Additional scan result of Farbar Recovery Scan Tool (x86) Version: 28-09-2016 Ran by User (29-09-2016 19:21:00) Running from C:\Users\User\Desktop Microsoft Windows 10 Enterprise (X86) (2015-07-10 04:32:44) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-697809092-3072038407-3458833411-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-697809092-3072038407-3458833411-503 - Limited - Disabled) Guest (S-1-5-21-697809092-3072038407-3458833411-501 - Limited - Disabled) User (S-1-5-21-697809092-3072038407-3458833411-1001 - Administrator - Enabled) => C:\Users\User ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET Smart Security 9.0.375.0 (Disabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: ESET Smart Security 9.0.375.0 (Disabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} FW: ESET Personal firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe AIR (HKLM\...\Adobe AIR) (Version: 17.0.0.124 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated) Adobe Flash Player 20 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) (HKLM\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.) COWON Media Center - jetAudio Plus VX (HKLM\...\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}) (Version: 8.0.14 - COWON) ESET Smart Security (HKLM\...\{8FFA27DB-0D5F-4472-A1E2-EB54CCE7A98E}) (Version: 9.0.375.0 - ESET, spol. s r.o.) FormatFactory 3.9.5.0 (HKLM\...\FormatFactory) (Version: 3.9.5.0 - Free Time) Google Chrome (HKLM\...\Google Chrome) (Version: 53.0.2785.116 - Google Inc.) Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden Internet Download Manager (HKLM\...\Internet Download Manager) (Version: - Tonec Inc.) Java 8 Update 91 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.14 - Oracle Corporation) Kodi (HKU\S-1-5-21-697809092-3072038407-3458833411-1001\...\Kodi) (Version: - XBMC-Foundation) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft Office 2010 Service Pack 1 (SP1) (HKLM\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{047B0968-E622-4FAA-9B4B-121FA109EDDE}) (Version: - Microsoft) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50709.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mozilla Firefox 49.0.1 (x86 en-US) (HKLM\...\Mozilla Firefox 49.0.1 (x86 en-US)) (Version: 49.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 49.0.1.6109 - Mozilla) PowerISO (HKLM\...\PowerISO) (Version: 5.0 - Power Software Ltd) Skype™ 7.28 (HKLM\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.28.101 - Skype Technologies S.A.) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden UltraISO Premium V9.65 (HKLM\...\UltraISO_is1) (Version: - ) WinRAR 5.31 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ZHPFix 2015 (HKLM\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {1E446910-7779-43BF-AA72-A732C642758B} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\User\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-28] (Microsoft Corporation) Task: {3F15578A-7893-4BAC-A1B2-11D76315BDC3} - System32\Tasks\{C103F03F-A952-49D2-9E1F-3AB481AD98ED} => pcalua.exe -a "C:\Program Files\InstallShield Installation Information\{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}\setup.exe" -c -runfromtemp -l0x0409 -removeonly Task: {58476705-BA13-457D-ACF7-9DEBCC78E494} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-14] (Google Inc.) Task: {E62CA6CC-2850-4D93-816E-76222DEE338E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-04-14] (Google Inc.) Task: {F31D7EF8-31AF-4E29-B9A4-6152E173C5CA} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> " ==================== Loaded Modules (Whitelisted) ============== 2016-04-13 13:37 - 2015-07-15 05:41 - 00025088 _____ () C:\Windows\SYSTEM32\licensemanagerapi.dll 2016-04-13 14:09 - 2015-08-11 11:53 - 00301056 _____ () C:\Windows\System32\diagtrack_wininternal.dll 2011-03-17 10:11 - 2011-03-17 10:11 - 04297568 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2010-10-21 01:45 - 2010-10-21 01:45 - 08801120 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll 2016-09-15 03:03 - 2016-09-07 08:54 - 01766488 _____ () C:\Windows\system32\CoreUIComponents.dll 2016-09-15 03:03 - 2016-09-07 08:54 - 01766488 _____ () C:\Windows\System32\CoreUIComponents.dll 2016-08-28 05:09 - 2016-08-28 05:09 - 01383616 _____ () C:\Users\User\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll 2016-09-15 03:02 - 2016-09-07 07:01 - 00288768 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-09-15 03:03 - 2016-09-07 06:54 - 04317696 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-04-13 14:10 - 2015-11-25 06:58 - 00377856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-15 03:04 - 2016-09-07 06:51 - 01183232 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-09-15 03:04 - 2016-09-07 06:51 - 01425920 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-08-28 05:10 - 2016-08-28 05:10 - 00118976 _____ () C:\Users\User\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll 2016-09-15 02:01 - 2016-09-14 03:38 - 01806152 _____ () C:\Program Files\Google\Chrome\Application\53.0.2785.116\libglesv2.dll 2016-09-15 02:01 - 2016-09-14 03:38 - 00094024 _____ () C:\Program Files\Google\Chrome\Application\53.0.2785.116\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-07-10 11:28 - 2016-04-14 00:37 - 00000826 ___RA C:\Windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-697809092-3072038407-3458833411-1001\Control Panel\Desktop\\Wallpaper -> E:\Volume4\My Photo\Man Utd\Old Trafford\1 (54).jpg DNS Servers: Media is not connected to internet. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{B71F35B4-6045-4D91-B707-95A809E1E54F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{3547C4F7-9921-4276-ACF5-D8A9A7482B67}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{82734216-D7C4-42C4-9834-A8C242B071E1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{1729473E-B65B-4179-B830-6C8124ACC6E7}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{9DD5A55C-D767-4381-B7E9-A2DF0AF8C358}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{E208B2B6-A68B-4B8D-AD6F-B24131B5CFC0}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{5EB32FB7-C401-46A6-B06D-00ED0D67E5DE}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{4EFC4115-55AF-4A3C-ADC6-7A37A55F436C}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{007D4692-85D1-4C37-8C1F-B64764251DCA}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{28C008BA-9BD9-4DFC-A31C-CD0D5192EC42}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{65EE8D66-A587-46C8-9B2C-CAA6B5C17197}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{A2AFFFAC-BBE2-4615-81FB-FC61ADEEC973}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= 27-09-2016 13:52:17 Windows Update ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/28/2016 08:49:15 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-866NI48) Description: Activation of app Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (09/28/2016 08:49:15 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program LockApp.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 378 Start Time: 01d219a16f3c3eae Termination Time: 4294967295 Application Path: C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe Report Id: d73d21b0-85a3-11e6-9488-00248c545f0c Faulting package full name: Microsoft.LockApp_10.0.10240.16384_neutral__cw5n1h2txyewy Faulting package-relative application ID: WindowsDefaultLockScreen Error: (09/28/2016 12:54:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: psxfin.exe, version: 0.0.0.0, time stamp: 0x46d33866 Faulting module name: psxfin.exe, version: 0.0.0.0, time stamp: 0x46d33866 Exception code: 0xc0000005 Fault offset: 0x00002e2a Faulting process id: 0x1d84 Faulting application start time: 0x01d2196d6cfc254c Faulting application path: E:\ManUnited\ألعاب\Emulators\Psx\psxfin.exe Faulting module path: E:\ManUnited\ألعاب\Emulators\Psx\psxfin.exe Report Id: bdeb43b4-0405-452b-aedf-41c04ad47b7f Faulting package full name: Faulting package-relative application ID: Error: (09/28/2016 12:07:34 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-866NI48) Description: Activation of app Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (09/28/2016 12:07:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: DESKTOP-866NI48) Description: App Microsoft.LockApp_10.0.10240.16384_neutral__cw5n1h2txyewy+WindowsDefaultLockScreen did not launch within its allotted time. Error: (09/28/2016 07:33:56 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: microsoftedgecp.exe, version: 11.0.10240.16603, time stamp: 0x565531f0 Faulting module name: EMODEL.dll, version: 11.0.10240.17113, time stamp: 0x57cf8f95 Exception code: 0xc0000409 Fault offset: 0x00186893 Faulting process id: 0xa98 Faulting application start time: 0x01d2194185dbbd52 Faulting application path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe Faulting module path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\EMODEL.dll Report Id: 4b84b690-1593-459f-a20c-37600dedb092 Faulting package full name: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe Faulting package-relative application ID: MicrosoftEdge Error: (09/28/2016 07:33:40 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: microsoftedgecp.exe, version: 11.0.10240.16603, time stamp: 0x565531f0 Faulting module name: EMODEL.dll, version: 11.0.10240.17113, time stamp: 0x57cf8f95 Exception code: 0xc0000409 Fault offset: 0x00186893 Faulting process id: 0x1b8 Faulting application start time: 0x01d219417b6a0023 Faulting application path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe Faulting module path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\EMODEL.dll Report Id: e9896099-eb3e-4af1-a59e-1d354e661cf1 Faulting package full name: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe Faulting package-relative application ID: MicrosoftEdge Error: (09/28/2016 07:31:55 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: microsoftedgecp.exe, version: 11.0.10240.16603, time stamp: 0x565531f0 Faulting module name: EMODEL.dll, version: 11.0.10240.17113, time stamp: 0x57cf8f95 Exception code: 0xc0000409 Fault offset: 0x00186893 Faulting process id: 0xfac Faulting application start time: 0x01d219413d26c56e Faulting application path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe Faulting module path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\EMODEL.dll Report Id: 622c8ffc-7fd8-4f5e-b147-890ffd825439 Faulting package full name: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe Faulting package-relative application ID: MicrosoftEdge Error: (09/28/2016 07:31:46 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: microsoftedgecp.exe, version: 11.0.10240.16603, time stamp: 0x565531f0 Faulting module name: EMODEL.dll, version: 11.0.10240.17113, time stamp: 0x57cf8f95 Exception code: 0xc0000409 Fault offset: 0x00186893 Faulting process id: 0x40c Faulting application start time: 0x01d2194136d2df17 Faulting application path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe Faulting module path: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\EMODEL.dll Report Id: 0b3ac677-7538-4b1d-a749-a387b864f8a8 Faulting package full name: Microsoft.MicrosoftEdge_20.10240.16384.0_neutral__8wekyb3d8bbwe Faulting package-relative application ID: MicrosoftEdge Error: (09/27/2016 01:52:33 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object. Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol. System Error: Access is denied. . System errors: ============= Error: (09/29/2016 02:24:47 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Sync Host_Session1 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (09/29/2016 01:33:18 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 8:53:31 AM on ‎9/‎29/‎2016 was unexpected. Error: (09/28/2016 08:58:01 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the Sync Host_Session1 service to connect. Error: (09/28/2016 08:57:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Sync Host_Session1 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (09/28/2016 06:10:03 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 2:45:52 PM on ‎9/‎28/‎2016 was unexpected. Error: (09/28/2016 02:05:52 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: The previous system shutdown at 12:52:04 PM on ‎9/‎28/‎2016 was unexpected. Error: (09/28/2016 07:34:25 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 42. Error: (09/28/2016 07:34:25 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 42. Error: (09/28/2016 07:34:25 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 42. Error: (09/27/2016 08:55:34 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Sync Host_Session1 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. ==================== Memory info =========================== Processor: Intel(R) Pentium(R) 4 CPU 3.00GHz Percentage of memory in use: 35% Total physical RAM: 3070.92 MB Available physical RAM: 1993.84 MB Total Virtual: 3582.92 MB Available Virtual: 2547.11 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:146 GB) (Free:120.36 GB) NTFS Drive e: () (Fixed) (Total:151.6 GB) (Free:44.1 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 470A4BEE) Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=146 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=151.6 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================