aswMBR Log att'd
Hi,
Here's the log you requested:
aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-23 13:31:04
-----------------------------
13:31:04.671 OS Version: Windows 5.1.2600 Service Pack 3
13:31:04.671 Number of processors: 2 586 0x209
13:31:04.671 ComputerName: GINA-2 UserName: Owner
13:31:11.078 Initialize success
13:31:20.468 AVAST engine defs: 11112301
13:32:14.734 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
13:32:14.734 Disk 0 Vendor: SAMSUNG_SV1204H RK100-09 Size: 114498MB BusType: 3
13:32:14.921 Disk 0 MBR read successfully
13:32:14.921 Disk 0 MBR scan
13:32:15.625 Disk 0 unknown MBR code
13:32:15.828 Disk 0 scanning sectors +234465840
13:32:16.625 Disk 0 scanning C:\WINDOWS\system32\drivers
13:34:00.421 Service scanning
13:34:06.390 Modules scanning
13:34:40.687 Disk 0 trace - called modules:
13:34:40.703 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys
13:34:40.703 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x82e93ab8]
13:34:40.703 3 CLASSPNP.SYS[f84dffd7] -> nt!IofCallDriver -> \Device\00000074[0x82e94f18]
13:34:40.703 5 ACPI.sys[f8456620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x82e92d98]
13:34:42.921 AVAST engine scan C:\WINDOWS
13:35:23.859 AVAST engine scan C:\WINDOWS\system32
13:43:15.953 AVAST engine scan C:\WINDOWS\system32\drivers
13:43:50.781 AVAST engine scan C:\Documents and Settings\Owner.GINA-2
13:47:25.421 File: C:\Documents and Settings\Owner.GINA-2\Desktop\Unused Desktop Shortcuts\copy_Google Updater.exe **INFECTED** Win32:Malware-gen
14:02:14.609 File: C:\Documents and Settings\Owner.GINA-2\My Documents\Google Updater.exe **INFECTED** Win32:Malware-gen
14:14:19.125 AVAST engine scan C:\Documents and Settings\All Users
14:26:41.500 Scan finished successfully
15:33:36.593 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Owner.GINA-2\Desktop\MBR.dat"
15:33:37.187 The log file has been saved successfully to "C:\Documents and Settings\Owner.GINA-2\Desktop\aswMBR.txt"
aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-11-23 13:31:04
-----------------------------
13:31:04.671 OS Version: Windows 5.1.2600 Service Pack 3
13:31:04.671 Number of processors: 2 586 0x209
13:31:04.671 ComputerName: GINA-2 UserName: Owner
13:31:11.078 Initialize success
13:31:20.468 AVAST engine defs: 11112301
13:32:14.734 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
13:32:14.734 Disk 0 Vendor: SAMSUNG_SV1204H RK100-09 Size: 114498MB BusType: 3
13:32:14.921 Disk 0 MBR read successfully
13:32:14.921 Disk 0 MBR scan
13:32:15.625 Disk 0 unknown MBR code
13:32:15.828 Disk 0 scanning sectors +234465840
13:32:16.625 Disk 0 scanning C:\WINDOWS\system32\drivers
13:34:00.421 Service scanning
13:34:06.390 Modules scanning
13:34:40.687 Disk 0 trace - called modules:
13:34:40.703 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys
13:34:40.703 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x82e93ab8]
13:34:40.703 3 CLASSPNP.SYS[f84dffd7] -> nt!IofCallDriver -> \Device\00000074[0x82e94f18]
13:34:40.703 5 ACPI.sys[f8456620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x82e92d98]
13:34:42.921 AVAST engine scan C:\WINDOWS
13:35:23.859 AVAST engine scan C:\WINDOWS\system32
13:43:15.953 AVAST engine scan C:\WINDOWS\system32\drivers
13:43:50.781 AVAST engine scan C:\Documents and Settings\Owner.GINA-2
13:47:25.421 File: C:\Documents and Settings\Owner.GINA-2\Desktop\Unused Desktop Shortcuts\copy_Google Updater.exe **INFECTED** Win32:Malware-gen
14:02:14.609 File: C:\Documents and Settings\Owner.GINA-2\My Documents\Google Updater.exe **INFECTED** Win32:Malware-gen
14:14:19.125 AVAST engine scan C:\Documents and Settings\All Users
14:26:41.500 Scan finished successfully
15:33:36.593 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Owner.GINA-2\Desktop\MBR.dat"
15:33:37.187 The log file has been saved successfully to "C:\Documents and Settings\Owner.GINA-2\Desktop\aswMBR.txt"
15:35:42.953 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Owner.GINA-2\Desktop\MBR.dat"
15:35:43.031 The log file has been saved successfully to "C:\Documents and Settings\Owner.GINA-2\Desktop\aswMBR.txt"
Please advise. I noticed a name which every few months is listed as a virus in one file after another in scans, the name is: Win32:Malware-gen
There are also other variations or similar named that sometimes are listed in the avast scans and they get put in quarantine. Is it possible that the virus is still there moving around and not completely deleted or quarantined?
Thanks,
Gina