Sinisterly
Desperate (50$) for help vs this rat/trojan (rdp/kernel/dcom) - Printable Version

+- Sinisterly (https://sinister.ly)
+-- Forum: General (https://sinister.ly/Forum-General)
+--- Forum: The Lounge (https://sinister.ly/Forum-The-Lounge)
+--- Thread: Desperate (50$) for help vs this rat/trojan (rdp/kernel/dcom) (/Thread-Desperate-50-for-help-vs-this-rat-trojan-rdp-kernel-dcom)



Desperate (50$) for help vs this rat/trojan (rdp/kernel/dcom) - zanderos - 02-12-2023

Im no experienced hacker and thought a clean wipe would get rid of it. Nope. It fucking infected my usbs, tampered with bios, respawns all these devices in device manager upon every full wiped windows install

Its real bad cause it fucked both my own and my work computer. I believe ive gotten real close now thanks to a third party app i bought which made me boot right in as a usb environment and fuck it up well enough to make it stop do stuff. So heres where im at now . This x: device of his seems to be key. Its like a mounted ghost drive. Ive formatted and listed and deleted every volume partition in both my drives (0 and 1)

X: holds his whole stock of environment, insane amount of hives, folders, exes, driver infs etc. Ive started in pure CMD mode after hours of trying to outspeed his shit and succeded in halting

Nothing in diskpart helps, nothing net use etc. Not connected to any network or internet or bluetooth (it hijacked my phone briefly too)

These screens are what i got. If you tell me what to do to kill this shit for good now (almost certain i just need to remove this drive) i will send you 50$ immediately if it works no matter how simple it is. Im too scared to restart so his environment doesn't reset

https://imgur.io/a/0RRnriY

The bottom pics with the crazy softwares is his /rat environment i got access to via the paid app i used on a usb


RE: Desperate (50$) for help vs this rat/trojan (rdp/kernel/dcom) - zanderos - 02-12-2023

Shit I might've fixed this shit. Unmount after removing protection