Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Uncommanded BIOS upgrade

Posted on 2014-01-29
2
344 Views
Last Modified: 2016-11-23
I have a fairly new Dell Latitude E5530 laptop.  It's never been used by anyone.  We had purchased it for a specific project and then that project was cancelled.

I was using it a week or so ago to diagnose our new Internet connection.  We had a new ISP and I was having trouble getting the new connection to work with our firewall.  While talking with the ISP's tech support they asked me to grab a laptop and plug it in directly to the modem...which I did.  I was concerned about connecting it directly to the Internet but I was diligent about not leaving it connected for more than a few minutes at a time.  After each test was completed I would unplug it from the modem while awaiting further instructions from the ISP tech.

At some point, the screen went black.  At first I thought it had shut down due to a depleted battery issue.  But then I could see it came back on and started booting.  The next thing I knew it appeared it was performing a BIOS upgrade.  Now I am concerned about whether it's safe to connect this system to our LAN and expose our network to possible malicious software embedded in the BIOS.

Do some Dell systems perform uncommanded BIOS upgrades???

Should I restore it to factory settings?  I'm not sure doing that will help if the BIOS has been compromised.
0
Comment
Question by:Kerry Wilson
2 Comments
 
LVL 70

Accepted Solution

by:
garycase earned 500 total points
ID: 39819473
Restoring to factory settings won't have any impact on the BIOS.

The downloadable Dell BIOS updates work very nicely -- you just run them & they reboot the system and do the upgrade.

HOWEVER ... they do NOT do this unattended.    If you didn't do it ... and nobody else did either; then something is definitely "fishy."

I'd download the current Dell BIOS for that laptop (A13) -- on a different system;  then copy it to that laptop via a USB flash (NOT via network);  then run the update.   Let it replace the current BIOS -- even if it's already A13 -- and then you can be confident that you have the correct BIOS.

You may then want to do a factory restore, just to ensure the OS is also "pristine".

Did you by any chance allow the factory tech to control the laptop while you were working on it??     If so, it's probably likely that he did the BIOS upgrade and it simply installed the next time you rebooted.    But it certainly won't hurt to be diligent and both re-flash the BIOS and restore the OS to its factory state.
0
 

Author Comment

by:Kerry Wilson
ID: 39820805
A local network admin I know suggested the factory settings resolution.  Thank you for confirming that won't help if the BIOS has been compromised.  I'm sure he didn't think about that and I didn't think to ask him.

The ISP tech was not controlling the laptop.  We were just using it to confirm he could "see" it connected to the modem and could ping it.

I will take your suggestion and re-flash the BIOS using the procedure you outlined.
0

Featured Post

Connect further...control easier

With the ATEN CE624, you can now enjoy a high-quality visual experience powered by HDBaseT technology and the convenience of a single Cat6 cable to transmit uncompressed video with zero latency and multi-streaming for dual-view applications where remote access is required.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Introduction: I have always been fascinated by wireless technology ranging from Infrared to Wimax. Bluetooth comes next to Infrared (in terms of distance of operation) and is commonly used in gadgets like Cellphones, PDAs and Computers for the ex…
Lithium-ion batteries area cornerstone of today's portable electronic devices, and even though they are relied upon heavily, their chemistry and origin are not of common knowledge. This article is about a device on which every smartphone, laptop, an…
Nobody understands Phishing better than an anti-spam company. That’s why we are providing Phishing Awareness Training to our customers. According to a report by Verizon, only 3% of targeted users report malicious emails to management. With compan…
Finds all prime numbers in a range requested and places them in a public primes() array. I've demostrated a template size of 30 (2 * 3 * 5) but larger templates can be built such 210  (2 * 3 * 5 * 7) or 2310  (2 * 3 * 5 * 7 * 11). The larger templa…

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question