CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

spacer spacer

The CLSID / BHO List / Toolbar Master List

Currently 54019 entries and growing...

This is the Master BHO and Toolbar list copyrighted by Tony Klein and CastleCops. For expert assistance, please post here. The information is collected across the Internet by the CastleCops Team. Usage: please leave feedback requesting permission if you are interested in using this data beyond the approved channels.

BHOList - ToolbarList

KEY:
  • "X" - Certified spyware/foistware, or other malware
  • "L" - Legitimate items
  • "O" - Open to debate
  • "?" - Unknown Status
  • "BHO" - Browser Helper Object
  • "TB" - Toolbar
  • "SH" - R3 URL SearchHook
  • "EB" - IE Explorer Bar

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

    Random sampling...
    OBJECT NAMEGUIDSTATUSFILENAMEDESCRIPTION
    BayScribeBHO{5E028439-81C7-4B82-BC74-25156306F532}L BHO bayscribe.dllTranscription productivity tools provided by BayScribe
    {774E69B6-C981-11D6-B1B1-0050DAB9F678}L TB browserToolbar.dllNitroShock
    Gamburg provider {FD29313B-391A-4691-AF33-5A29C4EC6339}X BHO bnsock.dllPassword stealer, a variant of Trojan.Nethell
    bonanza{9B1A393B-ECBD-494A-A2D6-917DA09C7D1A}X BHO bonanza.dllParasite of Korean origin hailing from saveucc.com and detected as Win-Adware/Bonanza
    The bonrep{1277B39C-708C-4A64-9763-B122C18949B0}X TB bonrep.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    BuscaWiki Toolbar{3CD1A41C-BE30-4022-8481-5CC21933A460}O TB BuscaWiki.dll BuscaWiki_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice
    QXK Olive{4EE62603-9BB7-462B-8A8D-E9F4BF11BE49}X BHO boqnrwdmvdr.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    BearShare MediaBar{D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A}O TB SH BSMediaBar.dll BearShare MediaBar
    Editor plugin{4E82568D-484A-4341-8318-358F0813FA45}X BHO bannerm.dll, trip1.dllVariant of the Infostealer.Banker.D trojan
    (no name){00000185-B716-11D3-92F3-00D0B709A7D8}X BHO BHO.0.1.0.***.dll (* = digit), BHO010~*.DLL SmartBrowser adware
    Pop-up Breaker{34A6AC16-45F1-4AAF-97C0-7B57E225734F}L TB bspb.dllPop-up Breaker
    BearSharePersonalization{DD1849EA-8403-4441-8DFF-7575AAE1DC16}O BHO BearSharePersonalizationIE_v1040.dll BearShare MediaBar
    boxedup.com{0127C753-AEEB-47EE-A4E7-F7D3D8B16FF2}O TB boxed.dll Boxedup.com toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. File detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ah
    TBSB02691{FB798D26-C87D-4589-9CD6-5966A81421D9}O BHO barrakeys.dll BarraKeys - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    (no name){AA792B0F-0CBA-4600-BDB5-F80B3B60CF73}X BHO browsel.dllMalware, detected by Kaspersky antivirus as Trojan-Downloader.Win32.Delf.dbo
    Blingo Toolbar Helper{CD860DEB-B4A7-4B80-8B06-4F275E778340}O BHO blingobar.dllBlingo Toolbar
    Flash Module{775B738B-4540-4b16-A1DA-932C402FD8F7}X BHO btasv.dll, ktasr.dll, tns1.dllTrojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ
    {432D8C41-8586-11D8-997D-00C026232EB9}X BHO bvm202.dll DyFuCa/Internet_Optimizer adware variant
    Explorer Band{EFA24E64-B078-11D0-89E4-00C04FC9E26E}L EBBrowseui.dll, Shdocvw.dllWindows Explorer Band
    BHOManager Class{474264BC-9571-47C1-85B9-780F756DC9CE}L BHO BHOManager.dllAstra LoadTest
    Telephony Toolbar Services{431A60E6-675F-4b9f-B3F0-66E0FECC8B34}L BHO BW_Assistant_Enterprise_IE_S.dll, miPA_Corp_IE_S.dll, MIPA_C~*.DLL Broadsoft Telephony Toolbar - also read here
    Betfair Bar{1D62BD48-16F6-4004-A54A-3C41E4955A87}L TB BFTool_4.dllBetFair
    TVbox Helper{087774B9-C132-445F-A476-95368F3F0751}L BHO BHO_TVbox.dll TVbox
    ViewSource Class{D4AF1EB1-20EB-42CE-8CF3-4EBCB7F22ABB}X BHO bp01.dllUnidentified parasite - should you have any information about this file, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    bgrqfetx{E8005042-BE09-4B41-AC50-86C2E6607FD2}X TB bgrqfetx.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    BdSearch{BC207F7D-3E63-4ACA-99B5-FB5F8428200C}X BHO Bdsrhook.dll Baidu/BDSearch aka BDPlugin adware - also see here
    Flash Module{F0CBF6F9-4471-4257-ABC4-BCE4EF2ED5ED}X BHO btasv.dll, ktasr.dllTrojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ
    EyeOnIE{C14393E1-95FF-4DFF-9BE0-EA008D4EF930}X BHO BhoPlugin.dll, BHOPLU~1.DLL, atsldr.dll, actprxy.dllVariant of the TSPY_BANKER.ABM aka Troj.BankSniff.A trojan - see here
    BBNBHO{6C696E52-BF38-49A8-9017-ACE15A794707}L BHO BBN_Sicent.dll Chengdu_Sicent - Software solutions For Internet Cafe
    ToolHelper Class{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}O BHO BIBLEO~1.DLL bible.org_toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    IKatzu Class{EA5159DF-E413-4878-8AE2-D921D41BB942}X BHO bkinjlgw.dll, bkinhtsj.dll, bkin****.dll (*=random char)Parasite, a SafeSurfing adware variant
    QXK Olive{76A98B47-2064-4DEC-8AD8-2517EBC07CC2}X BHO boqnrwdmnow.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    (no name){********-****-****-****-************}X SH bhoserv.dll WareOut malware component, using a random Class ID
    ISO Helper {F6FB52D0-B4AE-ABFC-BED6-3B229BC55056}X BHO bumtcs32.dllVariant of the Trojan-Spy.Win32.Agent.ir trojan
    MSVPS System{C4F4DBBD-4A4C-4B40-97DA-2FE06DBB2901}X BHO bndsrsqo.dll, bndsrwgo.dll Zlob downloader variant, a member of the SmitFraud malware family - detected by Kaspersky antivirus as AdWare.Win32.Agent.ng
    FLYLADY BenefitBar {E19E589B-749F-4641-9ED3-032DEB7A8D92}L TB benefitbar.dllFlyLady BenefitBar
    BaoDian BHO{8F34B293-3BC3-4469-B078-11666A233C73}? BHO BAODIA~1.DLL"Baodian Toolbar", unidentified toolbar of Chinese origin - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    BearFlix MediaBar{0388BA0C-C7F1-4E6A-BD7A-B59623F33363}O TB BearFlixMediaBar.dll BearFlix - optimized for the fast download of video files. Also see here
    Sigma plugin{E913BA95-1ADE-4D25-AC0E-E27BD8E1E43D}X BHO bosect32.dll, tosant32.dll, pusect16a.dll, bapost8x.dll, other semi-random filenames made up from the following fragments: t, p, b, a, o, u, sant, post, sect, 32, 16a, 8xParasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell , IE_Antivirus or similar popups - also see here
    DSClient Browser Helper Object{78839ABD-14B9-11D4-BA68-00104BC6425F}L BHO BHO.dllXerox DocuShare
    Bramjnet Toolbar{7B2F724D-BC63-45DC-8A9E-43E2FC1AEF21}}O TB Bramjnet Toolbar.dll Bramjnet.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    BrowsingProgram{F8EACE56-0AF4-3AE3-6EF8-F8CC39675729}X BHO BrowsingProgram-1.dll, BrowsingProgram-2.dll, BrowsingProgram-3.dll PlayMP3Z.biz adware variant
    TBSB09695{53CCA354-5457-44F8-A5ED-3CECAA55B40B}O BHO breezeworld.dll BreezeWorld Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    Natural Language Navigation, BHO.clsUrlSearch{60E78CAC-E9A7-4302-B9EE-8582EDE22FBF}X BHO BHO001.DLL IGetNet adware
    brush Class{F9D00804-8469-470A-A777-A250D7371C42}X BHO brushy.dllDownloader of Chinese origin, a variant of Trojan.Trafbrush
    Bookmark Dashboard{669695BC-A811-4A9D-8CDF-BA8C795F261D}L TB BDBar.dllBookmark Dashboard
    bbmao Toolbar{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}X TB bbmao_tb_v1_0_pd1002.dll, BBMAO_~1.DLLBbmao Toolbar, parasite of Chinese origin - see here
    Turbo BHO Class{FC7D27FB-CA10-4CE3-B312-8A164671FD03}O BHO bho.dll Centrum.cz_Turbo Toolbar
    DAid Class{95392380-5ED1-476D-B3AB-AC62DD6DAB53}X BHO BASSMD.dllParasite of Chinese origin, detected by Kaspersky antivirus as AdWare.Win32.WSearch.o - also see here
    IEAddIn Class{DF21F1DB-80C6-11D3-9483-B03D0EC10000}L BHO BSIE.dll Identix_Biologon fingerprint recognition software
    UrlHelper Class{6D023EBF-70B8-45A6-9ED5-556515FA0FE4}O BHO BearShareIEHelper.dll BearShare MediaBar
    BillingOrchard{B2940BC7-C6D7-4BCF-A26D-0FDAC4EA90EB}L TB billingorchard.dllBillingOrchard Toolbar
    Image Helper {646782DF-07D9-5816-C17D-32459D631863}X BHO bpmdm32.dllDownloader, a variant of Trojan-Spy.Win32.Agent.ir - also see here
    Explorer Breadcrumbs Helper Class{DB5FC78C-0D12-448B-A0B0-DB0F0E6B67DB}L BHO BCToolbar.dllExplorer Breadcrumbs
    OFK System{F08487B1-AFEC-45CF-B2E9-D05DEE137D22}X BHO blopenvtok.dll Zlob downloader variant, a member of the SmitFraud malware family

    spacer spacer