aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software Run date: 2011-09-05 18:26:43 ----------------------------- 18:26:43.359 OS Version: Windows 5.1.2600 Service Pack 2 18:26:43.359 Number of processors: 2 586 0x2B01 18:26:43.359 ComputerName: YOUR-B59D0B58A9 UserName: Owner 18:26:44.421 Initialize success 18:26:44.484 AVAST engine defs: 11090500 18:27:01.359 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 18:27:01.359 Disk 0 Vendor: WDC_WD3200BB-22KEA0 08.05J08 Size: 305245MB BusType: 3 18:27:03.375 Disk 0 MBR read successfully 18:27:03.375 Disk 0 MBR scan 18:27:03.390 Disk 0 unknown MBR code 18:27:03.390 Disk 0 malicious Win32:MBRoot code @ sector 61 ! 18:27:03.421 Disk 0 PE file @ sector 625137345 ! 18:27:03.453 Disk 0 scanning C:\WINDOWS\system32\drivers 18:27:14.046 Service scanning 18:27:15.203 Modules scanning 18:27:50.468 Disk 0 trace - called modules: 18:27:50.484 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS 18:27:50.484 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x89e83030] 18:27:50.500 3 CLASSPNP.SYS[ba16905b] -> nt!IofCallDriver -> \Device\00000093[0x89ec9f18] 18:27:50.500 5 ACPI.sys[b9f7f620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x89e98940] 18:27:51.234 AVAST engine scan C:\WINDOWS 18:28:10.062 AVAST engine scan C:\WINDOWS\system32 18:30:13.062 AVAST engine scan C:\WINDOWS\system32\drivers 18:30:41.875 AVAST engine scan C:\Documents and Settings\Owner.YOUR-B59D0B58A9 18:35:32.703 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Owner.YOUR-B59D0B58A9\Desktop\MBR.dat" 18:35:32.703 The log file has been saved successfully to "C:\Documents and Settings\Owner.YOUR-B59D0B58A9\Desktop\aswMBR.txt"