Acpi bios rootkit

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by rrrev, Apr 16, 2012.

  1. rrrev

    rrrev Private E-2

    Gday all, can anyone deal with this? I doubt it as everywhere else i have asked either say it doesn't exist or its just too hard.
    http://www.tomshardware.com/news/bios-virus-rootkit-security-backdoor,7400.html
    check out the pdf at the bottom of that page.Ive got one of them!
    Is this where i post a hijack this logfile of a fresh install of win 7 ? When this hacker gets back on the infected computer i have over 6000 updates that are applied before i get to see my login screen.I have 4 computers infected by this and most people in my email list are infected with it as well.It survives fresh installs and anything i can throw at it.My unfortunate gaming friend infected via association had a remote Trend-micro Tech doing his thing for over 3 hours just to get control of his companies own program(Titanium).That control lasted until the next reboot.Trend-micro advised he go to the police as they cant help.They answer all subsequent Emails with the same advice. Trend-micro dont have a solution and dont want to know about this ACPI BIOS ROOT KIT, not funny but their software felt the same way. Will try to attach hijack this log.I have many other logs,Everest etc etc registry copies blah blah. The person that gave birth to this rootkit is known to me. Want to see more? just ask. ps how do i attach logfile because if its on my screen i cant see it doh found it
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Welcome to Major Geeks!

    A HijackThis log would be of no use to anyone.


    If you really have a BIOS infection, the only possible way to fix it is to reflash the BIOS. However there are qualifiers to this
    1. I would remove the hard disk first and do not use it to boot from again in any PC. You need to avoid the possibility that the infection is also in the MBR or in a partition that is loading and even doing a format will not remove these. It has to have all partitions wiped!!!!
    2. Thus you would need a new hard disk to try using after you do the reflash of your BIOS and you would have to reinstall your OS.
    3. If the BIOS infection can some how detect that you are attempting to rewrite the BIOS and block the rewrite, you would need to totally replace the BIOS chips. If they are on sockets this is something you may be able to do, but more likely they are not on sockets and you would thus need a new mother board.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds