PDA

View Full Version : MBR PhysicalDrive0



tmcgehee
2013-06-18, 22:33
I ran the rootkit scan and got the following results:

RootAlyzer Quick Scan Results

Files in Windows folder
----------------------------------------
116 files were tested.
No hidden files detected.
========================================

Files in System folder
----------------------------------------
2841 files were tested.
No hidden files detected.
========================================

Global run entries
----------------------------------------

No hidden entries detected.
========================================

Winlogon entries
----------------------------------------

No hidden entries detected.
========================================

Invisible processes (from handles)
----------------------------------------
0 handle process IDs for 117 processes.
No hidden processes detected.
========================================

Invisible processes (from threads)
----------------------------------------
117 processes tested.
No hidden processes detected.
========================================

Master Boot Records
----------------------------------------
1 MBRs checked.
Unkown MBRs: PhysicalDrive0
PhysicalDrive0
========================================

I have ran several programs to remove it but to no avail. I have used WiseCare 365, aswMRB, Malwarebytes, mbrAnalizer, RegCure Pro. Please help with this.

Yodama
2013-06-19, 10:30
I ran the rootkit scan and got the following results:

RootAlyzer Quick Scan Results

Master Boot Records
----------------------------------------
1 MBRs checked.
Unkown MBRs: PhysicalDrive0
PhysicalDrive0
========================================



Hello the "unknown" MBR above is not necessarily malicious. In fact it is most likely not malicious. An unknown MBR just means that RootAlyzer does not know this pattern, this can have various reasons, for instance usage of a bootloader.
In general all items found by the RootAlyzer are not necessarily malicious. The RootAlyzer shows items which it believes to be out of the ordinary and may give a hint for an infection.
The RootAlyzer is an analyst tool, it is not a scan and fix tool like the System or File Scan.