aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software Run date: 2011-12-20 15:13:50 ----------------------------- 15:13:50.349 OS Version: Windows x64 6.1.7601 Service Pack 1 15:13:50.350 Number of processors: 4 586 0x2A07 15:13:50.351 ComputerName: EDDYG-PC UserName: EddyG 15:13:52.304 Initialize success 15:13:57.685 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 15:13:57.689 Disk 0 Vendor: WDC_WD64 01.0 Size: 610480MB BusType: 3 15:13:57.710 Disk 0 MBR read successfully 15:13:57.714 Disk 0 MBR scan 15:13:57.719 Disk 0 TDL4@MBR code has been found 15:13:57.726 Disk 0 Windows 7 default MBR code found via API 15:13:57.729 Disk 0 MBR hidden 15:13:57.732 Disk 0 MBR [TDL4] **ROOTKIT** 15:13:57.736 Disk 0 trace - called modules: 15:13:57.741 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys >>UNKNOWN [0xfffffa8006941254]<< 15:13:57.747 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800692d060] 15:13:57.753 3 CLASSPNP.SYS[fffff8800180143f] -> nt!IofCallDriver -> [0xfffffa80062e6960] 15:13:57.760 5 ACPI.sys[fffff88000f7f7a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa80062e8050] 15:13:57.765 \Driver\iaStor[0xfffffa80062a5060] -> IRP_MJ_INTERNAL_DEVICE_CONTROL -> 0xfffffa8006941254 15:13:58.004 Scan finished successfully 15:14:13.402 Disk 0 MBR has been saved successfully to "C:\Users\EddyG\Desktop\MBR.dat" 15:14:13.409 The log file has been saved successfully to "C:\Users\EddyG\Desktop\aswMBR.txt" aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software Run date: 2011-12-28 16:22:11 ----------------------------- 16:22:11.720 OS Version: Windows x64 6.1.7601 Service Pack 1 16:22:11.720 Number of processors: 4 586 0x2A07 16:22:11.720 ComputerName: EDDYG-PC UserName: EddyG 16:22:14.262 Initialize success 16:22:18.968 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 16:22:18.984 Disk 0 Vendor: WDC_WD64 01.0 Size: 610480MB BusType: 3 16:22:18.984 Disk 0 MBR read successfully 16:22:19.000 Disk 0 MBR scan 16:22:19.000 Disk 0 TDL4@MBR code has been found 16:22:19.000 Disk 0 Windows 7 default MBR code found via API 16:22:19.000 Disk 0 MBR hidden 16:22:19.015 Disk 0 MBR [TDL4] **ROOTKIT** 16:22:19.015 Disk 0 trace - called modules: 16:22:19.015 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys >>UNKNOWN [0xfffffa8006945254]<< 16:22:19.031 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800692d060] 16:22:19.031 3 CLASSPNP.SYS[fffff8800180143f] -> nt!IofCallDriver -> [0xfffffa8006652e40] 16:22:19.031 5 ACPI.sys[fffff88000f827a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8006651050] 16:22:19.031 \Driver\iaStor[0xfffffa80062c5060] -> IRP_MJ_INTERNAL_DEVICE_CONTROL -> 0xfffffa8006945254 16:22:19.546 Scan finished successfully 16:22:27.767 Disk 0 MBR has been saved successfully to "C:\Users\EddyG\Desktop\MBR.dat" 16:22:27.892 The log file has been saved successfully to "C:\Users\EddyG\Desktop\aswMBR.txt"