Multiple explorer.exe, black screen, RootkitBoot malware - Windows 7

Tom Lav

Reputable
Nov 4, 2014
2
0
4,510
Hello everyone.
Recently I had a system restart, I wasn't an initiator... after that the system was suffering from multiple Explorer.exe processes which were eating CPU and memory a lot.

After reading many topics, I've deleted the folder "Paths" in registry codeidentifier>safer>0>paths.

As a result, I still can't boot Windows normally. Black screen after typing in my password. Atm I'm using Safe Mode.

I've scanned my system via /scannow - no issues,
checked the right values in registry (shall, userinit),
scanned the system with RegCure Pro (found and fixed few issues, but didn't help much)
and also used TDSSKiller which found ROOTKIT.Boot malware.
+ reinstalled video driver
+ tried to launch Windows on CLEAN start up

After treatment I'm not getting 10-15 explorer.exe processes (which is a good sign I believe) but still can't load Windows normally.

I believe, TDSSKiller destroyed the malware, but now I need to somehow recover my system..?

P.S. I have no restore points.

Any ideas?


 


I've already thought about it, but the problem is there's only 1 drive (no partitions) and I don't have an external HDD 🙁
But if nothing helps, I have no choice probably.