aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software Run date: 2012-06-13 15:14:15 ----------------------------- 15:14:15.673 OS Version: Windows 6.1.7600 15:14:15.673 Number of processors: 1 586 0x301 15:14:15.676 ComputerName: MIKE-PC UserName: Mike 15:14:17.221 Initialize success 15:22:25.460 AVAST engine defs: 12061300 15:34:17.034 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-1 15:34:17.040 Disk 0 Vendor: TOSHIBA_MK2555GSXN GC002M Size: 238475MB BusType: 11 15:34:17.060 Disk 0 MBR read successfully 15:34:17.065 Disk 0 MBR scan 15:34:17.098 Disk 0 Windows VISTA default MBR code 15:34:17.102 Disk 0 Partition 1 80 (A) 27 Hidden NTFS WinRE NTFS 1500 MB offset 2048 15:34:17.121 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 228693 MB offset 3074048 15:34:17.160 Disk 0 Partition 3 00 17 Hidd HPFS/NTFS NTFS 8281 MB offset 471437312 15:34:17.194 Disk 0 scanning sectors +488396800 15:34:17.268 Disk 0 scanning C:\windows\system32\drivers 15:34:31.762 Service scanning 15:35:32.327 Service sptd C:\windows\System32\Drivers\sptd.sys **LOCKED** 32 15:35:50.655 Modules scanning 15:36:16.461 Disk 0 trace - called modules: 15:36:16.475 ntkrnlpa.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0x84e981e8]<< 15:36:16.476 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85c5dac8] 15:36:16.476 3 CLASSPNP.SYS[88d1759e] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP1T0L0-1[0x85c61030] 15:36:16.477 \Driver\atapi[0x85b9ba38] -> IRP_MJ_CREATE -> 0x84e981e8 15:36:17.946 AVAST engine scan C:\windows 15:36:22.481 AVAST engine scan C:\windows\system32 15:42:14.156 AVAST engine scan C:\windows\system32\drivers 15:42:50.343 AVAST engine scan C:\Users\Mike 15:49:05.629 File: C:\Users\Mike\wevtapi.dll **INFECTED** Win32:Sirefef-BZ [Drp] 15:49:06.701 AVAST engine scan C:\ProgramData 15:50:37.622 Scan finished successfully 15:56:00.390 Disk 0 MBR has been saved successfully to "C:\Program Files\Mozilla Firefox\MBR.dat" 15:56:00.401 The log file has been saved successfully to "C:\Program Files\Mozilla Firefox\aswMBR.txt" 15:58:23.069 Disk 0 MBR has been saved successfully to "C:\Users\Mike\Downloads\MBR.dat" 15:58:23.077 The log file has been saved successfully to "C:\Users\Mike\Downloads\aswMBR.txt2.txt"