Got Rootkited
Got Rootkited
Hey everyone. I believe I managed to root around myself. It began when I downloaded something suspicious (I’m sure it was reckless, but I needed it that moment, so yeah). Soon, my computer slowed down a lot. There were frequent crashes and BSODs. I attempted several fixes to bring my laptop back to normal performance. 1.) Ran a complete scan using Windows Defender. (To be honest, this is my only antivirus, but it keeps stopping and triggering BSODs.) 2.) Tried a system restore within the desktop environment. But I couldn’t open it after clicking. After an hour, it still wouldn’t launch. a.) It didn’t work even in safe mode, and I couldn’t access the restore point. b.) Before starting, I ran troubleshooting steps, but the system claimed I lacked a restore point. I remember having five backups, so maybe that’s the issue. Also, I used the Refresh option—it asked for a boot-up media. Does that mean it doesn’t need one? Correct me if I’m mistaken. 3.) I also have a dual-boot setup with Linux. When I changed the boot order so GRUB would start first, it didn’t show up at all. I’m not sure why. Side notes: I’m planning to try a live USB scan from Doctor Web, but I can’t install it on my PC. Could be another virus cause. Also, some processes in Task Manager that weren’t there before.
Consider right-clicking the processes and navigating to File Location. Attempt to terminate the process and immediately delete the folder. If this fails, keep ending processes until it stops working. If problems persist, download and run Malwarebytes to scan for known threats, then reboot. For stubborn issues, explore a professional virus removal service or perform a factory reset. Rootkits are tough to eliminate, so it’s best to assume you have a basic virus.
I recommend trying a tool such as tronscript—it may take some time, but it will make the process cleaner.
Use multiple on-demand scanners like Emsisoft Emergency Kit, Malwarebytes free, HitmanPro, Zemana, etc. If it's confirmed as a rootkit, format the drive and reinstall Windows.
Update notice: Installed and executed Malwarebytes. Attached are the threat report details. Files identified were quarantined and removed. System performance improved after cleanup. Restore point remains inaccessible. Laptop operates more smoothly now. update.txt
I just turned on my laptop again, but it still won't run Malwarebytes.