Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
This is one heavy-duty bug! It deleted my NAV and will not allow me to use any other antivirus, spyware, or malware program. I cannot boot in Safe mode. I cannot do a System Restore. I have tried several on-line scanners, but all have been rendered useless by the bug on my computer. As of this time, I haven't really even been able to identify it, let alone deal with it.
I have 1 clue- I downloaded "Trojan Remover" and ran the scan. I got this message:
"The Windows service appears to be hidden using Rootkit techniques: C:\Documents and Settings\HP_Administrator\Application Data\drivers\wfsintwq.sys
The program is loaded by the following (hidden) registry key: HKLM\SYSTEM\CurrentControlSet\Services\srosa\"
I am further instructed to restart the computer, after which the hidden program will supposedly be disabled and the scan can continue. However, upon reboot and a new scan, I get the same scan results.
Do any of the experts here have a sense for what this might be or how I can accurately discover it's identity?
Thanks.

Well, never mind. UnHackMe is my new best friend!! It identified the problem files, and my comp now seems to be free of the bug.

great news! I use unhackme all the time now for the past while!
Some HELP in posting on Computing.net plus free progs and instructions Cheers

what is the problem now?
Some HELP in posting on Computing.net plus free progs and instructions Cheers

Oh, it was just a lot more extensive than I thought. It had infected over 400 files and the UnHackMe only dealt with a couple of the infections. I've cleaned it up now with NOD32 (because the NAV couldn't find it!), but it's left a devastating mess on my computer- many system files were deleted during the cleanup process, and there are all kinds of applications that aren't working properly, probably because of missing or corrupt files.

![]() |
![]() |
![]() |
| Login or Register to Reply | |
| Login | Register |
| Ads by Google |