Additional scan result of Farbar Recovery Scan Tool (x64) Version:17-08-2015 Ran by Izabelle (2015-08-17 17:01:37) Running from C:\Users\Izabelle\Desktop Boot Mode: Safe Mode (with Networking) ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-402679288-471734837-658972757-500 - Administrator - Disabled) Guest (S-1-5-21-402679288-471734837-658972757-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-402679288-471734837-658972757-1002 - Limited - Enabled) Izabelle (S-1-5-21-402679288-471734837-658972757-1000 - Administrator - Enabled) => C:\Users\Izabelle ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) @BIOS (HKLM-x32\...\{B2DC3F08-2EB2-49A5-AA24-15DFC8B1CB83}) (Version: 2.12 - GIGABYTE) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.) Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.232 - Adobe Systems Incorporated) Adobe Flash Player Packages (HKU\S-1-5-21-402679288-471734837-658972757-1000\...\Adobe Flash Player Packages) (Version: - ) <==== ATTENTION Adobe Illustrator CS5.1 (HKLM-x32\...\{23767F5D-A80C-4264-B8EA-ED4085FC332A}) (Version: 15.1 - Adobe Systems Incorporated) Adobe Photoshop CS5.1 (HKLM-x32\...\{9158FF30-78D7-40EF-B83E-451AC5334640}) (Version: 12.1 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{9AB0D5B6-4779-8C4F-CA91-A1FEDB56D7EC}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) AnyProtect (HKLM-x32\...\AnyProtect) (Version: 1.0.0.4 - CMI Limited) <==== ATTENTION Apple Application Support (32-bit) (HKLM-x32\...\{447CDCE5-F555-429B-BFA6-642C3C6D684F}) (Version: 3.1.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{0DF7096B-715A-4233-8633-C7A16ED6D616}) (Version: 3.1.2 - Apple Inc.) ASUS WLAN Card Utilities/Driver (HKLM-x32\...\{8F722FA9-B994-4C9B-B292-FD32D6206EDF}) (Version: 4.3.0.6 - ASUS) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Atheros Communications Inc.) AutoGreen B10.1021.1 (HKLM-x32\...\InstallShield_{C75FAD21-EC08-42F3-92D6-C9C0AB355345}) (Version: 1.00.0000 - GIGABYTE) AutoGreen B10.1021.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.00 - Piriform) DES 2.0 (HKLM-x32\...\{675F86A8-E093-4002-87D5-915CC2C45571}) (Version: 1.00.0000 - Gigabyte) EaseUS Partition Master 9.2.1 Home Edition (HKLM-x32\...\EaseUS Partition Master Home Edition_is1) (Version: - EaseUS) Easy Tune 6 B11.0512.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) Easy Tune 6 B11.0512.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden EPSON Artisan 730 Series Printer Uninstall (HKLM\...\EPSON Artisan 730 Series) (Version: - SEIKO EPSON Corporation) Epson Connect (HKLM-x32\...\{64BA551C-9AF6-495C-93F3-D1270E0045FC}) (Version: - ) Epson Customer Participation (HKLM\...\{814FA673-A085-403C-9545-747FC1495069}) (Version: 1.0.0.0 - SEIKO EPSON CORPORATION) Epson Download Navigator (HKLM-x32\...\{10F63395-157F-4B93-AB4D-702A2FF11942}) (Version: 1.0.1 - SEIKO EPSON CORPORATION) Epson Event Manager (HKLM-x32\...\{8ED43F7E-A8F6-4898-AF11-B6158F2EDF94}) (Version: 2.50.0000 - SEIKO EPSON CORPORATION) Epson Print CD (HKLM-x32\...\{D16A31F9-276D-4968-A753-FFEAC56995D0}) (Version: 2.05.00 - SEIKO EPSON CORPORATION) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) Etron USB3.0 Host Controller (HKLM-x32\...\InstallShield_{DFBB738C-71D8-4DC5-B8D2-D65C37680E27}) (Version: 0.98 - Etron Technology) Etron USB3.0 Host Controller (x32 Version: 0.98 - Etron Technology) Hidden Friendly Error (HKLM-x32\...\FriendlyError) (Version: - ) Google Update Helper (x32 Version: 1.2.183.29 - Google Inc.) Hidden HydraVision (x32 Version: 4.2.216.0 - Advanced Micro Devices, Inc.) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2361 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation) iTunes (HKLM\...\{D227565A-0033-40AD-89BA-653A205CDC11}) (Version: 12.1.1.4 - Apple Inc.) Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) marvell 91xx driver (HKLM-x32\...\MagniDriver) (Version: 1.1.0.6 - Marvell) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.163.2 - McAfee, Inc.) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 40.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 40.0.2 (x86 en-US)) (Version: 40.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.2 - Mozilla) Music Manager (HKU\S-1-5-21-402679288-471734837-658972757-1000\...\MusicManager) (Version: - Google, Inc.) ON_OFF Charge B11.0110.1 (HKLM-x32\...\{3DECD372-76A1-4483-BF10-B547790A3261}) (Version: 1.00.0001 - GIGABYTE) OverLook (HKLM-x32\...\F3DF28DD-C5E0-C447-9D42-965CB688FCC9) (Version: 195.0.0.1703 - Korston United) PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden PProiceLess (HKLM-x32\...\{75F9BF4A-AF67-A478-A37B-31D73186D3F3}) (Version: - ) <==== ATTENTION QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Search Protect (HKLM-x32\...\SearchProtect) (Version: 2.23.32.25 - Client Connect LTD) <==== ATTENTION Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) Smart 6 B11.0512.1 (HKLM-x32\...\{3B35725F-C623-4A1E-B5CC-99C0868679E3}) (Version: 1.00.0000 - GIGABYTE) SmartWeb (HKLM-x32\...\SmartWeb) (Version: 8.0.9 - SoftBrain Technologies Ltd.) <==== ATTENTION SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) System NotifierV30.05 (HKLM-x32\...\System NotifierV30.05) (Version: 1.36.01.22 - System NotifierV30.05) <==== ATTENTION VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.) Wacom Tablet (HKLM\...\Wacom Tablet Driver) (Version: 6.3.7-5 - Wacom Technology Corp.) Wajam (HKLM-x32\...\WajaInterEnhancer) (Version: 2.35.2.29 (i2.6) - WajaInterEnhancer) <==== ATTENTION WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WebTablet IE Plugin (HKLM-x32\...\Wacom WebTabletPlugin for IE) (Version: 1.1.0.4 - Wacom Technology Corp.) WebTablet Netscape Plugin (HKLM-x32\...\Wacom WebTabletPlugin for Netscape) (Version: 1.1.0.3 - Wacom Technology Corp.) Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation) WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Wise Care 365 3.72 (HKLM-x32\...\Wise Care 365_is1) (Version: 3.72 - WiseCleaner.com, Inc.) youtubeadblocker (HKLM-x32\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: - ) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-402679288-471734837-658972757-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Izabelle\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay No File CustomCLSID: HKU\S-1-5-21-402679288-471734837-658972757-1000_Classes\CLSID\{092dfa86-5807-5a94-bf3b-5a53ba9e5308}\InprocServer32 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) CustomCLSID: HKU\S-1-5-21-402679288-471734837-658972757-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Izabelle\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-402679288-471734837-658972757-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Izabelle\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-402679288-471734837-658972757-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Izabelle\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-402679288-471734837-658972757-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Izabelle\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll (Google Inc.) ==================== Restore Points ========================= 17-08-2015 03:33:35 Removed Apple Application Support (32-bit) 17-08-2015 03:40:01 Removed Microsoft Silverlight 17-08-2015 06:25:28 Removed Google Drive ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-05-18 15:00 - 2015-08-17 14:03 - 00001271 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com 127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com 127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com 127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com 127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com 127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net 0.0.0.1 mssplus.mcafee.com 0.0.0.1 mssplus.mcafee.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0B0C8B62-1408-4AEC-9CB7-1454E3BEFAE1} - System32\Tasks\Lg5UWCGc => C:\Users\Izabelle\AppData\Roaming\Lg5UWCGc.exe [2015-04-20] () <==== ATTENTION Task: {0D328ECE-901C-4AD8-86BA-2266C2593F13} - System32\Tasks\CMYBlVRDcA0UJZWSjWIMF7Kx9 => C:\Users\Izabelle\AppData\Roaming\CMYBlVRDcA0UJZWSjWIMF7Kx9.exe [2015-04-20] () <==== ATTENTION Task: {0E57593A-F17D-4F1B-9A18-14B48B194264} - System32\Tasks\Superclean => c:\programdata\{7ffc212f-c1bc-4800-7ffc-c212fc1b84bf}\hqghumeaylnlf.exe <==== ATTENTION Task: {14C7C605-53AF-4A99-8612-1E705F035C72} - System32\Tasks\Wise Care 365 => C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe [2015-06-04] (WiseCleaner.com) Task: {172554D0-7FBA-48D4-B003-86B5E0C6990D} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-08-17] (AnyProtect.com) <==== ATTENTION Task: {1D34E38C-88D2-4DC7-9C82-B24E0CEAD7E9} - System32\Tasks\SMW_UpdateTask_Time_323438333437303538332d2355786c325a5b5734412d34 => Wscript.exe //B "C:\ProgramData\SearchModule\smhe.js" smu.exe /invoke /f:check_services /l:0 <==== ATTENTION Task: {1D587F9B-CDA4-4B49-A972-25A08A389ED4} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-08-12] (Adobe Systems Incorporated) Task: {28741700-CDD8-4515-9A67-AFA8D392A118} - System32\Tasks\AppSafe => C:\Program Files (x86)\AppSafe\AppSafe.exe <==== ATTENTION Task: {2F08053D-47F7-4CA0-860E-F316649CCF1D} - System32\Tasks\SMWUpd => C:\Program Files\Common Files\Goobzo\GBUpdate\updater.exe [2015-08-17] (Goobzo) <==== ATTENTION Task: {3F2209A7-BB07-4B06-BCD8-74302B4BD5AE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {49D229CF-3AC6-43DC-9D9D-03B931627315} - System32\Tasks\8a620da3-3138-4f95-a61c-3e490464bccb-10_user => C:\Program Files (x86)\System NotifierV30.05\8a620da3-3138-4f95-a61c-3e490464bccb-10.exe [2015-08-17] (System NotifierV30.05) <==== ATTENTION Task: {4E799DC9-1812-4B19-84BE-DAC05F02429C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402679288-471734837-658972757-1000Core => C:\Users\Izabelle\AppData\Local\Google\Update\GoogleUpdate.exe [2015-03-15] (Google Inc.) Task: {57214553-5905-49F2-B97E-9F19025828BD} - System32\Tasks\LaunchPreSignup => C:\Program Files (x86)\OLBPre\OLBPre.exe <==== ATTENTION Task: {5C5CFB63-8B94-41EE-9DBA-F2AD57494963} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-13] (Microsoft Corporation) Task: {5E80D8F6-9563-4953-BD31-76FD9F023502} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-08-17] (globalUpdate) <==== ATTENTION Task: {61A25E17-7C6A-461D-81DD-345E7BBCC3B2} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {6ED94810-EF31-4C71-A149-CCFC0E0AAE74} - System32\Tasks\avabvbavad => C:\Users\Izabelle\AppData\Local\avabvbavad\avabvbavad.exe [2015-06-03] () <==== ATTENTION Task: {6F2A7647-1653-4F5E-9A1D-CD014CB34741} - System32\Tasks\AppCloudUpdater => C:\Users\Izabelle\AppData\Roaming\APPCLO~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {70289064-BD2F-4C46-827D-80D564199268} - System32\Tasks\Microsoft\Windows\Maintenance\Analytic Tool Updater => %LOCALAPPDATA%\F3DF28DD-C5E0-C447-9D42-965CB688FCC9\Runner.exe <==== ATTENTION Task: {762036E4-FDA6-4894-9C0D-76F147D2A004} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402679288-471734837-658972757-1000UA => C:\Users\Izabelle\AppData\Local\Google\Update\GoogleUpdate.exe [2015-03-15] (Google Inc.) Task: {76F55128-3B77-48AB-9CCE-5FA7369FCB75} - System32\Tasks\8a620da3-3138-4f95-a61c-3e490464bccb-5_user => C:\Program Files (x86)\System NotifierV30.05\8a620da3-3138-4f95-a61c-3e490464bccb-5.exe [2015-08-17] (System NotifierV30.05) <==== ATTENTION Task: {82B086A8-C33F-458F-9159-E978152F6C8B} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-08-17] (AnyProtect.com) <==== ATTENTION Task: {82C6A0A7-0F03-4A8E-A174-F3EB1BB102A5} - System32\Tasks\Fruadlaoamf => C:\ProgramData\Fruadlaoamf\1.0.4.1\igoooiao.exe [2015-08-17] () Task: {8C26C138-9757-4FED-B0AE-4FEB69A44877} - System32\Tasks\bvxvyxvgy => C:\Users\Izabelle\AppData\Local\bvxvyxvgy\bvxvyxvgy.exe [2015-08-09] () <==== ATTENTION Task: {8FB0B5EB-390A-455F-A6E3-383F0588DFB5} - System32\Tasks\Wise Care 365 PC Checkup Task => C:\Program Files (x86)\Wise\Wise Care 365\WiseCare365.exe [2015-06-15] (WiseCleaner.com) Task: {9FDDB5FA-3B42-4436-8DEA-5E46273C4914} - System32\Tasks\Inst_Rep => C:\Users\Izabelle\AppData\Local\Installer\Install_5403\DCytdkietut_tutdk_setup.exe [2015-08-17] () Task: {BB82EFE7-CEA4-49C2-B42D-2442780C7B74} - \SmartWeb Upgrade Trigger Task -> No File <==== ATTENTION Task: {C14D6083-46B4-4692-B09D-4071CAE30424} - System32\Tasks\RichFix => c:\programdata\{f4fc135c-75a5-d663-f4fc-c135c75a4d71}\nsmaab2.tmp.exe [2014-08-17] () <==== ATTENTION Task: {CC92927C-C163-4AFD-8D2B-D2C83771AE54} - System32\Tasks\Crossbrowse => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe <==== ATTENTION Task: {D5B4E388-35F7-489F-95E2-59E7E1C2CA2A} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe [2015-08-17] (globalUpdate) <==== ATTENTION Task: {DC67D09F-EB25-4262-9ED8-35D6C4F3F432} - System32\Tasks\{C2752023-2D57-4A59-9B0D-5470D702DD83} => pcalua.exe -a E:\Thomson.exe -d E:\ Task: {DE8314A3-A18B-4215-B22D-82998E46EE39} - System32\Tasks\Wise Turbo Checker => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2015-05-12] (WiseCleaner.COM) Task: {E489A6E0-9989-4472-8B5A-12F77859B229} - System32\Tasks\r9iImUNV => C:\Users\Izabelle\AppData\Roaming\r9iImUNV.exe [2015-04-20] () <==== ATTENTION Task: {E820208B-44E6-4762-A048-F2EE306D6B28} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe [2015-08-17] (AnyProtect.com) <==== ATTENTION Task: {E820CE6D-4140-4944-B90B-3356AC2AD25B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-03-25] (Piriform Ltd) Task: {EBCA0536-BF81-46EA-8156-913EEF417761} - System32\Tasks\AdobeAAMUpdater-1.0-IzziPics-Izabelle => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-03-30] (Adobe Systems Incorporated) Task: {EBDDF23F-686D-439D-8E3B-F18B4C2C6169} - System32\Tasks\8a620da3-3138-4f95-a61c-3e490464bccb-5 => C:\Program Files (x86)\System NotifierV30.05\8a620da3-3138-4f95-a61c-3e490464bccb-5.exe [2015-08-17] (System NotifierV30.05) <==== ATTENTION Task: {F2FB7322-A117-4DEB-8EB9-7E32A23280C5} - System32\Tasks\Analytic Tool Worker => %LOCALAPPDATA%\F3DF28DD-C5E0-C447-9D42-965CB688FCC9\Runner.exe <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\8a620da3-3138-4f95-a61c-3e490464bccb-10_user.job => C:\Program Files (x86)\System NotifierV30.05\8a620da3-3138-4f95-a61c-3e490464bccb-10.exe <==== ATTENTION Task: C:\Windows\Tasks\8a620da3-3138-4f95-a61c-3e490464bccb-5.job => C:\Program Files (x86)\System NotifierV30.05\8a620da3-3138-4f95-a61c-3e490464bccb-5.exe <==== ATTENTION Task: C:\Windows\Tasks\8a620da3-3138-4f95-a61c-3e490464bccb-5_user.job => C:\Program Files (x86)\System NotifierV30.05\8a620da3-3138-4f95-a61c-3e490464bccb-5.exe <==== ATTENTION Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AppCloudUpdater.job => 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ask: C:\Windows\Tasks\AppSafe.job => C:\Program Files (x86)\AppSafe\AppSafe.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\Windows\Tasks\CMYBlVRDcA0UJZWSjWIMF7Kx9.job => C:\Users\Izabelle\AppData\Roaming\CMYBlVRDcA0UJZWSjWIMF7Kx9.exe <==== ATTENTION Task: C:\Windows\Tasks\Crossbrowse.job => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402679288-471734837-658972757-1000Core.job => C:\Users\Izabelle\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402679288-471734837-658972757-1000UA.job => C:\Users\Izabelle\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Lg5UWCGc.job => C:\Users\Izabelle\AppData\Roaming\Lg5UWCGc.exe <==== ATTENTION Task: C:\Windows\Tasks\r9iImUNV.job => C:\Users\Izabelle\AppData\Roaming\r9iImUNV.exe <==== ATTENTION Task: C:\Windows\Tasks\RichFix.job => c:\programdata\{f4fc135c-75a5-d663-f4fc-c135c75a4d71}\nsmaab2.tmp.exe <==== ATTENTION Task: C:\Windows\Tasks\Superclean.job => c:\programdata\{7ffc212f-c1bc-4800-7ffc-c212fc1b84bf}\hqghumeaylnlf.exe <==== ATTENTION Task: C:\Windows\Tasks\Wise Care 365 PC Checkup Task.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseCare365.exe Task: C:\Windows\Tasks\Wise Care 365.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe Task: C:\Windows\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe ==================== Loaded Modules (Whitelisted) ============== 2015-08-17 12:57 - 2015-08-12 04:45 - 00353608 _____ () C:\Windows\system32\Uiviuuj64.dll 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2010-10-20 15:23 - 2010-10-20 15:23 - 08801632 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:373E1720 AlternateDataStreams: C:\Users\Izabelle\Downloads\Final Draft 9.0.4 Full Crack__3113_il13432(1).exe:typelib ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-402679288-471734837-658972757-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Izabelle\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 52.18.92.32 - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{04CD09BC-A6E8-4085-8E40-E18689F55EB3}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe FirewallRules: [{3C843C41-FD4D-48CE-BF3C-8E772A8D216F}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe FirewallRules: [TCP Query User{2061BFDC-BB4E-441F-B0B3-BB242FC9C088}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe FirewallRules: [UDP Query User{82DA3312-ED71-404C-BFB4-98128E981EFB}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe FirewallRules: [{CD3FAD1F-AD0E-4300-B9EF-D8C60DF73614}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{4D0B93EA-8219-4625-B4C9-650CF400631C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{B91DBA5E-6677-412F-AE95-B2EBA276F7F5}] => (Allow) C:\Users\Izabelle\AppData\Local\TNT2\2.0.0.1995\TNT2User.exe FirewallRules: [{F4D41FF5-368C-4D85-96AD-34D6F036D1AA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CD5CBD64-DDB7-4B73-B0E1-B509EF4588AD}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Faulty Device Manager Devices ============= Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: wsafd_1_10_0_19 Description: wsafd_1_10_0_19 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: wsafd_1_10_0_19 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: wsfd_vt_1_10_0_20 Description: wsfd_vt_1_10_0_20 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: wsfd_vt_1_10_0_20 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft Teredo Tunneling Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: SM Bus Controller Description: SM Bus Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: 5020T Description: 5020T Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/17/2015 04:40:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/17/2015 04:29:47 PM) (Source: WTabletServicePro) (EventID: 1) (User: ) Description: Prefs: Failed to get user path Error: (08/17/2015 04:29:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/17/2015 04:29:39 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: TabletService Error: Could not init tablet driver Error: (08/17/2015 04:29:39 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: Prefs: Failed to open pref stream C:\Windows\system32\config\systemprofile\AppData\Roaming\WTablet\Wacom_Tablet.dat Error: (08/17/2015 04:29:39 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: Prefs: Failed to open pref stream C:\Windows\system32\config\systemprofile\AppData\Roaming\WTablet\Wacom_Tablet.dat Error: (08/17/2015 03:54:31 PM) (Source: MsiInstaller) (EventID: 11316) (User: IzziPics) Description: Product: globalupdate Helper -- Error 1316. The specified account already exists. Error: (08/17/2015 03:52:28 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (6100) WindowsMail0: The backup has been stopped because it was halted by the client or the connection with the client failed. Error: (08/17/2015 03:52:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/17/2015 03:52:21 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: TabletService Error: Could not init tablet driver System errors: ============= Error: (08/17/2015 05:00:29 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 05:00:29 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 05:00:29 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 05:00:09 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 05:00:09 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 05:00:09 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 04:55:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 04:55:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 04:55:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Error: (08/17/2015 04:54:51 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: %%1068 Microsoft Office: ========================= Error: (08/17/2015 04:40:49 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/17/2015 04:29:47 PM) (Source: WTabletServicePro) (EventID: 1) (User: ) Description: Prefs: Failed to get user path Error: (08/17/2015 04:29:45 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/17/2015 04:29:39 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: Could not init tablet driver Error: (08/17/2015 04:29:39 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: Prefs: Failed to open pref stream C:\Windows\system32\config\systemprofile\AppData\Roaming\WTablet\Wacom_Tablet.dat Error: (08/17/2015 04:29:39 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: Prefs: Failed to open pref stream C:\Windows\system32\config\systemprofile\AppData\Roaming\WTablet\Wacom_Tablet.dat Error: (08/17/2015 03:54:31 PM) (Source: MsiInstaller) (EventID: 11316) (User: IzziPics) Description: Product: globalupdate Helper -- Error 1316. The specified account already exists. (NULL)(NULL)(NULL)(NULL)(NULL) Error: (08/17/2015 03:52:28 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail6100WindowsMail0: Error: (08/17/2015 03:52:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/17/2015 03:52:21 PM) (Source: TabletServiceWacom) (EventID: 1) (User: ) Description: Could not init tablet driver CodeIntegrity: =================================== Date: 2015-08-17 16:36:18.332 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:31:43.786 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:29:44.031 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:28:47.450 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:27:57.076 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:27:57.008 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:27:49.583 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:27:30.401 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:21:39.752 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. Date: 2015-08-17 16:05:43.716 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\FMAPO64.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-2600K CPU @ 3.40GHz Percentage of memory in use: 8% Total physical RAM: 16341.79 MB Available physical RAM: 14918.07 MB Total Virtual: 32681.77 MB Available Virtual: 31329.49 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:119.14 GB) (Free:15.68 GB) NTFS Drive d: (Storage) (Fixed) (Total:931.51 GB) (Free:774.1 GB) NTFS Drive j: (UsbStorage) (Removable) (Total:29.8 GB) (Free:23.28 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 0924C248) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 0960BF18) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 29.8 GB) (Disk ID: 00000000) Partition: GPT. ==================== End of log ============================