1. Welcome Guest! In order to create a new topic or reply to an existing one, you must register first. It is easy and free. Click here to sign up now!.
    Dismiss Notice

Dell Inspiron 7559 Screen Randomly Going Black

Discussion in 'Malware Removal Help' started by OceanBreeze100, Apr 24, 2016.

  1. Kenny94

    Kenny94 Registered Members

    Joined:
    Jan 21, 2016
    Messages:
    417
    Location:
    SC
    Operating System:
    OS X
    Computer Brand or Motherboard:
    iPad Air, HP Chromebook and Compaq laptop with xp
    Hi, your issues may be malware/rootkit related. Speccy Summary shows a Suspicious entry.(see below )

    Have you ever had malware on this PC and was DDS Converter ever on this PC ? The Task errors are and indicted as well.



    Please go ahead and run through the following steps and post back the logs when ready.

    STEP 1
    Please download Junkware Removal Tool to your desktop.

    • Shutdown your antivirus to avoid any conflicts.
    • Right click over JRT.exe and select Run as administrator on Windows Vista or Windows 7, double-click on XP.
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next reply message
    • When completed make sure to re-enable your antivirus

    STEP 2
    Lets clean out any adware now: (this will require a reboot so save all your work)

    Please download AdwCleaner by Xplode and save to your Desktop.
    • Double click on AdwCleaner.exe to run the tool.
      Vista/Windows 7/8 users right-click and select Run As Administrator
    • Click on the Scan button.
    • AdwCleaner will begin...be patient as the scan may take some time to complete.
    • When it's done you'll see: Pending: Please uncheck elements you don't want removed.
    • Now click on the Report button...a logfile (AdwCleaner[R0].txt) will open in Notepad for review.
    • Look over the log especially under Files/Folders for any program you want to save.
    • If there's a program you may want to save, just uncheck it from AdwCleaner.
    • If you're not sure, post the log for review. (all items found are adware/spyware/foistware)
    • If you're ready to clean it all up.....click the Clean button.
    • After rebooting, a logfile report (AdwCleaner[S0].txt) will open automatically.
    • Copy and paste the contents of that logfile in your next reply.
    • A copy of that logfile will also be saved in the C:\AdwCleaner folder.
    • Items that are deleted are moved to the Quarantine Folder: C:\AdwCleaner\Quarantine
    • To restore an item that has been deleted:
    • Go to Tools > Quarantine Manager > check what you want restored > now click on Restore.

    STEP 3

    9c3176094b9afc40f2b2b0adcedf2c1d.png Scan with Malwarebytes' Anti-Malware

    Please download Malwarebytes Anti-Malware and save it to your desktop.


    • Install the program and select update.
    • Once updated, click the Settings tab, in the left panel choose Detctions & protection and tick Scan for rootkits.
    • In the same tab, under PUP and PUM detections make sure it is set to Treat detections as malware.
    • Click the Scan tab, choose Threat Scan is checked and click Start Scan.
    • If threats are detected, click the Apply Actions button. You will now be prompted to reboot. Click Yes.
    • Upon completion of the scan (or after the reboot), click the History tab.
    • Click Application Logs and double-click the Scan Log.
    • At the bottom click Export and choose Text file.


    STEP 4
    bb7172a898ca2a72291e6e6d6de6a6a8.gif

    Please go here to run the online antivirus scannner from ESET.
    • Turn off the real time scanner of any existing antivirus program while performing the online scan
    • Tick the box next to YES, I accept the Terms of Use.
    • Click Start
    • When asked, allow the activex control to install
    • Click Start
    • Make sure that the option Remove found threats is unticked
    • Click on Advanced Settings and ensure these options are ticked:
      • Scan for potentially unwanted applications
      • Scan for potentially unsafe applications
      • Enable Anti-Stealth Technology
    • Click Scan
    • Wait for the scan to finish
    • If any threats were found, click the 'List of found threats' , then click Export to text file....
    • Save it to your desktop, then please copy and paste that log as a reply to this topic.

    STEP 5
    Please download the Farbar Recovery Scan Tool and save it to your desktop.

    Note: You need to run the version compatibale with your system. You can check here if you're not sure if your computer is 32-bit or 64-bit
    • Double-click to run it. When the tool opens click Yes to disclaimer.
    • Press the Scan button.
    • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
    • The first time the tool is run, it also makes another log (Addition.txt). Please attach it to your reply as well.
     
  2. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    During the four of those, the first one was the only one that caught anything, Malwarebytes wouldn't download for some odd reason, it would just freeze and wouldn't let me continue. Adware caught nothing and so did ESET.
     

    Attached Files:

  3. Kenny94

    Kenny94 Registered Members

    Joined:
    Jan 21, 2016
    Messages:
    417
    Location:
    SC
    Operating System:
    OS X
    Computer Brand or Motherboard:
    iPad Air, HP Chromebook and Compaq laptop with xp
    Hi OceanBreeze10, I need to run and I'll be back tonight. But for now. Please following the instructions below ,



    Please downloadRkill by Grinler from one of the links below and save it to your desktop.
    • OnWindows XP double-click on the Rkill desktop icon to run the tool.
    • On Windows Vista/Windows 7 or 8, right-click on the Rkill desktop icon and select Run As Administrator
    • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
    • If not, delete the file, then download and use the one provided in Link 2.
    • If it does not work, repeat the process and attempt to use one of the remaining links until the tool runs.
    • If the tool does not run from any of the links provided, please let me know.
    • Do not reboot the computer, you will need to run the application again.
    Right after you run Rkill. Then run TDSSKiller,



    Please run TDSSKiller.

    Please download TDSSKiller from here and save it to your Desktop.

    The log for the TDSSKiller can be very long. If you go to the bottom of the log to where you find Scan finished you will see the results of the scan. If it shows Detected object count: 0 and Actual detected object count: 0, this means that nothing malicious was found and you will not need to post the log.

    1. Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    d2e4ed4e5a773afc8cbfb012cd482ec4.png

    2. Check Loaded Modules, Verify Driver Digital Signature, and Detect TDLFS file system.

    If you are asked to reboot because an "Extended Monitoring Driver is required" please click Reboot now.

    d24547c9460e0d6c816b821bcb2bc1ab.png

    3. Click Start Scan and allow the scan process to run.

    c3f1d78c06cee3ef80bd967f632a9e7a.png

    4. If threats are detected select Cure (if available) for all of them unless otherwise instructed.

    ***Do NOT select Delete!

    Click on Continue.

    f4a5a19d609a13363d778923f4e801b9.png

    5. Click on Reboot computer.

    Please copy the TDSSKiller.[Version]_[Date]_[Time]_log.txt file found in your root directory (typically c:\) and paste it into your next reply.

    Note: The log may be very long. You may need to break it into parts to post the whole log.

    Post this in your topic.
     
  4. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    The second scan didn't detect anything so there was no txt document.

    Also for the Malwarebytes unfinished download, my antivirus said it was a threat? I've tried deleting the installer bit it says it's open in another application even though it isn't.
     

    Attached Files:

  5. Bill

    Bill Registered Members

    Joined:
    Oct 30, 2010
    Messages:
    601
    Location:
    Southeastern US
    Computer Brand or Motherboard:
    Asus P8Z77-V
    CPU:
    Intel i5 3570
    Memory:
    8GB Kingston DDR3 1600
    Hard Drive:
    Plextor SSD SATA 6 128 GB, WD Velociraptor 150g
    Graphics Card:
    eVGA GTX 550 TI
    Power Supply:
    Antec NeoPower 550w
    OceanBreeze100, Can you open Task Manager and see what is running? You maybe able to stop the Malwarebytes installer from there.
     
  6. IceMan37

    IceMan37 Banned

    Joined:
    Apr 24, 2014
    Messages:
    1,079
    Operating System:
    Windows 10
    Computer Brand or Motherboard:
    MSI Z87M-G43
    CPU:
    I5 4690k @ 4.6
    Memory:
    16GB Hyper X 1866
    Hard Drive:
    1TB WD_Blue | 240Gb Sandosk SSD
    Graphics Card:
    eVGA GTX 970 FTW
    Power Supply:
    750W Tt
    As well as the above advice I can tell you that a few Antivirus solutions will initially pickup Malware Byes as a threat. In most cases, you can toggle from the warning message itself from your antivirus and it takes you to the "ignore" and "add" page in the AV settings where you can safely add MWB as an exception.
     
  7. Kenny94

    Kenny94 Registered Members

    Joined:
    Jan 21, 2016
    Messages:
    417
    Location:
    SC
    Operating System:
    OS X
    Computer Brand or Motherboard:
    iPad Air, HP Chromebook and Compaq laptop with xp
    Hi,

    Malwarebytes' Anti-Malware was blocked due do to a security permissions issue and your Registry has an file association issue. I see a few bad hosts files see one below. The site below has a

    Bad Reputation Click here

    Code:
    betterinstaller.com


    We'll use a directive to clean up your hosts files later on. But for now,let's try to run Malwarebytes Anti-Malware again.

    Please download MBAM-clean and save it to your desktop.


    • Right-click on mbam-clean.exe icon and select Run as Administrator to start the tool.
    • It will ask you to reboot the machine - please do so.
    After that follow my next instructions and then to download & install the latest MBAM version.



    Reset Default Permissions:


    Please download ResetDefaultPerms by AdvancedSetup from here and save it to your desktop
    • Close any open programs and save anything you were working on
    • Double click on restoredefaultperms.exe to run it

    • Once it completes it will restart your computer.
    Now, run

    9c3176094b9afc40f2b2b0adcedf2c1d.png Scan with Malwarebytes' Anti-Malware

    Please download Malwarebytes Anti-Malware and save it to your desktop.


    • Install the progam and select update.
    • Once updated, click the Settings tab, in the left panel choose Detctions & protection and tick Scan for rootkits.
    • In the same tab, under PUP and PUM detections make sure it is set to Treat detections as malware.
    • Click the Scan tab, choose Threat Scan is checked and click Start Scan.
    • If threats are detected, click the Apply Actions button. You will now be prompted to reboot. Click Yes.
    • Upon completion of the scan (or after the reboot), click the History tab.
    • Click Application Logs and double-click the Scan Log.
    • At the bottom click Export and choose Text file.
    • Save the file to your desktop and upload your next reply.
     
  8. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    Alright I did the first one and it only rebooted my computer, which I think it was suppose to do? The second one didn't work with my operating system. And the third one didn't detect any threats.
     
  9. Kenny94

    Kenny94 Registered Members

    Joined:
    Jan 21, 2016
    Messages:
    417
    Location:
    SC
    Operating System:
    OS X
    Computer Brand or Motherboard:
    iPad Air, HP Chromebook and Compaq laptop with xp
    Okay, OceanBreeze100, Here's what's going on. One. Your PC doesn't have a rootkit/malware. I know you have Reason Core Security and I know this program. The software is specifically designed to work with your existing anti-virus (Avast). One thing I don't like its leak with Boost Connect a PC optimization can cause damage to your Registry as with any Registry Cleaner and/or optimization. so, at one point did you have Boost Connect on your PC?

    I know your internet is slow. I have a fix for it. The file association issue. I have a fix for it as well. Btw, you need to read this below at
    http://www.gottabemobile.com/2016/05/04/7-common-windows-10-problems-how-to-fix-them/

    What are your current problems as of now? With your Dell. It doesn't have to be Shakespeare, just briefly give me an update.
     
    Last edited: May 7, 2016
  10. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    Earlier today after having the computer turn off two times, I just decided to do a complete wipe of the computers files (not the hard drive though). If there was anything around with the drivers being corrupt or any malware files, they should have been wiped clean with the rest of the computer. I'll keep you updated, if it continues to turn off, I'll be sure to contact Dell for either a replacement or for a solution.

    With boost connects, I'm pretty sure I didn't, not even sure that those are (lol).
     
  11. Kenny94

    Kenny94 Registered Members

    Joined:
    Jan 21, 2016
    Messages:
    417
    Location:
    SC
    Operating System:
    OS X
    Computer Brand or Motherboard:
    iPad Air, HP Chromebook and Compaq laptop with xp
    Some final items:

    Clean up of Malware Removal Tools


    Now that we are through using these tools, let's clean them off your system so that should you ever need to have the malware removed again (we hope not) fresh, updated copies will be downloaded.

    • Download Delfix from here to your desktop and double-click it to start the program
    • Ensure Remove disinfection tools are ticked
      Also, tick:
    • Activate UAC
    • Create registry backup
    • Purge system restore
    • Reset system settings
    • Click Run
    • The program will run for a few moments and then notepad will open with a log. There's no need to post it in your case.
    You can delete any log files left on your desktop as these are no longer needed.


    Purge old temporary files. Now that we are done.... :) Please download TFC by OldTimer to your desktop
    • Please double-click TFC.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
    • It will close all programs when run, so make sure you have saved all your work before you begin.
    • Click the Start button to begin the process. Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two. Let it run uninterrupted to completion.
    • Once it's finished it should reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.
    You should keep TFC and run it once a week. Here is some useful information on keeping your computer clean:
    1. Most important thing is to make sure Windows is kept up to date with the latest patches and updates from Windows Update.
    2. Here are two great Preventive programs
    :
    • SpywareBlaster protects you from malicious ActiveX controls and cookies. Make sure and check for updates twice a month.
    • Surf Safe with McAfee's SiteAdisor. SiteAdisor will work with Internet Explorer and Mozilla Firefox. SiteAdisor is a browser plugin that assigns a safety rating to domains listed in your search engine. SiteAdvisor uses the following color codes to indicate the safety level of each site.
    • Red for Warning
    • Yellow for Use Caution
    • Green for Safe
    • Grey for Unknown


    It was a pleasure working with you OceanBreeze100. 8e91b5a5deedb06b0acdf9765c9838c8.png
     
  12. Kenny94

    Kenny94 Registered Members

    Joined:
    Jan 21, 2016
    Messages:
    417
    Location:
    SC
    Operating System:
    OS X
    Computer Brand or Motherboard:
    iPad Air, HP Chromebook and Compaq laptop with xp
    I'll keep this topic open for the next 7 days, just in case you need help.
     
  13. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    Alright sounds good, I'll update if them computer turns off again :D
     
  14. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    Alright guys I'm back (sadly). Yesterday it started up again. The screen went black two times during Saturday, no errors or anything. Now, just to be honest, I don't think it's malware this time. I just restored my computer and have only been going on video games since then. So maybe there is another problem lurking somewhere?
     
  15. starbuck

    starbuck Rest In Peace Pete Administrator

    Joined:
    Sep 26, 2009
    Messages:
    3,830
    Location:
    Midlands, UK
    Operating System:
    Windows 10
    CPU:
    AMD Athlon II x2 250 Processor 3.00GHz
    Memory:
    8gb DDR3
    Hard Drive:
    500gb SATA
    Graphics Card:
    ASUS GeForce GTX 960 2gb
    Power Supply:
    650w PowerCool X-Viper
    Hi OceanBreeze

    I'm incline to agree about the issue not being malware related.
    It looks like it may be either a software conflict or a hardware problem.

    P2P Warning
    Please note that as long as you're using any form of Peer-to-Peer networking ( Vuze, Bearshare, Bit Torrent etc.) and downloading files from non-documented sources, you can expect infestations of malware to occur.
    P2P programmes form a direct conduit onto your computer, their security measures are easily circumvented, and Malware writers are increasingly exploiting them to spread their wares onto your computer. Further to that, if your P2P programme is not configured correctly you may be sharing more files than you realise. There have been cases where people's Passwords, Address Books and other personal, private, and financial details have been exposed to the file sharing network by a badly configured programme.

    Many of the programmes come bundled with other unwanted programmes, but even the ones free of any bundled software are not safe to use.
    When you use them you are downloading software from an unknown source directly onto your computer, bypassing your Firewall and Anti-Virus software. Hardly surprising then that many of these Downloads are being targeted to carry infections.

    You may decide to continue P2P sharing, but keep in mind that this practice may be the source of future malware infestation.
    If we clean your computer of any infection, and you return to us a short time later with an infection contracted by the use of P2P programmes, we may refuse to help you.

    If you do decide (unwisely) to keep these programs, please refrain from using them until we have finished cleaning your system.

    ---------------------------
    Let's get a fresh set of FRST reports to make sure and then we'll take it from there.

    For x64 bit systems download Farbar Recovery Scan Tool x64 and save it to your Desktop.

    • Double-click the downloaded icon to run the tool. Vista/Windows 7/8/10 users right-click and select Run As Administrator

      a1e30894cbd1e51d77798ccaebcd6fa0.png
    • When the tool opens click Yes to disclaimer.

      6c81f32e4cfa276b33b2c5b126a03416.png
    • Make sure that Addition.txt is selected at the bottom
    • Press Scan button.

      1b8c7ec40ba5fc57455a82d8388da693.png
    • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
    • The first time the tool is run, it also makes another log (Addition.txt). Please copy and paste it to your reply also.


    In your next reply, please submit:
    The reports from FRST


    Thanks.
     
  16. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
     

    Attached Files:

  17. starbuck

    starbuck Rest In Peace Pete Administrator

    Joined:
    Sep 26, 2009
    Messages:
    3,830
    Location:
    Midlands, UK
    Operating System:
    Windows 10
    CPU:
    AMD Athlon II x2 250 Processor 3.00GHz
    Memory:
    8gb DDR3
    Hard Drive:
    500gb SATA
    Graphics Card:
    ASUS GeForce GTX 960 2gb
    Power Supply:
    650w PowerCool X-Viper
    Hi OceanBreeze,

    Please don't forget to post the main FRST report.
    The copy will be in your Download folder.

    Thanks.
     
  18. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    My Bad.
     

    Attached Files:

    • FRST.txt
      File size:
      110.1 KB
      Views:
      10
  19. starbuck

    starbuck Rest In Peace Pete Administrator

    Joined:
    Sep 26, 2009
    Messages:
    3,830
    Location:
    Midlands, UK
    Operating System:
    Windows 10
    CPU:
    AMD Athlon II x2 250 Processor 3.00GHz
    Memory:
    8gb DDR3
    Hard Drive:
    500gb SATA
    Graphics Card:
    ASUS GeForce GTX 960 2gb
    Power Supply:
    650w PowerCool X-Viper
    Hi Ocean Breeze

    In the post that you removed you did say that you was thinking of returning the system to Dell.
    On reviewing the previous posts in this thread I see that the system is only 6 months old.
    That being the case I strongly advise that you do return this to Dell.
    A 6 month old system shouldn't be giving these problems.
    The system will be under warranty, so best you return this before any warranty expires.
    If the problem is Hardware related it'll be down to Dell to sort this out.
     
  20. OceanBreeze100

    OceanBreeze100 Registered Members

    Joined:
    Apr 24, 2016
    Messages:
    49
    Location:
    Oregon
    Operating System:
    Windows 10
    Yeah I had written that during a movie I had thought it had turned off but apparently it hadn't or had turned back on. I'm going to call them after school tomorrow and ask for either a fix or a replacement.
     

Share This Page