Current Events > Microsoft installed a rootkit on my computer...

Topic List
Page List: 1
samurai bandit
04/24/22 3:55:15 AM
#1:


TIL that Microsoft signed a "driver" that was actually a rootkit and it turns out somehow my computer has it. I rarely use my computer (the rootkit is like 1 year old) but when I use it, it is for important stuff so it sucks.

Now I have to reinstall windows to get rid of it and hope that the hackers didnt steal any of my passwords which I will need to update and rember because there are fucking tons of them and I use a different password for each site.

I just wanted to vent, thanks for coming to my CED talk.

https://www.bleepingcomputer.com/news/security/microsoft-admits-to-signing-rootkit-malware-in-supply-chain-fiasco/

---
Go and watch Ef ~ A tale of memories now!
... Copied to Clipboard!
indica
04/24/22 4:11:20 AM
#2:


Do you live in China?

---
There is no good. There is no evil. There just is.
... Copied to Clipboard!
TheMikh
04/24/22 4:22:48 AM
#3:


good thing i set up my networking to block windows update

---
http://i.imgur.com/A0TAfek.png
... Copied to Clipboard!
samurai bandit
04/24/22 4:26:45 AM
#4:


indica posted...
Do you live in China?
Nope.

---
Go and watch Ef ~ A tale of memories now!
... Copied to Clipboard!
Questionmarktarius
04/24/22 4:28:08 AM
#5:


Windows itself has been a rootkit since ME
... Copied to Clipboard!
Kloe_Rinz
04/24/22 4:35:39 AM
#6:


indica posted...
Do you live in China?
i guarantee your PC has multiple parts made in China
... Copied to Clipboard!
indica
04/24/22 4:51:14 AM
#7:


indica posted...
Do you live in China?

samurai bandit posted...
Nope.

Kloe_Rinz posted...
i guarantee your PC has multiple parts made in China
The article said it was sending information to centers in China and that it was mainly found in PCs made for the Chinese market

---
There is no good. There is no evil. There just is.
... Copied to Clipboard!
samurai bandit
04/24/22 4:56:53 AM
#8:


I do have a gaming laptop so maybe that's why

---
Go and watch Ef ~ A tale of memories now!
... Copied to Clipboard!
Kloe_Rinz
04/24/22 5:03:08 AM
#9:


indica posted...
The article said it was sending information to centers in China and that it was mainly found in PCs made for the Chinese market
chinese equipment/parts are liable to call home. out of curiosity TC, what computer do you have? I did a quick search and it seemed like some people with asus laptops were affected
... Copied to Clipboard!
indica
04/24/22 5:32:39 AM
#10:


Kloe_Rinz posted...
chinese equipment/parts are liable to call home. out of curiosity TC, what computer do you have? I did a quick search and it seemed like some people with asus laptops were affected
ooh, Asus is a Taiwanese company...

---
There is no good. There is no evil. There just is.
... Copied to Clipboard!
008Zulu
04/24/22 5:42:18 AM
#11:


What driver were you installing?

---
If you're not smart enough to survive, you are basically just food for something smarter.
... Copied to Clipboard!
samurai bandit
04/24/22 1:58:35 PM
#12:


Kloe_Rinz posted...
out of curiosity TC, what computer do you have? I did a quick search and it seemed like some people with asus laptops were affected

Unfortunately Asus.

008Zulu posted...
What driver were you installing?

No idea. I didn't install or download anything the past month but since this virus was discovered like a year ago who knows. It if allegedly targets gamers it could have been some steam update, nvidia graphics cards or maybe some asus bloatware autoupdating.


---
Go and watch Ef ~ A tale of memories now!
... Copied to Clipboard!
Kloe_Rinz
04/24/22 10:46:15 PM
#13:


thats concerning for me since the next laptop i wanted to buy was an asus zephyrus g14 >.>
... Copied to Clipboard!
PBusted
04/24/22 11:01:41 PM
#14:


How did you find out?
... Copied to Clipboard!
samurai bandit
04/24/22 11:17:23 PM
#15:


Kloe_Rinz posted...
thats concerning for me since the next laptop i wanted to buy was an asus zephyrus g14 >.>

I believe the certificate has been revoked so it should be safe now, unless Microsoft fucks up again.

PBusted posted...
How did you find out?

Interestingly enough, Microsoft Defender (the default antivirus) detected the threat. It cant remove it and also I assume compromise of the full system since the virus autoupdates so I will still need to do a full OS reinstall.

I wonder if this is why my Asus battery is dead now, it wouldnt suprise if my laptop was mining bitcoin when i had it on sleep mode...


---
Go and watch Ef ~ A tale of memories now!
... Copied to Clipboard!
SpiritSephiroth
04/24/22 11:19:19 PM
#16:


This is concerning. Making me want to do a full check on my computer tomorrow.

---
https://i.imgur.com/spfW7gv.jpg https://i.imgur.com/EAuZ5LW.jpg https://i.imgur.com/ZzXmr8X.jpg
... Copied to Clipboard!
Topic List
Page List: 1