Additional scan result of Farbar Recovery Scan Tool (x64) Version:15-09-2015 Ran by Ellen (2015-09-22 23:20:18) Running from C:\Users\Ellen\Downloads Windows 10 Home (X64) (2015-09-05 17:39:23) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1046601001-1906817106-3343807100-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1046601001-1906817106-3343807100-503 - Limited - Disabled) Ellen (S-1-5-21-1046601001-1906817106-3343807100-1001 - Administrator - Enabled) => C:\Users\Ellen Guest (S-1-5-21-1046601001-1906817106-3343807100-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1046601001-1906817106-3343807100-1007 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Apple Application Support (32-bit) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Canon G.726 WMP-Decoder (HKLM-x32\...\Canon G.726 WMP-Decoder) (Version: 1.1.0.4 - Canon Inc.) CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.5.0.3 - Canon Inc.) Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\Canon Internet Library for ZoomBrowser EX) (Version: 1.6.1.6 - Canon Inc.) Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 2.6.0.4 - Canon Inc.) Canon RAW Image Task for ZoomBrowser EX (HKLM-x32\...\RAW Image Task) (Version: 3.3.0.5 - Canon Inc.) Canon Utilities CameraWindow DC (HKLM-x32\...\CameraWindowDC) (Version: 7.1.0.7 - Canon Inc.) Canon Utilities Digital Photo Professional (HKLM-x32\...\Digital Photo Professional) (Version: 3.12.20.0 - Canon Inc.) Canon Utilities EOS Lens Registration Tool (HKLM-x32\...\EOS Lens Registration Tool) (Version: 1.2.10.0 - Canon Inc.) Canon Utilities EOS Utility 2 (HKLM-x32\...\EOS Utility 2) (Version: 2.14.20.0 - Canon Inc.) Canon Utilities EOS Web Service Registration Tool (HKLM-x32\...\EOS Web Service Registration Tool) (Version: 1.2.10.0 - Canon Inc.) Canon Utilities ImageBrowser EX (HKLM-x32\...\ImageBrowser EX) (Version: 1.5.2.8 - Canon Inc.) Canon Utilities MyCamera DC (HKLM-x32\...\MyCameraDC) (Version: 7.0.1.8 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.23.47 - Canon Inc.) Canon Utilities Picture Style Editor (HKLM-x32\...\Picture Style Editor) (Version: 1.14.10.0 - Canon Inc.) Canon Utilities RemoteCapture DC (HKLM-x32\...\RemoteCaptureDC) (Version: 3.0.1.8 - Canon Inc.) Canon Utilities RemoteCapture Task for ZoomBrowser EX (HKLM-x32\...\RemoteCaptureTask) (Version: 1.7.1.9 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.1.1.21 - Canon Inc.) Canon Utilities ZoomBrowser EX Packages (HKU\S-1-5-21-1046601001-1906817106-3343807100-1001\...\Canon Utilities ZoomBrowser EX Packages) (Version: - ) <==== ATTENTION CCleaner (HKLM\...\CCleaner) (Version: 5.09 - Piriform) iTunes (HKLM\...\{BFEAB774-C7DC-4032-B05A-DA5F7CB7B365}) (Version: 12.2.2.25 - Apple Inc.) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.10411.0 - Microsoft Corporation) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7564 - Realtek Semiconductor Corp.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.1 - Synaptics Incorporated) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1046601001-1906817106-3343807100-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Restore Points ========================= 08-09-2015 22:08:26 Windows Update 08-09-2015 22:10:43 Windows Update 12-09-2015 00:11:47 Installed iTunes 17-09-2015 00:25:31 Removed Bonjour 21-09-2015 20:33:47 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-09-06 03:03 - 2015-09-06 03:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0ABC42E4-654D-49C9-8C1D-DE405591DBD7} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {A91FA1D6-1FD1-4CFF-A6A5-611015E7EFF0} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-26] (Microsoft Corporation) Task: {ACD04BE6-A213-43D1-9927-0A8D84BC524D} - System32\Tasks\Tny_Cassiopesa => C:\Users\Ellen\AppData\Local\{D7C0E~1\UNINST~1.EXE Task: {C3D768AA-BAC2-4C56-999D-CBE01F80DB42} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-08-20] (Piriform Ltd) Task: {C428CDF0-183F-41FB-BBA3-CC681F8174BF} - System32\Tasks\LaunchPreSignup => C:\Program Files (x86)\OLBPre\OLBPre.exe <==== ATTENTION Task: {E6123579-7B41-4C28-91FD-C74D066AA5FA} - System32\Tasks\{6A128791-4857-4484-9BB2-71D4C1257200} => C:\ProgramData\ToolsUpdatePlatform\CallBackInstall.exe [2015-07-07] () Task: {F787EC95-8C1B-4095-873A-82B5CF7B2AB3} - System32\Tasks\BAUpd => C:\Users\Ellen\AppData\Local\BrowserAir\Application\updater.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Tny_Cassiopesa.job => Task: C:\WINDOWS\Tasks\{6A128791-4857-4484-9BB2-71D4C1257200}.job => C:\ProgramData\ToolsUpdatePlatform\CallBackInstall.exe ==================== Loaded Modules (Whitelisted) ============== 2015-08-21 06:36 - 2015-08-21 06:36 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 2015-09-08 21:51 - 2015-09-08 10:28 - 00353608 _____ () C:\WINDOWS\system32\Haedyanurv64.dll 2015-08-21 06:36 - 2015-08-21 06:36 - 00413184 _____ () C:\WINDOWS\System32\diagtrack_win.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-08-21 06:36 - 2015-08-21 06:36 - 02498808 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-21 06:36 - 2015-08-21 06:36 - 02498808 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-07-10 11:59 - 2015-07-10 11:59 - 00429056 ____N () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-07-10 11:59 - 2015-07-10 11:59 - 00143360 ____N () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll 2015-08-21 06:36 - 2015-08-21 06:36 - 06569472 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-07-10 12:00 - 2015-07-10 14:14 - 00471040 ____N () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-08-21 06:36 - 2015-08-21 06:36 - 01808384 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-08-21 06:36 - 2015-08-21 06:36 - 02274816 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-07-10 12:00 - 2015-07-10 14:14 - 00210432 ____N () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll 2015-09-05 21:55 - 2015-02-10 15:08 - 00069120 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe 2015-07-10 12:00 - 2015-07-10 12:00 - 00215352 ____N () c:\windows\system32\WerEtw.dll 2015-09-05 21:55 - 2015-02-18 14:11 - 00112128 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFMFileSystemWatcher.dll 2015-02-10 10:03 - 2015-02-10 10:03 - 00507904 _____ () C:\Program Files (x86)\Canon\EOS Utility\EDSDK.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Ellen\OneDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1046601001-1906817106-3343807100-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Sony\VAIO 13 img1 Wallpaper 1366x768.jpg DNS Servers: 82.163.143.162 - 82.163.142.164 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{A52768BA-B373-45C2-B0AF-1B3A8D9A1EE8}] => (Allow) C:\Users\Ellen\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{8DEA27C8-2D14-482D-97E1-4A805D1A1D93}] => (Allow) C:\Users\Ellen\AppData\Local\BrowserAir\Application\BrowserAir.exe FirewallRules: [{F4DF1F3A-B2C9-4B4B-A0DF-387983507927}] => (Allow) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe FirewallRules: [{72BA24FF-BCCE-494C-85A2-5099BEA33D16}] => (Allow) C:\Program Files (x86)\baidu\Baidu Browser\Spark.exe FirewallRules: [{A7E018E8-53B9-4156-BF4D-52C5D8CC3403}] => (Allow) C:\Program Files\iTunes\iTunes.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/22/2015 11:16:54 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: ELLEN) Description: Microsoft.WindowsStore_8wekyb3d8bbwe3 Error: (09/22/2015 11:16:39 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ELLEN) Description: Activation of app Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe!Microsoft.MicrosoftOfficeHub failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (09/22/2015 11:16:36 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: ELLEN) Description: Microsoft.MicrosoftOfficeHub_8wekyb3d8bbwe3 Error: (09/22/2015 11:16:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: HubTaskHost.exe, version: 0.0.0.0, time stamp: 0x55f064d9 Faulting module name: Mso20Imm.dll, version: 16.0.6201.1000, time stamp: 0x55e614ec Exception code: 0xc0000005 Fault offset: 0x00000000000c9e84 Faulting process id: 0x233c Faulting application start time: 0xHubTaskHost.exe0 Faulting application path: HubTaskHost.exe1 Faulting module path: HubTaskHost.exe2 Report Id: HubTaskHost.exe3 Faulting package full name: HubTaskHost.exe4 Faulting package-relative application ID: HubTaskHost.exe5 Error: (09/22/2015 11:09:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: OneDrive.exe, version: 17.3.5892.626, time stamp: 0x558cfe5a Faulting module name: KERNELBASE.dll, version: 10.0.10240.16384, time stamp: 0x559f3b2a Exception code: 0x80000003 Fault offset: 0x00132bd2 Faulting process id: 0x1144 Faulting application start time: 0xOneDrive.exe0 Faulting application path: OneDrive.exe1 Faulting module path: OneDrive.exe2 Report Id: OneDrive.exe3 Faulting package full name: OneDrive.exe4 Faulting package-relative application ID: OneDrive.exe5 Error: (09/22/2015 11:09:46 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "45.0.2422.0,language="*",type="win32",version="45.0.2422.0"1". Dependent Assembly 45.0.2422.0,language="*",type="win32",version="45.0.2422.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (09/22/2015 05:01:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ELLEN) Description: Activation of app Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI failed with error: -2144927141 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (09/22/2015 05:00:57 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: ELLEN) Description: Package Microsoft.Windows.Photos_15.915.17170.0_x64__8wekyb3d8bbwe+App was terminated because it took too long to suspend. Error: (09/22/2015 05:00:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Microsoft.Photos.exe, version: 15.915.17170.0, time stamp: 0x55f8b982 Faulting module name: Windows.UI.Xaml.dll, version: 10.0.10240.16431, time stamp: 0x55c9bf27 Exception code: 0xc000027b Fault offset: 0x0000000000464bd7 Faulting process id: 0xe14 Faulting application start time: 0xMicrosoft.Photos.exe0 Faulting application path: Microsoft.Photos.exe1 Faulting module path: Microsoft.Photos.exe2 Report Id: Microsoft.Photos.exe3 Faulting package full name: Microsoft.Photos.exe4 Faulting package-relative application ID: Microsoft.Photos.exe5 Error: (09/22/2015 05:00:38 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: ELLEN) Description: Microsoft.Windows.Photos_8wekyb3d8bbwe3 System errors: ============= Error: (09/22/2015 11:16:39 PM) (Source: DCOM) (EventID: 10010) (User: ELLEN) Description: Microsoft.MicrosoftOfficeHub.AppXrqs94aemecwbtd1veqtvyn34m9ks80g7.mca Error: (09/22/2015 05:01:18 PM) (Source: DCOM) (EventID: 10010) (User: ELLEN) Description: CortanaUI.AppXd4tad4d57t4wtdbnnmb8v2xtzym8c1n8.mca Error: (09/22/2015 05:01:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The User Data Access_Session2 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (09/22/2015 05:01:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The User Data Storage_Session2 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (09/22/2015 05:01:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Contact Data_Session2 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (09/22/2015 05:01:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Sync Host_Session2 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (09/22/2015 04:32:03 PM) (Source: DCOM) (EventID: 10010) (User: ELLEN) Description: Microsoft.MicrosoftOfficeHub.AppXrqs94aemecwbtd1veqtvyn34m9ks80g7.mca Error: (09/21/2015 10:51:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The klhk service failed to start due to the following error: %%1275 Error: (09/21/2015 10:51:48 PM) (Source: Application Popup) (EventID: 875) (User: ) Description: klhk.sys Error: (09/21/2015 08:30:50 PM) (Source: DCOM) (EventID: 10010) (User: ELLEN) Description: Microsoft.MicrosoftOfficeHub.AppXrqs94aemecwbtd1veqtvyn34m9ks80g7.mca CodeIntegrity: =================================== Date: 2015-09-22 23:17:02.409 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-22 23:17:02.385 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-22 16:55:14.492 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-22 16:55:14.471 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-22 16:55:14.261 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-22 16:55:14.239 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-17 12:29:57.286 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-17 12:29:57.228 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\Haedyanurv64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-09-08 23:33:45.307 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Common Files\Goobzo\GBUpdate\smw.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2015-09-08 22:50:02.176 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Common Files\Goobzo\GBUpdate\smw.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz Percentage of memory in use: 36% Total physical RAM: 3974.8 MB Available physical RAM: 2538.74 MB Total Virtual: 4997.13 MB Available Virtual: 3451.96 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:438.11 GB) (Free:384.5 GB) NTFS Drive d: (KIS Multi-Device) (CDROM) (Total:0.49 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 9D808610) Partition: GPT. ==================== End of Addition.txt ============================