![]() |
|
Alles rund um Windows: Windows 10: Bluescreen in unregelmäßigen abständenWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
![]() | #1 |
| ![]() Problem: Windows 10: Bluescreen in unregelmäßigen abständen Hallo zusammen, ich habe nun schon längere Zeit das Problem das ich nach ungewisser Zeit einen Bluescreen bekomme und mein PC wieder neu startet. Ich habe meinen PC über CCleaner die Registries nachschauen lassen und mir fällt auf, das ich folgenden Verweis nicht entfernen kann. localserver32\c:\windows\syswow64\speech_onecore\common\speechruntime.exe -toastnotifier hkcr\clsid\{265b1075-d22b-41eb-bc97-87568f3e6dab} Dieses Problem habe ich schon versucht über eine Neuinstallation von Windows zu beheben, leider ohne Erfolg. Einen Virenscan habe ich noch nicht erstellt. Habe mit dem FRST einen Scan erstellt. FRST-Log: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2021 durchgeführt von belar (Administrator) auf DESKTOP-E8L34PA (HP HP Pavilion Gaming Desktop TG01-1xxx) (14-05-2021 19:12:37) Gestartet von C:\Users\belar\Downloads Geladene Profile: belar Platform: Windows 10 Home Version 20H2 19042.985 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Opera Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Discord Inc. -> Discord Inc.) C:\Users\belar\AppData\Local\Discord\app-1.0.9001\Discord.exe <6> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <4> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\123.3.4805\QtWebEngineProcess.exe <2> (Electronic Arts, Inc. -> ) D:\Origin\QtWebEngineProcess.exe (Electronic Arts, Inc. -> Electronic Arts) D:\Origin\Origin.exe (Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginWebHelperService.exe (Express Vpn LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe (Express Vpn LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP Support Framework\Resources\HPUpdate\HPUpdate.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_eb7ea98d07646ece\x64\TouchpointAnalyticsClientService.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_eb7ea98d07646ece\x64\TouchpointGpuInfo.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\AppHelperCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\BridgeCommunication.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\DiagsCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\NetworkCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\SysInfoCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_c0309a48bef2b923\x64\OmenCap.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpjumpstarts_1.9.1548.0_x64__v10z8vjag6ke6\HP.JumpStarts.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpsupportassistant_9.7.290.0_x64__v10z8vjag6ke6\www\HPSFCopy\Resources\HPSAAppLauncher.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpsystemeventutility_1.1.21.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.omencommandcenter_11.4.2.0_x64__v10z8vjag6ke6\win32\OmenCommandCenterBackground.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_2ca0a47853f51398\esif_uf.exe (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_a031792b512c1a2a\RstMwService.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\NisSrv.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_a494df49ba2f9f36\Display.NvContainer\NVDisplay.Container.exe <2> (Opera Software AS -> Opera Software) C:\Users\belar\AppData\Local\Programs\Opera\76.0.4017.107\opera.exe <39> (Opera Software AS -> Opera Software) C:\Users\belar\AppData\Local\Programs\Opera\76.0.4017.107\opera_crashreporter.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtAudioServ.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (ROCCAT GmbH) [Datei ist nicht signiert] C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.exe (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOCL64.exe (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.) C:\Users\belar\AppData\Local\Programs\Blitz\Blitz.exe <6> (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (Voicemod Sociedad Limitada -> Voicemod) C:\Program Files\Voicemod Desktop\VoicemodDesktop.exe (Voyetra Turtle Beach, Inc. -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe (Voyetra Turtle Beach, Inc. -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (WildTangent Inc -> ) C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM-x32\...\Run: [ExpressVPNNotificationService] => C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe [471432 2019-12-11] (Express Vpn LLC -> ExpressVPN) HKLM-x32\...\Run: [RoccatIsku] => C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE [536576 2013-10-30] (ROCCAT GmbH) [Datei ist nicht signiert] HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [8172776 2021-05-08] (Dropbox, Inc -> Dropbox, Inc.) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [528392 2020-09-04] (HP Inc. -> HP Inc.) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [Opera Browser Assistant] => C:\Users\belar\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4042904 2021-05-06] (Opera Software AS -> Opera Software) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33698888 2021-04-22] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [EADM] => D:\Origin\Origin.exe [3144760 2021-05-11] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [com.blitz.app] => C:\Users\belar\AppData\Local\Programs\Blitz\Blitz.exe [109893896 2021-05-12] (Swift Media Entertainment, Inc. -> Blitz, Inc.) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4087528 2021-04-12] (Valve -> Valve Corporation) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [Discord] => C:\Users\belar\AppData\Local\Discord\Update.exe [1512040 2021-03-18] (Discord Inc. -> GitHub) HKU\S-1-5-21-429667387-3557466396-1298814767-1001\...\Run: [Voicemod] => C:\Program Files\Voicemod Desktop\VoicemodDesktop.exe [5790352 2021-04-22] (Voicemod Sociedad Limitada -> Voicemod) HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\Windows\system32\pxcpmL.dll [2044248 2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ROCCAT Swarm Monitor.lnk [2021-05-11] ShortcutTarget: ROCCAT Swarm Monitor.lnk -> C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (Voyetra Turtle Beach, Inc. -> ROCCAT) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {06AFE5D3-AB50-49D7-AFA3-646077A41017} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {105D676A-D551-4274-81E7-97AC52E4FD87} - \Microsoft\Windows\Speech\HeadsetButtonPress -> Keine Datei <==== ACHTUNG Task: {1949073A-8FDA-4EA4-8E59-407CDB02440F} - \Microsoft\Windows\WindowsUpdate\sihpostreboot -> Keine Datei <==== ACHTUNG Task: {252DEDEF-309E-4C23-8EB6-782284A5FB98} - \Microsoft\Office\OfficeBackgroundTaskHandlerRegistration -> Keine Datei <==== ACHTUNG Task: {25966F87-300B-45CA-97C7-95F862E966A7} - \NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {2670AB17-D9C2-4892-9411-31E195B6D4BD} - System32\Tasks\RtkAudUService64_BG => C:\Windows\System32\RtkAudUService64.exe [1084720 2020-05-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {2764F8D1-C1F5-4C35-AE7E-7DAD04ACC26B} - System32\Tasks\ROCCAT DEVICE SERVICE => C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe [442888 2021-04-19] (Voyetra Turtle Beach, Inc. -> ROCCAT) Task: {2EA4C67A-62E8-468E-8CCC-766F7FD9A338} - \HPAudioSwitch -> Keine Datei <==== ACHTUNG Task: {2F13B1C1-3D3B-41CF-BBB6-96D46F11E92F} - \Microsoft\Office\Office Feature Updates Logon -> Keine Datei <==== ACHTUNG Task: {375CAE3C-ACF2-4C21-A037-4B52BBAC1BFD} - \Microsoft\Office\Office Automatic Updates 2.0 -> Keine Datei <==== ACHTUNG Task: {40630994-A001-4701-B341-45F9BF46C718} - \Microsoft\Office\OfficeBackgroundTaskHandlerLogon -> Keine Datei <==== ACHTUNG Task: {41AFBE96-AA2C-42D3-8D4B-0B2CEBE9581F} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice Task: {4F7878E4-EF61-4BED-95E6-1FEE43C9CB55} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-04-22] (Piriform Software Ltd -> Piriform) Task: {50FC7FB8-989A-4104-B8DE-04BC98C1CE47} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5100A477-348F-48CA-A0F9-BA0C7018AC24} - \OneDrive Standalone Update Task-S-1-5-21-4259826236-3749853712-4035207543-500 -> Keine Datei <==== ACHTUNG Task: {52A4B5A8-F729-4D75-AD99-80BC4A879193} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1139032 2021-03-04] (HP Inc. -> HP Inc.) Task: {54B795D2-F3EA-4260-A914-463E18F49EB6} - \HyperXRamApp -> Keine Datei <==== ACHTUNG Task: {5B4B10C7-9E22-4346-AEFD-FA45657A3AF9} - \NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {6D343E6E-A3D6-4682-B587-67D3194F359A} - \NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {6DB64DF9-179D-4DD0-BB1B-671ACE26F71E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6EE0A99B-D5EE-4F43-AE45-787AA40E243A} - \NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {755BD16F-B7B9-4A33-85C2-6830087EAAD5} - \NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {7579CBE7-E9F9-44A1-9FDC-1B158E34C497} - \Microsoft\Office\Office ClickToRun Service Monitor -> Keine Datei <==== ACHTUNG Task: {7EC2114A-C04B-490C-9434-7F9AC98FA3AE} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-05-13] (Dropbox, Inc -> Dropbox, Inc.) Task: {827AACDD-6BC5-44CC-87A8-2C415F1F3436} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28082760 2021-04-22] (Piriform Software Ltd -> Piriform Software Ltd) Task: {94C2B8CF-A06E-426D-9FE9-E5C2555E6651} - \NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {A1A9EC49-3668-4F31-BC54-D03FD4D7082A} - System32\Tasks\Opera scheduled Autoupdate 1620756554 => C:\Users\belar\AppData\Local\Programs\Opera\launcher.exe [2199704 2021-05-06] (Opera Software AS -> Opera Software) Task: {A233FC21-13EE-4174-B7EE-5E5B6644B7AB} - \NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {A62D212A-CA0D-4C79-99D9-E005A41BC273} - \NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {AC38800C-44FF-4A44-A463-61ECF79532D2} - \NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {BB72F61E-8145-496D-89E0-FA0557530894} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [555640 2021-04-24] (HP Inc. -> HP Inc.) Task: {C2F14FCA-544B-4D40-BA43-F49F3D428C22} - \Microsoft\Office\Office Feature Updates -> Keine Datei <==== ACHTUNG Task: {C7AE827C-17EB-4B19-9B3C-A1E98DD4D125} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CBFB6BE6-9828-4121-A91C-8ADE8B6B1C36} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> Keine Datei <==== ACHTUNG Task: {DA24F8EC-BAFE-4195-97DD-6DE71896021A} - \NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Keine Datei <==== ACHTUNG Task: {DB2E42F9-D7FF-4768-A676-46DA758F1FD2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [135000 2020-10-02] (HP Inc. -> HP Inc.) Task: {E6D09E2D-E60F-48F3-8055-3E033E239DC9} - System32\Tasks\Opera scheduled assistant Autoupdate 1620756557 => C:\Users\belar\AppData\Local\Programs\Opera\launcher.exe [2199704 2021-05-06] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\belar\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {F066D7D4-C80F-48CC-82A9-71A7AA1E1B71} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-05-13] (Dropbox, Inc -> Dropbox, Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{bc4c2879-76ba-4091-9c48-fe677cee6ad0}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge Profile: C:\Users\belar\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-14] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-06-16] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-06-16] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-429667387-3557466396-1298814767-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-429667387-3557466396-1298814767-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-429667387-3557466396-1298814767-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-01-14] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) Opera: ======= OPR Profile: C:\Users\belar\AppData\Roaming\Opera Software\Opera Stable [2021-05-14] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\belar\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-05-11] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11595120 2019-10-08] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-05-13] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2021-05-13] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44272 2021-05-08] (Dropbox, Inc -> Dropbox, Inc.) R2 ExpressVPNService; C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [438664 2019-12-11] (Express Vpn LLC -> ExpressVPN) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [891256 2020-07-30] (HP Inc. -> HP Inc.) R2 HPAppHelperCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\AppHelperCap.exe [731152 2021-03-24] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\DiagsCap.exe [728608 2021-03-24] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\NetworkCap.exe [728608 2021-03-24] (HP Inc. -> HP Inc.) R2 HPOmenCap; C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_c0309a48bef2b923\x64\OmenCap.exe [688888 2020-12-23] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_d9cbd6bbac564232\x64\SysInfoCap.exe [729608 2021-03-24] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_eb7ea98d07646ece\x64\TouchpointAnalyticsClientService.exe [480280 2021-03-17] (HP Inc. -> HP Inc.) S3 Origin Client Service; D:\Origin\OriginClientService.exe [2546776 2021-05-11] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3486808 2021-05-11] (Electronic Arts, Inc. -> Electronic Arts) R2 RtkBtAudioServ; C:\Windows\RtkBtAudioServ.exe [234064 2020-12-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13103632 2020-09-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\NisSrv.exe [2599328 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WildTangentHelper; C:\Program Files (x86)\WildTangent Games\Integration\WildTangentHelperService.exe [1642744 2021-03-15] (WildTangent Inc -> ) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2104.14-0\MsMpEng.exe [128376 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_a494df49ba2f9f36\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_a494df49ba2f9f36\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 expressvpnsplittunnel; C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys [28440 2019-12-11] (ExprsVPN LLC -> ExpressVPN) R3 HPCustomCapDriver; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [25024 2019-04-17] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.) R3 HPOmenCustomCapDriver; C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_326f2e1d16385daf\x64\hpomencustomcapdriver.sys [23888 2019-05-02] (HP Inc. -> HP Inc.) R3 MpKslb30a4957; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D516103C-720F-43BC-95A4-A6856A6AFBF2}\MpKslDrv.sys [107744 2021-05-14] (Microsoft Windows -> Microsoft Corporation) S3 PHYMEM; c:\ProgramData\HyperXLighting\otipcibus64.sys [17488 2018-08-28] (Ours Technology Inc. -> OTi) R1 rtf64; C:\Windows\system32\DRIVERS\rtf64x64.sys [70560 2018-09-04] (Realtek Semiconductor Corp. -> Realtek) S3 RtkAvrcp; C:\Windows\System32\drivers\RtkAvrcp.sys [96984 2019-05-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation) R3 tapexpressvpn; C:\Windows\System32\drivers\tapexpressvpn.sys [44304 2019-12-11] (ExprsVPN LLC -> The OpenVPN Project) R3 ViGEmBus; C:\Windows\System32\DriverStore\FileRepository\vigembus.inf_amd64_8a927fc43d8a7838\x64\ViGEmBus.sys [82840 2019-04-24] (HP Inc. -> Benjamin Hoeglinger-Stelzer) R3 VOICEMOD_Driver; C:\Windows\system32\drivers\vmdrv.sys [48136 2021-03-03] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49560 2021-05-14] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [421112 2021-05-14] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [73960 2021-05-14] (Microsoft Windows -> Microsoft Corporation) U3 aspnet_state; kein ImagePath S3 MpKsl3051b483; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D5937076-6019-43C7-B00F-B2A4D2406CA5}\MpKslDrv.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-05-14 19:12 - 2021-05-14 19:13 - 000027487 _____ C:\Users\belar\Downloads\FRST.txt 2021-05-14 19:12 - 2021-05-14 19:12 - 000000000 ____D C:\FRST 2021-05-14 19:11 - 2021-05-14 19:11 - 002299392 _____ (Farbar) C:\Users\belar\Downloads\FRST64.exe 2021-05-14 19:01 - 2021-05-14 19:01 - 000000000 ____D C:\Windows\LastGood 2021-05-14 19:00 - 2021-05-14 19:00 - 002965896 _____ (Intel Corporation) C:\Windows\system32\iaStorAfsService.exe 2021-05-14 19:00 - 2021-05-14 19:00 - 001489272 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorAC.sys 2021-05-14 19:00 - 2021-05-14 19:00 - 000219528 _____ (Intel Corporation) C:\Windows\system32\iaStorAfsNative.exe 2021-05-14 19:00 - 2021-05-14 19:00 - 000119688 _____ (Intel Corporation) C:\Windows\system32\Optane.dll 2021-05-14 19:00 - 2021-05-14 19:00 - 000073080 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorAfs.sys 2021-05-14 19:00 - 2021-05-14 19:00 - 000027528 _____ (Intel Corporation) C:\Windows\system32\RstMwEventLogMsg.dll 2021-05-14 19:00 - 2021-05-14 19:00 - 000023432 _____ (Intel Corporation) C:\Windows\system32\OptaneEventLogMsg.dll 2021-05-14 18:58 - 2021-05-14 19:01 - 000000000 ____D C:\hpswsetup 2021-05-14 18:58 - 2021-05-14 18:58 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard 2021-05-14 16:53 - 2021-05-14 16:53 - 000000000 ____D C:\Windows\system32\lxss 2021-05-14 16:53 - 2021-05-14 16:53 - 000000000 ____D C:\Windows\LastGood.Tmp 2021-05-14 16:52 - 2021-04-24 03:08 - 000038640 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll 2021-05-14 16:51 - 2021-04-27 23:16 - 001855192 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2021-05-14 16:51 - 2021-04-27 23:16 - 001855192 _____ C:\Windows\system32\vulkaninfo.exe 2021-05-14 16:51 - 2021-04-27 23:16 - 001453344 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2021-05-14 16:51 - 2021-04-27 23:16 - 001435864 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-05-14 16:51 - 2021-04-27 23:16 - 001435864 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2021-05-14 16:51 - 2021-04-27 23:16 - 001192736 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2021-05-14 16:51 - 2021-04-27 23:16 - 001094880 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2021-05-14 16:51 - 2021-04-27 23:16 - 001094880 _____ C:\Windows\system32\vulkan-1.dll 2021-05-14 16:51 - 2021-04-27 23:16 - 000948952 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2021-05-14 16:51 - 2021-04-27 23:16 - 000948952 _____ C:\Windows\SysWOW64\vulkan-1.dll 2021-05-14 16:51 - 2021-04-27 23:13 - 000715544 _____ C:\Windows\system32\nvofapi64.dll 2021-05-14 16:51 - 2021-04-27 23:13 - 000626976 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2021-05-14 16:51 - 2021-04-27 23:13 - 000575760 _____ C:\Windows\SysWOW64\nvofapi.dll 2021-05-14 16:51 - 2021-04-27 23:12 - 002106144 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2021-05-14 16:51 - 2021-04-27 23:12 - 001590560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2021-05-14 16:51 - 2021-04-27 23:12 - 001514784 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2021-05-14 16:51 - 2021-04-27 23:12 - 001166112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2021-05-14 16:51 - 2021-04-27 23:12 - 000811808 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2021-05-14 16:51 - 2021-04-27 23:12 - 000689952 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2021-05-14 16:51 - 2021-04-27 23:12 - 000675104 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2021-05-14 16:51 - 2021-04-27 23:12 - 000564000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2021-05-14 16:51 - 2021-04-27 23:11 - 008317232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2021-05-14 16:51 - 2021-04-27 23:11 - 007434032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2021-05-14 16:51 - 2021-04-27 23:11 - 004795152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2021-05-14 16:51 - 2021-04-27 23:11 - 002823472 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2021-05-14 16:51 - 2021-04-27 23:11 - 000445744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2021-05-14 16:51 - 2021-04-27 23:10 - 000848664 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2021-05-14 16:51 - 2021-04-27 23:09 - 006159176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2021-05-14 16:51 - 2021-04-24 03:08 - 000087164 _____ C:\Windows\system32\nvinfo.pb 2021-05-14 16:49 - 2021-05-14 16:49 - 000000000 ____D C:\Users\belar\AppData\Local\NVIDIA 2021-05-14 16:49 - 2021-05-14 16:49 - 000000000 ____D C:\Users\belar\ansel 2021-05-13 23:03 - 2021-05-13 23:03 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2021-05-13 23:03 - 2021-05-13 23:03 - 001687040 _____ C:\Windows\system32\libcrypto.dll 2021-05-13 23:03 - 2021-05-13 23:03 - 000700928 _____ C:\Windows\system32\FsNVSDeviceSource.dll 2021-05-13 23:02 - 2021-05-13 23:02 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2021-05-13 23:02 - 2021-05-13 23:02 - 001823816 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2021-05-13 23:02 - 2021-05-13 23:02 - 001393504 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2021-05-13 23:02 - 2021-05-13 23:02 - 001314120 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi 2021-05-13 23:02 - 2021-05-13 23:02 - 001163776 _____ C:\Windows\system32\MBR2GPT.EXE 2021-05-13 23:02 - 2021-05-13 23:02 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-05-13 23:02 - 2021-05-13 23:02 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2021-05-13 23:02 - 2021-05-13 23:02 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe 2021-05-13 23:02 - 2021-05-13 23:02 - 000011351 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-05-13 22:57 - 2021-05-13 22:57 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-05-13 22:56 - 2021-05-13 22:57 - 000000000 ____D C:\Windows\system32\MRT 2021-05-13 18:26 - 2021-05-14 18:54 - 000000000 ____D C:\ProgramData\Voicemod 2021-05-13 18:26 - 2021-05-14 16:44 - 000000000 ____D C:\Users\belar\AppData\Local\Voicemod 2021-05-13 18:26 - 2021-05-13 18:26 - 068445120 _____ (Voicemod S.L. ) C:\Users\belar\Downloads\VoicemodSetup_2.11.0.2.exe 2021-05-13 18:26 - 2021-05-13 18:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Voicemod 2021-05-13 18:26 - 2021-05-13 18:26 - 000000000 ____D C:\Program Files\Voicemod Desktop 2021-05-13 18:26 - 2021-03-03 11:04 - 000048136 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\vmdrv.sys 2021-05-13 18:22 - 2021-05-13 18:22 - 000000000 ____D C:\Users\belar\AppData\LocalLow\Adobe 2021-05-13 18:21 - 2021-05-13 18:24 - 000000000 ____D C:\Program Files (x86)\Adobe 2021-05-13 18:21 - 2021-05-13 18:22 - 000000000 ____D C:\ProgramData\Adobe 2021-05-13 18:20 - 2021-05-13 18:22 - 000000000 ____D C:\Users\belar\AppData\Local\Adobe 2021-05-13 17:51 - 2021-05-13 17:51 - 001246416 _____ (Adobe Inc) C:\Users\belar\Downloads\readerdc_de_ha_crd_install.exe 2021-05-13 15:02 - 2021-05-13 15:02 - 000000000 ____D C:\Users\belar\AppData\Local\ElevatedDiagnostics 2021-05-13 14:36 - 2021-05-13 14:36 - 000000000 ____D C:\Users\belar\AppData\Local\HP_Inc 2021-05-13 14:15 - 2021-05-13 15:11 - 000000000 ___RD C:\Users\belar\Dropbox 2021-05-13 14:15 - 2021-05-13 14:15 - 000001306 _____ C:\Users\belar\Desktop\Dropbox.lnk 2021-05-13 14:13 - 2021-05-13 14:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2021-05-13 14:12 - 2021-05-13 14:12 - 000673488 _____ (Dropbox, Inc.) C:\Users\belar\Downloads\DropboxInstaller (1).exe 2021-05-13 14:11 - 2021-05-13 14:11 - 000000000 ____D C:\Users\belar\AppData\Local\cache 2021-05-13 14:10 - 2021-05-14 16:42 - 000001244 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2021-05-13 14:10 - 2021-05-14 16:42 - 000001240 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2021-05-13 14:10 - 2021-05-13 14:16 - 000004304 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineUA 2021-05-13 14:10 - 2021-05-13 14:16 - 000004072 _____ C:\Windows\system32\Tasks\DropboxUpdateTaskMachineCore 2021-05-13 14:10 - 2021-05-13 14:15 - 000000000 ____D C:\Users\belar\AppData\Local\Dropbox 2021-05-13 14:10 - 2021-05-13 14:13 - 000000000 ____D C:\Program Files (x86)\Dropbox 2021-05-13 14:10 - 2021-05-13 14:10 - 000673488 _____ (Dropbox, Inc.) C:\Users\belar\Downloads\DropboxInstaller.exe 2021-05-13 14:10 - 2021-05-13 14:10 - 000000000 ____D C:\Users\belar\AppData\Roaming\Dropbox 2021-05-13 14:10 - 2021-05-13 14:10 - 000000000 ____D C:\ProgramData\Dropbox 2021-05-11 22:09 - 2021-05-11 22:09 - 000000000 ___HD C:\$WinREAgent 2021-05-11 21:02 - 2021-05-11 21:02 - 000000000 ____D C:\Users\belar\Documents\League of Legends 2021-05-11 21:01 - 2021-05-11 21:01 - 000000000 ____D C:\ProgramData\ROCCAT 2021-05-11 20:37 - 2021-05-11 19:42 - 000000000 ___HD C:\system.sav 2021-05-11 20:37 - 2021-05-11 19:42 - 000000000 ____D C:\Program Files\HP 2021-05-11 20:36 - 2021-05-11 20:36 - 000000000 ____D C:\Users\belar\Downloads\isku_54-1.22-1.25-1248-v1 2021-05-11 20:36 - 2021-05-11 19:47 - 000000000 ____D C:\Windows\Panther 2021-05-11 20:35 - 2021-05-11 20:35 - 000003694 _____ C:\Windows\system32\Tasks\ROCCAT DEVICE SERVICE 2021-05-11 20:35 - 2021-05-11 20:35 - 000000000 ____D C:\Users\belar\AppData\Roaming\ROCCAT 2021-05-11 20:34 - 2021-05-11 20:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT 2021-05-11 20:34 - 2021-05-11 20:34 - 000000000 ____D C:\Windows\Firmware 2021-05-11 20:32 - 2021-05-14 19:01 - 000744982 _____ C:\Windows\system32\perfh007.dat 2021-05-11 20:32 - 2021-05-14 19:01 - 000150388 _____ C:\Windows\system32\perfc007.dat 2021-05-11 20:32 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\system32\OpenSSH 2021-05-11 20:32 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\HoloShell 2021-05-11 20:32 - 2021-05-11 20:32 - 000306166 _____ C:\Windows\system32\perfi007.dat 2021-05-11 20:32 - 2021-05-11 20:32 - 000040520 _____ C:\Windows\system32\perfd007.dat 2021-05-11 20:32 - 2021-05-11 20:32 - 000008192 _____ C:\Windows\system32\config\userdiff 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\TextInput 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\sysprep 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\MailContactsCalendarSync 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\FxsTmp 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\de 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\0409 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\system32\MailContactsCalendarSync 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\system32\de 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\system32\0409 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\Setup 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\DigitalLocker 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\addins 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\ProgramData\ssh 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Program Files\Reference Assemblies 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Program Files\MSBuild 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-05-11 20:32 - 2021-05-11 20:32 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-05-11 20:32 - 2021-05-11 19:48 - 000000000 ____D C:\Windows\system32\FxsTmp 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\SysWOW64\winrm 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\SysWOW64\WCN 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\SysWOW64\slmgr 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\system32\winrm 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\system32\WCN 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\system32\slmgr 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts 2021-05-11 20:32 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\OCR 2021-05-11 20:31 - 2021-05-14 16:51 - 000000000 ____D C:\Users\belar\AppData\Local\NVIDIA Corporation 2021-05-11 20:30 - 2021-05-14 18:58 - 000000000 ___RD C:\Program Files (x86) 2021-05-11 20:30 - 2021-05-14 18:54 - 000000000 ____D C:\Windows\ServiceState 2021-05-11 20:30 - 2021-05-14 18:54 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-05-11 20:30 - 2021-05-14 16:53 - 000000000 ____D C:\Windows\AppReadiness 2021-05-11 20:30 - 2021-05-14 16:53 - 000000000 ____D C:\Program Files\Windows Defender 2021-05-11 20:30 - 2021-05-14 16:46 - 000000000 ___HD C:\Program Files\WindowsApps 2021-05-11 20:30 - 2021-05-14 16:43 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ___RD C:\Windows\PrintDialog 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\SystemResources 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\system32\WinMetadata 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\system32\setup 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\system32\oobe 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\system32\Dism 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\Provisioning 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\DiagTrack 2021-05-11 20:30 - 2021-05-13 23:05 - 000000000 ____D C:\Windows\bcastdvr 2021-05-11 20:30 - 2021-05-13 14:14 - 000000000 ____D C:\Windows\appcompat 2021-05-11 20:30 - 2021-05-11 20:37 - 000028672 _____ C:\Windows\system32\config\BCD-Template 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\MUI 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\SystemApps 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\system32\Sysprep 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\system32\MUI 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\system32\migwiz 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\system32\Com 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Windows\Help 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Program Files (x86)\Windows NT 2021-05-11 20:30 - 2021-05-11 20:32 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-05-11 20:30 - 2021-05-11 20:30 - 015664374 _____ C:\Users\belar\Downloads\isku_54-1.22-1.25-1248-v1.zip 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 __SHD C:\Program Files\Windows Sidebar 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 __RSD C:\Windows\Media 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 __RHD C:\Users\Public\Libraries 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___SD C:\Windows\SysWOW64\Nui 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___SD C:\Windows\SysWOW64\Configuration 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___SD C:\Windows\system32\UNP 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___SD C:\Windows\system32\Nui 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___SD C:\Windows\system32\Configuration 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___SD C:\Windows\Downloaded Program Files 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___RD C:\Windows\Offline Web Pages 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___HD C:\Windows\LanguageOverlayCache 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Web 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\WaaS 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Vss 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\tracing 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\TAPI 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\SMI 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\ras 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\NDF 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\Msdtc 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\migwiz 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\Keywords 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\Ipmi 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\InputMethod 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\inetsrv 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\IME 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\icsxml 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicyUsers 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\downlevel 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\Bthprops 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\AppLocker 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\winevt 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ti-et 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ta-lk 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ta-in 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\si-lk 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ShellExperiences 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\Sgrm 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ras 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ProximityToast 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\PointOfService 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\osa-Osge-001 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\NDF 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\my-mm 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\Keywords 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\Ipmi 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\InputMethod 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\inetsrv 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\IME 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\icsxml 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ias 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\Hydrogen 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ff-Adlm-SN 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\DriverState 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\downlevel 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\DDFs 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\ContainerSettingsProviders 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\config\TxR 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\config\systemprofile 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\config\RegBack 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\config\Journal 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\Bthprops 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\appraiser 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\AppLocker 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\am-et 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\System 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SKB 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\ShellExperiences 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\ShellComponents 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\security 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\schemas 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\SchCache 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Resources 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\rescache 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Registration 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\PLA 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Performance 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\ModemLogs 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\L2Schemas 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\InputMethod 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\IdentityCRL 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Globalization 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\GameBarPresenceWriter 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Cursors 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Containers 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\Branding 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\ProgramData\USOShared 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Program Files\Windows Security 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Program Files\Windows Portable Devices 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Program Files\ModifiableWindowsApps 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Program Files\Common Files\Services 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2021-05-11 20:30 - 2021-05-11 20:30 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2021-05-11 20:30 - 2021-05-11 20:29 - 000215943 _____ C:\Windows\SysWOW64\dssec.dat 2021-05-11 20:30 - 2021-05-11 20:29 - 000215943 _____ C:\Windows\system32\dssec.dat 2021-05-11 20:30 - 2021-05-11 20:29 - 000020908 _____ C:\Windows\system32\OEMDefaultAssociations.xml 2021-05-11 20:30 - 2021-05-11 20:29 - 000003683 _____ C:\Windows\system32\Drivers\etc\lmhosts.sam 2021-05-11 20:30 - 2021-05-11 20:29 - 000003103 _____ C:\Windows\SysWOW64\mmc.exe.config 2021-05-11 20:30 - 2021-05-11 20:29 - 000003103 _____ C:\Windows\system32\mmc.exe.config 2021-05-11 20:30 - 2021-05-11 20:29 - 000000858 _____ C:\Windows\system32\DefaultQuestions.json 2021-05-11 20:30 - 2021-05-11 20:29 - 000000741 _____ C:\Windows\SysWOW64\NOISE.DAT 2021-05-11 20:30 - 2021-05-11 20:29 - 000000741 _____ C:\Windows\system32\NOISE.DAT 2021-05-11 20:30 - 2021-05-11 20:13 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-05-11 20:30 - 2021-05-11 19:48 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2021-05-11 20:30 - 2021-05-11 19:48 - 000000000 ____D C:\Windows\system32\spool 2021-05-11 20:30 - 2021-05-11 19:47 - 000000000 ____D C:\ProgramData\USOPrivate 2021-05-11 20:30 - 2021-05-11 19:46 - 000000000 ____D C:\Program Files\Windows NT 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ___SD C:\Windows\system32\F12 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ___SD C:\Windows\system32\dsc 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\LiveKernelReports 2021-05-11 20:30 - 2021-05-11 19:44 - 000000000 ____D C:\Windows\IME 2021-05-11 20:30 - 2021-05-11 19:42 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-05-11 20:30 - 2021-05-11 19:42 - 000000000 ____D C:\Program Files\Common Files\System 2021-05-11 20:30 - 2021-05-11 19:42 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-05-11 20:30 - 2021-05-11 19:39 - 000000000 ____D C:\Windows\system32\Drivers\DriverData 2021-05-11 20:29 - 2021-05-14 19:01 - 000000000 ____D C:\Windows\INF 2021-05-11 20:27 - 2021-05-13 23:05 - 094109696 _____ C:\Windows\system32\config\SOFTWARE 2021-05-11 20:27 - 2021-05-13 23:05 - 018087936 _____ C:\Windows\system32\config\SYSTEM 2021-05-11 20:27 - 2021-05-13 23:05 - 000786432 _____ C:\Windows\system32\config\DEFAULT 2021-05-11 20:27 - 2021-05-13 23:05 - 000524288 _____ C:\Windows\system32\config\BBI 2021-05-11 20:27 - 2021-05-13 23:05 - 000131072 _____ C:\Windows\system32\config\SAM 2021-05-11 20:27 - 2021-05-13 23:05 - 000032768 _____ C:\Windows\system32\config\SECURITY 2021-05-11 20:27 - 2021-05-13 23:04 - 000000000 ____D C:\Windows\servicing 2021-05-11 20:27 - 2021-05-13 23:04 - 000000000 ____D C:\Windows\CbsTemp 2021-05-11 20:27 - 2021-05-11 20:34 - 000032768 _____ C:\Windows\system32\config\ELAM 2021-05-11 20:27 - 2021-05-11 20:30 - 000000000 ____D C:\Windows\system32\SMI 2021-05-11 20:26 - 2021-05-11 20:39 - 000000000 ___HD C:\$SysReset 2021-05-11 20:24 - 2021-05-14 18:55 - 000000000 ____D C:\Users\belar\AppData\Roaming\discord 2021-05-11 20:24 - 2021-05-14 18:54 - 000000000 ____D C:\Users\belar\AppData\Local\Discord 2021-05-11 20:24 - 2021-05-13 23:04 - 000000000 ____D C:\Users\belar\AppData\Roaming\Factorio 2021-05-11 20:24 - 2021-05-11 20:24 - 000002236 _____ C:\Users\belar\Desktop\Discord.lnk 2021-05-11 20:24 - 2021-05-11 20:24 - 000000000 ____D C:\Users\belar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2021-05-11 20:24 - 2021-05-11 20:24 - 000000000 ____D C:\Users\belar\AppData\Local\SquirrelTemp 2021-05-11 20:23 - 2021-05-11 20:23 - 070939752 _____ (Discord Inc.) C:\Users\belar\Downloads\DiscordSetup.exe 2021-05-11 20:21 - 2021-05-14 18:54 - 000000000 ____D C:\Program Files (x86)\Steam 2021-05-11 20:21 - 2021-05-11 20:21 - 000001039 _____ C:\Users\Public\Desktop\Steam.lnk 2021-05-11 20:21 - 2021-05-11 20:21 - 000001039 _____ C:\ProgramData\Desktop\Steam.lnk 2021-05-11 20:21 - 2021-05-11 20:21 - 000000000 ____D C:\Users\belar\AppData\Local\Steam 2021-05-11 20:21 - 2021-05-11 20:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2021-05-11 20:20 - 2021-05-14 18:54 - 000000000 ____D C:\ProgramData\Riot Games 2021-05-11 20:20 - 2021-05-11 21:02 - 000000000 ____D C:\Users\belar\AppData\Local\Riot Games 2021-05-11 20:20 - 2021-05-11 20:21 - 000001681 _____ C:\Users\Public\Desktop\League of Legends.lnk 2021-05-11 20:20 - 2021-05-11 20:21 - 000001681 _____ C:\ProgramData\Desktop\League of Legends.lnk 2021-05-11 20:20 - 2021-05-11 20:20 - 000000000 ____D C:\Users\belar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Riot Games 2021-05-11 20:20 - 2021-05-11 20:20 - 000000000 ____D C:\Users\belar\AppData\Local\CEF 2021-05-11 20:20 - 2021-05-11 20:20 - 000000000 ____D C:\Riot Games 2021-05-11 20:20 - 2021-05-11 20:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2021-05-11 20:19 - 2021-05-11 20:19 - 069746200 _____ (Riot Games, Inc.) C:\Users\belar\Downloads\Install League of Legends euw.exe 2021-05-11 20:19 - 2021-05-11 20:19 - 001770744 _____ C:\Users\belar\Downloads\SteamSetup.exe 2021-05-11 20:18 - 2021-05-13 14:50 - 000000000 ____D C:\Users\belar\AppData\Local\HP 2021-05-11 20:18 - 2021-05-11 20:18 - 000000000 ____D C:\Windows\system32\Tasks\Hewlett-Packard 2021-05-11 20:18 - 2021-05-11 20:18 - 000000000 ____D C:\Users\belar\AppData\Roaming\Hewlett-Packard 2021-05-11 20:18 - 2021-05-11 20:18 - 000000000 ____D C:\Users\belar\AppData\Local\Comms 2021-05-11 20:16 - 2021-05-14 18:55 - 000000000 ____D C:\Users\belar\AppData\Roaming\Blitz 2021-05-11 20:16 - 2021-05-11 20:16 - 000002252 _____ C:\Users\belar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk 2021-05-11 20:16 - 2021-05-11 20:16 - 000002244 _____ C:\Users\belar\Desktop\Blitz.lnk 2021-05-11 20:16 - 2021-05-11 20:16 - 000000000 ____D C:\Users\belar\AppData\Local\blitz-updater 2021-05-11 20:15 - 2021-05-11 20:15 - 000000579 _____ C:\Users\Public\Desktop\Origin.lnk 2021-05-11 20:15 - 2021-05-11 20:15 - 000000579 _____ C:\ProgramData\Desktop\Origin.lnk 2021-05-11 20:15 - 2021-05-11 20:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2021-05-11 20:15 - 2021-05-11 20:15 - 000000000 ____D C:\ProgramData\Electronic Arts 2021-05-11 20:14 - 2021-05-14 18:54 - 000000000 ____D C:\Users\belar\AppData\Local\Origin 2021-05-11 20:14 - 2021-05-14 18:54 - 000000000 ____D C:\ProgramData\Origin 2021-05-11 20:14 - 2021-05-11 20:15 - 000000000 ____D C:\Users\belar\AppData\Roaming\Origin 2021-05-11 20:14 - 2021-05-11 20:14 - 000000000 ____D C:\Users\belar\.QtWebEngineProcess 2021-05-11 20:14 - 2021-05-11 20:14 - 000000000 ____D C:\Users\belar\.Origin 2021-05-11 20:12 - 2021-05-11 20:36 - 000000000 ____D C:\Program Files (x86)\ROCCAT 2021-05-11 20:12 - 2021-05-11 20:12 - 000000000 ____D C:\Users\belar\AppData\Roaming\WinRAR 2021-05-11 20:10 - 2021-05-14 18:58 - 000000000 ____D C:\Program Files\CCleaner 2021-05-11 20:10 - 2021-05-11 20:10 - 031412280 _____ (Piriform Software Ltd) C:\Users\belar\Downloads\ccsetup579.exe 2021-05-11 20:10 - 2021-05-11 20:10 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2021-05-11 20:10 - 2021-05-11 20:10 - 000002888 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2021-05-11 20:10 - 2021-05-11 20:10 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk 2021-05-11 20:10 - 2021-05-11 20:10 - 000000870 _____ C:\ProgramData\Desktop\CCleaner.lnk 2021-05-11 20:10 - 2021-05-11 20:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-05-11 20:09 - 2021-05-11 20:09 - 000004460 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1620756557 2021-05-11 20:09 - 2021-05-11 20:09 - 000004228 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1620756554 2021-05-11 20:09 - 2021-05-11 20:09 - 000001416 _____ C:\Users\belar\Desktop\Opera-Browser.lnk 2021-05-11 20:09 - 2021-05-11 20:09 - 000001406 _____ C:\Users\belar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera-Browser.lnk 2021-05-11 20:09 - 2021-05-11 20:09 - 000000000 ____D C:\Users\belar\AppData\Roaming\Opera Software 2021-05-11 20:09 - 2021-05-11 20:09 - 000000000 ____D C:\Users\belar\AppData\Local\Opera Software 2021-05-11 20:08 - 2021-05-11 20:08 - 000001122 _____ C:\Users\Public\Desktop\PDF-XChange Editor.lnk 2021-05-11 20:08 - 2021-05-11 20:08 - 000001122 _____ C:\ProgramData\Desktop\PDF-XChange Editor.lnk 2021-05-11 20:08 - 2021-05-11 20:08 - 000000000 ____D C:\Users\belar\AppData\Roaming\Tracker Software 2021-05-11 20:08 - 2021-05-11 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software 2021-05-11 20:08 - 2021-05-11 20:08 - 000000000 ____D C:\ProgramData\FileOpen 2021-05-11 20:08 - 2021-05-11 20:08 - 000000000 ____D C:\Program Files\Tracker Software 2021-05-11 20:08 - 2021-05-11 20:08 - 000000000 ____D C:\Program Files\Common Files\Tracker Software 2021-05-11 20:08 - 2021-01-14 11:51 - 002044248 _____ (Tracker Software Products (Canada) Ltd.) C:\Windows\system32\pxcpmL.dll 2021-05-11 20:06 - 2021-05-14 18:54 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-05-11 20:06 - 2021-05-11 20:06 - 000001119 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2021-05-11 20:06 - 2021-05-11 20:06 - 000001107 _____ C:\Users\Public\Desktop\TeamViewer.lnk 2021-05-11 20:06 - 2021-05-11 20:06 - 000001107 _____ C:\ProgramData\Desktop\TeamViewer.lnk 2021-05-11 20:06 - 2021-05-11 20:06 - 000000000 ____D C:\Users\belar\AppData\Roaming\TeamViewer 2021-05-11 20:06 - 2021-05-11 20:06 - 000000000 ____D C:\Users\belar\AppData\Local\TeamViewer 2021-05-11 20:05 - 2021-05-11 20:05 - 000000000 ____D C:\Users\belar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-05-11 20:05 - 2021-05-11 20:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-05-11 20:05 - 2021-05-11 20:05 - 000000000 ____D C:\Program Files\WinRAR 2021-05-11 20:03 - 2021-05-11 20:31 - 000000000 ___RD C:\Users\belar\OneDrive 2021-05-11 20:03 - 2021-05-11 20:31 - 000000000 ____D C:\Users\belar\AppData\Roaming\HP 2021-05-11 20:03 - 2021-05-11 20:19 - 000000000 ____D C:\Users\belar\AppData\Local\PlaceholderTileLogoFolder 2021-05-11 20:03 - 2021-05-11 20:03 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-429667387-3557466396-1298814767-1001 2021-05-11 20:03 - 2021-05-11 20:03 - 000000000 ___HD C:\OneDriveTemp 2021-05-11 20:03 - 2021-05-11 20:03 - 000000000 ____D C:\Users\belar\AppData\Local\ExpressVPN 2021-05-11 20:03 - 2021-05-11 20:03 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2021-05-11 20:02 - 2021-05-11 20:18 - 000000000 ____D C:\Users\belar\AppData\Local\Publishers 2021-05-11 20:01 - 2021-05-14 18:58 - 000000000 ____D C:\Windows\system32\Tasks\HP 2021-05-11 20:01 - 2021-05-14 16:51 - 000000000 ____D C:\Users\belar\AppData\Local\D3DSCache 2021-05-11 20:01 - 2021-05-13 18:22 - 000000000 ____D C:\Users\belar\AppData\Roaming\Adobe 2021-05-11 20:01 - 2021-05-11 21:01 - 000000000 ____D C:\Users\belar\AppData\Local\VirtualStore 2021-05-11 20:01 - 2021-05-11 20:30 - 000000000 ____D C:\Users\belar\AppData\Local\ConnectedDevicesPlatform 2021-05-11 20:01 - 2021-05-11 20:01 - 000000000 ___RD C:\Users\belar\3D Objects 2021-05-11 20:01 - 2021-05-11 20:01 - 000000000 ____D C:\Users\belar\AppData\Local\SoundResearch 2021-05-11 19:59 - 2021-05-14 18:54 - 000000000 ____D C:\Users\belar 2021-05-11 19:59 - 2021-05-13 18:22 - 000000000 ____D C:\Users\belar\AppData\Local\Packages 2021-05-11 19:59 - 2021-05-11 20:03 - 000002386 _____ C:\Users\belar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-11 19:59 - 2021-05-11 19:59 - 000000020 ___SH C:\Users\belar\ntuser.ini 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Vorlagen 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Startmenü 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Netzwerkumgebung 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Lokale Einstellungen 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Eigene Dateien 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Druckumgebung 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Documents\Eigene Videos 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Documents\Eigene Musik 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Documents\Eigene Bilder 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\AppData\Local\Verlauf 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\AppData\Local\Anwendungsdaten 2021-05-11 19:59 - 2021-05-11 19:59 - 000000000 _SHDL C:\Users\belar\Anwendungsdaten 2021-05-11 19:59 - 2021-05-11 19:41 - 000000000 ____D C:\Users\belar\AppData\Roaming\WildTangent 2021-05-11 19:50 - 2021-05-14 19:01 - 001722992 _____ C:\Windows\system32\PerfStringBackup.INI 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Public\Documents\Eigene Videos 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Vorlagen 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Startmenü 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Netzwerkumgebung 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Lokale Einstellungen 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Eigene Dateien 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Druckumgebung 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Documents\Eigene Videos 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default\Anwendungsdaten 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\Default User 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Users\All Users 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Programme 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\ProgramData\Vorlagen 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\ProgramData\Startmenü 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\ProgramData\Dokumente 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\ProgramData\Anwendungsdaten 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Program Files\Gemeinsame Dateien 2021-05-11 19:46 - 2021-05-11 19:46 - 000000000 _SHDL C:\Dokumente und Einstellungen 2021-05-11 19:39 - 2021-05-14 18:54 - 000008192 ___SH C:\DumpStack.log.tmp 2021-05-11 19:39 - 2021-05-14 18:54 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-05-11 19:39 - 2021-05-14 18:54 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-05-11 19:39 - 2021-05-14 16:53 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-05-11 19:39 - 2021-05-14 16:53 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2021-05-11 19:39 - 2021-05-14 16:51 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-05-11 19:39 - 2021-05-14 16:46 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-05-11 19:39 - 2021-05-14 16:46 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-05-11 19:39 - 2021-05-14 16:46 - 000002281 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk 2021-05-11 19:39 - 2021-05-14 16:42 - 000541856 _____ C:\Windows\system32\FNTCACHE.DAT 2021-05-11 19:39 - 2021-05-11 19:45 - 000000000 ____D C:\ProgramData\Realtek 2021-05-11 19:39 - 2021-05-11 19:42 - 000000000 ____D C:\ProgramData\HP 2021-05-11 19:39 - 2021-05-11 19:42 - 000000000 ____D C:\Intel 2021-05-11 19:39 - 2021-05-11 19:40 - 000003700 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-05-11 19:39 - 2021-05-11 19:40 - 000003576 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-05-11 19:39 - 2021-05-11 19:39 - 000003228 _____ C:\Windows\system32\Tasks\RtkAudUService64_BG 2021-05-11 19:39 - 2021-05-11 19:39 - 000000000 ____D C:\Windows\system32\Tasks\Intel 2021-05-11 19:39 - 2021-05-11 19:39 - 000000000 ____D C:\Windows\ServiceProfiles 2021-05-11 18:58 - 2021-04-27 23:12 - 000656160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2021-05-11 18:58 - 2021-04-27 23:09 - 007212232 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2021-05-11 18:58 - 2020-10-07 13:34 - 000816368 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll 2021-05-11 18:58 - 2020-10-07 13:32 - 005519600 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2021-05-08 20:48 - 2021-05-08 20:48 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2021-05-08 20:48 - 2021-05-08 20:48 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2021-05-08 20:48 - 2021-05-08 20:48 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2021-05-08 20:48 - 2021-05-08 20:48 - 000044272 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2021-05-06 07:39 - 2021-04-24 03:08 - 000135408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2021-04-22 20:51 - 2021-04-22 20:50 - 000067456 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys 2021-04-14 22:17 - 2021-04-14 22:17 - 000231248 _____ C:\Windows\system32\containerdevicemanagement.dll 2021-04-14 22:10 - 2018-10-16 22:57 - 000131744 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaLPSS2_GPIO2.sys 2021-04-14 22:05 - 2021-03-15 12:28 - 000044984 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvswcfilter.sys ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2021-05-14 19:01 - 2020-12-07 00:37 - 011766248 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\rtwlane.sys 2021-05-14 18:59 - 2020-06-16 07:50 - 000000000 ____D C:\Program Files (x86)\REALTEK 2021-05-14 18:59 - 2020-06-16 07:19 - 000000000 ____D C:\Program Files\HPCommRecovery 2021-05-14 18:58 - 2020-06-16 07:57 - 000000000 ____D C:\Windows\HP 2021-05-14 18:56 - 2020-06-16 07:50 - 000000000 ____D C:\ProgramData\NVIDIA 2021-05-11 20:36 - 2020-06-16 07:19 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2021-05-11 20:19 - 2020-06-16 07:49 - 000000000 ____D C:\ProgramData\Packages 2021-05-11 20:18 - 2020-06-16 07:47 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2021-05-11 20:14 - 2020-06-16 07:48 - 000000000 ____D C:\ProgramData\Package Cache 2021-05-11 20:03 - 2019-04-15 17:39 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-05-11 19:47 - 2020-06-16 07:56 - 000000000 ____D C:\ProgramData\WildTangent 2021-05-11 19:46 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\Tasks_Migrated 2021-05-11 19:44 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2021-05-11 19:44 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\Macromed 2021-05-11 19:42 - 2020-06-16 08:01 - 000000000 ____D C:\ProgramData\McInstTemp0157371592287275 2021-05-11 19:42 - 2020-06-16 07:58 - 000000000 ____D C:\ProgramData\HyperXLighting 2021-05-11 19:42 - 2020-06-16 07:58 - 000000000 ____D C:\Program Files (x86)\Intel 2021-05-11 19:42 - 2020-06-16 07:57 - 000000000 ____D C:\ProgramData\ExpressVPN 2021-05-11 19:42 - 2020-06-16 07:57 - 000000000 ____D C:\Program Files (x86)\WildGames 2021-05-11 19:42 - 2020-06-16 07:57 - 000000000 ____D C:\Program Files (x86)\ExpressVPN 2021-05-11 19:42 - 2020-06-16 07:56 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games 2021-05-11 19:42 - 2020-06-16 07:56 - 000000000 ____D C:\Program Files (x86)\WildTangent Games 2021-05-11 19:42 - 2020-06-16 07:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2021-05-11 19:42 - 2020-06-16 07:49 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-05-11 19:42 - 2020-06-16 07:49 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2021-05-11 19:42 - 2020-06-16 07:48 - 000000000 ____D C:\Program Files\Intel 2021-05-11 19:42 - 2020-06-16 07:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2021-05-11 19:42 - 2020-06-16 07:21 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2021-05-11 19:42 - 2020-06-16 07:20 - 000000000 ____D C:\Program Files\Microsoft Office 15 2021-05-11 19:42 - 2020-06-16 07:20 - 000000000 ____D C:\Program Files\Microsoft Office 2021-05-11 19:42 - 2020-06-16 07:19 - 000000000 ___RD C:\Program Files\Online Services 2021-05-11 19:42 - 2020-06-16 07:19 - 000000000 ___RD C:\Program Files (x86)\Online Services 2021-05-11 19:42 - 2020-06-16 07:18 - 000000000 ____D C:\Program Files (x86)\HP 2021-05-11 19:42 - 2019-12-17 21:06 - 000000000 ___HD C:\hp 2021-05-11 19:42 - 2019-03-19 06:52 - 000000000 ____D C:\Windows\system32\MsDtc 2021-05-11 19:41 - 2020-06-16 07:56 - 000000000 ____D C:\Users\Default\AppData\Roaming\WildTangent 2021-05-11 19:41 - 2020-06-16 07:56 - 000000000 ____D C:\Users\Default\AppData\Local\Packages ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
Themen zu Windows 10: Bluescreen in unregelmäßigen abständen |
administrator, bluescreen, defender, entfernen, geforce, home, internet, microsoft, neu, nvcontainer, nvcontainer.exe, nvidia, ordner, problem, prozesse, realtek, registry, rundll, scan, software, sound, system, system32, treiber, update, updates, windows |