悪代官の伏魔殿掲示板
勝手にリンクが開く
二、三日程前からブラウザ起動時やリンクをクリックしたときなどに h ttp://cpmofferconvert.com/ というサイトなどを経由してさまざまな広告だったり登録画面が出てきてしまいます。
駆除をお願いしたいのですが、お願いすることは出来ますか?
ここから下にログを貼っておきます。

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 6:12:34, on 2016/09/19
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)

FIREFOX: 48.0.2 (x86 ja)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\BlueStacks\HD-Agent.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaConverter.exe
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaRenderer.exe
C:\Program Files (x86)\Sony\Media Go\MediaGo.exe
C:\Program Files (x86)\Sony\Media Go\ErrorReportLauncher.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Users\Owner\Downloads\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Yahoo!ツールバーフィッシング警告 - {1F68E72C-50E5-44B8-8F56-6A54D3AF1DA4} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\ypho.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll
O2 - BHO: Yahoo!ツールバーヘルパー - {EEBA90E6-2B14-413F-9BF8-61A8BDF92258} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O3 - Toolbar: Yahoo!ツールバー - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - C:\Program Files (x86)\Yahoo!J\Toolbar\8_0_0_3\Modules\YahooToolBar.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Google Japanese Input Prelauncher] "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
O4 - HKLM\..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe -scheduler
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Run: [DelaypluginInstall] C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe
O4 - HKCU\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIIGJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-045A Series"
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_721577D41E77D440C916E2687EBA0267] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{7F032B92-3037-420F-8DB6-4A401B94D147}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Protocol: WSWSVCUchrome - (no CLSID) - (no file)
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Plus Android Service (BstHdPlusAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox アップデート サービス (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox アップデート サービス (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\Windows\system32\DbxSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe,-100 (GoogleIMEJaCacheService) - Google Inc. - C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Unsigned Themes (UnsignedThemes) - The Within Network, LLC - C:\Windows\UnsignedThemesSvc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10765 bytes
  • sagume
  • 2016/09/19 (Mon) 06:32:57
インストール情報ログもお願いします
こんばんは。
ここの管理人の悪代官です。
夜8時45分頃に成敗されるのが嫌なので、日アサ8時45分頃の美少女戦隊にお仕置きされてます。
アコギな真似はおやめなさーいっっっ!(←それ悪代官側のセリフじゃないから

説明とログを見せてもらいました。
cpmofferconvert.comでの異常ですか。
URLもトップを加工して直リン避けてくれたのは良い対処です。
他の閲覧者さんがうかつにアクセスして被害拡大しない配慮してくれてありがとうございます。

異常に絡んでいるのはWondershareやHD-Plus等のようですが、見せてもらったHJTログだけでは最初の解析もできないので、もうひとつの「インストール情報ログ」も見せてください。
http://akumaden.web.fc2.com/prepare.html

情報ログも見せてもらったうえで安全優先の対処を考えましょう
  • 悪代官
  • 2016/09/19 (Mon) 20:56:09
インストール情報ログです
あれれ、ページを良く読んだつもりだったのですが(*´Д`)
遅れてしまいすみません、ちなみにヤフーのツールバーはIE使ってないので消しました。
ここから貼り付けます。

3DMark Futuremark 2016/06/11 96.0 MB 2.0.2067.0
7-Zip 16.02 (x64) Igor Pavlov 2016/06/11 4.75 MB 16.02
Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2016/09/01 222 MB 15.017.20053
Adobe AIR Adobe Systems Incorporated 2016/09/15 23.0.0.257
Adobe Flash Player 23 ActiveX Adobe Systems Incorporated 2016/09/13 5.63 MB 23.0.0.162
Adobe Flash Player 23 NPAPI Adobe Systems Incorporated 2016/09/19 19.2 MB 23.0.0.162
AirDroid 3.3.2.0 Sand Studio 2016/06/11 3.3.2.0
Akai Professional EWI 5000 Editor 2016/06/11 6.68 MB
Android Studio Google Inc. 2016/06/11 1.0
Atheros Client Installation Program Atheros 2016/06/11 9.0
Audacity 2.1.2 Audacity Team 2016/06/11 56.5 MB 2.1.2
Avast Free Antivirus AVAST Software 2016/09/01 12.3.2280
BlueStacks App Player BlueStack Systems, Inc. 2016/06/26 75.4 MB 2.2.21.6212
Bonjour Apple Inc. 2016/09/19 3.26 MB 1.0.106
Canon MG6200 series MP Drivers Canon Inc. 2016/06/11
Canon Utilities EOS Lens Registration Tool Canon Inc. 2016/06/11 1.1.0.6
Canon Utilities EOS Utility 2 Canon Inc. 2016/06/11 2.14.10.2
CCleaner Piriform 2016/09/19 5.22
Cisco EAP-FAST Module Cisco Systems, Inc. 2016/06/11 1.55 MB 2.2.14
Cisco LEAP Module Cisco Systems, Inc. 2016/06/11 644 KB 1.0.19
Cisco PEAP Module Cisco Systems, Inc. 2016/06/11 1.23 MB 1.1.6
Clover 3.0 EJIE Technology 2016/06/11 3.0
Craving Explorer Version 1.7.5 T-Craft 2016/09/02 23.2 MB 1.7.5.0
Dropbox Dropbox, Inc. 2016/09/20 10.4.26
Entity Framework Designer for Visual Studio 2012 - JPN Microsoft Corporation 2016/06/12 33.4 MB 11.1.20810.00
Epson Event Manager Seiko Epson Corporation 2016/06/26 42.4 MB 3.01.0005
EPSON PX-045A Series プリンター アンインストール SEIKO EPSON Corporation 2016/06/26
EPSON PX-045A Series ユーザーズガイド 2016/06/26
EPSON Scan Seiko Epson Corporation 2016/06/26
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2016/06/26 1.20.0000
GIMP 2.8.16 The GIMP Team 2016/06/11 283 MB 2.8.16
Google Chrome Google Inc. 2016/09/18 53.0.2785.116
Google 日本語入力 Google Inc. 2016/09/19 80.5 MB 2.19.2600.0
ImgBurn version 2.5.8.0 Lightning UK! 2016/06/11 6.24 MB 2.5.8.0
Intel(R) Network Connections 21.0.504.0 Intel 2016/06/11 31.0 MB 21.0.504.0
Intel(R) Processor Graphics Intel Corporation 2016/06/10 9.17.10.4229
Intel® Hardware Accelerated Execution Manager Intel Corporation 2016/06/11 618 KB 6.0.1
Java 8 Update 101 Oracle Corporation 2016/09/01 25.4 MB 8.0.1010.13
Java 8 Update 101 (64-bit) Oracle Corporation 2016/09/01 27.6 MB 8.0.1010.13
Java SE Development Kit 7 Update 67 (64-bit) Oracle 2016/06/11 231 MB 1.7.0.670
Java SE Development Kit 8 Update 92 (64-bit) Oracle Corporation 2016/06/25 328 MB 8.0.920.14
Lhaplus 2016/06/11
LINE LINE Corporation 2016/09/08 4.9.0.1147
Media Go Sony 2016/09/09 200 MB 3.1.343
Media Go Network Downloader Sony 2016/09/09 1.27 MB 1.6.07.0
Media Go Video Playback Engine 2.20.107.05220 Sony 2016/06/11 21.0 MB 2.20.107.05220
MEGAsync Mega Limited 2016/06/11
Microsoft .NET Framework 4.5 Multi-Targeting Pack Microsoft Corporation 2016/06/12 41.8 MB 4.5.50709
Microsoft .NET Framework 4.5 SDK Microsoft Corporation 2016/06/12 18.5 MB 4.5.50709
Microsoft .NET Framework 4.5 SDK - 日本語 Lang Pack Microsoft Corporation 2016/06/12 3.55 MB 4.5.50709
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2016/06/11 38.8 MB 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 2016/06/11 2.93 MB 4.5.51209
Microsoft .NET Framework 4.6 Targeting Pack (日本語) Microsoft Corporation 2016/06/11 81.1 MB 4.6.81
Microsoft Help Viewer 1.1 Microsoft Corporation 2016/06/11 3.97 MB 1.1.40219
Microsoft Help Viewer 1.1 Language Pack - JPN Microsoft Corporation 2016/06/11 1.95 MB 1.1.40219
Microsoft Help Viewer 2.0 Microsoft Corporation 2016/06/12 12.1 MB 2.0.50727
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2016/06/11 1.69 MB 3.1.0000
Microsoft SQL Server 2008 R2 管理オブジェクト Microsoft Corporation 2016/06/11 14.4 MB 10.50.1750.9
Microsoft SQL Server 2012 Command Line Utilities Microsoft Corporation 2016/06/12 944 KB 11.0.2100.60
Microsoft SQL Server 2012 Data-Tier App Framework Microsoft Corporation 2016/06/12 23.5 MB 11.0.2316.0
Microsoft SQL Server 2012 Express LocalDB Microsoft Corporation 2016/06/12 157 MB 11.0.2100.60
Microsoft SQL Server 2012 Management Objects Microsoft Corporation 2016/06/12 27.5 MB 11.0.2100.60
Microsoft SQL Server 2012 Management Objects (x64) Microsoft Corporation 2016/06/12 18.6 MB 11.0.2100.60
Microsoft SQL Server 2012 Native Client Microsoft Corporation 2016/06/12 7.83 MB 11.0.2100.60
Microsoft SQL Server 2012 T-SQL 言語サービス Microsoft Corporation 2016/06/12 6.20 MB 11.0.2100.60
Microsoft SQL Server 2012 Transact-SQL Compiler Service Microsoft Corporation 2016/06/12 87.9 MB 11.0.2100.60
Microsoft SQL Server 2012 Transact-SQL ScriptDom Microsoft Corporation 2016/06/12 4.59 MB 11.0.2100.60
Microsoft SQL Server Compact 3.5 SP2 JPN Microsoft Corporation 2016/06/11 3.66 MB 3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 JPN Microsoft Corporation 2016/06/11 4.78 MB 3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 JPN Microsoft Corporation 2016/06/12 20.3 MB 4.0.8876.1
Microsoft SQL Server Data Tools - JPN (11.1.20828.01) Microsoft Corporation 2016/06/12 16.9 MB 11.1.20828.01
Microsoft SQL Server Data Tools Build Utilities - JPN (11.1.20828.01) Microsoft Corporation 2016/06/12 1.41 MB 11.1.20828.01
Microsoft SQL Server System CLR Types Microsoft Corporation 2016/06/11 991 KB 10.50.1750.9
Microsoft System CLR Types for SQL Server 2012 Microsoft Corporation 2016/06/12 1.23 MB 11.0.2100.60
Microsoft System CLR Types for SQL Server 2012 (x64) Microsoft Corporation 2016/06/12 1.46 MB 11.0.2100.60
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2016/06/11 2.38 MB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2016/06/11 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2016/09/11 251 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2016/06/25 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/06/11 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2016/06/11 15.0 MB 10.0.40219
Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 Microsoft Corporation 2016/06/11 33.4 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2016/06/11 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 Microsoft Corporation 2016/06/11 25.2 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 2016/06/11 17.1 MB 12.0.21005.1
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 Microsoft Corporation 2016/09/01 25.4 MB 14.0.24123.0
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 Microsoft Corporation 2016/09/09 20.7 MB 14.0.23506.0
Microsoft Visual Studio Code Microsoft Corporation 2016/06/25 118 MB 1.2.1
Microsoft ヘルプ ビューアー 2.0 Language Pack - JPN Microsoft Corporation 2016/06/12 1.95 MB 2.0.50727
Minecraft Mojang 2016/06/11 1.22 MB 1.0.3.0
Mozilla Firefox 48.0.2 (x86 ja) Mozilla 2016/09/19 90.5 MB 48.0.2
Mozilla Maintenance Service Mozilla 2016/09/19 231 KB 48.0.2
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2016/06/11 1.54 MB 4.30.2117.0
MuseScore 2 Werner Schweer and Others 2016/06/11 165 MB 2.0.3
MyEPSON Connect SEIKO EPSON Corporation 2016/06/26
NW-E080 WALKMAN Guide Sony Corporation 2016/06/11 2.02 MB 2.2.0.05230
NX PAD Driver ALPS 2016/06/25 7.109.909.404
PreSonus Studio One 3 x64 PreSonus Audio Electronics 2016/09/01 3.3.0.39252
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2016/09/19 6.0.1.7541
Roxio Creator LJB Roxio 2016/06/11 225 MB 12.2.45.8
SpyHunter 4 Enigma Software Group, LLC 2016/09/18 4.23.2.4686
SSDT に必要なコンポーネント Microsoft Corporation 2016/06/12 8.14 MB 11.0.2100.60
Unity Web Player (x64) (All users) Unity Technologies ApS 2016/06/11 12.0 MB 4.6.6f2
UxStyle Core Beta The Within Network, LLC 2016/06/25 38.0 KB 0.2.1.1
VLC media player VideoLAN 2016/06/25 2.2.4
Vyzex EWI4000S Psicraft Designs, Inc. 2016/09/11 Vyzex EWI4000S v1.00
WCF Data Services 5.6 Tools Microsoft Corporation 2016/06/11 70.7 MB 5.6.61587.0
Windows Live Essentials Microsoft Corporation 2016/06/11 16.4.3528.0331
XMedia Recode version 3.3.3.8 XMedia Recode 2016/09/08 31.4 MB 3.3.3.8
Yahoo!ツールバー Yahoo! JAPAN. 2016/06/25 4.01 MB 8.0.0.3
学習用C言語開発環境 Ver 0.0.0.6 MMGames 2016/06/26 7.38 MB
採譜の達人 2016/06/11
東方リズムカーニバル!紅 体験版 ver 0.2.0 FocasLens 2016/09/14 242 MB
東方輝針城 ver 1.00a 2016/09/15 467 MB
画面出力先切替ツール NEC Personal Computers, Ltd. 2016/06/25 889 KB 1.1.1
  • sagume
  • 2016/09/20 (Tue) 22:32:51
PC環境の確認をお願いします
レスが遅くなってすみません。
続きの情報ログも見せてもらいました。
そのうえで確認させてください。

該当のPCはお仕事か、訓練に使っているPCですか?
下記のようなアプリが見えてます。
>学習用C言語開発環境 Ver 0.0.0.6 MMGames 2016/06/26 7.38 MB

もしお仕事などに使っているPCなら、外部の人間はまずタッチできないと思ってください。
処置の成否に関係なく重大な責任問題にまで発展します。

お仕事とは無縁の完全な個人私用PCなら支障ない範囲でPC環境の説明をお願いします。
説明で協力可能と判断できたら改めて処置レスしていきましょう。
  • 悪代官
  • 2016/09/21 (Wed) 20:38:58
誤解を生んでしまいすみません
個人用のpcでそのアプリはフリーソフトです。
最近プログラミングに興味が湧いてきたのでダウンロードしたものです。(と言ってもあんまり使ってない^^;)
↓リンク
http://9cguide.appspot.com/p_9cide.html
  • sagume
  • 2016/09/22 (Thu) 08:50:17
Re: 誤解を生んでしまいすみません
途中送信していました
pcは法人用なのですがネットで個人用として中古で購入しました。
osをwindows7 Home premium 64bit(クリーンインストール)
メモリを6gb
ハードディスクを500gb
光学ドライブをブルーレイディスク対応のものに変えました。
それ以外は変えていません。

↓元の構成
http://www.bizpc.nec.co.jp/bangai/pcseek/cgi-bin/cpu_smart.pl?KATA=PC-VJ21LXNTHGLC&SALE_KBN=
  • sagume
  • 2016/09/22 (Thu) 09:16:19
問題はWondershareですね
今日もレスが遅くなってすみません。
説明を見せていただきました。

プログラミングはお仕事で使っている物ではなく、PCも個人用と言うことですね。
それならいいでしょう。

では本題の解析にかかります。

最初に書いておくと、Wondershareのアプリを入れていたようですね。
これは性能だけなら高性能なマルチメディア系アプリですが、それを配布するサイトによってはかなり怪しいプログラムを同梱されていることが多いです。
今回もそれらが絡んでいるようです。
加えてWondershare系は著作権上でも問題抱えているアプリとの評価もあり、少なくとも自分の私見ではWondershare系はまったくお勧めしません。
それらを使うなら、それによるいかなトラブルや被害受けても完全に自己責任、自力解決の義務を負うことになると承知ください。
このあとの解析で深刻な状態と判断したらそこで作業は止めてリカバリの判断出す可能性もありますし、それも高確率です。

まず最初にお伝えしておきます。
見てのとおり現在相談者さん多数のため、相談受けてから皆さんに順番にレスできるまで、毎回1日かそれ以上かかる可能性もあるので、すみませんがご了承ください。

では以下の説明をよく見てから、順番に作業をお願いします。
既に準備した物もあるはずですが、一応説明を再度見ておいてください。

隠しファイルと拡張子を表示設定にしてください(やり方↓)
http://pasofaq.jp/windows/mycomputer/hiddenfile.htm
http://support.microsoft.com/kb/978449/ja

下記のツールをダウンロードして、基本の使い方を把握しておいてください。
ただし、配布サイトで他のアプリをダウンロードしろと勧めてくるような広告も出てきたらそれらは絶対にクリックしないでください。
「GeekUninstaller」(通称:GU)
説明ページ↓
http://www.gigafree.net/system/install/geekuninstaller.html
ダウンロード↓
http://www.geekuninstaller.com/download
「download free」をクリック、保存後、解凍してください。
片付ける時はフォルダごと手動で削除してください。

「CCleaner」(通称:CC)
説明↓
http://www.gigafree.net/system/clean/ccleaner.html
http://note.chiebukuro.yahoo.co.jp/detail/n178757
ダウンロード↓
http://www.piriform.com/ccleaner/download/standard
最新バージョンをダウンロードしてください。なお、インストール時におまけのアプリも勧めてくることがありますが、それらはチェック外してインストールは避けてください。
片付けるときはアンインストールしてください。

ここで重要な注意です。
CCは本来は高い性能を持つメンテナンスソフトですが、間違った使い方すると
【Windowsにダメージを与えてしまうおそれもある】
ので、ここでは解析ツールとしてのみ使います。
説明をしっかり読んで、自分が指示した以外の操作はしないように。

そして下記ページは作業開始前に必ず熟読して、必要な場合が出たらそれに沿って対処してください。この対処が必要な事例が増えています。
http://note.chiebukuro.yahoo.co.jp/detail/n335704

準備できたら作業開始です。
なお、このあとの作業で探しても見つからないものはスルーして進めていいですが、指示した対象外の物は絶対にいじらないようによく見て作業してください。

また、作業のうえで削除指示するものもあるはずですが、ご自身で必要として入れたものがあればそれの削除は保留して、次のレスでその旨を教えてください。

最初にWindowsUpdateの確認して、必要な更新があればそれを全部更新してください。
ですがそこで更新ができないようならこの後に説明する作業はせずに更新失敗の旨をレスで教えてください。
WUが正常にできなくすることで、感染の解析処置を阻害してくる危険なマルウェアが激増しているためです。
Windowsの各種更新(WindowsUpdate)は常に最新に適用しておかないと、それだけで危険な感染はすぐにでも起きますよ。

なお、Windows10への更新はユーザー自身がよほど必要でなければ非推奨です。
http://www.japan-secure.com/entry/Windows_Update_7.html
http://www.japan-secure.com/entry/how_to_suppress_the_free_upgrade_of_Windows_10.html

>Craving Explorer Version 1.7.5 T-Craft 2016/09/02 23.2 MB 1.7.5.0
ダウンロード支援ツールはできればアンインストールをお勧めします。
DLツールは各社のアンチウイルスソフトでサポート外です。
つまり、これらDLツールを使って危険なサイトやファイルにアクセスすると、マルウェアがあってもブロックできずに感染してしまう危険が高くなります。
ただでさえDLツールを使う人が多い動画サイトは現在、その隙を狙う危険な罠リンクや悪質広告の巣窟に成り果てています。
どうしても使うなら最新版に更新したうえで、これによるいかなトラブルに遭っても自己責任で。

ここでWindowsの標準機能である「システムの復元」での復元ポイントをひとつ、手動で作成しておいてください。
これはこの後の作業で、間違って対象外のものをいじってしまうとそれだけでWindowsに深刻な不具合を起こすこともあるので、万一の際に復元可能にしておくためです。
http://windows.microsoft.com/ja-jp/windows7/create-a-restore-point

GUを使って下記をアンインストールしてください。
>Adobe Acrobat Reader DC - Japanese Adobe Systems Incorporated 2016/09/01 222 MB 15.017.20053

>Java 8 Update 101 Oracle Corporation 2016/09/01 25.4 MB 8.0.1010.13

>Java 8 Update 101 (64-bit) Oracle Corporation 2016/09/01 27.6 MB 8.0.1010.13

pdfアプリが必要なら、下記を入れておくといいでしょう。
http://www.forest.impress.co.jp/library/software/pdfxchedit/

今度はPCをセーフモードで起動してください(やり方↓)
http://www.pc-master.jp/sousa/s-safemode.html
Win8の場合は以下を参考に。
http://freesoft.tvbok.com/win8/tips-and-tools/safemode.html

セーフモードでGUを使って、下記をアンインストールしてください。
>ImgBurn version 2.5.8.0 Lightning UK! 2016/06/11 6.24 MB 2.5.8.0

>SpyHunter 4 Enigma Software Group, LLC 2016/09/18 4.23.2.4686

HJTを起動させ、スキャンを行ってください。
スキャン結果が表示されましたら、以下の項目にチェックを入れてください。
ただし、特にHJTでの作業は一歩間違えれば簡単にPCが起動しなくなるため、こちらが指示した以外のものは絶対にチェックを入れないでください。
>O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll

>O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll

>O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

>O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

必要な項目すべてにチェックが入りましたら、Fix checkedをクリックしてください。
探しても見つからないものはスルーして進めていいです。

ここでPCを通常モードで再起動してから、スタートメニューの「アクセサリ」→「システムツール」から「ディスククリーンアップ」を起動してください。
起動したら対象ドライブでCドライブを選択してスキャンして、表示された中の「ダウンロードされたプログラムファイル」「インターネット一時ファイル」「一時ファイル」の項目だけチェックを入れてから「OK」「ファイルの削除」を押してください。
これを実行すると選択した部分のゴミファイルが掃除されます。

これを実行することで作業時にスキャンで検出される無駄なゴミファイルも減るのでその分かなり時間や解析も楽になるのです。
「ごみ箱」など他の項目にチェックしないのは、間違って正常なファイルを削除しないためと、もし正常なファイルを削除してごみ箱に入れても戻せるようにするための措置です。

続いてCCを起動してください。
起動したら、「ツール」→」「スタートアップ」→「Windows」タブを開いてください。
そこで右下の「テキストとして保存」を押すと、表示の内容がログとして保存できるので、ログをデスクトップにでも保存しておいてください。

次に「スケジュールされたタスク」タブと「コンテキストメニュー」タブのログも同じ要領で保存してください。

続いて今度はCC画面の左側にある「Browser Plugin」の項目から「InternetExplorer」タブ以下の各タブも順番に開いて、そのログもとっておいてください。

CCの各ログをとったらCCは終了してください。

このあとブラウザを起動して、数時間ほどPC状態を様子見したあと、あらたにHJTとCCでのインストール情報ログを取り直してください。

取り直した両ログと、CCの各ログを返信に貼って、状態報告とともにレスください。
それらを見てから続きの作業を指示します。
  • 悪代官
  • 2016/09/22 (Thu) 20:00:18
ログ等
レスに書かれている内容を一通りやったのですが

リンクでないところをクリックした際タブでcpmofferconvert.com
リンクをクリックしたらタブでwww.smartnewtab.com(クリックしたのはこれとは別のリンク)
履歴を確認しようとしてクリックしたら別窓でonclickads.net
リンクでないところをクリックした際別窓でwindows.microsoft.com-security.site

というところでしょうか。
どうやらクリックすると出てくるようですね。
それとサウンドドライバーは認識しているのですが音が出なくなってしまいました

ここからログ

スタートアップ Windows

有効 HKCU:Run BlueStacks Agent BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Agent.exe
有効 HKCU:Run CCleaner Monitoring Piriform Ltd "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
有効 HKCU:Run EPLTarget\P0000000000000000 SEIKO EPSON CORPORATION C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIIGJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-045A Series"
有効 HKCU:Run GoogleChromeAutoLaunch_721577D41E77D440C916E2687EBA0267 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
有効 HKLM:Run Apoint Alps Electric Co., Ltd. C:\Program Files\Apoint2K\Apoint.exe
有効 HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
有効 HKLM:Run AWiC Atheros "C:\Program Files (x86)\Atheros\AWiCMgr.exe" -nogui
有効 HKLM:Run DelaypluginInstall C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe
有効 HKLM:Run DispSw NEC Personal Computers, Ltd. C:\Program Files\DispSw\DispSw.exe
有効 HKLM:Run Dropbox Dropbox, Inc. "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
有効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
有効 HKLM:Run Google Japanese Input Prelauncher Google Inc. "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
有効 HKLM:Run HotKeysCmds Intel Corporation "C:\Windows\system32\hkcmd.exe"
有効 HKLM:Run IAStorIcon Intel Corporation C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
有効 HKLM:Run IgfxTray Intel Corporation "C:\Windows\system32\igfxtray.exe"
有効 HKLM:Run ISUSPM Flexera Software, Inc. C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe -scheduler
有効 HKLM:Run NECBatt NEC Corporation, NEC Personal Products, Ltd. C:\Program Files\NECBatt\nbSched.exe
有効 HKLM:Run NPSpeed NEC Corporation, NEC Personal Products, Ltd. C:\Program Files\NPSpeed\NPSpeed.exe
有効 HKLM:Run Persistence Intel Corporation "C:\Windows\system32\igfxpers.exe"
有効 HKLM:Run RTHDVCPL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s

スタートアップ スケジュールされたタスク

有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task ClipboardHistoryStartup C:\Users\Owner\Desktop\ClipboardHistory_110\ClipboardHistory_x64.exe
有効 Task DropboxUpdateTaskMachineCore Dropbox, Inc. C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
有効 Task DropboxUpdateTaskMachineUA Dropbox, Inc. C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task SafeZone scheduled Autoupdate 1465576572 Avast Software C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
有効 Task {05190C0D-C491-4CFE-8CEE-125190910508} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Owner\Downloads\vb_web.exe -d C:\Users\Owner\Downloads
有効 Task {5FEB5388-C81C-4C3F-A6F0-8ED786F9D42E} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Owner\Desktop\DRV\WSET\setup.exe -d C:\Users\Owner\Desktop\DRV\WSET

スタートアップ コンテキストメニュー

有効 Directory ###MegaContextMenuExt C:\Users\Owner\AppData\Local\MEGAsync\ShellExtX64.dll
有効 Directory 7-Zip Igor Pavlov C:\Program Files\7-Zip\7-zip.dll
有効 Directory Add to VLC media player's Playlist VideoLAN "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1"
有効 Directory DropboxExt Dropbox, Inc. C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll
有効 Directory Play with VLC media player VideoLAN "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1"
有効 Drive Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx64.dll
有効 File ###MegaContextMenuExt C:\Users\Owner\AppData\Local\MEGAsync\ShellExtX64.dll
有効 File 00avast AVAST Software C:\Program Files\AVAST Software\Avast\ashShA64.dll
有効 File 7-Zip Igor Pavlov C:\Program Files\7-Zip\7-zip.dll
有効 File avast AVAST Software C:\Program Files\AVAST Software\Avast\ashShA64.dll
有効 File DropboxExt Dropbox, Inc. C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll
有効 File Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx64.dll
有効 File PDFXChange Editor Context menu Tracker Software Products (Canada) Ltd. C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll
有効 File WondershareVideoConverterFileOpreation C:\Windows\SysWOW64\WSCM64.dll
有効 Folder 7-Zip Igor Pavlov C:\Program Files\7-Zip\7-zip.dll
有効 Folder avast AVAST Software C:\Program Files\AVAST Software\Avast\ashShA64.dll
有効 Folder Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx64.dll

ブラウザプラグイン Internat Explorer

有効 Extension Bonjour Apple Inc. C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
有効 Helper ExplorerWatcher Class EJIE Technology C:\Program Files (x86)\Clover\TabHelper64.dll
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

ブラウザプラグイン firefox

有効 Extension Adblock Plus 2.7.3 Wladimir Palant default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
無効 Extension Avast Online Security 12.0.88 AVAST Software default Firefox 48.0.2 C:\Program Files\AVAST Software\Avast\WebRep\FF
無効 Extension Avast SafePrice 10.3.5.39 AVAST Software default Firefox 48.0.2 C:\Program Files\AVAST Software\Avast\SafePrice\FF
有効 Extension Firefox Hello 1.4.4 Mozilla default Firefox 48.0.2 C:\Program Files (x86)\Mozilla Firefox\browser\features\loop@mozilla.org.xpi
有効 Extension Firefox Hello Beta 1.4.4 Mozilla default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\features\{bf5602c0-901a-426c-b157-05bce30e9478}\loop@mozilla.org.xpi
有効 Extension Firefox Hotfix 20160826.01 Mozilla default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\extensions\firefox-hotfix@mozilla.org.xpi
有効 Extension Lightbeam 1.3.1 Mozilla Foundation default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\extensions\jid1-F9UJ2thwoAm5gQ@jetpack.xpi
有効 Extension Multi-process staged rollout 1.1 default Firefox 48.0.2 C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
有効 Extension Multi-process staged rollout 1.2 default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\features\{bf5602c0-901a-426c-b157-05bce30e9478}\e10srollout@mozilla.org.xpi
有効 Extension NicoFox 1.0.1 Littlebtc default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\extensions\nicofox@littlebtc.xpi
有効 Extension Pocket 1.0.4 default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\features\{bf5602c0-901a-426c-b157-05bce30e9478}\firefox@getpocket.com.xpi
有効 Plugin 1.4.8.866 Google Inc. default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\gmp-widevinecdm\1.4.8.866\widevinecdm.dll
有効 Plugin Adobe Acrobat 15.17.20050.61080 default Firefox 48.0.2 C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll
有効 Plugin Google Update 1.3.31.5 Google Inc. default Firefox 48.0.2 C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll
有効 Plugin Java Deployment Toolkit 8.0.1010.13 11.101.2.13 default Firefox 48.0.2 C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npdeployJava1.dll
有効 Plugin Java(TM) Platform SE 8 U101 11.101.2.13 default Firefox 48.0.2 C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll
有効 Plugin OpenH264 Video Codec 1.6 Mozilla Corporation default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\gmp-gmpopenh264\1.6\gmpopenh264.dll
有効 Plugin Photo Gallery 16.4.3528.331 Microsoft Corporation default Firefox 48.0.2 C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
有効 Plugin Primetime Content Decryption Module provided by Adobe Systems, Incorporated 17 Adobe Systems Inc default Firefox 48.0.2 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\n3ew48cs.default\gmp-eme-adobe\17\eme-adobe.dll
有効 Plugin Shockwave Flash 23.0.0.162 Adobe Systems Incorporated default Firefox 48.0.2 C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll
有効 Plugin VLC Web Plugin 2.2.4.0 VideoLAN default Firefox 48.0.2 C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

ブラウザプラグイン Google Chrome

有効 App Gmail 8.1 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google ドライブ 14.1 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0
有効 App YouTube 4.2.8 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0
有効 Extension +AutoSave 3.4.0.0 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagnffmpahidgbhkeomnfcngnhapddha\3.4.0.0_0
有効 Extension Adblock Plus 1.12.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.12.2_0
有効 Extension AirMirror 1.9.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\macmgoeeggnlnmpiojbcniblabkdjphe\1.9.2_0
有効 Extension Avast Passwords 1.0.2441 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik\1.0.2441_0
有効 Extension Checker Plus for Gmail™ 19.2.16 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj\19.2.16_1
有効 Extension Chrome Visual History 0.0.5 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkccpmgeknngdmagkjjacapdecnoeiai\0.0.5_0
有効 Extension Dark Reader 3.4.3 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh\3.4.3_0
有効 Extension Flash Master 2.0.0.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cacfnookefkldifaigjdedpophfjkjeh\2.0.0.2_0
有効 Extension MEGA 3.5.4 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod\3.5.4_0
有効 Extension My Chrome テーマ 2.1 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic\2.1_0
有効 Extension OneTab 1.17 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall\1.17_0
有効 Extension Right Inbox for Gmail 8.3.5 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mflnemhkomgploogccdmcloekbloobgb\8.3.5_0
有効 Extension Session Buddy 3.4.7 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko\3.4.7_0
有効 Extension Stylist 2.1.0 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pabfempgigicdjjlccdgnbmeggkbjdhd\2.1.0_0
有効 Extension Tampermonkey 4.1.10 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo\4.1.10_0
有効 Extension Trimless for Google Mail™ 1.9.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\niepjjjfafhadmfdminbckmciijcaagc\1.9.2_0
有効 Extension User-Agent Switcher for Chrome 1.0.43 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0
有効 Extension YouTube™のための自分好み 4.1.0 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk\4.1.0_0

CCインストール情報ログ

3DMark Futuremark 2016/06/11 96.0 MB 2.0.2067.0
7-Zip 16.02 (x64) Igor Pavlov 2016/06/11 4.75 MB 16.02
Adobe AIR Adobe Systems Incorporated 2016/09/15 23.0.0.257
Adobe Flash Player 23 ActiveX Adobe Systems Incorporated 2016/09/13 5.63 MB 23.0.0.162
Adobe Flash Player 23 NPAPI Adobe Systems Incorporated 2016/09/19 19.2 MB 23.0.0.162
AirDroid 3.3.2.0 Sand Studio 2016/06/11 3.3.2.0
Akai Professional EWI 5000 Editor 2016/06/11 6.68 MB
Android Studio Google Inc. 2016/06/11 1.0
Atheros Client Installation Program Atheros 2016/06/11 9.0
Audacity 2.1.2 Audacity Team 2016/06/11 56.5 MB 2.1.2
Avast Free Antivirus AVAST Software 2016/09/01 12.3.2280
BlueStacks App Player BlueStack Systems, Inc. 2016/06/26 75.4 MB 2.2.21.6212
Bonjour Apple Inc. 2016/09/19 3.26 MB 1.0.106
Canon MG6200 series MP Drivers Canon Inc. 2016/06/11
Canon Utilities EOS Lens Registration Tool Canon Inc. 2016/06/11 1.1.0.6
Canon Utilities EOS Utility 2 Canon Inc. 2016/06/11 2.14.10.2
CCleaner Piriform 2016/09/19 5.22
Cisco EAP-FAST Module Cisco Systems, Inc. 2016/06/11 1.55 MB 2.2.14
Cisco LEAP Module Cisco Systems, Inc. 2016/06/11 644 KB 1.0.19
Cisco PEAP Module Cisco Systems, Inc. 2016/06/11 1.23 MB 1.1.6
Clover 3.0 EJIE Technology 2016/06/11 3.0
Dropbox Dropbox, Inc. 2016/09/20 10.4.26
ECOモード設定ツール NEC Corporation, NEC Personal Products, Ltd. 2016/09/22 3.14 MB 1.1.0
Entity Framework Designer for Visual Studio 2012 - JPN Microsoft Corporation 2016/06/12 33.4 MB 11.1.20810.00
Epson Event Manager Seiko Epson Corporation 2016/06/26 42.4 MB 3.01.0005
EPSON PX-045A Series プリンター アンインストール SEIKO EPSON Corporation 2016/06/26
EPSON PX-045A Series ユーザーズガイド 2016/06/26
EPSON Scan Seiko Epson Corporation 2016/06/26
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2016/06/26 1.20.0000
GIMP 2.8.16 The GIMP Team 2016/06/11 283 MB 2.8.16
Google Chrome Google Inc. 2016/09/18 53.0.2785.116
Google 日本語入力 Google Inc. 2016/09/19 80.5 MB 2.19.2600.0
Intel(R) Network Connections 21.0.504.0 Intel 2016/06/11 31.0 MB 21.0.504.0
Intel(R) Processor Graphics Intel Corporation 2016/06/10 9.17.10.4229
Intel(R) Rapid Storage Technology Intel Corporation 2016/09/22 10.1.2.1004
Intel® Hardware Accelerated Execution Manager Intel Corporation 2016/06/11 618 KB 6.0.1
Java SE Development Kit 7 Update 67 (64-bit) Oracle 2016/06/11 231 MB 1.7.0.670
Java SE Development Kit 8 Update 92 (64-bit) Oracle Corporation 2016/06/25 328 MB 8.0.920.14
Lhaplus 2016/06/11
LINE LINE Corporation 2016/09/08 4.9.0.1147
Media Go Sony 2016/09/09 200 MB 3.1.343
Media Go Network Downloader Sony 2016/09/09 1.27 MB 1.6.07.0
Media Go Video Playback Engine 2.20.107.05220 Sony 2016/06/11 21.0 MB 2.20.107.05220
MEGAsync Mega Limited 2016/06/11
Microsoft .NET Framework 4.5 Multi-Targeting Pack Microsoft Corporation 2016/06/12 41.8 MB 4.5.50709
Microsoft .NET Framework 4.5 SDK Microsoft Corporation 2016/06/12 18.5 MB 4.5.50709
Microsoft .NET Framework 4.5 SDK - 日本語 Lang Pack Microsoft Corporation 2016/06/12 3.55 MB 4.5.50709
Microsoft .NET Framework 4.5.2 Microsoft Corporation 2016/06/11 38.8 MB 4.5.51209
Microsoft .NET Framework 4.5.2 (日本語) Microsoft Corporation 2016/06/11 2.93 MB 4.5.51209
Microsoft .NET Framework 4.6 Targeting Pack (日本語) Microsoft Corporation 2016/06/11 81.1 MB 4.6.81
Microsoft Help Viewer 1.1 Microsoft Corporation 2016/06/11 3.97 MB 1.1.40219
Microsoft Help Viewer 1.1 Language Pack - JPN Microsoft Corporation 2016/06/11 1.95 MB 1.1.40219
Microsoft Help Viewer 2.0 Microsoft Corporation 2016/06/12 12.1 MB 2.0.50727
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2016/06/11 1.69 MB 3.1.0000
Microsoft SQL Server 2008 R2 管理オブジェクト Microsoft Corporation 2016/06/11 14.4 MB 10.50.1750.9
Microsoft SQL Server 2012 Command Line Utilities Microsoft Corporation 2016/06/12 944 KB 11.0.2100.60
Microsoft SQL Server 2012 Data-Tier App Framework Microsoft Corporation 2016/06/12 23.5 MB 11.0.2316.0
Microsoft SQL Server 2012 Express LocalDB Microsoft Corporation 2016/06/12 157 MB 11.0.2100.60
Microsoft SQL Server 2012 Management Objects Microsoft Corporation 2016/06/12 27.5 MB 11.0.2100.60
Microsoft SQL Server 2012 Management Objects (x64) Microsoft Corporation 2016/06/12 18.6 MB 11.0.2100.60
Microsoft SQL Server 2012 Native Client Microsoft Corporation 2016/06/12 7.83 MB 11.0.2100.60
Microsoft SQL Server 2012 T-SQL 言語サービス Microsoft Corporation 2016/06/12 6.20 MB 11.0.2100.60
Microsoft SQL Server 2012 Transact-SQL Compiler Service Microsoft Corporation 2016/06/12 87.9 MB 11.0.2100.60
Microsoft SQL Server 2012 Transact-SQL ScriptDom Microsoft Corporation 2016/06/12 4.59 MB 11.0.2100.60
Microsoft SQL Server Compact 3.5 SP2 JPN Microsoft Corporation 2016/06/11 3.66 MB 3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 JPN Microsoft Corporation 2016/06/11 4.78 MB 3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 JPN Microsoft Corporation 2016/06/12 20.3 MB 4.0.8876.1
Microsoft SQL Server Data Tools - JPN (11.1.20828.01) Microsoft Corporation 2016/06/12 16.9 MB 11.1.20828.01
Microsoft SQL Server Data Tools Build Utilities - JPN (11.1.20828.01) Microsoft Corporation 2016/06/12 1.41 MB 11.1.20828.01
Microsoft SQL Server System CLR Types Microsoft Corporation 2016/06/11 991 KB 10.50.1750.9
Microsoft System CLR Types for SQL Server 2012 Microsoft Corporation 2016/06/12 1.23 MB 11.0.2100.60
Microsoft System CLR Types for SQL Server 2012 (x64) Microsoft Corporation 2016/06/12 1.46 MB 11.0.2100.60
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2016/06/11 2.38 MB 8.0.61001
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2016/06/11 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2016/09/11 251 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2016/06/25 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/06/11 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2016/06/11 15.0 MB 10.0.40219
Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 Microsoft Corporation 2016/06/11 33.4 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2016/06/11 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 Microsoft Corporation 2016/06/11 25.2 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 2016/06/11 17.1 MB 12.0.21005.1
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 Microsoft Corporation 2016/09/01 25.4 MB 14.0.24123.0
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 Microsoft Corporation 2016/09/09 20.7 MB 14.0.23506.0
Microsoft Visual Studio Code Microsoft Corporation 2016/06/25 118 MB 1.2.1
Microsoft ヘルプ ビューアー 2.0 Language Pack - JPN Microsoft Corporation 2016/06/12 1.95 MB 2.0.50727
Minecraft Mojang 2016/06/11 1.22 MB 1.0.3.0
Mozilla Firefox 48.0.2 (x86 ja) Mozilla 2016/09/19 90.5 MB 48.0.2
Mozilla Maintenance Service Mozilla 2016/09/19 231 KB 48.0.2
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2016/06/11 1.54 MB 4.30.2117.0
MuseScore 2 Werner Schweer and Others 2016/06/11 165 MB 2.0.3
MyEPSON Connect SEIKO EPSON Corporation 2016/06/26
NW-E080 WALKMAN Guide Sony Corporation 2016/06/11 2.02 MB 2.2.0.05230
NX PAD Driver ALPS 2016/06/25 7.109.909.404
PDF-XChange Editor Tracker Software Products (Canada) Ltd. 2016/09/22 331 MB 6.0.318.0
PreSonus Studio One 3 x64 PreSonus Audio Electronics 2016/09/01 3.3.0.39252
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2016/09/22 6.0.1.7541
Roxio Creator LJB Roxio 2016/06/11 225 MB 12.2.45.8
SSDT に必要なコンポーネント Microsoft Corporation 2016/06/12 8.14 MB 11.0.2100.60
Unity Web Player (x64) (All users) Unity Technologies ApS 2016/06/11 12.0 MB 4.6.6f2
UxStyle Core Beta The Within Network, LLC 2016/06/25 38.0 KB 0.2.1.1
VLC media player VideoLAN 2016/06/25 2.2.4
Vyzex EWI4000S Psicraft Designs, Inc. 2016/09/11 Vyzex EWI4000S v1.00
WCF Data Services 5.6 Tools Microsoft Corporation 2016/06/11 70.7 MB 5.6.61587.0
Windows Live Essentials Microsoft Corporation 2016/06/11 16.4.3528.0331
XMedia Recode version 3.3.3.8 XMedia Recode 2016/09/08 31.4 MB 3.3.3.8
バッテリ・リフレッシュ&診断ツール NEC Corporation, NEC Personal Products, Ltd. 2016/09/22 2.71 MB 1.9.0
学習用C言語開発環境 Ver 0.0.0.6 MMGames 2016/06/26 7.38 MB
採譜の達人 2016/06/11
東方リズムカーニバル!紅 体験版 ver 0.2.0 FocasLens 2016/09/14 242 MB
東方輝針城 ver 1.00a 2016/09/15 467 MB
画面出力先切替ツール NEC Personal Computers, Ltd. 2016/06/25 889 KB 1.1.1

HJTログ

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 22:44:52, on 2016/09/22
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)

FIREFOX: 48.0.2 (x86 ja)
Boot mode: Normal

Running processes:
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaConverter.exe
C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaRenderer.exe
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files (x86)\Clover\clover.exe
C:\Users\Owner\Desktop\個人用フォルダー\その他\HJT\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Google Japanese Input Prelauncher] "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
O4 - HKLM\..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe -scheduler
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [DelaypluginInstall] C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKCU\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIIGJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-045A Series"
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_721577D41E77D440C916E2687EBA0267] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{7F032B92-3037-420F-8DB6-4A401B94D147}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{7F032B92-3037-420F-8DB6-4A401B94D147}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{7F032B92-3037-420F-8DB6-4A401B94D147}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Protocol hijack: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol hijack: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6}
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Protocol hijack: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll
O18 - Protocol hijack: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
O18 - Protocol hijack: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Protocol: WSWSVCUchrome - (no CLSID) - (no file)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Plus Android Service (BstHdPlusAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox アップデート サービス (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox アップデート サービス (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\Windows\system32\DbxSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe,-100 (GoogleIMEJaCacheService) - Google Inc. - C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Unsigned Themes (UnsignedThemes) - The Within Network, LLC - C:\Windows\UnsignedThemesSvc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11774 bytes
  • sagume
  • 2016/09/22 (Thu) 22:58:43
Re: ログ等
どうやら音が出ないのはスピーカーの接点不良だったようです。
早とちりしてしまったようですみません。
  • sagume
  • 2016/09/22 (Thu) 23:21:52
ブラウザを丸ごと掃除します
作業と報告、ご苦労様です。

サウンドドライバーのほうは一時的にバグってたようですが戻ったならいいでしょう。
PCもご機嫌斜めな時はあるでしょうし、そういうお年頃と思って暖かく見守ってあげましょう(違

さて、異常も続いてるようですがそれもそのはずです。
続きで見せてもらったCCのログで、隠れていたモノがあぶり出されました。
今度はそれらを慎重に処置していきます。

また説明に沿って次の作業をお願いします。

まず下記のページを読んでから、
http://note.chiebukuro.yahoo.co.jp/detail/n367452

その手順に沿って一度各ブラウザを削除後に入れなおしです。
またIEもリセットしてください。

ブラウザ作業の次は、先の要領でCCを起動して「スケジュールされたタスク」内の下記を「無効」「エントリの削除」してください。
>有効 HKLM:Run DelaypluginInstall C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe

無効化できないときはそのまま削除でもいいです。

CCを終了したら次は下記のツールを準備してください。
「AdwCleaner」(通称:AC)
http://www.bleepingcomputer.com/download/adwcleaner/dl/125/
ファイル直リンです。アクセスしてファイルをデスクトップにでも保存しておいてください。
片付けるときは起動後に「uninstall」ボタンを押せば自動で削除されます。
使い方は下記サイト様に詳しい説明があるのでサンショウウオ↓
http://www.japan-secure.com/entry/adwcleaner.html

Malwarebytes' Anti-Malware(通称・MBAM)
本家サイト
http://www.malwarebytes.org/

ダウンロード
https://www.malwarebytes.org/mwb-download/thankyou/
ファイル直リンです。保存しておいてください。

使い方の説明サイト
http://www.gigafree.net/security/MalwarebytesAnti-MalwareFree.html

準備できたらMBAMをインストールとアップデートまでしておいてください。
ただし、ここではまだスキャンはしないように。

続いてここで一度ACを起動してください。
起動するとまず定義の更新が行われるはずなので、更新だけしてから、それができたらACは一旦終了してください。
ここではスキャンもしなくていいです。

両ツールのアップデートができたらディスククリーンアップを使ってゴミファイルの掃除したあと、PCをセーフモードで再起動してしてください。

続いてPCをセーフモード起動してから、先に一度起動したACを再度起動してください。
起動したら今度は「スキャン」したあと、そのスキャン終了後に検出されたものがあったら「除去」を押してください。
表示された画面で「はい」を選択すると処置開始されます。

処置完了したらそこでPCを通常モードで再起動してください。

再起動後にACのあらたなログが出るので、それをデスクトップにでも保存しておいてください。
ですが、もし作業後にログが出ないorわからない場合はマイコンピュータのCドライブを開くとその直下に以下のような名前のファイルが作成されているので、それがACのログです。
>AdwCleaner[英数字].txt
同じような名前のログが複数ある時は、作成日時が作業処置時のファイルが対象のログです。

ACでの作業ができたら次はMBAMの作業です。
またセーフモード起動してからMBAM起動してスキャンしてください。
MBAM起動したら「スキャン」タブで「カスタムスキャン」選択後、Cドライブを含む全ドライブを選択してください。
それとルートキットスキャンの項目もチェック入れておいてください。

この形でスキャンすると時間はかかりますができるだけ細かくスキャンするためです。

両ツールのスキャンの順番はどちらからでもいいですが、なにか検出されたらそれを選択して「remove」(隔離)したあと、再起動を促す表示が出たらそこで一度PCを再起動してください。
もし再起動表示が出ないときは手動で再起動してください。

またMBAMスキャン終了後、画面右下にその結果を知らせるメッセージが出るので、それを押すとその結果が表示されるはずです。
そこで「ログを保存」を押すとそのログが保存可能になります。
そのログをデスクトップにでも保存しておいてください。
このログ確認が特に重要なので、忘れないようにお願いします。

このあとしばらくPC状態を様子見後、作業後に保存したACとMBAMのログを返信に貼り付けて、それを状態報告とともにレスで見せてください。
  • 悪代官
  • 2016/09/23 (Fri) 20:14:47
ACとMBAMのログ
レスの内容を一通りやりました。

数時間様子を見ましたが前回のレスのような症状は出なくなりました。

ACログ

# AdwCleaner v6.020 - ログファイルの作成日 24/09/2016 作成時間 09:03:58
# ToolsLibによる 14/09/2016 の更新日
# データベース : 2016-09-14.2 [ローカル]
# オペレーティングシステム : Windows 7 Home Premium Service Pack 1 (X64)
# ユーザー名 : Owner - OWNER-PC
# 実行場所 : C:\Users\Owner\Desktop\個人用フォルダー\その他\AC\AdwCleaner.exe
# モード:スキャン
# サポート : https://toolslib.net/forum



***** [ サービス ] *****

悪意あるサービスを検出しませんでした。


***** [ フォルダ ] *****

検出済みフォルダ: C:\Users\Owner\Documents\PPC-software
検出済みフォルダ: C:\Program Files\driverupdate


***** [ ファイル ] *****

悪意あるファイルを検出しませんでした。


***** [ DLL ] *****

悪意あるDLLsファイルを検出しませんでした。


***** [ WMI ] *****

悪意あるキーを検出しませんでした。


***** [ ショートカット ] *****

改ざん済みショートカット: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk ( "hxxp://tech-connect.biz/?ssid=1473945678&a=1003081&src=sh&uuid=bc292bfb-15a8-473a-85d1-9f3e1278a4ec,1473945638587" )
改ざん済みショートカット: C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk ( "hxxp://tech-connect.biz/?ssid=1473945678&a=1003081&src=sh&uuid=bc292bfb-15a8-473a-85d1-9f3e1278a4ec,147394
改ざん済みショートカット: C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk ( "hxxp://tech-connect.biz/?ssid=1473945678&a=1003081&src=sh&uuid=bc292
改ざん済みショートカット: C:\Users\Owner\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk ( "hxxp://tech-connect.biz/?ssid=1473945678&a=1003081&src=sh&uuid=bc292bfb-15a8-473a-85d1-9


***** [ スケジュール済みタスク ] *****

悪意あるタスクを検出しませんでした。


***** [ レジストリ ] *****

検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{6E993643-8FBC-44FE-BC85-D318495C4D96}
検出済みキー: HKLM\SOFTWARE\Classes\CLSID\{A43DE495-3D00-47D4-9D2C-303115707939}
検出済みキー: HKU\S-1-5-21-820934588-4127442196-1940865894-1000\Software\Bitberry Software
検出済みキー: HKU\S-1-5-21-820934588-4127442196-1940865894-1000\Software\PRODUCTSETUP
検出済みキー: HKU\S-1-5-21-820934588-4127442196-1940865894-1000\Software\csastats
検出済みキー: HKU\S-1-5-21-820934588-4127442196-1940865894-1000\Software\ICSW1.22
検出済みキー: HKU\S-1-5-21-820934588-4127442196-1940865894-1000\Software\AppDataLow\Software\WinToFlash Suggestor
検出済みキー: HKCU\Software\Bitberry Software
検出済みキー: HKCU\Software\PRODUCTSETUP
検出済みキー: HKCU\Software\csastats
検出済みキー: HKCU\Software\ICSW1.22
検出済みキー: HKCU\Software\AppDataLow\Software\WinToFlash Suggestor
検出済みキー: [x64] HKCU\Software\Bitberry Software
検出済みキー: [x64] HKCU\Software\PRODUCTSETUP
検出済みキー: [x64] HKCU\Software\csastats
検出済みキー: [x64] HKCU\Software\ICSW1.22
検出済みキー: [x64] HKCU\Software\AppDataLow\Software\WinToFlash Suggestor
検出済みキー: HKLM\SOFTWARE\Google\Chrome\Extensions\acaoakiamfeidcmgooclgeleejkbaecf


***** [ Webブラウザ ] *****

悪意あるFirefoxベースの要素を検出しませんでした。
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - windows-movie-maker.softonic.jp
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - trovi.search
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - realtek-hd-audio-drivers-x64.softonic.jp
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - windows-live-moviemaker.softonic.jp
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - default-search.net
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - ds3-tool.en.softonic.com
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - tasktray-otenki.softonic.jp
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - smartscore-x-pro.softonic.jp
検出済みChromium設定: [C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Web data] - dospara.co.jp

*************************

C:\AdwCleaner\AdwCleaner[S0].txt - [4822 バイト] - [24/09/2016 09:03:58]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4899 バイト] ##########

MBAMログ

Malwarebytes Anti-Malware
www.malwarebytes.org

スキャン日付: 2016/09/24
スキャン時刻: 9:16
ログファイル: mbams.txt
管理者: はい

バージョン: 2.2.1.1043
マルウェアデータベース: v2016.09.23.09
ルートキットデータベース: v2016.08.15.01
ライセンス: 無料版
マルウェア保護機能: 無効
悪質ウェブサイト保護機能: 無効
自己防衛: 無効

OS: Windows 7 Service Pack 1
CPU: x64
ファイルシステム: NTFS
ユーザー: Owner

スキャン形式: カスタムスキャン
結果: 完了しました
スキャンされたオブジェクト数: 655974
経過時間: 2 時間, 40 分, 3 秒

メモリ: 有効
スタートアップ: 有効
ファイルシステム: 有効
アーカイブ: 有効
ルートキット: 有効
ヒューリスティック: 有効
PUP: 有効
PUM: 有効

プロセス: 0
(なし悪意のある項目を検出)

モジュール: 0
(なし悪意のある項目を検出)

レジストリキー: 0
(なし悪意のある項目を検出)

レジストリ値: 0
(なし悪意のある項目を検出)

レジストリデータ: 0
(なし悪意のある項目を検出)

フォルダー: 1
PUP.Optional.OptimizerPro, C:\Users\Owner\Documents\Optimizer Pro, 隔離, [653023528119fd39d98d4569a261857b],

ファイル: 2
PUP.Optional.CateredToYou, C:\Users\Owner\Documents\MEGA\MEGAsync アップロード\ProgramData\a95f8535-bd08-4370-a6e0-814924c0d5f0\PluginContainer.exe, 隔離, [d3c23a3b6c2eee48022b939fe918b749],
PUP.Optional.OptimizerPro, C:\Users\Owner\Documents\Optimizer Pro\CookiesException.txt, 隔離, [653023528119fd39d98d4569a261857b],

物理セクタ: 0
(なし悪意のある項目を検出)


(end)
  • sagume
  • 2016/09/24 (Sat) 17:18:11
OTLで大詰めの解析です
作業と報告、ご苦労様です。

>数時間様子を見ましたが前回のレスのような症状は出なくなりました。

はい、今度は沈静化しましたね。
処置が効いたようです。

両ツールのログも見せてもらいましたが、少しばかり検出もありましたね。
それらも両ツール上からみな処置していればいいです。

では次の解析作業にかかりましょう。
沈静化してもまだ「解決」じゃないので。

以下のツールを準備してください。
OTL(OldTimer Listit)
「Download」ボタンからDLしたら保存しておいてください。
http://oldtimer.geekstogo.com/OTL.exe
片付けるときは起動後に「Cleanup」ボタンを押せば自動で削除されます。
ただし、Windows10をお使いの場合は本体ファイルをそのまま削除すればいいです。

他のプログラムを起動しない状態でOTLを起動してください。
起動したら、ウィンドウの上の方にある「Scan All Users」にチェックを入れ、以下のコマンドを「Custom Scan/Fixes」にコピペしてください。

SHOWHIDDEN
%windir%\tasks\*.job
DRIVES
BASESERVICES
%SYSTEMDRIVE%\*.exe
ACTIVEX
CREATERESTOREPOINT

その後、左上の「Run Scan」を押すとスキャン開始されます。
スキャン開始後、PC環境にもよりますが数分ほどすると、「OTL.txt」と「Extras.txt」がOTL.exeと同じ場所に作成されるはずなので、この2つのファイルをデスクトップあたりに保存しておいてください。
なお、Extras.txtは出ないこともありますが、その場合はOTL.txtだけでもいいです。

このあとOTLログを丸ごと返信に貼り付けてレスで見せてください。
ただしOTLログはかなり長くなるため、一度に送信してもfc2の文字数制限で途切れます。
なのでログも適当なところで1万文字以内に分割して、複数回に分けてレス送信してください。
1万文字を越えた投稿はfc2の文字数制限で途切れてしまうためです。
http://www1.odn.ne.jp/megukuma/count.htm

OTLでスキャンしただけでは何も変化は起きません。
この結果を見て、検出されたものを次回以降の作業で処置することになるはずです
  • 悪代官
  • 2016/09/24 (Sat) 20:27:16
OTLログ1
OTL logfile created on: 2016/09/24 20:34:54 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Owner\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.18449)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

5.92 Gb Total Physical Memory | 4.33 Gb Available Physical Memory | 73.23% Memory free
11.83 Gb Paging File | 10.24 Gb Available in Paging File | 86.57% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465.66 Gb Total Space | 212.68 Gb Free Space | 45.67% Space Free | Partition Type: NTFS

Computer Name: OWNER-PC | User Name: Owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2016/09/24 20:32:13 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Owner\Downloads\OTL.exe
PRC - [2016/09/24 08:36:10 | 000,288,920 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
PRC - [2016/09/20 10:14:56 | 025,382,344 | ---- | M] (Dropbox, Inc.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
PRC - [2016/09/13 03:42:43 | 009,107,616 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\avastui.exe
PRC - [2016/09/12 03:06:44 | 000,939,984 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe
PRC - [2016/09/12 03:06:42 | 046,052,816 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaConverter.exe
PRC - [2016/09/12 03:06:42 | 001,535,440 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaRenderer.exe
PRC - [2016/09/01 16:21:20 | 000,197,128 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2016/08/08 14:16:06 | 000,703,696 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\epson\MyEPSON Connect\mepService.exe
PRC - [2016/08/04 17:27:48 | 002,391,248 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\epson\MyEPSON Connect\mep.exe
PRC - [2016/04/26 15:40:00 | 000,921,112 | ---- | M] (BlueStack Systems, Inc.) -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
PRC - [2016/04/26 15:37:32 | 000,417,304 | ---- | M] (BlueStack Systems, Inc.) -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
PRC - [2015/01/12 01:04:00 | 000,023,240 | ---- | M] () -- C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
PRC - [2012/04/02 15:44:14 | 001,058,912 | ---- | M] (SEIKO EPSON CORPORATION) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2016/09/20 10:15:24 | 000,024,904 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
MOD - [2016/09/20 10:15:24 | 000,023,376 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
MOD - [2016/09/20 10:15:24 | 000,022,352 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
MOD - [2016/09/20 10:15:24 | 000,020,800 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
MOD - [2016/09/20 10:15:24 | 000,019,776 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
MOD - [2016/09/20 10:15:22 | 000,025,424 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
MOD - [2016/09/20 10:15:22 | 000,021,312 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
MOD - [2016/09/20 10:15:22 | 000,020,800 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
MOD - [2016/09/20 10:15:22 | 000,020,288 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winffi.user32._winffi_user32.pyd
MOD - [2016/09/20 10:15:20 | 000,381,752 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
MOD - [2016/09/20 10:15:20 | 000,019,760 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
MOD - [2016/09/20 10:15:16 | 003,928,880 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
MOD - [2016/09/20 10:15:14 | 000,224,056 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
MOD - [2016/09/20 10:15:14 | 000,168,760 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
MOD - [2016/09/20 10:15:14 | 000,133,424 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
MOD - [2016/09/20 10:15:12 | 000,546,096 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
MOD - [2016/09/20 10:15:12 | 000,357,680 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
MOD - [2016/09/20 10:15:12 | 000,207,672 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
MOD - [2016/09/20 10:15:12 | 000,042,808 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
MOD - [2016/09/20 10:15:10 | 001,972,528 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
MOD - [2016/09/20 10:15:10 | 001,826,096 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
MOD - [2016/09/20 10:15:10 | 000,531,248 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
MOD - [2016/09/20 10:15:08 | 000,052,024 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
MOD - [2016/09/20 10:15:08 | 000,024,392 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
MOD - [2016/09/20 10:15:06 | 000,038,696 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
MOD - [2016/09/20 10:15:04 | 000,084,280 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.dll
MOD - [2016/09/20 10:15:04 | 000,026,456 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
MOD - [2016/09/20 10:15:02 | 001,682,760 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
MOD - [2016/09/20 10:15:02 | 000,020,808 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
MOD - [2016/09/20 10:15:00 | 000,246,592 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
MOD - [2016/09/20 10:15:00 | 000,020,816 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
MOD - [2016/09/20 10:15:00 | 000,020,280 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
MOD - [2016/09/01 16:21:47 | 048,936,448 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
MOD - [2016/09/01 16:21:30 | 000,482,928 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\ffl2.dll
MOD - [2016/09/01 16:21:22 | 000,169,064 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
MOD - [2016/08/24 13:45:04 | 000,350,152 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
MOD - [2016/08/24 13:45:04 | 000,116,176 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32security.pyd
MOD - [2016/08/24 13:45:04 | 000,048,592 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32service.pyd
MOD - [2016/08/24 13:45:04 | 000,028,616 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
MOD - [2016/08/24 13:45:02 | 000,175,560 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
MOD - [2016/08/24 13:45:02 | 000,124,880 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32file.pyd
MOD - [2016/08/24 13:45:02 | 000,060,880 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32print.pyd
MOD - [2016/08/24 13:45:02 | 000,043,472 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32process.pyd
MOD - [2016/08/24 13:45:02 | 000,030,160 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
MOD - [2016/08/24 13:45:02 | 000,024,016 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
MOD - [2016/08/24 13:45:00 | 000,105,928 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32api.pyd
MOD - [2016/08/24 13:45:00 | 000,057,808 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
MOD - [2016/08/24 13:45:00 | 000,024,528 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32event.pyd
MOD - [2016/08/24 13:45:00 | 000,024,016 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
MOD - [2016/08/24 13:45:00 | 000,020,936 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
MOD - [2016/08/24 13:44:00 | 000,241,104 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\_jpegtran.pyd
MOD - [2016/08/24 13:43:44 | 000,123,856 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
MOD - [2016/08/24 13:43:44 | 000,083,912 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\sip.pyd
MOD - [2016/08/24 13:43:42 | 000,019,408 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
MOD - [2016/08/24 13:43:10 | 000,144,848 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\_elementtree.pyd
MOD - [2016/08/24 13:43:10 | 000,100,296 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
MOD - [2016/08/24 13:43:10 | 000,035,792 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
MOD - [2016/08/24 13:43:08 | 000,694,224 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
  • sagume
  • 2016/09/25 (Sun) 02:20:10
OTLログ2
続き

MOD - [2016/08/24 13:43:08 | 000,145,864 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
MOD - [2016/08/24 13:43:08 | 000,018,888 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\select.pyd
MOD - [2016/08/24 13:43:06 | 000,392,144 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
MOD - [2016/08/24 13:43:06 | 000,116,688 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
MOD - [2016/08/24 13:41:26 | 000,036,296 | ---- | M] () -- C:\Program Files (x86)\Dropbox\Client\librsync.dll
MOD - [2008/12/06 06:22:48 | 000,839,680 | ---- | M] () -- C:\Windows\SysWOW64\timiditydrv.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2016/09/20 10:15:24 | 000,042,792 | ---- | M] (Windows (R) Win 7 DDK provider) [Auto | Running] -- C:\Windows\SysNative\DbxSvc.exe -- (DbxSvc)
SRV:[b]64bit:[/b] - [2016/09/01 16:21:20 | 000,197,128 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV:[b]64bit:[/b] - [2016/09/01 09:11:19 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2016/05/18 12:12:56 | 000,275,512 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Windows\SysNative\IPROSetMonitor.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2015/07/23 09:02:54 | 001,390,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\diagtrack.dll -- (DiagTrack)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2012/02/21 07:01:02 | 000,151,648 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE -- (EPSON_PM_RPCV4_04)
SRV:[b]64bit:[/b] - [2011/12/12 00:00:00 | 000,135,824 | ---- | M] (Seiko Epson Corporation) [Auto | Running] -- C:\Windows\SysNative\escsvc64.exe -- (EpsonScanSvc)
SRV - [2016/09/19 06:53:09 | 000,270,016 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2016/09/17 03:47:19 | 000,172,488 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2016/09/12 03:06:44 | 000,939,984 | ---- | M] (Google Inc.) [Auto | Running] -- C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe -- (GoogleIMEJaCacheService)
SRV - [2016/08/08 14:16:06 | 000,703,696 | ---- | M] (SEIKO EPSON CORPORATION) [Auto | Running] -- C:\Program Files (x86)\epson\MyEPSON Connect\mepService.exe -- (MyEPSON Connect Service)
SRV - [2016/06/12 08:24:00 | 000,143,144 | ---- | M] (Dropbox, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe -- (dbupdatem)
SRV - [2016/06/12 08:24:00 | 000,143,144 | ---- | M] (Dropbox, Inc.) [Auto | Stopped] -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe -- (dbupdate)
SRV - [2016/04/26 15:40:00 | 000,921,112 | ---- | M] (BlueStack Systems, Inc.) [Auto | Running] -- C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe -- (BstHdUpdaterSvc)
SRV - [2016/04/26 15:37:32 | 000,417,304 | ---- | M] (BlueStack Systems, Inc.) [Auto | Running] -- C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe -- (BstHdLogRotatorSvc)
SRV - [2016/04/26 15:36:38 | 000,437,784 | ---- | M] (BlueStack Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\BlueStacks\HD-Service.exe -- (BstHdAndroidSvc)
SRV - [2016/04/26 15:34:22 | 000,437,784 | ---- | M] (BlueStack Systems, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe -- (BstHdPlusAndroidSvc)
SRV - [2015/11/05 20:36:48 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2015/06/01 21:00:40 | 000,290,224 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2015/01/12 01:04:00 | 000,023,240 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe -- (BOT4Service)
SRV - [2014/03/21 07:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2010/11/20 21:19:20 | 000,397,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/11/20 21:18:03 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2009/07/13 01:08:04 | 000,024,168 | ---- | M] (The Within Network, LLC) [Auto | Running] -- C:\Windows\UnsignedThemesSvc.exe -- (UnsignedThemes)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2016/09/22 21:26:26 | 000,513,632 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsp.sys -- (aswSP)
DRV:[b]64bit:[/b] - [2016/09/18 20:25:00 | 000,022,704 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\EsgScanner.sys -- (EsgScanner)
DRV:[b]64bit:[/b] - [2016/09/13 22:42:54 | 000,969,184 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx)
DRV:[b]64bit:[/b] - [2016/09/01 16:21:57 | 000,292,704 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm)
DRV:[b]64bit:[/b] - [2016/09/01 16:21:57 | 000,163,416 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm)
DRV:[b]64bit:[/b] - [2016/09/01 16:21:56 | 000,074,544 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt)
DRV:[b]64bit:[/b] - [2016/09/01 16:21:55 | 000,108,816 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV:[b]64bit:[/b] - [2016/09/01 16:21:55 | 000,037,656 | ---- | M] (AVAST Software) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid)
DRV:[b]64bit:[/b] - [2016/09/01 16:21:54 | 000,103,064 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr)
DRV:[b]64bit:[/b] - [2016/09/01 16:20:57 | 000,037,144 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswKbd.sys -- (aswKbd)
DRV:[b]64bit:[/b] - [2016/03/29 16:46:02 | 000,498,640 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\e1c62x64.sys -- (e1cexpress)
DRV:[b]64bit:[/b] - [2016/03/28 12:41:34 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2016/03/24 12:07:14 | 000,034,416 | ---- | M] (AnvSoft Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\anvsnddrv.sys -- (anvsnddrv)
DRV:[b]64bit:[/b] - [2016/03/17 21:28:36 | 000,034,472 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2015/11/16 09:31:54 | 000,096,776 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\IntelHaxm.sys -- (IntelHaxm)
DRV:[b]64bit:[/b] - [2015/09/08 11:47:40 | 000,117,768 | ---- | M] (Oracle Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\VBoxNetAdp6.sys -- (VBoxNetAdp)
DRV:[b]64bit:[/b] - [2015/06/01 21:00:18 | 005,384,176 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2013/07/19 03:01:00 | 000,056,336 | ---- | M] (Corel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:[b]64bit:[/b] - [2012/05/12 12:31:00 | 000,121,416 | ---- | M] (MotioninJoy) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MijXfilt.sys -- (MotioninJoyXFilter)
DRV:[b]64bit:[/b] - [2012/04/19 22:56:56 | 002,811,392 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:[b]64bit:[/b] - [2012/03/01 15:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2012/02/06 15:48:26 | 000,376,144 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Apfiltr.sys -- (ApfiltrService)
DRV:[b]64bit:[/b] - [2011/12/07 20:42:28 | 000,074,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011/03/11 15:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011/01/12 17:51:44 | 000,439,320 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:[b]64bit:[/b] - [2010/12/20 15:12:08 | 000,014,848 | ---- | M] (NEC Corporation, NEC Personal Products, Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nececfil.sys -- (Nececfilter)
  • sagume
  • 2016/09/25 (Sun) 02:24:57
OTLログ3
続き

DRV:[b]64bit:[/b] - [2010/11/20 22:34:02 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcvmm.sys -- (vpcvmm)
DRV:[b]64bit:[/b] - [2010/11/20 22:34:02 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpchbus.sys -- (vpcbus)
DRV:[b]64bit:[/b] - [2010/11/20 22:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010/11/20 20:35:32 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vpcusb.sys -- (vpcusb)
DRV:[b]64bit:[/b] - [2010/11/20 20:35:20 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vpcnfltr.sys -- (vpcnfltr)
DRV:[b]64bit:[/b] - [2010/11/20 20:07:05 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010/10/19 23:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2009/09/01 11:54:40 | 000,015,360 | ---- | M] (ELECOM) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ElcMouLFlt.sys -- (ElcMouLFlt)
DRV:[b]64bit:[/b] - [2009/09/01 11:51:48 | 000,016,896 | ---- | M] (ELECOM) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ElcMouUFlt.sys -- (ElcMouUFlt)
DRV:[b]64bit:[/b] - [2009/07/14 10:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009/07/14 10:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009/07/14 10:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009/07/13 01:09:20 | 000,030,568 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\uxpatch.sys -- (uxpatch)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009/06/11 05:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009/06/11 05:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2016/04/26 15:37:12 | 000,154,168 | ---- | M] (BlueStack Systems) [Kernel | Auto | Running] -- C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys -- (BstHdDrv)
DRV - [2016/04/06 21:25:02 | 000,270,904 | ---- | M] (Bluestack System Inc. ) [Kernel | Auto | Running] -- C:\Program Files (x86)\BlueStacks\BstkDrv.sys -- (BstkDrv)
DRV - [2009/07/14 10:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ja
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 40 60 7E B8 F1 15 D2 01 [binary data]
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE10
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.countryCode: "JP"
FF - prefs.js..browser.search.region: "JP"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:49.0
FF - user.js - File not found

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_23_0_0_162.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll (Tracker Software Products (Canada) Ltd.)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@unity3d.com/UnityPlayer64,version=1.0: C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll (Unity Technologies ApS)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll (Tracker Software Products (Canada) Ltd.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.4: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKCU\Software\MozillaPlugins\@tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf: C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll (Tracker Software Products (Canada) Ltd.)

64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF [2016/09/02 03:41:46 | 000,000,000 | ---D | M]
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\sp@avast.com: C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\SAFEPRICE\FF [2016/09/02 03:41:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2016/09/02 03:41:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\sp@avast.com: C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016/09/02 03:41:46 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 49.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 49.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2016/09/19 06:09:20 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Owner\AppData\Roaming\mozilla\Extensions
[2016/09/24 08:39:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Owner\AppData\Roaming\mozilla\Firefox\Profiles\3x5fvx37.default\extensions
[2016/09/24 08:39:17 | 000,007,076 | ---- | M] () (No name found) -- C:\Users\Owner\AppData\Roaming\mozilla\firefox\profiles\3x5fvx37.default\features\{db8549fc-2ad3-42ac-8fb8-b25b40557165}\e10srollout@mozilla.org.xpi
[2016/09/23 21:24:33 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions

[color=#E56717]========== Chrome ==========[/color]

CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0\
  • sagume
  • 2016/09/25 (Sun) 02:27:07
OTLログ4
続き

CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod\3.5.5_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cacfnookefkldifaigjdedpophfjkjeh\2.0.0.2_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.12.2_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall\1.17_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk\4.1.0_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo\4.1.10_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkccpmgeknngdmagkjjacapdecnoeiai\0.0.5_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko\3.4.7_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh\3.4.3_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik\1.0.2441_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_1\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagnffmpahidgbhkeomnfcngnhapddha\3.4.0.0_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\macmgoeeggnlnmpiojbcniblabkdjphe\1.9.2_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mflnemhkomgploogccdmcloekbloobgb\8.3.5_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\niepjjjfafhadmfdminbckmciijcaagc\1.9.2_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic\2.1_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj\19.2.16_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
CHR - Extension: No name found = C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm\5316.725.0.15_1\

O1 HOSTS File: ([2009/06/11 06:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
O2:[b]64bit:[/b] - BHO: (ExplorerWatcher Class) - {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} - C:\Program Files (x86)\Clover\TabHelper64.dll (EJIE Technology)
O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\..\Toolbar\WebBrowser: (no name) - {AEF44653-C059-42CB-A5B7-41C640DA4A67} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [AWiC] C:\Program Files (x86)\Atheros\AWiCMgr.exe (Atheros)
O4:[b]64bit:[/b] - HKLM..\Run: [DispSw] C:\Program Files\DispSw\DispSw.exe (NEC Personal Computers, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [NECBatt] C:\Program Files\NECBatt\nbSched.exe (NEC Corporation, NEC Personal Products, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [NPSpeed] C:\Program Files\NPSpeed\NPSpeed.exe (NEC Corporation, NEC Personal Products, Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
O4 - HKLM..\Run: [Dropbox] C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.)
O4 - HKLM..\Run: [EEventManager] C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [Google Japanese Input Prelauncher] "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes File not found
O4 - HKLM..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\isuspm.exe (Flexera Software, Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun File not found
O4 - HKU\S-1-5-20..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun File not found
O4 - HKU\S-1-5-21-820934588-4127442196-1940865894-1000..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe (BlueStack Systems, Inc.)
O4 - HKU\S-1-5-21-820934588-4127442196-1940865894-1000..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIIGJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-045A Series" File not found
O4 - HKU\S-1-5-21-820934588-4127442196-1940865894-1000..\Run: [GoogleChromeAutoLaunch_721577D41E77D440C916E2687EBA0267] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
O4 - HKU\.DEFAULT..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-18..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 File not found
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O7 - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7F032B92-3037-420F-8DB6-4A401B94D147}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7F032B92-3037-420F-8DB6-4A401B94D147}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\WSWSVCUchrome - No CLSID value found
O18 - Protocol\Handler\WSWSVCUchrome - No CLSID value found
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2016/09/18 20:25:54 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
  • sagume
  • 2016/09/25 (Sun) 02:30:21
OTLログ5
続き

O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

ActiveX:[b]64bit:[/b] {1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1} - .NET Framework
ActiveX:[b]64bit:[/b] {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX:[b]64bit:[/b] {26784146-6E05-3FF9-9335-786C7C0FB5BE} - .NET Framework
ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX:[b]64bit:[/b] {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX:[b]64bit:[/b] {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX:[b]64bit:[/b] {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX:[b]64bit:[/b] {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX:[b]64bit:[/b] {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX:[b]64bit:[/b] {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX:[b]64bit:[/b] {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX:[b]64bit:[/b] {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} - C:\Windows\System32\ie4uinit.exe -EnableTLS
ActiveX:[b]64bit:[/b] {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX:[b]64bit:[/b] {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX:[b]64bit:[/b] {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX:[b]64bit:[/b] {7D715857-A67C-4C2F-A929-038448584D63} - C:\Windows\System32\ie4uinit.exe -DisableSSL3
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX:[b]64bit:[/b] {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -UserConfig
ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX:[b]64bit:[/b] {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
ActiveX:[b]64bit:[/b] {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX:[b]64bit:[/b] {BD6F5371-DAC1-30F0-9DDE-CAC6791E28C3} - .NET Framework
ActiveX:[b]64bit:[/b] {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX:[b]64bit:[/b] {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX:[b]64bit:[/b] {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX:[b]64bit:[/b] {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
ActiveX:[b]64bit:[/b] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX: {1AD147D0-BE0E-3D6C-AC11-64F6DC4163F1} - .NET Framework
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {23A20C3C-2ADD-4A80-AFB4-C146F8847D79} - .NET Framework
ActiveX: {26784146-6E05-3FF9-9335-786C7C0FB5BE} - .NET Framework
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} -
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {BD6F5371-DAC1-30F0-9DDE-CAC6791E28C3} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2016/09/24 08:49:32 | 000,192,216 | ---- | C] (Malwarebytes) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2016/09/24 08:49:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2016/09/24 08:49:12 | 000,140,672 | ---- | C] (Malwarebytes) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2016/09/24 08:49:12 | 000,064,896 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
[2016/09/24 08:49:12 | 000,027,008 | ---- | C] (Malwarebytes) -- C:\Windows\SysNative\drivers\mbam.sys
[2016/09/24 08:49:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2016/09/24 08:49:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2016/09/24 08:45:37 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2016/09/24 08:38:25 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome アプリ
[2016/09/24 08:36:45 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Google
[2016/09/23 21:24:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2016/09/22 20:53:58 | 000,150,208 | ---- | C] (Tracker Software Products (Canada) Ltd.) -- C:\Windows\SysNative\pxcpm5L.dll
[2016/09/22 20:53:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software
[2016/09/22 20:53:53 | 000,000,000 | ---D | C] -- C:\ProgramData\FileOpen
[2016/09/22 20:53:43 | 000,000,000 | ---D | C] -- C:\Program Files\Tracker Software
[2016/09/22 20:47:18 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Geek Uninstaller
[2016/09/22 10:05:15 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2016/09/22 10:04:05 | 003,262,184 | ---- | C] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE2.dll
[2016/09/22 10:04:05 | 002,162,992 | ---- | C] (Yamaha Corporation) -- C:\Windows\SysNative\YamahaAE.dll
[2016/09/22 10:04:05 | 002,101,848 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib64.dll
[2016/09/22 10:04:05 | 001,361,336 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosade.dll
[2016/09/22 10:04:05 | 000,871,856 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tossaeapo64.dll
[2016/09/22 10:04:05 | 000,582,056 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosasfapo64.dll
[2016/09/22 10:04:05 | 000,213,432 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tossaemaxapo64.dll
[2016/09/22 10:04:05 | 000,162,224 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\toseaeapo64.dll
[2016/09/22 10:04:05 | 000,065,944 | ---- | C] (TOSHIBA CORPORATION.) -- C:\Windows\SysNative\tepeqapo64.dll
[2016/09/22 10:04:04 | 001,413,776 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRRPTR64.dll
[2016/09/22 10:04:04 | 001,104,040 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\slcnt64.dll
[2016/09/22 10:04:04 | 000,947,760 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll
[2016/09/22 10:04:04 | 000,943,784 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sl3apo64.dll
[2016/09/22 10:04:04 | 000,858,256 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysNative\SEHDRA64.dll
[2016/09/22 10:04:04 | 000,856,992 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo264.dll
[2016/09/22 10:04:04 | 000,734,376 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sltech64.dll
[2016/09/22 10:04:04 | 000,684,176 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysNative\SECOMN64.dll
[2016/09/22 10:04:04 | 000,555,664 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysWow64\SECOMN32.DLL
[2016/09/22 10:04:04 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2016/09/22 10:04:04 | 000,454,288 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRAPO64.dll
[2016/09/22 10:04:04 | 000,435,856 | ---- | C] (Sound Research, Corp.) -- C:\Windows\SysNative\SEAPO64.dll
[2016/09/22 10:04:04 | 000,369,296 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRCOM64.dll
[2016/09/22 10:04:04 | 000,329,360 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysWow64\SRCOM.dll
[2016/09/22 10:04:04 | 000,329,360 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SRCOM.dll
[2016/09/22 10:04:04 | 000,250,536 | ---- | C] (TODO: <Company name>) -- C:\Windows\SysNative\slprp64.dll
[2016/09/22 10:04:04 | 000,221,024 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2016/09/22 10:04:04 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2016/09/22 10:04:04 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2016/09/22 10:04:04 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2016/09/22 10:04:04 | 000,148,416 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo.dll
[2016/09/22 10:04:04 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2016/09/22 10:04:04 | 000,078,688 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
  • sagume
  • 2016/09/25 (Sun) 02:32:20
OTLログ6
続き

[2016/09/22 10:04:04 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2016/09/22 10:04:03 | 002,918,104 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2016/09/22 10:04:03 | 002,702,040 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2016/09/22 10:04:02 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2016/09/22 10:04:01 | 003,234,520 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2016/09/22 10:04:01 | 002,585,816 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysWow64\RltkAPO.dll
[2016/09/22 10:04:01 | 001,316,056 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2016/09/22 10:04:01 | 000,631,000 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll
[2016/09/22 10:04:01 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2016/09/22 10:04:01 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2016/09/22 10:04:01 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2016/09/22 10:04:01 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2016/09/22 10:04:01 | 000,166,616 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2016/09/22 10:04:01 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2016/09/22 10:04:01 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2016/09/22 10:04:01 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll
[2016/09/22 10:04:00 | 072,113,152 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2016/09/22 10:04:00 | 001,748,184 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll
[2016/09/22 10:03:59 | 012,834,736 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVoiceAPO4064.dll
[2016/09/22 10:03:59 | 007,164,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2016/09/22 10:03:59 | 005,708,736 | ---- | C] (Nahimic Inc) -- C:\Windows\SysNative\NAHIMICV2apo.dll
[2016/09/22 10:03:59 | 005,234,952 | ---- | C] (Nahimic Inc) -- C:\Windows\SysNative\NAHIMICAPOlfx.dll
[2016/09/22 10:03:59 | 000,995,120 | ---- | C] (Nahimic Inc) -- C:\Windows\SysNative\NahimicAPONSControl.dll
[2016/09/22 10:03:59 | 000,906,800 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\MISS_APO.dll
[2016/09/22 10:03:59 | 000,662,784 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2016/09/22 10:03:59 | 000,434,960 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2016/09/22 10:03:59 | 000,141,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2016/09/22 10:03:59 | 000,124,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2016/09/22 10:03:59 | 000,075,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2016/09/22 10:03:58 | 014,048,512 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek64.dll
[2016/09/22 10:03:58 | 012,996,528 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVoiceAPO3064.dll
[2016/09/22 10:03:58 | 002,789,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO7064.dll
[2016/09/22 10:03:58 | 002,041,432 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ64.dll
[2016/09/22 10:03:58 | 001,374,640 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO6064.dll
[2016/09/22 10:03:58 | 001,313,904 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxSpeechAPO64.dll
[2016/09/22 10:03:58 | 001,192,368 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO5064.dll
[2016/09/22 10:03:58 | 000,980,400 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVoiceAPO2064.dll
[2016/09/22 10:03:58 | 000,922,880 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPOShell64.dll
[2016/09/22 10:03:57 | 003,129,672 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\IntelSSTAPO.dll
[2016/09/22 10:03:57 | 001,145,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO4064.dll
[2016/09/22 10:03:57 | 000,728,392 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\IntelSstCApoPropPage.dll
[2016/09/22 10:03:57 | 000,663,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2016/09/22 10:03:57 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll
[2016/09/22 10:03:57 | 000,349,528 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\HiFiDAX2API.dll
[2016/09/22 10:03:57 | 000,328,816 | ---- | C] (ICEpower a/s) -- C:\Windows\SysNative\ICEsoundAPO64.dll
[2016/09/22 10:03:57 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2016/09/22 10:03:52 | 003,195,416 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2016/09/22 10:03:52 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2016/09/22 10:03:52 | 000,501,184 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PLFX64.dll
[2016/09/22 10:03:52 | 000,487,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PGFX64.dll
[2016/09/22 10:03:52 | 000,415,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PREC64.dll
[2016/09/22 10:03:51 | 007,087,448 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64A.dll
[2016/09/22 10:03:51 | 006,242,576 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64AF3.dll
[2016/09/22 10:03:51 | 002,461,016 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOv211.dll
[2016/09/22 10:03:51 | 002,393,432 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOv201.dll
[2016/09/22 10:03:51 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2016/09/22 10:03:51 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2016/09/22 10:03:51 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2016/09/22 10:03:51 | 000,944,984 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DolbyDAX2APOProp.dll
[2016/09/22 10:03:51 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2016/09/22 10:03:51 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2016/09/22 10:03:51 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2016/09/22 10:03:51 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2016/09/22 10:03:51 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2016/09/22 10:03:51 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2016/09/22 10:03:51 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2016/09/22 10:03:51 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2016/09/22 10:03:50 | 001,939,800 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64A.dll
[2016/09/22 10:03:50 | 001,933,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64AF3.dll
[2016/09/22 10:03:50 | 001,576,976 | ---- | C] (Conexant Systems Inc.) -- C:\Windows\SysNative\CX64APO.dll
[2016/09/22 10:03:50 | 000,560,328 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2016/09/22 10:03:50 | 000,336,144 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64AF3.dll
[2016/09/22 10:03:50 | 000,315,736 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64A.dll
[2016/09/22 10:03:50 | 000,284,944 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64F3.dll
[2016/09/22 10:03:50 | 000,261,464 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64.dll
[2016/09/22 10:03:50 | 000,113,576 | ---- | C] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll
[2016/09/22 10:03:50 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2016/09/22 09:43:30 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Intel Corporation
[2016/09/22 09:35:23 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
[2016/09/22 09:29:02 | 000,000,000 | ---D | C] -- C:\Program Files\NPSpeed
[2016/09/22 09:29:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ECOモード設定ツール
[2016/09/22 09:24:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\バッテリ・リフレッシュ&診断ツール
[2016/09/22 09:24:52 | 000,000,000 | ---D | C] -- C:\Program Files\NECBatt
[2016/09/22 09:23:07 | 000,439,320 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\drivers\iaStor.sys
[2016/09/22 09:21:47 | 000,014,848 | ---- | C] (NEC Corporation, NEC Personal Products, Ltd.) -- C:\Windows\SysNative\drivers\nececfil.sys
[2016/09/20 18:46:24 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Atheros
[2016/09/20 13:41:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
[2016/09/20 10:15:24 | 000,042,792 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\DbxSvc.exe
[2016/09/20 10:07:38 | 000,073,840 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\dbx-dev.sys
[2016/09/20 10:07:28 | 000,073,840 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\dbx-stable.sys
[2016/09/20 10:07:28 | 000,073,840 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\dbx-canary.sys
[2016/09/19 14:58:19 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2016/09/19 14:55:41 | 002,930,904 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RltkAPO64.dll
  • sagume
  • 2016/09/25 (Sun) 02:33:43
OTLログ7
続き

[2016/09/19 06:13:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2016/09/19 06:13:55 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2016/09/19 06:09:06 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Mozilla
[2016/09/19 06:08:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2016/09/19 04:51:04 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2016/09/19 01:16:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bonjour
[2016/09/19 01:16:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2016/09/18 20:25:28 | 000,000,000 | ---D | C] -- C:\Users\Owner\Start Menu
[2016/09/18 14:00:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2016/09/18 13:50:16 | 000,000,000 | ---D | C] -- C:\Users\Owner\Podcasts
[2016/09/15 22:21:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Webitar Production Inc
[2016/09/15 21:19:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\上海アリス幻樂団
[2016/09/15 21:19:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\上海アリス幻樂団
[2016/09/15 02:43:42 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2016/09/15 02:43:42 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2016/09/15 02:43:42 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2016/09/15 02:43:42 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2016/09/15 02:43:42 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2016/09/15 02:43:41 | 000,724,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2016/09/15 02:43:41 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2016/09/15 02:43:41 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2016/09/15 02:43:41 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2016/09/15 02:43:41 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2016/09/15 02:43:41 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2016/09/15 02:43:41 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2016/09/15 02:43:39 | 002,055,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2016/09/15 02:43:39 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2016/09/15 02:43:39 | 000,663,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2016/09/15 02:43:39 | 000,152,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2016/09/15 02:43:39 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2016/09/15 02:43:39 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2016/09/15 02:43:38 | 000,968,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2016/09/15 02:43:38 | 000,806,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2016/09/15 02:43:38 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2016/09/15 02:43:38 | 000,476,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2016/09/15 02:43:38 | 000,315,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2016/09/15 02:43:37 | 002,131,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2016/09/15 02:43:37 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2016/09/15 02:43:37 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2016/09/15 02:43:36 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2016/09/15 02:43:36 | 000,576,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2016/09/15 02:43:36 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2016/09/15 02:43:36 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2016/09/15 02:43:36 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2016/09/15 02:43:36 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2016/09/15 02:43:35 | 000,615,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2016/09/15 02:43:35 | 000,489,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2016/09/15 02:43:34 | 001,359,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2016/09/15 02:43:34 | 000,817,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2016/09/15 02:43:34 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2016/09/15 02:43:34 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2016/09/15 02:43:33 | 006,047,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2016/09/15 02:43:33 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2016/09/15 02:43:32 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2016/09/15 02:43:32 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2016/09/15 02:43:32 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2016/09/15 02:42:54 | 003,156,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2016/09/15 02:42:54 | 000,140,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2016/09/15 02:42:54 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinSetupUI.dll
[2016/09/15 02:42:54 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2016/09/15 02:42:53 | 005,548,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2016/09/15 02:42:53 | 000,709,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2016/09/15 02:42:53 | 000,573,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2016/09/15 02:42:53 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2016/09/15 02:42:53 | 000,174,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuwebv.dll
[2016/09/15 02:42:53 | 000,098,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2016/09/15 02:42:53 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2016/09/15 02:42:53 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapp.exe
[2016/09/15 02:42:52 | 001,732,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2016/09/15 02:42:51 | 004,000,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2016/09/15 02:42:51 | 003,944,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2016/09/15 02:42:51 | 000,880,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2016/09/15 02:42:50 | 001,483,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2016/09/15 02:42:50 | 001,163,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2016/09/15 02:42:50 | 000,706,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2016/09/15 02:42:50 | 000,631,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2016/09/15 02:42:50 | 000,419,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2016/09/15 02:42:50 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2016/09/15 02:42:50 | 000,148,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidpolicyconverter.exe
[2016/09/15 02:42:50 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2016/09/15 02:42:50 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wu.upgrade.ps.dll
[2016/09/15 02:42:49 | 003,244,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2016/09/15 02:42:49 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2016/09/15 02:42:49 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2016/09/15 02:42:49 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2016/09/15 02:42:49 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2016/09/15 02:42:49 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2016/09/15 02:42:48 | 000,463,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2016/09/15 02:42:48 | 000,342,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2016/09/15 02:42:48 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2016/09/15 02:42:48 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2016/09/15 02:42:48 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2016/09/15 02:42:48 | 000,141,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2016/09/15 02:42:48 | 000,114,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2016/09/15 02:42:48 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
  • sagume
  • 2016/09/25 (Sun) 02:35:51
OTLログ8
続き

[2016/09/15 02:42:48 | 000,063,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\setbcdlocale.dll
[2016/09/15 02:42:48 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidapi.dll
[2016/09/15 02:42:48 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\appidapi.dll
[2016/09/15 02:42:48 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2016/09/15 02:42:48 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2016/09/15 02:42:48 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2016/09/15 02:42:48 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appidcertstorecheck.exe
[2016/09/15 02:42:48 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2016/09/15 02:42:48 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2016/09/15 02:42:48 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2016/09/15 02:42:48 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2016/09/15 02:42:48 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2016/09/15 02:42:48 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2016/09/15 02:42:48 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2016/09/15 02:42:48 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2016/09/15 02:42:47 | 001,941,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2016/09/15 02:42:47 | 001,806,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2016/09/15 02:42:47 | 001,464,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2016/09/15 02:42:47 | 001,212,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2016/09/15 02:42:47 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2016/09/15 02:42:47 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2016/09/15 02:42:47 | 000,504,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msihnd.dll
[2016/09/15 02:42:47 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2016/09/15 02:42:47 | 000,312,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2016/09/15 02:42:47 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2016/09/15 02:42:47 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2016/09/15 02:42:47 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2016/09/15 02:42:47 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2016/09/15 02:42:47 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2016/09/15 02:42:47 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2016/09/15 02:42:47 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2016/09/15 02:42:47 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2016/09/15 02:42:47 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2016/09/15 02:42:47 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptbase.dll
[2016/09/15 02:42:47 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2016/09/15 02:42:47 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2016/09/15 02:42:47 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msimsg.dll
[2016/09/15 02:42:47 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msimsg.dll
[2016/09/15 02:42:47 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2016/09/15 02:42:47 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2016/09/15 02:42:47 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2016/09/15 02:42:47 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2016/09/15 02:42:47 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2016/09/15 02:42:47 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2016/09/15 02:42:47 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2016/09/15 02:42:47 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2016/09/15 02:42:47 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
  • sagume
  • 2016/09/25 (Sun) 02:37:12
OTLログ9
続き

[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2016/09/15 02:42:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2016/09/15 02:42:47 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2016/09/15 02:42:29 | 001,009,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2016/09/15 02:42:29 | 000,377,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2016/09/15 02:42:29 | 000,287,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2016/09/15 02:42:28 | 000,877,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2016/09/15 02:42:28 | 000,084,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\INETRES.dll
[2016/09/14 20:42:43 | 000,000,000 | ---D | C] -- C:\game
[2016/09/14 20:42:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FocasLens
[2016/09/12 03:06:44 | 002,039,760 | ---- | C] (Google Inc.) -- C:\Windows\SysWow64\GIMEJa.ime
[2016/09/12 03:06:42 | 002,396,112 | ---- | C] (Google Inc.) -- C:\Windows\SysNative\GIMEJa.ime
[2016/09/11 11:32:22 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Apowersoft
[2016/09/11 11:32:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Apowersoft
[2016/09/11 11:29:44 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Apowersoft
[2016/09/11 11:29:38 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Apowersoft
[2016/09/11 02:21:20 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\gtk-2.0
[2016/09/11 01:42:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TiMidity++
[2016/09/11 01:22:31 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\yknk
[2016/09/11 01:13:33 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\YAMAHA
[2016/09/11 01:10:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Psicraft
[2016/09/11 01:09:58 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Psicraft
[2016/09/11 01:09:58 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Psicraft
[2016/09/11 01:09:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Psicraft
[2016/09/10 20:40:37 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\IFW
[2016/09/10 20:40:32 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\IFW
[2016/09/10 20:28:07 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\REAPER
[2016/09/10 20:26:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\REAPER
[2016/09/10 20:22:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Steinberg
[2016/09/10 20:20:20 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Daichi
[2016/09/10 20:19:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Synth1
[2016/09/10 20:13:01 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\REAPER
[2016/09/10 20:12:35 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
[2016/09/10 20:12:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REAPER
[2016/09/10 09:22:12 | 000,000,000 | ---D | C] -- C:\ESD
[2016/09/10 09:20:53 | 000,000,000 | -H-D | C] -- C:\$Windows.~WS
[2016/09/09 20:54:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony Media Go Install
[2016/09/09 18:29:14 | 000,000,000 | ---D | C] -- C:\$WINDOWS.~BT
[2016/09/08 20:52:32 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\XMedia Recode
[2016/09/08 19:13:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode
[2016/09/08 19:13:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\XMedia Recode
[2016/09/08 18:54:56 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\AVAST Software
[2016/09/05 16:47:36 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LINE
[2016/09/05 16:47:26 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\LINE
[2016/09/05 16:26:32 | 000,000,000 | -HSD | C] -- C:\found.000
[2016/09/04 20:45:23 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\webkit
[2016/09/04 00:33:58 | 000,000,000 | ---D | C] -- C:\Users\Owner\AGMLibrary
[2016/09/03 20:12:01 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
[2016/09/03 20:11:49 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Wondershare Video Converter Ultimate
[2016/09/03 19:34:37 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Wondershare
[2016/09/03 19:34:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wondershare
[2016/09/03 19:33:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Wondershare Video Converter Ultimate
[2016/09/03 19:33:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Wondershare
[2016/09/03 19:32:37 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Wondershare
[2016/09/03 12:38:48 | 000,000,000 | ---D | C] -- C:\ProgramData\AirDroid
[2016/09/03 00:23:00 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\AmuseGraphics
[2016/09/03 00:12:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LoiLo
[2016/09/02 23:44:11 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\EWI 5000 Editor
[2016/09/02 22:05:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BVE
[2016/09/02 21:32:04 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\BveTs
[2016/09/02 03:41:47 | 000,391,496 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2016/09/02 00:18:29 | 000,970,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2016/09/02 00:18:29 | 000,756,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2016/09/02 00:18:29 | 000,497,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2016/09/02 00:18:29 | 000,344,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.dll
[2016/09/02 00:18:29 | 000,297,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.dll
[2016/09/02 00:18:29 | 000,166,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetpp.dll
[2016/09/02 00:18:29 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntprint.exe
[2016/09/02 00:18:29 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntprint.exe
[2016/09/02 00:18:29 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wpnpinst.exe
[2016/09/02 00:18:29 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetppui.dll
[2016/09/02 00:18:20 | 001,490,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\appraiser.dll
[2016/09/02 00:18:20 | 001,208,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2016/09/02 00:18:20 | 000,219,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepic.dll
[2016/09/02 00:18:19 | 000,571,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2016/09/02 00:18:19 | 000,544,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\devinv.dll
[2016/09/02 00:18:19 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\invagent.dll
[2016/09/02 00:18:19 | 000,268,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\centel.dll
[2016/09/02 00:18:19 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\acmigration.dll
[2016/09/02 00:18:19 | 000,041,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CompatTelRunner.exe
[2016/09/01 22:00:43 | 000,000,000 | ---D | C] -- C:\ProgramData\PreSonus
[2016/09/01 22:00:41 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\PreSonus
[2016/09/01 21:56:44 | 000,125,872 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\GEARAspi64.dll
[2016/09/01 21:56:44 | 000,106,928 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysWow64\GEARAspi.dll
[2016/09/01 21:56:44 | 000,034,472 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2016/09/01 21:55:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Propellerhead Software
[2016/09/01 21:55:42 | 000,000,000 | ---D | C] -- C:\Program Files\PreSonus
[2016/09/01 21:19:45 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\ShanghaiAlice
[2016/09/01 19:07:19 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\MotioninJoy
[2016/09/01 19:07:06 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\BetterDS3
[2016/09/01 19:06:40 | 000,121,416 | ---- | C] (MotioninJoy) -- C:\Windows\SysNative\drivers\MijXfilt.sys
[2016/09/01 19:06:40 | 000,074,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\xusb21.sys
[2016/09/01 18:41:22 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Apple Computer
  • sagume
  • 2016/09/25 (Sun) 02:39:05
OTLログ10
続き

[2016/09/01 18:41:21 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Apple Computer
[2016/09/01 18:27:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2016/09/01 18:24:02 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Apple
[2016/09/01 18:23:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2016/09/01 16:29:18 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\DMMGamePlayer
[2016/09/01 16:28:43 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\My Games
[2016/09/01 16:28:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Gaijin
[2016/09/01 16:28:15 | 000,000,000 | ---D | C] -- C:\Users\Owner\wt
[2016/09/01 16:23:28 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\com.dmm.Main
[2016/09/01 16:21:31 | 000,053,208 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr
[2016/09/01 16:20:16 | 000,000,000 | ---D | C] -- C:\Users\Owner\.DMMGamePlayer
[2016/09/01 16:19:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DMMGamePlayer
[2016/08/31 20:03:59 | 000,000,000 | ---D | C] -- C:\新しいフォルダー
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2016/09/24 20:41:07 | 000,000,688 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2016/09/24 20:29:02 | 000,000,684 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineUA.job
[2016/09/24 20:00:00 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2016/09/24 19:40:09 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2016/09/24 12:16:11 | 000,192,216 | ---- | M] (Malwarebytes) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2016/09/24 12:13:47 | 000,013,760 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2016/09/24 12:13:47 | 000,013,760 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2016/09/24 12:03:12 | 000,000,684 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2016/09/24 12:02:59 | 000,000,680 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineCore.job
[2016/09/24 12:02:23 | 469,766,143 | -HS- | M] () -- C:\hiberfil.sys
[2016/09/24 09:04:10 | 000,001,110 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2016/09/24 08:36:54 | 000,002,265 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2016/09/24 03:04:05 | 001,213,344 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2016/09/24 03:04:05 | 000,619,192 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2016/09/24 03:04:05 | 000,384,814 | ---- | M] () -- C:\Windows\SysNative\perfh011.dat
[2016/09/24 03:04:05 | 000,114,706 | ---- | M] () -- C:\Windows\SysNative\perfc011.dat
[2016/09/24 03:04:05 | 000,114,580 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2016/09/24 03:03:55 | 001,213,344 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2016/09/22 21:26:26 | 000,513,632 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsp.sys
[2016/09/21 20:37:31 | 000,011,179 | ---- | M] () -- C:\Users\Owner\AppData\Local\recently-used.xbel
[2016/09/20 10:15:24 | 000,042,792 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\DbxSvc.exe
[2016/09/20 10:07:38 | 000,073,840 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\dbx-dev.sys
[2016/09/20 10:07:28 | 000,073,840 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\dbx-stable.sys
[2016/09/20 10:07:28 | 000,073,840 | ---- | M] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\dbx-canary.sys
[2016/09/19 06:53:08 | 000,796,352 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2016/09/19 06:53:08 | 000,142,528 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2016/09/18 20:25:54 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2016/09/18 20:25:00 | 000,022,704 | ---- | M] () -- C:\Windows\SysNative\drivers\EsgScanner.sys
[2016/09/15 03:30:54 | 000,317,184 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2016/09/13 22:42:54 | 000,969,184 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys
[2016/09/13 16:54:44 | 000,150,208 | ---- | M] (Tracker Software Products (Canada) Ltd.) -- C:\Windows\SysNative\pxcpm5L.dll
[2016/09/12 03:06:44 | 002,039,760 | ---- | M] (Google Inc.) -- C:\Windows\SysWow64\GIMEJa.ime
[2016/09/12 03:06:42 | 002,396,112 | ---- | M] (Google Inc.) -- C:\Windows\SysNative\GIMEJa.ime
[2016/09/11 02:24:16 | 000,000,247 | ---- | M] () -- C:\Windows\timidity.cfg
[2016/09/11 01:42:39 | 000,000,717 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\setwindrv.lnk
[2016/09/11 01:42:39 | 000,000,623 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\tim32g.lnk
[2016/09/11 01:42:39 | 000,000,618 | ---- | M] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\twsyng.lnk
[2016/09/09 18:58:07 | 000,000,242 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2016/09/09 18:57:19 | 018,874,368 | ---- | M] () -- C:\Users\Owner\Documents\MediaCreationTool.iso
[2016/09/09 18:57:19 | 000,004,314 | ---- | M] () -- C:\Users\Owner\Documents\MediaCreationTool.mds
[2016/09/05 16:47:37 | 000,001,130 | ---- | M] () -- C:\Users\Owner\Desktop\LINE.lnk
[2016/09/03 00:40:18 | 000,631,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2016/09/03 00:35:48 | 000,706,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2016/09/03 00:35:47 | 005,548,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2016/09/03 00:34:22 | 001,732,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2016/09/03 00:31:03 | 000,362,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2016/09/03 00:31:03 | 000,243,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2016/09/03 00:31:03 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2016/09/03 00:31:02 | 000,215,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2016/09/03 00:31:00 | 000,503,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2016/09/03 00:31:00 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2016/09/03 00:31:00 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\srclient.dll
[2016/09/03 00:31:00 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2016/09/03 00:30:58 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\setbcdlocale.dll
[2016/09/03 00:30:58 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2016/09/03 00:30:57 | 001,212,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2016/09/03 00:30:57 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rpchttp.dll
[2016/09/03 00:30:55 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2016/09/03 00:30:53 | 000,312,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2016/09/03 00:30:52 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msobjs.dll
[2016/09/03 00:30:51 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2016/09/03 00:30:50 | 001,464,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2016/09/03 00:30:50 | 001,163,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2016/09/03 00:30:50 | 000,419,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2016/09/03 00:30:46 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2016/09/03 00:30:46 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\cryptbase.dll
[2016/09/03 00:30:45 | 000,880,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2016/09/03 00:30:45 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2016/09/03 00:30:45 | 000,463,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2016/09/03 00:30:45 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appidapi.dll
[2016/09/03 00:30:45 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2016/09/03 00:30:45 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2016/09/03 00:30:45 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2016/09/03 00:30:45 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2016/09/03 00:30:45 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2016/09/03 00:30:45 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2016/09/03 00:30:45 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2016/09/03 00:30:45 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2016/09/03 00:30:45 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
  • sagume
  • 2016/09/25 (Sun) 02:40:46
OTLログ11
続き

[2016/09/03 00:30:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2016/09/03 00:30:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2016/09/03 00:21:25 | 004,000,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2016/09/03 00:21:25 | 003,944,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2016/09/03 00:16:47 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2016/09/03 00:16:40 | 000,141,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\rpchttp.dll
[2016/09/03 00:16:35 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msobjs.dll
[2016/09/03 00:16:34 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2016/09/03 00:16:25 | 000,342,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2016/09/03 00:16:23 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2016/09/03 00:16:23 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\appidapi.dll
[2016/09/03 00:16:23 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2016/09/03 00:16:23 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2016/09/03 00:16:23 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2016/09/03 00:16:23 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2016/09/03 00:16:23 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2016/09/03 00:16:23 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2016/09/03 00:16:23 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2016/09/03 00:16:23 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2016/09/03 00:16:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2016/09/03 00:02:33 | 000,148,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appidpolicyconverter.exe
[2016/09/03 00:02:29 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appidcertstorecheck.exe
[2016/09/03 00:01:47 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\auditpol.exe
[2016/09/02 23:58:46 | 000,338,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2016/09/02 23:57:53 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rstrui.exe
[2016/09/02 23:53:52 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2016/09/02 23:53:18 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\auditpol.exe
[2016/09/02 23:49:51 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2016/09/02 23:49:49 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2016/09/02 23:49:49 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2016/09/02 23:49:49 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2016/09/02 23:48:57 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2016/09/02 23:48:57 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2016/09/02 23:48:57 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2016/09/02 23:48:57 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2016/09/02 22:54:30 | 000,001,926 | ---- | M] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
[2016/09/02 21:44:41 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2016/09/01 19:11:06 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_xusb21_01009.Wdf
[2016/09/01 19:11:06 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_MijXfilt_01009.Wdf
[2016/09/01 16:21:57 | 000,292,704 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswVmm.sys
[2016/09/01 16:21:57 | 000,163,416 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys
[2016/09/01 16:21:56 | 000,074,544 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2016/09/01 16:21:55 | 000,391,496 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe
[2016/09/01 16:21:55 | 000,108,816 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2016/09/01 16:21:55 | 000,037,656 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswHwid.sys
[2016/09/01 16:21:54 | 000,103,064 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2016/09/01 16:21:31 | 000,053,208 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr
[2016/09/01 16:20:57 | 000,037,144 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswKbd.sys
[2016/09/01 11:48:10 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2016/09/01 11:46:36 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
  • sagume
  • 2016/09/25 (Sun) 02:42:20
OTLログ12
続き

[2016/09/01 11:46:11 | 000,341,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2016/09/01 11:44:20 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2016/09/01 11:31:05 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2016/09/01 11:26:33 | 000,476,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2016/09/01 11:24:25 | 000,663,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2016/09/01 11:24:16 | 000,115,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2016/09/01 11:23:43 | 000,620,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2016/09/01 10:59:47 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2016/09/01 10:57:39 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2016/09/01 10:53:30 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2016/09/01 10:52:05 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2016/09/01 10:45:58 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2016/09/01 10:29:35 | 001,155,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2016/09/01 10:29:30 | 002,055,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2016/09/01 09:42:43 | 000,710,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2016/09/01 09:40:38 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2016/09/01 09:25:20 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2016/09/01 09:24:36 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2016/09/01 09:24:29 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2016/09/01 09:24:09 | 000,576,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2016/09/01 09:24:02 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2016/09/01 09:15:46 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2016/09/01 09:12:21 | 000,615,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2016/09/01 09:11:19 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2016/09/01 09:11:18 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2016/09/01 09:10:55 | 000,814,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2016/09/01 09:10:47 | 000,817,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2016/09/01 09:06:08 | 006,047,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2016/09/01 09:03:41 | 000,968,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2016/09/01 08:59:58 | 000,489,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2016/09/01 08:51:30 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2016/09/01 08:50:01 | 000,107,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2016/09/01 08:47:15 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2016/09/01 08:46:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2016/09/01 08:44:02 | 000,315,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2016/09/01 08:42:12 | 000,152,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2016/09/01 08:29:10 | 000,724,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2016/09/01 08:28:53 | 000,806,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2016/09/01 08:27:32 | 001,359,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2016/09/01 08:26:53 | 002,131,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2016/09/01 07:47:26 | 000,800,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2016/09/24 08:36:43 | 000,002,253 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
[2016/09/24 08:36:12 | 000,000,684 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2016/09/22 10:04:03 | 005,804,772 | ---- | C] () -- C:\Windows\SysNative\drivers\rtvienna.dat
[2016/09/22 10:04:01 | 003,157,796 | ---- | C] () -- C:\Windows\SysNative\drivers\rtkSSTsetting.dat
[2016/09/22 10:04:01 | 002,862,488 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2016/09/22 10:03:50 | 000,109,848 | ---- | C] () -- C:\Windows\SysNative\AcpiServiceVnA64.dll
[2016/09/22 10:03:50 | 000,096,568 | ---- | C] () -- C:\Windows\SysNative\audioLibVc.dll
[2016/09/21 20:37:31 | 000,011,179 | ---- | C] () -- C:\Users\Owner\AppData\Local\recently-used.xbel
[2016/09/19 06:08:55 | 000,001,159 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2016/09/18 20:25:54 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2016/09/18 20:25:00 | 000,022,704 | ---- | C] () -- C:\Windows\SysNative\drivers\EsgScanner.sys
[2016/09/18 20:03:18 | 000,002,265 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2016/09/11 01:50:16 | 000,059,392 | ---- | C] () -- C:\Windows\SysWow64\PLWMidiMap.cpl
[2016/09/11 01:42:39 | 000,000,717 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\setwindrv.lnk
[2016/09/11 01:42:39 | 000,000,623 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\tim32g.lnk
[2016/09/11 01:42:39 | 000,000,618 | ---- | C] () -- C:\Users\Owner\Application Data\Microsoft\Internet Explorer\Quick Launch\twsyng.lnk
[2016/09/11 01:42:22 | 000,081,920 | ---- | C] () -- C:\Windows\portaudio.dll
[2016/09/11 01:42:20 | 000,000,247 | ---- | C] () -- C:\Windows\timidity.cfg
[2016/09/09 18:57:19 | 000,004,314 | ---- | C] () -- C:\Users\Owner\Documents\MediaCreationTool.mds
[2016/09/09 18:57:17 | 018,874,368 | ---- | C] () -- C:\Users\Owner\Documents\MediaCreationTool.iso
[2016/09/09 18:53:09 | 000,000,242 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2016/09/05 16:47:37 | 000,001,130 | ---- | C] () -- C:\Users\Owner\Desktop\LINE.lnk
[2016/09/03 19:33:54 | 000,721,263 | ---- | C] () -- C:\Windows\SysWow64\WSCM64.dll
[2016/09/02 21:44:41 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2016/09/02 03:43:01 | 000,001,926 | ---- | C] () -- C:\Users\Public\Desktop\Avast Free Antivirus.lnk
[2016/09/01 21:56:32 | 000,000,963 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio One 3 x64.lnk
[2016/09/01 19:11:06 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_xusb21_01009.Wdf
[2016/09/01 19:11:06 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_MijXfilt_01009.Wdf
[2016/06/26 20:30:37 | 000,000,000 | ---- | C] () -- C:\Windows\EEventManager.INI
[2016/06/25 20:09:56 | 000,076,288 | ---- | C] () -- C:\Windows\SysWow64\moveex.exe
[2016/06/11 09:55:38 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
[2016/06/11 02:19:15 | 001,213,344 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2016/06/10 18:20:56 | 000,007,604 | ---- | C] () -- C:\Users\Owner\AppData\Local\resmon.resmoncfg
[2015/06/01 21:00:18 | 000,090,112 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2015/06/01 19:46:58 | 000,272,928 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng600.bin
[2015/06/01 19:45:24 | 000,963,452 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng600.bin

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2014/12/05 14:32:50 | 000,000,069 | ---- | M] () -- C:\$Recycle.bin\S-1-5-21-820934588-4127442196-1940865894-1000\$R6H1X02\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko\3.4.7_0\images\u.gif
[2014/12/05 15:12:50 | 000,000,097 | ---- | M] () -- C:\$Recycle.bin\S-1-5-21-820934588-4127442196-1940865894-1000\$R6H1X02\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko\3.4.7_0\images\retina\u.gif
[2009/07/14 13:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2016/04/09 15:58:02 | 014,186,496 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2016/04/09 15:54:53 | 012,881,408 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/14 10:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
  • sagume
  • 2016/09/25 (Sun) 02:44:32
OTLログ13
続き

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 21:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/14 10:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== Custom Scans ==========[/color]
[2016/09/24 08:49:12 | 000,000,000 | -H-D | M] -- C:\ProgramData
[2016/09/22 09:23:04 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\InstallShield Installation Information
[2016/09/22 10:06:35 | 000,000,000 | -H-D | M] -- C:\Program Files (x86)\Temp
[2016/06/11 07:43:36 | 000,000,000 | -H-D | M] -- C:\Program Files\CanonBJ
[2016/06/11 07:43:36 | 000,000,000 | -H-D | M] -- C:\Program Files\CanonBJ\IJPrinter
[2016/06/11 07:46:01 | 000,000,000 | -H-D | M] -- C:\Program Files\CanonBJ\IJPrinter\Canon MG6200 series
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ
[2016/09/18 15:47:22 | 000,000,000 | -H-D | M] -- C:\ProgramData\Apple Computer\iTunes\SC Info
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ\IJPrinter
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ\IJPrinter\CNMWindows
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\ProgramData\CanonBJ\IJPrinter\CNMWindows\Canon MG6200 series Printer
[2016/06/26 23:30:52 | 000,000,000 | -H-D | M] -- C:\ProgramData\EPSON\PRINTER
[2016/06/26 20:06:32 | 000,000,000 | -H-D | M] -- C:\ProgramData\EPSON\EPSON PX-045A Series\Language
[2009/07/14 14:32:38 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\WwanSvc
[2009/07/14 14:32:38 | 000,000,000 | -H-D | M] -- C:\ProgramData\Microsoft\WwanSvc\Profiles
[2016/06/11 02:04:35 | 000,000,000 | -H-D | M] -- C:\ProgramData\Sony Corporation\Media Go Video Playback Engine\2-2.20.107.05220
[2016/06/11 02:04:35 | 000,000,000 | -H-D | M] -- C:\ProgramData\Sony Corporation\Media Go Video Playback Engine\3-2.20.107.05220
[2016/06/10 18:18:25 | 000,000,000 | RH-D | M] -- C:\Users\Default
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ
[2016/09/18 15:47:22 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Apple Computer\iTunes\SC Info
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ\IJPrinter
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ\IJPrinter\CNMWindows
[2016/06/11 07:45:00 | 000,000,000 | -H-D | M] -- C:\Users\All Users\CanonBJ\IJPrinter\CNMWindows\Canon MG6200 series Printer
[2016/06/26 23:30:52 | 000,000,000 | -H-D | M] -- C:\Users\All Users\EPSON\PRINTER
[2016/06/26 20:06:32 | 000,000,000 | -H-D | M] -- C:\Users\All Users\EPSON\EPSON PX-045A Series\Language
[2009/07/14 14:32:38 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\WwanSvc
[2009/07/14 14:32:38 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Microsoft\WwanSvc\Profiles
[2016/06/11 02:04:35 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Sony Corporation\Media Go Video Playback Engine\2-2.20.107.05220
[2016/06/11 02:04:35 | 000,000,000 | -H-D | M] -- C:\Users\All Users\Sony Corporation\Media Go Video Playback Engine\3-2.20.107.05220
[2009/07/14 12:20:08 | 000,000,000 | -H-D | M] -- C:\Users\Default\AppData
[2016/06/10 18:18:36 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData
[2016/09/08 18:21:15 | 001,057,744 | -H-- | M] (LINE Corporation) -- C:\Users\Owner\AppData\Local\LINE\bin\LineUpdater.exe
[2016/09/01 18:32:35 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData\Local\Microsoft\Device Metadata\dmrccache\downloads
[2016/06/10 18:19:32 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~
[2016/06/10 18:46:55 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData\Local\Microsoft\Feeds\{5588ACFD-6436-411B-A5CE-666AE6A92D3D}~\WebSlices~
[2016/06/10 18:49:13 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData\Local\Microsoft\Media Player\アート キャッシュ
[2016/06/10 18:19:44 | 000,000,000 | RH-D | M] -- C:\Users\Owner\AppData\Local\Microsoft\Windows\Burn\Burn
[2015/11/16 09:34:00 | 000,136,888 | -H-- | M] () -- C:\Users\Owner\AppData\Local\Temp\intel\HAXM\6.0.1\silent\setup.exe
[2016/09/18 20:30:04 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2016/06/26 19:14:38 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\DNTException\Low
[2016/06/26 19:14:38 | 000,000,000 | -H-D | M] -- C:\Users\Owner\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
[2016/06/12 10:41:04 | 000,000,000 | -H-D | M] -- C:\Users\Owner\Documents\MEGA\Rubbish
[2016/06/10 19:27:32 | 000,000,000 | -H-D | M] -- C:\Users\Owner\Documents\MEGA\Rubbish\2016-05-28\Sony Corporation\Media Go Video Playback Engine\2-2.20.106.05220
[2016/06/10 19:27:32 | 000,000,000 | -H-D | M] -- C:\Users\Owner\Documents\MEGA\Rubbish\2016-05-28\Sony Corporation\Media Go Video Playback Engine\3-2.20.106.05220
[2016/09/24 09:09:02 | 000,000,000 | RH-D | M] -- C:\Users\Public\Desktop
[2009/07/14 11:34:59 | 000,000,000 | RH-D | M] -- C:\Users\Public\Favorites
[2016/06/26 09:22:05 | 000,000,000 | RH-D | M] -- C:\Users\Public\Libraries
[2016/06/11 01:25:59 | 000,000,000 | -H-D | M] -- C:\Windows\msdownld.tmp
[2016/06/12 06:42:33 | 000,000,000 | -H-D | M] -- C:\Windows\ServiceProfiles\LocalService\AppData
[2009/07/14 13:45:47 | 000,000,000 | -H-D | M] -- C:\Windows\ServiceProfiles\NetworkService\AppData
[2016/06/10 18:41:22 | 000,000,000 | -H-D | M] -- C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Media Player\アート キャッシュ
[2016/06/11 07:44:44 | 000,000,000 | -H-D | M] -- C:\Windows\SysNative\CanonIJ Uninstaller Information
[2016/09/09 18:53:09 | 000,000,000 | -H-D | M] -- C:\Windows\SysNative\GroupPolicy

[color=#A23BEC]< %windir%\tasks\*.job >[/color]
[2016/09/24 21:00:00 | 000,000,626 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2016/09/24 12:02:59 | 000,000,680 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineCore.job
[2016/09/24 20:29:02 | 000,000,684 | ---- | M] () -- C:\Windows\tasks\DropboxUpdateTaskMachineUA.job
[2016/09/24 12:03:12 | 000,000,684 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2016/09/24 20:41:07 | 000,000,688 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

[color=#E56717]========== Drive Information ==========[/color]

Physical Drives
---------------

Drive: \\\\.\\PHYSICALDRIVE0 - Fixed hard disk media
Interface type: IDE
Media Type: Fixed hard disk media
Model: ST500LM012 HN-M500MBB ATA Device
Partitions: 2
Status: OK
Status Info: 0

Partitions
---------------

DeviceID: Disk #0, Partition #0
PartitionType: Installable File System
Bootable: True
BootPartition: True
PrimaryPartition: True
Size: 99.00MB
Starting Offset: 1048576
Hidden sectors: 0


DeviceID: Disk #0, Partition #1
PartitionType: Installable File System
Bootable: False
BootPartition: False
PrimaryPartition: True
Size: 466.00GB
Starting Offset: 105906176
Hidden sectors: 0


[color=#E56717]========== Base Services ==========[/color]
SRV:[b]64bit:[/b] - [2015/10/30 02:50:29 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:[b]64bit:[/b] - [2016/05/05 02:16:57 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:[b]64bit:[/b] - [2009/07/14 10:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:23 | 000,849,920 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:[b]64bit:[/b] - [2010/11/20 22:25:45 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:[b]64bit:[/b] - [2016/09/02 23:53:56 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/14 10:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:[b]64bit:[/b] - [2012/07/05 07:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:[b]64bit:[/b] - [2016/06/07 01:50:16 | 000,190,976 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2016/06/07 00:23:04 | 000,145,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:[b]64bit:[/b] - [2016/02/03 03:57:35 | 000,511,488 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:[b]64bit:[/b] - [2010/11/20 22:26:04 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/20 21:18:30 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:[b]64bit:[/b] - [2011/03/03 15:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:[b]64bit:[/b] - [2009/07/14 10:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
  • sagume
  • 2016/09/25 (Sun) 02:47:18
OTLログ14
続き

SRV - [2009/07/14 10:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:[b]64bit:[/b] - [2016/05/13 02:14:48 | 000,502,272 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
No service found with a name of MsMpSvc
No service found with a name of NisSrv
SRV:[b]64bit:[/b] - [2009/07/14 10:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/14 10:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/12/06 13:17:27 | 000,303,616 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:[b]64bit:[/b] - [2011/05/24 20:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:[b]64bit:[/b] - [2010/11/20 22:25:21 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:[b]64bit:[/b] - [2016/09/02 23:53:56 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:[b]64bit:[/b] - [2009/07/14 10:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:24 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:[b]64bit:[/b] - [2016/02/03 03:57:35 | 000,511,488 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:[b]64bit:[/b] - [2016/02/09 18:55:34 | 000,030,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:[b]64bit:[/b] - [2016/09/02 23:53:56 | 000,030,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:26 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:25 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/20 21:21:19 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:[b]64bit:[/b] - [2015/08/06 02:56:14 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:26 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/20 21:21:28 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:[b]64bit:[/b] - [2014/12/19 12:06:55 | 000,210,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:[b]64bit:[/b] - [2010/11/20 22:25:27 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:[b]64bit:[/b] - [2015/02/03 12:30:55 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:25 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:[b]64bit:[/b] - [2013/05/27 14:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:28 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:[b]64bit:[/b] - [2010/11/20 22:26:59 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:28 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:[b]64bit:[/b] - [2016/05/05 00:04:16 | 000,128,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2016/05/04 23:55:38 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:[b]64bit:[/b] - [2016/05/14 06:55:20 | 002,607,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:[b]64bit:[/b] - [2010/11/20 22:26:07 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:[b]64bit:[/b] - [2009/07/14 10:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:[b]64bit:[/b] - [2010/11/20 22:27:28 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

< End of report >
  • sagume
  • 2016/09/25 (Sun) 02:48:14
Extrasログ1
続いてExtrasログです。

OTL Extras logfile created on: 2016/09/24 20:34:54 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Owner\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.18449)
Locale: 00000411 | Country: 日本 | Language: JPN | Date Format: yyyy/MM/dd

5.92 Gb Total Physical Memory | 4.33 Gb Available Physical Memory | 73.23% Memory free
11.83 Gb Paging File | 10.24 Gb Available in Paging File | 86.57% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 465.66 Gb Total Space | 212.68 Gb Free Space | 45.67% Space Free | Partition Type: NTFS

Computer Name: OWNER-PC | User Name: Owner | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)

[HKEY_USERS\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0691492A-0468-4CD1-BD9B-89286DE2EC16}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{06DED1E2-AC38-4E62-903F-5DB78A8EABBF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{12D10BAC-10D9-42C9-A6D6-7FFA47280180}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{13B4FD6E-48E7-4E1A-9680-DCD289A36559}" = rport=138 | protocol=17 | dir=out | app=system |
"{18A42A58-67C7-406D-AA32-1E165A573C59}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{228561FC-FF9A-41BB-A3FE-474E2986DF3D}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{25DC9C6A-AA9F-4537-A66E-FBC41232D72A}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{27791D87-F4BE-4642-93D7-55197697B8F2}" = lport=138 | protocol=17 | dir=in | app=system |
"{2B9D3822-9809-47A7-A124-AF7FFD948C6C}" = lport=137 | protocol=17 | dir=in | app=system |
"{369384F2-2A05-4834-A709-01EC18A21FEB}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{4851120A-1FAB-4B49-A713-DF795D4CE5CA}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{4B8405E1-EFF0-4FE3-9DAC-06DC8D56E16B}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{532E4599-7A18-4598-8ED0-3E076BD631E3}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{7B960133-D277-4A36-82E0-0BACE49314EF}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7C45FC44-2C3A-4F0E-8468-56923DF28490}" = lport=139 | protocol=6 | dir=in | app=system |
"{9B26DF2F-2A53-4290-A98A-D13EA1BFD435}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{A602C8EB-3A52-4620-A960-59D3FEEA8113}" = lport=445 | protocol=6 | dir=in | app=system |
"{AD345997-BD11-4F0A-8F24-D26D5492FBEF}" = rport=10243 | protocol=6 | dir=out | app=system |
"{BEDB9108-282D-4D64-A650-75FB37B7D02B}" = lport=10243 | protocol=6 | dir=in | app=system |
"{C7E2774E-0725-45C5-AB4E-C96F0CF3D46D}" = rport=445 | protocol=6 | dir=out | app=system |
"{D32E0B98-BFC0-44B6-8AD2-F419F8C86D8E}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
  • sagume
  • 2016/09/25 (Sun) 02:55:24
Extrasログ2
続き

"{DC65FF31-901D-4DE7-BDEC-D251C03863B9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E7126621-7429-4E7A-B0DD-AFABD8B099AD}" = lport=2869 | protocol=6 | dir=in | app=system |
"{E77D4FB2-82DC-4788-9BB9-1BE6B2924402}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{EFB6A02D-5BC5-4D76-8578-5B45AD4101AB}" = rport=139 | protocol=6 | dir=out | app=system |
"{F03FE190-4893-4C56-BBE5-5EAFC2349430}" = rport=137 | protocol=17 | dir=out | app=system |
"{F6D041E0-67A7-4112-9EB5-A862C6AFD622}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{1CC5C6FA-B10F-48CD-809F-0F85B03F078B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{21FFC5F8-0978-4BEB-9A37-7EBFED9A7B6B}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"{2CDACB5E-58D5-4DF9-8D5B-F1CCC8C8D4B2}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{2F79704F-8C9F-4B2C-812E-D686E7E335A8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{363F40EC-A559-4DFD-8DE6-349379BD2EB8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{38709620-3A34-4420-828C-4229893A00C0}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{3CCC50B3-FE8B-4FCE-8FE9-0892B54A99E0}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{3E0F5EC8-7816-4F21-8E56-D83569047553}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{45C5BBFC-81FE-44BC-9091-752A2149AFD1}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{462C14EE-A5A0-4AF5-B733-6B3216377A5D}" = dir=in | app=c:\users\owner\appdata\local\apowersoft\apowersoft online launcher\apowersoft online launcher.exe |
"{4B81B4F7-3551-4571-A0D8-56996A91DDFC}" = dir=in | app=c:\program files\presonus\studio one 3\studio one.exe |
"{6DC3B1F5-7EB2-4A0E-8203-F82FEFE086FF}" = dir=out | app=c:\program files (x86)\apowersoft\video converter studio\video converter studio.exe |
"{8126E50A-0FCA-45E4-B6A5-BFC0D429042C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{824C7AC0-D9D5-4C20-BF7A-CBD9AC471FDA}" = protocol=6 | dir=out | app=system |
"{8F8A2B1B-CDCA-4588-B505-CA18AC6632B5}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{93164B7D-56CD-447A-A73C-912CFBDBC2C8}" = dir=in | app=c:\programdata\bluestacksgamemanager\obs\hd-obs.exe |
"{96884F46-CD48-4CC6-A553-F29987FA72D3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{A0396208-38CE-4216-A435-59C8B58136F2}" = dir=out | app=c:\programdata\bluestacksgamemanager\obs\hd-obs.exe |
"{A79A7D86-F160-43A4-B935-BC458D527821}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A7D35CBA-A06D-4890-B8E8-7AE7383A18E6}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A930B6F1-B72F-42B7-9498-09CEF971FE8F}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{BE423418-77F2-4238-A270-85DD36C90180}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe |
"{BFBA412E-B07A-4037-BBBE-EC1567EDC27E}" = dir=in | app=c:\users\owner\appdata\local\apowersoft\online video converter\online video converter.exe |
"{C0C2843C-C16D-4F78-A2AF-14A5FEFF910A}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{C3A9F80B-72D8-40CF-B1C6-0DB8668F829D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CB68BC29-6662-4E00-903F-D58323E9CD54}" = dir=in | app=c:\program files (x86)\dropbox\client\dropbox.exe |
"{CCEE3901-30B1-4BC8-B5BE-972A8A13B44F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{CD2F8A71-2274-45B7-B499-FEC322A82B9C}" = dir=out | app=c:\users\owner\appdata\local\apowersoft\online video converter\online video converter.exe |
"{DC33DB43-13D6-41F3-B89D-D878742167D0}" = dir=in | app=c:\program files (x86)\apowersoft\video converter studio\video converter studio.exe |
"{DC3D27E2-A728-4A20-93C6-D90528DCAA71}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{DD444B0D-4C54-4D1A-91E5-7333C25ACCEE}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{E03E40ED-4215-4F98-B776-68EA5305ADAB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{E12EB65A-A60F-46B4-8168-4E69C521331E}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{E40EEBC5-4818-4273-978F-0231D7A94044}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{E4D20384-10D4-418A-A28B-95C89C974293}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"{E51A775F-2651-4BBF-90E5-1531FFC00F04}" = dir=out | app=c:\users\owner\appdata\local\apowersoft\apowersoft online launcher\apowersoft online launcher.exe |
"{E57ACD9B-1271-4286-BC82-4569828F8D65}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{F000EA11-C97E-45EF-A15F-810053EC1BB1}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"TCP Query User{1BB0947A-BD33-43B6-A91D-A1B9A81307B9}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"TCP Query User{4D778542-5384-45B0-BB43-735FEF88217A}C:\users\owner\desktop\個人用フォルダー\東方\本体\t09 東方花映塚\adonis.exe" = protocol=6 | dir=in | app=c:\users\owner\desktop\個人用フォルダー\東方\本体\t09 東方花映塚\adonis.exe |
"TCP Query User{6F4FBFE0-470A-46E4-8946-62BFE5CA4610}C:\users\owner\desktop\個人用フォルダー\ゲーム\マインクラフト\minecraft pe server\pocketmine-mp\bin\php\php.exe" = protocol=6 | dir=in | app=c:\users\owner\desktop\個人用フォルダー\ゲーム\マインクラフト\minecraft pe server\pocketmine-mp\bin\php\php.exe |
"TCP Query User{7391F142-CCF3-4674-9987-8C152DB2C790}C:\users\owner\wt\launcher.exe" = protocol=6 | dir=in | app=c:\users\owner\wt\launcher.exe |
"TCP Query User{809855AD-E42A-401B-9426-DBB9A9700646}C:\program files (x86)\airdroid\airdroid.exe" = protocol=6 | dir=in | app=c:\program files (x86)\airdroid\airdroid.exe |
"TCP Query User{A5286B6C-A9A9-40EF-B0A0-EABBBD7C67C7}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |
"TCP Query User{AFE745B2-FB29-46BA-8E36-087FB5EA9DC4}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"TCP Query User{B3B7EC61-301C-4296-89B4-68FC19E534AE}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |
"UDP Query User{4EE9B323-15DC-4B6A-8132-664ED302CA4A}C:\program files (x86)\airdroid\airdroid.exe" = protocol=17 | dir=in | app=c:\program files (x86)\airdroid\airdroid.exe |
"UDP Query User{619D9CD5-80C6-4AB4-8E47-5BD56789B491}C:\users\owner\wt\launcher.exe" = protocol=17 | dir=in | app=c:\users\owner\wt\launcher.exe |
"UDP Query User{89EAEDED-5ED5-4A35-AE7F-66B5B8067B17}C:\users\owner\desktop\個人用フォルダー\ゲーム\マインクラフト\minecraft pe server\pocketmine-mp\bin\php\php.exe" = protocol=17 | dir=in | app=c:\users\owner\desktop\個人用フォルダー\ゲーム\マインクラフト\minecraft pe server\pocketmine-mp\bin\php\php.exe |
"UDP Query User{9B2F21A5-44E8-4CB9-96D4-A594EEB02594}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |
"UDP Query User{9C01C513-94BF-4D0C-BDE5-7509008B85CA}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{C8AEEAC3-2880-4889-AED7-97F907D6949F}C:\users\owner\desktop\個人用フォルダー\東方\本体\t09 東方花映塚\adonis.exe" = protocol=17 | dir=in | app=c:\users\owner\desktop\個人用フォルダー\東方\本体\t09 東方花映塚\adonis.exe |
"UDP Query User{E08B4423-AC2C-42EC-97B8-A31D7CD3E763}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe |
"UDP Query User{EAE5B968-82FB-4C61-9E1D-153ED5D7D1C5}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{06B24B6B-4B44-4C94-B1F9-40474597D645}" = Microsoft SQL Server Compact 4.0 SP1 x64 JPN
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6200_series" = Canon MG6200 series MP Drivers
"{1365E28A-0E02-46C8-8AF5-1297EDF8CD79}" = Microsoft System CLR Types for SQL Server 2012 (x64)
"{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}" = Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219
"{1D2AF0E5-3B07-4B0F-98BD-03F0918BC367}" = ECOモード設定ツール
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{21134089-9B59-34C8-BE11-929D26AD5207}" = Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24123
"{30F3FF94-225B-4319-A13C-E307FFDA3CFB}" = Intel® Hardware Accelerated Execution Manager
"{325B3648-DBBC-4321-B964-2CD7D03CB599}" = Microsoft SQL Server 2012 Command Line Utilities
"{36E619BC-A234-4EC3-849B-779A7C865A45}" = Microsoft SQL Server 2012 Data-Tier App Framework
  • sagume
  • 2016/09/25 (Sun) 02:58:06
Extrasログ3
続き

"{3FB9400C-F225-41F7-AD14-3577A52498A7}" = Intel(R) Network Connections 21.0.504.0
"{4C6761FB-26A3-4CB2-8BDD-DF5D122CEE2E}" = Microsoft SQL Server 2012 Express LocalDB
"{5DA6F56A-5E2D-4FB4-88CB-E9EE2B790A14}" = Microsoft SQL Server Compact 3.5 SP2 x64 JPN
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{60299CE7-37E3-4C6A-92AD-ADB0EB133856}" = Microsoft SQL Server 2012 Transact-SQL Compiler Service
"{63B4D665-34F5-333A-BE00-6DDE0CBD4A6C}" = Microsoft .NET Framework 4.5.2 (JPN)
"{64A3A4F4-B792-11D6-A78A-00B0D0170670}" = Java SE Development Kit 7 Update 67 (64-bit)
"{64A3A4F4-B792-11D6-A78A-00B0D0180920}" = Java SE Development Kit 8 Update 92 (64-bit)
"{6E8F8C0E-28A4-49C0-BF02-A2EB3E123803}" = Microsoft SQL Server 2012 Native Client
"{7249B7B3-1800-4FF1-A516-66066FCDEBAE}" = Google 日本語入力
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{861529DE-0E52-480F-B2F5-7A747444E203}" = 画面出力先切替ツール
"{8E363055-15E5-4D8A-9C69-A0A9DE9A3337}" = UxStyle Core Beta
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.6.1
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1041" = Microsoft .NET Framework 4.5.2 (日本語)
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9BB39D9A-6E5C-4148-86D9-C7ED667883B7}" = PDF-XChange Editor
"{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}" = NX PAD Driver
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B024939D-63E0-4A5C-9FF9-AC6C46A43118}" = Microsoft SQL Server 2012 Management Objects (x64)
"{B0E40F1B-713D-3F68-840C-23262E34BDB4}" = Microsoft Help Viewer 1.1 Language Pack - JPN
"{B3806CF1-829E-4280-BC3E-1636035908FD}" = バッテリ・リフレッシュ&診断ツール
"{BD6F5371-DAC1-30F0-9DDE-CAC6791E28C3}" = Microsoft .NET Framework 4.6.1
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{E5748D30-7E6D-3A8E-BFE6-C1D02C6DDABB}" = Microsoft Help Viewer 1.1
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{F3C300C3-60AD-47AE-9F22-090B330E4D94}" = Microsoft SQL Server 2012 Transact-SQL ScriptDom
"{FDBE9DB4-7A91-3A28-B27E-705EF7CFAE57}" = Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24123
"7-Zip" = 7-Zip 16.02 (x64)
"Android Studio" = Android Studio
"CCleaner" = CCleaner
"EPSON PX-045A Series" = EPSON PX-045A Series プリンター アンインストール
"GIMP-2_is1" = GIMP 2.8.16
"Microsoft Help Viewer 1.1" = Microsoft Help Viewer 1.1
"Microsoft Help Viewer 1.1 Language Pack - JPN" = Microsoft Help Viewer 1.1 Language Pack - JPN
"PreSonus Studio One 3" = PreSonus Studio One 3 x64
"PROSetDX" = Intel(R) Network Connections 21.0.504.0
"UnityWebPlayer" = Unity Web Player (x64) (All users)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
"{024D6C9E-4775-421D-B0D0-D4F123687778}" = Windows Live Essentials
"{059054F0-64DA-493C-ABCE-69663D004B84}" = WCF Data Services 5.6.0 RUS Language Pack
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
"{0960BC9F-C858-435D-A1D7-F171B3F551E5}" = SSDT に必要なコンポーネント
"{09643095-6C6A-4AC6-8064-9055AD32F870}" = Microsoft SQL Server Data Tools Build Utilities - JPN (11.1.20828.01)
"{099218A5-A723-43DC-8DB5-6173656A1E94}" = Dropbox Update Helper
"{0FE5A2D6-B1CC-48FD-812C-D214897DCC5B}" = WCF Data Services Tools for Microsoft Visual Studio 2010 KOR Language Pack
"{1045AB6F-6151-3634-8C2C-EE308AA1A6A7}" = Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23506
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{163C0EDE-246C-41D9-92EB-7BB3DC565655}" = WCF Data Services Tools for Microsoft Visual Studio 2010 RUS Language Pack
"{1948E039-EC79-4591-951D-9867A8C14C90}" = Microsoft .NET Framework 4.5 SDK
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}" = Minecraft
"{1C51A8F8-46F5-4859-94D4-BCC10E2986A5}" = NW-E080 WALKMAN Guide
"{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
"{20FACF5D-023E-4BD0-A14A-2A8A69FC7D9E}" = WCF Data Services 5.6.0 ITA Language Pack
"{212BFBE7-25E0-46A7-8445-375A371DCE45}" = Media Go
"{232DA4E2-74A1-4960-A675-FC4AE177E899}" = Microsoft .NET Framework 4.5 SDK - 日本語 Lang Pack
"{23daf363-3020-4059-b3ae-dc4ad39fed19}" = Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506
"{25a2ff3c-b7f9-425b-89c1-88468be73b64}" = WCF Data Services 5.6 Tools
"{27C1B85F-6057-4869-A536-2587F692A02C}" = WCF Data Services 5.6.0 CHS Language Pack
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Client Installation Program
"{284F5338-4886-460A-BE3E-E510888517BA}" = WCF Data Services 5.6.0 DEU Language Pack
"{295853EC-FBA6-43BF-BA9D-48422BDBF2D2}" = Microsoft SQL Server 2012 T-SQL 言語サービス
"{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}" = Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123
"{3361D415-BA35-4143-B301-661991BA6219}" = MyEPSON Connect
"{35BCEC03-6257-4E45-8C63-FDA427202ADD}" = WCF Data Services 5.6.0 FRA Language Pack
"{3a57cb18-08d3-4c3b-a53a-0615eb81d06a}" = Microsoft .NET Framework 4.6 Targeting Pack (日本語)
"{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
"{46910786-E4AC-41E4-A4A0-C086EA85242D}" = WCF Data Services 5.6.0 Runtime
"{4A038D56-AC29-4B4E-A143-DA19F88DA8EF}" = WCF Data Services Tools for Microsoft Visual Studio 2010 ESN Language Pack
"{4C3386F4-BBAC-4AEE-85F7-970F71E2DF45}" = Media Go Network Downloader
"{4F0E15EA-F64C-11E5-9992-E717EA7DB0C8}" = MuseScore 2
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}" = EPSON Scan OCR コンポーネント
"{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}" = Microsoft .NET Framework 4.5 Multi-Targeting Pack
"{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}" = Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219
"{5E848897-1113-49FE-8FCE-D4BF39EDE254}" = Windows Live UX Platform Language Pack
"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{6367ca6a-0f36-456a-8843-bd8c62239c4b}" = PDF-XChange Editor
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
"{65AD78AD-D23D-3A1E-9305-3AE65CD522C2}" = Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23506
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{729B89D0-946A-407E-A121-343BD3320C40}" = Roxio BackOnTrack
"{7348D0F2-3DAC-0BE7-4E7C-64844D2E3CA9}" = Media Go Video Playback Engine 2.20.107.05220
"{74DC8A26-4E05-40B6-AD11-C9428A1AE150}" = Roxio Creator LJB
"{80C587C3-5361-4EA0-9EB2-92F5CD693CC2}" = Microsoft SQL Server Data Tools - JPN (11.1.20828.01)
"{849160F2-2986-4AAE-9FF0-935EFB89E317}" = WCF Data Services Tools for Microsoft Visual Studio 2010 FRA Language Pack
"{86D940E5-0866-4611-B9A0-F5838359930D}" = Roxio Creator LJB
"{89A15676-78AE-4D51-BF5B-DEE3E0D46C94}" = Roxio Creator LJB
"{89E9AB79-7914-4B67-8D4E-A8B1E39C3D89}" = Microsoft SQL Server Compact 3.5 SP2 JPN
"{89F4AFD0-B2CE-4FA2-9911-B3ADA75B8E1C}" = Microsoft SQL Server 2012 Management Objects
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8F01524C-0676-4CC1-B4AE-64753C723391}" = Epson Event Manager
"{938D85DC-91A7-4164-B43C-C79A67BD13BE}" = Entity Framework Designer for Visual Studio 2012 - JPN
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{97DBDBB3-3F7F-4A86-951E-094FDAE63603}" = WCF Data Services Tools for Microsoft Visual Studio 2010
"{97E3AE69-8FB1-496A-8CA0-AE491902DCD7}" = Movie Maker
"{98ADD573-37C0-4BFA-9A18-860C3CF0EFA2}" = WCF Data Services Tools for Microsoft Visual Studio 2010 ITA Language Pack
"{992DCDBF-5FE4-4AAA-BF5C-5901A2889162}" = WCF Data Services Tools for Microsoft Visual Studio 2010 CHT Language Pack
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A74A0091-5290-4EB8-B708-11AAA1BCEA6B}" = Microsoft SQL Server System CLR Types
"{AA655366-D323-404D-AA9B-AD562CAE1DD0}" = BlueStacks App Player
"{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
"{b7d2ce14-2f17-410d-bea7-9126b9d4bb31}" = 3DMark
"{B97D011F-C9C8-460C-8F55-8E8DF04AF468}" = WCF Data Services Tools for Microsoft Visual Studio 2010 CHS Language Pack
"{BBEC10F9-AC15-41EE-A271-0B1077F53740}" = Adobe AIR
"{BF01E39C-5B68-4AD8-8DF1-9A37356D43F4}" = Microsoft SQL Server 2008 R2 管理オブジェクト
"{C917B152-F965-43B8-8328-B1C2345CE48F}" = WCF Data Services Tools for Microsoft Visual Studio 2010 JPN Language Pack
"{C93D7914-35C9-4858-8B9D-1A4BB8C4362A}" = Microsoft .NET Framework 4.6 Targeting Pack (日本語)
"{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
"{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
"{D0AEEFB0-F456-421F-982B-CF8020FA5BC3}" = WCF Data Services 5.6.0 CHT Language Pack
"{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
"{D6D69EE4-00F6-4DCE-B7AF-E90042BDE39B}" = フォト ギャラリー
"{D7CF8F4F-DCBB-4979-983B-748C1786482C}" = Microsoft System CLR Types for SQL Server 2012
"{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
"{DDA3C325-47B2-4730-9672-BF3771C08799}_is1" = XMedia Recode version 3.3.3.8
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{EC5B31EF-EA58-4410-80AC-B9D27D124335}_is1" = Vyzex EWI4000S
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{EED62F42-E45A-3012-A4EF-5565CF5D21E2}" = Microsoft ヘルプ ビューアー 2.0 Language Pack - JPN
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
  • sagume
  • 2016/09/25 (Sun) 02:59:24
Extrasログ4
続き

"{F3428242-2D69-4E79-B654-1EC06BCEE402}" = WCF Data Services 5.6.0 ESN Language Pack
"{F3BB7E2D-62E0-4008-8727-588EDC274C25}" = Photo Common
"{F3DFC581-4066-4987-90FB-BE1403E07B05}" = WCF Data Services 5.6.0 KOR Language Pack
"{F8A2A208-72B3-4D61-95FC-8A65D340689B}_is1" = Microsoft Visual Studio Code
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}" = Microsoft SQL Server 2012 Data-Tier App Framework
"{FC87A84F-5BF6-4984-9A6A-94743B6B7DBD}" = WCF Data Services 5.6.0 JPN Language Pack
"{FEB375AB-6EEC-3929-8FAF-188ED81DD8B5}" = Microsoft Help Viewer 2.0
"{FF21A0F4-811A-472A-87C5-D11B2A56AB17}" = WCF Data Services Tools for Microsoft Visual Studio 2010 DEU Language Pack
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 23 ActiveX
"Adobe Flash Player NPAPI" = Adobe Flash Player 23 NPAPI
"AirDroid" = AirDroid 3.3.2.0
"Akai Professional Professional EWI5000_is1" = Akai Professional EWI 5000 Editor
"Audacity®_is1" = Audacity 2.1.2
"Avast" = Avast Free Antivirus
"Clover" = Clover 3.0
"Dropbox" = Dropbox
"EOS Lens Registration Tool" = Canon Utilities EOS Lens Registration Tool
"EOS Utility 2" = Canon Utilities EOS Utility 2
"EPSON PX-045A Series Useg" = EPSON PX-045A Series ユーザーズガイド
"EPSON Scanner" = EPSON Scan
"Google Chrome" = Google Chrome
"Lhaplus" = Lhaplus
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware バージョン 2.2.1.1043
"MEGAsync" = MEGAsync
"Microsoft Help Viewer 2.0" = Microsoft Help Viewer 2.0
"Microsoft ヘルプ ビューアー 2.0 Language Pack - JPN" = Microsoft ヘルプ ビューアー 2.0 Language Pack - JPN
"Mozilla Firefox 49.0 (x86 ja)" = Mozilla Firefox 49.0 (x86 ja)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MyEPSON Connect" = MyEPSON Connect
"SafeZone 1.51.2220.62" = SafeZone Stable 1.51.2220.62
"VLC media player" = VLC media player
"WinLiveSuite" = Windows Live Essentials
"採譜の達人" = 採譜の達人
"東方リズムカーニバル!紅 体験版_is1" = 東方リズムカーニバル!紅 体験版 ver 0.2.0
"東方輝針城_is1" = 東方輝針城 ver 1.00a

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{AA1DB119-E937-420C-8D93-4EC883D2EC68}_is1" = 学習用C言語開発環境 Ver 0.0.0.6
"LINE" = LINE

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2016/09/21 21:02:17 | Computer Name = Owner-PC | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: 0006-64bit_Win7_Win8_Win81_Win10_R279 (2).exe、バージョン:
2.11.15.0、タイム スタンプ: 0x38dfa3f6 障害が発生しているモジュール名: unknown、バージョン: 0.0.0.0、タイム スタンプ:
0x00000000 例外コード: 0xc000041d 障害オフセット: 0x7788ba71 障害が発生しているプロセス ID: 0x1910 障害が発生しているアプリケーションの開始時刻:
0x01d2146cf3feb0b0 障害が発生しているアプリケーション パス: C:\Users\Owner\Downloads\0006-64bit_Win7_Win8_Win81_Win10_R279
(2).exe 障害が発生しているモジュール パス: unknown レポート ID: 3413c8c0-8060-11e6-b0a5-d36f328a3266

Error - 2016/09/21 22:00:43 | Computer Name = Owner-PC | Source = Application Hang | ID = 1002
Description = プログラム clover.exe バージョン 3.0.406.0 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: 6dc 開始時刻: 01d2147504c3a522 終了時刻: 8 アプリケーション
パス: C:\Program Files (x86)\Clover\clover.exe レポート ID: 5aad8ead-8068-11e6-ad6e-8b821fad616b


Error - 2016/09/22 13:03:05 | Computer Name = Owner-PC | Source = Application Error | ID = 1000
Error - 2016/09/22 13:04:33 | Computer Name = Owner-PC | Source = Application Error
| ID = 1000

Error - 2016/09/22 13:05:04 | Computer Name = Owner-PC | Source = IAStorDataMgrSvc | ID = 0
Description =

Error - 2016/09/23 8:18:12 | Computer Name = Owner-PC | Source = ESENT | ID = 490
Description = taskhost (2264) WebCacheLocal: 読み取りまたは書き込みのためにファイル "C:\Users\Owner\AppData\Local\Microsoft\Windows\WebCache\V01.chk"
を開こうとしましたが、システム エラー 32 (0x00000020): "プロセスはファイルにアクセスできません。別のプロセスが使用中です。 " が発生したため開けませんでした。ファイルを開く処理は、エラー
-1032 (0xfffffbf8) のため失敗します。

Error - 2016/09/23 14:02:23 | Computer Name = Owner-PC | Source = .NET Runtime | ID = 1023
Description =

Error - 2016/09/23 14:02:26 | Computer Name = Owner-PC | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: HD-LogRotator.exe、バージョン: 2.2.21.6212、タイム スタンプ:
0x571f3ddf 障害が発生しているモジュール名: clr.dll、バージョン: 4.6.1055.0、タイム スタンプ: 0x563c0f73 例外コード:
0xc0000005 障害オフセット: 0x0001faf0 障害が発生しているプロセス ID: 0x1a7c 障害が発生しているアプリケーションの開始時刻: 0x01d215c49eb8e704
障害が発生しているアプリケーション
パス: C:\Program Files (x86)\BlueStacks\HD-LogRotator.exe 障害が発生しているモジュール パス: C:\Windows\Microsoft.NET\Framework\v4.0.30319\clr.dll
レポート
ID: e1f02607-81b7-11e6-9c4a-88aabb275513

Error - 2016/09/23 19:29:22 | Computer Name = Owner-PC | Source = ESENT | ID = 490
Description = Windows (3660) Windows: 読み取りまたは書き込みのためにファイル "C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.chk"
を開こうとしましたが、システム エラー 32 (0x00000020): "プロセスはファイルにアクセスできません。別のプロセスが使用中です。 " が発生したため開けませんでした。ファイルを開く処理は、エラー
-1032 (0xfffffbf8) のため失敗します。

Error - 2016/09/23 19:29:22 | Computer Name = Owner-PC | Source = ESENT | ID = 439
Description = Windows (3660) Windows: ファイル C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS.chk
のシャドウ ヘッダーを書き込めません。エラー -1032 が発生しました。

Error - 2016/09/23 19:34:26 | Computer Name = Owner-PC | Source = Application Hang | ID = 1002
Description = プログラム clover.exe バージョン 3.0.406.0 は Windows との対話を停止し、終了しました。問題に関する詳細な情報があるかどうかを確認するには、アクション
センター コントロール パネルで、問題の履歴をクリックしてください。 プロセス ID: 148c 開始時刻: 01d215f2c2dc1652 終了時刻: 3 アプリケーション
パス: C:\Program Files (x86)\Clover\clover.exe レポート ID: 41794de0-81e6-11e6-8a09-aa95f13b696e


Error - 2016/09/23 20:07:11 | Computer Name = Owner-PC | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: clover.exe、バージョン: 3.0.406.0、タイム スタンプ: 0x52e0f76d
障害が発生しているモジュール名:
unknown、バージョン: 0.0.0.0、タイム スタンプ: 0x00000000 例外コード: 0xc0000005 障害オフセット: 0x00000000
障害が発生しているプロセス
ID: 0xf90 障害が発生しているアプリケーションの開始時刻: 0x01d215f781978bc9 障害が発生しているアプリケーション パス: C:\Program
Files (x86)\Clover\clover.exe 障害が発生しているモジュール パス: unknown レポート ID: d669559d-81ea-11e6-9be4-a721c9ccf210

Error - 2016/09/23 20:07:15 | Computer Name = Owner-PC | Source = Application Error | ID = 1000
Description = 障害が発生しているアプリケーション名: explorer.exe、バージョン: 6.1.7601.23418、タイム スタンプ: 0x570898dc
障害が発生しているモジュール名:
EXPLORERFRAME.dll、バージョン: 6.1.7601.23418、タイム スタンプ: 0x5708a88d 例外コード: 0xc0000005 障害オフセット:
0x00000000000209de 障害が発生しているプロセス ID: 0x10d0 障害が発生しているアプリケーションの開始時刻: 0x01d215f78c5f805b
障害が発生しているアプリケーション
パス: C:\Windows\explorer.exe 障害が発生しているモジュール パス: C:\Windows\system32\EXPLORERFRAME.dll
レポート
ID: d91f16af-81ea-11e6-9be4-a721c9ccf210

[ System Events ]
Error - 2016/09/23 22:59:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2016/09/23 22:59:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2016/09/23 22:59:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2016/09/23 22:59:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2016/09/23 22:59:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2016/09/23 22:59:26 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2016/09/23 23:01:48 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7001
Description = Network List Service サービスは、次のエラーが原因で開始できなかった Network Location Awareness
サービスに依存しています: %%1068

Error - 2016/09/23 23:02:45 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7000
Description = NetGroup Packet Filter Driver サービスを、次のエラーが原因で開始できませんでした: %%2

Error - 2016/09/23 23:02:57 | Computer Name = Owner-PC | Source = Service Control Manager | ID = 7026
Description = 次のブート開始ドライバーまたはシステム開始ドライバーを読み込めませんでした: VBoxNetAdp

Error - 2016/09/23 23:19:22 | Computer Name = Owner-PC | Source = BROWSER | ID = 8032
Description =


< End of report >
  • sagume
  • 2016/09/25 (Sun) 03:00:45
まだかなり食い込んでますね
作業と報告、ご苦労様です。
OTLスキャンログを見せてもらいました。
長いログの分割投稿もお手数だったでしょう。
ApowersoftやWondershareがまだ多数残ってたのが見つかってます。
これらが一度入れてしまうと簡単に削除はできないのをわかりましたか?それほどこれらは厄介です。

では次はOTLで見つかったものをOTL上から掃除します。

このレスの最後にスクリプトを貼っておくので、それを丸ごとコピーして、それをWindowsのメモ帳ファイルに貼り付けて保存しておいてください。

用意できたらPCをまたセーフモードで再起動してOTL起動してください。
起動したらOTLのウインドウ下部にスクリプトを貼り付けて、今度は「Run fix」(赤字のボタン)を押してください。
これでOTLでの処置が開始されます。

しばらく待って処置ができたらPCを通常モードで再起動すると、またOTLのログが出るはずなので、それを保存してから、しばらく様子見の後、OTLのログとともに状態報告をレスください。
OTLのスクリプトは以下になります。破線(-----)を含まない箇所を丸ごとコピーして、それをOTLに貼って作業してください
------------------------------------------
:OTL
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = ja
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page_TIMESTAMP = 40 60 7E B8 F1 15 D2 01 [binary data]
IE - HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main,SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy = Reg Error: Value error.
ActiveX:[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX:[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
[2016/09/11 11:32:22 | 000,000,000 | ---D | C] -- C:\Users\Owner\Documents\Apowersoft
[2016/09/11 11:32:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Apowersoft
[2016/09/11 11:29:44 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Roaming\Apowersoft
[2016/09/11 11:29:38 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Apowersoft
[2016/09/03 19:34:37 | 000,000,000 | ---D | C] -- C:\Users\Owner\AppData\Local\Wondershare
[2016/09/03 19:34:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wondershare
[2016/09/03 19:33:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Wondershare Video Converter Ultimate
[2016/09/03 19:33:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Wondershare
[2016/09/03 19:32:37 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Wondershare
"{BFBA412E-B07A-4037-BBBE-EC1567EDC27E}" = dir=in | app=c:\users\owner\appdata\local\apowersoft\online video converter\online video converter.exe |
"{DC33DB43-13D6-41F3-B89D-D878742167D0}" = dir=in | app=c:\program files (x86)\apowersoft\video converter studio\video converter studio.exe |
"{E51A775F-2651-4BBF-90E5-1531FFC00F04}" = dir=out | app=c:\users\owner\appdata\local\apowersoft\apowersoft online launcher\apowersoft online launcher.exe |

:Files
C:\Users\Owner\Documents\Apowersoft
C:\ProgramData\Apowersoft
C:\Users\Owner\AppData\Roaming\Apowersoft
C:\Users\Owner\AppData\Local\Apowersoft
C:\Users\Owner\AppData\Local\Wondershare
C:\Program Files (x86)\Common Files\Wondershare
C:\ProgramData\Wondershare Video Converter Ultimate
C:\ProgramData\Wondershare
C:\Users\Public\Documents\Wondershare

:Commands
[purity]
[resethosts]
[emptytemp]
[createrestorepoint]
[reboot]
------------------------------------------
  • 悪代官
  • 2016/09/25 (Sun) 20:34:57
まだかなり食い込んでますね
レスどうりの処置をしました。
前のレスの状態のまま特に変わったところはないと思います。

OTLログ

All processes killed
========== OTL ==========
HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page Redirect Cache AcceptLangs| /E : value set successfully!
HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page_TIMESTAMP| /E : value set successfully!
HKU\S-1-5-21-820934588-4127442196-1940865894-1000\SOFTWARE\Microsoft\Internet Explorer\Main\\SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {2C7339CF-2B09-4501-B3F3-F3508C9228ED}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\[b]64bit:[/b] {89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Active Setup\Installed Components\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{89B4C1CD-B018-4511-B0A1-5476DBF70820}\ not found.
C:\Users\Owner\Documents\Apowersoft\Video Converter Studio\Snapshots folder moved successfully.
C:\Users\Owner\Documents\Apowersoft\Video Converter Studio\Recording folder moved successfully.
C:\Users\Owner\Documents\Apowersoft\Video Converter Studio\Download folder moved successfully.
C:\Users\Owner\Documents\Apowersoft\Video Converter Studio\Convert\temp_20160911113553 folder moved successfully.
C:\Users\Owner\Documents\Apowersoft\Video Converter Studio\Convert folder moved successfully.
C:\Users\Owner\Documents\Apowersoft\Video Converter Studio folder moved successfully.
C:\Users\Owner\Documents\Apowersoft folder moved successfully.
C:\ProgramData\Apowersoft\Video Converter Studio\LOCAL_APPDATA_FONTCONFIG_CACHE folder moved successfully.
C:\ProgramData\Apowersoft\Video Converter Studio folder moved successfully.
C:\ProgramData\Apowersoft folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Video Converter Studio\Logs folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Video Converter Studio\log folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Video Converter Studio\data folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Video Converter Studio folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Apowersoft Online Video Converter\log folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Apowersoft Online Video Converter\data folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Apowersoft Online Video Converter folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Apowersoft Online Launcher\log folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft\Apowersoft Online Launcher folder moved successfully.
C:\Users\Owner\AppData\Roaming\Apowersoft folder moved successfully.
C:\Users\Owner\AppData\Local\Apowersoft\Online Video Converter\Temp folder moved successfully.
C:\Users\Owner\AppData\Local\Apowersoft\Online Video Converter folder moved successfully.
C:\Users\Owner\AppData\Local\Apowersoft folder moved successfully.
C:\Users\Owner\AppData\Local\Wondershare\WSHelper folder moved successfully.
C:\Users\Owner\AppData\Local\Wondershare folder moved successfully.
C:\Program Files (x86)\Common Files\Wondershare folder moved successfully.
C:\ProgramData\Wondershare Video Converter Ultimate\TempThumbDir folder moved successfully.
C:\ProgramData\Wondershare Video Converter Ultimate\MetadataArtwark folder moved successfully.
C:\ProgramData\Wondershare Video Converter Ultimate folder moved successfully.
C:\ProgramData\Wondershare\ProductFeatures\RemoteLogs folder moved successfully.
C:\ProgramData\Wondershare\ProductFeatures\LocalLogs folder moved successfully.
C:\ProgramData\Wondershare\ProductFeatures folder moved successfully.
C:\ProgramData\Wondershare folder moved successfully.
C:\Users\Public\Documents\Wondershare folder moved successfully.
========== FILES ==========
File\Folder C:\Users\Owner\Documents\Apowersoft not found.
File\Folder C:\ProgramData\Apowersoft not found.
File\Folder C:\Users\Owner\AppData\Roaming\Apowersoft not found.
File\Folder C:\Users\Owner\AppData\Local\Apowersoft not found.
File\Folder C:\Users\Owner\AppData\Local\Wondershare not found.
File\Folder C:\Program Files (x86)\Common Files\Wondershare not found.
File\Folder C:\ProgramData\Wondershare Video Converter Ultimate not found.
File\Folder C:\ProgramData\Wondershare not found.
File\Folder C:\Users\Public\Documents\Wondershare not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 313840 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Owner
->Temp folder emptied: 1317070686 bytes
->Temporary Internet Files folder emptied: 5947483 bytes
->Java cache emptied: 503 bytes
->FireFox cache emptied: 15340166 bytes
->Google Chrome cache emptied: 445179787 bytes
->Apple Safari cache emptied: 2619392 bytes
->Flash cache emptied: 314351 bytes

User: Public

User: yukio117

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 293779239 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 58525482 bytes
RecycleBin emptied: 5941544781 bytes

Total Files Cleaned = 7,706.00 mb

Unable to start System Restore Service. Error code 1084

OTL by OldTimer - Version 3.2.69.0 log created on 09252016_230053

Files\Folders moved on Reboot...
C:\Users\Owner\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.
C:\Users\Owner\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...
  • sagume
  • 2016/09/26 (Mon) 19:18:06
ここで全体の見直しを
作業と報告、ご苦労様です。

>前のレスの状態のまま特に変わったところはないと思います

はい、異常は治まっているようですね。
処置後のログも見せてもらいましたが、OTLでの掃除もできているようです。
OTLは導入時の説明に沿って片付けておいてください。

ではここで一度全体を見直します。
またHJTログと、CCでインストール情報ログと各タブのログを取り直して、それらをレスで見せてください。

何か取りこぼしか、別口の感染でも受けてないかを含めて全体の状態を各ログから洗い直します
  • 悪代官
  • 2016/09/26 (Mon) 20:22:01
各ログ
このレスにログを貼ります

HJT

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 20:27:44, on 2016/09/26
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.18450)

FIREFOX: 49.0 (x86 ja)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\EPSON\MyEPSON Connect\mep.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaConverter.exe
C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaRenderer.exe
C:\Users\Owner\Desktop\個人用フォルダー\その他\HJT\HijackThis.exe

F2 - REG:system.ini: UserInit=userinit.exe,
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Microsoft アカウント サインイン ヘルパー - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [Google Japanese Input Prelauncher] "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
O4 - HKLM\..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe -scheduler
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKCU\..\Run: [BlueStacks Agent] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIIGJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-045A Series"
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_721577D41E77D440C916E2687EBA0267] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 (User 'Default user')
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O15 - ESC Trusted Zone: http://*.update.microsoft.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{7F032B92-3037-420F-8DB6-4A401B94D147}: NameServer = 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
O18 - Protocol: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: cdl - {3DD53D40-7B8B-11D0-B013-00AA0059CE02} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll
O18 - Protocol hijack: file - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: ftp - {79EAC9E3-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol hijack: http - {79EAC9E2-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: https - {79EAC9E5-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol hijack: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6}
O18 - Protocol: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: local - {79EAC9E7-BAF9-11CE-8C82-00AA004BA90B} - C:\Windows\SysWOW64\urlmon.dll
O18 - Protocol: mailto - {3050F3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: mhtml - {05300401-BCBC-11D0-85E3-00C04FD85AB4} - C:\Windows\system32\inetcomm.dll
O18 - Protocol hijack: mk - {79EAC9E6-BAF9-11CE-8C82-00AA004BA90B}
O18 - Protocol: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll
O18 - Protocol hijack: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B}
O18 - Protocol hijack: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E}
O18 - Protocol: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Protocol: WSWSVCUchrome - (no CLSID) - (no file)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bonjour サービス (Bonjour Service) - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: BOT4Service - Unknown owner - C:\Program Files (x86)\Roxio\BackOnTrack\App\BService.exe
O23 - Service: BlueStacks Android Service (BstHdAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Service.exe
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
O23 - Service: BlueStacks Plus Android Service (BstHdPlusAndroidSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
O23 - Service: BlueStacks Updater Service (BstHdUpdaterSvc) - BlueStack Systems, Inc. - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox アップデート サービス (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox アップデート サービス (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: DbxSvc - Unknown owner - C:\Windows\system32\DbxSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: EPSON V3 Service4(04) (EPSON_PM_RPCV4_04) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe,-100 (GoogleIMEJaCacheService) - Google Inc. - C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaCacheService.exe
O23 - Service: Google Update サービス (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update サービス (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: MyEPSON Connect Service - SEIKO EPSON CORPORATION - C:\Program Files (x86)\EPSON\MyEPSON Connect\mepService.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Unsigned Themes (UnsignedThemes) - The Within Network, LLC - C:\Windows\UnsignedThemesSvc.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10849 bytes

CC インストール情報

3DMark Futuremark 2016/06/11 96.0 MB 2.0.2067.0
7-Zip 16.02 (x64) Igor Pavlov 2016/06/11 4.75 MB 16.02
Adobe AIR Adobe Systems Incorporated 2016/09/15 23.0.0.257
Adobe Flash Player 23 ActiveX Adobe Systems Incorporated 2016/09/13 5.63 MB 23.0.0.162
Adobe Flash Player 23 NPAPI Adobe Systems Incorporated 2016/09/19 19.2 MB 23.0.0.162
AirDroid 3.3.2.0 Sand Studio 2016/06/11 3.3.2.0
Akai Professional EWI 5000 Editor 2016/06/11 6.68 MB
Android Studio Google Inc. 2016/06/11 1.0
Atheros Client Installation Program Atheros 2016/06/11 9.0
Audacity 2.1.2 Audacity Team 2016/06/11 56.5 MB 2.1.2
Avast Free Antivirus AVAST Software 2016/09/01 12.3.2280
Biohazard 6 Benchmark CAPCOM CO., LTD. 2016/09/25 1.00.0000
BlueStacks App Player BlueStack Systems, Inc. 2016/06/26 75.4 MB 2.2.21.6212
Bonjour Apple Inc. 2016/09/19 3.26 MB 1.0.106
Canon MG6200 series MP Drivers Canon Inc. 2016/06/11
Canon Utilities EOS Lens Registration Tool Canon Inc. 2016/06/11 1.1.0.6
Canon Utilities EOS Utility 2 Canon Inc. 2016/06/11 2.14.10.2
CCleaner Piriform 2016/09/19 5.22
Cisco EAP-FAST Module Cisco Systems, Inc. 2016/06/11 1.55 MB 2.2.14
Cisco LEAP Module Cisco Systems, Inc. 2016/06/11 644 KB 1.0.19
Cisco PEAP Module Cisco Systems, Inc. 2016/06/11 1.23 MB 1.1.6
Clover 3.0 EJIE Technology 2016/06/11 3.0
Dell System Detect Dell 2016/09/26 7.9.0.10
Dropbox Dropbox, Inc. 2016/09/20 10.4.26
ECOモード設定ツール NEC Corporation, NEC Personal Products, Ltd. 2016/09/22 3.14 MB 1.1.0
Entity Framework Designer for Visual Studio 2012 - JPN Microsoft Corporation 2016/06/12 33.4 MB 11.1.20810.00
Epson Event Manager Seiko Epson Corporation 2016/06/26 42.4 MB 3.01.0005
EPSON PX-045A Series プリンター アンインストール SEIKO EPSON Corporation 2016/06/26
EPSON PX-045A Series ユーザーズガイド 2016/06/26
EPSON Scan Seiko Epson Corporation 2016/06/26
EPSON Scan OCR コンポーネント SEIKO EPSON Corp. 2016/06/26 1.20.0000
GIMP 2.8.16 The GIMP Team 2016/06/11 283 MB 2.8.16
Google Chrome Google Inc. 2016/09/24 53.0.2785.116
Google 日本語入力 Google Inc. 2016/09/19 109 MB 2.19.2600.0
Intel(R) Network Connections 21.0.504.0 Intel 2016/06/11 31.0 MB 21.0.504.0
Intel(R) Processor Graphics Intel Corporation 2016/06/10 9.17.10.4229
Intel® Hardware Accelerated Execution Manager Intel Corporation 2016/06/11 618 KB 6.0.1
Java SE Development Kit 7 Update 67 (64-bit) Oracle 2016/06/11 231 MB 1.7.0.670
Java SE Development Kit 8 Update 92 (64-bit) Oracle Corporation 2016/06/25 328 MB 8.0.920.14
Lhaplus 2016/06/11
LINE LINE Corporation 2016/09/08 4.9.0.1147
Malwarebytes Anti-Malware バージョン 2.2.1.1043 Malwarebytes 2016/09/24 66.8 MB 2.2.1.1043
Media Go Sony 2016/09/09 200 MB 3.1.343
Media Go Network Downloader Sony 2016/09/09 1.27 MB 1.6.07.0
Media Go Video Playback Engine 2.20.107.05220 Sony 2016/06/11 21.0 MB 2.20.107.05220
MEGAsync Mega Limited 2016/06/11
MHFベンチマーク【大討伐】 CAPCOM 2016/09/25 127 MB 2.1.0
Microsoft .NET Framework 4.5 Multi-Targeting Pack Microsoft Corporation 2016/06/12 41.8 MB 4.5.50709
Microsoft .NET Framework 4.5 SDK Microsoft Corporation 2016/06/12 18.5 MB 4.5.50709
Microsoft .NET Framework 4.5 SDK - 日本語 Lang Pack Microsoft Corporation 2016/06/12 3.55 MB 4.5.50709
Microsoft .NET Framework 4.6 Targeting Pack (日本語) Microsoft Corporation 2016/06/11 81.1 MB 4.6.81
Microsoft .NET Framework 4.6.1 Microsoft Corporation 2016/09/24 38.8 MB 4.6.01055
Microsoft .NET Framework 4.6.1 (日本語) Microsoft Corporation 2016/09/25 2.93 MB 4.6.01055
Microsoft Help Viewer 1.1 Microsoft Corporation 2016/06/11 3.97 MB 1.1.40219
Microsoft Help Viewer 1.1 Language Pack - JPN Microsoft Corporation 2016/06/11 1.95 MB 1.1.40219
Microsoft Help Viewer 2.0 Microsoft Corporation 2016/06/12 12.1 MB 2.0.50727
Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Corporation 2016/06/11 1.69 MB 3.1.0000
Microsoft SQL Server 2008 R2 管理オブジェクト Microsoft Corporation 2016/06/11 14.4 MB 10.50.1750.9
Microsoft SQL Server 2012 Command Line Utilities Microsoft Corporation 2016/06/12 944 KB 11.0.2100.60
Microsoft SQL Server 2012 Data-Tier App Framework Microsoft Corporation 2016/06/12 23.5 MB 11.0.2316.0
Microsoft SQL Server 2012 Express LocalDB Microsoft Corporation 2016/06/12 157 MB 11.0.2100.60
Microsoft SQL Server 2012 Management Objects Microsoft Corporation 2016/06/12 27.5 MB 11.0.2100.60
Microsoft SQL Server 2012 Management Objects (x64) Microsoft Corporation 2016/06/12 18.6 MB 11.0.2100.60
Microsoft SQL Server 2012 Native Client Microsoft Corporation 2016/06/12 7.83 MB 11.0.2100.60
Microsoft SQL Server 2012 T-SQL 言語サービス Microsoft Corporation 2016/06/12 6.20 MB 11.0.2100.60
Microsoft SQL Server 2012 Transact-SQL Compiler Service Microsoft Corporation 2016/06/12 87.9 MB 11.0.2100.60
Microsoft SQL Server 2012 Transact-SQL ScriptDom Microsoft Corporation 2016/06/12 4.59 MB 11.0.2100.60
Microsoft SQL Server Compact 3.5 SP2 JPN Microsoft Corporation 2016/06/11 3.66 MB 3.5.8080.0
Microsoft SQL Server Compact 3.5 SP2 x64 JPN Microsoft Corporation 2016/06/11 4.78 MB 3.5.8080.0
Microsoft SQL Server Compact 4.0 SP1 x64 JPN Microsoft Corporation 2016/06/12 20.3 MB 4.0.8876.1
Microsoft SQL Server Data Tools - JPN (11.1.20828.01) Microsoft Corporation 2016/06/12 16.9 MB 11.1.20828.01
Microsoft SQL Server Data Tools Build Utilities - JPN (11.1.20828.01) Microsoft Corporation 2016/06/12 1.41 MB 11.1.20828.01
Microsoft SQL Server System CLR Types Microsoft Corporation 2016/06/11 991 KB 10.50.1750.9
Microsoft System CLR Types for SQL Server 2012 Microsoft Corporation 2016/06/12 1.23 MB 11.0.2100.60
Microsoft System CLR Types for SQL Server 2012 (x64) Microsoft Corporation 2016/06/12 1.46 MB 11.0.2100.60
Microsoft Visual C++ 2005 Redistributable Microsoft Corporation 2016/06/11 300 KB 8.0.56336
Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Corporation 2016/06/11 708 KB 8.0.61000
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Corporation 2016/09/11 251 KB 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Corporation 2016/06/25 788 KB 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Corporation 2016/06/11 600 KB 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Corporation 2016/06/11 15.0 MB 10.0.40219
Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 Microsoft Corporation 2016/06/11 33.4 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Microsoft Corporation 2016/06/11 13.8 MB 10.0.40219
Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 Microsoft Corporation 2016/06/11 25.2 MB 10.0.40219
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 Microsoft Corporation 2016/06/11 17.1 MB 12.0.21005.1
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 Microsoft Corporation 2016/09/01 25.4 MB 14.0.24123.0
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 Microsoft Corporation 2016/09/09 20.7 MB 14.0.23506.0
Microsoft Visual Studio Code Microsoft Corporation 2016/06/25 118 MB 1.2.1
Microsoft ヘルプ ビューアー 2.0 Language Pack - JPN Microsoft Corporation 2016/06/12 1.95 MB 2.0.50727
Minecraft Mojang 2016/06/11 1.22 MB 1.0.3.0
Mozilla Firefox 49.0 (x86 ja) Mozilla 2016/09/23 89.0 MB 49.0
Mozilla Maintenance Service Mozilla 2016/09/23 425 KB 49.0
MSXML 4.0 SP3 Parser (KB2758694) Microsoft Corporation 2016/06/11 1.54 MB 4.30.2117.0
MuseScore 2 Werner Schweer and Others 2016/06/11 165 MB 2.0.3
MyEPSON Connect SEIKO EPSON Corporation 2016/06/26
NW-E080 WALKMAN Guide Sony Corporation 2016/06/11 2.02 MB 2.2.0.05230
NX PAD Driver ALPS 2016/06/25 7.109.909.404
PDF-XChange Editor Tracker Software Products (Canada) Ltd. 2016/09/22 331 MB 6.0.318.0
PreSonus Studio One 3 x64 PreSonus Audio Electronics 2016/09/01 3.3.0.39252
Realtek High Definition Audio Driver Realtek Semiconductor Corp. 2016/09/22 6.0.1.7541
Roxio Creator LJB Roxio 2016/06/11 225 MB 12.2.45.8
SSDT に必要なコンポーネント Microsoft Corporation 2016/06/12 8.14 MB 11.0.2100.60
Unity Web Player (x64) (All users) Unity Technologies ApS 2016/06/11 12.0 MB 4.6.6f2
UxStyle Core Beta The Within Network, LLC 2016/06/25 38.0 KB 0.2.1.1
VLC media player VideoLAN 2016/06/25 2.2.4
Vyzex EWI4000S Psicraft Designs, Inc. 2016/09/11 Vyzex EWI4000S v1.00
WCF Data Services 5.6 Tools Microsoft Corporation 2016/06/11 70.7 MB 5.6.61587.0
Windows Live Essentials Microsoft Corporation 2016/06/11 16.4.3528.0331
XMedia Recode version 3.3.3.8 XMedia Recode 2016/09/08 31.4 MB 3.3.3.8
バッテリ・リフレッシュ&診断ツール NEC Corporation, NEC Personal Products, Ltd. 2016/09/22 2.71 MB 1.9.0
学習用C言語開発環境 Ver 0.0.0.6 MMGames 2016/06/26 7.38 MB
採譜の達人 2016/06/11
東方リズムカーニバル!紅 体験版 ver 0.2.0 FocasLens 2016/09/14 242 MB
東方輝針城 ver 1.00a 2016/09/15 467 MB
画面出力先切替ツール NEC Personal Computers, Ltd. 2016/06/25 889 KB 1.1.1

CC スタートアップ windows

有効 HKCU:Run BlueStacks Agent BlueStack Systems, Inc. C:\Program Files (x86)\BlueStacks\HD-Agent.exe
有効 HKCU:Run EPLTarget\P0000000000000000 SEIKO EPSON CORPORATION C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIIGJ.EXE /EPT "EPLTarget\P0000000000000000" /M "PX-045A Series"
有効 HKCU:Run GoogleChromeAutoLaunch_721577D41E77D440C916E2687EBA0267 Google Inc. "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
有効 HKLM:Run Apoint Alps Electric Co., Ltd. C:\Program Files\Apoint2K\Apoint.exe
有効 HKLM:Run AvastUI.exe AVAST Software "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
有効 HKLM:Run AWiC Atheros "C:\Program Files (x86)\Atheros\AWiCMgr.exe" -nogui
有効 HKLM:Run DispSw NEC Personal Computers, Ltd. C:\Program Files\DispSw\DispSw.exe
有効 HKLM:Run Dropbox Dropbox, Inc. "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
有効 HKLM:Run EEventManager SEIKO EPSON CORPORATION "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
有効 HKLM:Run Google Japanese Input Prelauncher Google Inc. "C:\Program Files (x86)\Google\Google Japanese Input\GoogleIMEJaBroker32.exe" --mode=prelaunch_processes
有効 HKLM:Run HotKeysCmds Intel Corporation "C:\Windows\system32\hkcmd.exe"
有効 HKLM:Run IgfxTray Intel Corporation "C:\Windows\system32\igfxtray.exe"
有効 HKLM:Run ISUSPM Flexera Software, Inc. C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe -scheduler
有効 HKLM:Run NECBatt NEC Corporation, NEC Personal Products, Ltd. C:\Program Files\NECBatt\nbSched.exe
有効 HKLM:Run NPSpeed NEC Corporation, NEC Personal Products, Ltd. C:\Program Files\NPSpeed\NPSpeed.exe
有効 HKLM:Run Persistence Intel Corporation "C:\Windows\system32\igfxpers.exe"
有効 HKLM:Run RTHDVCPL Realtek Semiconductor "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s

CC スタートアップ スケジュールされたタスク

有効 Task Adobe Flash Player Updater Adobe Systems Incorporated C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
有効 Task CCleanerSkipUAC Piriform Ltd "C:\Program Files\CCleaner\CCleaner.exe" $(Arg0)
有効 Task ClipboardHistoryStartup C:\Users\Owner\Desktop\ClipboardHistory_110\ClipboardHistory_x64.exe
有効 Task DropboxUpdateTaskMachineCore Dropbox, Inc. C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /c
有効 Task DropboxUpdateTaskMachineUA Dropbox, Inc. C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
有効 Task GoogleUpdateTaskMachineCore Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
有効 Task GoogleUpdateTaskMachineUA Google Inc. C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
有効 Task SafeZone scheduled Autoupdate 1465576572 Avast Software C:\Program Files\AVAST Software\SZBrowser\launcher.exe --scheduledautoupdate $(Arg0)
有効 Task {05190C0D-C491-4CFE-8CEE-125190910508} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Owner\Downloads\vb_web.exe -d C:\Users\Owner\Downloads
有効 Task {5FEB5388-C81C-4C3F-A6F0-8ED786F9D42E} Microsoft Corporation C:\Windows\system32\pcalua.exe -a C:\Users\Owner\Desktop\DRV\WSET\setup.exe -d C:\Users\Owner\Desktop\DRV\WSET

CC スタートアップ コンテキストメニュー

有効 Directory ###MegaContextMenuExt C:\Users\Owner\AppData\Local\MEGAsync\ShellExtX64.dll
有効 Directory 7-Zip Igor Pavlov C:\Program Files\7-Zip\7-zip.dll
有効 Directory Add to VLC media player's Playlist VideoLAN "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1"
有効 Directory DropboxExt Dropbox, Inc. C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll
有効 Directory Play with VLC media player VideoLAN "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1"
有効 Drive Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx64.dll
有効 File ###MegaContextMenuExt C:\Users\Owner\AppData\Local\MEGAsync\ShellExtX64.dll
有効 File 00avast AVAST Software C:\Program Files\AVAST Software\Avast\ashShA64.dll
有効 File 7-Zip Igor Pavlov C:\Program Files\7-Zip\7-zip.dll
有効 File avast AVAST Software C:\Program Files\AVAST Software\Avast\ashShA64.dll
有効 File DropboxExt Dropbox, Inc. C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.dll
有効 File Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx64.dll
有効 File MBAMShlExt Malwarebytes C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll
有効 File PDFXChange Editor Context menu Tracker Software Products (Canada) Ltd. C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll
有効 File WondershareVideoConverterFileOpreation C:\Windows\SysWOW64\WSCM64.dll
有効 Folder 7-Zip Igor Pavlov C:\Program Files\7-Zip\7-zip.dll
有効 Folder avast AVAST Software C:\Program Files\AVAST Software\Avast\ashShA64.dll
有効 Folder Lhaplus C:\Program Files (x86)\Lhaplus\LplsShlx64.dll
有効 Folder MBAMShlExt Malwarebytes C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamext.dll

CC ブラウザプラグイン IE

有効 Extension Bonjour Apple Inc. C:\Program Files (x86)\Bonjour\ExplorerPlugin.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
無効 Helper avast! Online Security AVAST Software C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
有効 Helper ExplorerWatcher Class EJIE Technology C:\Program Files (x86)\Clover\TabHelper64.dll
無効 Helper Microsoft アカウント サインイン ヘルパー Microsoft Corp. C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
無効 Helper Windows Live ID Sign-in Helper Microsoft Corp. C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

CC ブラウザプラグイン ff

無効 Extension Avast Online Security 12.0.88 AVAST Software default Firefox 49.0 C:\Program Files\AVAST Software\Avast\WebRep\FF
無効 Extension Avast SafePrice 10.3.5.39 AVAST Software default Firefox 49.0 C:\Program Files\AVAST Software\Avast\SafePrice\FF
有効 Extension Multi-process staged rollout 1.2 default Firefox 49.0 C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi
有効 Extension Pocket 1.0.4 default Firefox 49.0 C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi
有効 Extension Web Compat 1.0 default Firefox 49.0 C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi
有効 Plugin 1.4.8.903 Google Inc. default Firefox 49.0 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\3x5fvx37.default\gmp-widevinecdm\1.4.8.903\widevinecdm.dll
有効 Plugin OpenH264 Video Codec 1.6 Mozilla Corporation default Firefox 49.0 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\3x5fvx37.default\gmp-gmpopenh264\1.6\gmpopenh264.dll
有効 Plugin PDF-XChange Editor 6.0.318.0 Tracker Software Products (Canada) Ltd. default Firefox 49.0 C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll
有効 Plugin Photo Gallery 16.4.3528.331 Microsoft Corporation default Firefox 49.0 C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
有効 Plugin Primetime Content Decryption Module provided by Adobe Systems, Incorporated 17 Adobe Systems Inc default Firefox 49.0 C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\3x5fvx37.default\gmp-eme-adobe\17\eme-adobe.dll
有効 Plugin Shockwave Flash 23.0.0.162 Adobe Systems Incorporated default Firefox 49.0 C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_162.dll
有効 Plugin VLC Web Plugin 2.2.4.0 VideoLAN default Firefox 49.0 C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

CC ブラウザプラグイン gc

有効 App Gmail 8.1 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0
有効 App Google ドライブ 14.1 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.1_0
有効 App YouTube 4.2.8 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0
有効 Extension +AutoSave 3.4.0.0 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagnffmpahidgbhkeomnfcngnhapddha\3.4.0.0_0
有効 Extension Adblock Plus 1.12.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.12.2_0
有効 Extension AirMirror 1.9.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\macmgoeeggnlnmpiojbcniblabkdjphe\1.9.2_0
有効 Extension Avast Passwords 1.0.2441 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik\1.0.2441_0
有効 Extension Checker Plus for Gmail™ 19.2.16 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj\19.2.16_0
有効 Extension Chrome Visual History 0.0.5 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkccpmgeknngdmagkjjacapdecnoeiai\0.0.5_0
有効 Extension Dark Reader 3.4.3 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh\3.4.3_0
有効 Extension Flash Master 2.0.0.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cacfnookefkldifaigjdedpophfjkjeh\2.0.0.2_0
有効 Extension Google オフライン ドキュメント 1.4 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.4_1
有効 Extension Google スプレッドシート 1.1 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0
有効 Extension Google スライド 0.9 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0
有効 Extension Google ドキュメント 0.9 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0
有効 Extension MEGA 3.5.5 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod\3.5.5_0
有効 Extension My Chrome テーマ 2.1 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic\2.1_0
有効 Extension OneTab 1.17 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall\1.17_0
有効 Extension Right Inbox for Gmail 8.3.5 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\mflnemhkomgploogccdmcloekbloobgb\8.3.5_0
有効 Extension Session Buddy 3.4.7 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko\3.4.7_0
有効 Extension Tampermonkey 4.1.10 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo\4.1.10_0
有効 Extension Trimless for Google Mail™ 1.9.2 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\niepjjjfafhadmfdminbckmciijcaagc\1.9.2_0
有効 Extension User-Agent Switcher for Chrome 1.0.43 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0
有効 Extension YouTube™のための自分好み 4.1.0 uta C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk\4.1.0_0
  • sagume
  • 2016/09/26 (Mon) 20:58:08
ブラウザのFFの更新を
作業と報告、ご苦労様です。
状態の洗い直しにきた「あらいぐま悪代官」です(←森に帰れ

現在の各ログを見せてもらいました。

下記がまだ最新になってないので、公式サイトから最新版を入れておいてください。
>Mozilla Firefox 49.0 (x86 ja) Mozilla 2016/09/23 89.0 MB 49.0

そのまま上書きインストールでいいですが、更新で49.0.1になったらいいです。
もし更新できないときはそのことを教えてください。
時々更新不全バグも起きてるので、この場合は安全な対処を案内します
  • 悪代官
  • 2016/09/27 (Tue) 20:02:25
Re: 勝手にリンクが開く
さきほど公式サイトからダウンロードしてきました。
  • sagume
  • 2016/09/28 (Wed) 09:06:12
異常なければ様子見を
今夜もレスが遅れました。

FFの更新は無事できましたか。
バージョンが49.0.1になっていればそれでいいです。

現在まだ何か異常が見えていればそれを教えてください。

特に異常なければ、ここからは様子見しましょうか。

普通にPCを使いながらでいいので1週間様子見してください。

1週間後にまたHJTログと、CCでインストール情報ログと各タブのログを取り直して、それらを様子見中の状態報告とともにレスください。

この時点でのログと状態がどうなっているかがおそらく最後の分かれ目になるでしょう
  • 悪代官
  • 2016/09/28 (Wed) 20:06:12

返信フォーム






プレビュー (投稿前に内容を確認)