aswMBR version 1.0.1.2201 Copyright(c) 2014 AVAST Software Run date: 2014-11-09 17:46:21 ----------------------------- 17:46:21.455 OS Version: Windows x64 6.1.7601 Service Pack 1 17:46:21.455 Number of processors: 4 586 0x2A07 17:46:21.455 ComputerName: TEAMTKAC-PC UserName: TeamTkac 17:46:25.480 Initialize success 17:46:25.495 VM: initialized successfully 17:46:25.495 VM: Intel CPU supported virtualized 17:46:28.566 VM: supported disk I/O iaStor.sys 17:46:33.277 AVAST engine defs: 14110901 17:46:47.301 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 17:46:47.301 Disk 0 Vendor: ST964032 0001 Size: 610480MB BusType: 3 17:46:47.395 VM: Disk 0 MBR read successfully 17:46:47.395 Disk 0 MBR scan 17:46:47.411 Disk 0 Windows 7 default MBR code 17:46:47.426 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 16384 MB offset 2048 17:46:47.442 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 33556480 17:46:47.442 Disk 0 Boot: NTFS code=1 17:46:47.457 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 593994 MB offset 33761280 17:46:47.551 Disk 0 scanning C:\Windows\system32\drivers 17:46:58.939 Service scanning 17:47:19.328 Modules scanning 17:47:19.328 Disk 0 trace - called modules: 17:47:19.359 ntoskrnl.exe CLASSPNP.SYS disk.sys iaStor.sys 17:47:19.359 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8006929060] 17:47:19.375 3 CLASSPNP.SYS[fffff880013c643f] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa8004a96050] 17:47:20.139 AVAST engine scan C:\Windows 17:47:22.823 AVAST engine scan C:\Windows\system32 17:50:23.317 AVAST engine scan C:\Windows\system32\drivers 17:50:37.607 AVAST engine scan C:\Users\TeamTkac 17:56:41.945 File: C:\Users\TeamTkac\AppData\LocalLow\utctlfd.dll **INFECTED** Win32:Kryptik-OOK [Trj] 18:00:09.098 AVAST engine scan C:\ProgramData 18:02:49.625 Disk 0 statistics 4711300/0/22 @ 2.94 MB/s 18:02:49.640 Scan finished successfully 18:05:57.629 Disk 0 MBR has been saved successfully to "C:\Users\TeamTkac\Desktop\MBR.dat" 18:05:57.644 The log file has been saved successfully to "C:\Users\TeamTkac\Desktop\aswMBR.txt"