22:11:42.0881 0x0840 TDSS rootkit removing tool 3.0.0.26 Mar 24 2014 07:28:43
22:11:47.0998 0x0840 ============================================================
22:11:47.0998 0x0840 Current date / time: 2014/03/29 22:11:47.0998
22:11:47.0998 0x0840 SystemInfo:
22:11:47.0998 0x0840
22:11:47.0998 0x0840 OS Version: 6.1.7601 ServicePack: 1.0
22:11:47.0998 0x0840 Product type: Workstation
22:11:47.0998 0x0840 ComputerName: MOTEKMOMZY
22:11:47.0998 0x0840 UserName: Eva
22:11:47.0998 0x0840 Windows directory: C:\\Windows
22:11:47.0998 0x0840 System windows directory: C:\\Windows
22:11:47.0998 0x0840 Running under WOW64
22:11:47.0998 0x0840 Processor architecture: Intel x64
22:11:47.0998 0x0840 Number of processors: 2
22:11:47.0998 0x0840 Page size: 0x1000
22:11:47.0998 0x0840 Boot type: Normal boot
22:11:47.0998 0x0840 ============================================================
22:11:48.0404 0x0840 KLMD registered as C:\\Windows\\system32\\drivers\\09319488.sys
22:11:48.0716 0x0840 System UUID: {5F3F54CF-B33F-E377-1EB6-4493D82ADD57}
22:11:49.0761 0x0840 Drive \\Device\\Harddisk0\\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
22:11:49.0792 0x0840 ============================================================
22:11:49.0792 0x0840 \\Device\\Harddisk0\\DR0:
22:11:49.0792 0x0840 MBR partitions:
22:11:49.0792 0x0840 \\Device\\Harddisk0\\DR0\\Partition1: MBR, Type 0x7, StartLBA 0x14000, BlocksNum 0x1D4C000
22:11:49.0792 0x0840 \\Device\\Harddisk0\\DR0\\Partition2: MBR, Type 0x7, StartLBA 0x1D60000, BlocksNum 0x1B465170
22:11:49.0792 0x0840 ============================================================
22:11:49.0823 0x0840 C: <-> \\Device\\Harddisk0\\DR0\\Partition2
22:11:49.0823 0x0840 ============================================================
22:11:49.0823 0x0840 Initialize success
22:11:49.0823 0x0840 ============================================================
22:11:57.0452 0x10c4 KLMD registered as C:\\Windows\\system32\\drivers\\89461550.sys
22:12:01.0680 0x10c4 Deinitialize success