cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþ20:11:20.0631 0x063c TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01
20:11:26.0337 0x063c ============================================================
20:11:26.0337 0x063c Current date / time: 2016/11/23 20:11:26.0337
20:11:26.0337 0x063c SystemInfo:
20:11:26.0337 0x063c
20:11:26.0337 0x063c OS Version: 6.1.7601 ServicePack: 1.0
20:11:26.0337 0x063c Product type: Workstation
20:11:26.0337 0x063c ComputerName: SERGE-PC
20:11:26.0337 0x063c UserName: Serge
20:11:26.0337 0x063c Windows directory: C:\Windows
20:11:26.0337 0x063c System windows directory: C:\Windows
20:11:26.0337 0x063c Running under WOW64
20:11:26.0337 0x063c Processor architecture: Intel x64
20:11:26.0337 0x063c Number of processors: 2
20:11:26.0337 0x063c Page size: 0x1000
20:11:26.0337 0x063c Boot type: Normal boot
20:11:26.0337 0x063c CodeIntegrityOptions = 0x00000001
20:11:26.0337 0x063c ============================================================
20:11:29.0131 0x063c KLMD registered as C:\Windows\system32\drivers\73205361.sys
20:11:29.0131 0x063c KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.23569, osProperties = 0x1
20:11:30.0113 0x063c System UUID: {BADFEEA7-74B1-3360-58F9-6B1484FDE784}
20:11:30.0748 0x063c Drive \Device\Harddisk0\DR0 - Size: 0x4A85C4DE00 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x50C0A, SectorsPerTrack: 0xE, TracksPerCylinder: 0x87, Type 'K0', Flags 0x00000040
20:11:30.0788 0x063c Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB5800 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
20:11:30.0798 0x063c ============================================================
20:11:30.0798 0x063c \Device\Harddisk0\DR0:
20:11:30.0808 0x063c MBR partitions:
20:11:30.0808 0x063c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
20:11:30.0808 0x063c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x10401000
20:11:30.0818 0x063c \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x10434000, BlocksNum 0x14FFA000
20:11:30.0818 0x063c \Device\Harddisk1\DR1:
20:11:30.0818 0x063c MBR partitions:
20:11:30.0818 0x063c \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
20:11:30.0818 0x063c ============================================================
20:11:30.0878 0x063c C: <-> \Device\Harddisk0\DR0\Partition2
20:11:30.0928 0x063c E: <-> \Device\Harddisk0\DR0\Partition3
20:11:30.0958 0x063c L: <-> \Device\Harddisk1\DR1\Partition1
20:11:30.0958 0x063c ============================================================
20:11:30.0958 0x063c Initialize success
20:11:30.0958 0x063c ============================================================
20:12:07.0764 0x0cec KLMD registered as C:\Windows\system32\drivers\40376026.sys
20:12:24.0900 0x0cec Deinitialize success

Publicité


Signaler le contenu de ce document

Publicité