aswMBR log:
aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-21 17:26:05
-----------------------------
17:26:05.573 OS Version: Windows x64 6.1.7600
17:26:05.573 Number of processors: 8 586 0x1A05
17:26:05.573 ComputerName: X UserName:
17:26:07.351 Initialize success
17:26:07.445 AVAST engine defs: 11112101
17:26:50.002 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Scsi\mv91xx1Port4Path0Target0Lun0
17:26:50.002 Disk 0 Vendor: WDC_WD64 05.0 Size: 610480MB BusType: 11
17:26:50.002 Device \Driver\mv91xx -> DriverStartIo SCSIPORT.SYS fffff88000db2bc0
17:26:50.002 Device \Driver\mv91xx -> MajorFunction fffffa8007a6b2c0
17:26:52.030 Disk 0 MBR read successfully
17:26:52.030 Disk 0 MBR scan
17:26:52.045 Disk 0 Windows 7 default MBR code
17:26:52.045 Service scanning
17:26:53.777 Service GMSIPCI D:\INSTALL\GMSIPCI.SYS **LOCKED** 21
17:26:53.808 Service NTACCESS D:\NTACCESS_64.sys **LOCKED** 21
17:26:53.855 Service SetupNTGLM7X D:\NTGLM7X.sys **LOCKED** 21
17:26:53.870 Service sptd C:\Windows\System32\Drivers\sptd.sys **LOCKED** 32
17:26:54.432 Modules scanning
17:26:54.432 Disk 0 trace - called modules:
17:26:54.448 ntoskrnl.exe CLASSPNP.SYS disk.sys >>UNKNOWN [0xfffffa80085e2334]<<
17:26:54.448 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa80085d0060]
17:26:54.463 3 CLASSPNP.SYS[fffff88001b7343f] -> nt!IofCallDriver -> \Device\Scsi\mv91xx1Port4Path0Target0Lun0[0xfffffa8007bc5050]
17:26:54.463 \Driver\mv91xx[0xfffffa8007b86660] -> IRP_MJ_CREATE -> 0xfffffa8007a6b2c0
17:26:56.850 AVAST engine scan C:\Windows
17:27:02.076 AVAST engine scan C:\Windows\system32
17:27:47.690 AVAST engine scan C:\Windows\system32\drivers
17:27:56.270 AVAST engine scan C:\Users\Logan
17:31:47.478 AVAST engine scan C:\ProgramData
17:35:04.351 Scan finished successfully
17:36:30.510 Disk 0 MBR has been saved successfully to "C:\Users\Logan\Desktop\MBR.dat"
17:36:30.510 The log file has been saved successfully to "C:\Users\Logan\Desktop\aswMBR.txt"
Bootkit log:
Bootkit Remover
(c) 2009 Esage Lab
www.esagelab.com
Program version: 1.2.0.1
OS Version: Microsoft Windows 7 Home Premium Edition (build 7600), 64-bit
System volume is \\.\C:
\\.\C: -> \\.\PhysicalDrive0 at offset 0x00000000`06500000
ATA_Read(): DeviceIoControl() ERROR 1
Boot sector MD5 is: bb4f1627d8b9beda49ac0d010229f3ff
Size Device Name MBR Status
--------------------------------------------
596 GB \\.\PhysicalDrive0 OK (DOS/Win32 Boot code found)
Done;
Press any key to quit...