-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
Support: Malwarebytes Support
-------------------------------
Mode: Scan
-------------------------------
Start: 09-29-2021
Duration: 00:00:10
OS: Windows 7 Professional
Scanned: 31995
Detected: 21
***** [ Services ] *****
PUP.Optional.Legacy WinDefender
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
Trojan.Agent C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
Adware.CloudWeb C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{2C54ADF8-F011-420A-945D-0EED4AE6385A} Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate PUP.Winlogon.Heuristic HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon|Shell
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Legacy obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|331BigDog Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332} Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB} Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{D0956C11-0F60-43FE-99AD-524E833471BB} Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk Preinstalled.LenovoServiceBridge Folder C:\Users\PedAngGV\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1 Preinstalled.LenovoUpdate Folder C:\Program Files (x86)\LENOVO\SYSTEM UPDATE Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\TVSU_is1
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
Support: Malwarebytes Support
-------------------------------
Mode: Clean
-------------------------------
Start: 09-29-2021
Duration: 00:00:08
OS: Windows 7 Professional
Cleaned: 15
Failed: 0
***** [ Services ] *****
Deleted WinDefender
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
Deleted C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{2C54ADF8-F011-420A-945D-0EED4AE6385A} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate Deleted HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon|Shell
***** [ Chromium (and derivatives) ] *****
Deleted obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run|331BigDog Deleted Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332} Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB} Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall{D0956C11-0F60-43FE-99AD-524E833471BB} Deleted Preinstalled.LenovoServiceBridge Folder C:\Users\PedAngGV\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE Deleted Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1 Deleted Preinstalled.LenovoUpdate Folder C:\Program Files (x86)\LENOVO\SYSTEM UPDATE Deleted Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\TVSU_is1
[+] Delete Tracing Keys [+] Reset Winsock
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
Support: Malwarebytes Support
-------------------------------
Mode: Scan
-------------------------------
Start: 10-01-2021
Duration: 00:01:03
OS: Windows 7 Professional
Scanned: 31998
Detected: 18
***** [ Services ] *****
PUP.Optional.Legacy WinDefender
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
Trojan.Agent C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
Adware.CloudWeb C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{AC37E7A4-FCE0-4B52-8E4B-6DD167D944B9} Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com PUP.Optional.Legacy HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com PUP.Optional.Legacy HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com PUP.Optional.Legacy HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com PUP.Optional.Legacy HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com PUP.Optional.Legacy HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Legacy obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08] AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
Support: Malwarebytes Support
-------------------------------
Mode: Clean
-------------------------------
Start: 10-01-2021
Duration: 00:00:03
OS: Windows 7 Professional
Cleaned: 12
Failed: 0
***** [ Services ] *****
Deleted WinDefender
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
Deleted C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{AC37E7A4-FCE0-4B52-8E4B-6DD167D944B9} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate Deleted HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com Deleted HKU.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\dospop.com Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\zonemap\domains\incredibar.com
***** [ Chromium (and derivatives) ] *****
Deleted obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
[+] Delete Tracing Keys [+] Reset Winsock
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08] AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27] AdwCleaner[S01].txt - [3309 octets] - [01/10/2021 00:18:49]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
Support: Malwarebytes Support
-------------------------------
Mode: Scan
-------------------------------
Start: 10-03-2021
Duration: 00:00:26
OS: Windows 7 Professional
Scanned: 31994
Detected: 12
***** [ Services ] *****
PUP.Optional.Legacy WinDefender
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
Trojan.Agent C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
Adware.CloudWeb C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FCF17C77-DE90-440C-91E5-63F5B1A09D8D} Adware.CloudWeb HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Legacy obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08] AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27] AdwCleaner[S01].txt - [3309 octets] - [01/10/2021 00:18:49] AdwCleaner[C01].txt - [2676 octets] - [01/10/2021 00:31:15]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S02].txt ##########
-------------------------------
Malwarebytes AdwCleaner 8.3.0.0
-------------------------------
Build: 06-29-2021
Database: 2021-09-09.1 (Cloud)
Support: Malwarebytes Support
-------------------------------
Mode: Clean
-------------------------------
Start: 10-03-2021
Duration: 00:00:08
OS: Windows 7 Professional
Cleaned: 12
Failed: 0
***** [ Services ] *****
Deleted WinDefender
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
Deleted C:\Windows\System32\drivers\WinmonProcessMonitor.sys
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
Deleted C:\Windows\System32\Tasks\SCHEDULEDUPDATE
***** [ Registry ] *****
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks{FCF17C77-DE90-440C-91E5-63F5B1A09D8D} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ScheduledUpdate
***** [ Chromium (and derivatives) ] *****
Deleted obkfjhifkbhimlocpddgamonjihinpak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA Deleted Preinstalled.LenovoEnergyManagement Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGEMENT Deleted Preinstalled.LenovoEnergyManagement Folder C:\Users\PedAngGV\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGEMENT Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Management Deleted Preinstalled.LenovoEnergyManagement Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|EnergyUtility Deleted Preinstalled.LenovoSHAREit File C:\Users\Public\Desktop\SHAREit.lnk
[+] Delete Tracing Keys [+] Reset Winsock
AdwCleaner[S00].txt - [3565 octets] - [29/09/2021 01:21:08] AdwCleaner[C00].txt - [3091 octets] - [29/09/2021 01:23:27] AdwCleaner[S01].txt - [3309 octets] - [01/10/2021 00:18:49] AdwCleaner[C01].txt - [2676 octets] - [01/10/2021 00:31:15] AdwCleaner[S02].txt - [2637 octets] - [03/10/2021 18:37:30]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C02].txt ##########