Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-02-2014 01 Ran by SYSTEM on MININT-MDUTMNG on 15-02-2014 21:31:16 Running from F:\ Windows 7 Professional (X64) OS Language: English(US) Internet Explorer Version 11 Boot Mode: Recovery The current controlset is ControlSet001 [b]ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.[/b] The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11860072 2011-06-08] (Realtek Semiconductor) HKLM\...\Run: [XFast LAN] - C:\Program Files\ASRock\XFast LAN\cFosSpeed.exe [1441152 2011-07-04] (cFos Software GmbH) HKLM\...\Run: [THXCfg64] - C:\Windows\system32\THXCfg64.dll [26624 2011-05-13] (Creative Technology Ltd.) HKLM\...\Run: [Kernel and Hardware Abstraction Layer] - C:\Windows\KHALMNPR.EXE [242192 2008-02-28] (Logitech, Inc.) HKLM\...\Run: [VIRTU] - C:\Program Files\Lucidlogix Technologies\VIRTU\VirtuControlPanel.Exe [2593568 2012-04-22] () HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-09] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-09] (NVIDIA Corporation) HKLM-x32\...\Run: [NT Kernel Service] - C:\NTKernel\nt32.exe -rundll32 /SYSTEM32 "C:\Windows\System32\taskmgr.exe" "C:\Program Files\Microsoft\Windows" Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\Artur Machnicki\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 AppInit_DLLs: C:\Windows\system32\appinit_dll.dll,C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-11-23] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\appinit_dll.dll, => C:\Windows\SysWOW64\appinit_dll.dll [411936 2012-04-22] (Lucidlogix Inc.) Startup: C:\Users\Artur Machnicki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Windows.ini.url () ==================== Services (Whitelisted) ================= S2 Ad-Aware Service; C:\Program Files (x86)\Ad-Aware Antivirus\AdAwareService.exe [0 ] (Lavasoft Limited) S2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-12] (Avira Operations GmbH & Co. KG) S2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-19] (Avira Operations GmbH & Co. KG) S2 cFosSpeedS; C:\Program Files\ASRock\XFast LAN\spd.exe [395136 2011-07-04] (cFos Software GmbH) S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-09] (NVIDIA Corporation) S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-09] (NVIDIA Corporation) S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-09-27] () S2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [189248 2012-09-27] () S2 SBAMSvc; C:\Program Files (x86)\Ad-Aware Antivirus\SBAMSvc.exe [0 ] (GFI Software) ==================== Drivers (Whitelisted) ==================== S3 AsrVDrive; C:\Windows\System32\DRIVERS\AsrVDrive.sys [23048 2011-01-26] (ASRock Inc.) S2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-12] (Avira Operations GmbH & Co. KG) S1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-12] (Avira Operations GmbH & Co. KG) S1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG) S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [31808 2012-02-28] (FNet Co., Ltd.) S1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2012-02-28] (FNet Co., Ltd.) S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [39504 2013-04-11] (ThreatTrack Security) S0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-05-28] (GFI Software) S3 Lavasoft Kernexplorer; C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [17152 2012-02-29] () S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-13 19:20 - 2014-02-13 19:20 - 00000835 _____ () C:\ProgramData\load32.vbs 2014-02-12 18:39 - 2014-02-13 19:20 - 00000000 ___HD () C:\NTKernel 2014-02-12 18:38 - 2014-02-12 18:38 - 00476312 _____ () C:\Windows\Minidump\021314-20763-01.dmp 2014-02-12 15:48 - 2014-02-12 15:48 - 00033130 _____ () C:\Users\Artur Machnicki\Desktop\GMER 2.1.19357.txt 2014-02-12 15:38 - 2014-02-12 16:03 - 00001318 _____ () C:\Users\Artur Machnicki\Desktop\New Text Document.txt 2014-02-12 15:02 - 2014-02-12 15:02 - 00066634 _____ () C:\Users\Artur Machnicki\Desktop\Extras.Txt 2014-02-12 15:01 - 2014-02-12 15:01 - 00104990 _____ () C:\Users\Artur Machnicki\Desktop\OTL.Txt 2014-02-12 14:51 - 2014-02-12 14:51 - 00022413 _____ () C:\Users\Artur Machnicki\Desktop\Addition.txt 2014-02-12 14:50 - 2014-02-12 14:51 - 00031069 _____ () C:\Users\Artur Machnicki\Desktop\FRST.txt 2014-02-12 14:48 - 2014-02-15 21:31 - 00000000 ____D () C:\FRST 2014-02-11 17:28 - 2014-02-11 17:29 - 00000049 _____ () C:\Users\Artur Machnicki\AppData\Roaming\mbam.context.scan 2014-02-11 12:26 - 2013-12-21 01:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2014-02-11 12:26 - 2013-12-21 00:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-11 12:25 - 2013-12-31 15:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-11 12:25 - 2013-12-31 15:04 - 00420008 _____ () C:\Windows\System32\locale.nls 2014-02-11 12:25 - 2013-12-05 18:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\System32\msxml3.dll 2014-02-11 12:25 - 2013-12-05 18:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml3r.dll 2014-02-11 12:25 - 2013-12-05 18:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-11 12:25 - 2013-12-05 18:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-11 12:25 - 2013-12-03 18:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\System32\secproc_isv.dll 2014-02-11 12:25 - 2013-12-03 18:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_isv.exe 2014-02-11 12:25 - 2013-12-03 18:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate.exe 2014-02-11 12:25 - 2013-12-03 18:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_ssp.exe 2014-02-11 12:25 - 2013-12-03 18:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_ssp_isv.exe 2014-02-11 12:25 - 2013-12-03 17:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-11 12:25 - 2013-12-03 17:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-11 12:25 - 2013-12-03 17:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-11 12:25 - 2013-12-03 17:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-11 12:24 - 2013-12-24 15:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-11 12:24 - 2013-12-24 14:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll 2014-02-11 12:24 - 2013-12-03 18:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\System32\secproc.dll 2014-02-11 12:24 - 2013-12-03 18:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\System32\secproc_ssp_isv.dll 2014-02-11 12:24 - 2013-12-03 18:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\System32\secproc_ssp.dll 2014-02-11 12:24 - 2013-12-03 18:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\System32\msdrm.dll 2014-02-11 12:24 - 2013-12-03 18:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-11 12:24 - 2013-12-03 18:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-11 12:24 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-11 12:24 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-11 12:24 - 2013-12-03 18:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-11 12:24 - 2013-11-26 00:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-11 12:24 - 2013-11-22 14:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\System32\d2d1.dll 2014-02-10 12:22 - 2014-02-10 12:22 - 00000000 ____D () C:\Users\Artur Machnicki\AppData\Roaming\Winamp 2014-02-09 16:41 - 2014-02-09 16:50 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2014-02-09 16:38 - 2014-02-09 16:38 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-ARTHY-Microsoft-Windows-7-Professional-(64-bit).dat 2014-02-09 16:38 - 2014-02-09 16:38 - 00000000 ____D () C:\RegBackup 2014-02-09 16:34 - 2014-02-09 16:34 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com Windows Repair (All in One) 2014-02-09 16:18 - 2014-02-09 16:19 - 00000000 ____D () C:\ProgramData\TweakBit 2014-02-09 16:12 - 2014-02-09 16:12 - 00000000 ____D () C:\Users\Artur Machnicki\AppData\Local\AviraResume 2014-02-09 12:45 - 2014-02-11 15:54 - 00000000 ____D () C:\Users\Artur Machnicki\Documents\MightAndMagicXLegacy 2014-02-09 12:32 - 2014-02-09 12:44 - 00000000 ____D () C:\Program Files (x86)\Might and Magic X Legacy 2014-02-06 14:51 - 2014-02-07 05:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-06 13:32 - 2014-02-06 13:32 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-03 14:45 - 2014-02-03 14:48 - 57974974 _____ () C:\Users\Artur Machnicki\Downloads\11095.mp4 ==================== One Month Modified Files and Folders ======= 2014-02-15 21:31 - 2014-02-12 14:48 - 00000000 ____D () C:\FRST 2014-02-14 05:24 - 2013-01-15 22:50 - 368732046 _____ () C:\Windows\MEMORY.DMP 2014-02-13 19:21 - 2013-06-29 14:49 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-02-13 19:21 - 2012-02-29 00:05 - 00000000 ____D () C:\Users\Artur Machnicki\My Installs 2014-02-13 19:21 - 2012-02-28 14:49 - 00000000 ____D () C:\Program Files (x86)\XFastUsb 2014-02-13 19:20 - 2014-02-13 19:20 - 00000835 _____ () C:\ProgramData\load32.vbs 2014-02-13 19:20 - 2014-02-12 18:39 - 00000000 ___HD () C:\NTKernel 2014-02-13 19:19 - 2012-02-28 14:21 - 01844696 _____ () C:\Windows\WindowsUpdate.log 2014-02-13 19:19 - 2009-07-13 20:45 - 00033904 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-13 19:19 - 2009-07-13 20:45 - 00033904 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-13 19:14 - 2009-07-13 20:51 - 00125857 _____ () C:\Windows\setupact.log 2014-02-13 19:13 - 2012-02-29 17:53 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-02-12 18:38 - 2014-02-12 18:38 - 00476312 _____ () C:\Windows\Minidump\021314-20763-01.dmp 2014-02-12 18:38 - 2013-01-15 22:50 - 00000000 ____D () C:\Windows\Minidump 2014-02-12 16:03 - 2014-02-12 15:38 - 00001318 _____ () C:\Users\Artur Machnicki\Desktop\New Text Document.txt 2014-02-12 15:48 - 2014-02-12 15:48 - 00033130 _____ () C:\Users\Artur Machnicki\Desktop\GMER 2.1.19357.txt 2014-02-12 15:17 - 2010-11-20 19:47 - 00260984 _____ () C:\Windows\PFRO.log 2014-02-12 15:02 - 2014-02-12 15:02 - 00066634 _____ () C:\Users\Artur Machnicki\Desktop\Extras.Txt 2014-02-12 15:01 - 2014-02-12 15:01 - 00104990 _____ () C:\Users\Artur Machnicki\Desktop\OTL.Txt 2014-02-12 14:51 - 2014-02-12 14:51 - 00022413 _____ () C:\Users\Artur Machnicki\Desktop\Addition.txt 2014-02-12 14:51 - 2014-02-12 14:50 - 00031069 _____ () C:\Users\Artur Machnicki\Desktop\FRST.txt 2014-02-12 14:29 - 2012-02-29 02:18 - 00000000 ____D () C:\Users\Artur Machnicki\AppData\Roaming\foobar2000 2014-02-11 17:29 - 2014-02-11 17:28 - 00000049 _____ () C:\Users\Artur Machnicki\AppData\Roaming\mbam.context.scan 2014-02-11 17:08 - 2012-02-28 14:23 - 00000000 ____D () C:\users\Artur Machnicki 2014-02-11 16:51 - 2012-02-29 06:19 - 00000000 ____D () C:\Users\Artur Machnicki\AppData\Roaming\uTorrent 2014-02-11 16:40 - 2012-02-29 00:11 - 00000000 ___RD () C:\Users\Artur Machnicki\uTorrent 2014-02-11 15:54 - 2014-02-09 12:45 - 00000000 ____D () C:\Users\Artur Machnicki\Documents\MightAndMagicXLegacy 2014-02-11 12:30 - 2013-07-11 01:20 - 00000000 ____D () C:\Windows\System32\MRT 2014-02-11 12:29 - 2012-02-29 14:45 - 88567024 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2014-02-10 12:22 - 2014-02-10 12:22 - 00000000 ____D () C:\Users\Artur Machnicki\AppData\Roaming\Winamp 2014-02-09 17:37 - 2013-10-23 14:36 - 00000000 ____D () C:\Users\Artur Machnicki\Documents\FIFA 14 2014-02-09 17:04 - 2012-05-20 17:48 - 00000000 ____D () C:\ProgramData\Ad-Aware Browsing Protection 2014-02-09 16:53 - 2012-02-28 15:17 - 00109680 _____ () C:\Users\Artur Machnicki\AppData\Local\GDIPFONTCACHEV1.DAT 2014-02-09 16:52 - 2009-07-13 20:45 - 00416296 _____ () C:\Windows\System32\FNTCACHE.DAT 2014-02-09 16:50 - 2014-02-09 16:41 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2014-02-09 16:38 - 2014-02-09 16:38 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-ARTHY-Microsoft-Windows-7-Professional-(64-bit).dat 2014-02-09 16:38 - 2014-02-09 16:38 - 00000000 ____D () C:\RegBackup 2014-02-09 16:34 - 2014-02-09 16:34 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com Windows Repair (All in One) 2014-02-09 16:33 - 2012-03-01 03:57 - 00000000 ___RD () C:\Users\Artur Machnicki\My Games 2014-02-09 16:19 - 2014-02-09 16:18 - 00000000 ____D () C:\ProgramData\TweakBit 2014-02-09 16:12 - 2014-02-09 16:12 - 00000000 ____D () C:\Users\Artur Machnicki\AppData\Local\AviraResume 2014-02-09 15:12 - 2012-04-01 12:20 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-09 12:45 - 2013-09-01 09:35 - 00000000 ____D () C:\ProgramData\Orbit 2014-02-09 12:44 - 2014-02-09 12:32 - 00000000 ____D () C:\Program Files (x86)\Might and Magic X Legacy 2014-02-09 12:32 - 2013-11-25 03:52 - 00000000 ____D () C:\Users\Artur Machnicki\AppData\Local\Game Updater 2014-02-09 12:32 - 2012-02-29 17:53 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-02-09 04:15 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-08 18:00 - 2012-09-13 07:11 - 00000416 _____ () C:\Windows\Tasks\RegAce Scheduled Scan - Artur Machnicki.job 2014-02-07 17:22 - 2012-04-26 02:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-07 05:00 - 2014-02-06 14:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2014-02-06 13:32 - 2014-02-06 13:32 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-06 02:12 - 2012-04-01 12:20 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-06 02:12 - 2012-04-01 12:20 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-06 02:12 - 2012-03-01 17:21 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-03 14:48 - 2014-02-03 14:45 - 57974974 _____ () C:\Users\Artur Machnicki\Downloads\11095.mp4 Files to move or delete: ==================== C:\ProgramData\load32.vbs ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== EXE ASSOCIATION ===================== HKLM\...\.exe: exefile => OK HKLM\...\exefile\DefaultIcon: %1 => OK HKLM\...\exefile\open\command: "%1" %* => OK ==================== Restore Points ========================= Restore point made on: 2014-02-09 16:38:18 Restore point made on: 2014-02-09 16:38:35 Restore point made on: 2014-02-09 17:09:28 Restore point made on: 2014-02-11 12:25:38 Restore point made on: 2014-02-11 14:10:49 Restore point made on: 2014-02-11 17:13:41 Restore point made on: 2014-02-11 17:19:02 Restore point made on: 2014-02-11 17:19:29 Restore point made on: 2014-02-11 17:19:42 Restore point made on: 2014-02-11 17:40:50 Restore point made on: 2014-02-11 17:50:30 Restore point made on: 2014-02-13 04:39:47 ==================== Memory info =========================== Percentage of memory in use: 9% Total physical RAM: 8104.58 MB Available physical RAM: 7297.91 MB Total Pagefile: 8102.73 MB Available Pagefile: 7290.14 MB Total Virtual: 8192 MB Available Virtual: 8191.89 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:675.28 GB) NTFS Drive e: (Repair disc Windows 7 64-bit) (CDROM) (Total:0.16 GB) (Free:0 GB) UDF Drive f: (KINGSTON) (Removable) (Total:29.81 GB) (Free:11.25 GB) FAT32 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 057EE041) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 30 GB) (Disk ID: 31C93DD0) Partition 1: (Active) - (Size=30 GB) - (Type=0B) LastRegBack: 2014-02-08 12:54 ==================== End Of Log ============================