Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-10-2016
Ran by Slipman (28-10-2016 22:48:49)
Running from C:\Users\Slipman\Desktop
Windows 10 Home Version 1607 (X64) (2016-08-15 09:58:43)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2009689218-3948652717-2589269518-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2009689218-3948652717-2589269518-503 - Limited - Disabled)
Guest (S-1-5-21-2009689218-3948652717-2589269518-501 - Limited - Disabled)
Slipman (S-1-5-21-2009689218-3948652717-2589269518-1001 - Administrator - Enabled) => C:\Users\Slipman

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated)
Aktualizace NVIDIA 2.13.0.21 (Version: 2.13.0.21 - NVIDIA Corporation) Hidden
Ansel (Version: 375.70 - NVIDIA Corporation) Hidden
Aplikace Intel® PROSet/Wireless (HKLM-x32\...\{a2733506-e526-4bae-bc12-b2d37e2016ec}) (Version: 18.30.0 - Intel Corporation)
ApoDispatchConfigurator (Version: 2.3.101 - Nahimic) Hidden
AR8171 Driver Installation (HKLM-x32\...\{1E672F6A-B698-48A2-AE8C-427F97AF8F0E}) (Version: 1.0.0.28 - Rivet Networks)
AR8171 Drivers (Version: 1.0.0.28 - Rivet Networks) Hidden
AudioLaunchpadConfigurator (Version: 2.3.101 - Nahimic) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform)
Counter-Strike Global Offensive WaRzOnE (HKU\S-1-5-21-2009689218-3948652717-2589269518-1001\...\CSGO) (Version:  - CS WaRzOnE)
Dragon Gaming Center (HKLM-x32\...\InstallShield_{965B16C7-0778-4C45-B7D1-83A59E6FBBCB}) (Version: 1.0.1501.2801 - Micro-Star International Co., Ltd.)
Dragon Gaming Center (x32 Version: 1.0.1501.2801 - Micro-Star International Co., Ltd.) Hidden
Grand Theft Auto V (HKLM-x32\...\Grand Theft Auto V_is1) (Version:  - )
CheckDevicesConfigurator (Version: 2.3.101 - Nahimic) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4454 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.7.0.1000 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{8866711B-6150-4BF3-81E7-E3F38E52717F}) (Version: 18.1.1546.2762 - Intel Corporation)
Intel® Chipset Device Software (x32 Version: 10.1.1.12 - Intel(R) Corporation) Hidden
Kontrola počítače (HKLM-x32\...\{84B6B059-C9EB-4D90-BCAF-7311B0B37A79}) (Version: 1.0.0 - NOVERIA online)
LauncherSetup (Version: 2.3.101 - Nahimic) Hidden
Mafia III v.1.010 (HKLM-x32\...\Mafia III_is1) (Version:  - )
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation)
Mozilla Firefox 49.0.2 (x86 cs) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 cs)) (Version: 49.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2.6136 - Mozilla)
MSI Remind Manager (HKLM-x32\...\InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.0.1509.2501 - Micro-Star International Co., Ltd.)
MSI Remind Manager (x32 Version: 1.0.1512.0701 - Micro-Star International Co., Ltd.) Hidden
Nahimic 2 (HKLM-x32\...\{72832c4c-5eb6-4bcf-bba9-d481d067faec}) (Version: 2.3.1 - Nahimic)
Nahimic2UISetup (Version: 2.3.101 - Nahimic) Hidden
NahimicSettingsConfigurator (Version: 2.3.101 - Nahimic) Hidden
NVIDIA GeForce Experience 3.0.7.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.0.7.34 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 375.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 375.70 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.0.7.34 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 1.0.0.0 - NVIDIA Corporation) Hidden
Ovládací panel NVIDIA 375.70 (Version: 375.70 - NVIDIA Corporation) Hidden
ProductDaemonSetup (Version: 2.3.101 - Nahimic) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7874 - Realtek Semiconductor Corp.)
SHIELD Streaming (Version: 7.1.0320 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.0.7.34 - NVIDIA Corporation) Hidden
Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.)
SonicMapperConfigurator (Version: 2.3.101 - Nahimic) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.22.0 - Synaptics Incorporated)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.62308 - TeamViewer)
UIInstallUpgrade (Version: 2.3.101 - Nahimic) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2009689218-3948652717-2589269518-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Slipman\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\FileCoAuth.exe (Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0CC1A05A-F965-44BB-A672-B6EA191ABA6E} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-30] (NVIDIA Corporation)
Task: {107E1070-DABE-437B-AAB4-BB731DDCE69D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {2DF88B51-6799-4CE4-B6B2-7772FB9FEFD5} - System32\Tasks\MSI_Dragon Gaming Center => C:\Program Files (x86)\MSI\Dragon Gaming Center\mDispatch.exe [2014-01-23] (TODO: <公司名稱>)
Task: {306D0127-C201-4DB5-997F-766CE80D30FE} - System32\Tasks\DLL-files.com Fixer_UPDATES => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: {479CDEAE-56CE-4426-898C-2420142814F4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {4B3783E2-A628-4414-BD11-B332AB16A800} - System32\Tasks\DLL-files.com Fixer => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
Task: {5B020673-DE30-4733-9575-EE62055CD0C5} - System32\Tasks\Nahimic2Svc32Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2Svc32.exe [2016-08-02] ()
Task: {63DAD63B-6EFA-4D50-979B-92C5D0ABE32F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {63E30896-CE83-40F1-AE50-C7C395E7F28F} - System32\Tasks\{3CCF3A10-2F38-4193-A779-6A90B8A6BE80} => pcalua.exe -a "C:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe" -c uninstall=0
Task: {65B8822A-CB26-458E-AA57-FB55B81E31EE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd)
Task: {6D9D25C2-2B38-4DEC-B645-F35CD7DC549B} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-26] (Adobe Systems Incorporated)
Task: {72B5331E-A8DC-4597-8E37-8FD23ECDA6C8} - System32\Tasks\Nahimic2UILauncherRun => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe [2016-08-02] ()
Task: {7C84B2BD-54ED-4177-89DC-2F01D671ADA2} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-09-30] (NVIDIA Corporation)
Task: {8767A494-93E9-4660-9923-5DEEF7DE9E3A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-30] (NVIDIA Corporation)
Task: {9B84361D-0306-448B-8FA8-6233424DD7C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {C90D2B74-4EC8-4583-A6FE-063EEC18507C} - System32\Tasks\Nahimic2Svc64Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2Svc64.exe [2016-08-02] ()
Task: {D2294880-35D7-4503-A017-876EFA6D4863} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-09-30] (NVIDIA Corporation)
Task: {E4CEF3E9-B32B-43A3-A69C-EEE3D515A3ED} - System32\Tasks\Driver Booster SkipUAC (Slipman) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: {F06A99EA-1F0B-4C6C-813D-5E55281A5206} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-09-30] (NVIDIA Corporation)
Task: {FDC9FE4D-719C-4402-B261-2344C2331838} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-09-30] (NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\DLL-files.com Fixer_UPDATES.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-09-30 17:30 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-10-05 12:19 - 2016-09-30 06:24 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-10-05 12:19 - 2016-09-30 06:24 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-10-05 12:20 - 2016-09-30 06:24 - 00418240 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\_nvspserviceplugin64.dll
2016-08-15 11:41 - 2016-10-25 22:17 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-08-02 15:17 - 2016-08-02 15:17 - 00216760 _____ () C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2DevProps.dll
2016-08-02 15:17 - 2016-08-02 15:17 - 00289464 _____ () C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2OSD.dll
2016-09-30 17:30 - 2016-09-15 19:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll
2016-08-15 13:05 - 2016-08-15 13:05 - 00959168 _____ () C:\Users\Slipman\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64\ClientTelemetry.dll
2016-09-15 12:11 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2016-10-12 17:08 - 2016-10-05 11:35 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2016-10-12 17:08 - 2016-10-05 11:34 - 00693248 _____ () C:\Windows\ShellExperiences\MtcUvc.dll
2016-07-28 01:27 - 2016-07-28 01:27 - 00402520 _____ () C:\WINDOWS\system32\igfxTray.exe
2014-01-22 10:44 - 2014-01-22 10:44 - 00075912 _____ () C:\Program Files (x86)\MSI\Dragon Gaming Center\WinIo64.dll
2016-08-02 15:14 - 2016-08-02 15:14 - 00705208 _____ () C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe
2016-10-20 11:52 - 2016-10-20 11:52 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-10-20 11:52 - 2016-10-20 11:52 - 00178176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-10-20 11:52 - 2016-10-20 11:52 - 35253760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.197.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-08-02 15:15 - 2016-08-02 15:15 - 02040504 _____ () C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2svc32.exe
2016-08-02 15:18 - 2016-08-02 15:18 - 00512184 _____ () C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2svc64.exe
2016-10-27 19:43 - 2016-10-15 05:41 - 09760256 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-10-27 19:43 - 2016-10-15 05:34 - 01401344 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-10-27 19:43 - 2016-10-15 05:34 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2016-10-27 19:43 - 2016-10-15 05:34 - 02424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-10-27 19:43 - 2016-10-15 05:38 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-07-22 19:56 - 2016-09-30 06:24 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-08-02 15:13 - 2016-08-02 15:13 - 00187576 _____ () C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2DevProps.dll
2016-08-02 15:11 - 2016-08-02 15:11 - 00262328 _____ () C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2OSD.dll
2016-10-05 12:19 - 2016-09-30 06:23 - 60817344 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2016-10-05 12:19 - 2016-09-29 19:20 - 00500792 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-10-05 12:19 - 2016-09-29 19:20 - 00255936 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-10-05 12:19 - 2016-09-29 19:20 - 02801208 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-10-05 12:19 - 2016-09-29 19:20 - 00244672 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-10-05 12:19 - 2016-09-29 19:20 - 00430648 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
2016-10-05 12:19 - 2016-09-29 19:20 - 00336832 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-10-05 12:19 - 2016-09-29 19:20 - 00373696 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node
2016-08-15 13:05 - 2016-08-15 13:05 - 00679624 _____ () C:\Users\Slipman\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\ClientTelemetry.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 09:24 - 2016-10-27 19:30 - 00000826 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2009689218-3948652717-2589269518-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Slipman\Desktop\Sexy Tapety ( Kolekce 65 )\Sexy-0192_oNYx.jpeg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\Run: => "SCM"
HKU\S-1-5-21-2009689218-3948652717-2589269518-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2009689218-3948652717-2589269518-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2009689218-3948652717-2589269518-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2009689218-3948652717-2589269518-1001\...\StartupApproved\Run: => "SpyEmergency"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{3B7CAD7A-C483-4A41-BEAF-9E0EA2D1560F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E5497F6C-F5B5-4907-84AF-5CB785AAF12B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{12A5F5E6-453D-49FD-9ADE-CCFD96A3212B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{DD3BE1AB-108A-4BAD-8C24-7C463B05A16F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{98D35E95-627F-4732-9C64-1418A271FF90}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{77E4F1E2-D705-4752-8D8B-05A6B2A76954}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{9F7A686D-9696-4B8F-9BAC-F3605FE1066D}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{BA3863A3-78C6-4BB1-BA85-2339D499B06B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{0C65F187-A36F-4717-B4EC-55DE3DFC719A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{F1106BA1-86BA-48BE-9B99-70B9B8591BFC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{90ED54ED-AA15-49B0-A49F-9EBF02D0BD09}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [TCP Query User{C5D3B3D2-325E-43BA-9552-7FAFC3536DF5}C:\users\slipman\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\slipman\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{6147470B-08A1-4809-B477-4F0793C2F7FC}C:\users\slipman\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\slipman\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{AF7DB6EB-E078-400B-8F96-D80D99A41BD6}C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{9E9FAB6E-7259-4EC7-BB25-499DF41E49E1}C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{8A71D3FC-E133-4C7E-B443-5C8C932510B1}C:\hry - instalované\csgo\csgo.exe] => (Allow) C:\hry - instalované\csgo\csgo.exe
FirewallRules: [UDP Query User{3CE84A54-E977-4A24-B0AD-DBA013F864AC}C:\hry - instalované\csgo\csgo.exe] => (Allow) C:\hry - instalované\csgo\csgo.exe
FirewallRules: [TCP Query User{C0EAAE1B-222A-4F38-8A47-F9531E4E1CA1}C:\games\grand theft auto v\gta5.exe] => (Block) C:\games\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{9BA41EAE-20A9-49DE-B5B8-96F31471284B}C:\games\grand theft auto v\gta5.exe] => (Block) C:\games\grand theft auto v\gta5.exe
FirewallRules: [{F884CC1D-1FD8-4886-AB8B-94CF06D6388A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F67C758C-F5E7-486B-B2CE-85B3DFCF47B5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{18ECC725-EBB8-4E94-AAF1-6F4DB0116E2D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{FEC42EC9-374C-49B8-BAD7-4E7C5292275E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{6EF2EF05-5C48-40D2-BE5B-5D3EE9DD695D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{5F2EFE8C-31EE-414E-B2B1-45B795704BDA}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{3D06AD46-A52A-4E6E-B685-A1A5B006D0A6}C:\hry - instalované\l4d\left 4 dead 2\left4dead2.exe] => (Allow) C:\hry - instalované\l4d\left 4 dead 2\left4dead2.exe
FirewallRules: [UDP Query User{01B33652-B9EA-4A3C-B751-7D119312DE98}C:\hry - instalované\l4d\left 4 dead 2\left4dead2.exe] => (Allow) C:\hry - instalované\l4d\left 4 dead 2\left4dead2.exe
FirewallRules: [TCP Query User{3864C2D1-5647-4655-8B71-D450948D7AB1}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{C755BE90-C9B5-4CB7-A933-9BF6C88CC24F}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [TCP Query User{5069DE64-2835-42B3-B5FB-9E26D1B79B01}C:\games\mafia iii\launcher.exe] => (Allow) C:\games\mafia iii\launcher.exe
FirewallRules: [UDP Query User{139C06B0-36A0-4F80-8599-913A7F27A4C6}C:\games\mafia iii\launcher.exe] => (Allow) C:\games\mafia iii\launcher.exe
FirewallRules: [TCP Query User{BBD28ECA-3611-4204-BFD5-EEA673EBD5D5}C:\games\mafia iii\mafia3.exe] => (Allow) C:\games\mafia iii\mafia3.exe
FirewallRules: [UDP Query User{D5383458-13FE-4321-98D4-C46F0A954106}C:\games\mafia iii\mafia3.exe] => (Allow) C:\games\mafia iii\mafia3.exe
FirewallRules: [TCP Query User{44C0E7BB-7134-48D7-9177-F8EE8340570E}C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe
FirewallRules: [UDP Query User{1B61294F-E12D-4812-9B55-0B57B12393B9}C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8098\battle.net.exe
FirewallRules: [TCP Query User{7FD35534-931B-4CEE-92D7-23C6C184DA2C}C:\program files\bitcoin\bitcoin-qt.exe] => (Allow) C:\program files\bitcoin\bitcoin-qt.exe
FirewallRules: [UDP Query User{2D2E01E7-D83D-4624-B601-BBABE74E9DC9}C:\program files\bitcoin\bitcoin-qt.exe] => (Allow) C:\program files\bitcoin\bitcoin-qt.exe

==================== Restore Points =========================

11-10-2016 17:38:32 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026
18-10-2016 01:48:40 Windows Update
26-10-2016 19:17:44 Naplánovaný kontrolní bod
27-10-2016 19:32:13 Installed TomTom HOME.

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/28/2016 05:42:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.14393.206, časové razítko: 0x57dad2ca
Kód výjimky: 0xc000041d
Posun chyby: 0x00003e82
ID chybujícího procesu: 0x9f0
Čas spuštění chybující aplikace: 0x01d231120a008ed5
Cesta k chybující aplikaci: C:\Users\Slipman\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: 2cac44ad-c3eb-4677-bd46-ea7d7a4fef95
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/28/2016 05:42:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.351, časové razítko: 0x5801a3a8
Kód výjimky: 0xc0000005
Posun chyby: 0x00044f9e
ID chybujícího procesu: 0x9f0
Čas spuštění chybující aplikace: 0x01d231120a008ed5
Cesta k chybující aplikaci: C:\Users\Slipman\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: b9ba8402-070d-400e-bb30-519915ebb4f0
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/28/2016 01:55:38 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Procedura Open pro službu BITS v knihovně DLL C:\Windows\System32\bitsperf.dll se nezdařila. Výkonnostní data pro tuto službu nebudou k dispozici. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (10/27/2016 07:32:23 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddWin32ServiceFiles: Unable to back up image of service Spy Emergency Health Check since QueryServiceConfig API failed

System Error:
Systém nemůže nalézt uvedený soubor.
.

Error: (10/27/2016 07:32:23 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Šifrování selhala při volání OnIdentity() v objektu System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protokol Microsoft LLDP (Link-Layer Discovery Protocol).

System Error:
Přístup byl odepřen.
.

Error: (10/27/2016 07:30:44 PM) (Source: TomTomHOMEService) (EventID: 10000) (User: )
Description: Event-ID 10000

Error: (10/27/2016 05:07:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.14393.206, časové razítko: 0x57dad2ca
Kód výjimky: 0xc000041d
Posun chyby: 0x00003e82
ID chybujícího procesu: 0x958
Čas spuštění chybující aplikace: 0x01d22fb503b3c0ae
Cesta k chybující aplikaci: C:\Users\Slipman\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: 57b2d272-f339-43d5-b83c-3f8a0b72d4b7
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/27/2016 05:07:35 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.206, časové razítko: 0x57dacde1
Kód výjimky: 0xc0000005
Posun chyby: 0x00044e7e
ID chybujícího procesu: 0x958
Čas spuštění chybující aplikace: 0x01d22fb503b3c0ae
Cesta k chybující aplikaci: C:\Users\Slipman\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 8108757d-3f81-47e0-8fc6-973f25c79933
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/26/2016 08:11:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: GDI32.dll, verze: 10.0.14393.206, časové razítko: 0x57dad2ca
Kód výjimky: 0xc000041d
Posun chyby: 0x00003e82
ID chybujícího procesu: 0x24d0
Čas spuštění chybující aplikace: 0x01d227a149282cef
Cesta k chybující aplikaci: C:\Users\Slipman\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\GDI32.dll
ID zprávy: 188027f6-cf68-4890-a9f5-7a0d2c52894d
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (10/26/2016 08:11:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: utorrent.exe, verze: 2.2.1.25534, časové razítko: 0x4e4594ce
Název chybujícího modulu: ntdll.dll, verze: 10.0.14393.206, časové razítko: 0x57dacde1
Kód výjimky: 0xc0000005
Posun chyby: 0x00044e7e
ID chybujícího procesu: 0x24d0
Čas spuštění chybující aplikace: 0x01d227a149282cef
Cesta k chybující aplikaci: C:\Users\Slipman\AppData\Roaming\uTorrent\utorrent.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: ab25a4d0-d0a9-403c-925b-d83522d23eae
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (10/28/2016 05:47:01 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 a APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/28/2016 05:45:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Search neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedenou cestu.

Error: (10/28/2016 05:45:13 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/28/2016 05:45:13 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/28/2016 05:45:11 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/28/2016 05:45:10 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/28/2016 05:44:54 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba zařazování tisku byla ukončena s následující chybou: 
%%2147944103 = Systém nepracuje se sekvencí protokolu RPC.

Error: (10/28/2016 05:44:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (10/28/2016 05:44:52 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Content Protection HECI Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/28/2016 05:44:50 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.


CodeIntegrity:
===================================
  Date: 2016-10-26 23:30:54.529
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_03c9192d3331a8fa\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-10-20 12:47:55.502
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2DevProps.dll that did not meet the Store signing level requirements.

  Date: 2016-10-20 12:47:55.496
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2OSD.dll that did not meet the Store signing level requirements.

  Date: 2016-10-20 12:47:24.865
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2DevProps.dll that did not meet the Store signing level requirements.

  Date: 2016-10-20 12:47:24.851
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2OSD.dll that did not meet the Store signing level requirements.

  Date: 2016-10-13 14:37:53.670
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_03c9192d3331a8fa\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-10-12 09:03:34.774
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_03c9192d3331a8fa\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-10-04 10:24:25.145
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_8bdc1daefc713cb0\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-10-01 11:34:15.204
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_8bdc1daefc713cb0\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2016-09-25 21:40:37.327
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_8bdc1daefc713cb0\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-6300HQ CPU @ 2.30GHz
Percentage of memory in use: 36%
Total physical RAM: 8103.87 MB
Available physical RAM: 5121.37 MB
Total Virtual: 9383.87 MB
Available Virtual: 6110.91 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.18 GB) (Free:639.28 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 788D8F45)

Partition: GPT.

==================== End of Addition.txt ============================