Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:30-04-2016 Ran by SYSTEM on MINWINPC (30-04-2016 19:28:31) Running from C:\WINDOWS\wirus Platform: Microsoft Windows XP (X86) Language: English (United States) Internet Explorer Version 6 Boot Mode: Recovery Default: ControlSet002 [b]ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.[/b] Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [LenovoAutoScrollUtility] => C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe [101440 2011-10-20] (Lenovo Group Limited) HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1044480 2007-12-18] (Analog Devices, Inc.) HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [884736 2007-12-12] (Analog Devices, Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2350392 2012-09-10] (Synaptics Incorporated) HKLM\...\Run: [PWRMGRTR] => rundll32 C:\PROGRA~1\ThinkPad\UTILIT~1\PWRMGRTR.DLL,PwrMgrBkGndMonitor HKLM\...\Run: [TVT Scheduler Proxy] => C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe [1093632 2010-12-09] (Lenovo Group Limited) HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\Av\avgui.exe [3930384 2016-04-06] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k HKLM\...\Run: [LXBXCATS] => rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBXtime.dll,_RunDLLEntry@16 HKLM\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [1667072 2012-02-28] (iSkySoft) HKLM\...\Run: [Lightshot] => C:\Program Files\Skillbrains\lightshot\Lightshot.exe [226560 2014-11-18] () HKLM\...\Run: [AvgUi] => C:\Program Files\AVG\Framework\Common\avguirnx.exe [186640 2016-04-14] (AVG Technologies CZ, s.r.o.) HKLM\...\InprocServer32: [Default-wbemess] <==== ATTENTION HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox] <==== ATTENTION HKLM\...99B7938DA9E4}\LocalServer32: [Default-wmiprvse] <==== ATTENTION HKU\admin\...\Run: [LightShot] => C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Skillbrains\lightshot\Lightshot.exe HKU\admin\...\Run: [HW_OPENEYE_OUC_T-Mobile Internet Manager] => C:\Program Files\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [110592 2009-12-31] (Huawei Technologies Co., Ltd.) SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - No File SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - No File SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - No File SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - No File BootExecute: autocheck autochk * C:\PROGRA~1\AVG\Av\avgrsx.exe /sync /restart GroupPolicyScripts: Restriction <======= ATTENTION GroupPolicyScripts\User: Restriction <======= ATTENTION ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AVGIDSAgent; C:\Program Files\AVG\Av\avgidsagent.exe [3993088 2016-04-06] (AVG Technologies CZ, s.r.o.) S2 avgsvc; C:\Program Files\AVG\Framework\Common\avgsvcx.exe [886032 2016-04-14] (AVG Technologies CZ, s.r.o.) S2 avgwd; C:\Program Files\AVG\Av\avgwdsvcx.exe [593880 2016-04-06] (AVG Technologies CZ, s.r.o.) S2 EaseUS Agent; C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe [36904 2015-12-09] (CHENGDU YIWO Tech Development Co., Ltd) S2 EMP_NSWLSV; C:\Program Files\EPSON Projector\EMP NS Connection V2\EMP_NSWLSV.exe [98304 2008-05-09] (SEIKO EPSON CORPORATION) S2 FileOpenManagerService; C:\Program Files\FileOpen\Services\FileOpenManagerService32.exe [213432 2012-11-07] (FileOpen Systems Inc.) S2 FirebirdGuardianDefaultInstance; C:\Program Files\Firebird\Firebird_1_5\bin\fbguard.exe [65536 2007-01-30] (The Firebird Project) S3 FirebirdServerDefaultInstance; C:\Program Files\Firebird\Firebird_1_5\bin\fbserver.exe [1527893 2007-01-30] (The Firebird Project) S2 HWDeviceService.exe; C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\HWDeviceService.exe [276048 2013-02-05] () S2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2013-12-18] (Oracle Corporation) S2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [101736 2011-07-12] (Lenovo Group Limited) S3 lxbx_device; C:\WINDOWS\system32\lxbxcoms.exe [462848 2005-01-06] (Lexmark International, Inc.) S4 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-17] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-17] (Malwarebytes Corporation) S3 NFService; C:\Program Files\Fastream IQ Web FTP Server Engine\IQWebFTPServerEngine.exe [3221504 2008-10-13] (Fastream Technologies) S2 Power Manager DBC Service; C:\Program Files\ThinkPad\Utilities\PWMDBSVC.EXE [1645568 2012-09-23] () S2 PwmEWSvc; C:\Program Files\ThinkPad\Utilities\PWMEWSVC.EXE [1664064 2012-09-23] (Lenovo Group Limited) S2 ReflectService.exe; C:\Program Files\Macrium\Reflect\ReflectService.exe [2613200 2015-10-12] (Paramount Software UK Ltd) S2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [131432 2011-07-12] (Lenovo Group Limited) S2 TVT Backup Protection Service; C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe [1118208 2010-12-09] () S2 TVT Scheduler; C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe [1171456 2010-12-09] (Lenovo Group Limited) S3 wampapache; c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe [22016 2013-06-23] (Apache Software Foundation) S3 wampmysqld; c:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe [10923520 2013-06-23] () S2 Apache2.2; "C:\xampp\apache\bin\httpd.exe" -k runservice [X] S3 rpcapd; "%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini" [X] ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S1 Amfilter; C:\Windows\System32\DRIVERS\Amfilter.sys [8704 2007-01-24] (A4Tech Co.,Ltd.) S3 Amusbprt; C:\Windows\System32\DRIVERS\Amusbprt.sys [14336 2007-03-13] (A4Tech Co.,Ltd.) S1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [134944 2016-02-16] (AVG Technologies CZ, s.r.o.) S1 AVGIDSDriverl; C:\Windows\System32\DRIVERS\avgidsdriverlx.sys [235808 2016-03-07] (AVG Technologies CZ, s.r.o.) S0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [207792 2016-01-26] (AVG Technologies CZ, s.r.o.) S1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [31664 2015-11-19] (AVG Technologies CZ, s.r.o.) S1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [229296 2015-10-21] (AVG Technologies CZ, s.r.o.) S0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [287008 2016-02-16] (AVG Technologies CZ, s.r.o.) S0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [189216 2016-03-07] (AVG Technologies CZ, s.r.o.) S0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [37296 2015-12-04] (AVG Technologies CZ, s.r.o.) S1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [231856 2015-10-07] (AVG Technologies CZ, s.r.o.) S1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [37664 2013-11-10] (AVG Technologies) S0 Avgunivx; C:\Windows\System32\DRIVERS\avgunivx.sys [61216 2016-03-08] (AVG Technologies CZ, s.r.o.) S3 btaudio; C:\Windows\System32\drivers\btaudio.sys [533152 2009-09-18] (Broadcom Corporation.) S3 BTDriver; C:\Windows\System32\DRIVERS\btport.sys [37160 2008-02-04] (Broadcom Corporation.) S3 BTKRNL; C:\Windows\System32\DRIVERS\btkrnl.sys [993576 2010-09-23] (Broadcom Corporation.) S3 BTWDNDIS; C:\Windows\System32\DRIVERS\btwdndis.sys [156816 2008-07-24] (Broadcom Corporation.) S3 btwmodem; C:\Windows\System32\DRIVERS\btwmodem.sys [37032 2008-02-04] (Broadcom Corporation.) S3 BTWUSB; C:\Windows\System32\Drivers\btwusb.sys [51752 2010-09-16] (Broadcom Corporation.) S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) S3 dfmirage; C:\Windows\System32\DRIVERS\dfmirage.sys [31896 2011-11-16] (DemoForge, LLC) S3 EboardTouch; C:\Windows\System32\DRIVERS\eboard_touch.sys [16128 2011-06-15] (e@Board) S1 EMP_MAP; C:\Windows\System32\DRIVERS\EMP_Map.sys [6400 2008-04-08] () S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [13896 2013-03-07] () S0 EUBAKUP; C:\Windows\System32\drivers\eubakup.sys [52008 2015-12-09] (CHENGDU YIWO Tech Development Co., Ltd) S0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [40744 2015-12-09] () S1 EUDSKACS; C:\WINDOWS\system32\drivers\eudskacs.sys [14888 2015-12-09] (CHENGDU YIWO Tech Development Co., Ltd) S1 EUFDDISK; C:\WINDOWS\system32\drivers\EuFdDisk.sys [188840 2015-12-09] (CHENGDU YIWO Tech Development Co., Ltd) S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [9160 2013-03-07] () S3 filtertdidriver; C:\Windows\System32\drivers\ewfiltertdidriver.sys [7552 2009-02-27] (Huawei Technologies Co., Ltd.) S3 HSFHWAZL; C:\Windows\System32\DRIVERS\HSFHWAZL.sys [217016 2010-06-02] (Conexant Systems, Inc.) S3 HSF_DPV; C:\Windows\System32\DRIVERS\HSF_DPV.sys [993464 2010-06-02] (Conexant Systems, Inc.) S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [101248 2013-03-04] (Huawei Technologies Co., Ltd.) S3 huawei_cdcecm; C:\Windows\System32\DRIVERS\ew_jucdcecm.sys [70528 2013-03-04] (Huawei Technologies Co., Ltd.) S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [27776 2013-03-04] (Huawei Technologies Co., Ltd.) S3 k750bus; C:\Windows\System32\DRIVERS\k750bus.sys [55216 2005-07-07] (MCCI) S3 k750mdfl; C:\Windows\System32\DRIVERS\k750mdfl.sys [6576 2005-07-07] (MCCI) S3 k750mdm; C:\Windows\System32\DRIVERS\k750mdm.sys [89872 2005-07-07] (MCCI) S3 k750mgmt; C:\Windows\System32\DRIVERS\k750mgmt.sys [81728 2005-07-07] (MCCI) S3 k750obex; C:\Windows\System32\DRIVERS\k750obex.sys [79488 2005-07-07] (MCCI) S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [23256 2015-06-17] (Malwarebytes Corporation) S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [98520 2016-01-04] (Malwarebytes Corporation) S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) S3 Ndisprot; C:\Windows\System32\DRIVERS\EP_NSWD.sys [19584 2008-04-08] (Windows (R) 2000 DDK provider) S3 NETwLx32; C:\Windows\System32\DRIVERS\NETwLx32.sys [6609920 2010-10-06] (Intel Corporation) S2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-02-28] (Riverbed Technology, Inc.) S2 NwlnkIpx; C:\Windows\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-13] (Microsoft Corporation) S2 NwlnkNb; C:\Windows\System32\DRIVERS\nwlnknb.sys [63232 2006-03-02] (Microsoft Corporation) S2 NwlnkSpx; C:\Windows\System32\DRIVERS\nwlnkspx.sys [55936 2006-03-02] (Microsoft Corporation) S2 pmem; C:\WINDOWS\System32\drivers\pmemnt.sys [7012 2012-10-31] (Microsoft Corporation) S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [156048 2015-10-12] (Windows (R) Win 7 DDK provider) S0 pssnap; C:\Windows\System32\DRIVERS\pssnap.sys [16016 2015-10-12] (Windows (R) Win 7 DDK provider) S0 sfdrv01a; C:\Windows\System32\drivers\sfdrv01a.sys [63352 2006-07-05] (Protection Technology (StarForce)) S0 sfsync04; C:\Windows\System32\drivers\sfsync04.sys [59776 2006-08-11] (Protection Technology (StarForce)) S0 sptd; C:\Windows\System32\Drivers\sptd.sys [466008 2012-11-09] (Duplex Secure Ltd.) S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [35288 2013-08-22] (The OpenVPN Project) S1 TPHKDRV; C:\Windows\System32\DRIVERS\TPHKDRV.sys [17844 2008-05-12] (Lenovo Group Limited) S1 TPPWRIF; C:\Windows\System32\drivers\Tppwrif.sys [13936 2012-09-23] (Lenovo Group Limited) S3 vdisp; C:\Windows\System32\DRIVERS\EMP_Vd1.sys [7680 2008-04-08] (Windows (R) 2000 DDK provider) S3 VNUSB; C:\Windows\System32\DRIVERS\VNUSB.sys [38496 2006-04-07] (OLYMPUS IMAGING CORP.) S3 WsAudio_DeviceS(1); C:\Windows\System32\drivers\WsAudio_DeviceS(1).sys [25704 2011-12-09] (Wondershare) S3 WsAudio_DeviceS(2); C:\Windows\System32\drivers\WsAudio_DeviceS(2).sys [25704 2011-12-09] (Wondershare) S3 WsAudio_DeviceS(3); C:\Windows\System32\drivers\WsAudio_DeviceS(3).sys [25704 2011-12-09] (Wondershare) S3 WsAudio_DeviceS(4); C:\Windows\System32\drivers\WsAudio_DeviceS(4).sys [25704 2011-12-09] (Wondershare) S3 WsAudio_DeviceS(5); C:\Windows\System32\drivers\WsAudio_DeviceS(5).sys [25704 2011-12-09] (Wondershare) S0 BMLoad; system32\drivers\BMLoad.sys [X] S3 DfSdkS; no ImagePath S5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [249600 2013-01-22] (Huawei Technologies Co., Ltd.) S4 IntelIde; no ImagePath S5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) S5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-04-30 19:20 - 2016-04-30 19:21 - 00000000 ____D C:\FRST 2016-04-30 08:41 - 2016-04-30 19:20 - 00000000 ____D C:\Windows\wirus 2016-04-28 00:52 - 2016-04-29 13:35 - 00001007 _____ C:\Documents and Settings\admin\Desktop\SpyHunter.lnk 2016-04-28 00:52 - 2016-04-28 00:52 - 00000000 ____D C:\Windows\LastGood.Tmp 2016-04-28 00:52 - 2016-04-28 00:52 - 00000000 ____D C:\sh4ldr 2016-04-28 00:50 - 2016-04-28 00:50 - 00019984 _____ C:\Windows\System32\Drivers\EsgScanner.sys 2016-04-28 00:50 - 2016-04-28 00:50 - 00000000 ____D C:\Program Files\Enigma Software Group ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2016-04-29 13:00 - 2015-01-12 11:02 - 00298790 _____ C:\Windows\ntbtlog.txt 2016-04-29 00:10 - 2012-10-31 04:06 - 19660800 _____ C:\Windows\System32\config\systemold 2016-04-28 11:13 - 2012-10-31 04:00 - 00000000 ___HD C:\Windows\inf 2016-04-28 10:59 - 2006-03-02 04:00 - 00002206 _____ C:\Windows\System32\wpa.dbl 2016-04-28 08:11 - 2013-04-15 23:42 - 00004608 _____ C:\autozapis_.pf+ 2016-04-28 00:53 - 2012-10-31 03:28 - 00000000 __RHD C:\Documents and Settings\admin\Dane aplikacji 2016-04-28 00:31 - 2012-10-31 03:28 - 00000000 ____D C:\Documents and Settings\admin\Pulpit 2016-04-27 20:03 - 2012-10-31 03:27 - 00032420 _____ C:\Windows\SchedLgU.Txt 2016-04-27 14:21 - 2016-01-10 10:56 - 00000664 _____ C:\Windows\System32\d3d9caps.dat 2016-04-26 21:41 - 2013-03-20 10:18 - 00000000 ____D C:\Program Files\Opera 2016-04-21 23:53 - 2013-11-29 04:14 - 00000000 ____D C:\Program Files\Lx_cats 2016-04-20 11:14 - 2012-10-31 03:28 - 00000188 ___SH C:\Documents and Settings\admin\ntuser.ini 2016-04-20 10:34 - 2012-11-12 05:02 - 00010856 _____ C:\Windows\ModemLog_HUAWEI Mobile Connect - 3G Modem.txt 2016-04-19 03:26 - 2012-11-01 11:18 - 00131072 _____ C:\Windows\System32\config\OAlerts.evt 2016-04-17 21:29 - 2012-10-31 04:08 - 00567096 _____ C:\Windows\System32\FNTCACHE.DAT 2016-04-17 21:22 - 2012-10-31 04:09 - 01254796 _____ C:\Windows\System32\PerfStringBackup.INI 2016-04-17 21:22 - 2006-03-02 04:00 - 00555410 _____ C:\Windows\System32\perfh015.dat 2016-04-17 21:22 - 2006-03-02 04:00 - 00105058 _____ C:\Windows\System32\perfc015.dat 2016-04-17 11:39 - 2012-11-01 11:05 - 00000421 _____ C:\Windows\ODBC.INI 2016-04-13 17:15 - 2013-07-23 12:16 - 00000000 ____D C:\Windows\System32\MRT 2016-04-13 17:03 - 2012-11-02 09:12 - 132539272 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2016-04-07 18:03 - 2014-10-04 07:19 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2016-04-07 18:03 - 2014-10-04 07:19 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl ==================== Known DLLs (Whitelisted) ========================= ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe [2006-03-02 04:00] - [2008-04-14 13:51] - 1035264 ____A (Microsoft Corporation) C791ED9EAC5E76D9525E157B1D7A599A C:\Windows\System32\winlogon.exe [2006-03-02 04:00] - [2008-04-14 13:51] - 0510464 ____A (Microsoft Corporation) 51FD2E13D723857B9CA239AE77150F48 C:\Windows\System32\svchost.exe [2006-03-02 04:00] - [2008-04-14 13:51] - 0014336 ____A (Microsoft Corporation) 8607D35D92528E2DF386F19A960D23CE C:\Windows\System32\services.exe [2006-03-02 04:00] - [2009-02-09 03:25] - 0111104 ____A (Microsoft Corporation) 02A467E27AF55F7064C5B251E587315F C:\Windows\System32\User32.dll [2006-03-02 04:00] - [2008-04-14 13:50] - 0580096 ____A (Microsoft Corporation) A435C5C069AFD901751AC323AD238793 C:\Windows\System32\userinit.exe [2006-03-02 04:00] - [2008-04-14 13:51] - 0026624 ____A (Microsoft Corporation) 2A5B37D520508BE6570A3EA79695F5B5 C:\Windows\System32\rpcss.dll [2006-03-02 04:00] - [2009-02-09 02:53] - 0401408 ____A (Microsoft Corporation) A37311D9D628C1042A2836731787F0F3 C:\Windows\System32\dnsapi.dll [2006-03-02 04:00] - [2011-03-02 22:55] - 0149504 ____A (Microsoft Corporation) 6599CFCB40329C37282E4E80E813E799 C:\Windows\System32\Drivers\volsnap.sys [2006-03-02 04:00] - [2008-04-14 12:31] - 0052864 ____A (Microsoft Corporation) 56B191AC5FC0DF219949C95A6C87AFE7 ==================== EXE Association (Whitelisted) ============= ==================== Restore Points (XP) ===================== ==================== Memory info =========================== Percentage of memory in use: 19% Total physical RAM: 2005.69 MB Available physical RAM: 1624.09 MB Total Virtual: 1821.81 MB Available Virtual: 1683.53 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:78.13 GB) (Free:11.69 GB) NTFS ==>[drive with boot components (Windows XP)] Drive d: (Nowy) (Fixed) (Total:78.13 GB) (Free:2.3 GB) NTFS Drive e: (Nowy) (Fixed) (Total:76.63 GB) (Free:11.89 GB) NTFS Drive f: (2007.11.03_2329) (CDROM) (Total:0.12 GB) (Free:0 GB) UDF Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: A23BA23B) Partition 1: (Active) - (Size=78.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=78.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=76.6 GB) - (Type=07 NTFS) ==================== End of FRST.txt ============================