aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software Run date: 2013-02-07 10:34:19 ----------------------------- 10:34:19.546 OS Version: Windows 5.1.2600 Service Pack 3 10:34:19.546 Number of processors: 2 586 0x170A 10:34:19.546 ComputerName: MJSSWKS11 UserName: Rony@ 10:34:21.250 Initialize success 10:34:37.875 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP3T0L0-10 10:34:37.875 Disk 0 Vendor: ST3160318AS CC44 Size: 152587MB BusType: 3 10:34:37.890 Disk 0 MBR read successfully 10:34:37.890 Disk 0 MBR scan 10:34:37.890 Disk 0 Windows XP default MBR code 10:34:37.890 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 29996 MB offset 63 10:34:37.890 Disk 0 Partition - 00 0F Extended LBA 122589 MB offset 61432560 10:34:37.906 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 122589 MB offset 61432623 10:34:37.921 Disk 0 scanning sectors +312496380 10:34:37.984 Disk 0 scanning C:\WINDOWS\system32\drivers 10:34:55.156 Service scanning 10:35:31.609 Modules scanning 10:35:47.671 Module: C:\WINDOWS\System32\drivers\dxgthk.sys **SUSPICIOUS** 10:35:51.546 Module: C:\WINDOWS\system32\ntdll.dll **SUSPICIOUS** 10:35:51.562 Disk 0 trace - called modules: 10:35:51.640 ntkrnlpa.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll pciide.sys 10:35:51.640 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8714eab8] 10:35:51.640 3 CLASSPNP.SYS[f75e6fd7] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP3T0L0-10[0x87178b00] 10:35:51.640 Scan finished successfully 10:37:54.281 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Rony@\Desktop\MBR.dat" 10:37:54.281 The log file has been saved successfully to "C:\Documents and Settings\Rony@\Desktop\aswMBR.txt"