Additional scan result of Farbar Recovery Scan Tool (x86) Version: 04-11-2014 Ran by Pan at 2014-11-07 18:18:19 Running from C:\Users\Pan\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKCU\...\uTorrent) (Version: 3.4.2.34944 - BitTorrent Inc.) Adobe Flash Player 15 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM\...\Adobe Shockwave Player) (Version: 12.1.1.151 - Adobe Systems, Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.16 - Piriform) Counter-Strike (HKLM\...\Steam App 10) (Version: - Valve) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) EA SPORTS FIFA World (HKLM\...\{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}) (Version: 8.2.0.54472 - Electronic Arts, Inc.) Facebook Video Calling 3.1.0.521 (HKLM\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) GeForce Experience NvStream Client Components (Version: 0.1.87 - NVIDIA Corporation) Hidden Google Chrome (HKLM\...\Google Chrome) (Version: 38.0.2125.111 - Google Inc.) Google Update Helper (Version: 1.3.25.5 - Google Inc.) Hidden Grand Theft Auto IV (Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden GTA Vice City version 1.0.0.0 (HKLM\...\GTA Vice City_is1) (Version: 1.0.0.0 - GTX Box Team) Java 7 Update 60 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F03217060FF}) (Version: 7.0.600 - Oracle) K-Lite Mega Codec Pack 10.6.0 (HKLM\...\KLiteCodecPack_is1) (Version: 10.6.0 - ) Malwarebytes Anti-Malware wersja 2.0.3.1025 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) NVIDIA 3D Vision Controller Driver 326.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 326.01 - NVIDIA Corporation) NVIDIA 3D Vision Driver 327.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 327.23 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation) NVIDIA Graphics Driver 327.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.23 - NVIDIA Corporation) NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Virtual Audio 1.2.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.5 - NVIDIA Corporation) Odinstaluj drukarkę EPSON SX130 Series (HKLM\...\EPSON SX130 Series) (Version: - SEIKO EPSON Corporation) Origin (HKLM\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.) SHIELD Streaming (Version: 1.05.28 - NVIDIA Corporation) Hidden Skype™ 6.21 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.) Steam (HKLM\...\Steam) (Version: - Valve Corporation) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15 - TeamSpeak Systems GmbH) Winamp (HKLM\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR 5.01 (32-bitowy) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-3149542145-3322839065-4058237693-1001_Classes\CLSID\{1FD1FE74-9E3C-4C1C-AEEB-AAB592AD770F}\localserver32 -> C:\Users\Pan\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.) CustomCLSID: HKU\S-1-5-21-3149542145-3322839065-4058237693-1001_Classes\CLSID\{5E71E4F3-E8C7-4906-9626-973E418762B6}\InprocServer32 -> C:\Users\Pan\AppData\Local\Facebook\Update\1.2.205.0\goopdate.dll (Facebook Inc.) CustomCLSID: HKU\S-1-5-21-3149542145-3322839065-4058237693-1001_Classes\CLSID\{8B9F5BF4-0407-4BB2-9FED-4C0372DABD00}\localserver32 -> C:\Users\Pan\AppData\Local\Facebook\Video\Skype\FacebookVideoCallingProxy.exe (Skype Limited) CustomCLSID: HKU\S-1-5-21-3149542145-3322839065-4058237693-1001_Classes\CLSID\{CBE9C57E-FFA9-4123-8354-AD360D6DD3CC}\InprocServer32 -> C:\Users\Pan\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) CustomCLSID: HKU\S-1-5-21-3149542145-3322839065-4058237693-1001_Classes\CLSID\{E68D0A55-3C40-4712-B90D-DCFA93FF2534}\InprocServer32 -> C:\Users\Pan\AppData\Roaming\GG\ggdrive\ggdrive-menu.dll No File ==================== Restore Points ========================= 07-11-2014 14:02:09 avast! antivirus system restore point ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {2C59ECAF-3A27-4640-9F4B-519B05BDD70F} - \Microsoft\Windows\MUI\LPRemove No Task File <==== ATTENTION Task: {395392CB-9036-430B-B3F2-D10B577A4F99} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-06] (Google Inc.) Task: {57F88700-7AD1-4BA0-8DF3-388D2B9D5F7B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-07-23] (Piriform Ltd) Task: {786C0893-393E-41C8-AF46-812DBE10B2DD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-11-06] (Google Inc.) Task: {8B82CCAE-29FC-48BA-8494-8791A87E6603} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3149542145-3322839065-4058237693-1001Core => C:\Users\Pan\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-06-22] (Facebook Inc.) Task: {99EEC463-1A65-4741-AC4C-9BF2DD07E104} - System32\Tasks\{0DF8D04A-12FD-423D-9481-BA5A85339FFC} => Chrome.exe http://ui.skype.com/ui/0/6.16.0.105/pl/abandoninstall?source=lightinstaller&page=tsInstall Task: {C0714EF5-0BC4-418E-9403-66599297E833} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3149542145-3322839065-4058237693-1001UA => C:\Users\Pan\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-06-22] (Facebook Inc.) Task: {CE1ADB81-7E04-480F-BA8D-BFE8E9308462} - \ASP No Task File <==== ATTENTION Task: {DBE2E2D3-8DB0-416B-867A-665BEE76AB78} - System32\Tasks\Price Fountain => C:\Users\Pan\AppData\Roaming\PRICEF~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {E2BF2173-DAD7-4899-8BA1-16ACA90A37E9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-25] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3149542145-3322839065-4058237693-1001Core.job => C:\Users\Pan\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3149542145-3322839065-4058237693-1001UA.job => C:\Users\Pan\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Price Fountain.job => C:\Users\Pan\AppData\Roaming\PRICEF~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION ==================== Loaded Modules (whitelisted) ============= 2014-06-03 12:35 - 2013-09-12 07:28 - 00088864 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2014-09-01 23:23 - 2014-08-21 19:15 - 01171456 _____ () E:\Steam\libavcodec-56.dll 2014-09-01 23:23 - 2014-08-21 19:15 - 00442368 _____ () E:\Steam\libavutil-54.dll 2014-09-01 23:23 - 2014-08-21 19:15 - 00332800 _____ () E:\Steam\libavresample-2.dll 2013-10-24 09:45 - 2014-10-02 00:16 - 00774656 _____ () E:\Steam\SDL2.dll 2014-05-24 18:46 - 2014-10-21 20:22 - 02226880 _____ () E:\Steam\video.dll 2014-09-01 23:23 - 2014-08-21 19:15 - 00403968 _____ () E:\Steam\libavformat-56.dll 2014-09-01 23:23 - 2014-08-21 19:15 - 00485888 _____ () E:\Steam\libswscale-3.dll 2013-10-30 11:25 - 2014-10-21 20:22 - 00682176 _____ () E:\Steam\bin\chromehtml.DLL 2013-10-23 12:07 - 2014-09-05 00:29 - 34589376 _____ () E:\Steam\bin\libcef.dll 2014-08-15 09:27 - 2014-09-05 00:29 - 00837824 _____ () E:\Steam\bin\ffmpegsumo.dll 2014-11-06 19:34 - 2014-10-22 05:04 - 01042760 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\libglesv2.dll 2014-11-06 19:34 - 2014-10-22 05:04 - 00211272 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\libegl.dll 2014-11-06 19:34 - 2014-10-22 05:04 - 08910664 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\pdf.dll 2014-11-06 19:34 - 2014-10-22 05:04 - 01681224 _____ () C:\Program Files\Google\Chrome\Application\38.0.2125.111\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData:NT AlternateDataStreams: C:\ProgramData:NT2 AlternateDataStreams: C:\Users\All Users:NT AlternateDataStreams: C:\Users\All Users:NT2 AlternateDataStreams: C:\ProgramData\Application Data:NT AlternateDataStreams: C:\ProgramData\Application Data:NT2 AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 AlternateDataStreams: C:\Users\Pan\Application Data:NT AlternateDataStreams: C:\Users\Pan\Application Data:NT2 AlternateDataStreams: C:\Users\Pan\AppData\Roaming:NT AlternateDataStreams: C:\Users\Pan\AppData\Roaming:NT2 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: ApnTBMon => "C:\Program Files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: EADM => "C:\Program Files\Origin\Origin.exe" -AutoStart MSCONFIG\startupreg: Facebook Update => "C:\Users\Pan\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: GG => "C:\Users\Pan\AppData\Local\GG\Application\gghub.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files\Common Files\Java\Java Update\jusched.exe" ========================= Accounts: ========================== Administrator (S-1-5-21-3149542145-3322839065-4058237693-500 - Administrator - Disabled) Guest (S-1-5-21-3149542145-3322839065-4058237693-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3149542145-3322839065-4058237693-1002 - Limited - Enabled) Pan (S-1-5-21-3149542145-3322839065-4058237693-1001 - Administrator - Enabled) => C:\Users\Pan ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Karta tunelowania Teredo firmy Microsoft Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (11/07/2014 06:03:31 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (11/07/2014 06:03:31 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (11/07/2014 06:03:05 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (11/07/2014 06:03:05 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (11/07/2014 03:05:04 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (11/07/2014 03:05:04 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (11/07/2014 03:04:36 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Aktywacja licencji systemu Windows nie powiodła się. Błąd 0x00000000. Error: (11/07/2014 03:04:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: Wystąpił błąd aktywacji licencji (slui.exe), kod błędu: 0x800401F9 Error: (11/07/2014 03:02:08 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Błąd Usługi kopiowania woluminów w tle: nieoczekiwany błąd podczas badania interfejsu IVssWriterCallback. hr = 0x80070005, Odmowa dostępu. . To jest często spowodowane przez niepoprawne ustawienia zabezpieczeń w procesie zapisującym lub żądającym. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {1ebf9135-0c99-4d3a-a99c-4732f1faa6d6} Error: (11/07/2014 01:58:11 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] System errors: ============= Error: (11/07/2014 05:03:57 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Nie można uruchomić usługi MaintainerSvc1.92.5302915 z powodu następującego błędu: %%3 Error: (11/07/2014 09:55:41 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Poprzednie zamknięcie systemu przy 09:51:45 na ‎2014-‎11-‎07 było nieoczekiwane. Error: (11/07/2014 09:06:47 AM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (11/06/2014 05:50:06 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024200d: Aktualizacja programu Microsoft .NET Framework 3.5.1 w systemie Windows 7 z dodatkiem SP1 x86 (KB2836943). Error: (11/06/2014 00:34:33 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Wykonywanie kopii w tle woluminu C: zostało przerwane, ponieważ nie można powiększyć magazynu kopii w tle z powodu limitu wprowadzonego przez użytkownika. Error: (11/06/2014 10:42:13 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1008) (User: Pan-PC) Description: Plik pl-PL nie jest prawidłowym pakietem językowym. Pakiet może być uszkodzony. Ostatni błąd: 0x800f070d. Pobierz ponownie plik pakietu językowego. Error: (11/06/2014 10:41:53 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1008) (User: Pan-PC) Description: Plik pl-PL nie jest prawidłowym pakietem językowym. Pakiet może być uszkodzony. Ostatni błąd: 0x800f070d. Pobierz ponownie plik pakietu językowego. Error: (11/06/2014 10:40:22 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1008) (User: Pan-PC) Description: Plik pl-PL nie jest prawidłowym pakietem językowym. Pakiet może być uszkodzony. Ostatni błąd: 0x800f070d. Pobierz ponownie plik pakietu językowego. Error: (11/06/2014 10:39:25 AM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1008) (User: Pan-PC) Description: Plik pl-PL nie jest prawidłowym pakietem językowym. Pakiet może być uszkodzony. Ostatni błąd: 0x800f070d. Pobierz ponownie plik pakietu językowego. Error: (11/06/2014 10:27:31 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: ZARZĄDZANIE NT) Description: Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x8024d00e: Windows Update Core. Microsoft Office Sessions: ========================= Error: (11/07/2014 06:03:31 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (11/07/2014 06:03:31 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (11/07/2014 06:03:05 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (11/07/2014 06:03:05 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (11/07/2014 03:05:04 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] Error: (11/07/2014 03:05:04 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcFailed to set NvVAD endpoint as default Audio endpoint [0] Error: (11/07/2014 03:04:36 PM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x000000000x00000001 Error: (11/07/2014 03:04:36 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: 0x800401F9 Error: (11/07/2014 03:02:08 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Odmowa dostępu. Operacja: Zbieranie danych modułu zapisującego Kontekst: Identyfikator klasy modułu zapisującego: {e8132975-6f93-4464-a53e-1050253ae220} Nazwa modułu zapisującego: System Writer Identyfikator wystąpienia modułu zapisującego: {1ebf9135-0c99-4d3a-a99c-4732f1faa6d6} Error: (11/07/2014 01:58:11 PM) (Source: NvStreamSvc) (EventID: 1) (User: ) Description: NvStreamSvcNvVAD initialization failed [6] ==================== Memory info =========================== Processor: Pentium(R) Dual-Core CPU E5200 @ 2.50GHz Percentage of memory in use: 49% Total physical RAM: 2046.49 MB Available physical RAM: 1024.27 MB Total Pagefile: 4092.98 MB Available Pagefile: 2771.12 MB Total Virtual: 2047.88 MB Available Virtual: 1902.7 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:58.4 GB) (Free:27.84 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive e: () (Fixed) (Total:174.29 GB) (Free:96.33 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 04553422) Partition 1: (Active) - (Size=58.4 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=174.3 GB) - (Type=07 NTFS) ==================== End Of Log ============================