Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-08-2017 Ran by Bart (18-08-2017 17:46:37) Running from C:\Users\Bart\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2012-11-29 18:47:26) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4238196658-422620013-1050771535-500 - Administrator - Disabled) Bart (S-1-5-21-4238196658-422620013-1050771535-1000 - Administrator - Enabled) => C:\Users\Bart Guest (S-1-5-21-4238196658-422620013-1050771535-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4238196658-422620013-1050771535-1002 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-4238196658-422620013-1050771535-1000\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.) Adobe Acrobat Reader DC - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AC0F074E4100}) (Version: 17.009.20058 - Adobe Systems Incorporated) Adobe Flash Player 26 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 26.0.0.137 - Adobe Systems Incorporated) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.137 - Adobe Systems Incorporated) ALLMediaServer (HKLM-x32\...\{FE77909E-B782-4554-A92A-4D887CEF0ACC}_is1) (Version: 0.92 - ALLCinema, Inc.) ALLPlayer V5.X (HKLM-x32\...\ALLPlayer_is1) (Version: - ALLCinema Ltd.) AMD Catalyst Install Manager (HKLM\...\{ABFC0970-7FDF-9E49-C049-5D24CB1F150E}) (Version: 8.0.891.0 - Advanced Micro Devices, Inc.) ArtistScope Plugin FX (HKLM-x32\...\ArtistScope Plugin FX) (Version: 4.7.2.1 - ArtistScope) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2303 - AVAST Software) Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.6.0.0 - Canon Inc.) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.2.0 - Canon Inc.) Canon iP2800 series On-screen Manual (HKLM-x32\...\Canon iP2800 series On-screen Manual) (Version: 7.6.1 - Canon Inc.) Canon iP2800 series Printer Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP2800_series) (Version: - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 2.1.0 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 2.1.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.2.0 - Canon Inc.) Coupon Printer for Windows (HKLM-x32\...\Coupon Printer for Windows5.0.0.0) (Version: 5.0.0.0 - Coupons.com Incorporated) Dropbox (HKU\S-1-5-21-4238196658-422620013-1050771535-1000\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.) EnjoyWiFi (HKLM-x32\...\{8948C1BE-92B8-4276-8803-DC71CC78203A}) (Version: - ) FastDataX 1.20 (HKLM-x32\...\FastDataX_is1) (Version: 1.20 - ) Faster Than Light (HKLM-x32\...\Faster Than Light_is1) (Version: - GOG.com) Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden hosts (HKLM-x32\...\hosts) (Version: 1.27.153.7 - Alex) <==== ATTENTION HP Update (HKLM-x32\...\{787D1A33-A97B-4245-87C0-7174609A540C}) (Version: 5.002.005.003 - Hewlett-Packard) K-Lite Codec Pack 9.5.5 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.5.5 - ) LG Mobile Driver (HKLM-x32\...\{3F490D0E-3131-438C-BCF9-7549CB88DF41}) (Version: 4.0.3 - LG Electronics) LG PC Suite (HKLM-x32\...\LG PC Suite) (Version: 5.3.25.20150529 - LG Electronics) LG United Mobile Drivers (HKLM-x32\...\{4DE95ED9-0A29-4C4F-8463-35857CF9BA36}) (Version: 3.14.1 - LG Electronics) Micro Foundation 2 version 1.3 (HKU\S-1-5-21-4238196658-422620013-1050771535-1000\...\{B1E414B9-EBB1-4940-B64B-83D18C2DB853}}_is1) (Version: 1.3 - Micro Foundation 2, Inc.) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Word Viewer 2003 (HKLM-x32\...\{90850415-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NapiProjekt 2.0.0 (build 2151) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Nero OEM (HKLM-x32\...\Nero - Burning Rom!UninstallKey) (Version: - ) Nine version 5.7 (HKLM-x32\...\Nine_is1) (Version: 5.7 - ) Online Application (HKLM-x32\...\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}) (Version: 2.6.0 - Microleaves) Hidden <==== ATTENTION Opera Stable 46.0.2597.57 (HKLM-x32\...\Opera 46.0.2597.57) (Version: 46.0.2597.57 - Opera Software) PC Connectivity Solution (HKLM-x32\...\{E9BC886E-0D8A-4EF5-B793-30DB776C6E2C}) (Version: 8.15.1.0 - Nokia) PIT Format 2015 (HKLM-x32\...\PIT Format 2015_is1) (Version: - Biuro Informatyki Stosowanej FORMAT) Rejestracja użytkownika drukarki Canon iP2800 series (HKLM-x32\...\Rejestracja użytkownika drukarki Canon iP2800 series) (Version: - ‭Canon Inc.) RjlvBUc0gHzE Updater version 1.2.0.4 (HKLM-x32\...\RjlvBUc0gHzE Updater_is1) (Version: 1.2.0.4 - ) SafeFinder (HKLM-x32\...\{A1EB42A2-01F5-49C4-9C02-A9CBBF69929D}) (Version: 1.0.0.0 - Linkury) <==== ATTENTION SafeZone Stable 3.55.2393.609 (HKLM-x32\...\SafeZone 3.55.2393.609) (Version: 3.55.2393.609 - Avast Software) Hidden Save! nett (HKLM-x32\...\{7DD5E91C-3864-77EC-7635-D14910C2A03E}) (Version: 4.3.0.1667 - SaVae nett) <==== ATTENTION SopCast 3.5.0 (HKLM-x32\...\SopCast) (Version: 3.5.0 - www.sopcast.com) Spotify (HKU\S-1-5-21-4238196658-422620013-1050771535-1000\...\Spotify) (Version: 1.0.58.573.g57c9cd87 - Spotify AB) Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden Windows Driver Package - Nokia pccsmcfd (10/12/2007 6.85.4.0) (HKLM\...\BC15EA930074932BB2C4B4493C9FD4EA95087D1A) (Version: 10/12/2007 6.85.4.0 - Nokia) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) WinRAR 5.31 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) YoutubeAdBlock (HKLM-x32\...\E3605470-291B-44EB-8648-745EE356599A) (Version: 2.0.0.297 - Company Inc.) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4238196658-422620013-1050771535-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Bart\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4238196658-422620013-1050771535-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Bart\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4238196658-422620013-1050771535-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Bart\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4238196658-422620013-1050771535-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Bart\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-08-07] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-08-07] (AVAST Software) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-08-07] (AVAST Software) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-08-07] (AVAST Software) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2012-09-28] (Advanced Micro Devices, Inc.) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-08-07] (AVAST Software) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers1_S-1-5-21-4238196658-422620013-1050771535-1000: [DropboxExt] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Bart\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ContextMenuHandlers4_S-1-5-21-4238196658-422620013-1050771535-1000: [DropboxExt] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Bart\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ContextMenuHandlers5_S-1-5-21-4238196658-422620013-1050771535-1000: [DropboxExt] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Bart\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-11] (Dropbox, Inc.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {40E5D280-E2A1-47CB-A2B8-F454C9C3D857} - System32\Tasks\Opera scheduled Autoupdate 1502120691 => C:\Program Files\Opera\launcher.exe [2017-07-18] (Opera Software) Task: {5A533448-197A-452B-855A-B45A9D814314} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv => C:\Windows\TEMP\{4E423159-21E8-43C9-97A5-723E542E003C}.exe <==== ATTENTION Task: {8D8B060E-9918-492A-AE67-0926918720AD} - System32\Tasks\Online Application V2G1 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-02-07] (Microleaves LTD) Task: {94AED5D7-150D-4F77-9F7A-D9A9C19747A0} - System32\Tasks\Online Application V2G2 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-02-07] (Microleaves LTD) Task: {B7331C91-B527-494E-B4FB-EC3D092BC38A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-08-07] (Adobe Systems Incorporated) Task: {C9D79802-63D4-4A08-BE04-97C902D53DCD} - System32\Tasks\Updater_Online_Application => C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe [2017-04-18] (Microleaves) Task: {CC0E8AEB-BD1E-46C0-A37D-454A05DBF823} - System32\Tasks\SafeZone scheduled Autoupdate 1502107448 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-06-13] (Avast Software) Task: {E693DC6B-53FE-405B-8471-025C5B293491} - System32\Tasks\YourFile DownloaderUpdate => C:\Program Files (x86)\YourFileDownloader\YourFileUpdater.exe <==== ATTENTION Task: {EB7FC2E3-F7DE-4EE1-9788-3AECDE9C6024} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-08-07] (AVAST Software) Task: {F6B2205E-E379-41B6-915D-8DC9D7F6D7A5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {FDC44851-E1C9-4521-967A-65064778E16A} - System32\Tasks\Online Application V2G3 => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe [2017-02-07] (Microleaves LTD) Task: {FECC5E8A-E5A7-465F-AF14-7C205080B453} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\Windows\TEMP\{CD2B490C-969E-4769-9274-C0802A66C55E}.exe <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\A0EECDFC-B485-47CA-8AE4-6DB2B0B2691F.job => C:\Program Files (x86)\YueAckU\j45lXIS.dll <==== ATTENTION Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_HP_rmv.job => C:\Windows\TEMP\{4E423159-21E8-43C9-97A5-723E542E003C}.exe <==== ATTENTION Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\Windows\TEMP\{CD2B490C-969E-4769-9274-C0802A66C55E}.exe <==== ATTENTION Task: C:\Windows\Tasks\Online Application V2G1.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION Task: C:\Windows\Tasks\Online Application V2G2.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION Task: C:\Windows\Tasks\Online Application V2G3.job => C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe <==== ATTENTION Task: C:\Windows\Tasks\Updater_Online_Application.job => C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe <==== ATTENTION ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2016-01-06 22:38 - 2013-06-28 08:28 - 000084616 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 2017-08-06 18:51 - 2017-08-06 16:10 - 000313344 _____ () C:\Program Files (x86)\RjlvBUc0gHzE Updater\RjlvBUc0gHzE Updater.exe 2017-08-07 13:59 - 2017-08-07 13:59 - 000162032 _____ () c:\Program Files\AVAST Software\Avast\x64\vaarclient.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000831664 _____ () C:\Program Files\AVAST Software\Avast\x64\ffl2.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000276808 _____ () c:\Program Files\AVAST Software\Avast\x64\StreamBack.dll 2017-08-07 17:44 - 2017-07-18 06:18 - 089013336 _____ () C:\Program Files\Opera\46.0.2597.57\opera_browser.dll 2017-08-07 17:44 - 2017-07-18 06:18 - 003930712 _____ () C:\Program Files\Opera\46.0.2597.57\libglesv2.dll 2017-08-07 17:44 - 2017-07-18 06:18 - 000100440 _____ () C:\Program Files\Opera\46.0.2597.57\libegl.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000170224 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000192664 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000224256 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-08-09 17:52 - 2017-08-09 17:52 - 005894008 _____ () C:\Program Files\AVAST Software\Avast\defs\17080802\algo.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000689272 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000231664 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll 2017-08-18 17:35 - 2017-08-18 17:35 - 005895544 _____ () C:\Program Files\AVAST Software\Avast\defs\17081806\algo.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 001065936 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-08-07 13:59 - 2017-08-07 13:59 - 000292920 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2016-02-11 16:25 - 000000826 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4238196658-422620013-1050771535-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Bart\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 82.163.142.8 - 95.211.158.136 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{B3E2C938-6413-4DCB-83A7-319407A7360A}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{D5819C08-5570-4F2A-A88A-EBA60745E4F3}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{1A559202-8B03-4113-84E7-4A39CBB216CF}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe FirewallRules: [{D4F7E2F4-5D1B-4BF3-ACA7-BEE7F893CDF5}] => (Allow) C:\Program Files\Opera x64\pluginwrapper\opera_plugin_wrapper_32.exe FirewallRules: [{BE7516F8-A4AB-4094-92C8-B05CF6368493}] => (Allow) C:\Program Files\Opera x64\opera.exe FirewallRules: [{993E7A07-90E3-45C7-9FD6-A31A1F9A5C07}] => (Allow) C:\Program Files\Opera x64\opera.exe FirewallRules: [TCP Query User{6F5FBA01-FC48-4BFB-AEAF-2A45A4431B51}C:\programdata\battle.net\agent\agent.1040\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.1040\agent.exe FirewallRules: [UDP Query User{1F7EECE3-8FB4-4DFC-A64E-767485EEF361}C:\programdata\battle.net\agent\agent.1040\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.1040\agent.exe FirewallRules: [{B844FA73-6C57-44EE-B6E4-4AF6987B2551}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe FirewallRules: [{A03E908F-565F-4332-9539-2286DA50F53F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe FirewallRules: [{B88DBEA5-C75D-465E-9653-C11904EB5987}] => (Allow) C:\Program Files\Vuze\Azureus.exe FirewallRules: [{B412AF2A-6991-4C6A-89F1-8213119BDFA2}] => (Allow) C:\Program Files\Vuze\Azureus.exe FirewallRules: [{1B6B6470-6EFD-4FA3-B3D4-D40E007C1F59}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{1DBEC8D4-069A-41D5-9D70-BD9CAC49EEF9}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{4FDE58BD-8427-428A-99E0-F7994B63025E}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{D8704872-5A5E-435A-8A9E-26638BFF312B}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [TCP Query User{93DBE2D8-F89E-416E-8A45-EE70FBF74128}D:\program files (x86)\starcraft ii\versions\base23260\sc2.exe] => (Allow) D:\program files (x86)\starcraft ii\versions\base23260\sc2.exe FirewallRules: [UDP Query User{52C05EAB-5A3F-4083-B240-CC995BC3504D}D:\program files (x86)\starcraft ii\versions\base23260\sc2.exe] => (Allow) D:\program files (x86)\starcraft ii\versions\base23260\sc2.exe FirewallRules: [TCP Query User{91481903-25BA-4C8A-B02C-EC72D5E863EE}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [UDP Query User{8BBBC527-8BA7-4378-90DD-4E5CCBC0ED1E}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [{813158F0-2209-46EB-921D-4F2CEC4A93C3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe FirewallRules: [{9313DA30-F9D7-42CF-AC04-E99065C4B15E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe FirewallRules: [{D9C037D2-3D63-4D00-86FC-5F96CFE0893E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe FirewallRules: [{AB08C4FD-DB6C-4A09-9F63-3460530C57FF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe FirewallRules: [TCP Query User{3BA70E71-81E9-43A5-8053-5377339E7420}D:\program files (x86)\starcraft ii\versions\base24944\sc2.exe] => (Allow) D:\program files (x86)\starcraft ii\versions\base24944\sc2.exe FirewallRules: [UDP Query User{8FD65EAD-1038-4EC0-B31A-510AC2DF5C64}D:\program files (x86)\starcraft ii\versions\base24944\sc2.exe] => (Allow) D:\program files (x86)\starcraft ii\versions\base24944\sc2.exe FirewallRules: [{D060313B-D331-49AD-8884-FA67754D42F6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe FirewallRules: [{3204DAC4-4477-45DC-BABC-A519DC29C210}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe FirewallRules: [TCP Query User{914CE817-8275-4A6F-8A46-279316713465}D:\program files (x86)\starcraft ii\versions\base26490\sc2.exe] => (Block) D:\program files (x86)\starcraft ii\versions\base26490\sc2.exe FirewallRules: [UDP Query User{2E4A7922-4751-40B4-BB83-F1294B1702E3}D:\program files (x86)\starcraft ii\versions\base26490\sc2.exe] => (Block) D:\program files (x86)\starcraft ii\versions\base26490\sc2.exe FirewallRules: [{18F395D6-7B43-49B9-8A30-74A3ABB07152}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe FirewallRules: [{0EB7807E-E009-4F2A-839F-D1A8B0AAB507}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe FirewallRules: [{22D70CA2-27C2-4C0A-87AE-538151C63002}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFile.exe FirewallRules: [{900706BB-45E6-4F34-9DA2-48DA9513647E}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFile.exe FirewallRules: [{51C8262E-D94B-4C68-AB7B-F3B8EFE66A4D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{D5B2E4AA-FD86-4348-A203-EB7693667960}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{937C8647-5BCA-48FE-88E7-00860E2A8745}] => (Allow) C:\Users\Bart\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{8E663B91-3E86-4351-A8D2-A5C7ABADFA62}] => (Allow) C:\Users\Bart\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{CDC7E2C2-A873-48A0-96B8-F63C538E5EA3}C:\users\bart\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\bart\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{E4595BF0-B1B0-4F57-9D15-01F51E1EB440}C:\users\bart\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\bart\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{2CFF8497-3DEA-44F8-AA21-AF1321F9F183}C:\users\bart\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\bart\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{B08945FB-DA11-4533-B4DE-32DA468C4731}C:\users\bart\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\bart\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{04C5EA42-2FFD-4318-AC37-2AF889231B35}C:\program files (x86)\sopcast\sopcast.exe] => (Block) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [UDP Query User{6849D9DD-F31A-4BC8-B186-724471C6EE86}C:\program files (x86)\sopcast\sopcast.exe] => (Block) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [{3F18C8FB-6365-4D88-A898-B063ECE64AD0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{CC17A5AA-739C-4F49-9D3F-D8C3BB675776}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe FirewallRules: [{B3163C16-F130-46CA-95C2-13A805027C79}] => (Allow) C:\Program Files\Opera\46.0.2597.57\opera.exe ==================== Restore Points ========================= 07-08-2017 13:10:57 Scheduled Checkpoint 09-08-2017 18:00:38 Windows Update ==================== Faulty Device Manager Devices ============= Name: Ethernet Controller Description: Ethernet Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: PCI Simple Communications Controller Description: PCI Simple Communications Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Base System Device Description: Base System Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Base System Device Description: Base System Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft Teredo Tunneling Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Base System Device Description: Base System Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/18/2017 05:33:52 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/18/2017 05:33:06 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Error: (08/09/2017 05:53:29 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Windows cannot access the file for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program svchost.exe because of this error. Program: svchost.exe File: The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: 0040A4D8 Disk type: 0 Error: (08/09/2017 05:53:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe, version: 0.0.0.0, time stamp: 0x00000000 Faulting module name: svchost.exe, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc000001d Fault offset: 0x000000000000a4d8 Faulting process id: 0x10f4 Faulting application start time: 0x01d311275c88cafd Faulting application path: C:\Users\Bart\AppData\Roaming\svchost store files\svchost.exe Faulting module path: C:\Users\Bart\AppData\Roaming\svchost store files\svchost.exe Report Id: e2861999-7d1a-11e7-a74b-8d2c56236c92 Error: (08/09/2017 05:53:28 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Windows cannot access the file for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program svchost.exe because of this error. Program: svchost.exe File: The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: 0040A4D8 Disk type: 0 Error: (08/09/2017 05:53:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: svchost.exe, version: 0.0.0.0, time stamp: 0x00000000 Faulting module name: svchost.exe, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc000001d Fault offset: 0x000000000000a4d8 Faulting process id: 0x1224 Faulting application start time: 0x01d311279fbebb42 Faulting application path: C:\Users\Bart\AppData\Roaming\svchost store files\svchost.exe Faulting module path: C:\Users\Bart\AppData\Roaming\svchost store files\svchost.exe Report Id: e264c655-7d1a-11e7-a74b-8d2c56236c92 Error: (08/09/2017 05:50:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/07/2017 05:46:41 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Error: (08/07/2017 05:45:17 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. Error: (08/07/2017 05:45:14 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Program Files (x86)\LG Electronics\LG PC Suite\LGPCSuite.exe".Error in manifest or policy file "" on line . A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d.manifest. Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757.manifest. System errors: ============= Error: (08/18/2017 05:32:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Hotfresh service failed to start due to the following error: The system cannot find the file specified. Error: (08/16/2017 04:03:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Hotfresh service failed to start due to the following error: The system cannot find the file specified. Error: (08/16/2017 04:03:25 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 18:10:50 on ‎2017-‎08-‎09 was unexpected. Error: (08/09/2017 05:53:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Avast Antivirus service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service. Error: (08/09/2017 05:50:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Hotfresh service failed to start due to the following error: The system cannot find the file specified. Error: (08/07/2017 04:36:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Hotfresh service failed to start due to the following error: The system cannot find the file specified. Error: (08/07/2017 02:16:07 PM) (Source: atapi) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Ide\IdePort0. Error: (08/07/2017 02:16:07 PM) (Source: atapi) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Ide\IdePort0. Error: (08/07/2017 02:16:07 PM) (Source: atapi) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Ide\IdePort0. Error: (08/07/2017 02:16:07 PM) (Source: atapi) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Ide\IdePort0. CodeIntegrity: =================================== Date: 2016-09-06 07:59:51.069 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-06 07:59:50.928 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-05 04:36:10.303 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-05 04:36:10.178 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-03 13:44:48.404 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-03 13:44:48.279 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-08-31 23:20:13.813 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-08-31 23:20:13.579 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-08-30 04:34:42.395 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-08-30 04:34:42.270 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3 CPU M 350 @ 2.27GHz Percentage of memory in use: 55% Total physical RAM: 3948.54 MB Available physical RAM: 1737.52 MB Total Virtual: 7895.27 MB Available Virtual: 5688.22 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:116.44 GB) (Free:28.6 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: (DATA) (Fixed) (Total:334.67 GB) (Free:121.06 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 76692CA8) Partition 1: (Not Active) - (Size=14.6 GB) - (Type=1C) Partition 2: (Active) - (Size=116.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=334.7 GB) - (Type=OF Extended) ==================== End of Addition.txt ============================