Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Rootkit and/or virus survived Dban nuke!!!!??


  • Please log in to reply
1 reply to this topic

#1 pinktuna1200

pinktuna1200

  • Members
  • 1 posts
  • OFFLINE
  •  

Posted 12 September 2015 - 10:18 PM

Hi. I am new to this forum...I signed up because I am out of options and about to smash my computer into pieces.
I have an Hp Omni-1057c all-in-one, my problem has been ongoing for weeks now.
I recently discovered my pc was badly hit with a rootkit from he'll. I have tried unsuccessfully to do a clean re-installation of Windows 7 HOME premium with the Hp Oem recovery discs. I have lost all my data so I don't really have anything to lose now. I am up to 12 tries of installing Windows and as soon as my desktop appears for the first time, all sorts of weird processes are running and one called: TrustedInstaller. No matter what I have trie, it deletes only momentarily. Keep in mind, this is all going on with no Internet connection set up and no windows updates. When i try to shut down for the first time... Everything, windows says there is one update file that must install after restart.
I have erased, wiped, formatted, dban nuke, reset bios, reset cmos, removed battery....all of that and it still appears.
Tonight I even tried installing Windows 7 ULTIMATE, Non-HP and it still does the exact same thing.
I know there is atleast a rootkit at minimum because if I try start up repair it fails everyone. I check details and it says root file error.
PLEASE FOR THE LOVE OF GOD, SHED SOME LIGHT ON THIS HAIR-PULLING NON-SENSE!!!
Thanks for your time ---
Pinktuna


Edited by hamluis, 14 September 2015 - 12:41 PM.
Moved from MRL to Am I Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,537 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:03:25 PM

Posted 14 September 2015 - 02:44 PM

Hi pinktuna1200 :)

TrustedInstaller.exe is a legitimate process and user under Windows (and a critical one on top of that), so I really doubt that it's a rootkit :) Is it the only thing which makes you believe that you are infected, or is there anything else? Also, can you list the other "weird processes" you are talking about?

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users