start CloseProcesses: CreateRestorePoint: HKU\S-1-5-21-4014416490-3176383337-86159738-1001\...\Run: [Gaijin.Net Agent] => "C:\Users\jipel\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe" GroupPolicy: Restriction - Chrome <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = S3 Sense; "%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe" [X] S3 WdNisSvc; "%ProgramFiles%\Windows Defender\NisSrv.exe" [X] S3 WinDefend; "%ProgramFiles%\Windows Defender\MsMpEng.exe" [X] S3 WMPNetworkSvc; "%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe" [X] S3 dbx; system32\DRIVERS\dbx.sys [X] 2017-02-19 07:08 - 2017-02-19 07:08 - 00000000 ____D C:\Users\jipel\AppData\Local\Gaijin 2017-02-19 07:08 - 2017-02-19 07:08 - 00000000 ____D C:\ProgramData\Gaijin EmptyTemp: end