ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=1f9cf5b6c7c60142b08ed36dbb302aa0 # end=init # utc_time=2015-12-20 05:11:49 # local_time=2015-12-20 06:11:49 (+0100, Romance (standaardtijd)) # country="Netherlands" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 27284 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=1f9cf5b6c7c60142b08ed36dbb302aa0 # end=updated # utc_time=2015-12-20 05:15:00 # local_time=2015-12-20 06:15:00 (+0100, Romance (standaardtijd)) # country="Netherlands" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=1f9cf5b6c7c60142b08ed36dbb302aa0 # engine=27284 # end=finished # remove_checked=true # archives_checked=true # unwanted_checked=true # unsafe_checked=true # antistealth_checked=true # utc_time=2015-12-21 07:15:13 # local_time=2015-12-21 08:15:13 (+0100, Romance (standaardtijd)) # country="Netherlands" # lang=1033 # osver=6.2.9200 NT # compatibility_mode_1='avast! Antivirus' # compatibility_mode=783 16777213 71 92 137499 37979950 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 4453767 4496256 0 0 # scanned=703685 # found=39 # cleaned=39 # scan_time=50411 sh=984A756CCC52B4FB93431768C789239CC6CD5958 ft=1 fh=c71c001148eb71fa vn="a variant of Win32/Toolbar.Perion.J potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\DGChrome.exe.vir" sh=9D61B86C2F04F6910970491758BB1AE18D042CF8 ft=1 fh=30bf91da42efa7af vn="a variant of Win32/Toolbar.Perion.A potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\Extension32.dll.vir" sh=B219AEE99BA9F9EB0BCB767ACA44F8D297DD31D3 ft=1 fh=4cbf94f0439649e0 vn="a variant of Win64/Toolbar.Perion.A potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\Extension64.dll.vir" sh=B63DF79D0FEEFCF492C31D62FFC2F74466D1A149 ft=1 fh=99d7ddb65e37fad9 vn="a variant of Win32/Toolbar.BitCocktail.A potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\InstallerHelper.dll.vir" sh=0B2BAB24A0AE630E6802A54F8A03DE1CA2A659E6 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Perion.K potentially unwanted application (deleted - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\source.crx.vir" sh=50FE7F379E00797C34CBE973A8DCD8C96612CE8D ft=0 fh=0000000000000000 vn="Win32/Toolbar.Perion.D potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\Firefox\chrome\content\main.js.vir" sh=8C4EBEFA00C5146974AFA68BE39D3923D8453C20 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Perion.E potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\Firefox\chrome\content\resources\localscript.js.vir" sh=8C4EBEFA00C5146974AFA68BE39D3923D8453C20 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Perion.E potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Web Assistant\resources\localscript.js.vir" sh=97BCCD25561F44E9B13F05F6EEF083C9CE9BA529 ft=1 fh=641f1fb3d2e699c4 vn="Win32/Toolbar.Conduit.Y potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Conduit\Community Alerts\Alert.dll.vir" sh=89B4242BD511BD645E7A91389ACEC8B21988A73A ft=1 fh=8f3c79a3af3a7abf vn="a variant of Win32/Toolbar.Conduit.H potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\NCH Software\WavePad\uninst.exe.vir" sh=025636415D4A0B691B757C10ABC1F84DEE5DA027 ft=1 fh=75023d69af3a7abf vn="a variant of Win32/Toolbar.Conduit.H potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\NCH Software\WavePad\wavepad.exe.vir" sh=1FBC353331F2C5F300978AF27C8EC11B9F070BB8 ft=1 fh=5b2b89c54a2ce48c vn="a variant of Win32/Toolbar.Conduit.H potentially unwanted application (deleted - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\NCH Software\WavePad\wpsetup_v5.08.exe.vir" sh=810C1517C36278077DAB711A8F81B9F9D08E43F0 ft=1 fh=d5a7903e1ff68e8e vn="Win32/ELEX.BM potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\XTab\BrowerWatchCH.dll.vir" sh=7E105A4FE49D55CB3B71D8A91E6AD207E3BE1976 ft=1 fh=c5e772386234733f vn="Win32/ELEX.BM potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\XTab\BrowerWatchFF.dll.vir" sh=5D628376391A827A818B0A079B64EE457AE9B82A ft=1 fh=c71c0011e2e7a7a5 vn="a variant of Win32/ELEX.DH potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\XTab\BrowserAction.dll.vir" sh=07097986407A53ADBFC7C2A6BCCBACF41F8971B7 ft=1 fh=f231f1e4c2bc3212 vn="a variant of Win32/ELEX.CY potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\XTab\CmdShell.exe.vir" sh=5A77FB3D7934CFB0DF04AB5BE6F5636B9F61442E ft=1 fh=332bda805d36a167 vn="Win32/ELEX.DK potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\XTab\HPNotify.exe.vir" sh=4E409DDB2156AF741787458B35CECE4AC41FD8B0 ft=1 fh=33cac8fcf432a6a1 vn="Win32/ELEX.BM potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\XTab\IeWatchDog.dll.vir" sh=4E26DB266B754B627810C44A82C7484086F1CB3E ft=1 fh=8c26b72adef72cc0 vn="Win32/ELEX.BM potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\XTab\ProtectService.exe.vir" sh=0282FBBEEE8C23FE154645DBFBE4A48D48E62525 ft=1 fh=1325514d230bfcad vn="a variant of Win32/Adware.SpeedingUpMyPC.Y application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\ProgramData\{b345cc90-7514-552a-b345-5cc907513241}\hqghumeaylnlf.exe.vir" sh=E5AD99CE7C7362CA566156033ECB0F04F9437CA7 ft=1 fh=f45d83e01e1c8734 vn="Win32/Toolbar.Conduit.Q potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\User\AppData\Local\Conduit\CT2849859\BittorrentBar_NLAutoUpdateHelper.exe.vir" sh=1E00782FEC3CA539AE30F866502633FF550356C6 ft=1 fh=46da0b21d76c5220 vn="a variant of Win32/Toolbar.Conduit.P potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\User\AppData\LocalLow\BittorrentBar_NL\ldrtbBitt.dll.vir" sh=3E30150D840AC9A0C0A7969D2FFD45118BE827D6 ft=1 fh=afbdb7c39edb934a vn="a variant of Win32/Toolbar.Conduit.P potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\User\AppData\LocalLow\BittorrentBar_NL\tbBitt.dll.vir" sh=A6B0985ABC1E2C02B26045E46506CAAC737DA137 ft=1 fh=121662fb9c8fa164 vn="a variant of Win32/Conduit.SearchProtect.N potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\f53n8y7f.default\Extensions\{fed66dc5-1b74-4a04-8f5c-15c5ace2b9a5}\Plugins\npConduitFirefoxPlugin.dll.vir" sh=D3CB70348E984C6EBF46A6354642751048AD6CC1 ft=1 fh=828f32d24125999d vn="a variant of Win32/ZvuZona.F potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\User\AppData\Roaming\zona\plugins\zupdater\ZonaUpdater.exe.vir" sh=2AAB40288A33E431480E904BD7A9A9C6D065B3D0 ft=1 fh=b484f4b7f98c653e vn="a variant of Win64/Systweak.A potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\AdwCleaner\Quarantine\C\Windows\System32\roboot64.exe.vir" sh=02A40E3489799CCA06F3793FFCB9225E65F53601 ft=1 fh=fdeeb0affd325f87 vn="MSIL/FakeTool.PS trojan (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files\Adware-Removal-Tool\ARTP3.exe" sh=60D55578170140846221F49D210C813F119AF08B ft=1 fh=356beab584d17600 vn="a variant of Win32/Packed.VMProtect.ABR trojan (cleaned by deleting - quarantined)" ac=C fn="C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X Steam Edition\steam_api.dll" sh=9A052145464210B7141A4E70F2FB8BC0012C9F62 ft=1 fh=0a36748de5f3e548 vn="a variant of Win32/Toolbar.Perion.A potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\Qoobox\Quarantine\C\Program Files\Web Assistant\ExTEnsion32.dll.vir" sh=EB58DAF548C8CF4852F773B9FC78033CCFD0605E ft=0 fh=0000000000000000 vn="a variant of Win32/HackTool.Crack.BQ potentially unsafe application (deleted - quarantined)" ac=C fn="C:\Users\Public\Documents\Allerlei\Games\Galaxy.On.Fire.2.HD-RELOADED\rld-gof2hd.iso" sh=C586DDE1E670F6471B316A9189B3CF3759E3755A ft=1 fh=3d9310d1cc4b7aa1 vn="a variant of Win32/Bundled.Toolbar.Ask.F potentially unsafe application (cleaned by deleting - quarantined)" ac=C fn="C:\Users\User\AppData\LocalLow\Sun\Java\jre1.7.0_45\java_sp.dll" sh=E2FD873AC5B2F0DA6E1181F69007A1BDC64C8710 ft=1 fh=71d7c6cfdb1d9aba vn="a variant of Win32/AdkDLLWrapper.A potentially unwanted application (cleaned by deleting - quarantined)" ac=C fn="C:\Users\User\AppData\Roaming\BitTorrent\updates\7.8.2_30265.exe" sh=C117FB990F4E22AB67A0B3C8C955F145EEB82F2B ft=0 fh=0000000000000000 vn="Win32/Toolbar.Conduit potentially unwanted application (deleted - quarantined)" ac=C fn="C:\Users\User\AppData\Roaming\Mozilla\Firefox\extensions\{2d8d9acc-f6d7-4362-8876-a275ca929591}\chrome\bittorrentbar_nl.jar" sh=0000000000000000000000000000000000000000 ft=- fh=0000000000000000 vn="a variant of Win32/Packed.VMProtect.ABR trojan (deleted - quarantined)" ac=C fn="C:\Users\User\Documents\Games-Software\Microsoft.Flight.Simulator.X.Steam.Edition-TiNYiSO\t-msfsxse.iso" sh=01CA71985D230E8802622B210E12BA6CDF15D907 ft=1 fh=1b493e7940fe183a vn="Win32/Bundled.Toolbar.Google.D potentially unsafe application (deleted - quarantined)" ac=C fn="C:\Users\User\Downloads\ccsetup_512.exe" sh=012428EBFCFC3379028851DD80E38781B5A1192C ft=1 fh=43bf8528b5e5d571 vn="Win32/Bundled.Toolbar.Google.D potentially unsafe application (deleted - quarantined)" ac=C fn="C:\Users\User\Downloads\spsetup129 (1).exe" sh=012428EBFCFC3379028851DD80E38781B5A1192C ft=1 fh=43bf8528b5e5d571 vn="Win32/Bundled.Toolbar.Google.D potentially unsafe application (deleted - quarantined)" ac=C fn="C:\Users\User\Downloads\spsetup129.exe" sh=E6468CCD482FB4EE546C204FE321AAB869B6BC80 ft=1 fh=58e1c0cccbabea34 vn="a variant of Win32/Adware.Hicosmea.E application (cleaned by deleting - quarantined)" ac=C fn="C:\zoek_backup\C_Users_User_AppData_Roaming_sxadsbbm\encecal.dll" sh=E6468CCD482FB4EE546C204FE321AAB869B6BC80 ft=1 fh=58e1c0cccbabea34 vn="a variant of Win32/Adware.Hicosmea.E application (cleaned by deleting - quarantined)" ac=C fn="C:\zoek_backup\C_Users_User_AppData_Roaming_tacsdvjr\encecal.dll"