Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-03-2019 Ran by SYSTEM on MININT-5CSJ1QE (09-03-2019 09:29:38) Running from H:\ Platform: Windows 7 Home Premium Service Pack 1 (X86) Language: English (United States) Internet Explorer Version 11 Boot Mode: Recovery Default: ControlSet001 [b]ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.[/b] Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7862816 2009-10-28] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1578280 2009-10-09] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [UpdateLBPShortCut] => C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink -> CyberLink Corp.) HKLM\...\Run: [CLMLServer] => C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-06-03] (CyberLink -> CyberLink) HKLM\...\Run: [UpdateP2GoShortCut] => C:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink -> CyberLink Corp.) HKLM\...\Run: [UpdatePDRShortCut] => C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-03] (CyberLink -> CyberLink Corp.) HKLM\...\Run: [RemoteControl8] => C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe [91432 2009-04-15] (CyberLink -> CyberLink Corp.) HKLM\...\Run: [PDVD8LanguageShortcut] => C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe [50472 2009-04-15] (CyberLink -> CyberLink Corp.) HKLM\...\Run: [UpdatePPShortCut] => C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [218408 2008-12-03] (CyberLink -> CyberLink Corp.) HKLM\...\Run: [UpdatePSTShortCut] => "C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files\CyberLink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter" HKLM\...\Run: [APLangApp] => C:\Program Files\AnyPC Client\APLangApp.exe [13312 2009-10-20] (Doctorsoft Co., Ltd. -> DoctorSoft) HKLM\...\Run: [UCam_Menu] => C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink -> CyberLink Corp.) HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard Company -> Hewlett-Packard) HKLM\...\Run: [] => [X] HKLM\...\Run: [BlueStacks Agent] => C:\Program Files\BlueStacks\HD-Agent.exe [601976 2013-02-15] (Bluestack Systems, Inc. -> BlueStack Systems, Inc.) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle America, Inc. -> Oracle Corporation) HKLM\...\Run: [Baidu Antivirus] => C:\Program Files\Baidu Security\Baidu Antivirus\5.4.3.148966.0\BavTray.exe [1998832 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) HKLM\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-02-11] (LogMeIn, Inc. -> LogMeIn Inc.) HKU\ola\...\Run: [uTorrent] => C:\Users\ola\AppData\Roaming\uTorrent\uTorrent.exe [1908920 2019-01-16] (BitTorrent Inc -> BitTorrent Inc.) HKLM\...\Drivers32: [vidc.VP60] => C:\windows\system32\vp6vfw.dll [447752 2008-09-04] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [vidc.VP61] => C:\windows\system32\vp6vfw.dll [447752 2008-09-04] (Electronic Arts -> On2.com) AppInit_DLLs: c:\windows\system32\guard32.dll => No File ==================== Services (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 BavSvc; C:\Program Files\Baidu Security\Baidu Antivirus\5.4.3.148966.0\BavSvc.exe [2791312 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S3 BdSandboxSrv; C:\Program Files\Baidu Security\Baidu Antivirus\5.4.3.148966.0\BdSandboxSrv.exe [216560 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S2 BHipsSvc; C:\Program Files\Baidu Security\Baidu Antivirus\5.4.3.148966.0\BHipsSvc.exe [531232 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [393080 2013-02-15] (Bluestack Systems, Inc. -> BlueStack Systems, Inc.) S2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [384888 2013-02-15] (Bluestack Systems, Inc. -> BlueStack Systems, Inc.) S2 Hamachi2Svc; C:\Program Files\LogMeIn Hamachi\hamachi-2.exe [2243528 2019-02-11] (LogMeIn, Inc. -> LogMeIn Inc.) S2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [276048 2013-10-27] (Huawei Technologies Co., Ltd. -> ) S2 LMIGuardianSvc; C:\Program Files\LogMeIn Hamachi\LMIGuardianSvc.exe [405424 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.) S2 PLAY ONLINE. RunOuc; C:\Program Files\PLAY ONLINE\UpdateDog\ouc.exe [651856 2013-10-26] (Huawei Technologies Co., Ltd. -> ) S2 Rezip; C:\windows\SYSTEM32\Rezip.exe [311296 2009-03-05] () S2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-07-07] (CyberLink -> ) S2 TheCalendarService; C:\Program Files\CalendarTool\2.0.0.1000176\CalendarServ.exe [152720 2017-08-09] (ShenZhen Qianhailewang Technology Co,.Ltd -> ) S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-26] (Microsoft Corporation) S2 rtop; "C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe" [X] ===================== Drivers (Whitelisted) ====================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 androidusb; C:\Windows\System32\Drivers\ssadadb.sys [30312 2011-05-12] (MCCI Internal Testing Software -> Google Inc) S3 BdApiUtil; C:\Program Files\Baidu Security\Baidu Antivirus\5.4.3.148966.0\BdApiUtil.sys [101448 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S3 bdark; C:\windows\system32\drivers\bdark.sys [82376 2015-05-28] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> ) S3 BdCameraProtect; C:\Program Files\Baidu Security\Baidu Antivirus\5.4.3.148966.0\BdCameraProtect.sys [21416 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S3 BdSandbox; C:\windows\System32\drivers\BdSandbox.sys [194504 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S1 Bfilter; C:\windows\System32\drivers\Bfilter.sys [50120 2017-01-11] (Baidu, Inc.) S1 Bfmon; C:\windows\System32\drivers\Bfmon.sys [31176 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S0 Bhbase; C:\Windows\System32\drivers\Bhbase.sys [81736 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S3 BHipsEx; C:\windows\System32\drivers\BHipsEx.sys [138184 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S1 Bnbase; C:\Windows\System32\drivers\bnbasex.sys [75432 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S1 Bndef; C:\windows\System32\drivers\bndef.sys [461224 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S3 Bnmon; C:\Program Files\Baidu Security\Baidu Antivirus\5.4.3.148966.0\Bnmon.sys [84936 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S1 Bprotect; C:\windows\System32\drivers\Bprotect.sys [197064 2017-01-11] (Baidu Online Network Technology (Beijing) Co.,Ltd. -> Baidu, Inc.) S3 BrFiltLo; C:\Windows\system32\DRIVERS\BrFiltLo.sys [13568 2009-07-13] (Brother Industries, Ltd.) S3 BrFiltUp; C:\Windows\system32\DRIVERS\BrFiltUp.sys [5248 2009-07-13] (Brother Industries, Ltd.) S3 Brserid; C:\Windows\System32\Drivers\Brserid.sys [272128 2009-07-13] (Brother Industries Ltd.) S3 BrSerWdm; C:\Windows\System32\Drivers\BrSerWdm.sys [62336 2009-07-13] (Brother Industries Ltd.) S3 BrUsbMdm; C:\Windows\System32\Drivers\BrUsbMdm.sys [12160 2009-07-13] (Brother Industries Ltd.) S3 BrUsbSer; C:\Windows\System32\Drivers\BrUsbSer.sys [11904 2009-07-13] (Brother Industries Ltd.) S2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [63864 2013-02-15] (Bluestack Systems, Inc. -> BlueStack Systems) S3 btusbflt; C:\Windows\System32\drivers\btusbflt.sys [43944 2009-07-01] (Broadcom Corporation -> Broadcom Corporation.) S3 btwaudio; C:\Windows\System32\drivers\btwaudio.sys [86056 2009-10-02] (Broadcom Corporation -> Broadcom Corporation.) S3 btwavdt; C:\Windows\System32\DRIVERS\btwavdt.sys [108072 2009-08-28] (Broadcom Corporation -> Broadcom Corporation.) S3 btwl2cap; C:\Windows\System32\DRIVERS\btwl2cap.sys [29472 2009-04-07] (Broadcom Corporation -> Broadcom Corporation.) S3 btwrchid; C:\Windows\System32\DRIVERS\btwrchid.sys [18472 2009-08-28] (Broadcom Corporation -> Broadcom Corporation.) S3 FsUsbExDisk; C:\windows\system32\FsUsbExDisk.SYS [36608 2009-03-31] () S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [27968 2017-06-29] (LogMeIn, Inc. -> LogMeIn, Inc.) S3 hcw85cir; C:\Windows\system32\drivers\hcw85cir.sys [26624 2009-07-13] (Hauppauge Computer Works, Inc.) S3 hitmanpro37; C:\windows\system32\drivers\hitmanpro37.sys [35992 2015-09-14] (SurfRight B.V. -> ) S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [101504 2013-11-30] (Huawei Technologies Co., Ltd.) S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [27776 2013-11-30] (Huawei Technologies Co., Ltd.) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [208896 2013-11-30] (Huawei Technologies Co., Ltd.) S3 hwusb_cdcacm; C:\Windows\System32\DRIVERS\ew_cdcacm.sys [108032 2013-12-09] (Huawei Technologies Co., Ltd.) S3 hwusb_wwanecm; C:\Windows\System32\DRIVERS\ew_wwanecm.sys [316544 2013-12-09] (Huawei Technologies Co., Ltd.) S3 igfx; C:\Windows\System32\DRIVERS\igdkmd32.sys [4756480 2009-06-10] (Intel Corporation) S3 Impcd; C:\Windows\System32\DRIVERS\Impcd.sys [125696 2009-10-26] (Intel Corporation) S3 RTL8167; C:\Windows\System32\DRIVERS\Rt86win7.sys [139776 2009-07-13] (Microsoft Windows -> Realtek Corporation ) S4 secdrv; C:\Windows\System32\Drivers\secdrv.sys [20480 2009-07-13] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) S3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] () S3 aswbdisk; no ImagePath S3 pccsmcfd; system32\DRIVERS\pccsmcfd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-03-09 09:29 - 2019-03-09 09:29 - 000000000 ____D C:\FRST 2019-03-06 16:47 - 2009-11-05 20:07 - 001550952 _____ (NVIDIA Corporation) C:\Windows\System32\nvencodemft.dll 2019-03-06 16:47 - 2009-07-13 17:15 - 000606208 _____ (Microsoft Corporation) C:\Windows\System32\mstime.dll 2019-03-06 16:47 - 2009-07-13 17:15 - 000229376 _____ (Microsoft Corporation) C:\Windows\System32\ieaksie.dll 2019-03-06 16:47 - 2009-07-13 17:15 - 000126976 _____ (Microsoft Corporation) C:\Windows\System32\ieakeng.dll 2019-03-06 16:47 - 2009-07-13 17:15 - 000018432 _____ (Microsoft Corporation) C:\Windows\System32\corpol.dll 2019-03-06 16:47 - 2009-07-13 17:14 - 000319488 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll 2019-03-06 16:47 - 2009-07-13 17:14 - 000130560 _____ (Microsoft Corporation) C:\Windows\System32\aaclient.dll 2019-03-06 16:47 - 2009-07-13 17:14 - 000073216 _____ (Microsoft Corporation) C:\Windows\System32\admparse.dll 2019-03-06 16:47 - 2009-07-13 17:05 - 000163840 _____ (Microsoft Corporation) C:\Windows\System32\ieakui.dll 2019-03-06 16:47 - 2009-06-25 06:07 - 000151552 _____ (NVIDIA Corporation) C:\Windows\System32\nvcohda.dll 2019-03-06 16:47 - 2009-06-17 17:15 - 000214024 _____ (McAfee, Inc.) C:\Windows\System32\Drivers\mfehidk.sys 2019-03-06 16:47 - 2009-06-17 17:15 - 000079816 _____ (McAfee, Inc.) C:\Windows\System32\Drivers\mfeavfk.sys 2019-03-06 16:47 - 2009-06-17 17:15 - 000040552 _____ (McAfee, Inc.) C:\Windows\System32\Drivers\mfesmfk.sys 2019-03-06 16:47 - 2009-06-17 17:15 - 000035272 _____ (McAfee, Inc.) C:\Windows\System32\Drivers\mfebopk.sys 2019-03-06 16:47 - 2009-06-17 17:14 - 000034248 _____ (McAfee, Inc.) C:\Windows\System32\Drivers\mferkdk.sys 2019-03-06 16:47 - 2009-06-10 13:27 - 000000003 _____ C:\Windows\System32\Drivers\MsftWdf_Kernel_01009_Inbox_Critical.Wdf 2019-03-06 16:47 - 2009-04-08 21:23 - 000130424 _____ (McAfee, Inc.) C:\Windows\System32\Drivers\Mpfp.sys 2019-03-06 16:47 - 2006-07-24 00:50 - 000125744 _____ (Microsoft Corporation) C:\Windows\System32\MSSTDFMT.DLL 2019-03-06 16:47 - 2006-07-24 00:50 - 000047920 _____ (Microsoft Corporation) C:\Windows\System32\VBAME.DLL 2019-03-06 16:47 - 2006-07-24 00:50 - 000039728 _____ (Microsoft Corporation) C:\Windows\System32\SCP32.DLL 2019-03-06 16:47 - 2002-12-20 04:02 - 001077336 _____ (Microsoft Corporation) C:\Windows\System32\MSCOMCTL.OCX 2019-02-24 07:05 - 2019-02-24 07:05 - 000000000 ____D C:\Program Files\LogMeIn Hamachi ==================== One month (modified) ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2019-03-06 16:48 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\System32\oobe 2019-03-06 16:48 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\System32\com 2019-03-06 16:48 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\IME 2019-02-24 07:24 - 2009-07-13 20:34 - 000014736 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2019-02-24 07:24 - 2009-07-13 20:34 - 000014736 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2019-02-24 07:23 - 2018-03-14 07:39 - 000000000 ____D C:\Users\ola\AppData\Local\LogMeIn Hamachi 2019-02-24 07:23 - 2016-08-03 11:08 - 000000000 ____D C:\Users\ola\AppData\Roaming\uTorrent 2019-02-24 07:21 - 2009-12-10 16:35 - 011647790 _____ C:\Windows\System32\perfh015.dat 2019-02-24 07:21 - 2009-12-10 16:35 - 004003708 _____ C:\Windows\System32\perfc015.dat 2019-02-24 07:21 - 2009-07-26 12:06 - 000006276 _____ C:\Windows\System32\PerfStringBackup.INI 2019-02-24 07:18 - 2009-07-13 18:37 - 000000000 ____D C:\Windows\tracing 2019-02-24 07:15 - 2010-11-04 10:19 - 000065536 _____ C:\Windows\System32\Ikeext.etl 2019-02-24 07:11 - 2013-07-10 08:34 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2019-02-24 07:11 - 2011-12-29 08:58 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl 2019-02-24 07:11 - 2009-12-11 02:34 - 000000000 ____D C:\Windows\System32\Macromed 2019-02-24 07:07 - 2017-03-06 02:50 - 000000000 ____D C:\Users\Default\AppData\Local\LogMeIn Hamachi 2019-02-24 07:07 - 2017-03-06 02:50 - 000000000 ____D C:\Users\Default User\AppData\Local\LogMeIn Hamachi 2019-02-24 07:05 - 2018-04-11 08:12 - 000000856 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2019-02-11 01:25 - 2017-02-14 07:47 - 000028176 ____H (LogMeIn, Inc.) C:\Windows\System32\hamachi.sys Some files in TEMP: ==================== 2017-12-26 12:44 - 2017-12-26 12:45 - 001682120 _____ (Kenafop ) C:\Users\ola\AppData\Local\Temp\ICReinstall_The Forest 0.54b_0714349924.exe 2017-03-06 02:50 - 2017-03-06 02:50 - 040360648 _____ () C:\Users\ola\AppData\Local\Temp\ipl4CB8.tmp.exe 2017-03-09 10:28 - 2017-03-09 10:28 - 039527696 _____ () C:\Users\ola\AppData\Local\Temp\ipl562A.tmp.exe 2017-03-01 05:05 - 2017-03-01 05:05 - 040360648 _____ () C:\Users\ola\AppData\Local\Temp\ipl6A08.tmp.exe 2017-02-26 07:42 - 2017-02-26 07:42 - 040360648 _____ () C:\Users\ola\AppData\Local\Temp\iplCBF5.tmp.exe 2017-02-23 11:09 - 2017-02-23 11:09 - 040360648 _____ () C:\Users\ola\AppData\Local\Temp\iplD8A2.tmp.exe 2017-02-26 07:53 - 2017-02-26 07:53 - 040360648 _____ () C:\Users\ola\AppData\Local\Temp\iplF49A.tmp.exe ==================== KnownDLLs (Whitelisted) ========================= ==================== Bamital & volsnap ====================== (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll [2018-12-10 13:46] - [2018-11-10 17:10] - 000380928 _____ (Microsoft Corporation) 6EBD409193FF6668143D537F246111BB C:\Windows\System32\dnsapi.dll [2018-12-10 13:46] - [2018-06-08 07:54] - 000269824 _____ (Microsoft Corporation) 4A35D7B172AFF9C6B362D7297568836A C:\Windows\System32\dllhost.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== Association (Whitelisted) ============= ==================== Restore Points ========================= ==================== Memory info =========================== Percentage of memory in use: 17% Total physical RAM: 2996.56 MB Available physical RAM: 2464.76 MB Total Virtual: 2994.84 MB Available Virtual: 2463.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:141.49 GB) (Free:44.85 GB) NTFS Drive e: () (Fixed) (Total:141.5 GB) (Free:140.98 GB) NTFS Drive f: (RECOVERY) (Fixed) (Total:15 GB) (Free:3.5 GB) NTFS ==>[system with boot components (obtained from drive)] Drive g: (CD_ROM) (CDROM) (Total:3.72 GB) (Free:0 GB) UDF Drive h: () (Removable) (Total:14.65 GB) (Free:14.65 GB) FAT32 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS Drive y: (SYSTEM) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 298.1 GB) (Disk ID: E3598C4B) Partition 1: (Not Active) - (Size=15 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=141.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=141.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 14.7 GB) (Disk ID: 05B6B596) Partition 1: (Active) - (Size=14.7 GB) - (Type=0C) LastRegBack: 2019-03-03 19:22 ==================== End of FRST.txt ============================