# AdwCleaner v6.030 - Logfile created 05/11/2016 at 20:40:24 # Updated on 19/10/2016 by Malwarebytes # Database : 2016-11-05.1 [Server] # Operating System : Windows 7 Home Basic Service Pack 1 (X64) # Username : hp - HP-HP # Running from : C:\Users\hp\Downloads\adwcleaner_6.030.exe # Mode: Clean # Support : hxxps://www.malwarebytes.com/support ***** [ Services ] ***** [-] Service deleted: QQRepairFixSVC [-] Service deleted: TAOAccelerator [-] Service deleted: TSDefenseBt [-] Service deleted: TSSysKit [-] Service deleted: QMUdisk [-] Service deleted: TS888x64 [-] Service deleted: QQSysMonX64 [-] Service deleted: TFsFlt [-] Service deleted: TAOKernelDriver [-] Service deleted: TSSKX64 [-] Service deleted: softaal [-] Service deleted: tsnethlpx64 [-] Service deleted: ComputerZ_x64 ***** [ Folders ] ***** [-] Folder deleted: C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\joejhceimjeoadkdlmlolnagjlidffgl [-] Folder deleted: C:\Users\hp\AppData\LocalLow\Thunder Network [-] Folder deleted: C:\Users\hp\AppData\Roaming\GoldenGate [-] Folder deleted: C:\Users\hp\AppData\Roaming\ValueApps [-] Folder deleted: C:\Users\hp\AppData\Roaming\Tencent [-] Folder deleted: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯游戏 [-] Folder deleted: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件 [-] Folder deleted: C:\Users\hp\Documents\QQPCMgr [-] Folder deleted: C:\Users\hp\Documents\Tongbu [-] Folder deleted: C:\Users\hp\Documents\搜狐影音 [#] Folder deleted on reboot: C:\Program Files\Common Files\Tencent [-] Folder deleted: C:\Windows\SysNative\Tasks\Funshion [-] Folder deleted: C:\ProgramData\TXQMPC [#] Folder deleted on reboot: C:\ProgramData\Tencent [-] Folder deleted: C:\ProgramData\Thunder Network [#] Folder deleted on reboot: C:\ProgramData\Application Data\TXQMPC [#] Folder deleted on reboot: C:\ProgramData\Application Data\Tencent [#] Folder deleted on reboot: C:\ProgramData\Application Data\Thunder Network [-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\wiseconvert [-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\搜狐影音 [-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯游戏 [-] Folder deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件 [#] Folder deleted on reboot: C:\Program Files (x86)\QQPCMgr [-] Folder deleted: C:\Program Files (x86)\wiseconvert [-] Folder deleted: C:\Program Files (x86)\搜狐影音 [-] Folder deleted: C:\Program Files (x86)\Tencent [-] Folder deleted: C:\Program Files (x86)\Thunder Network [-] Folder deleted: C:\Program Files (x86)\Common Files\Umbrella [-] Folder deleted: C:\Program Files (x86)\Common Files\Tencent [-] Folder deleted: C:\Program Files (x86)\Common Files\Thunder Network [-] Folder deleted: C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\Tencent [-] Folder deleted: C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [-] Folder deleted: C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\ooebklgpfnbcnpokahmdidgbmlcdepkm ***** [ Files ] ***** [-] File deleted: C:\Users\hp\funshion.ini [-] File deleted: C:\Users\hp\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\电脑管家.lnk [-] File deleted: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url [#] File deleted: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件\电脑管家\电脑管家.lnk [-] File deleted: C:\Windows\SysNative\roboot64.exe [-] File deleted: C:\Windows\SysNative\sasnative64.exe [-] File deleted: C:\Windows\SysNative\drivers\bd0001.sys [-] File deleted: C:\Windows\SysNative\drivers\BDArKit.SYS [-] File deleted: C:\Windows\SysNative\drivers\BDMWrench_x64.sys [-] File deleted: C:\Windows\SysNative\drivers\TAOAccelerator64.sys [-] File deleted: C:\Windows\SysNative\drivers\TSSKX64.sys [-] File deleted: C:\Windows\SysNative\drivers\TAOKernel64.sys [#] File deleted: C:\Windows\SysNative\drivers\TFsFltX64.sys [-] File deleted: C:\Windows\SysWOW64\drivers\TS888x64.sys [-] File deleted: C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\QMNetworkMgr.ini ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Shortcuts ] ***** ***** [ Scheduled Tasks ] ***** ***** [ Registry ] ***** [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\services\QQRepair1b89 [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\services\QQPCRTP [#] Key deleted on reboot: HKLM\SYSTEM\CurrentControlSet\services\SRepairDrv [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\Classes\QQBrowser.AssocFile.HTM [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\Classes\QQBrowser.hxxp [#] Key deleted on reboot: HKCU\Software\Classes\QQBrowser.AssocFile.HTM [#] Key deleted on reboot: HKCU\Software\Classes\QQBrowser.hxxp [-] Key deleted: HKLM\SOFTWARE\Classes\LiveAPI.QQLiveAPIUser [-] Key deleted: HKLM\SOFTWARE\Classes\LiveAPI.QQLiveAPIUser.1 [-] Key deleted: HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcx [-] Key deleted: HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcx.1 [-] Key deleted: HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcxShell [-] Key deleted: HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcxShell.1 [-] Key deleted: HKLM\SOFTWARE\Classes\metnsd [-] Key deleted: HKLM\SOFTWARE\Classes\PCMgrRepairIEExtensions [-] Key deleted: HKLM\SOFTWARE\Classes\qmbfile [-] Key deleted: HKLM\SOFTWARE\Classes\QMContextScan.QMContextScanMenu [-] Key deleted: HKLM\SOFTWARE\Classes\QMContextScan.QMContextScanMenu.1 [-] Key deleted: HKLM\SOFTWARE\Classes\QMContextUninstall.QMContextUninstallMenu [-] Key deleted: HKLM\SOFTWARE\Classes\QMContextUninstall.QMContextUninstallMenu.1 [-] Key deleted: HKLM\SOFTWARE\Classes\qmgcfiles [-] Key deleted: HKLM\SOFTWARE\Classes\QMSoftExt.QMContextMenu [-] Key deleted: HKLM\SOFTWARE\Classes\QMSoftExt.QMContextMenu.1 [-] Key deleted: HKLM\SOFTWARE\Classes\qpakfile [-] Key deleted: HKLM\SOFTWARE\Classes\QQAppIEAgentEx.AgentForAndroid [-] Key deleted: HKLM\SOFTWARE\Classes\QQAppIEAgentEx.AgentForAndroid.1 [-] Key deleted: HKLM\SOFTWARE\Classes\QQBrowser.AssocFile.HTM [-] Key deleted: HKLM\SOFTWARE\Classes\QQBrowser.hxxp [-] Key deleted: HKLM\SOFTWARE\Classes\qqlive [-] Key deleted: HKLM\SOFTWARE\Classes\QQLive.Application [-] Key deleted: HKLM\SOFTWARE\Classes\QQLive.Application.1 [-] Key deleted: HKLM\SOFTWARE\Classes\QQLive.qlv [-] Key deleted: HKLM\SOFTWARE\Classes\QQLive.RecentItems [-] Key deleted: HKLM\SOFTWARE\Classes\QQLive.RecentItems.1 [-] Key deleted: HKLM\SOFTWARE\Classes\QQLiveInstaller.InstallHelper [-] Key deleted: HKLM\SOFTWARE\Classes\QQLiveInstaller.InstallHelper.1 [-] Key deleted: HKLM\SOFTWARE\Classes\QQPCMgr.qbox [#] Key deleted on reboot: [x64] HKCU\Software\Classes\QQBrowser.AssocFile.HTM [#] Key deleted on reboot: [x64] HKCU\Software\Classes\QQBrowser.hxxp [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\LiveAPI.QQLiveAPIUser [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\LiveAPI.QQLiveAPIUser.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcx [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcx.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcxShell [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\LiveOcx.QQLiveOcxShell.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\metnsd [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\PCMgrRepairIEExtensions [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qmbfile [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QMContextScan.QMContextScanMenu [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QMContextScan.QMContextScanMenu.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QMContextUninstall.QMContextUninstallMenu [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QMContextUninstall.QMContextUninstallMenu.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qmgcfiles [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QMSoftExt.QMContextMenu [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QMSoftExt.QMContextMenu.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qpakfile [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQAppIEAgentEx.AgentForAndroid [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQAppIEAgentEx.AgentForAndroid.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQBrowser.AssocFile.HTM [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQBrowser.hxxp [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\qqlive [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQLive.Application [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQLive.Application.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQLive.qlv [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQLive.RecentItems [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQLive.RecentItems.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQLiveInstaller.InstallHelper [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQLiveInstaller.InstallHelper.1 [#] Key deleted on reboot: [x64] HKLM\SOFTWARE\Classes\QQPCMgr.qbox [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11} [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{384997EE-E3BE-49C4-9ECA-C62B7C08128A} [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{6517DD27-EA6F-4947-9DEA-F9C487BB1020} [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{8E9F2D02-6B06-4EBA-92C2-68438EADED28} [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1} [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{1E9BD312-7C8C-4422-906D-897F6D7714F2} [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\{7A30415C-ABEE-4674-B64B-4CA145EEB0CA} [-] Key deleted: HKCU\Software\Classes\CLSID\{DB40EAF2-2025-4F74-B9EF-7C0782F26C84} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{63332668-8CE1-445D-A5EE-25929176714E} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{DB40EAF2-2025-4F74-B9EF-7C0782F26C84} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{754DF2CE-51E8-4895-B53C-6381418B84AE} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{B9E49847-9822-4139-BC55-7173ED1ADA11} [-] Key deleted: HKLM\SOFTWARE\Classes\CLSID\{29B6CFD5-0064-411A-8C42-9890C83F9921} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{2830488C-079B-45C2-88B6-AFE4EAA2DF85} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{6B3732AA-F6D4-4F16-9E22-49EDC52C9514} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{B9E49847-9822-4139-BC55-7173ED1ADA11} [-] Key deleted: HKLM\SOFTWARE\Classes\Interface\{D4801E96-E7A1-45F6-B124-7A36DFB40B81} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{6517DD27-EA6F-4947-9DEA-F9C487BB1020} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{781CA792-9B6E-400B-B36F-15C097D2CA54} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{35627C7C-DB28-4772-9A6F-7607FFCBF9FF} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{445E3964-15B0-472A-95F4-6242DD2EA066} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{573F9869-D92C-4B7E-A9C3-F042278D5078} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{6E1533F0-E0B5-465A-9F16-98FF0C76D493} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{C049F583-D724-4BAB-8F47-F13BCA41B808} [-] Key deleted: HKLM\SOFTWARE\Classes\TypeLib\{8519F1E4-E25B-42B1-B361-0C643F45CF11} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2974C985-8151-4DE5-B23C-B875F0A8522F} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{004B0726-A010-4ABF-8556-FCDB7F1FCA1E} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{29B6CFD5-0064-411A-8C42-9890C83F9921} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{889D2FEB-5411-4565-8998-1DD2C5261283} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A40DC6C5-79D0-4CA8-A185-8FF989AF1115} [-] Key deleted: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F63AAEDC-3602-49EF-AA45-262380A98980} [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{2974C985-8151-4DE5-B23C-B875F0A8522F} [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A7F05EE4-0426-454F-8013-C41E3596E9E9} [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{58124A0B-DC32-4180-9BFF-E0E21AE34026}] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{FED6A736-129B-49C7-857E-25FC91E87DB3}] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{669751ED-D558-49AE-B01A-3B374CC7910E}] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{63332668-8CE1-445D-A5EE-25929176714E}] [-] Value deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved [{754DF2CE-51E8-4895-B53C-6381418B84AE}] [-] Key deleted: HKU\.DEFAULT\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\360Chrome [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\APNDTX [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\GoldenGate [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\Thunder Network [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\360Chrome [-] Key deleted: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\360se6 [#] Key deleted on reboot: HKU\S-1-5-18\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} [#] Key deleted on reboot: HKCU\Software\360Chrome [#] Key deleted on reboot: HKCU\Software\APNDTX [#] Key deleted on reboot: HKCU\Software\GoldenGate [#] Key deleted on reboot: HKCU\Software\Thunder Network [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Iminent [#] Key deleted on reboot: HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} [-] Key deleted: HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} [-] Key deleted: HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} [-] Key deleted: HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} [-] Key deleted: HKLM\SOFTWARE\Thunder Network [#] Key deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\360Chrome [#] Key deleted on reboot: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\360se6 [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\QQPCMgr [#] Key deleted on reboot: [x64] HKCU\Software\360Chrome [#] Key deleted on reboot: [x64] HKCU\Software\APNDTX [#] Key deleted on reboot: [x64] HKCU\Software\GoldenGate [#] Key deleted on reboot: [x64] HKCU\Software\Thunder Network [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\LowRegistry\Iminent [#] Key deleted on reboot: [x64] HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\360Chrome [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\360se6 [-] Data restored: HKU\S-1-5-21-1592242826-1200034856-1619733032-1000\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Data restored: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] [-] Data restored: HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tab] [-] Data restored: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] [-] Data restored: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tab] [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bk.i.y.qq.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\i.y.qq.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\mini2015.qq.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\mp.weixin.qq.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\music.qq.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\qq.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\v.qq.com [-] Key deleted: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\x.l.qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bk.i.y.qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\i.y.qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\mini2015.qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\mp.weixin.qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\music.qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\v.qq.com [#] Key deleted on reboot: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\x.l.qq.com [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\DynConIE.DLL [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL [-] Key deleted: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DownloadIcon [-] Key deleted: HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP [-] Key deleted: HKEY_CLASSES_ROOT\Folder\ShellEx\ContextMenuHandlers\QMContextUninstall [-] Key deleted: HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.qq.qmchext [-] Key deleted: HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\QMContextScan [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\QMContextScan.DLL [-] Key deleted: HKLM\SOFTWARE\Classes\AppID\QMContextUninstall.DLL [-] Key deleted: HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\QMContextScan [-] Value deleted: HKLM\SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION [AndroidServer.exe] [-] Key deleted: HKLM\SOFTWARE\Classes\.qbox [-] Key deleted: HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\QMContextScan [-] Key deleted: HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\QMContextUninstall [-] Key deleted: HKEY_CLASSES_ROOT\.qmgc [-] Key deleted: HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\QMSoftExt [-] Key deleted: HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\QMSoftExt [-] Key deleted: HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\QMSoftExt [-] Key deleted: HKLM\SOFTWARE\Google\Chrome\Extensions\igdhbblpcellaljokkpfhcjlagemhgjl [-] Key deleted: HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd [#] Key deleted on reboot: [x64] HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd [-] Key deleted: HKLM\SOFTWARE\Google\Chrome\Extensions\mjdepfkicdcciagbigfcmdhknnoaaegf ***** [ Web browsers ] ***** [-] [C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: fcfenmboojpjinhpgggodefccipikbpd [-] [C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default] [extension] Deleted: ooebklgpfnbcnpokahmdidgbmlcdepkm ************************* :: "Tracing" keys deleted :: Winsock settings cleared ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [21716 Bytes] - [05/11/2016 20:40:24] C:\AdwCleaner\AdwCleaner[S0].txt - [20291 Bytes] - [05/11/2016 20:34:24] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [21864 Bytes] ##########