2011/09/12 00:15:40.0780 2072 TDSS rootkit removing tool 2.5.21.0 Sep 10 2011 21:07:05 2011/09/12 00:15:41.0093 2072 ================================================================================ 2011/09/12 00:15:41.0093 2072 SystemInfo: 2011/09/12 00:15:41.0093 2072 2011/09/12 00:15:41.0093 2072 OS Version: 6.0.6002 ServicePack: 2.0 2011/09/12 00:15:41.0093 2072 Product type: Workstation 2011/09/12 00:15:41.0093 2072 ComputerName: POWER 2011/09/12 00:15:41.0093 2072 UserName: Borysław 2011/09/12 00:15:41.0093 2072 Windows directory: C:\Windows 2011/09/12 00:15:41.0093 2072 System windows directory: C:\Windows 2011/09/12 00:15:41.0093 2072 Processor architecture: Intel x86 2011/09/12 00:15:41.0093 2072 Number of processors: 4 2011/09/12 00:15:41.0093 2072 Page size: 0x1000 2011/09/12 00:15:41.0093 2072 Boot type: Normal boot 2011/09/12 00:15:41.0093 2072 ================================================================================ 2011/09/12 00:15:41.0631 2072 Initialize success 2011/09/12 00:15:44.0282 4504 ================================================================================ 2011/09/12 00:15:44.0282 4504 Scan started 2011/09/12 00:15:44.0282 4504 Mode: Manual; 2011/09/12 00:15:44.0282 4504 ================================================================================ 2011/09/12 00:15:44.0868 4504 ACPI (82b296ae1892fe3dbee00c9cf92f8ac7) C:\Windows\system32\drivers\acpi.sys 2011/09/12 00:15:45.0030 4504 adp94xx (2edc5bbac6c651ece337bde8ed97c9fb) C:\Windows\system32\drivers\adp94xx.sys 2011/09/12 00:15:45.0117 4504 adpahci (b84088ca3cdca97da44a984c6ce1ccad) C:\Windows\system32\drivers\adpahci.sys 2011/09/12 00:15:45.0168 4504 adpu160m (7880c67bccc27c86fd05aa2afb5ea469) C:\Windows\system32\drivers\adpu160m.sys 2011/09/12 00:15:45.0242 4504 adpu320 (9ae713f8e30efc2abccd84904333df4d) C:\Windows\system32\drivers\adpu320.sys 2011/09/12 00:15:45.0431 4504 AFD (3911b972b55fea0478476b2e777b29fa) C:\Windows\system32\drivers\afd.sys 2011/09/12 00:15:45.0557 4504 agp440 (ef23439cdd587f64c2c1b8825cead7d8) C:\Windows\system32\drivers\agp440.sys 2011/09/12 00:15:45.0616 4504 aic78xx (ae1fdf7bf7bb6c6a70f67699d880592a) C:\Windows\system32\drivers\djsvs.sys 2011/09/12 00:15:45.0749 4504 aliide (90395b64600ebb4552e26e178c94b2e4) C:\Windows\system32\drivers\aliide.sys 2011/09/12 00:15:45.0809 4504 amdagp (2b13e304c9dfdfa5eb582f6a149fa2c7) C:\Windows\system32\drivers\amdagp.sys 2011/09/12 00:15:45.0929 4504 amdide (0577df1d323fe75a739c787893d300ea) C:\Windows\system32\drivers\amdide.sys 2011/09/12 00:15:46.0003 4504 AmdK7 (dc487885bcef9f28eece6fac0e5ddfc5) C:\Windows\system32\drivers\amdk7.sys 2011/09/12 00:15:46.0071 4504 AmdK8 (0ca0071da4315b00fc1328ca86b425da) C:\Windows\system32\drivers\amdk8.sys 2011/09/12 00:15:46.0176 4504 arc (5f673180268bb1fdb69c99b6619fe379) C:\Windows\system32\drivers\arc.sys 2011/09/12 00:15:46.0282 4504 arcsas (957f7540b5e7f602e44648c7de5a1c05) C:\Windows\system32\drivers\arcsas.sys 2011/09/12 00:15:46.0511 4504 aswFsBlk (1c2e6bb4fe8621b1b863855b02bc33eb) C:\Windows\system32\drivers\aswFsBlk.sys 2011/09/12 00:15:46.0637 4504 aswMonFlt (b0f137f664f10829cd2380b0e20e7c29) C:\Windows\system32\drivers\aswMonFlt.sys 2011/09/12 00:15:46.0729 4504 aswRdr (b6a9373619d851be80fb5f1b5eed0d4e) C:\Windows\system32\drivers\aswRdr.sys 2011/09/12 00:15:46.0885 4504 aswSnx (9be41c1ae8bc481eb662d85c98d979c2) C:\Windows\system32\drivers\aswSnx.sys 2011/09/12 00:15:46.0999 4504 aswSP (4b1a54ba2bc5873a774df6b70ab8b0b3) C:\Windows\system32\drivers\aswSP.sys 2011/09/12 00:15:47.0091 4504 aswTdi (c7f1cea32766184911293f4e1ee653f5) C:\Windows\system32\drivers\aswTdi.sys 2011/09/12 00:15:47.0208 4504 AsyncMac (53b202abee6455406254444303e87be1) C:\Windows\system32\DRIVERS\asyncmac.sys 2011/09/12 00:15:47.0251 4504 atapi (1f05b78ab91c9075565a9d8a4b880bc4) C:\Windows\system32\drivers\atapi.sys 2011/09/12 00:15:47.0377 4504 Beep (67e506b75bd5326a3ec7b70bd014dfb6) C:\Windows\system32\drivers\Beep.sys 2011/09/12 00:15:47.0536 4504 bowser (35f376253f687bde63976ccb3f2108ca) C:\Windows\system32\DRIVERS\bowser.sys 2011/09/12 00:15:47.0630 4504 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\drivers\brfiltlo.sys 2011/09/12 00:15:47.0672 4504 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\drivers\brfiltup.sys 2011/09/12 00:15:47.0757 4504 Brserid (b304e75cff293029eddf094246747113) C:\Windows\system32\drivers\brserid.sys 2011/09/12 00:15:47.0797 4504 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\system32\drivers\brserwdm.sys 2011/09/12 00:15:47.0827 4504 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\system32\drivers\brusbmdm.sys 2011/09/12 00:15:47.0879 4504 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\system32\drivers\brusbser.sys 2011/09/12 00:15:47.0915 4504 BTHMODEM (ad07c1ec6665b8b35741ab91200c6b68) C:\Windows\system32\drivers\bthmodem.sys 2011/09/12 00:15:48.0039 4504 cdfs (7add03e75beb9e6dd102c3081d29840a) C:\Windows\system32\DRIVERS\cdfs.sys 2011/09/12 00:15:48.0077 4504 cdrom (6b4bffb9becd728097024276430db314) C:\Windows\system32\DRIVERS\cdrom.sys 2011/09/12 00:15:48.0140 4504 circlass (da8e0afc7baa226c538ef53ac2f90897) C:\Windows\system32\drivers\circlass.sys 2011/09/12 00:15:48.0184 4504 CLFS (d7659d3b5b92c31e84e53c1431f35132) C:\Windows\system32\CLFS.sys 2011/09/12 00:15:48.0327 4504 cmdide (45201046c776ffdaf3fc8a0029c581c8) C:\Windows\system32\drivers\cmdide.sys 2011/09/12 00:15:48.0367 4504 Compbatt (82b8c91d327cfecf76cb58716f7d4997) C:\Windows\system32\drivers\compbatt.sys 2011/09/12 00:15:48.0408 4504 crcdisk (2a213ae086bbec5e937553c7d9a2b22c) C:\Windows\system32\drivers\crcdisk.sys 2011/09/12 00:15:48.0438 4504 Crusoe (22a7f883508176489f559ee745b5bf5d) C:\Windows\system32\drivers\crusoe.sys 2011/09/12 00:15:48.0522 4504 DfsC (622c41a07ca7e6dd91770f50d532cb6c) C:\Windows\system32\Drivers\dfsc.sys 2011/09/12 00:15:48.0737 4504 disk (5d4aefc3386920236a548271f8f1af6a) C:\Windows\system32\drivers\disk.sys 2011/09/12 00:15:48.0840 4504 Dot4 (4f59c172c094e1a1d46463a8dc061cbd) C:\Windows\system32\DRIVERS\Dot4.sys 2011/09/12 00:15:48.0936 4504 Dot4Print (80bf3ba09f6f2523c8f6b7cc6dbf7bd5) C:\Windows\system32\DRIVERS\Dot4Prt.sys 2011/09/12 00:15:48.0981 4504 dot4usb (c55004ca6b419b6695970dfe849b122f) C:\Windows\system32\DRIVERS\dot4usb.sys 2011/09/12 00:15:49.0059 4504 drmkaud (97fef831ab90bee128c9af390e243f80) C:\Windows\system32\drivers\drmkaud.sys 2011/09/12 00:15:49.0123 4504 DXGKrnl (c68ac676b0ef30cfbb1080adce49eb1f) C:\Windows\System32\drivers\dxgkrnl.sys 2011/09/12 00:15:49.0253 4504 E1G60 (f88fb26547fd2ce6d0a5af2985892c48) C:\Windows\system32\DRIVERS\E1G60I32.sys 2011/09/12 00:15:49.0584 4504 Ecache (7f64ea048dcfac7acf8b4d7b4e6fe371) C:\Windows\system32\drivers\ecache.sys 2011/09/12 00:15:49.0726 4504 elxstor (e8f3f21a71720c84bcf423b80028359f) C:\Windows\system32\drivers\elxstor.sys 2011/09/12 00:15:49.0845 4504 exfat (22b408651f9123527bcee54b4f6c5cae) C:\Windows\system32\drivers\exfat.sys 2011/09/12 00:15:49.0886 4504 fastfat (1e9b9a70d332103c52995e957dc09ef8) C:\Windows\system32\drivers\fastfat.sys 2011/09/12 00:15:50.0033 4504 fdc (63bdada84951b9c03e641800e176898a) C:\Windows\system32\DRIVERS\fdc.sys 2011/09/12 00:15:50.0107 4504 FileInfo (a8c0139a884861e3aae9cfe73b208a9f) C:\Windows\system32\drivers\fileinfo.sys 2011/09/12 00:15:50.0170 4504 Filetrace (0ae429a696aecbc5970e3cf2c62635ae) C:\Windows\system32\drivers\filetrace.sys 2011/09/12 00:15:50.0332 4504 flpydisk (6603957eff5ec62d25075ea8ac27de68) C:\Windows\system32\DRIVERS\flpydisk.sys 2011/09/12 00:15:50.0417 4504 FltMgr (01334f9ea68e6877c4ef05d3ea8abb05) C:\Windows\system32\drivers\fltmgr.sys 2011/09/12 00:15:50.0509 4504 Fs_Rec (65ea8b77b5851854f0c55c43fa51a198) C:\Windows\system32\drivers\Fs_Rec.sys 2011/09/12 00:15:50.0548 4504 gagp30kx (4e1cd0a45c50a8882616cae5bf82f3c5) C:\Windows\system32\drivers\gagp30kx.sys 2011/09/12 00:15:50.0792 4504 hamachi (833051c6c6c42117191935f734cfbd97) C:\Windows\system32\DRIVERS\hamachi.sys 2011/09/12 00:15:50.0810 4504 MBR (0x1B8) (5c616939100b85e558da92b899a0fc36) \Device\Harddisk0\DR0 2011/09/12 00:15:50.0838 4504 Boot (0x1200) (f3fec79a806ac5b2f5fb7bb3cb170c9d) \Device\Harddisk0\DR0\Partition0 2011/09/12 00:15:50.0847 4504 ================================================================================ 2011/09/12 00:15:50.0847 4504 Scan finished 2011/09/12 00:15:50.0847 4504 ================================================================================ 2011/09/12 00:15:50.0862 4132 Detected object count: 0 2011/09/12 00:15:50.0862 4132 Actual detected object count: 0 2011/09/12 00:16:01.0054 4320 Deinitialize success