporation "C:\Windows\system32\MRT.exe" /R
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
有効 HKLM:RunOnce *WerKernelReporting Microsoft Corporation %SYSTEMROOT%\SYSTEM32\WerFault.exe -k -rq

エクスプローラー

有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\ssv.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

Google

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上となります
  • khjkighuygbkyu
  • URL
  • 2015/06/19 (Fri) 23:03:49
askを処置しましょうか
おはようございます。
様子見後も異常は出てないようで何よりです。

ログも見せていただきました。
まだ少し残っているものがあるので、これらを処置しましょう。

下記は現在最新版じゃないので、使うなら更新してください。
>Skype(TM) 7.4 Skype Technologies S.A. 2015/05/12 48.7 MB 7.4.102

次にセーフモードでGeekを使って下記をアンインストールです。
>Search App by Ask 2015/02/15
>Shopping App by Ask 2015/03/25
うまく削除できないときは「エントリの削除」での強制削除も試してください。

ここまでできたらまたCCでインストール情報ログだけ取り直して、それをレスで見せてください
  • 悪代官
  • 2015/06/21 (Sun) 07:36:43
どうにもできません
色々調べてはいるのですが、msconfigを実行しようとすると

システム構成を実行するために必要な特権を持っていません
administrators グループのメンバーとしてこのユーリティを実行してください

と出てセーフモードにできず困っています
今まではユーザー アカウント制御が出ていたのですが…
F8も何故かできなくて
これどうしましょう
  • khjkighuygbkyu
  • 2015/07/13 (Mon) 09:52:18
起動オプションを確認しましょうか
こんばんは。

セーフモードはまだ使えないとのことですね。
では既に確認したかもしれませんが、下記ページの内容に沿ってセーフモードの設定確認してください。
http://www.fmworld.net/cs/azbyclub/qanavi/jsp/qacontents.jsp?PID=7108-4407

msconfigで「システム領域」画面を表示させてから、そこで「スタートアップの選択」がどの設定になっているかを見てください。

また「スタートアップのオプションを選択」にチェックが入っているなら、その中でどの内容が選択されているかも見てください。

見終えたらその内容をレスで教えてください。

なお、ここではまだ上記画面での設定変更はしないでください。
設定変更するとしたら次回レス以降に慎重にかかりましょう
  • 悪代官
  • 2015/07/13 (Mon) 20:47:16
システム以前の問題のようです
毎度お世話になっております

設定を確認しようとしてmsconfigを開こうとするも前レスの文が出てきて開けませんでした
システム構成も同様です
かといって権限があるアカウントは諸事情によりログインを許されておらず満身創痍です
GV-USB2のサポートソフトで何か変なものでもインストールしたのかなとも考えたのですが・・・
  • khjkighuygbkyu
  • 2015/07/15 (Wed) 12:59:52
どうもよくない状態かもしれません
今夜も遅くなってごめんなさい。

>設定を確認しようとしてmsconfigを開こうとするも前レスの文が出てきて開けませんでした
>システム構成も同様です
>かといって権限があるアカウントは諸事情によりログインを許されておらず満身創痍です

ではまた角度を変えて見ましょう。
PCは通常モードでいいので、GUを使って下記を「エントリの削除」を試してください。
>Search App by Ask 2015/02/15
>Shopping App by Ask 2015/03/25

上記が処置できてもできなくても、そのあとにCCで各タブのログとインストール情報ログを取り直して、それらを作業の結果報告とともにレスください。

セーフモードやレジストリエディタが使えなくなっているというのはどうもよくない状態になっているおそれも考えられますので、最悪の場合に備えて必要なデータのバックアップも済ませておいてください
  • 悪代官
  • 2015/07/15 (Wed) 21:09:57
とりあえず完了です
例のごとくgeekは表示されなかったので悪しからず

インストール情報

Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2015/04/19 190 MB 15.007.20033
Adobe Flash Player 18 ActiveX Adobe Systems Incorporated 2015/07/15 17.1 MB 18.0.0.209
ALTools Update ESTsoft Corp. 2015/04/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/04/18 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support Apple Inc. 2014/11/19 95.2 MB 3.1
Apple Mobile Device Support Apple Inc. 2014/11/19 19.5 MB 8.0.5.6
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/04/18 2.12
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
CosmicBreak2 CyberStep, Inc. 2015/05/28 1.00.0000
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/04/18 2.7.0.31
ecolight-gg 2015/06/29 1.21.02.10
FireAlpaca 1.2.0 firealpaca.com 2015/03/27 35.5 MB 1.2.0
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/04/18 7.5.5111.1712
ICARUSONLINE Uninstaller 2015/06/26
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2014/11/19 245 MB 12.0.1.26
Java 7 Update 79 (64-bit) Oracle 2015/06/20 118 MB 7.0.790
Java 8 Update 45 Oracle Corporation 2015/04/19 77.1 MB 8.0.450
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/04/18
LightCapture I-O DATA DEVICE,INC. 2015/06/21 1.10.0000
LightCapture I-O DATA DEVICE,INC. 2015/06/21 1.10.0000
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/04/18
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/04/08 38.8 MB 4.5.51209
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/06/25 15.0.4727.1003
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2015/05/14 249 MB 5.1.40416.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Corporation 2015/06/21 604 KB 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/04/23 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/04/25 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2015/06/26 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/04/18 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NCLauncher (NCSOFT) NCSOFT 2015/04/18
Neffy 1,2,5,0 CDNetworks 2015/04/18 1,2,5,0
NVIDIA 3D Vision コントローラー ドライバー 347.09 NVIDIA Corporation 2015/03/21 347.09
NVIDIA 3D Vision ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
NVIDIA GeForce Experience 2.2.2 NVIDIA Corporation 2015/03/21 2.2.2
NVIDIA HD オーディオ ドライバー 1.3.33.0 NVIDIA Corporation 2015/03/21 1.3.33.0
NVIDIA PhysX システム ソフトウェア 9.14.0702 NVIDIA Corporation 2015/03/21 9.14.0702
NVIDIA グラフィックス ドライバー 347.88 NVIDIA Corporation 2015/03/21 347.88
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RPGツクール2000 ランタイムパッケージ 2015/04/18
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype Click to Call Microsoft Corporation 2015/05/27 9.94 MB 7.4.0.9058
Skype(TM) 7.4 Skype Technologies S.A. 2015/05/12 48.7 MB 7.4.102
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
WavePad 音声編集ソフト NCH Software 2015/07/10 6.15
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/04/18 4.01 MB 8.0.0.3
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/04/18 13.6.1529

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
有効 HKLM:RunOnce InstallShieldSetup Macrovision Corporation C:\PROGRA~2\INSTAL~1\{B7A0C~1\setup.exe /reboot /z

explorer

有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\ssv.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

google

有効 App Gmail 8 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Google ドキュメント 0.9 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension Paste It 142 最初のユーザー C:\Users\METALSLIME\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上です
  • khjkighuygbkyu
  • 2015/07/15 (Wed) 23:33:10
CCからひとつ無効化を
おはようございます。
各ログを見せてもらいました。

まずJavaは更新がリリースされているので、必要なら公式サイトから更新しておいてください。
不要ならJavaはアンインストール推奨です。

Askはやはり削除できないようですね。
以前から気づいてましたがどんどん削除が難しくなってきてます。
GoogleとYahooのツールバー併存も不具合の元なので、これは使うにしてもどちらかひとつだけにして、あとはアンインストールです。

CCの「Windows」タブを開いて、下記を「無効」にしてください。
>有効 HKLM:RunOnce InstallShieldSetup Macrovision Corporation C:\PROGRA~2\INSTAL~1\{B7A0C~1\setup.exe /reboot /z

ここは先の時点ではなかったはずのエントリですね。
削除はしなくていいのでとりあえず無効化してください。

このあとまた一度PC再起動後に様子見してから、そのあと報告をください
  • 悪代官
  • 2015/07/16 (Thu) 07:08:41
無効が効かなかったので
ドーモ
無効化が弾かれたのでエントリ消しましたが大丈夫ですかね

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

以上です
  • khjkighuygbkyu
  • 2015/07/16 (Thu) 10:01:47
セーフモードはまだ起動できませんか?
作業と報告、ご苦労様です。

>無効化が弾かれたのでエントリ消しましたが大丈夫ですかね

はい、ログを見せてもらいましたが、確かに同エントリは消えてますね。
まずは無効化して状態を見るつもりでしたが、どのみち正規エントリではなさそうなのでとりあえずいいとしましょう。

ではそのあとの状態を教えてください。
セーフモードやレジストリエディタが起動できるかどうか、変化が見られるかどうかですね
  • 悪代官
  • 2015/07/16 (Thu) 18:11:58
正規更新?
毎度どうもです

どうもダメですね
msが起動しないというより一部のユーザーアカウント制御のパスワードが必要なファイルを開こうとするとあのエラーが出る感じです
またgeekなどそれ以外はパスワードが要求されないようです
  • khjkighuygbkyu
  • 2015/07/17 (Fri) 11:38:44
管理者権限ないのを見落としてました
レスが遅くなってすみません。

>msが起動しないというより一部のユーザーアカウント制御のパスワードが必要なファイルを開こうとするとあのエラーが出る感じです
>またgeekなどそれ以外はパスワードが要求されないようです

はい、どうも自分が大事なことを見落としてました。

先に書かれた内容を見直して今更気づきました。

>権限があるアカウントは諸事情によりログインを許されておらず満身創痍です

この種の処置作業を行うには、管理者権限ユーザーでPCにログインしないと作業もできません。
特にレジストリ操作はPCの最重要な中枢にあたるので、管理者でないといじることもできなくて当然です。

まずは管理者の方にしっかりと事情を報告して、管理者ユーザーでならregeditとセーフモードが起動できるかを見てもらってください。

管理者でもそれができなければやはり異常ですが、逆に管理者なら正常に起動できれば当然となります。

geekなどのインストール不要な単体動作ツールだけが動作するのもそれが絡んでいるかと思います。

いずれにしてもPC管理者への報告とその許可がなければ勝手に外部の者が処置も指示もできません。

続きの作業を望むなら管理者の方の許可を得るか、もしくは管理者の方の指示に従ってもらうかの2択になります
  • 悪代官
  • 2015/07/17 (Fri) 20:10:06
権限垢でのログイン成功です
お久しぶりです
本館の方では大変失礼致しました

やっと権限垢でログインできました
最近時間がなくかなり遅れてしまい申し訳ございませんでした
  • khjkighuygbkyu
  • 2015/09/23 (Wed) 21:40:29
ではセーフモード起動できますか?
レスが遅くなってすみません。
昨夜は回線障害のためにネットが普通に使えませんでした。

管理者権限でのログインできたということですね。
では管理者権限でセーフモード起動と、msconfig起動もできるかどうかを確認して、その可否を教えてください
  • 悪代官
  • 2015/09/24 (Thu) 06:55:46
確認しました
こんばんは
最近ネットが妙に重くなったり再起動するまで画面が異常に明るくなったりと踏んだり蹴ったりなkhjkighuygbkyuです

msの起動、セーフモード起動共にOKです
なお案の定いつもの垢からは弾かれる模様
  • khjkighuygbkyu
  • 2015/09/24 (Thu) 19:22:12
ここで全体のログを見直します
今夜も遅くなってごめんなさい。

>msの起動、セーフモード起動共にOKです
>なお案の定いつもの垢からは弾かれる模様

はい、やはり管理者権限で詰まってましたか。
ではこちらは原因が分かったので管理者権限で対処すればいいでしょう。

では管理者権限ログイン状態で、CCでの各タブのログとインストール情報ログとHJTログを取り直して、それらを現在の状態報告とともに見せてください
  • 悪代官
  • 2015/09/24 (Thu) 21:05:40
とりまログを
おはようございます

hjt

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 0:44:48, on 2015/09/25
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18015)


Boot mode: Safe mode

Running processes:
C:\Users\keiko\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [BingSvc] C:\Users\keiko\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {134DD8EF-7716-4538-A430-EFEB7517E6E7} (WebLauncher Control) - http://icarus.gamecom.jp/Common/cab/WebLauncher.cab
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {AA07EBD2-EBDD-4BD6-9F8F-114BD513492C} (NeffyLauncherCtl Class) - http://dist.cdnetworks.co.jp/cdndist/neffy/NeffyLauncher_v1013.cab
O16 - DPF: {AE0961BF-4F97-409D-9260-320A4E0FEDDF} (dmm_trigger) - http://ic.7190faaa.108694.1.dmmolgclg.loris.llnwd.net/master/dmm_trigger.cab
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12754 bytes

インストール情報

Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2015/08/08 207 MB 15.008.20082
Adobe Flash Player 19 ActiveX Adobe Systems Incorporated 2015/09/22 17.4 MB 19.0.0.185
ALTools Update ESTsoft Corp. 2015/04/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/04/18 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support(32 ビット) Apple Inc. 2015/07/25 96.0 MB 3.2
Apple Application Support(64 ビット) Apple Inc. 2015/07/25 109 MB 3.2
Apple Mobile Device Support Apple Inc. 2015/07/25 27.9 MB 8.2.1.3
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/04/18 2.12
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
DivXセットアップ DivX, LLC 2015/04/18 2.7.0.31
DMM ゲームランチャー 2015/07/23
Emil chronicle online HEADLOCK 2014/12/01 3.61 GB 1.19.0408
FireAlpaca 1.2.0 firealpaca.com 2015/03/27 35.5 MB 1.2.0
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/04/18 7.5.5111.1712
ICARUSONLINE Uninstaller 2015/06/26
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2015/07/25 238 MB 12.2.1.16
Java 7 Update 79 (64-bit) Oracle 2015/06/20 118 MB 7.0.790
Java 8 Update 45 Oracle Corporation 2015/04/19 77.1 MB 8.0.450
Lhaplus 2015/04/18
LightCapture I-O DATA DEVICE,INC. 2015/06/21 1.10.0000
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/04/18
Microsoft .NET Framework 4.5.1 (日本語) Microsoft Corporation 2014/03/02 2.93 MB 4.5.50938
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/04/08 38.8 MB 4.5.51209
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/08/22 15.0.4745.1002
Microsoft Silverlight Microsoft Corporation 2015/08/13 298 MB 5.1.40728.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Corporation 2015/06/21 604 KB 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/04/23 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/04/25 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2015/06/26 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
MIDI Yoke JOConnell 2015/01/26 25.0 KB 1.75.53
Minecraft 2015/04/18 ${VERSION}
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NCLauncher (NCSOFT) NCSOFT 2015/04/18
Neffy 1,2,5,0 CDNetworks 2015/04/18 1,2,5,0
NVIDIA 3D Vision コントローラー ドライバー 352.65 NVIDIA Corporation 2015/08/23 352.65
NVIDIA 3D Vision ドライバー 355.60 NVIDIA Corporation 2015/08/23 355.60
NVIDIA GeForce Experience 2.5.13.6 NVIDIA Corporation 2015/08/23 2.5.13.6
NVIDIA HD オーディオ ドライバー 1.3.34.3 NVIDIA Corporation 2015/08/23 1.3.34.3
NVIDIA PhysX システム ソフトウェア 9.15.0428 NVIDIA Corporation 2015/08/23 9.15.0428
NVIDIA グラフィックス ドライバー 355.60 NVIDIA Corporation 2015/08/23 355.60
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
QuickTime 7 Apple Inc. 2015/07/25 70.3 MB 7.77.80.95
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RPGツクール2000 ランタイムパッケージ 2015/04/18
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype Click to Call Microsoft Corporation 2015/05/27 9.94 MB 7.4.0.9058
Skype(TM) 7.4 Skype Technologies S.A. 2015/05/12 48.7 MB 7.4.102
WavePad 音声編集ソフト NCH Software 2015/09/22 6.15
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
Yahoo!ツールバー Yahoo! JAPAN. 2015/04/18 4.01 MB 8.0.0.3
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/04/18 13.6.1529

windows

有効 HKCU:Run BingSvc © 2015 Microsoft Corporation C:\Users\keiko\AppData\Local\Microsoft\BingSvc\BingSvc.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

エクスプローラー

有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
無効 Helper Google Toolbar Helper Google Inc. C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\jp2ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
有効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files\Java\jre7\bin\ssv.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

google

有効 App Gmail 8 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0
有効 App Google 検索 0.0.0.20 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
有効 App Google ドライブ 6.4 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0
有効 App YouTube 4.2.7 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0
有効 Extension Anydo Extension 239 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdadialhpiikehpdeejjeiikopddkjem\239
有効 Extension Google ドキュメント 0.6 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.6_0
有効 Extension Paste It 142 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\flkmjdnckhfkjkldogocpnmljokfnbln\142
有効 Extension Screen Resolution Tester 223 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbpeddmakpmblddofjnoghpjminhjph\223
有効 Extension Thunder,QQDownload Files Downloader 121 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfgjjlnidkopfimlhcfcjhakhifbnmof\121
有効 Extension Time Warp 191 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmmhadpnjmokjbmgamifipkjddhlfkhi\191
有効 Extension ZipList Recipe Clipper 142 最初のユーザー C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgnplfeogpkbplfamjbigeekindmicbe\142

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版
※セーフ起動時に取得したものが白紙だった為通常起動モードにて取得し直しました

以上です
垢の移動が地味に面倒なんですよねw
  • khjkighuygbkyu
  • 2015/09/25 (Fri) 00:59:29
HJTログは通常モードで
またもレスが遅くなりました。

各ログを見せてもらいましたが、HJTログがセーフモード状態のログですね。
お手数ですが再度通常モード状態でHJTログを取り直して、それを見せてください。
できるだけ素の状態でのログを確認するためです。

それと以下の確認作業もしておいてください。
下記が現在まだ最新になってないので、必要なら最新版に更新必須です。更新しないならアンインストールが安全です。
Java 7 Update 79 (64-bit) Oracle 2015/06/20 118 MB 7.0.790

Skype(TM) 7.4 Skype Technologies S.A. 2015/05/12 48.7 MB 7.4.102

なお、各ログでもまだ対処すべきところは残っているので、それも承知を
  • 悪代官
  • 2015/09/25 (Fri) 21:36:21
通行起動ログ取得完了です
Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 17:56:55, on 2015/09/26
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18015)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
C:\Users\keiko\AppData\Local\Microsoft\BingSvc\BingSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Users\keiko\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [BingSvc] C:\Users\keiko\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-1750649425-1320342663-1156795937-1001\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe (User 'METALSLIME')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {134DD8EF-7716-4538-A430-EFEB7517E6E7} (WebLauncher Control) - http://icarus.gamecom.jp/Common/cab/WebLauncher.cab
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {AA07EBD2-EBDD-4BD6-9F8F-114BD513492C} (NeffyLauncherCtl Class) - http://dist.cdnetworks.co.jp/cdndist/neffy/NeffyLauncher_v1013.cab
O16 - DPF: {AE0961BF-4F97-409D-9260-320A4E0FEDDF} (dmm_trigger) - http://ic.7190faaa.108694.1.dmmolgclg.loris.llnwd.net/master/dmm_trigger.cab
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13377 bytes

以上です
  • khjkighuygbkyu
  • 2015/09/26 (Sat) 17:59:38
今度は力技でChromeの削除を
今夜も遅くなってごめんなさい。
取り直しのHJTログも見せてもらいました。

では続きの作業に入りましょう。

今度はChromeを力技で一度削除します。
まずChromeのブックマークで必要なものがあればブクマをエクスポートしておいてください。

準備できたらセーフモードでGeekを使ってGoogle系アプリをアンインストールしてください。
Google Chrome Google Inc. 2014/03/01 33.0.1750.154
Google Toolbar for Internet Explorer Google Inc. 2015/04/18 7.5.5111.1712

削除後に通常モードでPC再起動したらディスククリーンアップ後に、Cドライブを開いて下記のフォルダを探して、見つかったらそれを削除です。
C:\Program Files (x86)\Google

C:\Users\ユーザー名\AppData\Local\Google

C:\Users\ユーザー名\AppData\LocalLow\Google

探しても見つからないものはスルーで。

ここまでできたらまた一度再起動後に、今度はGoogle公式サイトに行ってChrome最新版をダウンロード、再インストールしてください。
ですが今後はChromeを使わなくてもいいなら入れなおしも不要です。

このあとまたしばらく様子見後、CCでChromeタブのログだけ取り直して、それを状態報告とともにレスください
  • 悪代官
  • 2015/09/26 (Sat) 22:56:33
お待たせしました
有効 App Gmail 7 ユーザー 1 C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
有効 App Google ドライブ 6.2 ユーザー 1 C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
有効 App Google 検索 0.0.0.19 ユーザー 1 C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
有効 App YouTube 4.2.8 ユーザー 1 C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0
有効 Extension Docs 0.0.0.6 ユーザー 1 C:\Users\keiko\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0

以上です

話は変わりますが、恐らく前にレスしたパスワード入力画面すら出ず問答無用で弾かれるアレが原因かとは思いますが、Blade&Soulを起動しようとすると


[ランチャーエラー]一時フォルダの作成に失敗しました
ランチャーをもう一度インストールしてください。

E03014
PS1_5_C:program Files(x86)\NCJapan\NCLauncher\temp

というメッセージのエラーが出ます
勿論権限があるアカウントなら起動できるのですが、あちらはこのゲームをするのに最適な環境が整っていなくて…
どうすればこのアカウントでも起動できるようになるのでしょうか
  • khjkighuygbkyu
  • 2015/11/10 (Tue) 22:25:25
根本から違ったようです
連レス失礼します
ごめんなさい、前の投稿に書いたものは自己解決できました
ユーザー アカウント制御が無効になってただけみたいです
ご迷惑をお掛けしました
  • khjkighuygbkyu
  • 2015/11/11 (Wed) 14:05:36
では現在の状態とログの再確認です
レスが遅くなってすみません。

問題の原因はユーザーアカウント制御(UAC)でしたか。
基本的なことでしたね。自分もすっかり失念してました。
こいつはうっかりだぁ!(←それ悪代官じゃない

では再度全体の確認しますか。
お手数ですがまたCCで各タブとインストール情報ログとHJTのログも取り直して、それらを異常の有無を含む状態報告とともにレスください
  • 悪代官
  • 2015/11/11 (Wed) 22:45:56
ごくありふれた日常(HJT&CC)
お忙しい中こんばんわ(真っ黒笑顔)
最近微妙に重いのですが気のせいであることを祈って…

HJT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 1:34:05, on 2015/11/12
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18057)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\METALSLIME\Desktop\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [mcpltui_exe] "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKLM\..\Run: [DivXMediaServer] C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Run: [UpdatePPShortCut] "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [ypcsm] C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://*.pokemon-matome.net
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O16 - DPF: {134DD8EF-7716-4538-A430-EFEB7517E6E7} (WebLauncher Control) - http://icarus.gamecom.jp/Common/cab/WebLauncher.cab
O16 - DPF: {53F4962A-8E27-4601-8B01-79A82B4D7FC9} (LoadPrg Class) - https://member.gungho.jp/front/ec/iframe/LoadPrgAx.CAB
O16 - DPF: {AA07EBD2-EBDD-4BD6-9F8F-114BD513492C} (NeffyLauncherCtl Class) - http://dist.cdnetworks.co.jp/cdndist/neffy/NeffyLauncher_v1013.cab
O16 - DPF: {AE0961BF-4F97-409D-9260-320A4E0FEDDF} (dmm_trigger) - http://ic.7190faaa.108694.1.dmmolgclg.loris.llnwd.net/master/dmm_trigger.cab
O16 - DPF: {F4C75105-84BB-414D-AE37-4F0EEEEDE881} (X-Legend GameStarter Control) - https://hh.x-legend.co.jp/X-LegendGameStarter.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll
O20 - AppInit_DLLs:
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: McAfee Home Network (HomeNetSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: iPod サービス (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Smart Connect Technology Agent (ISCTAgent) - Unknown owner - C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee AP Service (McAPExe) - McAfee, Inc. - C:\Program Files\McAfee\MSC\McAPExe.exe
O23 - Service: McAfee Activation Service (McAWFwk) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
O23 - Service: McAfee CSP Service (mccspsvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
O23 - Service: マカフィー パーソナルファイアウォール サービス (McMPFSvc) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee VirusScan Announcer (McNaiAnn) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\Program Files\mcafee\VirusScan\mcods.exe
O23 - Service: McAfee Platform Services (mcpltsvc) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
O23 - Service: McAfee Anti-Malware Core (mfecore) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: McAfee Anti-Spam Service (MSK80Service) - McAfee, Inc. - C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Service (RtkAudioService) - Realtek Semiconductor - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Update web waltz - Unknown owner - C:\Program Files (x86)\web waltz\updatewebwaltz.exe (file missing)
O23 - Service: Util web waltz - Unknown owner - C:\Program Files (x86)\web waltz\bin\utilwebwaltz.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 12705 bytes

インストール情報

Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2015/11/10 210 MB 15.009.20077
Adobe Flash Player 19 ActiveX Adobe Systems Incorporated 2015/11/11 4.48 MB 19.0.0.245
ALTools Update ESTsoft Corp. 2015/04/18 v10.4
ALZip 8.61 ESTsoft Corp. 2015/04/18 v8.61
Apowersoft フリー音声録音ソフト V2.1.7 Apowersoft 2014/04/30 17.8 MB 2.1.7
Apple Application Support(32 ビット) Apple Inc. 2015/07/25 96.0 MB 3.2
Apple Application Support(64 ビット) Apple Inc. 2015/07/25 109 MB 3.2
Apple Mobile Device Support Apple Inc. 2015/07/25 27.9 MB 8.2.1.3
Apple Software Update Apple Inc. 2014/03/02 2.38 MB 2.1.3.127
ASIO4ALL Michael Tippach 2015/04/18 2.12
Blade&Soul NCSoft 2015/11/11 2.6.30.648
Bonjour Apple Inc. 2014/03/02 2.00 MB 3.0.0.10
CCleaner Piriform 2015/03/18 5.03
CosmicBreak2 CyberStep, Inc. 2015/05/28 1.00.0000
Debut 動画キャプチャソフト NCH Software 2014/03/11 1.89
DivXセットアップ DivX, LLC 2015/04/18 2.7.0.31
DMM ゲームランチャー 2015/07/23
ecolight-gg 2015/06/29 1.21.02.10
FireAlpaca 1.2.0 firealpaca.com 2015/03/27 35.5 MB 1.2.0
Google Chrome Google Inc. 2015/11/10 46.0.2490.80
ICARUSONLINE Uninstaller 2015/06/26
Intel(R) Control Center Intel Corporation 2014/02/24 1.2.1.1011
Intel(R) Management Engine Components Intel Corporation 2014/02/24 9.5.14.1724
Intel(R) Network Connections 18.5.54.0 Intel 2014/02/24 25.7 MB 18.5.54.0
Intel(R) Rapid Storage Technology Intel Corporation 2014/02/24 12.8.0.1016
Intel(R) Smart Connect Technology 4.1 x64 Intel 2014/02/24 19.4 MB 4.1.40.2143
Intel(R) USB 3.0 eXtensible Host Controller Driver Intel Corporation 2014/02/24 2.5.0.19
iTunes Apple Inc. 2015/07/25 238 MB 12.2.1.16
Java 8 Update 45 Oracle Corporation 2015/04/19 77.1 MB 8.0.450
Kalydo Player 6.04.02 Eximion B.V. 2014/12/01 6.04.02
Lhaplus 2015/04/18
LightCapture I-O DATA DEVICE,INC. 2015/06/21 1.10.0000
LightCapture I-O DATA DEVICE,INC. 2015/06/21 1.10.0000
LoiLo Game Recorder LoiLo inc. 2014/02/28 7.40 MB 1.1.0.0
LoiLoScope 2 LoiLo inc 2014/02/28 166 MB 2.5.3.2
loopMIDI Tobias Erichsen 2014/03/10 1.06 MB 1.0.5.15
Malwarebytes Anti-Malware バージョン 1.75.0.1300 Malwarebytes Corporation 2015/03/18 19.2 MB 1.75.0.1300
MetasequoiaLE R3.0 2015/04/18
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2015/04/08 38.8 MB 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 2015/10/22 2.93 MB 4.5.51209
Microsoft ASP.NET MVC 4 Runtime Microsoft Corporation 2014/10/16 1.59 MB 4.0.40804.0
Microsoft Office Personal 2013 - ja-jp Microsoft Corporation 2015/10/29 15.0.4763.1003
Microsoft OneDrive Microsoft Corporation 2014/04/25 26.7 MB 17.0.4035.0328
Microsoft Silverlight Microsoft Corporation 2015/08/13 298 MB 5.1.40728.0
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2015/03/15 788 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2015/03/16 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Corporation 2015/06/21 604 KB 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Corporation 2015/04/23 596 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2015/04/25 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2015/02/13 11.1 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 Microsoft Corporation 2015/06/26 17.1 MB 12.0.30501.0
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Microsoft Corporation 2015/02/13 10.0.50903
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - 日本語 Microsoft Corporation 2015/02/13 10.0.50903
Minecraft 2015/04/18 ${VERSION}
MixPad 多重録音ソフト NCH Software 2014/03/18 3.37
MSXML 4.0 SP2 (KB954430) Microsoft Corporation 2015/03/27 1.27 MB 4.20.9870.0
MSXML 4.0 SP2 (KB973688) Microsoft Corporation 2015/03/27 1.33 MB 4.20.9876.0
NCLauncher (NCSOFT) NCSOFT 2015/04/18
Neffy 1,2,5,0 CDNetworks 2015/04/18 1,2,5,0
NVIDIA 3D Vision コントローラー ドライバー 352.65 NVIDIA Corporation 2015/08/23 352.65
NVIDIA 3D Vision ドライバー 355.60 NVIDIA Corporation 2015/08/23 355.60
NVIDIA GeForce Experience 2.5.13.6 NVIDIA Corporation 2015/08/23 2.5.13.6
NVIDIA HD オーディオ ドライバー 1.3.34.3 NVIDIA Corporation 2015/08/23 1.3.34.3
NVIDIA PhysX システム ソフトウェア 9.15.0428 NVIDIA Corporation 2015/08/23 9.15.0428
NVIDIA グラフィックス ドライバー 355.60 NVIDIA Corporation 2015/08/23 355.60
PHANTASY STAR ONLINE 2 SEGA 2015/01/10 7.24 MB
QuickTime 7 Apple Inc. 2015/07/25 70.3 MB 7.77.80.95
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2014/02/24 6.0.1.7004
RPGツクール2000 ランタイムパッケージ 2015/04/18
RPGツクールVX RTP Enterbrain 2015/01/07 42.1 MB 1.02
Search App by Ask 2015/02/15
Shopping App by Ask 2015/03/25
Skype Click to Call Microsoft Corporation 2015/10/14 13.0 MB 7.5.0.9082
Skype(TM) 7.4 Skype Technologies S.A. 2015/05/12 48.7 MB 7.4.102
Switch 音声ファイル変換ソフト NCH Software 2014/03/18 4.53
WavePad 音声編集ソフト NCH Software 2015/10/09 6.15
Windows Live Essentials Microsoft Corporation 2014/02/28 16.4.3522.0110
Yahoo!かんたんパソコン設定 Yahoo! JAPAN. 2014/02/28 4.00 KB 1.2.1.1
Yahoo!ツールバー Yahoo! JAPAN. 2015/04/18 4.01 MB 8.0.0.3
パソコン診断ソフト PC-Doctor PC-Doctor, Inc. 2014/03/02 128 MB 6.0.6062.78
マカフィーインターネットセキュリティ McAfee, Inc. 2015/04/18 13.6.1529

windows

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

Internet

有効 Extension OneNote Linked Notes Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
有効 Extension Send to OneNote Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
有効 Extension Skype Click to Call settings Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Extension Skype for Business Click to Call Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Java(tm) Plug-In 2 SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll
無効 Helper Java(tm) Plug-In SSV Helper Oracle Corporation C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll
有効 Helper Microsoft SkyDrive Pro Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL
無効 Helper Office Document Cache Handler Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
無効 Helper Skype Click to Call for Internet Explorer Microsoft Corporation C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
有効 Helper Skype for Business Browser Helper Microsoft Corporation C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーフィッシング警告 Yahoo Japan Corporation. C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\ypho.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Helper Yahoo!ツールバーヘルパー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
無効 Toolbar Yahoo!ツールバー Yahoo! JAPAN C:\Program Files\Yahoo!J\Toolbar64\8_0_0_3\Modules\YahooToolBar.dll

google
(白紙)

スケジュールされたタスク

有効 Task PCDEventLauncherTask PC-Doctor, Inc. "C:\Program Files\PC-Doctor Diagnostics\sessionchecker.exe"
有効 Task {0305BE36-50D7-4A83-920D-C5DC64B746ED} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\uninstall.exe -d C:\Users\METALSLIME\Desktop
有効 Task {0A083AEA-E4F5-4B0E-8996-4000CC80DC83} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版\SETUP.EXE -d C:\Users\METALSLIME\Desktop\ツクール2000\エディタ体験版

以上です

CCの欄が白紙なのは結構新鮮ですねw
  • khjkighuygbkyu
  • 2015/11/12 (Thu) 01:42:45
CCを削除後に動作確認を
おはようございます。
各ログを見せてもらいましたが、状態は落ち着いているようですね。

>最近微妙に重いのですが気のせいであることを祈って…


これですが、ちょっと確認してみてください。
セーフモードでGUを使って、今回の作業で使ったCCleanerをアンインストールしてみてください。

削除後にPCを通常モードで再起動したらそこでまたしばらく様子見のあと、動作の重さが改善したかどうかをレスください。

CCは現バージョンでは常駐監視機能のせいで、ユーザーがそれを無効化設定でもしない限り重くなってしまうのです。
無効化設定してもいいですがまずは一度削除で確認しましょう
  • 悪代官
  • 2015/11/12 (Thu) 07:30:32
動作についての報告
ご無沙汰しております
約11日間様子を見ました

はい、どうも重いみたいです
起動直後にインターネットを開くと妙に読み込みが遅くなったりしてます
一応初期や健康な状態の際もなってはいたのですが、当時と比べると明らかに遅く感じますね…
まあexplorerを再起動すれば直るのであまり気にはなりませんが
  • khjkighuygbkyu
  • 2015/11/23 (Mon) 04:05:19
スタートアップを減らしましょうか
こんばんは。
作業と報告、ご苦労様です。

>起動直後にインターネットを開くと妙に読み込みが遅くなったりしてます
>一応初期や健康な状態の際もなってはいたのですが、当時と比べると明らかに遅く感じますね…
>まあexplorerを再起動すれば直るのであまり気にはなりませんが

CCのアンインストールしても重いとのことですか。
とするとこれについてはCCの常駐が原因ではなさそうですね。

ただ、先に見せてもらったCCでの「Windows」タブのログ(スタートアップ)では常駐プログラムが多いのも確かです。
それだけ常駐してたらPC起動時から負担かかるのは無理ないです。

ではちょっと以下の確認作業してみてください。

まず削除してもらったCCを再度入れなおしておいてください。

次にCC起動して「Windows」タブ内の下記を「無効」にしてください。「エントリの削除」はしないように。
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe

有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe

有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW

有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"

有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"

これらは常駐させなくてもアプリ自体は手動で起動すれば普通に使えます。
PC起動時の負荷を軽減させたいなら無効化しておくのが有効な方法なので、今回はこれらを無効化します。

これができたら念のため一度PC再起動後、また様子見後にCCで「Windows」タブを含む各タブのログをとりなおして、それらを状態報告とともにレスください
  • 悪代官
  • 2015/11/23 (Mon) 20:30:40
少し遅めの明けおめです
ご無沙汰しております
年末年始のドタバタが落ち着いたら、あろうことかここのことを忘れているという大失態を…(´・ω・)

アプリの無効化を試みたのですが全て弾かれてしまいました
少し日を置いてもやはりダメみたいです

とりあえずログを

有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run Gyazo Nota Inc. C:\Program Files (x86)\Gyazo\GyStation.exe
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe
有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
有効 HKLM:Run IAStorIcon Intel Corporation "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
有効 HKLM:Run IMSS Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"
有効 HKLM:Run mcpltui_exe McAfee, Inc. "C:\Program Files\Common~1\McAfee\Platform\mcuicnt.exe" /platui /runkey
有効 HKLM:Run NvBackend NVIDIA Corporation "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
有効 HKLM:Run Nvtmru "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
有効 HKLM:Run RtHDVCpl Realtek Semiconductor C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
有効 HKLM:Run ShadowPlay Microsoft Corporation C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
有効 HKLM:Run UpdatePPShortCut CyberLink Corp. "C:\Program Files (x86)\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\PowerProducer" update "Software\CyberLink\PowerProducer\5.0"
有効 HKLM:Run USB3MON Intel Corporation "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
有効 HKLM:RunOnce MSKSSRV Microsoft Corporation rundll32.exe streamci,StreamingDeviceSetup {96E080C7-143C-11D1-B40F-00A0C9223196},{3C0D501A-140B-11D1-B40F-00A0C9223196},{3C0D501A-140B-11D1-B40F-00A0C9223196}
有効 HKLM:RunOnce MSPCLOCK Microsoft Corporation rundll32.exe streamci,StreamingDeviceSetup {97ebaacc-95bd-11d0-a3ea-00a0c9223196},{53172480-4791-11D0-A5D6-28DB04C10000},{53172480-4791-11D0-A5D6-28DB04C10000}
有効 HKLM:RunOnce MSPQM Microsoft Corporation rundll32.exe streamci,StreamingDeviceSetup {DDF4358E-BB2C-11D0-A42F-00A0C9223196},{97EBAACB-95BD-11D0-A3EA-00A0C9223196},{97EBAACB-95BD-11D0-A3EA-00A0C9223196}
有効 HKLM:RunOnce MSTEE.CxTransform Microsoft Corporation rundll32.exe streamci,StreamingDeviceSetup {cfd669f1-9bc2-11d0-8299-0000f822fe8a},{CF1DDA2C-9743-11D0-A3EE-00A0C9223196},{CF1DDA2C-9743-11D0-A3EE-00A0C9223196},C:\Windows\inf\ksfilter.inf,MSTEE.Interface.Install
有効 HKLM:RunOnce MSTEE.Splitter Microsoft Corporation rundll32.exe streamci,StreamingDeviceSetup {cfd669f1-9bc2-11d0-8299-0000f822fe8a},{0A4252A0-7E70-11D0-A5D6-28DB04C10000},{0A4252A0-7E70-11D0-A5D6-28DB04C10000},C:\Windows\inf\ksfilter.inf,MSTEE.Interface.Install
有効 HKLM:RunOnce WDM_DRMKAUD Microsoft Corporation rundll32.exe streamci,StreamingDeviceSetup {EEC12DB6-AD9C-4168-8658-B03DAEF417FE},{ABD61E00-9350-47e2-A632-4438B90C6641},{FFBB6E3F-CCFE-4D84-90D9-421418B03A8E},C:\Windows\inf\WDMAUDIO.inf,WDM_DRMKAUD.Interface.Install

以上です
  • khjkighuygbkyu
  • 2016/01/28 (Thu) 00:43:32
対象アプリを一度入れなおしです
お久しぶりです。

>年末年始のドタバタが落ち着いたら、あろうことかここのことを忘れているという大失態を…(´・ω・)

いえ、自分も人生が手遅れなので大丈夫です(謎

>アプリの無効化を試みたのですが全て弾かれてしまいました

はい、ログも見せてもらいましたが、無効化できないようですね。
それらは危険ではないですが、PCの動作軽減するなら無効化しておくとその分楽にはなりますから、できれば無効化を勧めたのですが、いまはここは置いときますか。

ではよければ以下の作業してみますか?これは無理には勧めないので、その気がなければ実行しなくてもいいです。

まずセーフモードでYahooとDivXとiTunesとQuickTimeを一度GUを使ってアンインストールしてください。

削除したらPC再起動後にディスククリーンアップのあと、CCを起動して「Windows」タブ内に下記エントリがまだ残っていればそれを「エントリの削除」です。見つからないものはスルーで。
有効 HKCU:Run ypcsm Yahoo! Japan Corporation. C:\Users\METALSLIME\AppData\Local\Yahoo!J\PC Service Manager\ypcsm.exe

有効 HKLM:Run DivXMediaServer DivX, LLC C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe

有効 HKLM:Run DivXUpdate DivX, LLC "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW

有効 HKLM:Run iTunesHelper Apple Inc. "C:\Program Files\iTunes\iTunesHelper.exe"

有効 HKLM:Run QuickTime Task Apple Inc. "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

このあと、各アプリで必要なものは公式サイトから入れなおししていいです。

入れなおしの後に、またCCで各エントリを無効化してから、そのあとCCでまたWindowsタブのログだけ見せてください
  • 悪代官
  • 2016/01/28 (Thu) 07:55:35

返信フォーム※初心者、通りすがり等、重複しやすい名前の利用はご遠慮ください。




プレビュー (投稿前に内容を確認)