Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-07-2017 Ran by Burak (02-08-2017 22:01:20) Running from D:\ Windows 10 Home Version 1607 (X64) (2016-09-27 17:21:49) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2460906436-1292810699-3236750801-500 - Administrator - Disabled) Burak (S-1-5-21-2460906436-1292810699-3236750801-1005 - Administrator - Enabled) => C:\Users\Burak DefaultAccount (S-1-5-21-2460906436-1292810699-3236750801-503 - Limited - Disabled) Guest (S-1-5-21-2460906436-1292810699-3236750801-501 - Limited - Disabled) pawwc (S-1-5-21-2460906436-1292810699-3236750801-1001 - Administrator - Enabled) => C:\Users\pawwc ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-2460906436-1292810699-3236750801-1005\...\uTorrent) (Version: 3.5.0.43916 - BitTorrent Inc.) Adobe Reader XI - Polish (HKLM-x32\...\{AC76BA86-7AD7-1045-7B44-AB0000000001}) (Version: 11.0.00 - Adobe Systems Incorporated) Advertising Center (HKLM-x32\...\{b2ec4a38-b545-4a00-8214-13fe0e915e6d}) (Version: 0.0.0.1 - Nero AG) Hidden AIMP (HKLM-x32\...\AIMP) (Version: v4.13.1887, 19.02.2017 - AIMP DevTeam) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.6 - Advanced Micro Devices, Inc.) Avast Premier (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2303 - AVAST Software) Batman The Telltale Series version Batman The Telltale Series (HKLM-x32\...\Batman The Telltale Series_is1) (Version: Batman The Telltale Series - ) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bitwa o Śródziemie™ (HKLM-x32\...\{3F290582-3F4E-4B96-009C-E0BABAA40C42}) (Version: - ) Bitwa o Śródziemie™ II (HKLM-x32\...\{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}) (Version: - ) Cossacks 3 (HKLM-x32\...\Cossacks 3_is1) (Version: - ) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0195 - Disc Soft Ltd) Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.4 - Synaptics Incorporated) Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Dell Inc.) Doomsday (HKLM-x32\...\{69464949-AD9C-4C98-933F-C32FFC86F3C8}) (Version: - ) Dragon Age - Origins - Ultimate Edition (HKLM-x32\...\1949616134_is1) (Version: 2.0.0.3 - GOG.com) Endless Legend (HKLM\...\ZW5kbGVzc2xlZ2VuZA_is1) (Version: 1 - ) e-pity 8.0.14 za rok 2016 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A11D}_is1) (Version: 8.0.14 - e-file sp. z o.o. sp.k.) Garmin USB Drivers (HKLM\...\{DC7720F2-98BE-41C1-B0A8-E391362E86B8}) (Version: 2.3.1.1 - Garmin Ltd or its subsidiaries) Godus 2.3 (HKLM-x32\...\Godus 2.3) (Version: 2.3 - Games on Cat-A-Cat.Net) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.) Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Hearts of Iron 2 Doomsday Armageddon (HKLM-x32\...\Hearts of Iron 2 Doomsday_is1) (Version: - GamersGate) HiSuite (HKLM-x32\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.1.1.5 - PandoraTV) Love & Desire (HKLM-x32\...\ACBCFD62-26A3-45CE-A91B-9ABD77758524) (Version: 1.0 - RTB) Mass Effect: Andromeda (HKLM-x32\...\Mass Effect: Andromeda_is1) (Version: - ) Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.6.8006.3 - Waves Audio Ltd.) Hidden MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2460906436-1292810699-3236750801-1005\...\OneDriveSetup.exe) (Version: 17.3.6943.0625 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Minecraft1.9 (HKLM-x32\...\Minecraft1.9) (Version: - ) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Napisy24 (HKLM-x32\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.5 - Napisy24.pl) Narzędzia sprawdzające pakietu Microsoft Office 2016 — polski (HKLM\...\{90160000-001F-0415-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden Navitel Navigator update center (HKLM-x32\...\Navitel Navigator update center) (Version: 2.2.0.32 - Center of Navigation Technologies) Nero 9 Essentials (HKLM-x32\...\{ea0abfb8-6be7-4e20-b3da-9af3208e7583}) (Version: - Nero AG) NVIDIA Oprogramowanie systemu PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA PhysX (Legacy) (HKLM-x32\...\{FAAC26AD-73BA-40CE-86AA-C9213F9E064A}) (Version: 9.13.0604 - NVIDIA Corporation) OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden OpenOffice 4.1.3 (HKLM-x32\...\{4D71C348-C964-442D-B2DB-5160E46FB664}) (Version: 4.13.9783 - Apache Software Foundation) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 10.0.1.4 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31225 - Realtek Semiconduct Corp.) Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 10.3.723.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7838 - Realtek Semiconductor Corp.) Sid Meiers Civilization VI Winter 2016 Edition with Vikings and Poland Scenario Packs (HKLM\...\c2lkbWVpZXJzY2l2aWxpemF0aW9udmk_is1) (Version: 1 - ) SlimDrivers (HKLM-x32\...\{746AB259-6474-4111-8966-1C62F9A6E063}) (Version: 2.3.1 - SlimWare Utilities, Inc.) Spore (HKLM-x32\...\Spore_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter) Spotify (HKU\S-1-5-21-2460906436-1292810699-3236750801-1005\...\Spotify) (Version: 1.0.59.395.ge6ca9946 - Spotify AB) STAR WARS® - Knights of the Old Republic™ (HKLM-x32\...\1207666283_is1) (Version: 2.0.0.3 - GOG.com) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) The Banner Saga 2 (HKLM-x32\...\The Banner Saga 2_is1) (Version: - ) The Elder Scrolls V Skyrim - Legendary Edition (HKLM-x32\...\The Elder Scrolls V Skyrim - Legendary Edition_is1) (Version: - ) Undertale (HKLM-x32\...\1456487183_is1) (Version: 2.0.0.2 - GOG.com) Unturned (HKLM\...\Steam App 304930) (Version: - Smartly Dressed Games) Update for Skype for Business 2016 (KB3114846) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{286F464B-2FDF-4107-83A5-DEB08D2AD268}) (Version: - Microsoft) Update for Skype for Business 2016 (KB3114846) 64-Bit Edition (HKLM\...\{90160000-00C1-0000-1000-0000000FF1CE}_Office16.PROPLUS_{286F464B-2FDF-4107-83A5-DEB08D2AD268}) (Version: - Microsoft) Update for Skype for Business 2016 (KB3114846) 64-Bit Edition (HKLM\...\{90160000-012B-0415-1000-0000000FF1CE}_Office16.PROPLUS_{286F464B-2FDF-4107-83A5-DEB08D2AD268}) (Version: - Microsoft) Warcraft III Deluxe (HKLM-x32\...\Warcraft III Deluxe - Respev edition_is1) (Version: - Respev) Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation) WinRAR 5.31 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) Zoo Tycoon 2 (HKLM-x32\...\Zoo Tycoon 2) (Version: 1.0 - Microsoft) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-03-21] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-03-21] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-03-21] (Google) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-27] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-27] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => G:\PROGRAMY\AIMP\System\aimp_menu64.dll [2017-03-11] (AIMP DevTeam) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-27] (AVAST Software) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-03-21] (Google) ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-27] (AVAST Software) ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ContextMenuHandlers4: [###MegaContextMenuExt] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => G:\PROGRAMY\AIMP\System\aimp_menu64.dll [2017-03-11] (AIMP DevTeam) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-03-21] (Google) ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2016-10-31] () ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-11-16] (Advanced Micro Devices, Inc.) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-27] (AVAST Software) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-08] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-08] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {16DF2C78-B6B7-4867-8DD1-0CC5E7B8363B} - System32\Tasks\{4F4601AB-1B61-4ABE-8325-BC11B9B24835} => C:\WINDOWS\system32\pcalua.exe -a "D:\UKOŃCZONE\Zoo Tycoon 2 PL.exe" -d D:\UKOŃCZONE Task: {21168B52-8197-4434-A17C-265410BB4DE1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18] (Google Inc.) Task: {34D8EE1D-92D6-483E-854A-4E9BA73B90E6} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-07-12] (AVAST Software) Task: {3B2A1944-065D-47F1-9808-41317E4DC8EB} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-09-02] (Advanced Micro Devices, Inc.) Task: {3E672E05-7645-4EE5-8B5F-34DDE852E76A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {6C8AE095-DE0D-4798-9AB5-37D7C49C2086} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation) Task: {7072D3AF-8299-47D4-8E98-6A867EA6BE74} - System32\Tasks\SlimDrivers Startup => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe [2015-08-19] (SlimWare Utilities, Inc.) Task: {75DD700F-A034-48BA-BCD9-57CE6AE19675} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-07-27] (AVAST Software) Task: {90DFF265-5C5E-4FC5-AD78-3C529E0AFA80} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-07-15] (Synaptics Incorporated) Task: {B8EB56C4-7713-444B-8E4C-FA4E024A2DF7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {BF820508-FBBA-46F8-B558-F3014793588F} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2016-06-06] (Realtek Semiconductor) Task: {C0A153F7-F26A-4AC6-9B32-E3EEC0A8AE8D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-07-18] (Google Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\SlimDrivers Startup.job => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Burak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft\Minecraft Debugger.lnk -> C:\Users\Burak\AppData\Roaming\.minecraft\minecraft launcher\Debug.bat () ==================== Loaded Modules (Whitelisted) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 000231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-07-13 21:29 - 2017-06-21 09:48 - 002681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-11-16 14:16 - 2015-11-16 14:16 - 000127488 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2017-04-11 04:17 - 2017-04-11 04:17 - 000192200 _____ () C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe 2016-10-31 21:45 - 2016-10-31 21:45 - 000592384 _____ () C:\ProgramData\MEGAsync\ShellExtX64.dll 2016-09-28 04:48 - 2016-09-28 04:48 - 000134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-16 21:39 - 2017-03-04 08:31 - 000474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-16 21:39 - 2017-03-04 08:30 - 000693248 _____ () C:\Windows\ShellExperiences\MtcUvc.dll 2017-03-16 21:37 - 2017-03-04 08:12 - 009760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-16 21:37 - 2017-03-04 08:05 - 001401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-16 21:37 - 2017-03-04 08:05 - 000757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-07-13 21:29 - 2017-06-21 08:35 - 002424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-07-13 21:29 - 2017-06-21 08:37 - 004853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2017-07-24 16:53 - 2017-07-24 16:55 - 000074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-07-24 16:53 - 2017-07-24 16:55 - 000203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-07-24 16:53 - 2017-07-24 16:55 - 043573248 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-07-24 16:53 - 2017-07-24 16:55 - 002435584 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\skypert.dll 2017-06-28 21:35 - 2017-06-23 05:21 - 003807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libglesv2.dll 2017-06-28 21:35 - 2017-06-23 05:21 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libegl.dll 2017-07-27 22:01 - 2017-07-27 22:01 - 000170224 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-07-27 22:01 - 2017-07-27 22:01 - 001065936 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-07-10 15:02 - 2017-07-10 15:02 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-07-27 22:01 - 2017-07-27 22:01 - 000192664 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-07-27 22:01 - 2017-07-27 22:01 - 000224256 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-07-27 22:01 - 2017-07-27 22:01 - 000292920 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-07-27 22:01 - 2017-07-27 22:01 - 000689272 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-07-04 18:05 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2017-07-04 18:05 - 2016-09-01 03:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2017-07-04 18:05 - 2017-07-18 02:33 - 002497824 _____ () C:\Program Files (x86)\Steam\video.dll 2017-07-04 18:05 - 2016-01-27 09:49 - 002549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2017-07-04 18:05 - 2016-01-27 09:49 - 000491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2017-07-04 18:05 - 2016-01-27 09:49 - 000332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2017-07-04 18:05 - 2016-01-27 09:49 - 000442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2017-07-04 18:05 - 2016-01-27 09:49 - 000485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2017-07-04 18:05 - 2016-09-01 03:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2017-07-04 18:05 - 2016-09-01 03:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2017-07-04 18:05 - 2017-07-18 02:33 - 000884512 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2017-07-04 18:05 - 2016-07-05 00:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2017-07-04 18:06 - 2017-07-06 19:58 - 073088800 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2017-07-04 18:06 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll 2017-07-04 18:05 - 2017-07-18 02:33 - 000384288 _____ () C:\Program Files (x86)\Steam\steam.dll 2017-03-11 18:37 - 2017-03-11 18:37 - 000205824 _____ () G:\PROGRAMY\AIMP\System\libsoxr.dll 2017-03-11 18:37 - 2017-03-11 18:37 - 000280064 _____ () G:\PROGRAMY\AIMP\System\Encoders\libFLAC.dll 2017-03-11 18:37 - 2017-03-11 18:37 - 000759296 _____ () G:\PROGRAMY\AIMP\System\Encoders\aimp_libvorbis.dll 2017-03-11 18:37 - 2017-03-11 18:37 - 000156208 _____ () G:\PROGRAMY\AIMP\Plugins\aimp_AnalogMeter\aimp_AnalogMeter.dll 2017-03-11 18:37 - 2017-03-11 18:37 - 000171568 _____ () G:\PROGRAMY\AIMP\Plugins\aimp_cdda\aimp_cdda.dll 2017-03-11 18:37 - 2017-03-11 18:37 - 000159232 _____ () G:\PROGRAMY\AIMP\Plugins\aimp_sacd\libsacd.dll 2017-03-11 18:37 - 2017-03-11 18:37 - 000026624 _____ () G:\PROGRAMY\AIMP\Plugins\Aorta\Aorta.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-10-30 09:24 - 2016-07-18 17:08 - 000000908 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 activation-v2.kaspersky.com 127.0.0.1 activation-v2.geo.kaspersky.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2460906436-1292810699-3236750801-1005\Control Panel\Desktop\\Wallpaper -> C:\Users\Burak\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta z Przeglądarki fotografii systemu Windows.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKU\S-1-5-21-2460906436-1292810699-3236750801-1005\...\StartupApproved\Run: => "GoogleDriveSync" HKU\S-1-5-21-2460906436-1292810699-3236750801-1005\...\StartupApproved\Run: => "Napisy24.pl" HKU\S-1-5-21-2460906436-1292810699-3236750801-1005\...\StartupApproved\Run: => "Napisy24Update" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{C274513C-9A05-4355-9CFF-37849E893CC9}] => (Allow) G:\PROGRAMY\NapiProjekt\napisy.exe FirewallRules: [{F93B1E01-BF1A-43F9-B6E2-BDD6EE6A6A08}] => (Allow) G:\PROGRAMY\NapiProjekt\napisy.exe FirewallRules: [UDP Query User{50498583-67AC-4818-8F3A-B9D0D507DC5B}D:\shatteredthrone\www.newgamesbox.net\shattered throne\shatteredthrone.exe] => (Block) D:\shatteredthrone\www.newgamesbox.net\shattered throne\shatteredthrone.exe FirewallRules: [TCP Query User{A409E340-DFC3-41CD-A065-1AED66B8C2A8}D:\shatteredthrone\www.newgamesbox.net\shattered throne\shatteredthrone.exe] => (Block) D:\shatteredthrone\www.newgamesbox.net\shattered throne\shatteredthrone.exe FirewallRules: [{8A0AB749-4E3A-4DAE-B193-955349CA009A}] => (Allow) C:\Users\Burak\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C9DACA77-1E63-4B24-B214-2C8A0A378029}] => (Allow) C:\Users\Burak\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{688DE07C-948D-4426-8B67-FBE42AD84683}] => (Allow) C:\Users\Burak\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{775E4A1B-6402-4B3D-9A84-B317F767CFE9}] => (Allow) C:\Users\Burak\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{DF0348CA-5262-4815-B48C-21A5168C859E}] => (Allow) C:\Users\Burak\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{098808AA-12F5-4D4D-9253-C3CEC8E6EFA9}] => (Allow) C:\Users\Burak\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{1507D231-80D9-4A31-A833-83F4215409C1}] => (Allow) G:\GRY\Bitwa o Śródziemie 2\game.dat FirewallRules: [{A47BDF12-8644-48E1-8A48-1F6302FDB25C}] => (Allow) G:\GRY\Bitwa o Śródziemie 2\game.dat FirewallRules: [TCP Query User{B43A81CF-BF58-4A51-A6BF-ED1E22E945B0}C:\users\burak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\burak\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{C6CB33FB-364C-4F0D-A15F-47F047610491}C:\users\burak\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\burak\appdata\roaming\spotify\spotify.exe FirewallRules: [{D4FF19F5-9E59-4F9A-80EB-CFDE400A945B}] => (Allow) G:\GRY\ZOO Tycon 2\zt.exe FirewallRules: [{595013E9-9E54-4CC8-85BB-B976C6C309E1}] => (Allow) G:\GRY\ZOO Tycon 2\zt.exe FirewallRules: [{B83E0F96-6C0D-4BDB-8F08-4E4E8F6F20EA}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{A50AF774-3A16-4815-86A4-592AACC3F449}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe FirewallRules: [{703009BB-85B2-4821-B9C4-0D9471662E20}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{42193BC9-E3FE-4557-AC0D-80DC1FE764C0}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe FirewallRules: [{62C572D7-A937-412B-A9ED-332AE71399FB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{C5C121D0-AC76-43D7-93E4-180FF8D345AE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{AE0F96CE-DA45-4209-9060-F7A8B3E4300A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{85A0A3A1-EFBA-4C17-BCAE-924002B96465}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{6AEDD2CE-3D53-4340-AF33-2123D769556F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{404F0D78-9BDF-4946-9603-6AA5F1797A80}] => (Allow) G:\GRY\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe FirewallRules: [{3BA97E70-A9B7-438D-BFCF-69287902B4A4}] => (Allow) G:\GRY\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe FirewallRules: [{02857FEB-9889-48D7-B2E0-B2BFE6142D92}] => (Allow) G:\GRY\SteamLibrary\steamapps\common\Unturned\Unturned.exe FirewallRules: [{E119F5E4-89A5-43D7-918F-644F843C4E5F}] => (Allow) G:\GRY\SteamLibrary\steamapps\common\Unturned\Unturned.exe FirewallRules: [{BB6C11B6-9954-4D96-B2C0-D678703EE013}] => (Allow) G:\GRY\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe FirewallRules: [{E724645D-BB67-4E79-82BB-D5A0FA1B7B6D}] => (Allow) G:\GRY\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe ==================== Restore Points ========================= ATTENTION: System Restore is disabled ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/31/2017 05:17:52 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Program AIMP.exe w wersji 4.1.3.1887 przestał współpracować z systemem Windows i został zamknięty. Aby sprawdzić, czy jest dostępnych więcej informacji na temat tego problemu, sprawdź historię problemu w oknie Zabezpieczenia i konserwacja w Panelu sterowania. Identyfikator procesu: 1304 Godzina rozpoczęcia: 01d30a1013edcd46 Godzina zakończenia: 15 Ścieżka aplikacji: G:\PROGRAMY\AIMP\AIMP.exe Identyfikator raportu: 67716298-7603-11e7-aa68-ecf4bb9af229 Pełna nazwa pakietu powodującego błąd: Identyfikator aplikacji względem pakietu powodującego błąd: Error: (07/27/2017 09:58:22 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to copy temp service file to final location Error: (07/27/2017 09:57:52 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to copy temp service file to final location Error: (07/27/2017 09:57:21 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to copy temp service file to final location Error: (07/27/2017 09:56:51 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to copy temp service file to final location Error: (07/27/2017 09:56:22 AM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to copy temp service file to final location Error: (07/27/2017 09:52:25 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-DOIAODV) Description: Aktywacja aplikacji microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2144927141. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (07/26/2017 11:58:46 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: ) Description: Instalacja dowodu zakupu nie powiodła się. 0xC004E016 Częściowy klucz Pkey=33VPD Identyfikator ACID=? Szczegóły błędu[?] Error: (07/07/2017 08:36:11 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-DOIAODV) Description: Aktywacja aplikacji Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1 nie powiodła się. Błąd: -2147023174. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (07/06/2017 03:15:33 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-DOIAODV) Description: Aktywacja aplikacji Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI nie powiodła się. Błąd: -2147023170. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. System errors: ============= Error: (08/02/2017 06:28:18 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (08/02/2017 06:26:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi SecDrv z powodu następującego błędu: Nastąpiło zablokowanie ładowania sterownika Error: (08/02/2017 06:26:39 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS Error: (08/01/2017 11:13:32 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-DOIAODV) Description: Serwer {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (08/01/2017 11:13:28 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (08/01/2017 08:31:37 PM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT) Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (08/01/2017 08:31:19 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Optymalizacja dostarczania zawiesiła się podczas uruchamiania. Error: (08/01/2017 08:28:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Upłynął limit czasu (30000 ms) podczas oczekiwania na odpowiedź transakcji z usługi avast! Antivirus. Error: (08/01/2017 08:27:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi SecDrv z powodu następującego błędu: Nastąpiło zablokowanie ładowania sterownika Error: (08/01/2017 08:27:15 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS ==================== Memory info =========================== Processor: AMD A8-5545M APU with Radeon(tm) HD Graphics Percentage of memory in use: 42% Total physical RAM: 7373.11 MB Available physical RAM: 4272.02 MB Total Virtual: 10701.11 MB Available Virtual: 7249.49 MB ==================== Drives ================================ Drive c: (WINDOWS) (Fixed) (Total:84.47 GB) (Free:12.96 GB) NTFS Drive d: (POBRANE) (Fixed) (Total:295.96 GB) (Free:31.88 GB) NTFS Drive e: (The Banner Saga) (CDROM) (Total:3.66 GB) (Free:0 GB) CDFS Drive f: (O16.X64.pl.16.03) (CDROM) (Total:1.93 GB) (Free:0 GB) CDFS Drive g: (DYSK-BURAK) (Fixed) (Total:550.59 GB) (Free:336.99 GB) NTFS Drive h: (Skyrim LE) (CDROM) (Total:23.93 GB) (Free:0 GB) CDFS Drive i: (KOTOR GOG.COM) (CDROM) (Total:3 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 9CA5AE90) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=84.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=550.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=296 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================