We received the file COMBHO.DLL and detected that COMBHO.DLL is not good.
COMBHO.DLL is Adware. You should remove the file COMBHO.DLL.
Kill the process COMBHO.DLL and remove COMBHO.DLL from Windows.
Malware Analysis of COMBHO.DLL
Full path on a computer: %SysDir%\ComBHO.dll
Detected by UnHackMe:
COMBHO.DLL
Default location: %SysDir%\ComBHO.dll
Removal Results: Success
Number of reboot: 1
COMBHO.DLL is known as:
Adware.BHO, Trojan.BHO.ogl, Adware.CPush, Trojan.BHO.AMN (A), Adware.Sogou, Adware.CPush.rem, Win32.BHO.OGL, W32.BHO.OGL
COMBHO.DLL hash:
- MD5: 4a4e0850a3a7ee923727ebb7c0350db7
The file is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
How to quickly detect COMBHO.DLL presence?
Registry:
- HKLM\Software\Classes\CLSID\{45C43BA8-14A8-4FD2-989B-1A099132B191}\InprocServer32\: “%SysDir%\ComBHO.dll”
- HKLM\Software\Classes\CLSID\{D98B310B-C226-4a6d-88A7-CCD6BB9CCADB}\InprocServer32\: “%SysDir%\diufw.dll”
Folders:
- %SysDir%\Log
Files:
- %SysDir%\drivers\config.ini
- %SysDir%\drivers\services.exe
- %SysDir%\ComBHO.dll
- %SysDir%\config.ini
- %SysDir%\diufw.dll
- %SysDir%\EnUnKey.dll
- %SysDir%\Log\Install.log
- %SysDir%\Stat.dll
- %SysDir%\wughw.exe