David,
Here is what it found
aswMBR version 0.9.5.256 Copyright(c) 2011 AVAST Software
Run date: 2011-05-17 13:55:38
13:55:38.750 OS Version: Windows 5.1.2600 Service Pack 3
13:55:38.750 Number of processors: 1 586 0x303
13:55:38.750 ComputerName: JACQUES-01 UserName: jacques
13:55:39.234 Initialize success
13:55:43.296 Disk 0 (boot) \Device\Harddisk0\DR0 → \Device\Ide\IdeDeviceP0T0L0-3
13:55:43.312 Disk 0 Vendor: ST380215A 3.AAD Size: 76319MB BusType: 3
13:55:43.312 Device \Driver\atapi → DriverStartIo 8534b57b
13:55:45.343 Disk 0 MBR read successfully
13:55:45.343 Disk 0 MBR scan
13:55:45.343 Disk 0 TDL4@MBR code has been found
13:55:45.343 Disk 0 Windows XP default MBR code found via API
13:55:45.343 Disk 0 MBR hidden
13:55:45.343 Disk 0 MBR [TDL4] ROOTKIT
13:55:45.359 Disk 0 trace - called modules:
13:55:45.359 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll >>UNKNOWN [0x8534b730]<<
13:55:45.359 1 nt!IofCallDriver → \Device\Harddisk0\DR0[0x853305e0]
13:55:45.359 3 CLASSPNP.SYS[f7848fd7] → nt!IofCallDriver → \Device\00000060[0x853952b8]
13:55:45.359 5 ACPI.sys[f77bf620] → nt!IofCallDriver → [0x85331d98]
13:55:45.375 \Driver\atapi[0x852fd030] → IRP_MJ_CREATE → 0x8534b730
13:55:45.375 Scan finished successfully
13:56:13.000 Disk 0 MBR has been saved successfully to “C:\Documents and Settings\jacques.JACQUES-01\My Documents\MBR.dat”
13:56:13.000 The log file has been saved successfully to “C:\Documents and Settings\jacques.JACQUES-01\My Documents\aswMBR.txt”
13:58:54.234 Disk 0 MBR has been saved successfully to “C:\Documents and Settings\jacques.JACQUES-01\My Documents\MBR.dat”
13:58:54.234 The log file has been saved successfully to “C:\Documents and Settings\jacques.JACQUES-01\My Documents\aswMBR.txt”
I took the liberty of adding color to the items that were highlighted by the aswMBR.exe scan.
Houston… We have a problem…
Stellium