Skip to main content

New version of malware uses ‘God Mode’ to hide from Windows users

new version of malware uses god mode to hide from users
Image used with permission by copyright holder
Many PC users will have a ‘God Mode’ folder sitting on their desktop — it’s a neat Windows tweak that allows immediate access to a whole host of different controls that come in handy every now and again. However, new information from McAfee suggests that malware could be taking advantage of the same functionality.

Dynamer is a piece of malware that’s been around for several years, but a new version riffs on “God Mode” to hide away on your system. A few devious tricks have been used in an attempt to prevent users from getting rid of the problem.

The malware installs itself in the AppData directory, creating a registry run key value so that it can survive a reboot. However, when users click on the folder created by Dynamer during this process, they’ll simply be redirected to an unrelated area of the control panel.

Worse yet, the folder uses a ‘com4’ string in its name to gain some extra protection from Windows. This tricks the OS into treating the folder like a device, which prevents the user from deleting it as they might normally, according to a report from Extreme Tech.

However, Dynamer’s defenses are thankfully not completely impervious. Users can rid themselves of the malware by first ending the associated process via Task Manager, before opening up a command prompt and entering the following string, specially crafted by the security experts at McAfee:

rd “\\.\%appdata%\com4.{241D7C96-F8BF-4F85-B01F-E2B043341A4B}” /S /Q

That should remove the offending malware from your computer and return your system to its previous state. This fix will be a huge help for anyone who has been targeted by Dynamer, but anyone already protected by McAfee products can safely ignore it — according to the company, its antimalware defenses won’t be fooled by this particular trick.

Editors' Recommendations

Brad Jones
Former Digital Trends Contributor
Brad is an English-born writer currently splitting his time between Edinburgh and Pennsylvania. You can find him on Twitter…
New Windows 11 update improves gaming in windowed mode
A laptop sits on a desk with a Windows 11 wallpaper.

Microsoft has just announced that it will be bringing new optimizations to windowed gaming, making it easier to multitask while playing without suffering from drops in frames per second (fps.)

The update is coming to Windows 11, bringing with it a new setting. Users will be allowed to opt in and optimize their windowed gaming experience as a result.

Read more
This tool is everything your family needs to stay safe online
Two women video calling on their laptop with dog nearby protected by McAfee.

Virtually everything we do today, from work to communication, is connected to the internet in one way or another. This connectivity offers a lot of convenience, but it's also rife with dangers -- and sometimes, a basic anti-virus software isn't enough. The good news is that McAfee Total Protection has everything you need to keep yourself and your family safe, both at home and on the go, and offers broad-spectrum defense against malicious software, hackers, identity thieves, snoops, and other digital threats. Here's what it can do.

The McAfee brand name is almost synonymous with antivirus software and has been a household name in the industry for decades. McAfee Total Protection takes a more complete approach than simple antivirus software, though: It's a complete, all-in-one protection suite that shields you and your family not just against viruses and other malicious software but also against unwanted surveillance, identity theft, unsafe connections, and more. It's great for families, and we also named it the best antivirus software for businesses because of the wide range of protection that it offers for multiple users.

Read more
HiveNightmare is a nasty new Windows bug. Here’s how to protect yourself
Windows 11 on a tablet.

A new bug called ‘HiveNightmare’ reportedly lets anyone with local or remote access to your PC take it over. This is a fairly new and serious flaw in the latest versions of Windows 10, as well as in Windows 11, which is still being tested in the Windows Insiders program.

Using malware, the hacker can gain complete access to your PC without needing an administrative password. The bug originates from an alleged change in the recent versions of Windows 10 and 11 that grants unauthorized users the privilege to access the Security Account Manager (SAM). The SAM is a database that contains both usernames and passwords for local accounts on the operating system.

Read more