Hi ,
I have tried everything posted in this forum just not getting anywhere
I have tried restarting in safe mode and ran thru Malware Anti Malware Bytes, Fake Antivirus remover < by Trend Micro> , aswMBR and no luck …
I finally downlaed the OTL tool and am attaching the output both from asnmbr & OTL … Any help in removing the 2 viruses detected would be greatly appreciated
aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
Run date: 2012-07-28 11:03:51
11:03:51.589 OS Version: Windows 6.1.7600
11:03:51.589 Number of processors: 2 586 0x4B02
11:03:51.589 ComputerName: VANSURAM-PC UserName: vansuram
11:03:51.854 Initialize success
11:03:53.321 AVAST engine defs: 12072800
11:03:59.108 Disk 0 (boot) \Device\Harddisk0\DR0 → \Device\0000005b
11:03:59.108 Disk 0 Vendor: WDC_WD16 05.0 Size: 152587MB BusType: 3
11:03:59.108 Disk 0 MBR read successfully
11:03:59.124 Disk 0 MBR scan
11:03:59.545 Disk 0 Windows 7 default MBR code
11:03:59.561 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 49999 MB offset 63
11:03:59.935 Disk 0 Partition - 00 0F Extended LBA 102579 MB offset 102398310
11:03:59.966 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 102579 MB offset 102398373
11:04:00.013 Disk 0 scanning sectors +312480315
11:04:00.419 Disk 0 scanning C:\Windows\system32\drivers
11:04:15.504 Service scanning
11:04:34.614 Modules scanning
11:04:37.796 Disk 0 trace - called modules:
11:04:37.812 ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys halmacpi.dll storport.sys nvstor.sys
11:04:37.828 1 nt!IofCallDriver → \Device\Harddisk0\DR0[0x85c5b3c8]
11:04:37.828 3 CLASSPNP.SYS[88f9e59e] → nt!IofCallDriver → [0x84c3ca48]
11:04:37.843 5 ACPI.sys[833c13b2] → nt!IofCallDriver → \Device\0000005b[0x85a65a88]
11:04:38.030 AVAST engine scan C:
11:22:36.805 File: C:\Windows\assembly\GAC\Desktop.ini INFECTED Win32:Sirefef-PL [Rtk]
11:26:16.219 File: C:\Windows\Installer{8232de3c-374b-25f0-504c-2e12d906861b}\U\00000004.@ INFECTED Win32:Malware-gen
11:26:16.375 File: C:\Windows\Installer{8232de3c-374b-25f0-504c-2e12d906861b}\U\000000cb.@ INFECTED Win32:Malware-gen
11:26:16.485 File: C:\Windows\Installer{8232de3c-374b-25f0-504c-2e12d906861b}\U\80000000.@ INFECTED Win64:Sirefef-A [Trj]
11:26:16.594 File: C:\Windows\Installer{8232de3c-374b-25f0-504c-2e12d906861b}\U\80000032.@ INFECTED Win32:Downloader-PKU [Trj]
11:52:10.744 Scan finished successfully
16:45:07.373 Verifying
16:45:17.404 Disk 0 Windows 601 MBR fixed successfully
16:45:25.235 Disk 0 MBR has been saved successfully to “D:\vansuram\Downloads\MBR.dat”
16:45:25.313 The log file has been saved successfully to “D:\vansuram\Downloads\aswMBR.txt”