Hello, my google search results are being redirect to random sites, so i ran a scan of my whole computer using AVG anti-virus version 8.5.339. The following are the results under rootkits. The first one is a hidden driver while the rest are hidden files.
C:\WINDOWS\system32\drivers\kungsfjmelmuit.sys
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys.rmv.rmv
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfkoejuogl.dll.rmv
c:\WINDOWS\system32\kungsfkoejuogl.dll.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfkoejuogl.dll.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfqnepjyow.dll.rmv
c:\WINDOWS\system32\kungsfqnepjyow.dll.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfqnepjyow.dll.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\kungsftuljdvjj.dat.rmv
c:\WINDOWS\system32\kungsftuljdvjj.dat.rmv.rmv.rmv
c:\WINDOWS\system32\kungsftuljdvjj.dat.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\Temp\kungsfptwmdvtnbv.tmp.rmv.rmv.rmv.rmv.rmv.
I pressed the "Remove all unhealed" button and the following message appeared.
"Object is hidden by a rootkit technique (which is usually used by a malicious software) Do you really want to remove it?"
I clicked yes, the same message appeared about 6 more times and clicked yes on all of em. It then required me to restart my pc, which i did. But to no avail, my google searches still get redirected. I ran another AVG scan only to yield the same results. Thing is, when i run MBAM and SuperAntiSpyware they didn't detect anything. Which gives me the feeling that i am royally screwed here. Attached are my 8 STEPS logs. Any help would be greatly appreciated.
C:\WINDOWS\system32\drivers\kungsfjmelmuit.sys
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys.rmv.rmv
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\drivers\kungsfjmelmuit.sys.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfkoejuogl.dll.rmv
c:\WINDOWS\system32\kungsfkoejuogl.dll.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfkoejuogl.dll.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfqnepjyow.dll.rmv
c:\WINDOWS\system32\kungsfqnepjyow.dll.rmv.rmv.rmv
c:\WINDOWS\system32\kungsfqnepjyow.dll.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\system32\kungsftuljdvjj.dat.rmv
c:\WINDOWS\system32\kungsftuljdvjj.dat.rmv.rmv.rmv
c:\WINDOWS\system32\kungsftuljdvjj.dat.rmv.rmv.rmv.rmv.rmv.rmv
c:\WINDOWS\Temp\kungsfptwmdvtnbv.tmp.rmv.rmv.rmv.rmv.rmv.
I pressed the "Remove all unhealed" button and the following message appeared.
"Object is hidden by a rootkit technique (which is usually used by a malicious software) Do you really want to remove it?"
I clicked yes, the same message appeared about 6 more times and clicked yes on all of em. It then required me to restart my pc, which i did. But to no avail, my google searches still get redirected. I ran another AVG scan only to yield the same results. Thing is, when i run MBAM and SuperAntiSpyware they didn't detect anything. Which gives me the feeling that i am royally screwed here. Attached are my 8 STEPS logs. Any help would be greatly appreciated.