The Notebook Review forums were hosted by TechTarget, who shut down them down on January 31, 2022. This static read-only archive was pulled by NBR forum users between January 20 and January 31, 2022, in an effort to make sure that the valuable technical information that had been posted on the forums is preserved. For current discussions, many NBR forum users moved over to NotebookTalk.net after the shutdown.
Problems? See this thread at archive.org.

    AVG reported rootkit or false positive?

    Discussion in 'Lenovo' started by rsinmadrid, Nov 26, 2010.

  1. rsinmadrid

    rsinmadrid Notebook Enthusiast

    Reputations:
    0
    Messages:
    44
    Likes Received:
    0
    Trophy Points:
    15
    I installed AVG 11 (free version) today and ran a rootkit scan. It flagged C:\WINDOWS\System32\DLA\DLAIFS_M.SYS. It looks like this is a driver for the SONIC CD/DVD burner that came with the machine, ThinkPad T61, XP-SP3.

    AVG's FAQ says that sometimes legitimate drivers use "rootkit-like techniques." OK, so does anyone know whether this driver is one of them? What's the best way to sort this out?

    Thanks.
     
  2. Tinderbox (UK)

    Tinderbox (UK) BAKED BEAN KING

    Reputations:
    4,745
    Messages:
    8,513
    Likes Received:
    3,823
    Trophy Points:
    431
  3. rsinmadrid

    rsinmadrid Notebook Enthusiast

    Reputations:
    0
    Messages:
    44
    Likes Received:
    0
    Trophy Points:
    15
    I sent it to AVG for now. There are other reports of the same file raising alerts, but I haven't seen any definitive response yet.
     
  4. rsinmadrid

    rsinmadrid Notebook Enthusiast

    Reputations:
    0
    Messages:
    44
    Likes Received:
    0
    Trophy Points:
    15
    AVG has concluded that the driver is not malicious, but recommended looking for an updated version. Neither Lenovo nor Sonic seem to have anything more current, so it looks like the best thing to do is simply ignore the warning.

    FYI.
     
  5. Renee

    Renee Notebook Virtuoso

    Reputations:
    610
    Messages:
    2,645
    Likes Received:
    0
    Trophy Points:
    55
    There could be a problem in the software or the threshold the is required to complain also.

    Renee
     
  6. rsinmadrid

    rsinmadrid Notebook Enthusiast

    Reputations:
    0
    Messages:
    44
    Likes Received:
    0
    Trophy Points:
    15
    I assume you mean the AVG software. That's my guess as well. The rootkit detection stuff is new in AVG and probably needs some fine tuning. I didn't lose any sleep over it, really, but thought it prudent to follow up.