19:55:41.0688 0x093c TDSS rootkit removing tool 3.0.0.25 Feb 27 2014 15:23:02 19:55:41.0959 0x093c ============================================================ 19:55:41.0959 0x093c Current date / time: 2014/03/10 19:55:41.0959 19:55:41.0959 0x093c SystemInfo: 19:55:41.0959 0x093c 19:55:41.0959 0x093c OS Version: 6.1.7601 ServicePack: 1.0 19:55:41.0959 0x093c Product type: Workstation 19:55:41.0959 0x093c ComputerName: CAST0R-KOMPUTER 19:55:41.0959 0x093c UserName: cAst0r 19:55:41.0959 0x093c Windows directory: C:\Windows 19:55:41.0959 0x093c System windows directory: C:\Windows 19:55:41.0959 0x093c Running under WOW64 19:55:41.0959 0x093c Processor architecture: Intel x64 19:55:41.0959 0x093c Number of processors: 4 19:55:41.0959 0x093c Page size: 0x1000 19:55:41.0960 0x093c Boot type: Normal boot 19:55:41.0960 0x093c ============================================================ 19:55:41.0960 0x093c BG loaded 19:55:42.0124 0x093c System UUID: {6FBED9DA-C1A1-20CE-8CC5-AE6DFA30AFD2} 19:55:43.0640 0x093c Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:55:43.0643 0x093c ============================================================ 19:55:43.0643 0x093c \Device\Harddisk0\DR0: 19:55:43.0662 0x093c MBR partitions: 19:55:43.0662 0x093c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 19:55:43.0662 0x093c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x33E14000 19:55:43.0663 0x093c \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x33E46800, BlocksNum 0x33E14000 19:55:43.0663 0x093c \Device\Harddisk0\DR0\Partition4: MBR, Type 0x7, StartLBA 0x67C5A800, BlocksNum 0xCAAB800 19:55:43.0663 0x093c ============================================================ 19:55:43.0698 0x093c C: <-> \Device\Harddisk0\DR0\Partition4 19:55:43.0883 0x093c D: <-> \Device\Harddisk0\DR0\Partition2 19:55:44.0192 0x093c E: <-> \Device\Harddisk0\DR0\Partition3 19:55:44.0192 0x093c ============================================================ 19:55:44.0192 0x093c Initialize success 19:55:44.0192 0x093c ============================================================ 19:56:05.0978 0x0910 Deinitialize success