Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-03-2017 Ran by Kret (29-03-2017 17:06:58) Running from C:\Users\Kret\Downloads Windows 10 Pro Version 1607 (X64) (2017-02-03 15:23:45) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4219466776-1103527012-825538704-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-4219466776-1103527012-825538704-503 - Limited - Disabled) defaultuser0 (S-1-5-21-4219466776-1103527012-825538704-1000 - Limited - Disabled) => C:\Users\defaultuser0 Guest (S-1-5-21-4219466776-1103527012-825538704-501 - Limited - Disabled) Kret (S-1-5-21-4219466776-1103527012-825538704-1001 - Administrator - Enabled) => C:\Users\Kret ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-4219466776-1103527012-825538704-1001\...\uTorrent) (Version: 3.4.9.43388 - BitTorrent Inc.) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.127 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{E3C27552-F408-6465-3CA2-AA63826EC350}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Catalyst Control Center Next Localization BR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games) League of Legends (x32 Version: 4.2.1 - Riot Games) Hidden Malwarebytes (wersja 3.0.6.1469) (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mozilla Firefox 52.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 52.0.2 (x86 pl)) (Version: 52.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.0.2.6291 - Mozilla) OEM Application Profile (HKLM-x32\...\{D9559CE2-9C58-F414-43EA-F908FEA13BB8}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7534 - Realtek Semiconductor Corp.) Skype™ 7.33 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.33.104 - Skype Technologies S.A.) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.1 - TeamSpeak Systems GmbH) WinRAR 5.40 (64-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4219466776-1103527012-825538704-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Kret\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-4219466776-1103527012-825538704-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Kret\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\amd64\FileSyncShell64.dll => No File CustomCLSID: HKU\S-1-5-21-4219466776-1103527012-825538704-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Kret\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\amd64\FileSyncShell64.dll => No File ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {2C37A91D-98A5-40BD-B9C1-D47A5608A43F} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcTrigger (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll 2017-03-16 07:04 - 2017-03-04 09:19 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll 2017-03-29 16:31 - 2017-02-24 06:23 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2017-03-16 07:04 - 2017-03-04 09:19 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll 2017-02-03 22:42 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-16 07:03 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-16 07:04 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-16 07:04 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-16 07:04 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-03-16 07:04 - 2017-03-04 08:05 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-03-16 07:04 - 2017-03-04 08:08 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-06-30 22:38 - 2015-06-30 22:38 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2016-07-16 13:47 - 2016-07-16 13:45 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4219466776-1103527012-825538704-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg DNS Servers: 192.168.100.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == HKU\S-1-5-21-4219466776-1103527012-825538704-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-4219466776-1103527012-825538704-1001\...\StartupApproved\Run: => "Skype" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{0C9775A9-41ED-41F2-9266-150713461754}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{91B4F6EA-4EFD-43B4-A101-6F351E43ABE1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{F881F343-9ED4-431A-AA2A-CF4386E38434}C:\gry\counter-strike 1.6 v48\hl.exe] => (Allow) C:\gry\counter-strike 1.6 v48\hl.exe FirewallRules: [UDP Query User{60F33A86-144F-46DA-A218-B11A5C0E76A9}C:\gry\counter-strike 1.6 v48\hl.exe] => (Allow) C:\gry\counter-strike 1.6 v48\hl.exe FirewallRules: [TCP Query User{15152935-D323-4B69-94F4-B87353A3C9BA}C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [UDP Query User{516235E3-5F77-4024-81DF-171608974AFE}C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [{4292182A-890A-4898-89FF-9535DCACC7D9}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe FirewallRules: [{8D042E28-6408-47FB-A0E8-7812CBFDB136}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe FirewallRules: [{C86B4110-0BFC-40C5-8E63-D16E0911089B}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe FirewallRules: [{3BB7C225-D6F4-4334-9FB1-34B4BC898916}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe FirewallRules: [TCP Query User{D18E099A-5787-447E-8CC9-A7B45F523E20}C:\program files\java\jre1.8.0_121\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [UDP Query User{B6A76C11-4369-4D67-BA24-6CF3925E2A84}C:\program files\java\jre1.8.0_121\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [TCP Query User{BBC7BC4F-14C6-47A9-8A43-C4A077E21EB9}C:\users\kret\downloads\wow server\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\wow server\_server\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{D905520F-A562-48EF-BA83-41A7E4DD03DE}C:\users\kret\downloads\wow server\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\wow server\_server\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{5E27C85A-9FF0-4DFD-A07D-A4D2C4E16870}C:\users\kret\downloads\wow server\release\authserver.exe] => (Allow) C:\users\kret\downloads\wow server\release\authserver.exe FirewallRules: [UDP Query User{F869147B-56E6-4B29-B072-7A9530D03A30}C:\users\kret\downloads\wow server\release\authserver.exe] => (Allow) C:\users\kret\downloads\wow server\release\authserver.exe FirewallRules: [TCP Query User{7583F06A-F8F4-462E-B4DD-21D83C861ABF}C:\users\kret\downloads\wow server\release\worldserver.exe] => (Allow) C:\users\kret\downloads\wow server\release\worldserver.exe FirewallRules: [UDP Query User{92F19335-D0D5-480F-A544-5849C627DD47}C:\users\kret\downloads\wow server\release\worldserver.exe] => (Allow) C:\users\kret\downloads\wow server\release\worldserver.exe FirewallRules: [{BE665FDD-5DC6-4438-89B2-B77F2282F13C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{EEBB2948-7549-41D8-AD50-0DF218782C29}C:\users\kret\downloads\server wow\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\server wow\_server\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{54C971CC-51E0-44EB-AE68-8FFF9BCAD310}C:\users\kret\downloads\server wow\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\server wow\_server\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{B4C65369-1484-473E-A0BF-8C7E7E7BEED1}C:\users\kret\downloads\server wow\release\authserver.exe] => (Allow) C:\users\kret\downloads\server wow\release\authserver.exe FirewallRules: [UDP Query User{2D568CDA-0B82-474B-8BBC-FF1876C99313}C:\users\kret\downloads\server wow\release\authserver.exe] => (Allow) C:\users\kret\downloads\server wow\release\authserver.exe FirewallRules: [TCP Query User{6678C556-A650-4EA8-AE83-88480A1637F7}C:\users\kret\downloads\server wow\release\worldserver.exe] => (Allow) C:\users\kret\downloads\server wow\release\worldserver.exe FirewallRules: [UDP Query User{D0758A34-8AEC-4C9F-B22B-501A9B338BB6}C:\users\kret\downloads\server wow\release\worldserver.exe] => (Allow) C:\users\kret\downloads\server wow\release\worldserver.exe FirewallRules: [TCP Query User{AC561217-96A8-410A-B6DE-35BE9860F990}C:\users\kret\downloads\zapasowy server\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\zapasowy server\_server\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{240A590A-F7F7-4B5E-8F5F-374772636A9C}C:\users\kret\downloads\zapasowy server\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\zapasowy server\_server\mysql\bin\mysqld.exe FirewallRules: [{63C024DF-30E7-4E8B-9C3C-BB542D441D5A}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{A5D33025-A7D7-4C7F-9F62-A927E6535D7B}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{B75FD60D-BAE0-4A23-B554-D02413D986A5}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{D82C6724-D841-43FE-BD2B-09054C1EBEDD}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{0425E63A-DD08-42C2-B615-D51F9C99F272}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe FirewallRules: [{0F05AEB7-B042-49C6-AF77-51891A88BFBE}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe FirewallRules: [{D6B5727E-FE8A-4534-99DD-7436CAB7926F}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{72781813-C647-49CA-BD41-617AD9E554EF}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{9A236682-2E70-48E5-8D7F-EE6D404945D3}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{14712BB2-F35D-45B0-9703-024EA35ECE2D}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{46BC9F03-591D-4E8F-8763-7E17FE5640B3}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe FirewallRules: [{CB45A86E-883B-4778-A475-48A4F3B256B0}] => (Allow) C:\Users\Kret\AppData\Local\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe FirewallRules: [{138489C1-829C-4297-B56D-10B8287104CC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{1797289D-D1B3-4F4A-92DB-398ABDFE1374}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{AD5B79CB-79A4-4787-A880-F5412ED43CE4}C:\users\kret\downloads\mini_server_11\udrive\bin\mysqld-opt.exe] => (Allow) C:\users\kret\downloads\mini_server_11\udrive\bin\mysqld-opt.exe FirewallRules: [UDP Query User{8D11CE58-0549-485C-B4D5-D324BDEA4361}C:\users\kret\downloads\mini_server_11\udrive\bin\mysqld-opt.exe] => (Allow) C:\users\kret\downloads\mini_server_11\udrive\bin\mysqld-opt.exe FirewallRules: [TCP Query User{8C19038C-E11E-44B3-B432-5053C22D907B}C:\users\kret\downloads\server\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\server\_server\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{9E7434FD-FBD1-4760-A1B2-F628E2EF191C}C:\users\kret\downloads\server\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\server\_server\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{108D8F3D-A013-44FE-9090-FA9BE535F721}C:\users\kret\downloads\server\_server\apache\bin\apache.exe] => (Allow) C:\users\kret\downloads\server\_server\apache\bin\apache.exe FirewallRules: [UDP Query User{1A600C2E-42DB-4C07-97E0-91B01901488F}C:\users\kret\downloads\server\_server\apache\bin\apache.exe] => (Allow) C:\users\kret\downloads\server\_server\apache\bin\apache.exe FirewallRules: [TCP Query User{56D866EE-4563-4BA6-A524-15F3600E4084}C:\users\kret\downloads\server\release\authserver.exe] => (Allow) C:\users\kret\downloads\server\release\authserver.exe FirewallRules: [UDP Query User{847649A4-73D5-4020-83F2-5FF53ADB0F25}C:\users\kret\downloads\server\release\authserver.exe] => (Allow) C:\users\kret\downloads\server\release\authserver.exe FirewallRules: [TCP Query User{E678315C-EE6D-47C1-BF2C-0EF3EC718BAD}C:\users\kret\downloads\server\release\worldserver.exe] => (Allow) C:\users\kret\downloads\server\release\worldserver.exe FirewallRules: [UDP Query User{5BFF09CE-360A-4F7B-8FFE-48A3602A69B7}C:\users\kret\downloads\server\release\worldserver.exe] => (Allow) C:\users\kret\downloads\server\release\worldserver.exe FirewallRules: [TCP Query User{4B8D1D1C-353F-4E5B-B5E5-226061EF8EA3}C:\games\grand theft auto v\gta5.exe] => (Allow) C:\games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{0859D721-7246-4761-B23E-C7894DF3D62C}C:\games\grand theft auto v\gta5.exe] => (Allow) C:\games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{E2C4F8D9-42A3-48F8-AEB1-899D0A6680EA}C:\program files\strogino cs portal\counter-strike global offensive\bin\tools\steamcmd.exe] => (Allow) C:\program files\strogino cs portal\counter-strike global offensive\bin\tools\steamcmd.exe FirewallRules: [UDP Query User{04A4EC0B-D8C2-44D2-8033-CA7752B0D4C5}C:\program files\strogino cs portal\counter-strike global offensive\bin\tools\steamcmd.exe] => (Allow) C:\program files\strogino cs portal\counter-strike global offensive\bin\tools\steamcmd.exe FirewallRules: [TCP Query User{83108EDE-32E8-412C-913E-0EDFA6BA3F08}C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe] => (Allow) C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe FirewallRules: [UDP Query User{132A3A73-5556-4342-B4D9-83D79DA4478D}C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe] => (Allow) C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe FirewallRules: [TCP Query User{88C5D7C4-052E-4712-B3BC-D0F9AC54D7E6}C:\users\kret\downloads\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\_server\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{DF899DE0-F0AB-48A2-B063-90C935322292}C:\users\kret\downloads\_server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\_server\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{30805C09-BA9B-483A-A11B-3CE261D0D2F4}C:\users\kret\downloads\release\authserver.exe] => (Allow) C:\users\kret\downloads\release\authserver.exe FirewallRules: [UDP Query User{07EB4AAA-A8B8-4C88-89C8-75E5C3606856}C:\users\kret\downloads\release\authserver.exe] => (Allow) C:\users\kret\downloads\release\authserver.exe FirewallRules: [TCP Query User{41D22D18-EBE2-47CA-948C-5DC3DAAA0EE4}C:\users\kret\downloads\release\worldserver.exe] => (Allow) C:\users\kret\downloads\release\worldserver.exe FirewallRules: [UDP Query User{1A4FF55E-B479-4A47-96C4-75053496DFAB}C:\users\kret\downloads\release\worldserver.exe] => (Allow) C:\users\kret\downloads\release\worldserver.exe FirewallRules: [{2346602E-8ADC-4A5B-A8DC-2C435EC9A6AD}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{A03A6D9A-B60E-4BFF-AEC3-8D819092977A}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{4E921042-0038-42D1-B03F-FE37AFAAA451}] => (Allow) C:\Users\Kret\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{D6B35E12-A0FA-4BCF-A0CA-5203EB9B7572}] => (Allow) C:\Users\Kret\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{50369D4C-27FB-40AF-BB43-9D56AE607201}] => (Allow) C:\Users\Kret\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C840DE91-9799-4FDC-A47F-D13C5EAB2B38}] => (Allow) C:\Users\Kret\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{FA9DB560-8344-404B-AFDF-D5B541EDBA2C}] => (Allow) C:\Users\Kret\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{56F33303-53BE-4C0C-B8A7-33395873E8C8}] => (Allow) C:\Users\Kret\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{80B89D44-A04A-4593-B8FD-CF97A21DBB13}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{DD1017E7-5875-4B29-901A-9DC3557663A1}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\mysql\bin\mysqld.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{67AA4A49-CE7B-422C-8750-CA54C0A53F95}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\authserver.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\authserver.exe FirewallRules: [UDP Query User{78073AB2-F93D-4CB9-B898-BD5CA7D7E46C}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\authserver.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\authserver.exe FirewallRules: [TCP Query User{3AB6FACB-B468-4F6A-BE09-DE447597311C}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\apache\bin\httpd.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\apache\bin\httpd.exe FirewallRules: [UDP Query User{A7E7E0EB-FFF3-4378-8E5E-50AA7F6DDF4D}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\apache\bin\httpd.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\server\apache\bin\httpd.exe FirewallRules: [TCP Query User{48073FCB-8424-4D2D-AE67-ED46D9EB1678}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\worldserver.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\worldserver.exe FirewallRules: [UDP Query User{E5823F33-4F13-4855-B01F-2B4679865E78}C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\worldserver.exe] => (Allow) C:\users\kret\downloads\3.3.5a (with-transmog) (64-bit) mysql 5.6 - no-maps\core\worldserver.exe FirewallRules: [{A4074929-CEAE-4D53-95D5-62DD02CCAE80}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{FA8ED1CF-3D55-4DCF-A5F8-9756813922F4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{A0850AF8-8E7E-42F8-ADD5-61BD23E3445D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{01E4AF4A-EBEE-463F-8025-23137D66DBB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{BB660DC5-F89D-456E-A1EE-3B919F20639F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{94D090D0-DA9B-40C6-83B2-F60D524F3262}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{2C1219B1-C2A0-43DE-8479-700DDF47435A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{06D3366A-7982-4272-98E5-26DA0742AB69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe FirewallRules: [{A96F1C9E-2744-4685-9934-4414648C1743}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{61118804-3CA0-4F73-A1FA-A264B20F4FB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{AA4DEF45-13AB-48DA-9CD6-B12DD3386508}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{64BD23D3-D34C-42EA-94A4-7E754800D054}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{B5C52FF5-50D5-4C95-8AFB-E25F5CDF5E43}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{3F518A59-2BBC-4602-94C0-7BEBADDCF620}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe ==================== Restore Points ========================= 25-03-2017 13:00:18 Usunięto: Microsoft Visual C++ 2005 Redistributable 28-03-2017 17:58:42 Operacja przywracania ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (03/29/2017 04:38:24 PM) (Source: ATIeRecord) (EventID: 16396) (User: ) Description: ATI EEU PnP start/stop failed Error: (03/29/2017 04:37:35 PM) (Source: ATIeRecord) (EventID: 16396) (User: ) Description: ATI EEU PnP start/stop failed Error: (03/29/2017 04:29:49 PM) (Source: ATIeRecord) (EventID: 16396) (User: ) Description: ATI EEU PnP start/stop failed Error: (03/29/2017 04:28:11 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-PGJ6L1Q) Description: Aktywacja aplikacji Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App nie powiodła się. Błąd: -2144927142. Więcej informacji można znaleźć w dzienniku Microsoft-Windows-TWinUI/Działa. Error: (03/29/2017 04:26:40 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: DESKTOP-PGJ6L1Q) Description: Działanie pakietu Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe+MicrosoftEdge zostało zakończone, ponieważ operacja wstrzymywania pakietu trwała zbyt długo. Error: (03/29/2017 04:25:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nazwa aplikacji powodującej błąd: SearchUI.exe, wersja: 10.0.14393.953, sygnatura czasowa: 0x58ba5a2f Nazwa modułu powodującego błąd: CortanaApi.dll, wersja: 0.0.0.0, sygnatura czasowa: 0x58ba5ae1 Kod wyjątku: 0x80000003 Przesunięcie błędu: 0x0000000000064ddd Identyfikator procesu powodującego błąd: 0xde4 Godzina uruchomienia aplikacji powodującej błąd: 0x01d2a897bd6b8a53 Ścieżka aplikacji powodującej błąd: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Ścieżka modułu powodującego błąd: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll Identyfikator raportu: 1a9513e0-764e-4e62-9ea7-ec9fbc56271d Pełna nazwa pakietu powodującego błąd: Microsoft.Windows.Cortana_1.7.0.14393_neutral_neutral_cw5n1h2txyewy Identyfikator aplikacji względem pakietu powodującego błąd: CortanaUI Error: (03/29/2017 04:25:11 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: DESKTOP-PGJ6L1Q) Description: Działanie pakietu Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe+MicrosoftEdge zostało zakończone, ponieważ operacja wstrzymywania pakietu trwała zbyt długo. Error: (03/29/2017 04:24:54 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: DESKTOP-PGJ6L1Q) Description: Działanie pakietu Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe+MicrosoftEdge zostało zakończone, ponieważ operacja wstrzymywania pakietu trwała zbyt długo. Error: (03/29/2017 04:23:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: DESKTOP-PGJ6L1Q) Description: Działanie pakietu Microsoft.WindowsStore_11701.1001.79.0_x64__8wekyb3d8bbwe+App zostało zakończone, ponieważ operacja wstrzymywania pakietu trwała zbyt długo. Error: (03/29/2017 04:21:19 PM) (Source: ATIeRecord) (EventID: 16396) (User: ) Description: ATI EEU PnP start/stop failed System errors: ============= Error: (03/29/2017 04:38:25 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/29/2017 04:37:39 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024001e: Definition Update for Windows Defender - KB2267602 (Definition 1.239.365.0). Error: (03/29/2017 04:37:35 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/29/2017 04:30:08 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/29/2017 04:29:56 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} i identyfikatorem aplikacji APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/29/2017 04:29:49 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 16:21:18 na ‎29.‎03.‎2017 było nieoczekiwane. Error: (03/29/2017 04:27:55 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PGJ6L1Q) Description: Serwer {3185A766-B338-11E4-A71E-12E3F512A338} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (03/29/2017 04:27:29 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Usługa Optymalizacja dostarczania zawiesiła się podczas uruchamiania. Error: (03/29/2017 04:27:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: Zgodnie z ustawieniami uprawnienia application-specific nie jest udzielane uprawnienie Local Activation do aplikacji serwera COM z identyfikatorem klasy CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} i identyfikatorem aplikacji APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} użytkownikowi NT AUTHORITY\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (Using LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Unavailable (Unavailable). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe. Error: (03/29/2017 04:26:48 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PGJ6L1Q) Description: Serwer {4991D34B-80A1-4291-83B6-3328366B9097} nie zarejestrował się w modelu DCOM w wymaganym czasie. CodeIntegrity: =================================== Date: 2017-03-19 06:03:21.067 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2017-03-19 06:03:20.387 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-13 19:09:26.106 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\SysWOW64\usermgrcli.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-13 19:09:15.409 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\SysWOW64\usermgrcli.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-05 22:55:39.352 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2017-02-05 22:55:39.291 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: AMD A8-7600 Radeon R7, 10 Compute Cores 4C+6G Percentage of memory in use: 13% Total physical RAM: 15320.92 MB Available physical RAM: 13317.75 MB Total Virtual: 30680.92 MB Available Virtual: 28530.53 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:1862.53 GB) (Free:1801.21 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: A1322934) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1862.5 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================