Jump to content

"Unable to load Anti-Rootkit DDA Driver"


Recommended Posts

"...This error may be caused by rootkit activity. Do you want to reboot the system and attempt to install the driver?"

 

Hi! I have installed the pro version of Malwarebytes on many computers but one has been giving this error ever since I deployed the program onto it.

 

It doesn't matter what option I choose (yes/no) the error comes back at some point. I can't see any other obvious malware on the system.

 

Can I get a few pointers please?

 

Many thanks in advance!

Link to post
Share on other sites

Hi:

 

Welcome.
 
The first thing to try for that error is a system restart (reboot) -- I assume you may have already done that.
 
The next questions that come to mind:

>>Is the hard drive encrypted (Truecrypt, or BitLocker, or another 3rd-party encryption method)?

>>Do you have ARK (anti-rootkit) scanning enabled in the Settings > Detection and Protection, and in advanced scheduled scan settings? 

If so, please try disabling ARK and see if that resolves the error.

(ARK is NOT supported on drives encrypted with any method other than Truecrypt -- so you'll need to disable ARK. There have been isolated reports of issues with TC drives, as well. So, at least for troubleshooting, it might help to disable ARK on a TC drive, too.)

 
It can be a sign of a rootkit. 
 
If rebooting and the ARK/encryption explanation don't work or don't apply, the routine troubleshooting steps are here:

If all else fails, then we might need to refer you to another section of the forum for some deeper investigations of that system, to exclude the possibility of a hidden rootkit.

 

Thank You,

Link to post
Share on other sites

  • 3 months later...

Hi, I know it's been a while but I wonder if I could revisit this thread as I've been neglecting this issue!

 

I tried all of the above but the same problem remains.

 

 I'm talking to the guy who owns the computer tomorrow and I thought i'd try another licence just to rule that out. Anything else I can try?

 

Cheers!!

Link to post
Share on other sites

Here are a couple of things to try:

  • Please carefully follow the steps in this pinned topic to uninstall your current version of MBAM and reinstall the latest build - MBAM Clean Removal Process 2x
  • If that does not correct the issue, then please read the following and post back attached to your next reply the 3 requested logs - Diagnostic Logs (the 3 logs are: FRST.txt, Addition.txt and CheckResults.txt)
  • NOTE: There is an FAQ section with valuable information located here - Common Questions, Issues, and their Solutions
Alternatively, you may wish to try the new public Release Candidate build of 2.0.3. It does fix many different issues for some users.

Information and download link are located here: Malwarebytes Anti-Malware 2.0.3 Release Candidate 1

Known issues are located here: Malwarebytes Anti-Malware 2.0.3 RC 1 - Known Issues

If you do, it would probably be a good idea to cleanly upgrade, following the basic sequence located here: MBAM Clean Removal Process 2x (you would substitute the version 2.0.3 RC1 installer instead of the 2.0.2 installer at the appropriate step).

If the clean upgrade doesn't resolve your issue, it would greatly help us to see the diagnostic logs requested above, in step #2.

Thanks,

Link to post
Share on other sites

I decided that upgrading to the latest 2.0.3 was a good enough step toward fixing the problem seeing as it has a lot of bug fixes.

 

I used the latest version of the uninstaller on the old installation and reinstalled the new one. Will let you know if it re-offends and get those logs for you.

 

Thanks for the help so far. 

Link to post
Share on other sites

  • 4 weeks later...

Hi, @lanl:
 
There are a few different possible explanations for this error.
 
If a system reboot doesn't solve it, please do the following:

  •  Please read the following pinned topic to collect the 3 requested logs - Diagnostic Logs (the 3 logs are: FRST.txt, Addition.txt and CheckResults.txt)
  • Then, please start a NEW, SEPARATE topic using this clickable cjfj.png button. Please attach the 3 logs to your new post.

The staff and experts will be able to more easily provide both you and the OP with individual help to get you both up and running.

Thanks for your patience and understanding,

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.