Originally Posted by PeteTheToad
Oops , sorry. My fault , i didn't read LGW's post good enough. I thought she posted the removal tool for the wareout infection , but i see now that she posted a link for the manuall removal instructions.I am not sure what you mean with the "fixwareout log." I did everything it said to do in the Wareout fix
Originally Posted by PeteTheToad
It sounds like it morphed and renamed itself , good job on spotting that.Edit: Also, I didn't find O4 - HKLM\..\Run: [dmhbx.exe] C:\WINDOWS\system32\dmhbx.exe but I found a very similar entry and deleted it. When I booted up before, the thing was trying to gain access.
And it is gone , youre hjt log is clean. But the reason i said i didn't think you run the fixwareout removal tool is because there is still an entry in youre Ewido log from wareout. But as i said above , my mistake. To remove that:
Please download FixWareout from one of these sites:
http://downloads.subratam.org/Fixwareout.exe
http://swandog46.geekstogo.com/Fixwareout.exe
Save it to your desktop and run it. Click Next, then Install, then make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your system may take longer than usual to load; this is normal.
When your system reboots, follow the prompts. Afterwards, Hijack This will launch. Close Hijack This, and click OK to proceed.
At the end of the fix, you may need to restart your computer again.
Finally, please post the contents of the logfile C:\fixwareout\report.txt
(thats the one i meant , lol)









And good to hear everything runs ok again.












Linear Mode

