Jump to content

Malwarebytes

Trojan.BHO.H


3 replies to this topic

#1
Cohort

    New Member

  • Members
  • Pip
  • 5 posts
Hi, Can anyone help. I have a computer that was very infected with Malware Defender 2009. Most of the problems have now gone, but 3 items remain.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{db3e49c6-91a0-4394-9bff-9447f56b49b1} (Trojan.BHO.H) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{db3e49c6-91a0-4394-9bff-9447f56b49b1} (Trojan.BHO.H) -> Delete on reboot.

c:\windows\system32\plkdgia.dll (Trojan.BHO.H) -> Delete on reboot.

MalwareBytes reboots the computer, all 3 items remain on the computer. I have tried scanning in safe mode, same result. I have tried removing the registry entries, but it wont let me. I have also tried booting from the windows CD, going to recovery console and deleteing the file, but cant even find it there.

What next?

#2
GT500

    Mostly Cantankerous

  • Trusted Advisors
  • PipPipPipPipPipPip
  • 5,533 posts
  • Gender:Male
  • Location:Fortville, IN
Please follow these instructions (skipping any steps you are unable to complete) for posting in our Malware Removal - HijackThis Logs forum. If you cannot follow any of those steps, then please create a new topic in that forum explaining what happened when you tried to run each of the tools in the instructions, and the expert who helps you will be able to suggest steps to take to get the tools working.

Quote

For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world...

#3
JMJFOK

    New Member

  • Members
  • Pip
  • 1 posts

View PostCohort, on Mar 12 2009, 01:10 PM, said:

Hi, Can anyone help. I have a computer that was very infected with Malware Defender 2009. Most of the problems have now gone, but 3 items remain.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{db3e49c6-91a0-4394-9bff-9447f56b49b1} (Trojan.BHO.H) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{db3e49c6-91a0-4394-9bff-9447f56b49b1} (Trojan.BHO.H) -> Delete on reboot.

c:\windows\system32\plkdgia.dll (Trojan.BHO.H) -> Delete on reboot.

MalwareBytes reboots the computer, all 3 items remain on the computer. I have tried scanning in safe mode, same result. I have tried removing the registry entries, but it wont let me. I have also tried booting from the windows CD, going to recovery console and deleteing the file, but cant even find it there.

What next?
Same problem here - Can anyone help us?

#4
AdvancedSetup

    Forum Deity

  • Administrators
  • PipPipPipPipPipPip
  • 22,575 posts
  • Gender:Male
  • Location:US
Yes we can help you, just not in this forum. Please read the ENTIRE post below and someone will help you as soon as they can.


Hello and Welcome to Malwarebytes.org

If you're having Malware related issues with your computer that you're unable to resolve.
  • Please do not post any logs in the General forum. We do not work on any logs posted in the General forum.
  • Please do not install any software or use any removal/scanning tool except for those you're requested to run by the Helper that will assist you.
  • Using these other tools often makes the cleanup task more difficult and time consuming.
  • If you have already submitted for assistance at one of the other support sites on the Internet then you should not post a new log here, you should stay working with the Helper from that site until the issue is resolved.
  • Do not assume you're clean because you don't see something in the logs. Please wait until the person assisting you provides feedback.
  • There are often many others that require asistance as well, so please be patient. If no one has responded within 48 hours then please go ahead and post a request for review
  • NOTE: If for some reason you're unable to run some or any of the tools in the first link, then skip that step and move on to the next one. If you can't even run HijackThis, then just proceed and post a NEW topic as shown in the second link describing your issues and someone will assist you as soon as they can.

Ron Lewis
Manager, Online Support

Posted Image

Follow us: Twitter, Become a fan: Facebook

If you've posted to the HJT forum and it has been over 5 days without a response please send a Private Message asking for assistance.





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Follow Us