Searching for Missing Digital Signatures:Įxecution time: 0 hours(s), 0 minute(s), and 13 seconds(s) * vmicvss => %SystemRoot%\System32\icsvcext.dll * vmicrdv => %SystemRoot%\System32\icsvcext.dll * WpnService => %systemroot%\system32\svchost.exe -k netsvcs * AJRouter => %SystemRoot%\system32\svchost.exe -k LocalServiceNetworkRestricted BAT associations in the Windows Registry. Program started at: 02:36:20 PM in 圆4 mode.Ĭhecking Registry for malware related settings: More Information about Rkill can be found at this link: Knock wood, I have never had anything my system yet, (save one worm from an infected computer I was cleaning for someone, and forgot to turn my system off at the time - an image restoration solved that problem quickly), and I do a lot of searching in order to answer threads on this forum. All this, plus anti-virus, anti-malware, anti-spyware and CryptoPrevent. I have browser add-ons (like Flash and Java) set to "ask to activate", I have another add-on which shall remain unnamed (per forum rules), I use WOT to evaluate web-searched sites for safety, I use OpenDNS DNS Servers on my NICs to prevent navigating to known bad sites, I use LastPass Password Manager and only log into it when needed, I do not login to the browser to "sync" anything, and I have MBAE for zero-day browser exploit mitigation. I use Firefox for my main browser, as it is the most customizable and therefore safest browser.
Well No P2P software used, Possibly a website, other machines on network I think clean, but i'll check those 2, Java not installed, Microsoft Edge or IE 11 only used, getting to first program in a few here, then going down the line in order, longest scan might be Malware bytes and Avast lol, but hopefully gets all clean, and I can relax finallyTherein lies your problem. When finished, create another restore point, then go into Ccleaner and delete the infected one (and any others that may exist that might be infected). They're a little old, but the basics are the same.Īll these tools are free/have free versions available. If it comes up clean, you can skip the ESET scan below.īSOD after boot up, during login or right after, (bad spool header?) Solved - Windows 7 Help Forumsīe sure you're logged into sevenforums, so you can see all the screenshots.
Malwarebytes Antimalware (run a custom scan, select the box to scan for rootkits, and check the box to scan your entire system drive)Ĭcleaner - run on browsers and clean out temp + cache, then run on registryĮDIT: Since you now have Avast on the system, go into Avast settings and set a full scan to scan for ALL PACKERS, then run the full scan. RKILL (again, because everything RKILL does is undone by a reboot) TDSSKiller (select all options - it will reboot to scan properly)
Run these scans, in this order, and post logs for each, using CODE tags (# button). Okay, let's try and clean this thing first. I take it you don't make regular system images using a program like Macrium Reflect?