Pc Infected With Rootkit? / Fresh Install Doesn't Help

Discussion in 'Malware Help - Public (Anyone Can Post & Respond)' started by overdue82, Sep 2, 2018.

  1. overdue82

    overdue82 Private E-2

    I am having major issues with my PC. I am experiencing all types of apps hanging, can't click on programs via the start8 menu, even once got locked out of logging into my account because there wasn't any text box for me to type my password into! I have paid versions of both Malwarebytes and Avast Internet Security but neither of them have detected any actual viruses. All the sluggishness and constant rebooting was tiring and I decided to wipe the drive (or so I thought) and reinstall Windows via the partition. Everything seemed fine, but I did notice some software that comes bundled with the PC wasn't reinstalled (very curious!) and the app hangups and not being able to click on the menu continued. And I barely installed any programs. Just a few essentials like Malwarebytes, Avast, Stardocks: Start8, Fences, and ModernMix. Again still the problem continues. I started reading up about how viruses can worm their way into the boot of the system and avoid detection and reinstalls of the OS. I was able to grab a copy of GMER and run that in safe mode and it popped up some curious results. Unfortunately, I am at a loss as what to do about them. I also want to mention that whenever I go into safe mode with networking; the networking part usually does not work. At the time of writing this the LAN connection does seem to be working though. But Malwarebytes and Avast can't do real-time protection and I'm not sure if that's due to being in safe mode or something interfering with them. Another thing I noticed before I did the fresh install of Windows was that whenever I was connected to wifi (I have both LAN and wifi on my PC) the applications would act twice as wonky and stop responding most of the time. If I turned off the wifi (via the Amplifi app on my phone; since disabling wifi via the menu on the PC didn't actually disconnect it) it seemed to calm down a bit. That was leading me to believe I had some sort of virus or whatever attacking my wifi connection (yes, it's password protected). But then the fresh install and not turning on wifi didn't yield any better results. So I'm here turning to you as I feel completely overwhelmed and at a loss at what to do with my precious PC. I would like to get back to gaming asap, but I feel things are going to be very grim for quite some time.

    I've attached two different logfiles from GMER.

    Basic specs from Speccy:
    Operating System
    Windows 8.1 64-bit
    CPU
    Intel Core i5 @ 3.20GHz
    Haswell 22nm Technology
    RAM
    12.0GB
    Motherboard
    Dell Inc. 088DT1 (CPU 1)
    %1 Chipset
    Graphics
    Standard Monitor (1920x1080@64Hz) <---- is currently using my Philips TV. For some reason my old monitor won't show up on certain things like safe mode. IDK if it's because the TV is HDMI and the monitor isn't or what.
    NVIDIA GeForce GT 730 (EVGA)
    Storage
    931GB Seagate ST1000DM003-1CH162 (SATA ) 41 °C <--- C DRIVE, the others are externals
    1863GB Western Digital WDC WD20 EZRZ-00Z5HB0 USB Device (USB (SATA) ) 41 °C
    1397GB Western Digital WD Ext HDD 1021 USB Device (USB (SATA) ) 41 °C
    1863GB Western Digital WDC WD20 EZRZ-00Z5HB0 USB Device (USB (SATA) ) 41 °C
    Optical Drives
    HL-DT-ST DVD+-RW GHB0N
    Audio
    NVIDIA High Definition Audio

    Basic specs from Amazon:
    ASIN B00K0HMSTY
    Processor 3.2 GHz Intel Core i5
    RAM 12 GB DDR3
    Memory Speed 1600 MHz
    Hard Drive 1024 GB mechanical_hard_drive
    Graphics Coprocessor Intel HD Integrated Graphics
    Card Description integrated
    Wireless Type 802.11.b, 802.11.g, 802.11.n
    Number of USB 2.0 Ports 6
    Other Technical Details
    Brand Name Dell
    Series Inspiron
    Item model number i3847-5386BK
    Operating System Windows 8.1
    Item Weight 24.1 pounds
    Product Dimensions 21.9 x 14.9 x 19.2 inches
    Item Dimensions L x W x H 21.93 x 14.88 x 19.25 inches
    Processor Brand Intel
    Processor Count 4
    Computer Memory Type DDR3 SDRAM
    Hard Drive Rotational Speed 7200 RPM
    Optical Drive Type DVD±RW
     

    Attached Files:

  2. Anon-469e6fb48c

    Anon-469e6fb48c Anonymized

  3. plodr

    plodr Major Geek Super Extraordinaire

    satrow likes this.
  4. Anon-469e6fb48c

    Anon-469e6fb48c Anonymized

    Yet another reason i don't have anti virus software installed.I only use them if my system starts acting funny.

    I have what is called a Flash scan i boot from my USB drive VM and run all the software in there.This way it stays off my computer.And does not slow things down.
     
  5. overdue82

    overdue82 Private E-2

    No, I was not aware of that. But my problem wasn't not being able to access websites. I didn't have any issues browsing the web. My problem is I can't open most of my programs. Everything tends to hang and say "not responding." And my start8 taskbar (I don't use that native Windows 8 start menu..I prefer the desktop and taskbar) wouldn't let me click on the programs opened in the taskbar. Right-clicking on a program on the taskbar wouldn't open a menu, it would just show the busy cursor and do nothing else. Opening a program from the programs list wouldn't open anything. Acts as if I didn't click on the program at all. It's hard to explain. I wish I could explain it better than this! I'm not able to open things like regedit and taskmgr. Going to RUN > regedit or taskmgr doesn't open anything. It acts as if I didn't the command at all. At the moment I don't even have Avast installed because it wasn't working so I uninstalled it. I have the free version of AVG antivirus installed but protection is off on that.

    Where do I get this flash scan that I can boot?

    Guess I'll go do that scan you suggested. But if it's some hidden rootkit. I doubt a simple adware scan is going to reveal anything.
     
  6. Anon-469e6fb48c

    Anon-469e6fb48c Anonymized

    A USB scan is you have to make your own.

    It's a version of windows installed onto a USB flash drive.You will have to setup anti virus tools onto that your self.Then you will need to scan your main C: drive from the USB flash drive.

    You can pick what ever windows you want to run.I prefer windows 7.Sorry if i was not clear.

    Some times i call it a hot scan or flash scan.Be cause i have it setup to load into windows off of flash drive and auto scan right away.

    You would have to make sure it's a USB 3.0 Flash drive for a quicker response time.
     
  7. the mekanic

    the mekanic Major Mekanical Geek

    If you suspect a rootkit, a Kaspersky Rescue Disk bootable CD is a decent direction.

    Either that, or wiping the MBR with a copy of Darik's Boot and Nuke. A Windows format ordinarily does not delete the Master Boot Record.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds