Jump to content

kk4flyer

Members
  • Posts

    19
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Tried again to boot from Recovery Disk. This time I selected the "continue with recovery disk" option. It gave me 2 options: "Restore computer and preserve my new or changed files (recommended)" and "select other system backup and more options". I tried the first one. It went to an Emergency File & Folder Backup screen and scanned my computer for new or changed files since the last backup; it saved them in an Emergency folder on the C: drive. It looked like it saved just about every file. Then it went to "Restore my computer", which formatted the partition. Oops, I didn't know it was going to do that. Then it started "reinstalling your original content", which took a long time. Then it restarted, and yes.. it got to Windows! Looks like a clean re-install of Windows; it asked me for a bunch of setup stuff. Windows is working, but lots of things need to be set up, like internet connection. I'll try to work on this. If you have any suggestions, let me know. Thanks for your help.
  2. I changed setup to boot from CD/DVD and inserted recovery disk. It said "Windows is loading files...", then "Starting Windows", then came to a Dell DataSafe Local Backup screen. It said "Click 'Next' to restore your computer to the most recent Full System Backup. Files added or changed since that backup will be preserved and then copied back to your computer after the restoration is complete". There were 2 choices: Run the program from my hard disk (recommended) Continue with your System Recovery Disc So I chose to run it from hard disk, and clicked Next. It instructed me to remove the Recovery Disk, so I did. It said it was going to reboot from the recovery partition. I clicked Finish and it tried to reboot, but failed as usual - black screen with cursor blinking in upper left. I don't think I ever did a Full System Backup, so maybe that's why it failed.
  3. I don't have a Windows 7 disk. I have a "recovery disk" that I made when I first got the computer. Unfortunately I can't find the documentation that told me to make the disk, so I don't know what it's for. It contains folders like "BOOT", "dell", "preload", "recovery", and some other files.
  4. When I rebooted from hard drive, I got the same results as before: Saw Dell startup screen, then black screen with cursor blinking in upper left corner. Never got to Windows.
  5. Here is the Kaspersky log: <pre style='color:#141312;background-color:#ffffff;'> bjects Scan: completed 1 minute ago (events: 311, objects: 2743488, time: 06:25:49) 12/4/12 8:06 AM Task completed 12/4/12 8:06 AM Untreated: Rootkit.Boot.Pihar.c /dev/sda Skipped by user 12/4/12 8:06 AM Untreated: Rootkit.Boot.Pihar.c /dev/sda Cannot be disinfected 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 8:06 AM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 5:18 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 2:13 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor OTHER.idz Read error 12/4/12 2:12 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz Read error 12/4/12 2:12 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz/AI2013_Inventor ANSI Read error 12/4/12 2:12 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor GOST.idz Read error 12/4/12 1:41 AM Untreated: Rootkit.Boot.Pihar.c /dev/sda Postponed 12/4/12 1:41 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 12/4/12 1:40 AM Task started </pre>
  6. Thanks, but I couldn't download that file. When I clicked the link I got the following error from Internet Explorer: "Unable to download pldumpit.ndf from noahdfear.net. Unable to open this Internet site. The requested site is either unavailable or cannot be found. Please try again later." I typed the URL in manually and got the same error.
  7. Thanks for looking into it. I downloaded the drivers to the USB flash drive and booted from it, but got the same results. I tried it several times and it always failed the same way.
  8. Same results as last attempt. I built the USB drive as directed and booted from it. I saw the xPUD language screen, chose English, but then it failed before it got to the next screen, so I couldn't follow the rest of your directions. Here is the text from the xPUD failure (I re-typed it, as I couldn't figure out how to get it off the sick computer): Current Operating System: Linux (none) 2.6.31.2 #5 SMP Mon Dec 7 11:56:35 UTC 2009 i686 Kernel command line: noisapnp quiet initrd=/opt/media lang=en kmap=us BOOT_IMAGE=/boot/xpud Build Date: 26 October 2009 05:15:02PM xorg-server 2:1.6.4-2ubuntu4 (buildd@) Before reporting problems, check http://wiki.x.org To make sure that you have the latest version. Markers: (--) probed, (**) from config file, (==) default setting, (++) from command line, (!!) notice, (II) informational, (WW) warning, (EE) error, (NI) not implemented, (??) unknown. (==) Log file: “/var/log/Xorg.0.log”, Time: Fri Nov 30 00:25:05 2012 (==) Using config file: “/etc/X11.xorg.conf” (EE) No devices detected. Fatal server error: no screens found Please consult the The X.Org Foundation support at http://wiki.x.org for help. Please also check the log file at “/var/log/Xorg.0.log” for additional information. ddxSigGiveUp: Closing log [ 7.948164] sd 7:0:0:0: [sdf] Assuming drive cache: write through [ 7.951560] sd 7:0:0:0: [sdf] Assuming drive cache: write through [ 8.653775] sd 7:0:0:0: [sdf] Assuming drive cache: write through giving up. xinit: No such file or directory (errno 2 ): unable to connect to X server xinit: No such process (errno 3): Server error. Xauth: (argv):1: bad display name “(none):0” in “remove” command Sh: no job control in this shell Sh-4.0#
  9. No, I can't boot. When I power up, I see the Dell startup screen, then a black screen with blinking cursor. I never get to Windows at all. I've verified that it's set up to boot from the hard drive.
  10. Not good news, TheDarkKnight! I built the USB drive as directed and booted from it. I saw the xPUD language screen, chose English, but then it failed before it got to the next screen, so I couldn't follow the rest of your directions. Here is the text from the xPUD failure (I re-typed it, as I couldn't figure out how to get it off the sick computer): Current Operating System: Linux (none) 2.6.31.2 #5 SMP Mon Dec 7 11:56:35 UTC 2009 i686 Kernel command line: noisapnp quiet initrd=/opt/media lang=en kmap=us BOOT_IMAGE=/boot/xpud Build Date: 26 October 2009 05:15:02PM xorg-server 2:1.6.4-2ubuntu4 (buildd@) Before reporting problems, check http://wiki.x.org To make sure that you have the latest version. Markers: (--) probed, (**) from config file, (==) default setting, (++) from command line, (!!) notice, (II) informational, (WW) warning, (EE) error, (NI) not implemented, (??) unknown. (==) Log file: “/var/log/Xorg.0.log”, Time: Fri Nov 30 00:25:05 2012 (==) Using config file: “/etc/X11.xorg.conf” (EE) No devices detected. Fatal server error: no screens found Please consult the The X.Org Foundation support at http://wiki.x.org for help. Please also check the log file at “/var/log/Xorg.0.log” for additional information. ddxSigGiveUp: Closing log [ 7.616898] sd 7:0:0:0: [sdf] Assuming drive cache: write through [ 7.620062] sd 7:0:0:0: [sdf] Assuming drive cache: write through [ 8.324030] sd 7:0:0:0: [sdf] Assuming drive cache: write through giving up xinit: No such file or directory (errno 2): unable to connect to X server xinit: No such process (errno 3): Server error. Xauth: (argv):1: bad display name “(none):0” in “remove” command Sh: no job control in this shell Sh-4.0# I don't know what it was trying to do, or why it failed. I downloaded the files several times, to make sure I didn't just have a corrupted file, but got same results.
  11. OK, here's the new log from the RescueDisk. Looks like it appended today's results onto yesterday's results. By the way, when I used Kaspersky's web browser to upload this log, it appeared to get redirected once. <pre style='color:#141312;background-color:#ffffff;'> Objects Scan: completed 1 day ago (events: 92, objects: 2750181, time: 08:13:32) 11/27/12 4:59 PM Task completed 11/27/12 4:59 PM Untreated: Rootkit.Boot.Pihar.c /dev/sda Skipped by user 11/27/12 4:59 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 4:59 PM Untreated: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Skipped by user 11/27/12 4:59 PM Detected: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS 11/27/12 4:59 PM Untreated: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir Skipped by user 11/27/12 4:59 PM Detected: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir 11/27/12 4:59 PM Untreated: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 4:59 PM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Skipped by user 11/27/12 4:59 PM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Skipped by user 11/27/12 4:58 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 4:58 PM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Skipped by user 11/27/12 12:27 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 11:22 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:22 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 11:21 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 11:21 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 11:21 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 11:21 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 11:20 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:20 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 11:13 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:13 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 11:12 AM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 11:12 AM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 11:12 AM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 11:12 AM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 11:12 AM Untreated: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:12 AM Detected: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS Postponed 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS Postponed 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS 11/27/12 10:41 AM Untreated: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir Postponed 11/27/12 10:41 AM Untreated: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir Postponed 11/27/12 10:41 AM Detected: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir 11/27/12 10:41 AM Detected: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir 11/27/12 10:34 AM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/27/12 10:34 AM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/27/12 10:34 AM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 10:34 AM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 10:03 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 10:03 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 10:02 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 10:02 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 10:02 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 10:02 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 10:01 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 10:01 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 9:58 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 9:58 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 9:57 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 9:57 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 9:57 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 9:57 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 9:57 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 9:57 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 9:24 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/27/12 9:24 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/27/12 9:24 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 9:24 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 9:19 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor OTHER.idz Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/3rdParty/NET/4/wcu/dotNetFramework/dotNetFx40_Full_x86_x64.exe Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor GOST.idz Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz/AI2013_Inventor ANSI Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/3rdParty/NET/4/wcu/dotNetFramework/dotNetFx40_Full_x86_x64.exe/netfx_Core.mzz Read error 11/27/12 8:46 AM Untreated: Rootkit.Boot.Pihar.c /dev/sda Postponed 11/27/12 8:46 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/27/12 8:46 AM Task started Objects Scan: completed 1 minute ago (events: 382, objects: 2750183, time: 07:38:58) 11/28/12 5:44 PM Task completed 11/28/12 5:44 PM Untreated: Rootkit.Boot.Pihar.c /dev/sda Skipped by user 11/28/12 5:44 PM Untreated: Rootkit.Boot.Pihar.c /dev/sda Cannot be disinfected 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Disinfected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 5:44 PM Deleted: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir 11/28/12 5:44 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS 11/28/12 5:44 PM Deleted: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir 11/28/12 5:44 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS 11/28/12 5:44 PM Deleted: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir 11/28/12 5:44 PM Detected: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir 11/28/12 5:44 PM Deleted: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir 11/28/12 5:44 PM Detected: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir 11/28/12 5:44 PM Deleted: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/28/12 5:43 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/28/12 5:43 PM Deleted: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/28/12 5:43 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/28/12 5:42 PM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 5:42 PM Deleted: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp 11/28/12 5:41 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/28/12 5:41 PM Deleted: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp 11/28/12 1:45 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/28/12 12:41 PM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 12:41 PM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 12:40 PM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/28/12 12:40 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/28/12 12:40 PM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/28/12 12:40 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/28/12 12:40 PM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 12:40 PM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 12:32 PM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 12:32 PM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 12:31 PM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/28/12 12:31 PM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/28/12 12:31 PM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/28/12 12:31 PM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp 11/28/12 12:31 PM Untreated: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 12:31 PM Detected: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 12:00 PM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/28/12 12:00 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/28/12 12:00 PM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/28/12 12:00 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/28/12 12:00 PM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS Postponed 11/28/12 12:00 PM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS Postponed 11/28/12 12:00 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS 11/28/12 12:00 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS 11/28/12 12:00 PM Untreated: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir Postponed 11/28/12 12:00 PM Untreated: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir Postponed 11/28/12 12:00 PM Detected: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir 11/28/12 12:00 PM Detected: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir 11/28/12 11:53 AM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/28/12 11:53 AM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/28/12 11:53 AM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/28/12 11:53 AM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/28/12 11:22 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 11:22 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 11:21 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/28/12 11:21 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/28/12 11:21 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/28/12 11:21 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/28/12 11:21 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 11:21 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 11:17 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 11:17 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 11:16 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/28/12 11:16 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/28/12 11:16 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/28/12 11:16 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/28/12 11:16 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/28/12 11:16 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/28/12 10:43 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/28/12 10:43 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/28/12 10:43 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/28/12 10:43 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/28/12 10:38 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor OTHER.idz Read error 11/28/12 10:37 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/3rdParty/NET/4/wcu/dotNetFramework/dotNetFx40_Full_x86_x64.exe Read error 11/28/12 10:37 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz Read error 11/28/12 10:37 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz/AI2013_Inventor ANSI Read error 11/28/12 10:37 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor GOST.idz Read error 11/28/12 10:37 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/3rdParty/NET/4/wcu/dotNetFramework/dotNetFx40_Full_x86_x64.exe/netfx_Core.mzz Read error 11/28/12 10:06 AM Untreated: Rootkit.Boot.Pihar.c /dev/sda Postponed 11/28/12 10:06 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/28/12 10:06 AM Task started </pre>
  12. Oops that didn't work. Here is the log:<pre style='color:#141312;background-color:#ffffff;'> Objects Scan: completed 2 minutes ago (events: 92, objects: 2750181, time: 08:13:32) 11/27/12 4:59 PM Task completed 11/27/12 4:59 PM Untreated: Rootkit.Boot.Pihar.c /dev/sda Skipped by user 11/27/12 4:59 PM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 4:59 PM Untreated: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Skipped by user 11/27/12 4:59 PM Detected: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS 11/27/12 4:59 PM Untreated: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir Skipped by user 11/27/12 4:59 PM Detected: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir 11/27/12 4:59 PM Untreated: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 4:59 PM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Skipped by user 11/27/12 4:59 PM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 4:59 PM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Skipped by user 11/27/12 4:59 PM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 4:59 PM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Skipped by user 11/27/12 4:58 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 4:58 PM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Skipped by user 11/27/12 12:27 PM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 11:22 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:22 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 11:21 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 11:21 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 11:21 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 11:21 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 11:20 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:20 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 11:13 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:13 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 11:12 AM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 11:12 AM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 11:12 AM Untreated: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 11:12 AM Detected: Trojan.Win32.TDSS.itpc C:/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 11:12 AM Untreated: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 11:12 AM Detected: HEUR:Trojan.Script.Generic C:/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS Postponed 11/27/12 10:41 AM Untreated: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS Postponed 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C760.tmp.vir/MPRESS 11/27/12 10:41 AM Detected: Trojan.Win64.TDSS.d C:/Qoobox/Quarantine/C/ProgramData/Microsoft/Windows/DRM/C761.tmp.vir/MPRESS 11/27/12 10:41 AM Untreated: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir Postponed 11/27/12 10:41 AM Untreated: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir Postponed 11/27/12 10:41 AM Detected: Backdoor.Win32.ZAccess.zku C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000064.@.vir 11/27/12 10:41 AM Detected: Trojan.Win32.Genome.ailnk C:/Qoobox/Quarantine/C/$Recycle.Bin/S-1-5-21-4167307642-361513427-4124430374-1000/$55078b485655604d8e4628f9ed38b6c2/U/80000000.@.vir 11/27/12 10:34 AM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/27/12 10:34 AM Untreated: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/27/12 10:34 AM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 10:34 AM Detected: Trojan.Win64.TDSS.d C:/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 10:03 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 10:03 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 10:02 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 10:02 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 10:02 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 10:02 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 10:01 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 10:01 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 9:58 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 9:58 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 9:57 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp Postponed 11/27/12 9:57 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/80D.tmp 11/27/12 9:57 AM Untreated: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp Postponed 11/27/12 9:57 AM Detected: Trojan.Win32.TDSS.itpc /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Temp/1EF6.tmp 11/27/12 9:57 AM Untreated: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm Postponed 11/27/12 9:57 AM Detected: HEUR:Trojan.Script.Generic /mnt/MountedDevices/PD-77E3ED41-0000000312600000/Users/Kevin/AppData/Local/Microsoft/Windows/Temporary Internet Files/Low/Content.IE5/S1AIY5ZJ/malwarebytes[1].htm 11/27/12 9:24 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS Postponed 11/27/12 9:24 AM Untreated: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS Postponed 11/27/12 9:24 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/760.tmp/MPRESS 11/27/12 9:24 AM Detected: Trojan.Win64.TDSS.d /mnt/MountedDevices/PD-77E3ED41-0000000312600000/ProgramData/Microsoft/Windows/DRM/770.tmp/MPRESS 11/27/12 9:19 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor OTHER.idz Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/3rdParty/NET/4/wcu/dotNetFramework/dotNetFx40_Full_x86_x64.exe Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor GOST.idz Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/Content/DClibrary/DesktopContents/AI2013_Inventor ANSI.idz/AI2013_Inventor ANSI Read error 11/27/12 9:17 AM Processing error C:/Autodesk/WI/Autodesk Inventor 2013/3rdParty/NET/4/wcu/dotNetFramework/dotNetFx40_Full_x86_x64.exe/netfx_Core.mzz Read error 11/27/12 8:46 AM Untreated: Rootkit.Boot.Pihar.c /dev/sda Postponed 11/27/12 8:46 AM Detected: Rootkit.Boot.Pihar.c /dev/sda 11/27/12 8:46 AM Task started </pre>
  13. Thanks for the info. I booted from the RescueDisk and completed the scan. I did not allow the tool to fix the problems; was I supposed to? Anyway, here is the log.
  14. Thanks for your reply. Unfortunately, I can't even boot the computer now. When I power it up, I see the Dell startup screen, then it goes to a black screen with cursor blinking in upper left. And it stays there... forever. If I hit F2 as it boots, I get to the CMOS Setup Utility screen. If I hit F12 as it boots, I get to the boot device screen. Any ideas on how to get it to boot properly?
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.