Start:: CloseProcesses: ContextMenuHandlers1-x32: [PC Protector Plus] -> {63F58340-0CD0-403B-B6E8-4E1449F01C6F} => C:\Users\baudr\AppData\Local\Jawego\PC Protector Plus\pcpluscontexthelper64.dll [2016-09-26] () ContextMenuHandlers6: [PC Protector Plus] -> {63F58340-0CD0-403B-B6E8-4E1449F01C6F} => C:\Users\baudr\AppData\Local\Jawego\PC Protector Plus\pcpluscontexthelper64.dll [2016-09-26] () Task: {97A35D97-E70C-437F-848B-484DFA8A625A} - System32\Tasks\PC Protector Plus_runnag => C:\Program Files (x86)\PC Protector Plus\AppManager.exe 2016-11-04 18:55 - 2016-09-26 18:26 - 000085952 ____N () C:\Users\baudr\AppData\Local\Jawego\PC Protector Plus\pcpluscontexthelper64.dll HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKU\S-1-5-21-3624390122-424403623-1656999047-1004\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation) C:\ProgramData\FLEXnet CMD: ipconfig /flushdns cmd: netsh advfirewall reset Emptytemp: End::