Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-11-2017 03 Ran by melgignac (13-11-2017 09:25:26) Running from C:\Users\melgignac\Desktop Windows 8.1 (Update) (X64) (2017-09-17 21:43:54) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4136111009-1697209817-340259121-500 - Administrator - Disabled) Guest (S-1-5-21-4136111009-1697209817-340259121-501 - Limited - Enabled) melgignac (S-1-5-21-4136111009-1697209817-340259121-1001 - Administrator - Enabled) => C:\Users\melgignac ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Apple Application Support (32 bits) (HKLM-x32\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{D0E45DEC-F4B9-4370-A9DF-66837789C2EF}) (Version: 6.0.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5}) (Version: 11.0.0.30 - Apple Inc.) Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.) BitTorrent (HKU\S-1-5-21-4136111009-1697209817-340259121-1001\...\BitTorrent) (Version: 7.10.0.43917 - BitTorrent Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 61.0.3163.100 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) iTunes (HKLM\...\{89B08926-B965-43B5-8C71-C10433760B14}) (Version: 12.7.0.166 - Apple Inc.) KaraFun Player 2 (HKLM-x32\...\KaraFun Player 2_is1) (Version: 2.5.1.3 - Recisio) Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) mIRC (HKLM-x32\...\mIRC) (Version: 7.51 - mIRC Co. Ltd.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4136111009-1697209817-340259121-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-08-27] (Intel Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {18035BA4-E962-40A0-BF53-F5D32ABA63C0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-16] (Google Inc.) Task: {6F374B4E-0B89-4E11-897D-2716D70709B3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.) Task: {9790647F-97F4-40D2-B3D5-2F55529E789A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-16] (Google Inc.) Task: {AD9A79A6-B9D1-441D-8834-1D8917F09974} - \Microsoft\Windows\Setup\EOSNotify -> No File <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\melgignac\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\Polarr Photo Editor.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=djonnbgfieijldcieafgjcnhmpcfpmgg ==================== Loaded Modules (Whitelisted) ============== 2017-09-01 01:49 - 2017-09-01 01:49 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-09-01 01:49 - 2017-09-01 01:49 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-09-11 13:45 - 2017-09-11 13:45 - 000092472 _____ () C:\Program Files\iTunes\zlib1.dll 2017-09-11 13:45 - 2017-09-11 13:45 - 001356088 _____ () C:\Program Files\iTunes\libxml2.dll 2017-09-26 15:28 - 2017-09-21 02:29 - 004022616 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libglesv2.dll 2017-09-26 15:28 - 2017-09-21 02:29 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libegl.dll 2017-10-25 13:19 - 2017-10-23 11:14 - 031229440 _____ () C:\Users\melgignac\AppData\Local\Google\Chrome\User Data\PepperFlash\27.0.0.183\pepflashplayer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 08:25 - 2013-08-22 08:25 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4136111009-1697209817-340259121-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\melgignac\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{3CE0EEB5-EF13-4185-8525-EFCEBD39F7C1}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A4BB6C60-CA27-4AD7-B465-FFD17DA55518}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{145B8542-96FB-453E-981C-6A7819E796C0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{014F7B4D-EFCB-4C1A-9179-C4CD6033824D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{56AD924C-B9ED-462D-B87F-65188692CEDB}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{14542C4A-C721-4D1E-B323-180FE512EDEE}] => (Allow) C:\Users\melgignac\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{35F46116-F7D5-4E48-8060-44EB7C4BCBCC}] => (Allow) C:\Users\melgignac\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{81E8AE25-DE84-4B2D-B768-D22788EE2D46}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{1C17A243-18A7-45B1-9B55-E3AD3D25168B}C:\program files (x86)\mirc\mirc.exe] => (Allow) C:\program files (x86)\mirc\mirc.exe FirewallRules: [UDP Query User{8BFF960F-AAB7-447F-BDC1-E4AF2A3EFA18}C:\program files (x86)\mirc\mirc.exe] => (Allow) C:\program files (x86)\mirc\mirc.exe FirewallRules: [{4094A2FE-8DC8-4CCD-BFC5-E55FF5BE74E5}] => (Allow) C:\Program Files (x86)\e2eSoft\iVCam\iVCam.exe FirewallRules: [{94777AA3-0BB6-4DD2-A5AE-03B121694BCD}] => (Allow) C:\Program Files (x86)\e2eSoft\iVCam\iVCam.exe FirewallRules: [{EF0B9BB1-386D-44A2-AA8F-5AD98C83A690}] => (Allow) LPort=5895 FirewallRules: [{B7FE3107-7FEE-4605-9327-F6D33744E77C}] => (Allow) LPort=5895 ==================== Restore Points ========================= 27-10-2017 05:43:59 Scheduled Checkpoint 03-11-2017 06:14:19 Scheduled Checkpoint 11-11-2017 14:08:42 Scheduled Checkpoint ==================== Faulty Device Manager Devices ============= Name: Intel(R) 82579LM Gigabit Network Connection #2 Description: Connexion réseau Intel(R) 82579LM Gigabit Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Intel Corporation Service: e1iexpress Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (11/09/2017 04:19:24 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme IEXPLORE.EXE version 11.0.9600.18817 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 1664 Heure de début : 01d3593b8f0a3a8c Heure de fin : 0 Chemin d’accès de l’application : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE ID de rapport : 0f2d0fd5-c52f-11e7-be73-7054d21643df Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (11/09/2017 03:58:45 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante osk.exe, version : 6.3.9600.17415, horodatage : 0x545048d7 Nom du module défaillant : ntdll.dll, version : 6.3.9600.18821, horodatage : 0x59ba86db Code d’exception : 0xc0000374 Décalage d’erreur : 0x00000000000f1c10 ID du processus défaillant : 0x15a0 Heure de début de l’application défaillante : 0x01d35923bb5aab47 Chemin d’accès de l’application défaillante : C:\WINDOWS\System32\osk.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : 30a85f6e-c52c-11e7-be73-7054d21643df Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (11/09/2017 01:20:38 AM) (Source: MsiInstaller) (EventID: 10005) (User: Melanie) Description: Produit : Bonjour -- Une version ultérieure de Bonjour est déjà installée sur cet ordinateur. Error: (11/04/2017 11:40:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante osk.exe, version : 6.3.9600.17415, horodatage : 0x545048d7 Nom du module défaillant : ntdll.dll, version : 6.3.9600.18821, horodatage : 0x59ba86db Code d’exception : 0xc0000374 Décalage d’erreur : 0x00000000000f1c10 ID du processus défaillant : 0xc44 Heure de début de l’application défaillante : 0x01d355eeaf6af9b6 Chemin d’accès de l’application défaillante : C:\WINDOWS\System32\osk.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : 76aae8b9-c1e3-11e7-be73-7054d21643df Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (11/04/2017 11:17:52 PM) (Source: MsiInstaller) (EventID: 10005) (User: Melanie) Description: Produit : Bonjour -- Une version ultérieure de Bonjour est déjà installée sur cet ordinateur. Error: (11/04/2017 03:39:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Melanie) Description: Le package 4DF9E0F8.Netflix_2.21.0.37_x64__mcm4njqhnhss8+App a été interrompu, car sa suspension a été trop longue. Error: (11/01/2017 01:24:32 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme Netflix.exe version 2.21.0.37 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 129c Heure de début : 01d352b7b3dc58a8 Heure de fin : 4294967295 Chemin d’accès de l’application : C:\Program Files\WindowsApps\4DF9E0F8.Netflix_2.21.0.37_x64__mcm4njqhnhss8\Netflix.exe ID de rapport : 5060c839-becd-11e7-be72-7054d21643df Nom complet du package défaillant : 4DF9E0F8.Netflix_2.21.0.37_x64__mcm4njqhnhss8 ID de l’application relative au package défaillant : App Error: (11/01/2017 01:24:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Melanie) Description: Le package 4DF9E0F8.Netflix_2.21.0.37_x64__mcm4njqhnhss8+App a été interrompu, car sa suspension a été trop longue. Error: (10/31/2017 12:03:18 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration de l’expérience utilisateur à Microsoft (erreur 80070005). Error: (10/29/2017 08:31:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante Netflix.exe, version : 2.21.0.37, horodatage : 0x5908b94d Nom du module défaillant : Windows.UI.Xaml.dll, version : 6.3.9600.18298, horodatage : 0x570551e1 Code d’exception : 0xc000027b Décalage d’erreur : 0x0000000000982cca ID du processus défaillant : 0xb34 Heure de début de l’application défaillante : 0x01d3511e6160e722 Chemin d’accès de l’application défaillante : C:\Program Files\WindowsApps\4DF9E0F8.Netflix_2.21.0.37_x64__mcm4njqhnhss8\Netflix.exe Chemin d’accès du module défaillant: C:\Windows\System32\Windows.UI.Xaml.dll ID de rapport : 11397b3a-bd12-11e7-be71-7054d21643df Nom complet du package défaillant : 4DF9E0F8.Netflix_2.21.0.37_x64__mcm4njqhnhss8 ID de l’application relative au package défaillant : App System errors: ============= Error: (11/13/2017 02:43:08 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Service de l’iPod s’est terminé de façon inattendue pour la 1ème fois. Error: (11/13/2017 02:43:08 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Apple Mobile Device Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Restart the service. Error: (11/13/2017 02:43:08 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Intel(R) HD Graphics Control Panel Service s’est terminé de façon inattendue pour la 1ème fois. Error: (11/13/2017 02:43:08 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Service Bonjour s’est terminé de façon inattendue pour la 1ème fois. Error: (11/12/2017 11:13:45 AM) (Source: DCOM) (EventID: 10010) (User: Melanie) Description: Le serveur {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (11/12/2017 11:13:15 AM) (Source: DCOM) (EventID: 10010) (User: Melanie) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (11/12/2017 06:55:33 AM) (Source: DCOM) (EventID: 10010) (User: Melanie) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (11/12/2017 06:55:03 AM) (Source: DCOM) (EventID: 10010) (User: Melanie) Description: Le serveur {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (11/11/2017 01:45:15 PM) (Source: DCOM) (EventID: 10010) (User: Melanie) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (11/11/2017 01:44:45 PM) (Source: DCOM) (EventID: 10010) (User: Melanie) Description: Le serveur {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. CodeIntegrity: =================================== Date: 2017-11-13 09:24:46.511 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-13 09:24:46.292 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-13 02:57:40.507 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-13 02:57:40.304 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-12 11:51:37.952 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-12 11:51:37.696 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-12 11:51:37.321 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-12 11:51:36.999 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-12 11:50:44.000 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-12 11:50:43.750 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3220 CPU @ 3.30GHz Percentage of memory in use: 40% Total physical RAM: 6044.4 MB Available physical RAM: 3574.44 MB Total Virtual: 7004.4 MB Available Virtual: 4353.73 MB ==================== Drives ================================ Drive c: (Local Disk) (Fixed) (Total:449.45 GB) (Free:402.03 GB) NTFS Drive d: (Image) (Fixed) (Total:6.08 GB) (Free:1.91 GB) NTFS Drive e: (System) (Fixed) (Total:0.28 GB) (Free:0.24 GB) NTFS ==>[system with boot components (obtained from drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 6FCD073B) Partition 1: (Not Active) - (Size=6.1 GB) - (Type=OF Extended) Partition 2: (Not Active) - (Size=286 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449.4 GB) - (Type=07 NTFS) Partition 4: (Active) - (Size=9.9 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================