0

I suspect that there is a malicious certificate added in my browser's certificate store. I mean Certificate Authority certificate.

How can I remove it in Chrome and Firefox?

If I remove my current browsers, then re-install them, will the old certificate store get removed?

1
  • Chrome uses the certificate store that exists on the operating system. Firefox uses it's own certificate store, manually removing the malicious certificate yourself, is the best way to solve your problem.
    – Ramhound
    Commented Aug 22, 2019 at 12:30

1 Answer 1

0

As Ramhound mentioned, Chrome works off Windows' certificate store, so here is a guide on how to look for potentially malicious certificates installed on Windows. This mainly involves downloading Sigcheck from the Sysinternals suite and running it.

Type the following command at the command prompt and press Enter: sigcheck -tv Sigcheck will download a list of trusted certificates from Microsoft and compare it to the certificates installed on your computer. If there are any certificates on your computer that aren’t on the “Microsoft Certificate Trust List”, you’ll see them listed here. If everything is good and you don’t have any rogue certificates, you’ll see the “No certificates found” message.

Firefox does indeed have its own store, and it's tied to the profile, so there's no need to uninstall. You just need a fresh profile if you want to reset it. Alternatively, below is how you can find the certificates to review manually.

Firefox Certificate store

You must log in to answer this question.

Not the answer you're looking for? Browse other questions tagged .