Bitdefender Hijacked My Computer

edited August 2014 in General

On Jul.28.2014 I decided to switch the security products and purchased Bitdefender Internet Security 2015. During the installation it uninstalled Kasperski (expiring after 3 years of good, trusting coexistence) and then it started a system scan that took about 16 hours to complete. Two suspected files were found and cleaned without any problems...fast forward, 2 days ago when I opened IE 11 I realized that the browser behavior has changed in the sense that it would always modify the home page to about:blank "by itself". Realizing that I was infected (while being protected by Bitdefender!!!???) I downloaded and launched some known and proven free tools, used exactly for hard cases like this: adwcleaner, malwarebytes and JRT. ADWcleaner was extremely effective, after the first scan it found TBSrv service (the culprit for the problem in IE) and quite a few other rogue files and registries (Conduit, 1ClickDownload, DAEMON Tools Toolbar, Free Ride Games, hotspot shield, Tbccint, PackageAware, Systweak) plus two suspicious files in the root directory: END and roboot64.exe.


Everything was cleaned HOWEVER immediately upon the next reboot, Bitdefender, probably offended by others doing its job, launches the background process "Bit Defender Security Service" (visible in Task manager) which has been running continuously for the past 13 hours, consistently taking up about 50% of memory (out of 8GB) AND 50-60% of CPU. I figured that maybe after the massive clean up performed by the above tools, BD "felt compelled" to run another system scan, but there is no indication whatsoever of any scanning tool running...just the background service without any other hint on what the hack it's been doing for so long or what's the progress. The infuriating part comes with the realization that if this, whatever-it-does-in-the-background-process gets interrupted by a reboot, it would start all over again.


Can somebody from Bit defender team explain me how come a 2015 top rated security product was designed in such a way that it may, at some point, take total control over the system, to the point of almost crippling it while the user not only that has no control over the process but there is not even the slightest indication on why, what, how or what the expected end result of this hijack may be?????!!!!!


Thank you for making me a happy camper in the new community of Bit defenders <img class=" />

post-183322-1407686945_thumb.jpg

post-183322-1407686955_thumb.jpg

Comments

  • edited August 2014
    On Jul.28.2014 I decided to switch the security products and purchased Bitdefender Internet Security 2015. During the installation it uninstalled Kasperski (expiring after 3 years of good, trusting coexistence) and then it started a system scan that took about 16 hours to complete. Two suspected files were found and cleaned without any problems...fast forward, 2 days ago when I opened IE 11 I realized that the browser behavior has changed in the sense that it would always modify the home page to about:blank "by itself". Realizing that I was infected (while being protected by Bitdefender!!!???) I downloaded and launched some known and proven free tools, used exactly for hard cases like this: adwcleaner, malwarebytes and JRT. ADWcleaner was extremely effective, after the first scan it found TBSrv service (the culprit for the problem in IE) and quite a few other rogue files and registries (Conduit, 1ClickDownload, DAEMON Tools Toolbar, Free Ride Games, hotspot shield, Tbccint, PackageAware, Systweak) plus two suspicious files in the root directory: END and roboot64.exe.


    Everything was cleaned HOWEVER immediately upon the next reboot, Bitdefender, probably offended by others doing its job, launches the background process "Bit Defender Security Service" (visible in Task manager) which has been running continuously for the past 13 hours, consistently taking up about 50% of memory (out of 8GB) AND 50-60% of CPU. I figured that maybe after the massive clean up performed by the above tools, BD "felt compelled" to run another system scan, but there is no indication whatsoever of any scanning tool running...just the background service without any other hint on what the hack it's been doing for so long or what's the progress. The infuriating part comes with the realization that if this, whatever-it-does-in-the-background-process gets interrupted by a reboot, it would start all over again.


    Can somebody from Bit defender team explain me how come a 2015 top rated security product was designed in such a way that it may, at some point, take total control over the system, to the point of almost crippling it while the user not only that has no control over the process but there is not even the slightest indication on why, what, how or what the expected end result of this hijack may be?????!!!!!


    Thank you for making me a happy camper in the new community of Bit defenders <img class=" />


    Because the administrators of this forum decided to impose an expiry time after which the OP can no longer edit their own posts (really!!!???), I am forced to REPLY TO MY OWN post with a more relevant attachment (to show the PC performance over a period of ~ 7 minutes)

    post-183322-1407688716_thumb.jpg


  • Well my support tool doesn´t work. Try to contact this BD tech supporter here on forum if it doesn´t work:


    Christian


    http://forum.bitdefender.com/index.php?showuser=9374


    Be advised though ... I tried to contact three BD staff members here on forum but for some reason their profile was blocked from receiving PM´s

Leave a Comment

Rich Text Editor. To edit a paragraph's style, hit tab to get to the paragraph menu. From there you will be able to pick one style. Nothing defaults to paragraph. An inline formatting menu will show up when you select text. Hit tab to get into that menu. Some elements, such as rich link embeds, images, loading indicators, and error messages may get inserted into the editor. You may navigate to these using the arrow keys inside of the editor and delete them with the delete or backspace key.