Guys, I know that without a low level raw disk reading technique SysInspector can't detect tdl on disk (well, it isn't necessary to get disk access though, TDL3 can be easily detected on memory too, even the infected file - RkU is an example :)) But then, as I said before, there's something strange SysInspector is doing so that it can detect TDL3 casually.
Before infection:
And after TDL infection:
This is really bizzarre :D
Before infection:
And after TDL infection:
This is really bizzarre :D