View Full Version : Found a hidden driver drivef
billywilliam
Aug 22, 2010, 10:33 AM
"C:\Windows\System32\Drivers\alwnnqc6.SYS";"Hidden driver";"Object is hidden"
Found this when I did a rootkit scan with avg
Access denied when I tried to delete.
Found it in "drive f"
Restored comp back 1 week seemed to solve the prob
Did anothes scan and it was back
seahwk83
Aug 22, 2010, 03:04 PM
Boot into safe mode and then delete it there if it will let you.
InfoJunkie4Life
Aug 23, 2010, 07:46 AM
Rootkits are tricky. You can try using combofix. They're problem is they get into some odd places and aren't always easy to get rid of. Many companies, when faced with rootkits, are forced to do re-installations. Even when a rootkit is gone, it may still be hiding somewhere and just inactive.
billywilliam
Aug 23, 2010, 10:17 AM
Boot into safe mode and then delete it there if it will let you.
Thanks I did as you said deleted some of the stuff I downloaded in the last week or so did another scan and looks like the prob is solved
Billy
billywilliam
Aug 23, 2010, 10:18 AM
Rootkits are tricky. You can try using combofix. They're problem is they get into some odd places and aren't always easy to get rid of. Many companies, when faced with rootkits, are forced to do re-installations. Even when a rootkit is gone, it may still be hiding somewhere and just inactive.
Looks like I got rid of it in safe mode
Here,s hoping anyway.
Thought I was going to have to do a factory settings restore
Ty
Billy