| OBJECT NAME | GUID | STATUS | FILENAME | DESCRIPTION |
|---|
| BayScribeBHO | {5E028439-81C7-4B82-BC74-25156306F532} | L BHO | bayscribe.dll | Transcription productivity tools provided by BayScribe |
| {774E69B6-C981-11D6-B1B1-0050DAB9F678} | L TB | browserToolbar.dll | NitroShock |
| Gamburg provider | {FD29313B-391A-4691-AF33-5A29C4EC6339} | X BHO | bnsock.dll | Password stealer, a variant of Trojan.Nethell |
| bonanza | {9B1A393B-ECBD-494A-A2D6-917DA09C7D1A} | X BHO | bonanza.dll | Parasite of Korean origin hailing from saveucc.com and detected as Win-Adware/Bonanza |
| The bonrep | {1277B39C-708C-4A64-9763-B122C18949B0} | X TB | bonrep.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| BuscaWiki Toolbar | {3CD1A41C-BE30-4022-8481-5CC21933A460} | O TB | BuscaWiki.dll | BuscaWiki_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice |
| QXK Olive | {4EE62603-9BB7-462B-8A8D-E9F4BF11BE49} | X BHO | boqnrwdmvdr.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
|
| BearShare MediaBar | {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} | O TB SH | BSMediaBar.dll | BearShare MediaBar |
| Editor plugin | {4E82568D-484A-4341-8318-358F0813FA45} | X BHO | bannerm.dll, trip1.dll | Variant of the Infostealer.Banker.D trojan |
| (no name) | {00000185-B716-11D3-92F3-00D0B709A7D8} | X BHO | BHO.0.1.0.***.dll (* = digit), BHO010~*.DLL | SmartBrowser adware |
| Pop-up Breaker | {34A6AC16-45F1-4AAF-97C0-7B57E225734F} | L TB | bspb.dll | Pop-up Breaker |
| BearSharePersonalization | {DD1849EA-8403-4441-8DFF-7575AAE1DC16} | O BHO | BearSharePersonalizationIE_v1040.dll | BearShare MediaBar |
| boxedup.com | {0127C753-AEEB-47EE-A4E7-F7D3D8B16FF2} | O TB | boxed.dll | Boxedup.com toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. File detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ah |
| TBSB02691 | {FB798D26-C87D-4589-9CD6-5966A81421D9} | O BHO | barrakeys.dll | BarraKeys - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| (no name) | {AA792B0F-0CBA-4600-BDB5-F80B3B60CF73} | X BHO | browsel.dll | Malware, detected by Kaspersky antivirus as Trojan-Downloader.Win32.Delf.dbo |
| Blingo Toolbar Helper | {CD860DEB-B4A7-4B80-8B06-4F275E778340} | O BHO | blingobar.dll | Blingo Toolbar |
| Flash Module | {775B738B-4540-4b16-A1DA-932C402FD8F7} | X BHO | btasv.dll, ktasr.dll, tns1.dll | Trojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ |
| {432D8C41-8586-11D8-997D-00C026232EB9} | X BHO | bvm202.dll | DyFuCa/Internet_Optimizer adware variant |
| Explorer Band | {EFA24E64-B078-11D0-89E4-00C04FC9E26E} | L EB | Browseui.dll, Shdocvw.dll | Windows Explorer Band |
| BHOManager Class | {474264BC-9571-47C1-85B9-780F756DC9CE} | L BHO | BHOManager.dll | Astra LoadTest |
| Telephony Toolbar Services | {431A60E6-675F-4b9f-B3F0-66E0FECC8B34} | L BHO | BW_Assistant_Enterprise_IE_S.dll, miPA_Corp_IE_S.dll, MIPA_C~*.DLL | Broadsoft Telephony Toolbar - also read here |
| Betfair Bar | {1D62BD48-16F6-4004-A54A-3C41E4955A87} | L TB | BFTool_4.dll | BetFair |
| TVbox Helper | {087774B9-C132-445F-A476-95368F3F0751} | L BHO | BHO_TVbox.dll | TVbox |
| ViewSource Class | {D4AF1EB1-20EB-42CE-8CF3-4EBCB7F22ABB} | X BHO | bp01.dll | Unidentified parasite - should you have any information about this file, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| bgrqfetx | {E8005042-BE09-4B41-AC50-86C2E6607FD2} | X TB | bgrqfetx.dll | Parasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
|
| BdSearch | {BC207F7D-3E63-4ACA-99B5-FB5F8428200C} | X BHO | Bdsrhook.dll | Baidu/BDSearch aka BDPlugin adware - also see here |
| Flash Module | {F0CBF6F9-4471-4257-ABC4-BCE4EF2ED5ED} | X BHO | btasv.dll, ktasr.dll | Trojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ |
| EyeOnIE | {C14393E1-95FF-4DFF-9BE0-EA008D4EF930} | X BHO | BhoPlugin.dll, BHOPLU~1.DLL, atsldr.dll, actprxy.dll | Variant of the TSPY_BANKER.ABM aka Troj.BankSniff.A trojan - see here |
| BBNBHO | {6C696E52-BF38-49A8-9017-ACE15A794707} | L BHO | BBN_Sicent.dll | Chengdu_Sicent - Software solutions For Internet Cafe |
| ToolHelper Class | {BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408} | O BHO | BIBLEO~1.DLL | bible.org_toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| IKatzu Class | {EA5159DF-E413-4878-8AE2-D921D41BB942} | X BHO | bkinjlgw.dll, bkinhtsj.dll, bkin****.dll (*=random char) | Parasite, a SafeSurfing adware variant |
| QXK Olive | {76A98B47-2064-4DEC-8AD8-2517EBC07CC2} | X BHO | boqnrwdmnow.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
|
| (no name) | {********-****-****-****-************} | X SH | bhoserv.dll | WareOut malware component, using a random Class ID |
| ISO Helper | {F6FB52D0-B4AE-ABFC-BED6-3B229BC55056} | X BHO | bumtcs32.dll | Variant of the Trojan-Spy.Win32.Agent.ir trojan |
| MSVPS System | {C4F4DBBD-4A4C-4B40-97DA-2FE06DBB2901} | X BHO | bndsrsqo.dll, bndsrwgo.dll | Zlob downloader variant, a member of the SmitFraud malware family - detected by Kaspersky antivirus as AdWare.Win32.Agent.ng |
| FLYLADY BenefitBar | {E19E589B-749F-4641-9ED3-032DEB7A8D92} | L TB | benefitbar.dll | FlyLady BenefitBar |
| BaoDian BHO | {8F34B293-3BC3-4469-B078-11666A233C73} | ? BHO | BAODIA~1.DLL | "Baodian Toolbar", unidentified toolbar of Chinese origin - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| BearFlix MediaBar | {0388BA0C-C7F1-4E6A-BD7A-B59623F33363} | O TB | BearFlixMediaBar.dll | BearFlix - optimized for the fast download of video files.
Also see here |
| Sigma plugin | {E913BA95-1ADE-4D25-AC0E-E27BD8E1E43D} | X BHO | bosect32.dll, tosant32.dll, pusect16a.dll, bapost8x.dll, other semi-random filenames made up from the following fragments: t, p, b, a, o, u, sant, post, sect, 32, 16a, 8x | Parasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell , IE_Antivirus or similar popups - also see here
|
| DSClient Browser Helper Object | {78839ABD-14B9-11D4-BA68-00104BC6425F} | L BHO | BHO.dll | Xerox DocuShare |
| Bramjnet Toolbar | {7B2F724D-BC63-45DC-8A9E-43E2FC1AEF21}} | O TB | Bramjnet Toolbar.dll | Bramjnet.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| BrowsingProgram | {F8EACE56-0AF4-3AE3-6EF8-F8CC39675729} | X BHO | BrowsingProgram-1.dll, BrowsingProgram-2.dll, BrowsingProgram-3.dll | PlayMP3Z.biz adware variant |
| TBSB09695 | {53CCA354-5457-44F8-A5ED-3CECAA55B40B} | O BHO | breezeworld.dll | BreezeWorld Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| Natural Language Navigation, BHO.clsUrlSearch | {60E78CAC-E9A7-4302-B9EE-8582EDE22FBF} | X BHO | BHO001.DLL | IGetNet adware |
| brush Class | {F9D00804-8469-470A-A777-A250D7371C42} | X BHO | brushy.dll | Downloader of Chinese origin, a variant of Trojan.Trafbrush |
| Bookmark Dashboard | {669695BC-A811-4A9D-8CDF-BA8C795F261D} | L TB | BDBar.dll | Bookmark Dashboard |
| bbmao Toolbar | {6AE02E1C-8859-4F57-9097-5A55A56A4CAF} | X TB | bbmao_tb_v1_0_pd1002.dll, BBMAO_~1.DLL | Bbmao Toolbar, parasite of Chinese origin - see here |
| Turbo BHO Class | {FC7D27FB-CA10-4CE3-B312-8A164671FD03} | O BHO | bho.dll | Centrum.cz_Turbo Toolbar |
| DAid Class | {95392380-5ED1-476D-B3AB-AC62DD6DAB53} | X BHO | BASSMD.dll | Parasite of Chinese origin, detected by Kaspersky antivirus as AdWare.Win32.WSearch.o - also see here |
| IEAddIn Class | {DF21F1DB-80C6-11D3-9483-B03D0EC10000} | L BHO | BSIE.dll | Identix_Biologon fingerprint recognition software |
| UrlHelper Class | {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} | O BHO | BearShareIEHelper.dll | BearShare MediaBar |
| BillingOrchard | {B2940BC7-C6D7-4BCF-A26D-0FDAC4EA90EB} | L TB | billingorchard.dll | BillingOrchard Toolbar |
| Image Helper | {646782DF-07D9-5816-C17D-32459D631863} | X BHO | bpmdm32.dll | Downloader, a variant of Trojan-Spy.Win32.Agent.ir - also see here |
| Explorer Breadcrumbs Helper Class | {DB5FC78C-0D12-448B-A0B0-DB0F0E6B67DB} | L BHO | BCToolbar.dll | Explorer Breadcrumbs |
| OFK System | {F08487B1-AFEC-45CF-B2E9-D05DEE137D22} | X BHO | blopenvtok.dll | Zlob downloader variant, a member of the SmitFraud malware family |