aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-05-01 12:57:21 ----------------------------- 12:57:21.015 OS Version: Windows 5.1.2600 Service Pack 3 12:57:21.015 Number of processors: 1 586 0x209 12:57:21.015 ComputerName: D530AUCTION UserName: rogerrabbit 12:57:23.406 Initialize success 12:57:30.125 AVAST engine defs: 12050100 12:58:02.875 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 12:58:02.875 Disk 0 Vendor: ST340014A 3.08 Size: 38166MB BusType: 3 12:58:02.890 Disk 0 MBR read successfully 12:58:02.890 Disk 0 MBR scan 12:58:02.953 Disk 0 unknown MBR code 12:58:02.953 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 38161 MB offset 63 12:58:02.968 Disk 0 scanning sectors +78155280 12:58:03.046 Disk 0 scanning C:\WINDOWS\system32\drivers 12:58:18.515 Service scanning 12:58:41.328 Modules scanning 12:58:59.140 Disk 0 trace - called modules: 12:58:59.171 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys intelide.sys PCIIDEX.SYS 12:58:59.171 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8233fab8] 12:58:59.531 3 CLASSPNP.SYS[f8581fd7] -> nt!IofCallDriver -> \Device\0000005d[0x821262b8] 12:58:59.531 5 ACPI.sys[f84f8620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x82299d98] 12:59:00.093 AVAST engine scan C:\WINDOWS 12:59:06.515 AVAST engine scan C:\WINDOWS\system32 13:02:30.562 AVAST engine scan C:\WINDOWS\system32\drivers 13:02:49.484 AVAST engine scan C:\Documents and Settings\rogerrabbit 13:03:45.484 File: C:\Documents and Settings\rogerrabbit\Desktop\RK_Quarantine\FEpvdGsYapE.exe.vir **INFECTED** Win32:FakeSysdefs-D [Trj] 13:19:30.843 AVAST engine scan C:\Documents and Settings\All Users 13:19:54.578 Scan finished successfully 13:20:36.046 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\rogerrabbit\Desktop\MBR.dat" 13:20:36.046 The log file has been saved successfully to "C:\Documents and Settings\rogerrabbit\Desktop\aswMBR.txt"