Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-05-2017 Ran by Kevin (20-05-2017 23:21:17) Running from C:\Users\Kevin\Desktop Windows 10 Home Version 1607 (X64) (2017-03-11 14:13:57) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2375346984-3858035689-482518833-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2375346984-3858035689-482518833-503 - Limited - Disabled) Guest (S-1-5-21-2375346984-3858035689-482518833-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2375346984-3858035689-482518833-1003 - Limited - Enabled) Kevin (S-1-5-21-2375346984-3858035689-482518833-1001 - Administrator - Enabled) => C:\Users\Kevin N (S-1-5-21-2375346984-3858035689-482518833-1005 - Limited - Enabled) => C:\Users\N ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Anker Precision Laser Gaming Mouse version 1.3 (HKLM-x32\...\{F9A7ED2C-34E1-4A96-9A25-B022C23C3361}_is1) (Version: 1.3 - ANKER Technology) Ansel (Version: 382.05 - NVIDIA Corporation) Hidden AOMEI Partition Assistant Pro Edition 6.0 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-5498165BF300}_is1) (Version: - AOMEI Technology Co., Ltd.) Apple Application Support (32-bit) (HKLM-x32\...\{05E07D23-91E9-4E70-A4CC-EF505088F967}) (Version: 5.4.1 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{741291DA-2B34-4D44-8FB6-58EDE21261D8}) (Version: 5.4.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{DB18F1C0-846F-46F5-A074-5B97C8AF5C8E}) (Version: 10.3.1.2 - Apple Inc.) Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Deluge 1.3.13 (HKLM-x32\...\Deluge) (Version: - ) Epson Event Manager (HKLM-x32\...\{9F205E94-9E42-4486-A92A-DF3F6CB85444}) (Version: 3.10.0061 - Seiko Epson Corporation) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) Epson Software Updater (HKLM-x32\...\{7BAC3F7A-B963-468E-982E-B5608A87408D}) (Version: 4.4.4 - SEIKO EPSON CORPORATION) EPSON XP-310 Series Printer Uninstall (HKLM\...\EPSON XP-310 Series) (Version: - SEIKO EPSON Corporation) iCloud (HKLM\...\{7F40A9A7-B3BE-4EA8-B052-60449F6C3C02}) (Version: 6.2.1.67 - Apple Inc.) Intel(R) Chipset Device Software (x32 Version: 10.1.1.38 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1047 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4542 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.1.1028 - Intel Corporation) iTunes (HKLM\...\{6C01A0A7-7440-4D48-93C6-2927A1E93FE6}) (Version: 12.6.0.100 - Apple Inc.) Malwarebytes Anti-Malware versione 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft OneDrive (HKU\S-1-5-21-2375346984-3858035689-482518833-1001\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio Code (HKLM-x32\...\{F8A2A208-72B3-4D61-95FC-8A65D340689B}_is1) (Version: 1.11.2 - Microsoft Corporation) NETGEAR WNDA3100v2 wireless USB 2.0 adapter (HKLM-x32\...\{3C7839E7-21F4-49E0-B4D5-AC8ED818CCB0}) (Version: 2.2.0.5 - NETGEAR) NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Driver 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.05 - NVIDIA Corporation) NVIDIA GeForce Experience 3.5.0.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.5.0.76 - NVIDIA Corporation) NVIDIA Graphics Driver 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation) NVIDIA PhysX System Software 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation) NvNodejs (Version: 3.5.0.76 - NVIDIA Corporation) Hidden NvTelemetry (Version: 2.4.5.0 - NVIDIA Corporation) Hidden NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden Outlast 2 (HKLM-x32\...\1453301453_is1) (Version: gog-1 - GOG.com) Python 3.6.1 (32-bit) (HKU\S-1-5-21-2375346984-3858035689-482518833-1001\...\{1babc3bc-6a32-44f7-bf4d-60eec36c9ad1}) (Version: 3.6.1150.0 - Python Software Foundation) Python 3.6.1 Core Interpreter (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Development Libraries (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Documentation (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Executables (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 pip Bootstrap (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Standard Library (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Tcl/Tk Support (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Test Suite (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python 3.6.1 Utility Scripts (32-bit) (x32 Version: 3.6.1150.0 - Python Software Foundation) Hidden Python Launcher (HKLM-x32\...\{323AC113-C6CE-4F99-842F-4936332D055A}) (Version: 3.6.5923.0 - Python Software Foundation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.2.703.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.) Resident Evil 7 Biohazard (HKLM-x32\...\{1ECBF8F3-7079-44CA-AD32-B2AECBCF636F}_is1) (Version: - Capcom) Revo Uninstaller Pro 3.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.5 - VS Revo Group, Ltd.) SHIELD Streaming (Version: 7.1.0360 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.5.0.76 - NVIDIA Corporation) Hidden Uplay (HKLM-x32\...\Uplay) (Version: 32.0 - Ubisoft) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Watch_Dogs 2 (HKLM-x32\...\{B0E33297-78B1-4B37-B8C1-39150F2DEE43}_is1) (Version: - Ubisoft) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17387 - Microsoft Corporation) WinZip 21.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C2410B}) (Version: 21.0.12288 - WinZip Computing, S.L. ) Zemana AntiMalware (HKLM-x32\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.72.0.388 - Zemana Ltd.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2375346984-3858035689-482518833-1001_Classes\CLSID\{CB2B673F-D441-4CD4-AFBE-DC4037CA4220}\InprocServer32 -> G:\Desktop\WinZip\adxloader64.dll () ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {16E19174-92C7-453C-8504-771DE623EFBD} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-26] (NVIDIA Corporation) Task: {25D2CE24-2A0A-41D5-B907-0AFCAF7A3AFC} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-10-14] (Intel(R) Corporation) Task: {42A0EDEB-2ADB-4581-9C33-190746251B88} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-26] (NVIDIA Corporation) Task: {8B8EB317-BBA8-42A4-92FC-8403CF7BA8A0} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-26] (NVIDIA Corporation) Task: {A707F907-085A-4CF3-8A99-56309277DFE4} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-04-26] (NVIDIA Corporation) Task: {AF5A5386-6E0F-4359-A185-DA355EA2472E} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-04-26] (NVIDIA Corporation) Task: {BFB23079-E2FD-4CEC-97A2-203FE7B1C41C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-26] (NVIDIA Corporation) Task: {C080F94D-B8E3-48A9-9173-4116082C03DD} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.) Task: {EF89569A-37D6-433D-B977-2D645BFDDE9A} - System32\Tasks\WinZipBackGroundToolsTask => G:\Desktop\WinZip\WzBGTools.exe [2016-10-22] (WinZip Computing, S.L.) Task: {FDF25ED0-CFA1-40EA-92E6-A34D9AC52485} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-04-26] (NVIDIA Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Kevin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnеt Ехplorеr.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) <===== Cyrillic Shortcut: C:\Users\Kevin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gоogle Сhrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (No File) <===== Cyrillic ==================== Loaded Modules (Whitelisted) ============== 2016-07-16 06:42 - 2016-07-16 06:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-05-09 21:27 - 2017-04-27 19:49 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2017-03-16 16:08 - 2017-03-16 16:08 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-03-16 16:08 - 2017-03-16 16:08 - 01354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-03-09 02:03 - 2017-04-26 00:40 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-03-08 20:01 - 2014-12-23 22:15 - 00316128 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe 2017-05-09 21:27 - 2017-04-27 19:49 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2017-05-03 17:11 - 2017-05-03 17:11 - 00619008 ____N () C:\windows\system32\tprdpw64.exe 2016-11-20 13:11 - 2016-11-20 13:11 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-14 20:05 - 2017-03-04 01:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-14 20:05 - 2017-03-04 01:30 - 00693248 _____ () C:\Windows\ShellExperiences\MtcUvc.dll 2017-03-14 20:05 - 2017-03-04 01:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-14 20:05 - 2017-03-04 01:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-14 20:05 - 2017-03-04 01:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-05-09 21:27 - 2017-04-27 18:36 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2017-05-09 21:27 - 2017-04-27 18:36 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-05-09 21:27 - 2017-04-27 18:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2017-03-27 12:20 - 2017-03-27 12:20 - 00092472 _____ () C:\Program Files\iTunes\zlib1.dll 2017-03-27 12:20 - 2017-03-27 12:20 - 01354040 _____ () C:\Program Files\iTunes\libxml2.dll 2017-03-11 08:39 - 2014-12-11 19:48 - 08397536 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe 2017-05-05 16:43 - 2017-05-05 16:43 - 02167664 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17032.10341.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-05-08 14:51 - 2017-05-08 14:51 - 10601984 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11703.1001.45.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2017-05-08 14:51 - 2017-05-08 14:51 - 02640384 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11703.1001.45.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll 2017-05-08 14:51 - 2017-05-08 14:51 - 00765440 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11703.1001.45.0_x64__8wekyb3d8bbwe\WinStore.Vui.dll 2017-05-08 14:51 - 2017-05-08 14:52 - 00020480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2017-05-08 14:51 - 2017-05-08 14:52 - 26322944 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2017-05-08 14:51 - 2017-05-08 14:52 - 00441856 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll 2017-05-08 14:51 - 2017-05-08 14:52 - 02139648 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\MediaEngine.dll 2017-05-08 14:51 - 2017-05-08 14:52 - 02901928 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-05-08 14:51 - 2017-05-08 14:52 - 00046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll 2017-03-08 20:22 - 2017-03-08 20:23 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll 2017-05-08 14:51 - 2017-05-08 14:52 - 00641024 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll 2017-05-08 14:51 - 2017-05-08 14:52 - 01062400 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_17.425.10010.0_x64__8wekyb3d8bbwe\Microsoft.Sharing.dll 2017-03-08 20:01 - 2015-03-05 21:22 - 00380928 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiLib.dll 2017-03-09 02:03 - 2017-04-26 00:40 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-03-16 16:09 - 2017-03-16 16:09 - 01041720 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2017-03-16 16:09 - 2017-03-16 16:09 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2017-03-16 16:08 - 2017-03-16 16:08 - 00189752 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll 2017-03-09 02:03 - 2017-04-26 00:39 - 65708992 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2017-03-09 02:03 - 2017-04-26 00:03 - 02442360 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node 2017-03-09 02:03 - 2017-04-26 00:03 - 00361920 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node 2017-03-09 02:03 - 2017-04-26 00:03 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node 2017-03-09 02:03 - 2017-04-26 00:03 - 00384120 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node 2017-03-09 02:03 - 2017-04-26 00:03 - 00467392 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node 2017-03-09 02:03 - 2017-04-26 00:03 - 00572024 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node 2017-03-08 20:01 - 2014-12-19 20:24 - 00278528 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvcLib.dll 2016-12-19 12:38 - 2016-12-19 12:38 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-07-10 06:04 - 2017-05-05 22:44 - 00000873 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 keystone.mwbsys.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2375346984-3858035689-482518833-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kevin\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img13.jpg DNS Servers: 172.30.192.182 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKLM\...\StartupApproved\StartupFolder: => "WinZip Preloader.lnk" HKLM\...\StartupApproved\StartupFolder: => "Update Notifier.lnk" HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run: => "ZAM" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{0ABD429C-7C7C-4CF4-BC44-C96B5F77B5ED}] => (Allow) %ProgramFiles% (x86)\Deluge\deluge.exe FirewallRules: [UDP Query User{B52C4BFA-AB3D-4E98-8A13-533F3A197149}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe FirewallRules: [TCP Query User{4C0F9FF8-88EC-4451-96F2-F6934A9670A2}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe FirewallRules: [{2586DA52-A38E-47A4-A1AE-6C3E76C1EB79}] => (Allow) C:\Program Files (x86)\Watch_Dogs 2\bin\WatchDogs2.exe FirewallRules: [{C66F9C0A-9B9A-4661-9419-AA0B4278EC4F}] => (Allow) C:\Program Files (x86)\Watch_Dogs 2\bin\WatchDogs2.exe FirewallRules: [{15DB1813-2742-4540-B5E9-93A20AC1D799}] => (Allow) C:\Program Files (x86)\Watch_Dogs 2\bin\WatchDogs2.exe FirewallRules: [{3AFE6969-10F4-43BF-A990-01A06CF76FE3}] => (Allow) C:\Program Files (x86)\Watch_Dogs 2\bin\WatchDogs2.exe FirewallRules: [UDP Query User{A3C04706-9E62-426F-9003-998CD1082097}E:\games\quantum break\dx11\quantumbreak.exe] => (Block) E:\games\quantum break\dx11\quantumbreak.exe FirewallRules: [TCP Query User{579777E1-9517-4792-B904-C9C6700EF08E}E:\games\quantum break\dx11\quantumbreak.exe] => (Block) E:\games\quantum break\dx11\quantumbreak.exe FirewallRules: [{29376A6D-0A63-40A1-825C-1C03085D6B25}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{026DFD42-2B03-4C22-B619-2BE66DF6D9DE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{B7DA9DED-EB67-488E-80E3-E273CE896CA4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{E837C976-EF99-4194-B1F1-A73477E6291E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{F5E2A9A7-98BB-412D-88BA-C094EA2BC0B6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{E5145412-4F7C-41C6-AFC0-AC4A9CB201CA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{369BA4E7-A205-4136-8C76-87279DE5BFBF}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe FirewallRules: [{10120B06-7168-4D02-9115-381F1C180FA3}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe FirewallRules: [{86F1E559-B84A-4F91-8DC8-36AD6E107B3C}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{ACB9AA75-776B-4CD9-AD90-1891135A9EF6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [TCP Query User{2C9A78A4-358A-40F4-A179-1E628D2C1FC5}H:\outlast 2\binaries\win64\outlast2.exe] => (Allow) H:\outlast 2\binaries\win64\outlast2.exe FirewallRules: [UDP Query User{CB7E718A-9023-4664-B427-9528DF94C49D}H:\outlast 2\binaries\win64\outlast2.exe] => (Allow) H:\outlast 2\binaries\win64\outlast2.exe FirewallRules: [{32D78672-407C-4708-91FF-41D260A77FDB}] => (Allow) E:\Watch_Dogs 2\EasyAntiCheat\EasyAntiCheat_Setup.exe FirewallRules: [{A5387D8B-8B79-4189-91FC-293646555CE7}] => (Allow) E:\Watch_Dogs 2\EasyAntiCheat\EasyAntiCheat_Setup.exe FirewallRules: [{D5C0B0B0-6A39-4CF8-8259-2FCBD6A6A6AF}] => (Allow) E:\Watch_Dogs 2\EasyAntiCheat\EasyAntiCheat_Setup.exe FirewallRules: [{F7048DFA-3D41-413E-9077-10CEE84923D3}] => (Allow) E:\Watch_Dogs 2\EasyAntiCheat\EasyAntiCheat_Setup.exe FirewallRules: [{BD2DCB79-98B3-498A-A0C6-FC5280B167BF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{9AFC2261-6259-4882-ACDF-362C28E8CCCC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1ABE9F0A-4980-4FE6-A8CE-B1B5F9ADE61B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{AAF8DA98-FE73-42E5-819F-951C941A1ACD}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2CC1678A-DF7C-4A75-86C3-CF9F5635457C}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{883D1F59-AD92-4075-9158-CFF928F66E46}E:\battlefield 1\bf1.exe] => (Allow) E:\battlefield 1\bf1.exe FirewallRules: [UDP Query User{3F8117C4-AAA9-4862-995E-014FD74B976A}E:\battlefield 1\bf1.exe] => (Allow) E:\battlefield 1\bf1.exe ==================== Restore Points ========================= ATTENTION: System Restore is disabled ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/20/2017 11:20:39 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x1d24 Faulting application start time: 0x01d2d1e999517b84 Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: b7c953a7-435e-40ab-a940-6282ff15376d Faulting package full name: Faulting package-relative application ID: Error: (05/20/2017 04:17:26 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x1064 Faulting application start time: 0x01d2d1ae79a91088 Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: 05a875d3-2d8a-4b86-af6b-67b3975d73a5 Faulting package full name: Faulting package-relative application ID: Error: (05/20/2017 03:17:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x1be8 Faulting application start time: 0x01d2d1a609519c31 Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: dfd5ccaa-9ddf-447b-b3cf-20b13d92a212 Faulting package full name: Faulting package-relative application ID: Error: (05/20/2017 11:15:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x1954 Faulting application start time: 0x01d2d1843f0eef11 Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: 16959974-6cc1-46bf-a646-fbeebcf1fef0 Faulting package full name: Faulting package-relative application ID: Error: (05/20/2017 10:14:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x1bd0 Faulting application start time: 0x01d2d17bce760ea3 Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: 5854981b-1a68-40bf-a6c9-96c99e4ba431 Faulting package full name: Faulting package-relative application ID: Error: (05/20/2017 09:45:29 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x2620 Faulting application start time: 0x01d2d177b8cbb2bf Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: e2b0269d-06bb-46ce-b257-843f91c635ca Faulting package full name: Faulting package-relative application ID: Error: (05/20/2017 09:41:31 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-CUTQ3R3) Description: Activation of app Microsoft.Getstarted_5.9.1042.0_x64__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (05/20/2017 09:25:57 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-CUTQ3R3) Description: Activation of app Microsoft.Getstarted_5.9.1042.0_x64__8wekyb3d8bbwe:App.AppX7mv0s3r0wanj0n66dy6vax24ps6avzvz.mca failed with error: -2144927149 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (05/20/2017 09:14:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x8668 Faulting application start time: 0x01d2d173683785fb Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: abca19d7-b019-4cfb-8ee7-321735e59771 Faulting package full name: Faulting package-relative application ID: Error: (05/20/2017 08:14:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iCloudPhotos.exe, version: 106.0.0.53, time stamp: 0x58cb0177 Faulting module name: iCloudPhotos_main.dll, version: 106.0.0.53, time stamp: 0x58cb59f7 Exception code: 0xc0000005 Fault offset: 0x00026eb8 Faulting process id: 0x7c94 Faulting application start time: 0x01d2d16af733a91c Faulting application path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe Faulting module path: C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos_main.dll Report Id: 2e12de78-997e-41a8-a8f7-2968dc18b12e Faulting package full name: Faulting package-relative application ID: System errors: ============= Error: (05/20/2017 01:40:08 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB2267602 (Definition 1.243.839.0). Error: (05/20/2017 01:40:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Windows Defender Service service failed to start due to the following error: The requested resource is in use. Error: (05/20/2017 01:40:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80240fff: Feature update to Windows 10, version 1703. Error: (05/20/2017 11:20:12 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-CUTQ3R3) Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C} and APPID {CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2} to the user DESKTOP-CUTQ3R3\Kevin SID (S-1-5-21-2375346984-3858035689-482518833-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.WindowsStore_11703.1001.45.0_x64__8wekyb3d8bbwe SID (S-1-15-2-1609473798-1231923017-684268153-4268514328-882773646-2760585773-1760938157). This security permission can be modified using the Component Services administrative tool. Error: (05/20/2017 11:20:01 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-CUTQ3R3) Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C} and APPID {CE79BC8B-2980-4CA9-9570-6E0BF5B93BF2} to the user DESKTOP-CUTQ3R3\Kevin SID (S-1-5-21-2375346984-3858035689-482518833-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.WindowsStore_11703.1001.45.0_x64__8wekyb3d8bbwe SID (S-1-15-2-1609473798-1231923017-684268153-4268514328-882773646-2760585773-1760938157). This security permission can be modified using the Component Services administrative tool. Error: (05/20/2017 09:49:32 AM) (Source: bowser) (EventID: 8003) (User: ) Description: The master browser has received a server announcement from the computer RIDGELAKE that believes that it is the master browser for the domain on transport NetBT_Tcpip_{BF8EFCB9-B99C-430F-AC44-7DA989E44926}. The master browser is stopping or an election is being forced. Error: (05/20/2017 09:49:07 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0xc1900107: Feature update to Windows 10, version 1703. Error: (05/20/2017 09:48:46 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Windows Defender - KB2267602 (Definition 1.243.839.0). Error: (05/20/2017 09:48:23 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Windows Defender Service service failed to start due to the following error: The requested resource is in use. Error: (05/20/2017 09:47:58 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Windows Defender Service service failed to start due to the following error: The requested resource is in use. CodeIntegrity: =================================== Date: 2017-05-20 16:18:28.366 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 16:18:28.357 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 16:11:14.130 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 16:11:14.122 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 15:24:54.498 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 15:24:54.490 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 14:42:50.077 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 14:42:50.070 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 14:42:50.042 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-20 14:42:50.033 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-7600K CPU @ 3.80GHz Percentage of memory in use: 28% Total physical RAM: 16327.32 MB Available physical RAM: 11742.93 MB Total Virtual: 19171.32 MB Available Virtual: 14035.7 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.24 GB) (Free:35.03 GB) NTFS Drive d: (BACKUP) (Fixed) (Total:261.89 GB) (Free:26.09 GB) NTFS Drive e: (GAMES) (Fixed) (Total:272.83 GB) (Free:72.98 GB) NTFS Drive f: (DL) (Fixed) (Total:357 GB) (Free:16.11 GB) NTFS Drive g: (SMALLhd) (Fixed) (Total:39.76 GB) (Free:12.97 GB) NTFS Drive h: (SSD) (Fixed) (Total:118.26 GB) (Free:37.83 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 67801580) Partition 1: (Not Active) - (Size=118.3 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: A24C9BDF) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=OF Extended) ==================== End of Addition.txt ============================