Additional scan result of Farbar Recovery Scan Tool (x86) Version: 23.04.2018 Ran by YOUCEF (05-05-2018 14:39:59) Running from C:\Users\YOUCEF\Downloads Microsoft Windows 7 Ultimate Service Pack 1 (X86) (2017-08-14 14:02:07) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1376225461-1210758792-745474167-500 - Administrator - Disabled) Guest (S-1-5-21-1376225461-1210758792-745474167-501 - Limited - Enabled) YOUCEF (S-1-5-21-1376225461-1210758792-745474167-1000 - Administrator - Enabled) => C:\Users\YOUCEF ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Kaspersky Total Security (Disabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AS: Kaspersky Total Security (Disabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Total Security (Disabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1376225461-1210758792-745474167-1000\...\uTorrent) (Version: 3.5.3.44358 - BitTorrent Inc.) Adobe Acrobat XI Pro (HKLM\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.23 - Adobe Systems) Adobe Flash Player 29 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 29.0.0.113 - Adobe Systems Incorporated) Adobe Flash Player 29 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 29.0.0.140 - Adobe Systems Incorporated) Adobe Flash Player 29 PPAPI (HKLM\...\Adobe Flash Player PPAPI) (Version: 29.0.0.140 - Adobe Systems Incorporated) Adobe Shockwave Player 12.3 (HKLM\...\Adobe Shockwave Player) (Version: 12.3.1.201 - Adobe Systems, Inc.) AOMEI Partition Assistant Standard Edition 6.5 (HKLM\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI Technology Co., Ltd.) Apple Application Support (32 bits) (HKLM\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BA476373-DAE7-4E51-957A-F43F01D9FACD}) (Version: 11.0.0.30 - Apple Inc.) Apple Software Update (HKLM\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.) Ashampoo WinOptimizer 14 (HKLM\...\{4209F371-DEAB-BE89-2E8A-9643100258DD}_is1) (Version: 14.00.05 - Ashampoo GmbH & Co. KG) Atoll Planning Software (HKLM\...\Atoll_is1) (Version: - Forsk) Avanquest update (HKLM\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.34 - Avanquest Software) BB FlashBack Pro 5 (French) (HKLM\...\BB FlashBack Pro 5 (French)) (Version: 5.7.0.3619 - Blueberry) Bit Che (HKLM\...\{D9DA5C41-964F-455F-B5E7-3664519440E8}_is1) (Version: 3.5 build 50 - Convivea Inc.) Canon LBP6020 (HKLM\...\Canon LBP6020) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform) Citrix ICA Client (HKLM\...\Citrix ICA Client) (Version: - ) Conexant 20672 SmartAudio HD (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.32.43.0 - Conexant) Driver Booster 4.5 (HKLM\...\Driver Booster_is1) (Version: 4.5.0 - IObit) Firebird SQL Server - MAGIX Edition (HKLM\...\{6C5F8503-55D2-4398-858C-362B7A7AF51C}) (Version: 2.1.31.0 - MAGIX AG) Foxit PDF Editor (HKLM\...\Foxit PDF Editor) (Version: - ) Google Chrome (HKLM\...\Google Chrome) (Version: 66.0.3359.139 - Google Inc.) Google Earth Pro (HKLM\...\{FA1BBF34-E994-4310-95D7-BE93092B8E61}) (Version: 7.3.1.4507 - Google) Google Earth version 7.1.5.1557 (HKLM\...\{384F931C-F25F-4EDA-BACB-8EE0FCF3AFF5}_is1) (Version: 7.1.5.1557 - willy402) Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Herramientas de corrección de Microsoft Office 2016: español (HKLM\...\{90160000-001F-0C0A-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden HiSuite (HKLM\...\Hi Suite) (Version: 1.0 - Huawei Technologies Co.,Ltd) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 20.6 - Intel) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) Internet Download Manager (HKLM\...\Internet Download Manager) (Version: - Tonec Inc.) Kaspersky Secure Connection (HKLM\...\{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden Kaspersky Secure Connection (HKLM\...\InstallWIX_{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab) Kaspersky Total Security (HKLM\...\{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden Kaspersky Total Security (HKLM\...\InstallWIX_{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab) Kyocera Product Library (HKLM\...\Kyocera Product Library) (Version: 5.0.1120 - KYOCERA Document Solutions Inc.) Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.12.23 - Lenovo) Hidden Lotus Notes 6.5.3 fr (HKLM\...\{BE9B5215-3CC3-44BB-8CE2-83B6738CF1AC}) (Version: 6.53.4258 - IBM) MAGIX Screenshare (HKLM\...\{BBBA7CC8-03C5-4DD3-B685-C44D2D4348B9}) (Version: 4.3.6.1987 - MAGIX AG) MAGIX Speed burnR (MSI) (HKLM\...\{B09C302C-0A2E-4172-A4E9-4129F2B7EBBA}) (Version: 7.0.1.27 - MAGIX AG) MAGIX Vidéo deluxe MX Premium Version à télécharger (HKLM\...\{FE9EF563-CD61-40FB-B4EF-B2DB1B8358A5}) (Version: 11.0.1.4 - MAGIX AG) Hidden MAGIX Vidéo deluxe MX Premium Version à télécharger (HKLM\...\MAGIX_MSI_Videodeluxe18_premium) (Version: 11.0.1.4 - MAGIX AG) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MapInfo Pro 15.0 (HKLM\...\{3A075CC0-8269-48AB-8A55-0B2F203B17B0}) (Version: 15.0 - Pitney Bowes) MapXtreme v8.0.0 Runtime (HKLM\...\{A2F3A7D3-61EE-4D5A-8D0F-1D5F969835C1}) (Version: 8.0.0 - Pitney Bowes Software Inc.) MCOM 13.0 (HKLM\...\{A6DD5F67-0C86-4402-8203-80656CF3248A}_is1) (Version: - Ericsson) MCOM 4.2 (HKLM\...\{E0FEC32C-2915-4588-97C6-57DEFAC2642A}) (Version: - ) Microsoft .NET Framework 4.7 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.7.02053 - Microsoft Corporation) Microsoft .NET Framework 4.7 (العربية) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1025) (Version: 4.7.02053 - Microsoft Corporation) Microsoft .NET Framework 4.7.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02558 - Microsoft Corporation) Microsoft Access database engine 2010 (English) (HKLM\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Network Monitor 3.4 (HKLM\...\{A2F2C44A-869E-4C32-9CEC-E22B1CC91F06}) (Version: 3.4.2350.0 - Microsoft Corporation) Microsoft Network Monitor: NetworkMonitor Parsers 3.4 (HKLM\...\{5A1A9AB2-2F68-462D-A67D-7C855DFF5EEB}) (Version: 3.4.2350.0 - Microsoft Corporation) Microsoft Office Professionnel Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{b55f7208-e02b-4828-ac78-59c73ddf5bc7}) (Version: 12.0.30501.0 - Корпорация Майкрософт) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.0 (HKLM\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) mobiConnect (HKLM\...\mobiConnect) (Version: 11.300.05.02.216 - Huawei Technologies Co.,Ltd) Mozilla Firefox 59.0.2 (x86 en-US) (HKLM\...\Mozilla Firefox 59.0.2 (x86 en-US)) (Version: 59.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0.2.6656 - Mozilla) MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Notepad++ (32-bit x86) (HKLM\...\Notepad++) (Version: 7.5.4 - Notepad++ Team) O&O Defrag Professional (HKLM\...\{FA428DAF-3C74-49D1-8429-BEDDC101ABF9}) (Version: 20.0.465 - O&O Software GmbH) Outils de vérification linguistique 2016 de Microsoft Office - Français (HKLM\...\{90160000-001F-040C-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden PL-2303 USB-to-Serial (HKLM\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.4.17 - Prolific Technology INC) PowerISO (HKLM\...\PowerISO) (Version: 6.5 - Power Software Ltd) Sentinel Runtime (HKLM\...\{39FA0B7C-B7DB-41F4-9169-AEFB61913B36}) (Version: 7.51.1.64592 - Gemalto) Sentinel System Driver Installer 7.5.1 (HKLM\...\{BF9E346B-5ECE-4A18-9510-55729FD08323}) (Version: 7.5.1 - SafeNet, Inc.) SHAREit (HKLM\...\www.ushareit.com_is1) (Version: 4.0.6.177 - SHAREit Technologies Co.Ltd) Skype™ 7.39 (HKLM\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.39.102 - Skype Technologies S.A.) swMSM (HKLM\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.17.115 - Synaptics Incorporated) Taalprogramma's voor Microsoft Office 2016 - Nederlands (HKLM\...\{90160000-001F-0413-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden TEMS Discovery Device 12.1.3 (HKLM\...\{8435089C-F4D4-4017-B72E-1C2B45A21BFE}) (Version: 12.1.3 - InfoVista) TEMS Investigation 16.3.6 (HKLM\...\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}) (Version: 16.3.6 - Ascom) Hidden TEMS Mediator 3.0.4 RelInv19.1.Daily_20171003.4 (HKLM\...\{78DC4A63-A6B7-43E7-8ECD-6B3E9211DB91}) (Version: 3.0.4 - InfoVista Sweden AB) TEMS™ Investigation 16.3.6 Installer (HKLM\...\{e68e5c9c-b0dd-4bb2-8632-af003b2f3a6c}) (Version: 16.3.30526.1 - Ascom) Update for Skype for Business 2016 (KB4018323) 32-Bit Edition (HKLM\...\{90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{FC6D613D-A7D9-4C85-AC63-D2C4AFC69646}) (Version: - Microsoft) Update for Skype for Business 2016 (KB4018323) 32-Bit Edition (HKLM\...\{90160000-012B-040C-0000-0000000FF1CE}_Office16.PROPLUS_{FC6D613D-A7D9-4C85-AC63-D2C4AFC69646}) (Version: - Microsoft) UsbFix Anti-Malware Premium (HKLM\...\Usbfix) (Version: 10.0.1.3 - SOSVirus (SOSVirus.Net)) VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN) Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) WinRAR 5.21 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Xilisoft Convertisseur Vidéo Platinum (HKLM\...\Xilisoft Convertisseur Vidéo Platinum) (Version: 7.8.0.20140401 - Xilisoft) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim.dll [2012-09-23] (Adobe Systems Inc.) ContextMenuHandlers1: [ANotepad++] -> {00F3C2EC-A6EE-11DE-A03A-EF8F55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2018-01-01] () ContextMenuHandlers1: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll [2018-05-05] (AO Kaspersky Lab) ContextMenuHandlers1: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Program Files\OO Software\Defrag\oodsh.dll [2016-12-21] (O&O Software GmbH) ContextMenuHandlers1: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2016-02-10] (Power Software Ltd) ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal) ContextMenuHandlers2: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll [2018-05-05] (AO Kaspersky Lab) ContextMenuHandlers2: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Program Files\OO Software\Defrag\oodsh.dll [2016-12-21] (O&O Software GmbH) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes) ContextMenuHandlers4: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll [2018-05-05] (AO Kaspersky Lab) ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2016-02-10] (Power Software Ltd) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2016-03-02] (Intel Corporation) ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim.dll [2012-09-23] (Adobe Systems Inc.) ContextMenuHandlers6: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\shellex.dll [2018-05-05] (AO Kaspersky Lab) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes) ContextMenuHandlers6: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Program Files\OO Software\Defrag\oodsh.dll [2016-12-21] (O&O Software GmbH) ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2016-02-10] (Power Software Ltd) ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-02-15] (Alexander Roshal) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0E97E927-80D8-4C81-9267-3A8B727FD5CB} - System32\Tasks\Microsoft\Windows\Setup\EOSNotify => C:\Windows\system32\EOSNotify.exe [2016-06-25] (Microsoft Corporation) Task: {105B1714-405D-4BBA-9D6A-C795D76ED672} - System32\Tasks\ASC9_SkipUac_YOUCEF => C:\Program Files\IObit\Advanced SystemCare\ASC.exe Task: {15D84330-F866-419E-B093-21E05F56AE05} - System32\Tasks\{F5DA0389-45AC-4B7F-9300-503C96EC571A} => C:\Windows\system32\pcalua.exe -a C:\Users\YOUCEF\Downloads\XperiaCompanion.exe -d C:\Users\YOUCEF\Downloads Task: {3E174196-EC1C-4C0E-A55B-17AC21BEECED} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {4969616E-50C9-47FC-B02B-CBB2BBF299E2} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.) Task: {7D3C373A-AF43-4949-802D-DF1A5B6BA7ED} - System32\Tasks\Driver Booster SkipUAC (YOUCEF) => C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe [2017-07-28] (IObit) Task: {860CECC6-0736-4131-8537-3768019C917E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-08-14] (Google Inc.) Task: {86858A1C-0808-420A-8092-F7B9DD86BA55} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_29_0_0_140_pepper.exe [2018-04-14] (Adobe Systems Incorporated) Task: {B015CF09-8030-4DB6-962B-393E623168D3} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [2018-04-14] (AO Kaspersky Lab) Task: {C1577421-4B4C-4D90-81FE-A3A8C2433B99} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2017-08-14] (Google Inc.) Task: {C15F9EFA-E369-4CEB-AF5A-B10F28D9A451} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2018-04-14] (Adobe Systems Incorporated) Task: {CB379314-8F82-4BD4-9FA3-0917F0EEEF65} - System32\Tasks\{2616E3F6-428C-4D50-9FBD-6192F1237A16} => C:\Windows\system32\pcalua.exe -a C:\Users\YOUCEF\Downloads\Compressed\pocketinstaller\pocketinstaller.win32.exe -d C:\Users\YOUCEF\Downloads\Compressed\pocketinstaller Task: {D08A8F71-DDDF-42C2-BC4F-4D6B8DAB3079} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation) Task: {DC1E1F87-7378-4F85-BB54-F2728D5BBC80} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\system32\Macromed\Flash\FlashUtil32_29_0_0_140_Plugin.exe [2018-04-14] (Adobe Systems Incorporated) Task: {E3A6A186-2C14-4C79-B644-5EF6DE51E4ED} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation) Task: {E3C178F7-CCCC-466A-BEC6-FF5D13371EF8} - \ASC9_PerformanceMonitor -> No File <==== ATTENTION Task: {F4A7194C-373A-47D6-82C4-9272C0DDAF34} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-19] (Piriform Ltd) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2018-04-14 17:08 - 2018-04-14 17:08 - 000836968 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Total Security 18.0.0\kpcengine.2.3.dll 2018-01-01 03:07 - 2018-01-01 03:07 - 000267952 _____ () C:\Program Files\Notepad++\NppShell_06.dll 2017-09-20 09:44 - 2017-09-20 09:44 - 007319048 _____ () C:\Program Files\TEMS\TEMS Mediator\Application\FlxCore.DLL 2017-09-20 09:50 - 2017-09-20 09:50 - 000130048 _____ () C:\Program Files\TEMS\TEMS Mediator\Application\TEMS.Protection.Mixed.dll 2018-04-14 16:40 - 2018-04-14 16:40 - 001105704 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Secure Connection 2.0\KasperskyLab.Ksde.NativeInterop.dll 2018-04-26 00:21 - 2016-07-01 09:02 - 000257872 _____ () C:\Program Files\Ashampoo\Ashampoo WinOptimizer 14\LiveTunerService.exe 2018-05-05 13:09 - 2018-04-26 05:24 - 003738456 _____ () C:\Program Files\Google\Chrome\Application\66.0.3359.139\libglesv2.dll 2018-05-05 13:09 - 2018-04-26 05:24 - 000085848 _____ () C:\Program Files\Google\Chrome\Application\66.0.3359.139\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:04 - 2018-04-17 00:52 - 000000027 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1376225461-1210758792-745474167-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\YOUCEF\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 83.149.99.201 - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) MpsSvc => Firewall Service is not running. ==================== MSCONFIG/TASK MANAGER disabled items == MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AGSService => 2 MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: AtollCalcSvr => 2 MSCONFIG\Services: cphs => 3 MSCONFIG\Services: FirebirdServerMAGIXInstance => 3 MSCONFIG\Services: FlexNet Licensing Service => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: HuaweiHiSuiteService.exe => 2 MSCONFIG\Services: IBMPMSVC => 2 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: KSDE1.0.0 => 2 MSCONFIG\Services: LPlatSvc => 2 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: OODefragAgent => 2 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: SynTPEnhService => 2 MSCONFIG\Services: TrueKey => 2 MSCONFIG\Services: TrueKeyScheduler => 2 MSCONFIG\Services: TrueKeyServiceHelper => 2 MSCONFIG\Services: uSHAREitSvc => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Check for LicenseControlCenter Updates.lnk => C:\Windows\pss\Check for LicenseControlCenter Updates.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^O&O Defrag Tray.lnk => C:\Windows\pss\O&O Defrag Tray.lnk.CommonStartup MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR MSCONFIG\startupreg: CNAP2 Launcher => C:\Windows\system32\spool\DRIVERS\W32X86\3\CNAP2LAK.EXE MSCONFIG\startupreg: HotKeysCmds => "C:\Windows\system32\hkcmd.exe" MSCONFIG\startupreg: IgfxTray => "C:\Windows\system32\igfxtray.exe" MSCONFIG\startupreg: OODefragTray => C:\Program Files\OO Software\Defrag\oodtray.exe MSCONFIG\startupreg: Persistence => "C:\Windows\system32\igfxpers.exe" MSCONFIG\startupreg: PWRISOVM.EXE => C:\Program Files\PowerISO\PWRISOVM.EXE -startup MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: TrayServer => C:\Program Files\MAGIX\Video_deluxe_MX_Premium_Version_a_telecharger\TrayServer_fr.exe MSCONFIG\startupreg: uTorrent => "C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{EAC7D5BC-64C1-46B2-BBF3-BB1989FCAB50}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{A102CCA5-0DAF-4426-9D24-486D66F2E859}] => (Allow) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{16D1F0EA-1955-4EED-89D4-372956486780}] => (Allow) C:\Users\YOUCEF\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{9A5DF6C9-D03B-4FC7-9FFC-F65FD31CD134}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{BFDE05C0-E44E-46B2-844E-4836ABCFCD6F}] => (Allow) C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe FirewallRules: [{5646E473-AE11-4A7A-B4F7-204E90377986}] => (Allow) C:\Program Files\IObit\Driver Booster\4.5.0\DriverBooster.exe FirewallRules: [{880DDC2B-DC9D-4AB8-B09E-6FF6C390758E}] => (Allow) C:\Program Files\IObit\Driver Booster\4.5.0\DBDownloader.exe FirewallRules: [{FB327315-ECE1-4347-A2CD-A9FBE73B2C8B}] => (Allow) C:\Program Files\IObit\Driver Booster\4.5.0\DBDownloader.exe FirewallRules: [{B3BD6588-8FBC-48F7-B64D-098C73277041}] => (Allow) C:\Program Files\IObit\Driver Booster\4.5.0\AutoUpdate.exe FirewallRules: [{F5E01126-7A35-482A-9A9A-4E612679B7E5}] => (Allow) C:\Program Files\IObit\Driver Booster\4.5.0\AutoUpdate.exe FirewallRules: [{1D41C51B-3F81-48C1-B982-081E3CAB4459}] => (Allow) C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.exe FirewallRules: [{8B71A149-89C0-4C7F-9768-056EE6B5862C}] => (Allow) C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.exe FirewallRules: [{D26E13BE-BE8B-4288-8A4E-4A42A474A41D}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{CEF773BD-35E7-4E7F-9ED8-555778BC8B26}] => (Allow) C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.exe FirewallRules: [{E8BD3E20-A7A8-4505-A38B-B22D5C8D046A}] => (Allow) C:\Program Files\SHAREit Technologies\SHAREit\SHAREit.exe FirewallRules: [{5B45130C-0738-4D27-8104-806825F32778}] => (Allow) LPort=9422 FirewallRules: [{1724397E-6947-4876-B09A-8EB70122CF14}] => (Allow) LPort=9245 FirewallRules: [{703BD93B-CB30-43E7-9302-FB2F6CD422A9}] => (Allow) LPort=9246 FirewallRules: [{A48F38C6-FED6-48D6-A4BB-21554B4CD4A5}] => (Allow) LPort=9247 FirewallRules: [{2FA10FB0-828B-48C3-A608-D3D09058D7B7}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{B734E04A-99E2-4BD7-94BE-07461CF0021C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{89B3E0B6-D304-477D-BD51-61E04810A5F0}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{2D0E7910-B9D1-48FE-9C10-E6CA86C1C1D8}] => (Allow) LPort=35000 FirewallRules: [TCP Query User{976F95C0-9A36-4C7B-A76E-760DE9A0AA48}D:\mobilis\logiciel drivetest\ipmsg.exe] => (Allow) D:\mobilis\logiciel drivetest\ipmsg.exe FirewallRules: [UDP Query User{324AE38A-7B16-438B-9940-9B045DC3E7CD}D:\mobilis\logiciel drivetest\ipmsg.exe] => (Allow) D:\mobilis\logiciel drivetest\ipmsg.exe FirewallRules: [{3531B9FC-94DD-4EEB-8DA4-5097EB0A695E}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= 02-05-2018 21:29:28 Windows Update 02-05-2018 22:51:24 Windows Update ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (05/05/2018 02:38:43 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe". Dependent Assembly TEMS.MobileSystems.Mixed,processorArchitecture="x86",type="win32",version="16.3.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (05/05/2018 01:10:10 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe". Dependent Assembly TEMS.MobileSystems.Mixed,processorArchitecture="x86",type="win32",version="16.3.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (05/05/2018 01:09:09 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe". Dependent Assembly TEMS.MobileSystems.Mixed,processorArchitecture="x86",type="win32",version="16.3.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (05/05/2018 01:09:08 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe". Dependent Assembly TEMS.MobileSystems.Mixed,processorArchitecture="x86",type="win32",version="16.3.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (05/05/2018 01:08:10 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (05/05/2018 01:05:46 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe". Dependent Assembly TEMS.MobileSystems.Mixed,processorArchitecture="x86",type="win32",version="16.3.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (05/05/2018 12:58:37 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe". Dependent Assembly TEMS.MobileSystems.Mixed,processorArchitecture="x86",type="win32",version="16.3.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. Error: (05/05/2018 12:58:37 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Activation context generation failed for "C:\Windows\Installer\{4F66963B-EE09-485A-9BC5-A20E5C5D8CF8}\Investigation.exe". Dependent Assembly TEMS.MobileSystems.Mixed,processorArchitecture="x86",type="win32",version="16.3.0.0" could not be found. Please use sxstrace.exe for detailed diagnosis. System errors: ============= Error: (05/05/2018 12:58:07 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: The following boot-start or system-start driver(s) failed to load: cdrom Error: (05/05/2018 12:56:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The Atoll Server service failed to start due to the following error: The service did not start due to a logon failure. Error: (05/05/2018 12:56:18 PM) (Source: Service Control Manager) (EventID: 7038) (User: ) Description: The AtollCalcSvr service was unable to log on as .\YOUCEF with the currently configured password due to the following error: Logon failure: user account restriction. Possible reasons are blank passwords not allowed, logon hour restrictions, or a policy restriction has been enforced. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). Error: (05/05/2018 12:56:18 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: The Windows Firewall service terminated with service-specific error Access is denied. . Error: (05/05/2018 12:56:14 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY) Description: WLAN Extensibility Module has failed to start. Module Path: C:\Windows\system32\Rtlihvs.dll Error Code: 126 Error: (05/05/2018 12:51:02 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: DCOM got error "1084" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334} Error: (05/05/2018 12:50:32 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (05/05/2018 12:50:32 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Windows Defender: =================================== Date: 2017-08-15 18:13:47.925 Description: Windows Defender has detected spyware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=SoftwareBundler:Win32/Penzievs&threatid=226179 Name:SoftwareBundler:Win32/Penzievs ID:226179 Severity:High Category:Software Bundler Path Found:containerfile:C:\Users\YOUCEF\AppData\Local\Temp\nsaB56B.tmp\DR8FNqs4VB.exe;file:C:\Users\YOUCEF\AppData\Local\Temp\nsaB56B.tmp\DR8FNqs4VB.exe->(nsis-instdata);process:pid:4612 Detection Type:Concrete Detection Source:Real-Time Protection Status:Unknown Process Name: Date: 2017-08-15 18:13:46.388 Description: Windows Defender has detected spyware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=TrojanDownloader:Win32/Adload&threatid=17567 Name:TrojanDownloader:Win32/Adload ID:17567 Severity:High Category:Trojan Downloader Path Found:file:C:\Users\YOUCEF\Downloads\DLL-Files Fixer 3.3.91.3080\dffsetup.exe;process:pid:8136 Detection Type:Concrete Detection Source:Real-Time Protection Status:Unknown Process Name: Date: 2017-08-15 18:13:45.537 Description: Windows Defender has detected spyware or other potentially unwanted software. For more information please see the following: http://go.microsoft.com/fwlink/?linkid=37020&name=TrojanDownloader:Win32/Adload&threatid=17567 Name:TrojanDownloader:Win32/Adload ID:17567 Severity:High Category:Trojan Downloader Path Found:file:C:\Users\YOUCEF\Downloads\DLL-Files Fixer 3.3.91.3080\dffsetup.exe Detection Type:Concrete Detection Source:Real-Time Protection Status:Unknown Process Name: Date: 2018-05-05 12:57:16.422 Description: Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures. Signatures Attempted:Current Error Code:0x80070002 Error description:The system cannot find the file specified. Signature version:0.0.0.0 Engine version:0.0.0.0 Date: 2018-04-22 16:10:46.504 Description: Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures. Signatures Attempted:Current Error Code:0x80070002 Error description:The system cannot find the file specified. Signature version:0.0.0.0 Engine version:0.0.0.0 Date: 2018-04-14 16:13:03.509 Description: Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures. Signatures Attempted:Current Error Code:0x80070002 Error description:The system cannot find the file specified. Signature version:0.0.0.0 Engine version:0.0.0.0 Date: 2018-04-14 00:23:10.306 Description: Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures. Signatures Attempted:Current Error Code:0x80070002 Error description:The system cannot find the file specified. Signature version:0.0.0.0 Engine version:0.0.0.0 Date: 2018-04-11 23:47:52.047 Description: Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures. Signatures Attempted:Current Error Code:0x80070002 Error description:The system cannot find the file specified. Signature version:0.0.0.0 Engine version:0.0.0.0 CodeIntegrity: =================================== Date: 2018-05-05 14:38:54.707 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. Date: 2018-05-05 14:38:50.878 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. Date: 2018-05-05 14:38:39.210 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. Date: 2018-05-05 14:36:40.187 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. Date: 2018-05-05 14:36:09.088 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. Date: 2018-05-05 14:30:20.525 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. Date: 2018-05-05 14:30:20.391 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. Date: 2018-05-05 14:30:20.196 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\CX32AP73.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2430M CPU @ 2.40GHz Percentage of memory in use: 56% Total physical RAM: 3385.21 MB Available physical RAM: 1476.86 MB Total Virtual: 6768.75 MB Available Virtual: 4514.29 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:96.77 GB) (Free:43.73 GB) NTFS Drive d: () (Fixed) (Total:200.43 GB) (Free:67.85 GB) NTFS \\?\Volume{12802c2c-80f8-11e7-bb8f-806e6f6e6963}\ (Réservé au système) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: C2DCB6F0) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=96.8 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=200.4 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================