You are on page 1of 2

11:03:02.0600 0x34c4 TDSS rootkit removing tool 3.1.0.

28 Apr 9 2019 21:11:46


11:03:02.0600 0x34c4 UEFI system
11:03:09.0267 0x34c4 ============================================================
11:03:09.0267 0x34c4 Current date / time: 2021/04/02 11:03:09.0267
11:03:09.0269 0x34c4 SystemInfo:
11:03:09.0269 0x34c4
11:03:09.0269 0x34c4 OS Version: 10.0.19042 ServicePack: 0.0
11:03:09.0269 0x34c4 Product type: Workstation
11:03:09.0269 0x34c4 ComputerName: DESKTOP-7VS0P8V
11:03:09.0269 0x34c4 UserName: Hong
11:03:09.0269 0x34c4 Windows directory: C:\WINDOWS
11:03:09.0269 0x34c4 System windows directory: C:\WINDOWS
11:03:09.0269 0x34c4 Running under WOW64
11:03:09.0269 0x34c4 Processor architecture: Intel x64
11:03:09.0269 0x34c4 Number of processors: 4
11:03:09.0269 0x34c4 Page size: 0x1000
11:03:09.0269 0x34c4 Boot type: Normal boot
11:03:09.0269 0x34c4 CodeIntegrityOptions = 0x00000001
11:03:09.0269 0x34c4 ============================================================
11:03:09.0925 0x34c4 KLMD registered as C:\WINDOWS\system32\drivers\32670369.sys
11:03:09.0925 0x34c4 KLMD ARK init status: drvProperties = 0xF0F02, osBuild =
19042.0, osProperties = 0x1D
11:03:10.0110 0x34c4 System UUID: {0CB55C0C-7D3E-2EAC-0086-343B1DB9E1D2}
11:03:10.0273 0x34c4 !crdlk
11:03:10.0395 0x34c4 Drive \Device\Harddisk0\DR0 - Size: 0x2BAA1476000 ( 2794.52
Gb ), SectorSize: 0x200, Cylinders: 0x59101, SectorsPerTrack: 0x3F,
TracksPerCylinder: 0xFF, Type 'A'
11:03:10.0402 0x34c4 ============================================================
11:03:10.0402 0x34c4 \Device\Harddisk0\DR0:
11:03:10.0408 0x34c4 GPT partitions:
11:03:10.0408 0x34c4 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-
06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {510F5109-EE07-44FC-B634-F89127300AEF},
Name: Ba, StartLBA 0x800, BlocksNum 0xF9800
11:03:10.0408 0x34c4 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-
F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {D3525400-B0CB-4AF2-8063-7B9D046BE52F},
Name: EF, StartLBA 0xFA000, BlocksNum 0x32000
11:03:10.0408 0x34c4 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-
0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {60E7D8D5-BC6C-45FC-BCFB-3D91B23971A0},
Name: Mi, StartLBA 0x12C000, BlocksNum 0x8000
11:03:10.0408 0x34c4 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-
B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {1C6C4262-434A-4C4B-80A2-098D8B545B19},
Name: , StartLBA 0x134000, BlocksNum 0x79F88FA1
11:03:10.0408 0x34c4 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-
06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {CB630D02-EA25-41E3-A498-690CA9D65683},
Name: , StartLBA 0x7A0BD000, BlocksNum 0x196800
11:03:10.0408 0x34c4 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {EBD0A0A2-
B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {58E7B04E-C135-AFA0-F287-9A1ECFB217EF},
Name: , StartLBA 0x7A254000, BlocksNum 0x7A120000
11:03:10.0408 0x34c4 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {EBD0A0A2-
B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {435D44B0-EBF3-A45D-E60D-444735B7BCBE},
Name: , StartLBA 0xF4374000, BlocksNum 0x6919638E
11:03:10.0408 0x34c4 MBR partitions:
11:03:10.0408 0x34c4 ============================================================
11:03:10.0427 0x34c4 C: <-> \Device\Harddisk0\DR0\Partition4
11:03:10.0449 0x34c4 F: <-> \Device\Harddisk0\DR0\Partition6
11:03:10.0469 0x34c4 G: <-> \Device\Harddisk0\DR0\Partition7
11:03:10.0469 0x34c4 ============================================================
11:03:10.0469 0x34c4 Initialize success
11:03:10.0469 0x34c4 ============================================================
11:03:11.0741 0x12f8 ============================================================
11:03:11.0741 0x12f8 Scan started
11:03:11.0741 0x12f8 Mode: Manual;
11:03:11.0741 0x12f8 ============================================================
11:03:11.0741 0x12f8 KSN ping started
11:03:12.0001 0x12f8 KSN ping finished: true
11:03:18.0580 0x12f8 ================ Scan BIOS =================================
11:03:18.0581 0x12f8 BIOS info: vendor = American Megatrends Inc., version = 1207,
releaseDate = 09/04/2018
11:03:18.0581 0x12f8 Base board info: manufacturer = ASUSTeK COMPUTER INC.,
product = STRIX B250F GAMING, version = Rev X.0x
11:03:19.0395 0x12f8 ================ Scan system memory ========================
11:03:19.0395 0x12f8 Scan was interrupted by user!
11:03:19.0488 0x12f8 AV detected via SS2: Windows Defender, windowsdefender://
( ), 0x60100 ( disabled : updated )
11:03:19.0541 0x12f8 Win FW state via NFP2: enabled ( trusted )
11:03:19.0852 0x12f8 ============================================================
11:03:19.0852 0x12f8 Scan finished
11:03:19.0852 0x12f8 ============================================================
11:03:19.0861 0x1660 Detected object count: 0
11:03:19.0861 0x1660 Actual detected object count: 0
11:03:22.0285 0x31f4 Deinitialize success

You might also like