aswMBR version 0.9.4 Copyright(c) 2011 AVAST Software Run date: 2011-04-10 05:27:40 ----------------------------- 05:27:40.109 OS Version: Windows 5.1.2600 Service Pack 2 05:27:40.109 Number of processors: 4 586 0xF0B 05:27:40.109 ComputerName: JEFFDESK UserName: Jeff 05:27:40.500 Initialize success 05:27:46.875 Disk 0 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-6 05:27:46.875 Disk 0 Vendor: WDC_WD1600AAJB-00PVA0 00.07H00 Size: 152627MB BusType: 3 05:27:46.875 Disk 1 (boot) \Device\Harddisk1\DR1 -> \Device\Ide\IdePort2 05:27:46.875 Disk 1 Vendor: WDC_WD1600JS-00NCB1 10.02E02 Size: 152627MB BusType: 3 05:27:46.875 Disk 2 \Device\Harddisk2\DR2 -> \Device\Ide\IdeDeviceP4T0L0-26 05:27:46.875 Disk 2 Vendor: ST3250823AS 3.06 Size: 238475MB BusType: 3 05:27:46.875 Device \Device\Ide\IdeDeviceP2T0L0-19 -> \??\IDE#DiskWDC_WD1600JS-00NCB1_____________________10.02E02#5&18fda9ce&0&0.0.0#{53f56307-b6bf-11d0-94f2-00a0c91efb8b} not found 05:27:46.875 Device \Driver\atapi -> DriverStartIo 8a459aea 05:27:48.875 Disk 1 MBR read successfully 05:27:48.875 Disk 1 MBR scan 05:27:50.875 Disk 1 scanning sectors +312576705 05:27:50.890 Disk 1 scanning C:\WINDOWS\system32\drivers 05:27:55.296 File C:\WINDOWS\system32\drivers\sshrmd.sys TDL3 **ROOTKIT** 05:27:55.296 Disk 1 trace - called modules: 05:27:55.296 ntkrnlpa.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0x8938a8e0]<< 05:27:55.312 1 nt!IofCallDriver -> \Device\Harddisk1\DR1[0x8a446ab8] 05:27:55.312 Scan finished successfully