Start a Conversation

Unsolved

D

3 Posts

124

October 9th, 2023 03:22

MD5 Checksum Verification Dell Factory image iso for Clean Install + Expired Certificates?

Vostro 3671

Vostro 3671

Hello,

    I bought a used Vostro 3671 recently and I have been plagued with virus issues since the second week. I love this Dell computer and think its great.  The Viruses and hacking stuff have been a pain and having a background designing websites myself, i've gotten a good solid amateur understanding of just how far reaching these problems can be. I can provide the service tag to Moderators if they need it. I will pm them as well about this thread.

      I did a clean install downloaded from Microsoft to windows 11 pro from the original windows 10 that this machine came with (yes I took the time to verify that this machine is capable according to Dell and Dell says it can be upgraded to windows 11).

       I did this Clean install 2 months ago after MS Defender alerted me to a whole folder of Trojans. I uploaded some of these to Microsoft and there were at least 30 according to online definitions (all from Microsoft). After that reinstall things were great, or so i thought....

       I have more. This time I cant get them off. I have reasonable suspicions that certificates have been compromised and if you know anything about hacking etc etc... They may be operating behind the scenes undetected by the Mess that is windows 11.

       I'm not here to get virus recommendations, thats just some background and the reason why I want to have verified software for this computer.

I tried downloading the:

Dell-USB-Recovery-Tool-Application_F7THP_WIN_2.3.7515_A00.exe from the Dell Website directly:

upon downloading the file i check the certificates to make sure they are valid.... Windows 11 pro (fully updated according to my computer) says they are valid but look at the screenshot I provided...

The certificate to verify the source is trustworthy is EXPIRED

I don't understand why it says Dell is the verified publisher but yet the certificate is expired... to me that would mean it's not verified but I'm no expert.

I have NOT proceeded to use the program.

Here is what I would like to have and i'm sure a few other users would as well:

-Lets have dell please update the certificates.

-I would like to purchase a factory Install Disk from Dell.

       I want to install the OS from an iso and then have the disk with all the drivers necessary to make this factory system work and install them in the correct order. Dell does this from a disk or whatever at the factory, I want to be able to do this as well. NO. I DON'T WANT TO USE THE DOWNLOADER AND DOWNLOAD THEM ONE AT A TIME from the Dell Website. THIS CAN BE TROUBLESOME AND TIME CONSUMING FOR ANYONE BUT AN IT EXPERT AND I WANT AN AUTOMATED SYSTEM JUST LIKE DELL DOES AT THE FACTORY WHEN THEY PRODUCE THOUSANDS OF THESE MACHINES AS ONCE. Please :-)

-MD5 verification of download packages or some checksum verification

Microsoft provides a MD5 checksum value to verify the integrity of the file. Certificates can be compromised and I think personally the whole system is faulty.

We need a way to verify the integrity of a download AFTER its downloaded. Microsoft understands this and its a good check and balance. Not sure if this is an option with Dell, I didn't get that far but i couldn't find any info on it so maybe not... just a strong suggestion.

 I have reason to believe these trojans have gotten beneath the TPM and compromised the entire system. If you don't think that windows 11 can be compromised with a fully current TPM and all that stuff do some research on Black Lotus. I have included a link to a reputable source discussing how it works below:

https://www.bleepingcomputer.com/news/security/blacklotus-bootkit-bypasses-uefi-secure-boot-on-patched-windows-11/

I want to do a Department of Defense (DOD) approved format of this hard drive including recovery partition and EVERYTHING. I don't why why a clean install didn't work before or maybe it did and I got reinfected but I find it very suspicious. I want to start with a completely blank hard drive which means the factory re installation CD would have to have drivers for the hard drive as well, everything.

Thank you

5 Practitioner

 • 

5.6K Posts

October 9th, 2023 15:39

To receive support from Dell, click on Get Help Now button on bottom right of your screen.

6 Professor

 • 

7.9K Posts

October 27th, 2023 03:10

" I have reason to believe these trojans have gotten beneath the TPM and compromised the entire system."

Indeed, that's quite possible.  If you think BIOS got corrupted, remove the CMOS battery for 10 min.  With PC unplugged, press power button for a few sec. to drain any leftover power.  After reinstalling battery, do a BIOS reset.  How to Perform a BIOS or CMOS Reset and Clear the NVRAM on Dell Computers

Do this without the corrupted HDD installed.  Use the jumper method if it applies to your system.

(edited)

No Events found!

Top