aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software Run date: 2011-10-15 13:11:26 ----------------------------- 13:11:26.623 OS Version: Windows x64 6.1.7601 Service Pack 1 13:11:26.623 Number of processors: 4 586 0x2505 13:11:26.623 ComputerName: BUTCH UserName: 13:11:28.573 Initialize success 13:12:09.249 AVAST engine defs: 11101501 13:12:44.721 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 13:12:44.721 Disk 0 Vendor: SAMSUNG_HD103SJ 1AJ10001 Size: 953869MB BusType: 3 13:12:44.753 Disk 0 MBR read successfully 13:12:44.753 Disk 0 MBR scan 13:12:44.753 Disk 0 MBR:Alureon-I [Rtk] 13:12:44.753 Disk 0 TDL4@MBR code has been found 13:12:44.768 Disk 0 MBR hidden 13:12:44.768 Disk 0 MBR [TDL4] **ROOTKIT** 13:12:44.768 Disk 0 trace - called modules: 13:12:44.784 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys >>UNKNOWN [0xfffffa8004bac254]<< 13:12:44.784 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004b98060] 13:12:44.784 3 CLASSPNP.SYS[fffff88001ba543f] -> nt!IofCallDriver -> [0xfffffa80048e6580] 13:12:44.784 5 ACPI.sys[fffff88000f9b7a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa80048e8060] 13:12:45.236 \Driver\atapi[0xfffffa80048de4d0] -> IRP_MJ_INTERNAL_DEVICE_CONTROL -> 0xfffffa8004bac254 13:12:46.001 AVAST engine scan C:\Windows 13:12:48.309 AVAST engine scan C:\Windows\system32 13:14:18.306 AVAST engine scan C:\Windows\system32\drivers 13:14:29.538 AVAST engine scan C:\Users\Dell 64 13:19:05.268 AVAST engine scan C:\ProgramData 13:21:24.394 Scan finished successfully 13:21:54.986 Disk 0 MBR has been saved successfully to "C:\Users\Dell 64\Downloads\MBR.dat" 13:21:54.986 The log file has been saved successfully to "C:\Users\Dell 64\Downloads\aswMBR.txt"