aswMBR version 0.9.9.1532 Copyright(c) 2011 AVAST Software Run date: 2012-02-17 12:55:54 ----------------------------- 12:55:54.127 OS Version: Windows 6.0.6002 Service Pack 2 12:55:54.127 Number of processors: 2 586 0x4303 12:55:54.129 ComputerName: LORIADMIN-PC UserName: Lori Admin 12:55:56.596 Initialize success 12:57:05.202 AVAST engine defs: 12021700 12:57:30.418 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000056 12:57:30.420 Disk 0 Vendor: ST350063 3.CH Size: 476940MB BusType: 6 12:57:30.426 Disk 0 MBR read successfully 12:57:30.429 Disk 0 MBR scan 12:57:30.441 Disk 0 unknown MBR code 12:57:30.444 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 467869 MB offset 63 12:57:30.481 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 9067 MB offset 958196925 12:57:30.494 Disk 0 scanning sectors +976768065 12:57:30.550 Disk 0 scanning C:\Windows\system32\drivers 12:57:44.837 Service scanning 12:57:46.137 Modules scanning 12:57:50.628 Disk 0 trace - called modules: 12:57:50.651 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll storport.sys nvstor32.sys 12:57:50.656 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x87164960] 12:57:50.661 3 CLASSPNP.SYS[8c1a98b3] -> nt!IofCallDriver -> [0x8589fb68] 12:57:50.667 5 acpi.sys[806126bc] -> nt!IofCallDriver -> \Device\00000056[0x8622fb88] 12:57:51.897 AVAST engine scan C:\Windows 12:58:00.263 AVAST engine scan C:\Windows\system32 12:59:03.183 File: C:\Windows\system32\jureg.exe **INFECTED** Win32:SMSSend-IG [Trj] 13:03:52.839 AVAST engine scan C:\Windows\system32\drivers 13:04:15.792 AVAST engine scan C:\Users\Lori Admin 15:33:29.215 AVAST engine scan C:\ProgramData 16:05:13.289 Scan finished successfully 16:08:05.898 Disk 0 MBR has been saved successfully to "C:\Users\Lori Admin\Downloads\MBR.dat" 16:08:05.907 The log file has been saved successfully to "C:\Users\Lori Admin\Downloads\aswMBR.txt"