Both PDO and MysqlI provide protection against injections simply because they both take advantage of prepared queries. Personally I (and apparently many people here as well) prefer PDO since it is very clear and straight-forward in its use. The manual shows very clear and concise examples of how to use it.
I don't know what you are thinking about when you say 'regular PHP just as good'. The two don't relate.