Author Topic: aswMBR query  (Read 1644 times)

0 Members and 1 Guest are viewing this topic.

namib_dawn

  • Guest
aswMBR query
« on: February 12, 2013, 05:46:28 PM »
Hi All

I recently used aswMBR for the first time and in modules scanning the following came up in red -

ntkrnlpa.exe CLASSPNP.SYS disk.sys sfsync02.sys hal.dll atapi.sys spjz.sys >>UNKNOWN [0x8ad3b938]<<

As I am not very computer literate I was guided by a Malware Response Instructor at BleepingComputer, using JRT, AdwCleaner, ComboFix, TDSSKiller, OTL and DDS to search for any infection after I had used Avira, MBAM and SUPERAntiSpyware, all negative. I have rerun aswMBR with the same result as above and TDSSKiller again with no detection.

Is this a false positive that has been seen before? I thought this would be the best forum to ask as it is an Avast product.

I should add that the computer has been running without problems throughout and it is only the log entry that concerns me.

Many thanks

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: aswMBR query
« Reply #1 on: February 12, 2013, 09:08:59 PM »
Yes Avast has flagged that Daemon tools driver is hooking the MBR

spjz.sys >>UNKNOWN

namib_dawn

  • Guest
Re: aswMBR query
« Reply #2 on: February 12, 2013, 09:43:56 PM »
Hi essexboy

Thank you very much for your quick and reassuring response. It is much appreciated.