() C:\Program Files\pcmax\pcmax.exe HKLM\...\Run: [fst_us_92] => [X] HKLM\...\Run: [pcreg] => C:\Program Files\pcmax\service.exe [79088 2014-05-29] () C:\Program Files\pcmax HKU\S-1-5-21-602162358-1275210071-725345543-1004\...\Run: [pcreg] => C:\Program Files\pcmax\service.exe [79088 2014-05-29] () Startup: C:\Documents and Settings\User\Start Menu\Programs\Startup\New Folder () SearchScopes: HKLM - DefaultScope value is missing. Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File FF HKLM\...\Firefox\Extensions: [{C4CFC0DE-134F-4466-B2A2-FF7C59A8BFAD}] - C:\Program Files\Updater By SweetPacks\Firefox C:\Program Files\Updater By SweetPacks R2 pcmaxservice; C:\Program Files\pcmax\pcmax.exe [241344 2014-05-29] () S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] S4 IntelIde; No ImagePath S3 JL2005C; System32\Drivers\jl2005c.sys [X] 2014-06-25 12:54 - 2014-06-25 12:54 - 00001273 _____ () C:\Documents and Settings\User\Desktop\fix.bat 2014-06-25 12:54 - 2014-06-25 12:54 - 00000024 _____ () C:\Documents and Settings\User\Desktop\ForNaat.txt 2014-06-24 10:26 - 2014-06-24 10:26 - 00000116 _____ () C:\Documents and Settings\User\My Documents\fix.bat 2014-06-13 13:18 - 2014-06-25 12:00 - 00000334 _____ () C:\WINDOWS\Tasks\PC HealthFix Malware Alert.job 2014-06-13 13:18 - 2014-06-14 10:00 - 00000334 _____ () C:\WINDOWS\Tasks\PC HealthFix Scan Results Alert 2.job 2014-06-13 13:18 - 2014-06-14 09:00 - 00000330 _____ () C:\WINDOWS\Tasks\PC HealthFix Desktop Alert.job 2014-06-13 13:18 - 2014-06-13 17:00 - 00000334 _____ () C:\WINDOWS\Tasks\PC HealthFix Desktop Warning.job 2014-06-13 13:18 - 2014-06-13 15:32 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\PC HealthFix 2014-06-13 13:18 - 2014-06-13 15:26 - 00000714 _____ () C:\WINDOWS\PCHealthFix.INI 2014-06-13 13:18 - 2014-06-13 13:18 - 00000334 _____ () C:\WINDOWS\Tasks\PC HealthFix Scan Results Alert.job 2014-06-13 13:17 - 2014-06-23 20:10 - 00000354 _____ () C:\WINDOWS\Tasks\At1.job 2014-06-06 08:40 - 2014-06-08 18:17 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection 2014-06-06 08:39 - 2014-06-08 18:48 - 00000000 ____D () C:\Program Files\Lavasoft 2014-06-06 08:34 - 2014-06-06 08:42 - 00000000 ____D () C:\Documents and Settings\User\Application Data\LavasoftStatistics 2014-06-06 08:31 - 2014-06-06 08:31 - 00000000 ____D () C:\Documents and Settings\All Users\Application Data\Lavasoft 2014-06-06 08:18 - 2014-06-06 08:18 - 00000000 _____ () C:\Program Files\Mozilla Firefoxsafeguard-secure-search.xml 2014-06-06 08:18 - 2014-06-06 08:17 - 00042272 _____ (AVG Technologies) C:\WINDOWS\system32\Drivers\avgtpx86.sys 2014-06-07 10:35 - 2013-03-21 11:09 - 00000000 ____D () C:\Documents and Settings\User\Local Settings\Application Data\Updater26766 C:\Documents and Settings\User\Local Settings\Temp\26_SoftwareUpdaterSetupD.exe C:\Documents and Settings\User\Local Settings\Temp\air25.exe C:\Documents and Settings\User\Local Settings\Temp\air32.exe C:\Documents and Settings\User\Local Settings\Temp\air42.exe C:\Documents and Settings\User\Local Settings\Temp\air4B.exe C:\Documents and Settings\User\Local Settings\Temp\air62.exe C:\Documents and Settings\User\Local Settings\Temp\BackupSetup.exe C:\Documents and Settings\User\Local Settings\Temp\ConsumerInputSetup.exe C:\Documents and Settings\User\Local Settings\Temp\dlLogic.exe C:\Documents and Settings\User\Local Settings\Temp\dltr.exe C:\Documents and Settings\User\Local Settings\Temp\file_to_run55804.exe C:\Documents and Settings\User\Local Settings\Temp\GCVerifier.dll C:\Documents and Settings\User\Local Settings\Temp\ICReinstall_DownloadManagerSetup.exe C:\Documents and Settings\User\Local Settings\Temp\nsd37.exe C:\Documents and Settings\User\Local Settings\Temp\nsg2E.exe C:\Documents and Settings\User\Local Settings\Temp\nsi33.exe C:\Documents and Settings\User\Local Settings\Temp\nsl36.exe C:\Documents and Settings\User\Local Settings\Temp\nsr3F.exe C:\Documents and Settings\User\Local Settings\Temp\nst2B.exe C:\Documents and Settings\User\Local Settings\Temp\nsu3C.exe C:\Documents and Settings\User\Local Settings\Temp\nsw34.exe C:\Documents and Settings\User\Local Settings\Temp\Quarantine.exe C:\Documents and Settings\User\Local Settings\Temp\setup.exe C:\Documents and Settings\User\Local Settings\Temp\speedmax_21791.exe C:\Documents and Settings\User\Local Settings\Temp\updater_152883.exe C:\Documents and Settings\User\Local Settings\Temp\verifier.exe Task: C:\WINDOWS\Tasks\DTChk.job => C:\Users\Public\Util\DTChk.exe C:\Users\Public\Util\DTChk.exe C:\Documents and Settings\All Users\Application Data\PC HealthFix Task: C:\WINDOWS\Tasks\PC HealthFix Desktop Alert.job => C:\Documents and Settings\All Users\Application Data\PC HealthFix\PCHealthFix.exe Task: C:\WINDOWS\Tasks\PC HealthFix Desktop Warning.job => C:\Documents and Settings\All Users\Application Data\PC HealthFix\PCHealthFix.exe Task: C:\WINDOWS\Tasks\PC HealthFix Malware Alert.job => C:\Documents and Settings\All Users\Application Data\PC HealthFix\PCHealthFix.exe Task: C:\WINDOWS\Tasks\PC HealthFix Scan Results Alert 2.job => C:\Documents and Settings\All Users\Application Data\PC HealthFix\PCHealthFix.exe Task: C:\WINDOWS\Tasks\PC HealthFix Scan Results Alert.job => C:\Documents and Settings\All Users\Application Data\PC HealthFix\PCHealthFix.exe Task: C:\WINDOWS\Tasks\SparkTrust Update Version3_triggeronce.job => c:\program files\common files\sparktrust\uus3\Update3.exe <==== ATTENTION c:\program files\common files\sparktrust Reboot: