OTL logfile created on: 2015/03/21 23:32:55 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\nao\Downloads
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17691)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd
2.93 Gb Total Physical Memory | 2.52 Gb Available Physical Memory | 86.05% Memory free
5.85 Gb Paging File | 5.45 Gb Available in Paging File | 93.21% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 224.78 Gb Total Space | 153.01 Gb Free Space | 68.07% Space Free | Partition Type: NTFS
Drive D: | 224.78 Gb Total Space | 199.69 Gb Free Space | 88.84% Space Free | Partition Type: NTFS
Computer Name: NAO-PC | User Name: nao | Logged in as Administrator.
Boot Mode: SafeMode | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2015/03/20 22:05:03 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\nao\Downloads\OTL.exe
PRC - [2011/02/25 14:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
[color=#E56717]========== Modules (No Company Name) ==========[/color]
[color=#E56717]========== Services (SafeList) ==========[/color]
SRV - [2015/03/18 10:08:50 | 000,268,464 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2015/02/20 10:56:53 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2014/12/03 15:31:16 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Stopped] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/04/03 20:21:48 | 000,315,008 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014/03/27 15:16:42 | 000,131,608 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\AVLib\SsBeService2.exe -- (SonicStage Back-End Service2)
SRV - [2014/03/13 10:43:32 | 000,167,208 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Sony Shared\OpenMG\PACSPTISVR.exe -- (PACSPTISVR)
SRV - [2013/10/10 16:25:28 | 000,356,128 | ---- | M] (Kaspersky Lab ZAO) [Auto | Stopped] -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe -- (AVP)
SRV - [2013/05/27 13:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2012/04/04 10:27:27 | 000,012,800 | ---- | M] (FUJITSU LIMITED) [Auto | Stopped] -- C:\Program Files\Fujitsu\chitose\updnvsrv.exe -- (UpdateNaviInstallService)
SRV - [2010/10/27 16:40:36 | 000,087,336 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Fujitsu\NetworkPlayer\Kernel\DMP\CLHNService.exe -- (CLHNService3)
SRV - [2010/05/03 20:35:37 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2010/04/23 21:35:46 | 000,147,088 | ---- | M] (Koozyt, Inc.) [Auto | Stopped] -- C:\Program Files\PlaceEngine\PlaceEngineService.exe -- (PlaceEngineService)
SRV - [2009/11/12 16:27:52 | 000,269,824 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Fujitsu\Plugfree NETWORK\PFNService.exe -- (PFNService)
SRV - [2009/11/06 18:02:08 | 000,062,824 | ---- | M] (FUJITSU LIMITED) [Auto | Stopped] -- C:\Program Files\Fujitsu\DustSolution\FJDService.exe -- (FjDstService)
SRV - [2009/10/07 21:03:00 | 000,157,544 | ---- | M] (FUJITSU LIMITED) [Auto | Stopped] -- C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCSRVC.exe -- (PUSCSRVC)
SRV - [2009/10/01 12:34:22 | 002,314,240 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2009/10/01 12:33:08 | 000,262,144 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2009/08/27 15:30:12 | 000,040,960 | ---- | M] (Softex Inc.) [Auto | Stopped] -- C:\Program Files\Softex\OmniPass\OmniServ.exe -- (omniserv)
SRV - [2009/07/31 23:11:22 | 001,807,608 | ---- | M] (AuthenTec, Inc.) [Auto | Stopped] -- C:\Program Files\Fingerprint Sensor\AtService.exe -- (ATService)
SRV - [2009/07/14 10:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/02 20:09:24 | 000,107,792 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Fujitsu\NetworkPlayer Server\NetworkPlayerServer.exe -- (NetworkPlayer Server)
SRV - [2007/07/24 11:15:14 | 000,185,632 | ---- | M] (Protexis Inc.) [Auto | Stopped] -- C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe -- (PSI_SVC_2)
SRV - [2007/06/05 13:20:32 | 000,177,704 | ---- | M] () [Auto | Stopped] -- C:\Windows\System32\PSIService.exe -- (ProtexisLicensing)
SRV - [2007/02/12 16:43:00 | 000,065,536 | ---- | M] (O2Micro International) [Auto | Stopped] -- C:\Windows\System32\o2flash.exe -- (O2Flash)
SRV - [2007/01/04 19:48:50 | 000,112,152 | ---- | M] (InterVideo) [Auto | Stopped] -- C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe -- (IviRegMgr)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - [2015/02/18 10:45:46 | 000,145,224 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\kneps.sys -- (kneps)
DRV - [2014/05/21 00:47:29 | 000,597,600 | ---- | M] (Kaspersky Lab ZAO) [File_System | System | Stopped] -- C:\Windows\System32\drivers\klif.sys -- (KLIF)
DRV - [2013/12/11 20:14:03 | 000,135,776 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\kl1.sys -- (kl1)
DRV - [2013/12/11 20:14:03 | 000,025,696 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\klim6.sys -- (KLIM6)
DRV - [2013/10/10 16:26:05 | 000,025,696 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\klmouflt.sys -- (klmouflt)
DRV - [2013/10/10 16:26:05 | 000,025,696 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\klkbdflt.sys -- (klkbdflt)
DRV - [2013/10/02 09:42:31 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2013/06/18 18:26:48 | 000,044,000 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Stopped] -- C:\Windows\System32\drivers\kltdi.sys -- (kltdi)
DRV - [2013/01/11 04:41:34 | 000,037,064 | ---- | M] (Anchorfree Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\taphss6.sys -- (taphss6)
DRV - [2012/08/23 23:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2011/08/23 06:11:48 | 000,270,336 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\IntcDAud.sys -- (IntcDAud)
DRV - [2010/02/26 15:31:24 | 000,132,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Impcd.sys -- (Impcd)
DRV - [2010/02/24 11:09:38 | 000,141,568 | ---- | M] (NEC Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV - [2010/02/24 11:09:38 | 000,060,544 | ---- | M] (NEC Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nusb3hub.sys -- (nusb3hub)
DRV - [2009/10/16 03:31:58 | 000,274,984 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\k57nd60x.sys -- (k57nd60x)
DRV - [2009/10/06 01:31:48 | 001,221,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2009/09/28 15:27:16 | 000,226,864 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
DRV - [2009/09/18 05:54:14 | 000,041,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\HECI.sys -- (HECI)
DRV - [2009/08/01 00:10:26 | 000,659,328 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ATSwpWDF.sys -- (ATSwpWDF)
DRV - [2009/07/14 08:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/07/14 07:02:53 | 000,311,296 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\yk62x86.sys -- (yukonw7)
DRV - [2009/07/03 09:51:00 | 000,044,064 | ---- | M] (O2Micro) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\o2sd.sys -- (O2SDRDR)
DRV - [2009/06/24 14:33:18 | 000,017,008 | ---- | M] (FUJITSU LIMITED) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\FBIOSDRV.sys -- (FBIOSDRV)
DRV - [2009/06/18 01:56:32 | 000,028,560 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LUsbFilt.sys -- (LUsbFilt)
DRV - [2009/06/18 01:56:16 | 000,037,392 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt)
DRV - [2009/06/18 01:56:06 | 000,035,472 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt)
DRV - [2009/05/13 14:12:00 | 000,048,672 | ---- | M] (O2Micro ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\o2media.sys -- (O2MDRDR)
DRV - [2007/04/17 20:09:28 | 000,011,032 | ---- | M] (InterVideo) [Kernel | Auto | Stopped] -- C:\Windows\System32\drivers\regi.sys -- (regi)
DRV - [2006/11/01 19:59:24 | 000,005,632 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\fuj02e3.sys -- (FUJ02E3)
DRV - [2006/11/01 19:20:28 | 000,005,888 | ---- | M] (FUJITSU LIMITED) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\fuj02b1.sys -- (FUJ02B1)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{2388D2F3-5017-438D-9107-2113F47B749D}: "URL" =
http://azby.search.nifty.com/cgi-bin/search.cgi?select=1064&htmltype=2&cflg=%e6%a4%9c%e7%b4%a2&Text={searchTerms}
IE - HKLM\..\SearchScopes\{818A52AF-D9B3-46A4-9226-E34C14F3E759}: "URL" =
http://www.amazon.co.jp/gp/search?ie=UTF8&tag=fujitsu07baspps-22&index=blended&keywords={searchTerms}
IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}: "URL" =
http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://azby.fmworld.net/?ref=201001
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://jp.msn.com/?ocid=iehp
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ja-JP
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 53 DC 2D 0C A0 81 CE 01 [binary data]
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410}: "URL" =
http://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
IE - HKU\S-1-5-21-68603925-328359452-782964379-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.40.2: C:\windows\system32\npdeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.40.2: C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\nao\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\nao\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\url_advisor@kaspersky.com: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com [2015/02/18 10:45:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtual_keyboard@kaspersky.com: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com [2015/02/18 10:45:52 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\content_blocker@kaspersky.com: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com [2015/02/18 10:45:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\anti_banner@kaspersky.com: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com [2015/02/18 10:45:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\online_banking@kaspersky.com: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com [2015/02/18 10:45:52 | 000,000,000 | ---D | M]
[2013/07/08 16:54:55 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[color=#E56717]========== Chrome ==========[/color]
CHR - default_search_provider: (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Shockwave Flash (Disabled) = C:\Users\nao\AppData\Local\Google\Chrome\Application\21.0.1180.83\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\nao\AppData\Local\Google\Chrome\Application\41.0.2272.89\gcswf32.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\windows\system32\Macromed\Flash\NPSWF32_11_3_300_271.dll
CHR - plugin: Remoting Viewer (Disabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\nao\AppData\Local\Google\Chrome\Application\41.0.2272.89\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\nao\AppData\Local\Google\Chrome\Application\41.0.2272.89\pdf.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.477_0\plugin/npUrlAdvisor.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.477_0\plugin/npVKPlugin.dll
CHR - plugin: Kaspersky Anti-Virus (Enabled) = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Java(TM) Platform SE 6 U33 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 6.0.330.3 (Enabled) = C:\windows\system32\npdeployJava1.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll
CHR - plugin: Windows Liveツョ Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Google Update (Enabled) = C:\Users\nao\AppData\Local\Google\Update\1.3.21.115\npGoogleUpdate3.dll
CHR - Extension: No name found = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Kaspersky Anti-Virus = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.1.4190_0\
CHR - Extension: No name found = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\emlbaebgcjjohdhbhjkcjjacepjpknii\2.0.6_0\
CHR - Extension: No name found = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcacbggjcnkdgchjnekppjkkkhlijkdd\2\
CHR - Extension: No name found = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpoimibckejjdjcfbdnajaicnklhfplh\2.3.0.43_0\
CHR - Extension: No name found = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\
CHR - Extension: No name found = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8_0\
CHR - Extension: Kaspersky Anti-Virus = C:\Users\nao\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.1.4190_0\
O1 HOSTS File: ([2009/06/11 06:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Content Blocker Plugin) - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Virtual Keyboard Plugin) - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Safe Money Plugin) - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
O2 - BHO: (Toolbar Browser Helper Objects) - {B37B14B8-699F-4002-9254-D1AB00FD07B5} - C:\Program Files\@nifty toolbar\nbho.dll (NIFTY Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (URL Advisor Plugin) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O3 - HKLM\..\Toolbar: (no name) - !{82E1477C-B154-48D3-9891-33D83C26BCD3} - No CLSID value found.
O3 - HKLM\..\Toolbar: (AzbyClubツールバー(&A)) - {3DB1C21B-A7E0-4C3F-B39E-E00DD8792D90} - C:\Program Files\@nifty toolbar\ntoolbar.dll (NIFTY Corporation)
O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-68603925-328359452-782964379-1001\..\Toolbar\WebBrowser: (AzbyClubツールバー(&A)) - {3DB1C21B-A7E0-4C3F-B39E-E00DD8792D90} - C:\Program Files\@nifty toolbar\ntoolbar.dll (NIFTY Corporation)
O4 - HKLM..\Run: [ATSwpNav] C:\Program Files\Fingerprint Sensor\ATSwpNav.exe (AuthenTec, Inc.)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel MyPhoto\Corel Photo Downloader.exe (Corel, Inc.)
O4 - HKLM..\Run: [CorelLiteMD] c:\Program Files\Common Files\Ulead Systems\MDLite\MDLiteLauncher.dll (Corel TW Corp.)
O4 - HKLM..\Run: [EzSptBtn] C:\Fujitsu\sptnavi\EzSptBtn4.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [FDM7] C:\Program Files\Fujitsu\FDM7\FdmDaemon.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [FJBATAID2] C:\Program Files\Fujitsu\BatteryAid2\BatteryDaemon.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [FJDust] C:\Program Files\Fujitsu\DustSolution\HokoriApp.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [FJUPDNV_Chitose] File not found
O4 - HKLM..\Run: [IndicatorUtility] C:\Program Files\Fujitsu\IndicatorUtility\IndicatorUty.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\windows\KHALMNPR.Exe (Logitech, Inc.)
O4 - HKLM..\Run: [LoadBtnHnd] C:\Program Files\Fujitsu\Fujitsu Quick Touch\BtnHnd.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [LoadFUJ02E3] C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [LoadFujitsuQuickTouch] C:\Program Files\Fujitsu\Fujitsu Quick Touch\QuickTouch.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [LoadPUSCDaemon] C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCDaemon.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [NetworkPlayerServerHelper] C:\Program Files\Fujitsu\NetworkPlayer Server\NetworkPlayerServerHelper.exe (DigiOn, Inc.)
O4 - HKLM..\Run: [NUSB3MON] C:\Program Files\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (NEC Electronics Corporation)
O4 - HKLM..\Run: [OmniPass] C:\Program Files\Softex\OmniPass\scureapp.exe ()
O4 - HKLM..\Run: [PfNet] C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe (Fujitsu Limited.)
O4 - HKLM..\Run: [PlaceEngine] C:\Program Files\PlaceEngine\PlaceEngine.exe (Koozyt Inc.)
O4 - HKLM..\Run: [PUSCKAPLEXE] C:\Program Files\Fujitsu\PowerUtility\schedule\PUSCKAPLEXE.exe (FUJITSU LIMITED)
O4 - HKLM..\Run: [Syncwith] C:\Program Files\I-O DATA\Sync with\SyncwithSchedule.exe ()
O4 - HKLM..\Run: [UVS11 Preload] C:\Program Files\Corel\DVD MovieWriter for FUJITSU\Movie Wizard\uvPL.exe (InterVideo Digital Technology Corporation)
O4 - HKU\S-1-5-21-68603925-328359452-782964379-1001..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-68603925-328359452-782964379-1001..\RunOnce: [Adobe Speed Launcher] 1426863961 File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-68603925-328359452-782964379-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8 - Extra context menu item: SmileDownloaderで保存する(&Y) - D:\SmileDownloader\IEMenu\IEMenuExt.htm ()
O9 - Extra Button: セキュリティキーボード - {0C4CC089-D306-440D-9772-464E226F6539} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
O9 - Extra Button: 危険サイト診断 - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/update/1.8.0/jinstall-1_8_0_40-windows-i586.cab (Java Plug-in 11.40.2)
O16 - DPF: {CAFEEFAC-0018-0000-0040-ABCDEFFEDCBA}
http://java.sun.com/update/1.8.0/jinstall-1_8_0_40-windows-i586.cab (Java Plug-in 1.8.0_40)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
http://java.sun.com/update/1.8.0/jinstall-1_8_0_40-windows-i586.cab (Java Plug-in 11.40.2)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D4DD8141-A9E2-4EFD-AD6E-DA2EDC9876C1}: DhcpNameServer = 192.168.0.1
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/11 06:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
CREATERESTOREPOINT
Unable to start System Restore Service. Error code 1084
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2015/03/20 22:08:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\herdProtect
[2015/03/20 22:08:24 | 000,000,000 | ---D | C] -- C:\Program Files\Reason
[2015/03/18 23:03:59 | 000,000,000 | ---D | C] -- C:\Users\nao\AppData\Roaming\Malwarebytes
[2015/03/18 23:03:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/03/18 22:27:40 | 000,000,000 | ---D | C] -- C:\Users\nao\Desktop\CCログ
[2015/03/18 20:15:40 | 000,000,000 | ---D | C] -- C:\Users\nao\AppData\Roaming\Geek Uninstaller
[2015/03/18 17:03:54 | 000,000,000 | ---D | C] -- C:\Users\nao\AppData\Roaming\Oracle
[2015/03/18 16:55:30 | 000,898,472 | ---- | C] (Oracle Corporation) -- C:\windows\System32\npdeployJava1.dll
[2015/03/18 16:55:30 | 000,818,088 | ---- | C] (Oracle Corporation) -- C:\windows\System32\deployJava1.dll
[2015/03/18 16:53:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2015/03/18 16:53:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2015/03/18 14:39:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/03/18 14:39:48 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/03/11 11:27:01 | 002,744,320 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\rdpcorets.dll
[2015/03/11 11:27:01 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\rdpudd.dll
[2015/03/11 11:27:01 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\RdpGroupPolicyExtension.dll
[2015/03/11 11:26:57 | 002,381,312 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
[2015/03/11 11:26:54 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollector.exe
[2015/03/11 11:26:54 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\JavaScriptCollectionAgent.dll
[2015/03/11 11:26:54 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwproxystub.dll
[2015/03/11 11:26:53 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dll
[2015/03/11 11:26:53 | 000,684,544 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ie4uinit.exe
[2015/03/11 11:26:53 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2015/03/11 11:26:53 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9diag.dll
[2015/03/11 11:26:53 | 000,418,304 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtmsft.dll
[2015/03/11 11:26:53 | 000,342,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iedkcs32.dll
[2015/03/11 11:26:53 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieUnatt.exe
[2015/03/11 11:26:53 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jsproxy.dll
[2015/03/11 11:26:53 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iernonce.dll
[2015/03/11 11:26:52 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2015/03/11 11:26:52 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\inetcpl.cpl
[2015/03/11 11:26:52 | 000,689,152 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2015/03/11 11:26:51 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2015/03/11 11:26:51 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iesetup.dll
[2015/03/11 11:26:51 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollectorres.dll
[2015/03/11 11:26:50 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieui.dll
[2015/03/11 11:26:50 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtrans.dll
[2015/03/11 11:26:48 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtmlmedia.dll
[2015/03/11 11:26:48 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MshtmlDac.dll
[2015/03/11 11:26:43 | 004,300,288 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9.dll
[2015/03/11 11:26:06 | 000,299,008 | ---- | C] (Adobe Systems Incorporated) -- C:\windows\System32\atmfd.dll
[2015/03/11 11:26:06 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\windows\System32\atmlib.dll
[2015/03/11 11:26:06 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dciman32.dll
[2015/03/11 11:26:05 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\fontsub.dll
[2015/03/11 11:25:55 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\adtschema.dll
[2015/03/11 11:25:55 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ncrypt.dll
[2015/03/11 11:25:55 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msaudite.dll
[2015/03/11 11:25:55 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msobjs.dll
[2015/03/11 11:25:55 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\auditpol.exe
[2015/03/11 11:25:55 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\sspisrv.dll
[2015/03/11 11:25:31 | 000,171,520 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ubpm.dll
[2015/03/11 11:25:26 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\WMPhoto.dll
[2015/03/11 11:25:05 | 000,988,160 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drmv2clt.dll
[2015/03/11 11:25:05 | 000,744,960 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\blackbox.dll
[2015/03/11 11:25:04 | 000,617,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wmdrmsdk.dll
[2015/03/11 11:25:03 | 003,209,728 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mf.dll
[2015/03/11 11:25:01 | 003,973,048 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntkrnlpa.exe
[2015/03/11 11:25:01 | 000,406,016 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drmmgrtn.dll
[2015/03/11 11:25:00 | 003,917,760 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntoskrnl.exe
[2015/03/11 11:24:59 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\evr.dll
[2015/03/11 11:24:58 | 001,329,664 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\quartz.dll
[2015/03/11 11:24:57 | 000,455,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\winresume.exe
[2015/03/11 11:24:57 | 000,354,816 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mfplat.dll
[2015/03/11 11:24:55 | 000,409,272 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ci.dll
[2015/03/11 11:24:54 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\srcore.dll
[2015/03/11 11:24:53 | 000,521,384 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\winload.exe
[2015/03/11 11:24:53 | 000,519,680 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\qdvd.dll
[2015/03/11 11:24:53 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msscp.dll
[2015/03/11 11:24:53 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\rstrui.exe
[2015/03/11 11:24:53 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\audiodg.exe
[2015/03/11 11:24:52 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\AUDIOKSE.dll
[2015/03/11 11:24:52 | 000,374,784 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\AudioEng.dll
[2015/03/11 11:24:52 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\EncDump.dll
[2015/03/11 11:24:52 | 000,265,216 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msnetobj.dll
[2015/03/11 11:24:52 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\AudioSes.dll
[2015/03/11 11:24:52 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mfps.dll
[2015/03/11 11:24:52 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\appidpolicyconverter.exe
[2015/03/11 11:24:52 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\appidapi.dll
[2015/03/11 11:24:52 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\setbcdlocale.dll
[2015/03/11 11:24:52 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\rrinstaller.exe
[2015/03/11 11:24:52 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\csrsrv.dll
[2015/03/11 11:24:52 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\pcadm.dll
[2015/03/11 11:24:52 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mfpmp.exe
[2015/03/11 11:24:52 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msmmsp.dll
[2015/03/11 11:24:52 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\pcawrk.exe
[2015/03/11 11:24:52 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\pcalua.exe
[2015/03/11 11:24:51 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wmploc.DLL
[2015/03/11 11:24:51 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\appidcertstorecheck.exe
[2015/03/11 11:24:51 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\pcaevts.dll
[2015/03/11 11:24:51 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\spwmp.dll
[2015/03/11 11:24:51 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\apisetschema.dll
[2015/03/11 11:24:51 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msdxm.ocx
[2015/03/11 11:24:51 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxmasf.dll
[2015/03/11 11:24:42 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mferror.dll
[2015/03/03 20:53:51 | 000,000,000 | ---D | C] -- C:\windows\pss
[2015/02/26 10:27:36 | 000,635,904 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\perftrack.dll
[2015/02/26 10:27:36 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\powertracker.dll
[2015/02/20 11:40:50 | 000,000,000 | -HSD | C] -- C:\Users\nao\AppData\Local\EmieBrowserModeList
[2010/06/27 18:35:31 | 002,568,656 | ---- | C] (Adobe Systems, Inc.) -- C:\Users\nao\install_flash_player.exe
[2 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2015/03/21 23:10:30 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2015/03/21 23:10:23 | 2355,712,000 | -HS- | M] () -- C:\hiberfil.sys
[2015/03/21 00:21:00 | 000,000,692 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-68603925-328359452-782964379-1001UA.job
[2015/03/21 00:14:00 | 000,018,736 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/03/21 00:14:00 | 000,018,736 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/03/21 00:13:00 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/03/20 22:08:26 | 000,001,262 | ---- | M] () -- C:\Users\Public\Desktop\herdProtect.lnk
[2015/03/18 16:53:14 | 000,898,472 | ---- | M] (Oracle Corporation) -- C:\windows\System32\npdeployJava1.dll
[2015/03/18 16:53:14 | 000,818,088 | ---- | M] (Oracle Corporation) -- C:\windows\System32\deployJava1.dll
[2015/03/18 16:53:14 | 000,096,680 | ---- | M] (Oracle Corporation) -- C:\windows\System32\WindowsAccessBridge.dll
[2015/03/18 14:39:50 | 000,000,961 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/03/18 11:39:35 | 000,001,945 | ---- | M] () -- C:\windows\epplauncher.mif
[2015/03/18 10:08:49 | 000,778,928 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerApp.exe
[2015/03/18 10:08:49 | 000,142,512 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerCPLApp.cpl
[2015/03/12 01:21:00 | 000,000,640 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-68603925-328359452-782964379-1001Core.job
[2015/03/11 21:14:35 | 000,654,480 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2015/03/11 21:14:35 | 000,411,428 | ---- | M] () -- C:\windows\System32\perfh011.dat
[2015/03/11 21:14:35 | 000,122,442 | ---- | M] () -- C:\windows\System32\perfc011.dat
[2015/03/11 21:14:35 | 000,122,352 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2015/03/11 20:23:18 | 000,002,298 | ---- | M] () -- C:\Users\nao\Desktop\Google Chrome.lnk
[2015/03/11 11:56:33 | 000,400,584 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2015/03/06 14:10:29 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\sspisrv.dll
[2015/03/06 14:10:22 | 000,221,184 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ncrypt.dll
[2015/03/06 14:09:31 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\auditpol.exe
[2015/03/06 14:07:50 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msobjs.dll
[2015/03/06 14:07:43 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msaudite.dll
[2015/03/06 14:06:20 | 000,686,080 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\adtschema.dll
[2015/03/03 22:16:52 | 000,246,920 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MpSigStub.exe
[2015/02/26 12:11:26 | 002,381,312 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
[2015/02/24 11:32:46 | 000,342,696 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iedkcs32.dll
[2015/02/21 09:27:59 | 000,418,304 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dxtmsft.dll
[2015/02/21 09:27:55 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dxtrans.dll
[2015/02/20 13:13:49 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\fontsub.dll
[2015/02/20 13:13:46 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dciman32.dll
[2015/02/20 13:13:43 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\windows\System32\atmlib.dll
[2015/02/20 12:09:16 | 000,299,008 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\atmfd.dll
[2015/02/20 11:22:35 | 002,724,864 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2015/02/20 11:22:20 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieetwcollectorres.dll
[2015/02/20 11:08:59 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iesetup.dll
[2015/02/20 11:08:13 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieetwproxystub.dll
[2015/02/20 11:06:44 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MshtmlDac.dll
[2015/02/20 11:01:22 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\jsproxy.dll
[2015/02/20 11:00:34 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iernonce.dll
[2015/02/20 10:58:14 | 000,478,208 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieui.dll
[2015/02/20 10:56:54 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieUnatt.exe
[2015/02/20 10:56:53 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieetwcollector.exe
[2015/02/20 10:56:07 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\jscript9diag.dll
[2015/02/20 10:50:00 | 000,667,648 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2015/02/20 10:41:52 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\JavaScriptCollectionAgent.dll
[2015/02/20 10:37:46 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2015/02/20 10:30:39 | 004,300,288 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\jscript9.dll
[2015/02/20 10:24:56 | 000,689,152 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2015/02/20 10:24:32 | 000,684,544 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ie4uinit.exe
[2015/02/20 10:24:21 | 002,052,608 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\inetcpl.cpl
[2015/02/20 10:23:19 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\mshtmlmedia.dll
[2015/02/20 09:55:38 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dll
[2 C:\*.tmp files -> C:\*.tmp -> ]
[1 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2015/03/20 22:08:26 | 000,001,262 | ---- | C] () -- C:\Users\Public\Desktop\herdProtect.lnk
[2015/03/18 14:39:50 | 000,000,961 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/03/12 15:24:37 | 000,001,945 | ---- | C] () -- C:\windows\epplauncher.mif
[2014/11/19 12:59:27 | 000,003,584 | ---- | C] () -- C:\Users\nao\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/09/14 23:23:10 | 000,000,207 | ---- | C] () -- C:\Users\nao\.swfinfo
[2013/08/05 15:15:08 | 000,066,104 | ---- | C] () -- C:\windows\System32\bdmpegv.dll
[2013/08/05 15:15:06 | 000,023,080 | ---- | C] () -- C:\windows\System32\bdmjpeg.dll
[2012/05/02 22:49:18 | 000,017,408 | ---- | C] () -- C:\Users\nao\AppData\Local\WebpageIcons.db
[color=#E56717]========== ZeroAccess Check ==========[/color]
[2009/07/14 13:42:31 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/13 14:26:18 | 012,875,264 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 21:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 10:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[color=#E56717]========== Custom Scans ==========[/color]
[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2015/03/21 00:13:00 | 000,000,626 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2015/03/12 01:21:00 | 000,000,640 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-68603925-328359452-782964379-1001Core.job
[2015/03/21 00:21:00 | 000,000,692 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskUserS-1-5-21-68603925-328359452-782964379-1001UA.job
[color=#E56717]========== Drive Information ==========[/color]
Physical Drives
---------------
Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: WDC WD5000BEVT-16A0RT0
Partitions: 4
Status: OK
Status Info: 0
Partitions
---------------
DeviceID: Disk #0, Partition #0
PartitionType: Unknown
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 16.00GB
Starting Offset: 1048576
Hidden sectors: 0
DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 200.00MB
Starting Offset: 17180917760
Hidden sectors: 0
DeviceID: Disk #0, Partition #2
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 225.00GB
Starting Offset: 17390632960
Hidden sectors: 0
DeviceID: Disk #0, Partition #3
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 225.00GB
Starting Offset: 258748710912
Hidden sectors: 0
[color=#E56717]========== Base Services ==========[/color]
SRV - [2009/07/14 10:14:53 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\aelupsvc.dll -- (AeLookupSvc)
SRV - [2013/02/27 13:49:16 | 000,047,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appinfo.dll -- (Appinfo)
SRV - [2009/07/14 10:14:11 | 000,059,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\alg.exe -- (ALG)
SRV - [2010/11/20 21:20:58 | 000,585,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\qmgr.dll -- (BITS)
SRV - [2010/11/20 21:18:06 | 000,494,592 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\BFE.DLL -- (BFE)
SRV - [2015/03/06 14:09:44 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\lsass.exe -- (KeyIso)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\es.dll -- (EventSystem)
SRV - [2012/07/05 06:14:34 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\browser.dll -- (Browser)
SRV - [2015/02/03 12:12:14 | 000,143,872 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\cryptsvc.dll -- (CryptSvc)
SRV - [2010/11/20 21:21:03 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (DcomLaunch)
SRV - [2010/11/20 21:18:30 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp)
SRV - [2011/03/03 14:38:01 | 000,132,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\dnsrslvr.dll -- (Dnscache)
SRV - [2009/07/14 10:15:13 | 000,098,304 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\eapsvc.dll -- (EapHost)
SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\hidserv.dll -- (hidserv)
SRV - [2009/07/14 10:15:33 | 000,300,544 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\ipnathlp.dll -- (SharedAccess)
SRV - [2010/11/20 21:19:23 | 000,350,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV - [2009/07/14 10:16:15 | 000,313,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\swprv.dll -- (swprv)
SRV - [2009/07/14 10:15:41 | 000,049,664 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\mmcss.dll -- (MMCSS)
SRV - [2009/07/14 10:16:03 | 000,280,576 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\netman.dll -- (Netman)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\netprofm.dll -- (netprofm)
SRV - [2014/12/06 12:50:19 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\nlasvc.dll -- (NlaSvc)
SRV - [2009/07/14 10:16:11 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\nsisvc.dll -- (nsi)
SRV - [2011/05/24 19:44:59 | 000,293,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpnpmgr.dll -- (PlugPlay)
SRV - [2012/02/11 14:37:49 | 000,317,440 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\spoolsv.exe -- (Spooler)
SRV - [2015/03/06 14:09:44 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV - [2009/07/14 10:16:12 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rasauto.dll -- (RasAuto)
SRV - [2010/11/20 21:21:00 | 000,286,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rasmans.dll -- (RasMan)
SRV - [2010/11/20 21:21:03 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (RpcSs)
SRV - [2009/07/14 10:16:13 | 000,021,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\seclogon.dll -- (seclogon)
SRV - [2015/03/06 14:09:44 | 000,022,528 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\lsass.exe -- (SamSs)
SRV - [2009/07/14 10:16:20 | 000,073,728 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\wscsvc.dll -- (wscsvc)
SRV - [2010/11/20 21:21:26 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\srvsvc.dll -- (LanmanServer)
SRV - [2010/11/20 21:21:19 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV - [2010/11/20 21:21:05 | 000,750,592 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\schedsvc.dll -- (Schedule)
SRV - [2010/11/20 21:21:28 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\tapisrv.dll -- (TapiSrv)
SRV - [2009/07/14 10:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\themeservice.dll -- (Themes)
SRV - [2014/12/19 11:43:00 | 000,164,864 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\profsvc.dll -- (ProfSvc)
SRV - [2010/11/20 21:17:51 | 001,025,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\VSSVC.exe -- (VSS)
SRV - [2015/02/03 12:12:12 | 000,475,136 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\audiosrv.dll -- (Audiosrv)
SRV - [2015/02/03 12:12:12 | 000,475,136 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\audiosrv.dll -- (AudioEndpointBuilder)
SRV - [2010/11/20 21:21:06 | 000,125,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sdrsvc.dll -- (SDRSVC)
SRV - [2013/05/27 13:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/11/20 21:21:35 | 001,086,976 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wevtsvc.dll -- (eventlog)
SRV - [2010/11/20 21:19:40 | 000,566,272 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\MPSSVC.dll -- (MpsSvc)
SRV - [2010/11/20 21:21:35 | 000,463,360 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\wiaservc.dll -- (StiSvc)
SRV - [2010/11/20 21:17:22 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\System32\msiexec.exe -- (msiserver)
SRV - [2009/07/14 10:16:19 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wbem\WMIsvc.dll -- (Winmgmt)
SRV - [2014/05/15 01:23:32 | 001,973,728 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\wuaueng.dll -- (wuauserv)
SRV - [2010/11/20 21:18:34 | 000,214,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\dot3svc.dll -- (dot3svc)
SRV - [2009/07/14 10:16:19 | 000,829,440 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\wlansvc.dll -- (Wlansvc)
SRV - [2010/11/20 21:21:36 | 000,084,480 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\wkssvc.dll -- (LanmanWorkstation)
[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]
< End of report >