After over 2 years of fighting the original botnet and hacker, i finally seem to be getting help. There is more to the main worm that needs to be addressed that will end al these hackings. The main worm(undetectable) uses chips on the motherboard, packets through radio waves and then binds onto all drivers in bios in case of formating. The worm put a distress call into the kernel that you can see during boot that shows how another part of the worm will replace the global if you succeed.
Source: https://threatpost.com/bind-name-server-gets-patched-update-012510/73418/