CloseProcesses: CreateRestorePoint: GroupPolicyScripts-x32: Restriction <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION SearchScopes: HKLM-x32 -> DefaultScope value is missing U3 idsvc; no ImagePath C:\Users\Chris\AppData\Local\Temp\libeay32.dll C:\Users\Chris\AppData\Local\Temp\msvcr120.dll C:\Users\Chris\AppData\Local\Temp\sqlite3.dll CustomCLSID: HKU\S-1-5-21-3686218881-3921037133-2243164661-1002_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Chris\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3686218881-3921037133-2243164661-1002_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Chris\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => No File CustomCLSID: HKU\S-1-5-21-3686218881-3921037133-2243164661-1002_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Chris\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => No File Task: {134AA8EA-5AFB-432F-8F7F-39988B850E43} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {302E9C3A-00B9-420B-B168-211E9E4012B0} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {3C81AF2C-5016-4542-BDD5-63129225BA0F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {44D894DA-F80F-4DD0-BD12-6DECF6D1E4AD} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {6C50031E-68CB-4933-863B-6BBD4470FD4C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {6CD88E86-3981-4F2A-BC5C-A0F4E462747F} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION Task: {7EEDDB41-3EDB-4A30-B928-48942ECD94C5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {AECE7103-747D-418B-A6F3-3DF591EC78E7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {B5713F46-1A3F-430C-9DAA-88E666187C8A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {C5ABCD96-6775-4E19-A1E7-3CF2A6B1C96D} - System32\Tasks\4686 => Wscript.exe C:\Users\Chris\AppData\Local\Temp\launchie.vbs //B <==== ATTENTION Task: {D2A75EAA-0B54-4EF6-A62C-199102C8043D} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {D866AD2A-9C6F-45CC-89FB-AC2877561C8B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION AlternateDataStreams: C:\ProgramData\Temp:D48500F8 [96] CMD: bitsadmin /reset /allusers CMD: netsh winsock reset catalog CMD: ipconfig /flushdns Emptytemp: