Ask Me Help Desk

Ask Me Help Desk (https://www.askmehelpdesk.com/forum.php)
-   Spyware, Viruses, etc. (https://www.askmehelpdesk.com/forumdisplay.php?f=477)
-   -   Found a hidden driver drivef (https://www.askmehelpdesk.com/showthread.php?t=500632)

  • Aug 22, 2010, 10:33 AM
    billywilliam
    Found a hidden driver drivef
    "C:\Windows\System32\Drivers\alwnnqc6.SYS";"Hi dden driver";"Object is hidden"
    Found this when I did a rootkit scan with avg
    Access denied when I tried to delete.
    Found it in "drive f"
    Restored comp back 1 week seemed to solve the prob
    Did anothes scan and it was back
  • Aug 22, 2010, 03:04 PM
    seahwk83

    Boot into safe mode and then delete it there if it will let you.
  • Aug 23, 2010, 07:46 AM
    InfoJunkie4Life

    Rootkits are tricky. You can try using combofix. They're problem is they get into some odd places and aren't always easy to get rid of. Many companies, when faced with rootkits, are forced to do re-installations. Even when a rootkit is gone, it may still be hiding somewhere and just inactive.
  • Aug 23, 2010, 10:17 AM
    billywilliam
    Quote:

    Originally Posted by seahwk83 View Post
    Boot into safe mode and then delete it there if it will let you.

    Thanks I did as you said deleted some of the stuff I downloaded in the last week or so did another scan and looks like the prob is solved

    Billy
  • Aug 23, 2010, 10:18 AM
    billywilliam
    Quote:

    Originally Posted by InfoJunkie4Life View Post
    Rootkits are tricky. You can try using combofix. They're problem is they get into some odd places and aren't always easy to get rid of. Many companies, when faced with rootkits, are forced to do re-installations. Even when a rootkit is gone, it may still be hiding somewhere and just inactive.

    Looks like I got rid of it in safe mode
    Here,s hoping anyway.
    Thought I was going to have to do a factory settings restore
    Ty

    Billy

  • All times are GMT -7. The time now is 12:17 PM.