HI pgmigg
# AdwCleaner v6.030 - Logfile created 19/11/2016 at 15:16:14
# Updated on 19/10/2016 by Malwarebytes
# Database : 2016-11-18.1 [Server]
# Operating System : Windows 10 Home (X64)
# Username : JOHN - ASUS
# Running from : C:\Users\JOHN\Downloads\adwcleaner_6.030.exe
# Mode: Scan
# Support :
https://www.malwarebytes.com/support***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
Folder Found: C:\Users\JOHN\AppData\Roaming\Tencent
Folder Found: C:\Users\JOHN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
Folder Found: C:\Program Files\Common Files\Tencent
Folder Found: C:\Users\JOHN\AppData\Local\VirtualStore\Program Files (x86)\Tencent
Folder Found: C:\ProgramData\TXQMPC
Folder Found: C:\ProgramData\Tencent
Folder Found: C:\ProgramData\Application Data\TXQMPC
Folder Found: C:\ProgramData\Application Data\Tencent
Folder Found: C:\Program Files (x86)\Tencent
Folder Found: C:\Program Files (x86)\Common Files\Tencent
***** [ Files ] *****
File Found: C:\Users\JOHN\AppData\Roaming\com3.{20D04FE0-3AEA-1069-A2D8-08002B30309D}
File Found: C:\WINDOWS\SysNative\drivers\TFsFltX64.sys
File Found: C:\WINDOWS\SysNative\drivers\TAOKernelEx64.sys
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious keys found.
***** [ Shortcuts ] *****
No infected shortcut found.
***** [ Scheduled Tasks ] *****
Task Found: com3.{20D04FE0-3AEA-1069-A2D8-08002B30309D}
***** [ Registry ] *****
Key Found: HKCU\Software\df871ce775f0f9b5170e54a857ef9351
Key Found: HKLM\SOFTWARE\Classes\metnsd
Key Found: HKLM\SOFTWARE\Classes\qmgcfiles
Key Found: [x64] HKLM\SOFTWARE\Classes\metnsd
Key Found: [x64] HKLM\SOFTWARE\Classes\qmgcfiles
Key Found: HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
Key Found: HKLM\SOFTWARE\Classes\AppID\{7A30415C-ABEE-4674-B64B-4CA145EEB0CA}
Key Found: HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
Key Found: HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
Key Found: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921}
Value Found: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{63332668-8CE1-445D-A5EE-25929176714E}]
Value Found: HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1]
Value Found: [x64] HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce [Application Restart #1]
Key Found: HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
Key Found: HKLM\SOFTWARE\Classes\AppID\QMContextScan.DLL
Value Found: HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [AndroidServer.exe]
Key Found: HKEY_CLASSES_ROOT\.qmgc
***** [ Web browsers ] *****
No malicious Firefox based browser items found.
No malicious Chromium based browser items found.
*************************
C:\AdwCleaner\AdwCleaner[S0].txt - [2985 Bytes] - [19/11/2016 15:16:14]