Talk:Sony DRM Rootkit: Difference between revisions
Jump to navigation
Jump to search
New page: === Manual Removal === * Must be done from the administrator - Full Control account * Open an MS-DOS prompt and navigate to the path c:\windows\system32\$sys$filesystem * Delete the ARIES.... |
(No difference)
|
Latest revision as of 17:43, 23 August 2010
Manual Removal
- Must be done from the administrator - Full Control account
- Open an MS-DOS prompt and navigate to the path c:\windows\system32\$sys$filesystem
- Delete the ARIES.SYS file in the $sys$filesystem directory and reboot the system
- Open REGEDT32 (not regedit) and right click on the HKEY_LOCAL_MACHINE hive and select PERMISSIONS from the dropdown menu.
- Click on "everyone" and make sure that FULL CONTROL is checked
- Use FIND (Control-F) to locate anything that matches "$sys$"
- First things you'll encounter are under the HKEY_LOCAL_MACHINE files, under the SOFTWARE key, delete them (see below)
- $sys$reference
- ECDDiskProducers
- SONYBMG