aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software Run date: 2011-10-30 09:30:43 ----------------------------- 09:30:43.480 OS Version: Windows x64 6.1.7600 09:30:43.480 Number of processors: 2 586 0x603 09:30:43.481 ComputerName: MARZISPCOFDOOM UserName: Marzi Wolfen 09:31:36.942 Initialize success 09:31:38.237 AVAST engine defs: 11103000 09:33:27.966 Disk 0 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 09:33:27.968 Disk 0 Vendor: ST3200822A 3.02 Size: 190782MB BusType: 3 09:33:27.970 Disk 1 (boot) \Device\Harddisk1\DR1 -> \Device\00000066 09:33:27.971 Disk 1 Vendor: WDC_WD64 01.0 Size: 610480MB BusType: 3 09:33:27.973 Disk 4 \Device\Harddisk4\DR4 -> \Device\0000007f 09:33:27.976 Disk 4 Vendor: Size: 610480MB BusType: 0 09:33:30.052 Disk 1 MBR read successfully 09:33:30.055 Disk 1 MBR scan 09:33:30.058 Disk 1 unknown MBR code 09:33:30.061 Service scanning 09:33:34.333 Modules scanning 09:33:34.335 Disk 1 trace - called modules: 09:33:34.345 ntoskrnl.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0xfffffa8006284590]<< 09:33:34.352 1 nt!IofCallDriver -> \Device\Harddisk1\DR1[0xfffffa8005d58790] 09:34:00.787 AVAST engine scan C:\Windows 09:37:09.357 AVAST engine scan C:\Windows\system32 09:38:56.989 File: C:\Windows\system32\consrv.dll **INFECTED** Win32:Malware-gen 09:54:44.366 File: C:\Windows\system32\SET80C4.tmp **HIDDEN** 09:54:45.487 File: C:\Windows\system32\SET8E4F.tmp **HIDDEN** 09:57:10.182 AVAST engine scan C:\Windows\system32\drivers 09:59:17.114 AVAST engine scan C:\Users\Marzi Wolfen 12:04:35.740 AVAST engine scan C:\ProgramData 12:07:25.467 Scan finished successfully 13:22:02.093 Disk 1 MBR has been saved successfully to "I:\MBR.dat" 13:22:02.103 The log file has been saved successfully to "I:\aswMBR.txt"