Solved Likely rogueware infection win7/screen turns black during boot

value

New member
Local time
5:14 AM
Messages
10
Hello,

System: Win732 bit SP1
CPU: Intel dual core E-2160
Ram: 2GB

When I boot regularly my screen just turns black prior to logging into windwos, i can hear the log on/off sounds.

It works in safemode with network drivers.

I ran antimalwarebytes and I had one infection by some "Rogueware.lnk".mp3 on my desktop which I removed with mab.

As of right now I'm running ESET online scan in safe mode and it found one infection "Win32/Opencandy".

I can assume that all hardware/drivers are working properly.

Why is my screen turning black all of a sudden when booting and how to get rid ofit?

Any help is welcome.

Thank you.
 

My Computer My Computer

At a glance

Windows 7 Professional x64 (SP1)
OS
Windows 7 Professional x64 (SP1)
Screen Resolution
7680x1600
A quick system restore to a point before you were infected may do the trick ... however, getting into the habit of imaging your drive, is IMO, the number one step in any security policy ... its a lot easier to restore an image than it is to re-install the OS and all of your applications ... let us know how it comes out ...

This will show you how to do a System Restore to restore your Windows 7 system files to an earlier point in time. It's a way to undo system changes to your computer without affecting your personal user files, such as e‑mail, documents, or photos.


System Restore

This will show you how to create a system image (clone) backup of the entire hard drive or partition that Windows 7 is on, and any other selected drive or partition. You can use this image to be able to do a system image recovery to restore the hard drive or partition at boot back to the way it was at the time the backup image was created.

Backup Complete Computer - Create an Image Backup
 

My Computer My Computer

At a glance

64-bit Windows 8.1 ProCore(TM) i5 CPU 4330 Haswell @ 3.20GHz12.00 GBIntel(R) HD Graphics
Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
Thank you for your effort Tews, I should have mentioned that this isn't my system and system restore was turned off so no easy way around it.
He also doesn't find his OEM win 7 CD and never made a recovery disc.

Eset online scan finished with these results:
C:\Users\fatcap\Downloads\cdbxp_setup_4.3.7.2423.exe Win32/OpenCandy application deleted - quarantined

E:\Torrrent\Complete\Betfair Ebook Sofware Fairbot OddzBreaker BetTraderPro Betting Assistant Arbitrage Trading and Patch Win32/Spy.ProAgent.20 trojan deleted - quarantined
 

My Computer My Computer

At a glance

Windows 7 Professional x64 (SP1)
OS
Windows 7 Professional x64 (SP1)
Screen Resolution
7680x1600
"E:\Torrrent\Complete\Betfair Ebook Sofware Fairbot OddzBreaker BetTraderPro Betting Assistant Arbitrage Trading and Patch"

Possibly the most suspicious looking folder in the world ever?
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64Intel Core2 Quad Q8300 2.5GhzKingston HyperX 4x1GB DDR2 1066MhzAsus/Nvidia 9500GT 1GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self Build
OS
Windows 7 Ultimate x64
CPU
Intel Core2 Quad Q8300 2.5Ghz
Motherboard
Asus P5QD Turbo
Memory
Kingston HyperX 4x1GB DDR2 1066Mhz
Graphics Card(s)
Asus/Nvidia 9500GT 1GB
Sound Card
On-Board HD
Monitor(s) Displays
22" Widescreen TFT
Screen Resolution
1920x1080
Hard Drives
2x 320Gb Seagate SATAII RAID 0
2x 80Gb Seagate SATAII RAID 0
1x 1tb hybrid (8gb ssd)
PSU
650w
Case
ATX
Cooling
140mm front, 120mm Rear, 80mm Chipset + stock CPU and GPU
Keyboard
Plastic one
Mouse
Plastic one
Internet Speed
4Mbps
Other Info
Laptop: HP Elitebook 2560p
i5 @2.7Ghz 4GB DDR3
From the looks of things, your friend is going to have to borrow an OEM disc from someone and use his COA key to activate it ... and tell him to stay away from torrent sites ... Good luck! ;)
 

My Computer My Computer

At a glance

64-bit Windows 8.1 ProCore(TM) i5 CPU 4330 Haswell @ 3.20GHz12.00 GBIntel(R) HD Graphics
Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
Yeah, finding those infection/files was not a pleasant surprise for me either.

Removing those infections didn't change anything on the issue though, I'm only able to boot into safe mode with networking and can do pretty much whatever, but while trying to boot regularly the Monitor turns to "no signal" after the boot screen, before you'd come to the login screen.

Is it even that likely that the issue is some malware?
I'm just following this route because the system is such a mess.

//edit, he finally found his COA key, but how do I go from there and why would it matter?
At least he runs a legit OEM license and we have an installation disc. But is there any way around a new install? He doesn't have any backups, any space on the hdd left or any other media I could use for backups right now.

Can anyone make use of some HJT or other logs I could post from safemode?
 

My Computer My Computer

At a glance

Windows 7 Professional x64 (SP1)
OS
Windows 7 Professional x64 (SP1)
Screen Resolution
7680x1600
it could be something as simple as an out of range resolution, can you start it in: low-resolution video (640×480) mode from the F8 Boot menu?
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64Intel Core2 Quad Q8300 2.5GhzKingston HyperX 4x1GB DDR2 1066MhzAsus/Nvidia 9500GT 1GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self Build
OS
Windows 7 Ultimate x64
CPU
Intel Core2 Quad Q8300 2.5Ghz
Motherboard
Asus P5QD Turbo
Memory
Kingston HyperX 4x1GB DDR2 1066Mhz
Graphics Card(s)
Asus/Nvidia 9500GT 1GB
Sound Card
On-Board HD
Monitor(s) Displays
22" Widescreen TFT
Screen Resolution
1920x1080
Hard Drives
2x 320Gb Seagate SATAII RAID 0
2x 80Gb Seagate SATAII RAID 0
1x 1tb hybrid (8gb ssd)
PSU
650w
Case
ATX
Cooling
140mm front, 120mm Rear, 80mm Chipset + stock CPU and GPU
Keyboard
Plastic one
Mouse
Plastic one
Internet Speed
4Mbps
Other Info
Laptop: HP Elitebook 2560p
i5 @2.7Ghz 4GB DDR3
Yes, was the first thing I did, didn't work either.
But as I see now, the monitor/gpu and drivers are up to date and no other apparent issues in safe mode.

Just that the friggin screen gets no signal when I boot regulary.

Don't really know how to proceed from here.
 

My Computer My Computer

At a glance

Windows 7 Professional x64 (SP1)
OS
Windows 7 Professional x64 (SP1)
Screen Resolution
7680x1600
Its easy to blame malware as it is often badly written with no care and attention, often deliberately destructive and for this reason can cause any number of side effects.

Proably worth trying a re-install of the graphics driver from safemode if you havent already?
 

My Computer My Computer

At a glance

Windows 7 Ultimate x64Intel Core2 Quad Q8300 2.5GhzKingston HyperX 4x1GB DDR2 1066MhzAsus/Nvidia 9500GT 1GB
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self Build
OS
Windows 7 Ultimate x64
CPU
Intel Core2 Quad Q8300 2.5Ghz
Motherboard
Asus P5QD Turbo
Memory
Kingston HyperX 4x1GB DDR2 1066Mhz
Graphics Card(s)
Asus/Nvidia 9500GT 1GB
Sound Card
On-Board HD
Monitor(s) Displays
22" Widescreen TFT
Screen Resolution
1920x1080
Hard Drives
2x 320Gb Seagate SATAII RAID 0
2x 80Gb Seagate SATAII RAID 0
1x 1tb hybrid (8gb ssd)
PSU
650w
Case
ATX
Cooling
140mm front, 120mm Rear, 80mm Chipset + stock CPU and GPU
Keyboard
Plastic one
Mouse
Plastic one
Internet Speed
4Mbps
Other Info
Laptop: HP Elitebook 2560p
i5 @2.7Ghz 4GB DDR3
Good idea, thank you! Rep added.

Haven't done that yet and will do as last try before a reinstall.


//The data he got is mostly bullshit anyways so he kind of deserves it :p
 

My Computer My Computer

At a glance

Windows 7 Professional x64 (SP1)
OS
Windows 7 Professional x64 (SP1)
Screen Resolution
7680x1600
Back
Top