Jump to content

Is this a false positive - trojan.bho


Recommended Posts

I recently just purchased a new laptop two weeks ago with Windows 7. I went through Windows update and installed the latest updates, downloaded AVG antivirus, SpyBot Search&Destroy and Malwarebytes as recommended by a friend. I also downloaded realplayerSP Gold. I did not make any other changes to my system and have barely even surfed the web so far with it.

I ran a scan with Malwarebytes and it turned up seven registry keys infected and one file infected with Trojan.BHO. My question is: How in the world can I be infected with this as I don't see anything that I have done to get this malware? I don't want to touch any of these things yet as they are listed in my registry and I am not touching that until I get some advice. My computer system seems to run fine (on the surface) even though these things are listed. Thanks for anybody's help.

I have attached my log below.

Malwarebytes' Anti-Malware 1.42

Database version: 3418

Windows 6.1.7600

Internet Explorer 8.0.7600.16385

12/23/2009 10:04:57 PM

mbam-log-2009-12-23 (22-04-49).txt

Scan type: Quick Scan

Objects scanned: 91078

Time elapsed: 1 minute(s), 18 second(s)

Memory Processes Infected: 0

Memory Modules Infected: 0

Registry Keys Infected: 7

Registry Values Infected: 0

Registry Data Items Infected: 0

Folders Infected: 0

Files Infected: 1

Memory Processes Infected:

(No malicious items detected)

Memory Modules Infected:

(No malicious items detected)

Registry Keys Infected:

HKEY_CLASSES_ROOT\kt_bho.KettleBho (Trojan.BHO) -> No action taken.

HKEY_CLASSES_ROOT\TypeLib\{86676e13-d6d8-4652-9fcf-f2047f1fb000} (Trojan.BHO) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} (Trojan.BHO) -> No action taken.

HKEY_CLASSES_ROOT\CLSID\{9517fb66-3dcf-44eb-8ce5-1a0f8a058d12} (Trojan.BHO) -> No action taken.

Registry Values Infected:

(No malicious items detected)

Registry Data Items Infected:

(No malicious items detected)

Folders Infected:

(No malicious items detected)

Files Infected:

C:\ProgramData\Partner\Partner.dll (Trojan.BHO) -> No action taken.

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.