MBRCheck, version 1.2.3 (c) 2010, AD Command-line: Windows Version: Windows XP Professional Windows Information: Service Pack 3 (build 2600) Logical Drives Mask: 0x0000000c Kernel Drivers (total 138): 0x804D7000 \WINDOWS\system32\ntkrnlpa.exe 0x806E5000 \WINDOWS\system32\hal.dll 0xBA5A8000 \WINDOWS\system32\KDCOM.DLL 0xBA4B8000 \WINDOWS\system32\BOOTVID.dll 0xB9F79000 ACPI.sys 0xBA5AA000 \WINDOWS\system32\DRIVERS\WMILIB.SYS 0xB9F68000 pci.sys 0xBA0A8000 isapnp.sys 0xBA0B8000 MountMgr.sys 0xB9F49000 ftdisk.sys 0xBA5AC000 dmload.sys 0xB9F23000 dmio.sys 0xBA328000 PartMgr.sys 0xBA0C8000 VolSnap.sys 0xB9E6C000 iaStor.sys 0xBA0D8000 disk.sys 0xBA0E8000 \WINDOWS\system32\DRIVERS\CLASSPNP.SYS 0xB9E4C000 fltmgr.sys 0xB9E3A000 sr.sys 0xB9E24000 DRVMCDB.SYS 0xBA0F8000 PxHelp20.sys 0xB9E0D000 KSecDD.sys 0xB9D80000 Ntfs.sys 0xB9D53000 NDIS.sys 0xB9D39000 Mup.sys 0xBA1B8000 \SystemRoot\system32\DRIVERS\intelppm.sys 0xB8F16000 \SystemRoot\system32\DRIVERS\nv4_mini.sys 0xB8F02000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS 0xB8EC9000 \SystemRoot\system32\DRIVERS\e1e5132.sys 0xBA418000 \SystemRoot\system32\DRIVERS\usbuhci.sys 0xB8EA5000 \SystemRoot\system32\DRIVERS\USBPORT.SYS 0xBA420000 \SystemRoot\system32\DRIVERS\usbehci.sys 0xB8E7D000 \SystemRoot\system32\DRIVERS\HDAudBus.sys 0xB8E49000 \SystemRoot\system32\DRIVERS\HSFHWBS2.sys 0xB8E26000 \SystemRoot\system32\DRIVERS\ks.sys 0xB8D27000 \SystemRoot\system32\DRIVERS\HSF_DP.sys 0xB8C80000 \SystemRoot\system32\DRIVERS\HSF_CNXT.sys 0xBA428000 \SystemRoot\System32\Drivers\Modem.SYS 0xBA1C8000 \SystemRoot\system32\DRIVERS\imapi.sys 0xBA5F4000 \SystemRoot\System32\Drivers\DLACDBHM.SYS 0xBA1D8000 \SystemRoot\system32\DRIVERS\cdrom.sys 0xBA1E8000 \SystemRoot\system32\DRIVERS\redbook.sys 0xBA430000 \SystemRoot\system32\DRIVERS\ELacpi.sys 0xBA776000 \SystemRoot\system32\DRIVERS\audstub.sys 0xBA1F8000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0xBA57C000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0xB8C69000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0xBA208000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0xBA218000 \SystemRoot\system32\DRIVERS\raspptp.sys 0xBA438000 \SystemRoot\system32\DRIVERS\TDI.SYS 0xB8C58000 \SystemRoot\system32\DRIVERS\psched.sys 0xBA228000 \SystemRoot\system32\DRIVERS\msgpc.sys 0xBA440000 \SystemRoot\system32\DRIVERS\ptilink.sys 0xBA448000 \SystemRoot\system32\DRIVERS\raspti.sys 0xB8C28000 \SystemRoot\system32\DRIVERS\rdpdr.sys 0xBA238000 \SystemRoot\system32\DRIVERS\termdd.sys 0xBA450000 \SystemRoot\system32\DRIVERS\kbdclass.sys 0xBA458000 \SystemRoot\system32\DRIVERS\mouclass.sys 0xBA5F6000 \SystemRoot\system32\DRIVERS\swenum.sys 0xB8BCA000 \SystemRoot\system32\DRIVERS\update.sys 0xBA59C000 \SystemRoot\system32\DRIVERS\mssmbios.sys 0xBA5A0000 \SystemRoot\system32\drivers\MODEMCSA.sys 0xB92C1000 \SystemRoot\System32\Drivers\NDProxy.SYS 0xBA118000 \SystemRoot\system32\DRIVERS\usbhub.sys 0xBA62A000 \SystemRoot\system32\DRIVERS\USBD.SYS 0xB0233000 \SystemRoot\system32\drivers\sthda.sys 0xB020F000 \SystemRoot\system32\drivers\portcls.sys 0xB0DC0000 \SystemRoot\system32\drivers\drmk.sys 0xB00BB000 \SystemRoot\system32\drivers\monfilt.sys 0xB31E1000 \SystemRoot\System32\Drivers\i2omgmt.SYS 0xB0094000 \SystemRoot\system32\DRIVERS\MpFilter.sys 0xB04AF000 \SystemRoot\system32\DRIVERS\hidusb.sys 0xB0DB0000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS 0xB080F000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS 0xB099A000 \SystemRoot\System32\Drivers\Fs_Rec.SYS 0xBA6ED000 \SystemRoot\System32\Drivers\Null.SYS 0xB0998000 \SystemRoot\System32\Drivers\Beep.SYS 0xB07FF000 \SystemRoot\System32\Drivers\DLARTL_N.SYS 0xB04AB000 \??\C:\WINDOWS\System32\Drivers\Elhid.sys 0xB07F7000 \SystemRoot\System32\drivers\vga.sys 0xB0996000 \SystemRoot\System32\Drivers\mnmdd.SYS 0xB035F000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0xB07EF000 \SystemRoot\System32\Drivers\Msfs.SYS 0xB07E7000 \SystemRoot\System32\Drivers\Npfs.SYS 0xB04A3000 \SystemRoot\system32\DRIVERS\rasacd.sys 0xB0061000 \SystemRoot\system32\DRIVERS\ipsec.sys 0xB0008000 \SystemRoot\system32\DRIVERS\tcpip.sys 0xAFFE0000 \SystemRoot\system32\DRIVERS\netbt.sys 0xAFFBE000 \SystemRoot\System32\drivers\afd.sys 0xB0686000 \SystemRoot\system32\DRIVERS\netbios.sys 0xAFF93000 \SystemRoot\system32\DRIVERS\rdbss.sys 0xAFF23000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0xB0656000 \SystemRoot\System32\Drivers\Fips.SYS 0xAFEFD000 \SystemRoot\system32\DRIVERS\ipnat.sys 0xB0636000 \SystemRoot\system32\DRIVERS\wanarp.sys 0xB035D000 \??\C:\WINDOWS\System32\Drivers\Elmou.sys 0xB035B000 \??\C:\WINDOWS\System32\Drivers\Elmon.sys 0xB0359000 \??\C:\WINDOWS\System32\Drivers\Elkbd.sys 0xAA1CA000 \SystemRoot\system32\DRIVERS\usbccgp.sys 0xAB7DE000 \SystemRoot\system32\DRIVERS\mouhid.sys 0xAB7D6000 \SystemRoot\system32\DRIVERS\kbdhid.sys 0xA966F000 \SystemRoot\System32\Drivers\Cdfs.SYS 0xA8957000 \SystemRoot\system32\DRIVERS\lvuvc.sys 0xA965F000 \SystemRoot\system32\drivers\usbaudio.sys 0xA8911000 \SystemRoot\system32\DRIVERS\lvrs.sys 0xA885A000 \SystemRoot\System32\Drivers\dump_iaStor.sys 0xBF800000 \SystemRoot\System32\win32k.sys 0xA9DA1000 \SystemRoot\System32\drivers\Dxapi.sys 0xBA478000 \SystemRoot\System32\watchdog.sys 0xBF000000 \SystemRoot\System32\drivers\dxg.sys 0xBA71F000 \SystemRoot\System32\drivers\dxgthk.sys 0xBF012000 \SystemRoot\System32\nv4_disp.dll 0xBF3CF000 \SystemRoot\System32\ATMFD.DLL 0xB845B000 \??\C:\WINDOWS\system32\drivers\mbam.sys 0xBA258000 \SystemRoot\System32\Drivers\DRVNDDM.SYS 0xBA7E0000 \SystemRoot\System32\DLA\DLADResN.SYS 0xA80E3000 \SystemRoot\System32\DLA\DLAIFS_M.SYS 0xB6FE0000 \SystemRoot\System32\DLA\DLAOPIOM.SYS 0xAA868000 \SystemRoot\System32\DLA\DLAPoolM.SYS 0xBA358000 \SystemRoot\System32\DLA\DLABOIOM.SYS 0xA80CB000 \SystemRoot\System32\DLA\DLAUDFAM.SYS 0xA80B5000 \SystemRoot\System32\DLA\DLAUDF_M.SYS 0xB92A1000 \SystemRoot\system32\DRIVERS\fssfltr_tdi.sys 0xAE2F2000 \SystemRoot\system32\DRIVERS\ndisuio.sys 0xA7828000 \SystemRoot\system32\drivers\wdmaud.sys 0xB4111000 \SystemRoot\system32\drivers\sysaudio.sys 0xA77B3000 \SystemRoot\system32\drivers\ctusfsyn.sys 0xA7783000 \SystemRoot\system32\DRIVERS\ctoss2k.sys 0xA775D000 \SystemRoot\system32\DRIVERS\ctsfm2k.sys 0xA72C1000 \SystemRoot\system32\DRIVERS\mrxdav.sys 0xBA63C000 \SystemRoot\System32\Drivers\ASCTRM.SYS 0xA7208000 \SystemRoot\System32\Drivers\HTTP.sys 0xA7098000 \SystemRoot\system32\DRIVERS\srv.sys 0xA71E8000 \SystemRoot\system32\DRIVERS\mdmxsdk.sys 0xBA5B6000 \??\C:\Program Files\Dell Support\GTAction\triggers\DSproct.sys 0xA752E000 \SystemRoot\system32\DRIVERS\ipfltdrv.sys 0xBA390000 \??\c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{990C4D79-AB36-416E-91D0-858C03F36981}\MpKsldb0f6496.sys 0x7C900000 \WINDOWS\system32\ntdll.dll Processes (total 63): 0 System Idle Process 4 System 648 C:\WINDOWS\system32\smss.exe 704 csrss.exe 728 C:\WINDOWS\system32\winlogon.exe 772 C:\WINDOWS\system32\services.exe 784 C:\WINDOWS\system32\lsass.exe 980 C:\WINDOWS\system32\svchost.exe 1048 svchost.exe 1144 C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe 1180 C:\WINDOWS\system32\svchost.exe 1304 svchost.exe 1372 svchost.exe 1596 C:\WINDOWS\system32\brsvc01a.exe 1616 C:\WINDOWS\system32\brss01a.exe 1636 C:\WINDOWS\system32\spoolsv.exe 1692 C:\Program Files\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe 1868 C:\WINDOWS\explorer.exe 1964 C:\WINDOWS\ehome\ehtray.exe 2012 C:\WINDOWS\stsystra.exe 2020 C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe 2028 C:\Program Files\Dell\Media Experience\DMXLauncher.exe 2036 C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe 180 C:\WINDOWS\system32\rundll32.exe 240 C:\Program Files\Creative\VoiceCenter\AndreaVC.exe 252 C:\WINDOWS\system32\DLA\DLACTRLW.EXE 284 C:\DOCUME~1\TERRIW~1\LOCALS~1\temp\clclean.0001 292 C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe 352 C:\Program Files\Logitech\LWS\Webcam Software\LWS.exe 376 C:\Program Files\Logitech\LWS\Webcam Software\CameraHelperShell.exe 384 C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe 496 C:\Documents and Settings\All Users\Application Data\Anti-phishing Domain Advisor\visicom_antiphishing.exe 524 C:\Program Files\Common Files\LogiShrd\LQCVFX\COCIManager.exe 536 C:\Program Files\Microsoft Security Client\msseces.exe 556 C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe 1008 C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe 1128 C:\Program Files\Dell Support\DSAgnt.exe 1496 C:\WINDOWS\system32\ctfmon.exe 2156 svchost.exe 2224 C:\WINDOWS\system32\Brmfrmps.exe 2264 C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe 2280 C:\WINDOWS\system32\CTSVCCDA.EXE 2320 C:\WINDOWS\ehome\ehrecvr.exe 2336 C:\WINDOWS\ehome\ehSched.exe 2344 C:\Program Files\Digital Line Detect\DLG.exe 2464 C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe 2476 C:\Program Files\Java\jre6\bin\jqs.exe 2516 C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe 2752 C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE 2776 C:\Program Files\Norton Safe Web Lite\Engine\1.2.0.6\ccSvcHst.exe 2824 C:\WINDOWS\system32\nvsvc32.exe 2852 C:\Program Files\Microsoft\BingBar\SeaPort.EXE 3028 svchost.exe 3284 C:\WINDOWS\system32\svchost.exe 3472 mcrdsvc.exe 3560 C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology Drivers\ELService.exe 4004 C:\Program Files\Canon\CAL\CALMAIN.exe 3108 C:\WINDOWS\ehome\ehmsas.exe 3256 C:\Program Files\Mozilla Firefox\firefox.exe 2136 C:\WINDOWS\system32\dllhost.exe 1504 alg.exe 3208 C:\WINDOWS\system32\svchost.exe 1220 C:\Documents and Settings\Terri Ward\Desktop\MBRCheck.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`036e8e00 (NTFS) PhysicalDrive0 Model Number: ST3250824AS, Rev: 3.ADJ Size Device Name MBR Status -------------------------------------------- 232 GB \\.\PhysicalDrive0 Unknown MBR code SHA1: BF118E4CFC2D7C7489A85AC7AD11D2A979F74824 Found non-standard or infected MBR. Enter 'Y' and hit ENTER for more options, or 'N' to exit: Options: [1] Dump the MBR of a physical disk to file. [2] Restore the MBR of a physical disk with a standard boot code. [3] Exit. Enter your choice: Enter the physical disk number to fix (0-99, -1 to cancel): 0Available MBR codes: [ 0] Default (Windows XP) [ 1] Windows XP [ 2] Windows Server 2003 [ 3] Windows Vista [ 4] Windows 2008 [ 5] Windows 7 [-1] Cancel Please select the MBR code to write to this drive: 1 Do you want to fix the MBR code? Type 'YES' and hit ENTER to continue: yes Successfully wrote new MBR code! Please reboot your computer to complete the fix. Done!