bdmgkol.dll

  • Thread starter Thread starter Computer Man
  • Start date Start date
C

Computer Man

Hi there. I'm running Win XP Home. Whenever I turn on my computer, after I've
signed in, I keep getting this error message "system32\bdmgkol.dll" this file
cannot be found. My computer runs ok but can anyone tell me how to get rid of
this message? And what does it refer to? I've had a look on the Net and its
suppose to belong to earlier Win OS.
 
Computer Man said:
Hi there. I'm running Win XP Home. Whenever I turn on my computer, after I've
signed in, I keep getting this error message "system32\bdmgkol.dll" this file
cannot be found. My computer runs ok but can anyone tell me how to get rid of
this message? And what does it refer to? I've had a look on the Net and its
suppose to belong to earlier Win OS.


Did you run an antivirus or antispyware scan recently on this computer? The
behavior you're describing is usually what happens when an antivirus or
antispyware program identifies a file as malware, deletes the file, but doesn't
clean up the mechanism that launches the malware at startup.

Here's a program from Microsoft that will help you stop the error messages.

AutoRuns for Windows v9.13
http://technet.microsoft.com/en-us/sysinternals/bb963902.aspx

Once you've downloaded and extracted the files, run autoruns.exe.
Look on the Everything tab for an entry that lists bdmgkol.dll in the Image path
column.
Right click on that entry and select Search Online from the menu.
Odds are that you'll come up with an empty search. This pretty much confirms
that it was some type of malware that your scan deleted.
Uncheck the item.
Restart your computer. If you no longer see the error message, you can go back
and delete the entry in Autoruns.

Just to be on the safe side, you might consider taking steps to make sure the
system is malware free. Here's a site with general instructions on cleaning a
computer.

Courtesy of Malke Routh, MS-MVP
http://www.elephantboycomputers.com/page2.html#Viruses_Malware

Good luck

Nepatsfan
 
Computer Man said:
Hi there. I'm running Win XP Home. Whenever I turn on my computer, after I've
signed in, I keep getting this error message "system32\bdmgkol.dll" this file
cannot be found. My computer runs ok but can anyone tell me how to get rid of
this message? And what does it refer to? I've had a look on the Net and its
suppose to belong to earlier Win OS.

Your Anti-virus may be removed the viral infection but still in the Root
system and on the Registry, please perform the cleaning steps to make sure
nothing lurking in the background to revive the infestation back to action!.

Unexplained computer behaviour may be caused by deceptive software
http://support.microsoft.com/kb/827315

Go through these Cleaning steps:
1... First, try to clean up your caches, Internet files and delete cookies
by doing this:
Click Start >> Control Panel >> Double click Network and Internet
Connections >> Double click Internet Options.
On the IE properties windows you will see these Tabs:
General | Security | Privacy | Content | Connections | Programs |
Advanced
Under General Tab clear your History, Internet Files and Cookies.
Then click on Advanced tab and scroll down to under the Browsing Option:
[&] Browsing
[ ] Enable Third-Party browser extensions (Req Rest) uncheck this box.
Then click on Programs Tab and click Manage Add-Ons and Disable all non
Verified Add-Ons (You should Renable them later one-by-one and see the
culprit and update it or remove it.
How to manage Add-Ons:
http://support.microsoft.com/kb/883256
Scan for malware from here:
SuperAntispyware - Free
http://www.superantispyware.com/superantispywarefreevspro.html
RootkitRevealer v1.71
By Bryce Cogswell and Mark Russinovich
http://www.microsoft.com/technet/sysinternals/Security/RootkitRevealer.mspx


Run a scan from here on-line:
http://security.symantec.com/sscv6/default.asp?langid=ie&venid=sym
http://www3.ca.com/securityadvisor/virusinfo/scan.aspx
Download Avast Cleaner (offline scanner) from here:
http://www.avast.com/eng/avast-virus-cleaner.html

You can download this tool "AutoRuns for Windows"
http://technet.microsoft.com/en-us/sysinternals/bb963902.aspx
And remove the entry from here:

Locate this key:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run = look in
the right pane/window and remove the entry for it
"C:\Windows\System32\bdmgkol.dll".

Run disk cleanup and defrag in safe mode. Then run this command:
sfc /scannow

HTH.
nass
 
Thanks Nass for the help. I'll read it and give it a go. Can you help me with
this problem? I've found some strange Chinse writing in mscofig. I've
unticked the box, (there were someother things in there that I did not want
to run at start up that I've unticked as well). The problem is that when I
start up my PC this box comes up telling me to revert to "normal" mode. But
when I do this it puts all the ticks back. What can I do?
--
Thanks Man


nass said:
Computer Man said:
Hi there. I'm running Win XP Home. Whenever I turn on my computer, after I've
signed in, I keep getting this error message "system32\bdmgkol.dll" this file
cannot be found. My computer runs ok but can anyone tell me how to get rid of
this message? And what does it refer to? I've had a look on the Net and its
suppose to belong to earlier Win OS.

Your Anti-virus may be removed the viral infection but still in the Root
system and on the Registry, please perform the cleaning steps to make sure
nothing lurking in the background to revive the infestation back to action!.

Unexplained computer behaviour may be caused by deceptive software
http://support.microsoft.com/kb/827315

Go through these Cleaning steps:
1... First, try to clean up your caches, Internet files and delete cookies
by doing this:
Click Start >> Control Panel >> Double click Network and Internet
Connections >> Double click Internet Options.
On the IE properties windows you will see these Tabs:
General | Security | Privacy | Content | Connections | Programs |
Advanced
Under General Tab clear your History, Internet Files and Cookies.
Then click on Advanced tab and scroll down to under the Browsing Option:
[&] Browsing
[ ] Enable Third-Party browser extensions (Req Rest) uncheck this box.
Then click on Programs Tab and click Manage Add-Ons and Disable all non
Verified Add-Ons (You should Renable them later one-by-one and see the
culprit and update it or remove it.
How to manage Add-Ons:
http://support.microsoft.com/kb/883256
Scan for malware from here:
SuperAntispyware - Free
http://www.superantispyware.com/superantispywarefreevspro.html
RootkitRevealer v1.71
By Bryce Cogswell and Mark Russinovich
http://www.microsoft.com/technet/sysinternals/Security/RootkitRevealer.mspx


Run a scan from here on-line:
http://security.symantec.com/sscv6/default.asp?langid=ie&venid=sym
http://www3.ca.com/securityadvisor/virusinfo/scan.aspx
Download Avast Cleaner (offline scanner) from here:
http://www.avast.com/eng/avast-virus-cleaner.html

You can download this tool "AutoRuns for Windows"
http://technet.microsoft.com/en-us/sysinternals/bb963902.aspx
And remove the entry from here:

Locate this key:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run = look in
the right pane/window and remove the entry for it
"C:\Windows\System32\bdmgkol.dll".

Run disk cleanup and defrag in safe mode. Then run this command:
sfc /scannow

HTH.
nass
 
Computer Man said:
Thanks Nass for the help. I'll read it and give it a go. Can you help me with
this problem? I've found some strange Chinse writing in mscofig. I've
unticked the box, (there were someother things in there that I did not want
to run at start up that I've unticked as well). The problem is that when I
start up my PC this box comes up telling me to revert to "normal" mode. But
when I do this it puts all the ticks back. What can I do?

I think if you have a canon printer that installed a language installation
folder it will show you the Chines entry on the msconfig!.
But since this strange error message which indicate infection I will look
into this further, please download the BHO cleanup and the hijackrthis , send
me both the BOH log and the Hijackthis Log file for analysis.

Also it will be much help if you mention your printer and your Anti-virus in
your next message for the above guess about the chines character entry in the
startup.

Download this app:
http://www.comodo.com/boclean/boclean.html

Download the Hijackthis and run a scan then please send me the log at the
address below:
(http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php)
Can you please send me a copy at (e-mail address removed) , remove
the obvious to email me.
Let us know your progress.
nass
 
Computer said:
Thanks Nass for the help. I'll read it and give it a go. Can you help me with
this problem? I've found some strange Chinese writing in msconfig. I've
unticked the box, (there were some other things in there that I did not want
to run at start up that I've unticked as well). The problem is that when I
start up my PC this box comes up telling me to revert to "normal" mode. But
when I do this it puts all the ticks back. What can I do?

Don't go back to Normal Mode. Check the box to "not warn you" again.
 
Back
Top