MBRCheck, version 1.2.3 (c) 2010, AD Command-line: Windows Version: Windows XP Professional Windows Information: Service Pack 3 (build 2600) Logical Drives Mask: 0x000830ec Kernel Drivers (total 126): 0x804D7000 \WINDOWS\system32\ntoskrnl.exe 0x806FF000 \WINDOWS\system32\hal.dll 0xF7987000 \WINDOWS\system32\KDCOM.DLL 0xF7897000 \WINDOWS\system32\BOOTVID.dll 0xF75A8000 ACPI.sys 0xF7989000 \WINDOWS\System32\DRIVERS\WMILIB.SYS 0xF7597000 pci.sys 0xF75F7000 isapnp.sys 0xF7607000 ohci1394.sys 0xF7617000 \WINDOWS\system32\DRIVERS\1394BUS.SYS 0xF7A4F000 PCIIde.sys 0xF7707000 \WINDOWS\System32\Drivers\PCIIDEX.SYS 0xF798B000 viaide.sys 0xF798D000 intelide.sys 0xF7627000 MountMgr.sys 0xF74D8000 ftdisk.sys 0xF798F000 dmload.sys 0xF74B2000 dmio.sys 0xF770F000 PartMgr.sys 0xF7717000 videX32.sys 0xF7637000 VolSnap.sys 0xF749A000 atapi.sys 0xF7647000 disk.sys 0xF7657000 \WINDOWS\system32\DRIVERS\CLASSPNP.SYS 0xF747A000 fltmgr.sys 0xF7468000 sr.sys 0xF7667000 PxHelp20.sys 0xF7870000 KSecDD.sys 0xF785D000 WudfPf.sys 0xF7B52000 Ntfs.sys 0xF7830000 NDIS.sys 0xF7677000 uagp35.sys 0xF796D000 Mup.sys 0xF7687000 agp440.sys 0xF76B7000 \SystemRoot\system32\DRIVERS\nic1394.sys 0xBA4D5000 \SystemRoot\System32\DRIVERS\processr.sys 0xB95BE000 \SystemRoot\system32\DRIVERS\nv4_mini.sys 0xB95AA000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS 0xF77D7000 \SystemRoot\System32\DRIVERS\usbuhci.sys 0xB9586000 \SystemRoot\System32\DRIVERS\USBPORT.SYS 0xF77DF000 \SystemRoot\System32\DRIVERS\usbehci.sys 0xB9575000 \SystemRoot\system32\DRIVERS\GA311ND5.SYS 0xF77E7000 \SystemRoot\system32\DRIVERS\fdc.sys 0xBA4C5000 \SystemRoot\system32\DRIVERS\serial.sys 0xBA7FC000 \SystemRoot\system32\DRIVERS\serenum.sys 0xB9561000 \SystemRoot\system32\DRIVERS\parport.sys 0xBA4B5000 \SystemRoot\system32\DRIVERS\imapi.sys 0xBA4A5000 \SystemRoot\system32\DRIVERS\cdrom.sys 0xBA495000 \SystemRoot\system32\DRIVERS\redbook.sys 0xB953E000 \SystemRoot\system32\DRIVERS\ks.sys 0xF77EF000 \SystemRoot\system32\DRIVERS\GEARAspiWDM.sys 0xB9168000 \SystemRoot\system32\drivers\ALCXWDM.SYS 0xB9144000 \SystemRoot\system32\drivers\portcls.sys 0xBA485000 \SystemRoot\system32\drivers\drmk.sys 0xB912D000 \SystemRoot\System32\Drivers\ezplay.sys 0xB911A000 \SystemRoot\System32\Drivers\DlinkUDSMBus.sys 0xF77F7000 \SystemRoot\System32\Drivers\TDI.SYS 0xBA53F000 \SystemRoot\system32\DRIVERS\audstub.sys 0xBA475000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0xBA7EC000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0xB9103000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0xF76E7000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0xF76F7000 \SystemRoot\system32\DRIVERS\raspptp.sys 0xB90F2000 \SystemRoot\system32\DRIVERS\psched.sys 0xF7587000 \SystemRoot\system32\DRIVERS\msgpc.sys 0xF77FF000 \SystemRoot\system32\DRIVERS\ptilink.sys 0xF7807000 \SystemRoot\system32\DRIVERS\raspti.sys 0xF7577000 \SystemRoot\System32\Drivers\pcouffin.sys 0xB90C2000 \SystemRoot\system32\DRIVERS\rdpdr.sys 0xF7567000 \SystemRoot\system32\DRIVERS\termdd.sys 0xF780F000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0xF7817000 \SystemRoot\system32\DRIVERS\mouclass.sys 0xF79B5000 \SystemRoot\system32\DRIVERS\swenum.sys 0xB8F74000 \SystemRoot\system32\DRIVERS\update.sys 0xBA7D4000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0xF7557000 \SystemRoot\System32\Drivers\NDProxy.SYS 0xF7547000 \SystemRoot\System32\DRIVERS\usbhub.sys 0xF79B7000 \SystemRoot\System32\DRIVERS\USBD.SYS 0xF79B9000 \SystemRoot\System32\Drivers\Fs_Rec.SYS 0xB9C09000 \SystemRoot\System32\Drivers\Null.SYS 0xF79BB000 \SystemRoot\System32\Drivers\Beep.SYS 0xF7747000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0xF774F000 \SystemRoot\System32\drivers\vga.sys 0xF79BD000 \SystemRoot\System32\Drivers\mnmdd.SYS 0xF79BF000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0xF7757000 \SystemRoot\System32\Drivers\Msfs.SYS 0xF775F000 \SystemRoot\System32\Drivers\Npfs.SYS 0xBA3EB000 \SystemRoot\system32\DRIVERS\rasacd.sys 0xB7DD3000 \SystemRoot\system32\DRIVERS\ipsec.sys 0xB7D7A000 \SystemRoot\system32\DRIVERS\tcpip.sys 0xB7D52000 \SystemRoot\system32\DRIVERS\netbt.sys 0xB7D2C000 \SystemRoot\system32\DRIVERS\ipnat.sys 0xB7D0A000 \SystemRoot\System32\drivers\afd.sys 0xF7517000 \SystemRoot\system32\DRIVERS\netbios.sys 0xF7458000 \SystemRoot\system32\DRIVERS\wanarp.sys 0xB7CDF000 \SystemRoot\system32\DRIVERS\rdbss.sys 0xF7448000 \SystemRoot\system32\DRIVERS\arp1394.sys 0xB7C47000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0xF7438000 \SystemRoot\System32\Drivers\Fips.SYS 0xF7777000 \SystemRoot\system32\DRIVERS\usbccgp.sys 0xF777F000 \SystemRoot\System32\Drivers\avgmfx86.sys 0xB7C13000 \SystemRoot\System32\Drivers\avgldx86.sys 0xF793F000 \SystemRoot\System32\DRIVERS\hidusb.sys 0xF7428000 \SystemRoot\System32\DRIVERS\HIDCLASS.SYS 0xF7947000 \SystemRoot\system32\DRIVERS\kbdhid.sys 0xF794B000 \SystemRoot\system32\DRIVERS\usbscan.sys 0xB8F52000 \SystemRoot\system32\DRIVERS\mouhid.sys 0xBA505000 \SystemRoot\System32\Drivers\Cdfs.SYS 0xBF800000 \SystemRoot\System32\win32k.sys 0xB7E06000 \SystemRoot\System32\drivers\Dxapi.sys 0xF77B7000 \SystemRoot\System32\watchdog.sys 0xBF000000 \SystemRoot\System32\drivers\dxg.sys 0xF7A6F000 \SystemRoot\System32\drivers\dxgthk.sys 0xBF012000 \SystemRoot\System32\nv4_disp.dll 0xBFFA0000 \SystemRoot\System32\ATMFD.DLL 0xB5332000 \SystemRoot\system32\DRIVERS\ndisuio.sys 0xB4FA1000 \SystemRoot\system32\DRIVERS\mrxdav.sys 0xF79E9000 \SystemRoot\System32\Drivers\ParVdm.SYS 0xF7797000 \SystemRoot\System32\drivers\aspi32.sys 0xB4E0A000 \SystemRoot\system32\DRIVERS\srv.sys 0xB496D000 \SystemRoot\system32\drivers\wdmaud.sys 0xB49F2000 \SystemRoot\system32\drivers\sysaudio.sys 0xB482A000 \SystemRoot\System32\Drivers\HTTP.sys 0xBFF50000 \SystemRoot\System32\TSDDD.dll 0xB0360000 \SystemRoot\system32\drivers\kmixer.sys 0x7C900000 \WINDOWS\system32\ntdll.dll Processes (total 69): 0 System Idle Process 4 System 696 C:\WINDOWS\system32\smss.exe 748 csrss.exe 772 C:\WINDOWS\system32\winlogon.exe 816 C:\WINDOWS\system32\services.exe 836 C:\WINDOWS\system32\lsass.exe 1012 C:\WINDOWS\system32\svchost.exe 1080 svchost.exe 1216 C:\WINDOWS\system32\svchost.exe 1256 C:\WINDOWS\system32\svchost.exe 1300 svchost.exe 1412 svchost.exe 1500 C:\Program Files\AVG\AVG9\avgchsvx.exe 1508 C:\Program Files\AVG\AVG9\avgrsx.exe 1596 C:\Program Files\AVG\AVG9\avgcsrvx.exe 1652 C:\WINDOWS\system32\BRSVC01A.EXE 1688 C:\WINDOWS\system32\BRSS01A.EXE 1700 C:\WINDOWS\system32\spoolsv.exe 2040 svchost.exe 184 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 200 C:\Program Files\AVG\AVG9\avgwdsvc.exe 220 C:\Program Files\Bonjour\mDNSResponder.exe 260 svchost.exe 360 C:\Program Files\FolderSize\FolderSizeSvc.exe 652 C:\Program Files\Java\jre6\bin\jqs.exe 688 C:\Program Files\Ahead\Nero 8\Nero BackItUp\NBService.exe 968 C:\WINDOWS\system32\nvsvc32.exe 2076 C:\WINDOWS\system32\svchost.exe 2672 alg.exe 408 C:\Program Files\iPod\bin\iPodService.exe 3640 C:\WINDOWS\explorer.exe 3952 C:\WINDOWS\soundman.exe 3804 C:\WINDOWS\system32\rundll32.exe 4056 C:\Program Files\Unlocker\UnlockerAssistant.exe 124 C:\WINDOWS\system32\TaskSwitch.exe 2884 C:\WINDOWS\system32\rundll32.exe 3352 C:\PROGRA~1\AVG\AVG9\avgtray.exe 3384 C:\Program Files\Common Files\Java\Java Update\jusched.exe 1180 C:\Program Files\iTunes\iTunesHelper.exe 3760 C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe 3844 C:\Program Files\3RVX\3RVX.exe 2640 C:\WINDOWS\system32\ctfmon.exe 3768 C:\Program Files\Microsoft Office\Office\OSA.EXE 3152 C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe 244 C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe 600 csrss.exe 2576 C:\WINDOWS\system32\winlogon.exe 3484 explorer.exe 3024 soundman.exe 3772 rundll32.exe 3764 UnlockerAssistant.exe 3992 NBKeyScan.exe 1040 TaskSwitch.exe 2088 rundll32.exe 2652 avgtray.exe 4036 jusched.exe 3736 iTunesHelper.exe 596 ctfmon.exe 3648 OSA.EXE 2888 C:\Program Files\Internet Explorer\iexplore.exe 2720 C:\Program Files\Internet Explorer\iexplore.exe 3268 C:\Program Files\Outlook Express\msimn.exe 3908 C:\Program Files\Internet Explorer\iexplore.exe 3436 C:\Program Files\Internet Explorer\iexplore.exe 4136 C:\Program Files\Internet Explorer\iexplore.exe 5340 C:\Program Files\Java\jre6\bin\javaw.exe 5008 C:\Program Files\Microsoft Office\Office\EXCEL.EXE 5424 C:\Documents and Settings\John\Desktop\MBRCheck - run on desktop.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS) \\.\F: --> \\.\PhysicalDrive1 at offset 0x00000000`007e0000 (NTFS) \\.\G: --> \\.\PhysicalDrive1 at offset 0x0000009e`b1cd6000 (NTFS) \\.\H: --> \\.\PhysicalDrive1 at offset 0x000000d0`7650e600 (NTFS) PhysicalDrive0 Model Number: WDCWD800JB-00ETA0, Rev: 77.07W77 PhysicalDrive1 Model Number: ST31000340SV, Rev: SV16 Size Device Name MBR Status -------------------------------------------- 74 GB \\.\PhysicalDrive0 Windows XP MBR code detected SHA1: DA38B874B7713D1B51CBC449F4EF809B0DEC644A 931 GB \\.\PhysicalDrive1 Unknown MBR code SHA1: 639AC5CDF8A5CF3245975932C6A4215450A7B98F Found non-standard or infected MBR. Enter 'Y' and hit ENTER for more options, or 'N' to exit: Options: [1] Dump the MBR of a physical disk to file. [2] Restore the MBR of a physical disk with a standard boot code. [3] Exit. Enter your choice: Enter the physical disk number to fix (0-99, -1 to cancel): 1Available MBR codes: [ 0] Default (Windows XP) [ 1] Windows XP [ 2] Windows Server 2003 [ 3] Windows Vista [ 4] Windows 2008 [ 5] Windows 7 [-1] Cancel Please select the MBR code to write to this drive: -1 Done!