-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
-------------------------------
Mode: Scan
-------------------------------
Start: 09-29-2021
Duration: 00:00:10
OS: Windows 7 Professional
Scanned: 31995
Detected: 21
***** [ Services ] *****
PUP.Optional.Legacy WinDefender
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
Trojan.Agent C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
Adware.CloudWeb C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{2C54ADF8-F011-420A-945D-0EED4AE6385A}
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
PUP.Winlogon.Heuristic HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon|Shell
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Legacy obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA
Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|331BigDog
Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}
Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT
Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{D0956C11-0F60-43FE-99AD-524E833471BB}
Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk
Preinstalled.LenovoServiceBridge Folder C:\Users\PedAngGV\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE
Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1
Preinstalled.LenovoUpdate Folder C:\Program Files (x86)\LENOVO\SYSTEM UPDATE
Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\TVSU_is1
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
-------------------------------
Mode: Clean
-------------------------------
Start: 09-29-2021
Duration: 00:00:08
OS: Windows 7 Professional
Cleaned: 15
Failed: 0
***** [ Services ] *****
Deleted WinDefender
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
Deleted C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{2C54ADF8-F011-420A-945D-0EED4AE6385A}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
Deleted HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon|Shell
***** [ Chromium (and derivatives) ] *****
Deleted obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|331BigDog
Deleted Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}
Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}
Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{D0956C11-0F60-43FE-99AD-524E833471BB}
Deleted Preinstalled.LenovoServiceBridge Folder C:\Users\PedAngGV\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE
Deleted Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1
Deleted Preinstalled.LenovoUpdate Folder C:\Program Files (x86)\LENOVO\SYSTEM UPDATE
Deleted Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\TVSU_is1
[+] Delete Tracing Keys
[+] Reset Winsock
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
-------------------------------
Mode: Scan
-------------------------------
Start: 10-01-2021
Duration: 00:01:03
OS: Windows 7 Professional
Scanned: 31998
Detected: 18
***** [ Services ] *****
PUP.Optional.Legacy WinDefender
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
Trojan.Agent C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
Adware.CloudWeb C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{AC37E7A4-FCE0-4B52-8E4B-6DD167D944B9}
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
PUP.Optional.Legacy HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
PUP.Optional.Legacy HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
PUP.Optional.Legacy HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
PUP.Optional.Legacy HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Legacy obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA
Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT
Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility
Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08]
AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
-------------------------------
Mode: Clean
-------------------------------
Start: 10-01-2021
Duration: 00:00:03
OS: Windows 7 Professional
Cleaned: 12
Failed: 0
***** [ Services ] *****
Deleted WinDefender
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
Deleted C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{AC37E7A4-FCE0-4B52-8E4B-6DD167D944B9}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
Deleted HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
Deleted HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com
Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
***** [ Chromium (and derivatives) ] *****
Deleted obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
[+] Delete Tracing Keys
[+] Reset Winsock
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08]
AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27]
AdwCleaner[S01].txt - [3309 octets] - [01/10/2021 00:18:49]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
-------------------------------
Mode: Scan
-------------------------------
Start: 10-03-2021
Duration: 00:00:26
OS: Windows 7 Professional
Scanned: 31994
Detected: 12
***** [ Services ] *****
PUP.Optional.Legacy WinDefender
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
Trojan.Agent C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
Adware.CloudWeb C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FCF17C77-DE90-440C-91E5-63F5B1A09D8D}
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Legacy obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA
Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT
Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management
Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility
Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08]
AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27]
AdwCleaner[S01].txt - [3309 octets] - [01/10/2021 00:18:49]
AdwCleaner[C01].txt - [2676 octets] - [01/10/2021 00:31:15]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S02].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
-------------------------------
Mode: Clean
-------------------------------
Start: 10-03-2021
Duration: 00:00:08
OS: Windows 7 Professional
Cleaned: 12
Failed: 0
***** [ Services ] *****
Deleted WinDefender
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
Deleted C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FCF17C77-DE90-440C-91E5-63F5B1A09D8D}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
***** [ Chromium (and derivatives) ] *****
Deleted obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA
Deleted Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT
Deleted Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT
Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management
Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility
Deleted Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk
[+] Delete Tracing Keys
[+] Reset Winsock
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08]
AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27]
AdwCleaner[S01].txt - [3309 octets] - [01/10/2021 00:18:49]
AdwCleaner[C01].txt - [2676 octets] - [01/10/2021 00:31:15]
AdwCleaner[S02].txt - [2637 octets] - [03/10/2021 18:37:30]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C02].txt ##########