England Forum - UK Forum
 

Go Back   England Forum - UK Forum > Computers and Technology > Developers Forum > C++ Forum

 

 


Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 10-01-2008
Peon
 
Join Date: Jun 2008
Posts: 4
Default Hey. I just did a rootkit scan and found

this-->C:\WINDOWS\System32\Drivers\a1hf9ok8.SYS? It says its a "hidden driver file" Ive googled and yahooed it but nothing! Ive used spybot and super-antispyware and my usual avg, but they dont show it thou! Does anyone know if its good or bad? Also is it safe to remove, if its bad? Thanx in advance.
Good point niall. I do have a daemon tool programme on my pc..thats a thought!
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Sponsored Links

  #2 (permalink)  
Old 10-01-2008
Peon
 
Join Date: Apr 2008
Posts: 7
Default

What scanner found this.Try a proper root kit scanner and then post back.Try rootkit revealer and avira anti rootkit tool from the download list
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 10-01-2008
Peon
 
Join Date: Sep 2008
Posts: 4
Default

Your system 32 drivers are essential to your PC running - do not delete it.
scans arent infallible in picking up the right or wrong things so ...
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #4 (permalink)  
Old 10-01-2008
Peon
 
Join Date: Oct 2008
Posts: 2
Default

yeah if you have no idea best thing is to leave it.
do you have any reason to suspect your computer has any virus or spyware?

personally what I do is ctrl+alt+del look at the programs on the task manager and if anything looks odd (using up 100% capacity and its not a program I'm using, or has obvious names of unwanted things ie. myzango.exe) then ill shut off the program and see if my system improves, crashes or the thing pops up again.
then i search the name of the executable on google.
but most viruses attach themselves to important things like shost.exe which is one of the many things that are found from the sys32 folder and you can't deleate them as you need them.


>>>> are you using daemon tools your programs could have installed it in order to work?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #5 (permalink)  
Old 10-01-2008
Peon
 
Join Date: Jun 2008
Posts: 16
Default

www.threatfire.com

Run a full scan, it will pick it up.If it's a rootkit, it isn't good.You will be able to quarantine it with threatfire or delete it,it will recommend an action.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT. The time now is 03:44 PM.


Powered by vBulletin® Version 3.6.10
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0 RC7
Sedo - Buy and Sell Domain Names and Websites project info: englanddebate.co.uk Statistics for project englanddebate.co.uk etracker® web controlling instead of log file analysis

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183