aswMBR version 0.9.9.1297 Copyright(c) 2011 AVAST Software Run date: 2012-01-19 06:43:30 ----------------------------- 06:43:30.541 OS Version: Windows 5.1.2600 Service Pack 3 06:43:30.541 Number of processors: 1 586 0xD06 06:43:30.541 ComputerName: ALLEN-LAPTOP UserName: Allen 06:43:30.952 Initialize success 06:43:47.846 AVAST engine defs: 12011801 06:43:55.948 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 06:43:55.948 Disk 0 Vendor: WDC_WD400VE-75HDT0 09.07D09 Size: 38154MB BusType: 3 06:43:56.008 Disk 0 MBR read successfully 06:43:56.008 Disk 0 MBR scan 06:43:56.078 Disk 0 unknown MBR code 06:43:56.078 Disk 0 Partition 1 00 DE Dell Utility Dell 4.1 47 MB offset 63 06:43:56.118 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 34498 MB offset 96390 06:43:56.158 Disk 0 Partition 3 00 DB CP/M / CTOS MSWIN4.1 3600 MB offset 70750260 06:43:56.168 Disk 0 scanning sectors +78124095 06:43:56.358 Disk 0 scanning C:\WINDOWS\system32\drivers 06:44:37.998 File: C:\WINDOWS\system32\drivers\redbook.sys **INFECTED** Win32:Aluroot-B [Rtk] 06:44:53.651 Disk 0 trace - called modules: 06:44:53.681 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys PCIIDEX.SYS 06:44:53.681 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a30cab8] 06:44:53.681 3 CLASSPNP.SYS[f7637fd7] -> nt!IofCallDriver -> \Device\0000008a[0x8a2ef288] 06:44:53.681 5 ACPI.sys[f75ae620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8a35c940] 06:44:54.352 AVAST engine scan C:\WINDOWS 06:46:14.507 AVAST engine scan C:\WINDOWS\system32 06:55:10.908 AVAST engine scan C:\WINDOWS\system32\drivers 06:55:51.757 File: C:\WINDOWS\system32\drivers\redbook.sys **INFECTED** Win32:Aluroot-B [Rtk] 06:56:18.585 AVAST engine scan C:\Documents and Settings\Allen 08:09:19.635 AVAST engine scan C:\Documents and Settings\All Users 08:19:38.044 Scan finished successfully 08:52:53.774 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Allen\Desktop\MBR.dat" 08:52:53.844 The log file has been saved successfully to "C:\Documents and Settings\Allen\Desktop\aswMBR 2012-01-19 Quickscan Before Fix.txt" 08:52:57.429 Fixing ... C:\WINDOWS\system32\drivers\redbook.sys 08:53:11.299 File C:\WINDOWS\system32\drivers\redbook.sys fixed successfully - please reboot ASAP 08:53:35.073 Moved: C:\DOCUME~1\Allen\LOCALS~1\Temp\~Quarantine.aswMBR\redbook.sys 08:53:42.084 Moved: C:\DOCUME~1\Allen\LOCALS~1\Temp\~Quarantine.aswMBR\redbook.sys 08:54:57.492 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Allen\Desktop\MBR.dat" 08:54:57.542 The log file has been saved successfully to "C:\Documents and Settings\Allen\Desktop\aswMBR 2012-01-19 Quickscan After Fix.txt"