Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- 18:25:58.0883 0x103c TDSS rootkit removing tool 3.0.0.26 Mar 24 2014 07:28:43
- 18:26:06.0298 0x103c ============================================================
- 18:26:06.0298 0x103c Current date / time: 2014/04/03 18:26:06.0298
- 18:26:06.0299 0x103c SystemInfo:
- 18:26:06.0299 0x103c
- 18:26:06.0299 0x103c OS Version: 6.1.7601 ServicePack: 1.0
- 18:26:06.0299 0x103c Product type: Workstation
- 18:26:06.0299 0x103c ComputerName: XIA-PC
- 18:26:06.0299 0x103c UserName: xia
- 18:26:06.0299 0x103c Windows directory: C:\Windows
- 18:26:06.0300 0x103c System windows directory: C:\Windows
- 18:26:06.0300 0x103c Running under WOW64
- 18:26:06.0300 0x103c Processor architecture: Intel x64
- 18:26:06.0300 0x103c Number of processors: 4
- 18:26:06.0300 0x103c Page size: 0x1000
- 18:26:06.0300 0x103c Boot type: Normal boot
- 18:26:06.0300 0x103c ============================================================
- 18:26:06.0566 0x103c KLMD registered as C:\Windows\system32\drivers\06421690.sys
- 18:26:06.0871 0x103c System UUID: {65D46F62-9F17-DADC-0078-BBA0D6B4ACBF}
- 18:26:07.0618 0x103c Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
- 18:26:07.0621 0x103c ============================================================
- 18:26:07.0621 0x103c \Device\Harddisk0\DR0:
- 18:26:07.0621 0x103c MBR partitions:
- 18:26:07.0621 0x103c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x1E00800, BlocksNum 0x32000
- 18:26:07.0621 0x103c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x1E32800, BlocksNum 0x48A25000
- 18:26:07.0621 0x103c ============================================================
- 18:26:07.0645 0x103c C: <-> \Device\Harddisk0\DR0\Partition2
- 18:26:07.0645 0x103c ============================================================
- 18:26:07.0645 0x103c Initialize success
- 18:26:07.0645 0x103c ============================================================
- 18:27:02.0041 0x1f04 KLMD registered as C:\Windows\system32\drivers\50389953.sys
- 18:27:03.0080 0x1f04 Deinitialize success
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement