ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=42bc24f313fe014f91d5c534686b7085 # end=init # utc_time=2015-08-18 08:42:30 # local_time=2015-08-18 10:42:30 (+0100, West-Europa (zomertijd)) # country="Netherlands" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 25337 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=42bc24f313fe014f91d5c534686b7085 # end=updated # utc_time=2015-08-18 08:44:49 # local_time=2015-08-18 10:44:49 (+0100, West-Europa (zomertijd)) # country="Netherlands" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=42bc24f313fe014f91d5c534686b7085 # engine=25337 # end=finished # remove_checked=true # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2015-08-19 04:55:41 # local_time=2015-08-19 06:55:41 (+0100, West-Europa (zomertijd)) # country="Netherlands" # lang=1033 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 39530 3443472 0 0 # scanned=277709 # found=33 # cleaned=29 # scan_time=29452 sh=246DDBC3A2C223A6B9072637D93DC2A2832D097A ft=1 fh=c71c0011b04f613a vn="Win32/Toolbar.Babylon.Y potentially unwanted application" ac=I fn="C:\Users\All Users\DSearchLink\DSearchLink.exe" sh=CE0D088EC727B0DA5423CBF08AD5A3E5C0A90E94 ft=0 fh=0000000000000000 vn="JS/Adware.Spigot.B application" ac=I fn="C:\Users\All Users\Kaspersky Lab\SafeBrowser\kis\S-1-5-21-546033376-3387315075-1641825082-500\Chrome\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj\1.1_0\background.js" sh=CE0D088EC727B0DA5423CBF08AD5A3E5C0A90E94 ft=0 fh=0000000000000000 vn="JS/Adware.Spigot.B application" ac=I fn="C:\Users\All Users\Kaspersky Lab\SafeBrowser\S-1-5-21-546033376-3387315075-1641825082-500\Chrome\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj\1.1_0\background.js" sh=E5CDB7DE5CFE283A2425357E992F9DB2C9A3FC2E ft=0 fh=0000000000000000 vn="JS/Adware.Spigot.B application" ac=I fn="C:\Users\All Users\Kaspersky Lab\SafeBrowser\S-1-5-21-546033376-3387315075-1641825082-500\Chrome\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\background.js" sh=1176305BF4CCF3EF786D3148569D342CFEE26BEB ft=0 fh=0000000000000000 vn="JS/Adware.Spigot.B application (deleted - quarantined)" ac=C fn="C:\Program Files\Common Files\Spigot\GC\saebay_1.1.crx" sh=E85B1E7D8DF337B0AD7AFF714595ECA5D5EA2E8F ft=1 fh=747e4c160724cb8b vn="a variant of Win64/Komodia.A potentially unsafe application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files\FastSearch\ACDLL64.exe" sh=1B3A81F1F878C2A2BC736A106363382F16D68B9C ft=1 fh=b75e258fa591f7e5 vn="a variant of Win32/Toolbar.SearchSuite.W potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files\jZip\Helper.dll" sh=55CF7AD85B4B912A5DEE4412220FE8AA965861E1 ft=1 fh=8433d1295bce1aa7 vn="Win32/Adware.ErrorClean application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files\RegistryFix8\RegFix8.exe" sh=4E4AAA31F8ED2D213ECABA6A8F0B7FEF57FFF8E8 ft=1 fh=60a2a8b9290165d7 vn="Win32/Adware.ErrorClean application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files\RegistryFix8\UninstlDll.dll" sh=89DF9B76DCF8E496E4EC31FD1139CFC30378DB2D ft=1 fh=fce77b2b4d03874a vn="a variant of MSIL/Wajam.C potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancer.exe" sh=40D59C1C422AE5B6A4C0B2DCFA78401DC2DED4AF ft=1 fh=c71c0011124a1bc0 vn="a variant of Win32/Wajam.V potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files\WajInterEnhancer\WajInterEnhancer Internet Enhancer\InternetEnhancerService.exe" sh=246DDBC3A2C223A6B9072637D93DC2A2832D097A ft=1 fh=c71c0011b04f613a vn="Win32/Toolbar.Babylon.Y potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\ProgramData\DSearchLink\DSearchLink.exe" sh=CE0D088EC727B0DA5423CBF08AD5A3E5C0A90E94 ft=0 fh=0000000000000000 vn="JS/Adware.Spigot.B application (cleaned by deleting - quarantined)" ac=C fn="C:\ProgramData\Kaspersky Lab\SafeBrowser\kis\S-1-5-21-546033376-3387315075-1641825082-500\Chrome\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj\1.1_0\background.js" sh=CE0D088EC727B0DA5423CBF08AD5A3E5C0A90E94 ft=0 fh=0000000000000000 vn="JS/Adware.Spigot.B application (cleaned by deleting - quarantined)" ac=C fn="C:\ProgramData\Kaspersky Lab\SafeBrowser\S-1-5-21-546033376-3387315075-1641825082-500\Chrome\Default\Extensions\hbcennhacfaagdopikcegfcobcadeocj\1.1_0\background.js" sh=E5CDB7DE5CFE283A2425357E992F9DB2C9A3FC2E ft=0 fh=0000000000000000 vn="JS/Adware.Spigot.B application (cleaned by deleting - quarantined)" ac=C fn="C:\ProgramData\Kaspersky Lab\SafeBrowser\S-1-5-21-546033376-3387315075-1641825082-500\Chrome\Default\Extensions\mhkaekfpcppmmioggniknbnbdbcigpkk\2.5_0\scripts\background.js" sh=69EC7292D5FE4AC53AE09E3235DFC3FB3F13AEC7 ft=1 fh=5bd8162f4386fbae vn="Win32/Verti.O potentially unwanted application (deleted - quarantined)" ac=C fn="C:\Users\Administrator\AppData\Local\Temp\6be9dc64-03bd-40b9-bd33-d051f0a7a28e\setup.exe" sh=9BB9FE9DD8E1B0826C0BB0C419DB52E4E1B05192 ft=1 fh=01e22552a20badde vn="a variant of MSIL/Wajam.C potentially unwanted application (deleted - quarantined)" ac=C fn="C:\Users\Administrator\AppData\Local\Temp\b4409245-0f9b-4b45-950a-c9e0723b3367\wie_2.19.2.6.exe" sh=C8E66AD38405C3DF9A8A088BFCDE5E67337286DD ft=1 fh=c8ad3e80d437eef2 vn="Win32/SpeedUpMyPC.A potentially unwanted application (deleted - quarantined)" ac=C fn="C:\Users\Administrator\AppData\Local\Temp\cc898aef-cd28-493a-8c10-ea9e29d54b88\speedupmypc.exe" sh=585B82C26DB839B099F2841A461580E1C073236F ft=1 fh=6c31f324290a87ec vn="a variant of Win32/SoftPulse.AJ potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\Users\Administrator\Documents\Downloads\google chrome.exe" sh=4CEA705682BB790C11ABEF4561B0A3A04C405172 ft=1 fh=b2e2ce7ff5f99577 vn="Win32/Bundled.Toolbar.Google.D potentially unsafe application (deleted - quarantined)" ac=C fn="C:\Users\Administrator\Documents\Downloads\spsetup128.exe" sh=F9E4F3E034642EA612B8E0F177307ECD34C4274C ft=1 fh=1789172f1b420306 vn="a variant of Win32/Systweak.A potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\WINDOWS\System32\roboot.exe" sh=ECE8F21ECCFE55BF20C2C967B401272ADCDD4F71 ft=1 fh=5ed7cca928a51e33 vn="a variant of Win32/BrowseFox.AM potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\zoek_backup\C_Program Files_Common Files_31f7a620-acbd-4f84-82db-5e231b8ad5de\updater.bak" sh=8882B6DF7AE952FC106BB85C4116D8AF53DAD488 ft=1 fh=b1a1f340328def5d vn="a variant of Win32/BrowseFox.AU potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\zoek_backup\C_ProgramData_31f7a620-acbd-4f84-82db-5e231b8ad5de\plugincontainer.bak" sh=69EC7292D5FE4AC53AE09E3235DFC3FB3F13AEC7 ft=1 fh=5bd8162f4386fbae vn="Win32/Verti.O potentially unwanted application (deleted - quarantined)" ac=C fn="G:\FileHistory\Administrator\WIN-XM7DVXO155L\Data\C\Users\Administrator\AppData\Local\Temp\6be9dc64-03bd-40b9-bd33-d051f0a7a28e\Setup (2015_08_16 15_59_16 UTC).exe" sh=9BB9FE9DD8E1B0826C0BB0C419DB52E4E1B05192 ft=1 fh=01e22552a20badde vn="a variant of MSIL/Wajam.C potentially unwanted application (deleted - quarantined)" ac=C fn="G:\FileHistory\Administrator\WIN-XM7DVXO155L\Data\C\Users\Administrator\AppData\Local\Temp\b4409245-0f9b-4b45-950a-c9e0723b3367\wie_2.19.2.6 (2015_08_16 15_59_16 UTC).exe" sh=C8E66AD38405C3DF9A8A088BFCDE5E67337286DD ft=1 fh=c8ad3e80d437eef2 vn="Win32/SpeedUpMyPC.A potentially unwanted application (deleted - quarantined)" ac=C fn="G:\FileHistory\Administrator\WIN-XM7DVXO155L\Data\C\Users\Administrator\AppData\Local\Temp\cc898aef-cd28-493a-8c10-ea9e29d54b88\speedupmypc (2015_08_16 15_59_16 UTC).exe" sh=A8FA819FACB9E38E27847FAF3A54E2C856FA6BE2 ft=1 fh=824348c9b2df51e9 vn="Win32/SpeedUpMyPC potentially unwanted application (deleted - quarantined)" ac=C fn="G:\FileHistory\Administrator\WIN-XM7DVXO155L\Data\C\Users\Administrator\AppData\Local\Temp\is-S4BIM.tmp\sp-standalone-setup (2015_08_16 15_59_16 UTC).exe" sh=CDAE10A84886E373121FFC8F8E5BEC5D2CBA1CB0 ft=1 fh=7e5dcd15a5ee5574 vn="a variant of Win64/Komodia.A potentially unsafe application (deleted - quarantined)" ac=C fn="G:\FileHistory\Administrator\WIN-XM7DVXO155L\Data\C\Users\Administrator\AppData\Local\Temp\nsb5A89.tmp\setupfa_4435 (2015_08_16 15_59_16 UTC).exe" sh=585B82C26DB839B099F2841A461580E1C073236F ft=1 fh=6c31f324290a87ec vn="a variant of Win32/SoftPulse.AJ potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="G:\FileHistory\Administrator\WIN-XM7DVXO155L\Data\C\Users\Administrator\Documents\Downloads\google chrome (2015_08_16 15_59_16 UTC).exe" sh=4CEA705682BB790C11ABEF4561B0A3A04C405172 ft=1 fh=b2e2ce7ff5f99577 vn="Win32/Bundled.Toolbar.Google.D potentially unsafe application (deleted - quarantined)" ac=C fn="G:\FileHistory\Administrator\WIN-XM7DVXO155L\Data\C\Users\Administrator\Documents\Downloads\spsetup128 (2015_08_16 15_59_16 UTC).exe" sh=D9B3CA03A3CCFFF64BED395D2CB0CDA16856B68B ft=0 fh=0000000000000000 vn="a variant of Win32/Toolbar.Widgi.B potentially unwanted application (deleted - quarantined)" ac=C fn="G:\WIN-XM7DVXO155L\Backup Set 2015-07-06 120011\Backup Files 2015-07-06 120011\Backup files 9.zip" sh=0FBC10F40F2B5CD13F0A09F483E636C98CC0C980 ft=0 fh=0000000000000000 vn="a variant of Win32/SoftPulse.AJ potentially unwanted application (deleted - quarantined)" ac=C fn="G:\WIN-XM7DVXO155L\Backup Set 2015-08-17 120000\Backup Files 2015-08-17 120000\Backup files 1.zip" sh=656BA6E01F545F1846FF012C5BC73785A76DC2B0 ft=0 fh=0000000000000000 vn="a variant of Win32/InstallCore.ABX potentially unwanted application (deleted - quarantined)" ac=C fn="G:\WIN-XM7DVXO155L\Backup Set 2015-08-17 120000\Backup Files 2015-08-17 120000\Backup files 9.zip"