Question:
I have a Trojan horse in my system32\drivers\adf.sys driver. How do I get rid of it?
mangazan
2010-01-23 23:11:03 UTC
I have AVG free software, and it keeps telling me I have a trojan virus in WINDOWS\system32\drivers\adf.sys. I know there is one, because every time I open the drivers folder, the warning shows up again. It's hurting my computer too, because it just crashed a few minutes ago. I need to get rid of it, but I can't delete the driver because it's crucial to windows, and I can't get in the driver to delete the trojan. What am I supposed to do? Is there any way to get rid of this harmful virus? If anyone can help, please do.

Details:
file name: C:\WINDOWS\system32\drivers\adf.sys
detection name: Trojan horse BackDoor.Generic12AAVT
Five answers:
S.Gomez
2010-01-23 23:19:53 UTC
download and install malwarebytes from malwarebytes.org



But when scanning for parasites do it in safe mode....
?
2010-01-23 23:28:18 UTC
Download doctor web cureit to get rid of this trojan

http://www.freedrweb.com/cureit/?lng=en
2010-01-23 23:35:42 UTC
Since you have AVG Antivirus security program at system...

Open the "Start" menu and then choose the "Restart" button. Wait for the logo of your computer's manufacturer to pop up on the screen, and then press the "F8" button repeatedly until a new menu appears.



Starting the Computer in Safe Mode

Highlight the menu entry that says "Safe Mode," and then press the "Enter" key. Wait for the computer to finish loading, and then open the "Start" menu again. Right-click on "My Computer," and then click the "Properties" button.



Click the button labeled "System Protection." Access the "System Restore" tab, and then click the "Turn Off System Restore" button at the bottom of the window.



Close the window, and then open the anti-virus program. Run the anti-virus program's update feature by clicking on the "Update Now" button. Disconnect your PC from its Internet connection either by turning off your wireless router or by unplugging your Ethernet cable.

 

Scanning for Virus Software

Wait for the update process to finish, and then click "Computer Scanner." Click on the option to scan every drive and device connected to your computer.



Click the check boxes next to each of the Generic2 Trojan virus entries that the anti-virus program discovered. Click "Remove Selected Problems."



Turn the "System Restore" feature back on and the re-connect your computer to its Internet connection. Restart the computer to finish removing the Backdoor Generic2 Trojan infection from your machine.
2010-01-24 02:04:54 UTC
Who says its crucial to windows.There are only very few hits on google, unless you made a typo and meant afd.sys.

This is a rootkit, download Combofix,make sure you install the recovery console then run CF



http://www.bleepingcomputer.com/combofix/how-to-use-combofix
turcer
2010-01-23 23:42:57 UTC
whats the name of the virus copy and paste on google you can get some information about that virus and if you lucky you will see some one else already have same problem and fix it with certain prog. just google it first found the name of the virus


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...