Malwarebytes Anti-Malware 1.61.0.1400
www.malwarebytes.org
Database version: v2012.04.28.09
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
home desktop :: HOMEDESKTOP-PC [administrator]
4/29/2012 1:10:16 AM
mbam-log-2012-04-29 (01-10-16).txt
Scan type: Full scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 531783
Time elapsed: 1 hour(s), 31 minute(s), 29 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 1
HKCR\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|URL (Hijack.SearchPage) -> Bad: (
http://findgala.com/?&uid=8067&q={searchTerms}) Good: (
http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}) -> Quarantined and repaired successfully.
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-04-29 07:32:59
-----------------------------
07:32:59.894 OS Version: Windows x64 6.1.7601 Service Pack 1
07:32:59.894 Number of processors: 4 586 0x402
07:32:59.894 ComputerName: HOMEDESKTOP-PC UserName: home desktop
07:33:02.686 Initialize success
07:38:10.913 AVAST engine defs: 12042900
07:43:02.665 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
07:43:02.665 Disk 0 Vendor: ST31000528AS CC37 Size: 953869MB BusType: 3
07:43:02.665 Disk 1 \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP0T1L0-3
07:43:02.665 Disk 1 Vendor: WDC_WD20EARS-00MVWB0 51.0AB51 Size: 1907729MB BusType: 3
07:43:02.665 Disk 2 \Device\Harddisk2\DR2 -> \Device\Ide\IdeDeviceP1T1L0-5
07:43:02.681 Disk 2 Vendor: WDC_WD1001FALS-00E3A0 05.01D05 Size: 953869MB BusType: 3
07:43:02.681 Disk 3 \Device\Harddisk3\DR3 -> \Device\Ide\IdeDeviceP2T0L0-2
07:43:02.681 Disk 3 Vendor: Maxtor_6L200P0 BAH41G10 Size: 194481MB BusType: 3
07:43:02.681 Disk 4 \Device\Harddisk4\DR4 -> \Device\Ide\IdeDeviceP2T1L0-6
07:43:02.681 Disk 4 Vendor: WDC_WD5000AAKB-00H8A0 05.04E05 Size: 476940MB BusType: 3
07:43:02.681 Disk 5 \Device\Harddisk5\DR5 -> \Device\Scsi\mv61xx1Port0Path0Target0Lun0
07:43:02.681 Disk 5 Vendor: Seagate_ CC47 Size: 1907729MB BusType: 8
07:43:02.696 Disk 0 MBR read successfully
07:43:02.696 Disk 0 MBR scan
07:43:02.712 Disk 0 Windows 7 default MBR code
07:43:02.712 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
07:43:02.743 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 953767 MB offset 206848
07:43:02.790 Disk 0 scanning C:\Windows\system32\drivers
07:43:18.718 Service scanning
07:43:49.122 Modules scanning
07:43:49.138 Disk 0 trace - called modules:
07:43:49.153 ntoskrnl.exe fltsrv.sys tdrpman.sys CLASSPNP.SYS disk.sys vsflt61.sys ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys
07:43:49.169 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8007ab3790]
07:43:49.169 3 CLASSPNP.SYS[fffff8800192443f] -> nt!IofCallDriver -> [0xfffffa8007983b30]
07:43:49.169 5 vsflt61.sys[fffff88000e120fd] -> nt!IofCallDriver -> [0xfffffa8006b2e320]
07:43:49.169 7 ACPI.sys[fffff88000f3f7a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0xfffffa8007a99680]
07:43:53.537 AVAST engine scan C:\Windows
07:43:58.607 AVAST engine scan C:\Windows\system32
07:48:25.898 AVAST engine scan C:\Windows\system32\drivers
07:48:49.516 AVAST engine scan C:\Users\home desktop
08:31:50.518 AVAST engine scan C:\ProgramData
08:35:03.492 Scan finished successfully
08:45:06.630 Disk 0 MBR has been saved successfully to "C:\Users\home desktop\Desktop\Kill virus\MBR.dat"
08:45:06.661 The log file has been saved successfully to "C:\Users\home desktop\Desktop\Kill virus\aswMBR.txt"