13:06:35.0837 0x0fd8 TDSS rootkit removing tool 3.0.0.33 Apr 24 2014 14:02:50 13:06:36.0117 0x0fd8 ============================================================ 13:06:36.0117 0x0fd8 Current date / time: 2014/04/27 13:06:36.0117 13:06:36.0117 0x0fd8 SystemInfo: 13:06:36.0117 0x0fd8 13:06:36.0117 0x0fd8 OS Version: 6.1.7601 ServicePack: 1.0 13:06:36.0117 0x0fd8 Product type: Workstation 13:06:36.0117 0x0fd8 ComputerName: USER-KOMPUTER 13:06:36.0117 0x0fd8 UserName: user 13:06:36.0117 0x0fd8 Windows directory: C:\Windows 13:06:36.0117 0x0fd8 System windows directory: C:\Windows 13:06:36.0117 0x0fd8 Running under WOW64 13:06:36.0117 0x0fd8 Processor architecture: Intel x64 13:06:36.0117 0x0fd8 Number of processors: 2 13:06:36.0117 0x0fd8 Page size: 0x1000 13:06:36.0117 0x0fd8 Boot type: Normal boot 13:06:36.0117 0x0fd8 ============================================================ 13:06:36.0133 0x0fd8 BG loaded 13:06:36.0351 0x0fd8 System UUID: {9EDE5A46-D104-0861-33DC-BBF326240DD5} 13:06:37.0053 0x0fd8 Drive \Device\Harddisk0\DR0 - Size: 0x25432CDE00 (149.05 Gb), SectorSize: 0x200, Cylinders: 0x11EE4, SectorsPerTrack: 0x13, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000040 13:06:37.0069 0x0fd8 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 13:06:37.0085 0x0fd8 ============================================================ 13:06:37.0085 0x0fd8 \Device\Harddisk0\DR0: 13:06:37.0085 0x0fd8 MBR partitions: 13:06:37.0085 0x0fd8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 13:06:37.0085 0x0fd8 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x129E6000 13:06:37.0085 0x0fd8 \Device\Harddisk1\DR1: 13:06:37.0085 0x0fd8 MBR partitions: 13:06:37.0085 0x0fd8 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800 13:06:37.0085 0x0fd8 ============================================================ 13:06:37.0131 0x0fd8 C: <-> \Device\Harddisk0\DR0\Partition2 13:06:37.0147 0x0fd8 D: <-> \Device\Harddisk1\DR1\Partition1 13:06:37.0147 0x0fd8 ============================================================ 13:06:37.0147 0x0fd8 Initialize success 13:06:37.0147 0x0fd8 ============================================================ 13:07:31.0910 0x0f44 Deinitialize success