I have had 6 rootkit activity logs in gmer (C:\WINDOWS\system32\svchost.exe (*** hidden *** ) so I've run popular bleeping computer scans because I am an active reader and big fan of Bleeping (Malwarebytes Anti-Rootkit and antimalware, Rogue Killer, Eset nod online scanner, JRT, TFC, adwcleaner, sofos antivirus and sofos hitmanpro and Norton power eraser that found a dns problem and solved it). After the scans - I repaired alot of infections and junk programs, about 7 includng some junk program - I've run windows repair all-in-on and repaired everything I could. I can already see an improvement since I am able to start and finish antivirus scans. Ok why I did the scans: laptop behaved as if it was hijacked with pop up windows opening and closing randomly and sometimes very fast, also the touchpad has become unresponsive and the right button stopped working (might be a hardware problem I thought because with mouse it behave better). After all these scans and repairs I can still see the ''gmer has found rootkit activity'' but the number of rootkits is reduced to two:
C:\Windows\system32\ikeext.dll (*** hidden ****) [Manual] IKEEXT
C:\Windows\system32\Tabsvc.dll (*** hidden ****) [AUTO] TabletInputService
all the above in red,
now usually I am able to resolve the aforementioned problems alone with the above programs but not this time, these programs are unable to solve the gmer log problem with red messages. I even tried TDSSKILLER but it is unable to install and MBR causes BSOD, can't run combofix because on win 10.
Malwarebytes Anti-Rootkit and antimalware, Rogue Killer, Eset nod online scanner, JRT, TFC, adwcleaner, sofos antivirus and sofos hitmanpro and Norton power eraser show 0 results now, gmer insists on the two red rootkit activities ikeext.dll and Tabsvc.dll
my spec: WIN 10, 1 ssd C partition, Dell laptop with all its forced junk, zonealarm and mcafee (today changed with bitdefender free, I hate mcafee because it allowed such mess to happen)
as i said it could be false positives and a broken touchpad sending random imputs
Edited by lucidstorm, 05 October 2016 - 09:41 AM.