| OBJECT NAME | GUID | STATUS | FILENAME | DESCRIPTION |
|---|
| BDBHOSL2.CBHOSL2 | {B3A8699C-A04B-4E73-B983-369DE4AC23ED} | X BHO | bhosl2.dll | Search hijacker of Chinese origin, a BaiduBar aka BDSearch variant hailing from popocy.com |
| CKillPopup Class | {6D106759-3F98-4026-A46B-8E34DE30DA80} | L BHO | BZHelper.dll | BannerZapper |
| XBTP05119 | {CBF9B378-AB8D-4b12-A88A-CA751210481E} | X BHO | bysoo.dll | Bysoo Toolbar, a Softomate Toolbar variant of Chinese origin hailing from bysoo.com and detected by AntiVir as ADSPY/BysooToolba.A |
| Reactivator | {6C31790D-1EDF-4b05-83DC-925B3A8E2318} | L BHO | Bascalie.dll | Bascalie_Toolbar - powered by AsesoftNet |
| BTGrabObj Class | {00000000-F09C-02B4-6EC2-AD0300000000} | X BHO | BTGrab.dll | Transponder aka BetterInternet adware variant |
| &BOS Toolbar | {CC9853D8-4772-4F51-ABC5-7225CBE342A5} | ? TB | BOSTOO~1.DLL | Internet Explorer BOS Toolbar - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| CitiEU Shared browser Helper Object | {0748BCEA-3708-4842-A65F-7AA6E56EBCD9} | L BHO | BhoCitEU.dll | OrbisCom Controlled Payment Numbers |
| Editor plugin | {9AEE9C0D-FD38-45fc-B09A-BA9B6B614780} | X BHO | barka.dll | Variant of the Infostealer.Banker.D trojan |
| QXK Olive | {5B3D037D-A38C-4087-9358-592FFE95F744} | X BHO | boqnrwdmqgp.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
|
| Billeo | {465E08E7-F005-4389-980F-1D8764B3486C} | L BHO | billeo.dll | Billeo |
| pdfMachine | {0E1230F8-EA50-42A9-983C-E22ABC2EED3F} | L TB | bgstb.dll | pdfMachine |
| &SearchInWeb Bar | {552EAAE2-C510-11D8-A251-000244638831} | X TB | bandact.dll | SearchInWeb.com toolbar |
| Project1.IEbottom | {E8FC1DDE-9DAA-4ECB-ADCB-61DEB21A6317} | X BHO | bttnsearch.dll | Parasite of Korean origin detected as Adware.EasyPot
|
| OFK System | {F08487B1-AFEC-45CF-B2E9-D05DEE137D22} | X BHO | blopenvtok.dll | Zlob downloader variant, a member of the SmitFraud malware family |
| IE Site-Rating | {49E0E0F0-5C30-11D4-945D-000000000000} | ? BHO | bho.dll | Unidentified browser plugin, file present in the system32 folder - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| QXK Olive | {37D00CD6-4FF0-4004-9A5B-D0D777B09EEF} | X BHO | boqnrwdmmfv.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| TBSB01950 | {8B4FB27C-D675-4DB1-B858-064B20AAC587} | O BHO | Bramjnet Toolbar.dll | Bramjnet.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| butootdApp Class | {E240F5DA-F634-42FA-A878-5EC4730B41DC} | X BHO | butootd.dll | Unidentified parasite of Korean origin connecting to youazone.com - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
|
| BearShareMediaBar BHO | {E49CE891-CD83-4841-8CC9-6E284D7978D0} | O BHO | BEARSMBR.DLL | BearShare MediaBar |
| {8F644576-314F-11D4-8531-00C04F033A35} | L TB | BARRANAVEGACION.DLL | barra de navegación |
| Editor plugin | {0A8CBF36-653D-48a4-B26F-559D81521FC0} | X BHO | barty.dll | Variant of the Infostealer.Banker.D trojan |
| &BitácoraBarra | {3F5A62E2-51F2-11D3-A075-CC7364CAE42B} | L TB | BFBarra.dll | Bitá coraBarra |
| {0AAF602E-72A1-45FE-BAB1-06971E07EAA2} | X TB | Bmeb.dll | i-Lookup adware variant |
| 51?? | {D271A289-57EB-4D0E-9131-A0CD25D4D1F8} | X BHO | browsewmzero.dll | Downloader trojan of Chinese origin, detected by Kaspersky antivirus as Trojan-Clicker.Win32.BHO.f - also see here |
| BonusManager | {EC724CE5-D029-46A2-BAA7-7F88E154DFA0} | O TB | BonusSpy.dll | BonusManager |
| Explorer Helper | {194A85AF-3A38-5A36-A3CA-32A59D63A163} | X BHO | brfmct32.dll | Variant of the Trojan-Spy.Win32.Agent.ir trojan |
| Microsoft AntiSpy | {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} | X BHO | bhocmp.dll, bhohelper.dll | Unidentified parasite - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| (no name) | {F89CEB6F-335E-43EC-BD6B-7F72D7801158 } | X BHO | BrowserHelper.dll, win_srv.dll | Troj/BOH-A trojan |
| BDEX System | {3CB0F6B4-C808-4C2F-9DEB-3E5D5E5ED1FD} | X BHO | blopenvsdt.dll | Zlob downloader variant, a member of the SmitFraud malware family |
| (no name) | {B40A6610-1D16-11D3-80B2-005004994DA2} | X BHO | Bpieclient.dll, BPIECL~*.DLL | iChoose browser enhancement |
| BitComet Search | {E7A829CC-671F-4C3D-B590-8C0AEA72E6B2} | L EB | BitCometBHO.dll, BitCometBHO_*.*.*.*.dll, BitCometBHO_*.*.*.**.dll (* = digit) | BitComet Toolbar |
| Image Helper | {32031715-0682-3851-A63F-56C30BE4BF3B} | X BHO | bspctl32.dll | Trojan, detected by DrWeb antivirus as BackDoor.IRC.Sdbot.917 - a variant of Trojan-Spy.Win32.Agent.ir |
| QXK Olive | {698930F0-B033-46DC-82F8-8B6DD6BF84C3} | X BHO | boqnrwdmtpe.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| CExtension Object | {0019C3E2-DD48-4A6D-ABCD-8D32436323D9} | X BHO | bxxs5.dll, cfgmgr51.dll, cfgmgr52.dll, msbk32.dll, cfg32p.dll | BookedSpace adware variant |
| Google Module | {FC3DDA79-D1D4-47e4-A38E-27C8C1FEAB5E} | X BHO | bagetionwll.dll, rozmchild.dll | Password stealer, identified as Troj/Ambler-B |
| (no name) | {********-****-****-****-************} | X BHO | bootvidd.dll | WebPrefix adware variant |
| BndDrive2 BHO Class | {8C6D5A56-791E-4fe8-9D64-81781FA15D68} | X BHO | BndDrive6.dll | "Hyperlinks Rotator" aka ISMonitor adware hailing from zredirector.com - installs a "Internet Speed Monitor" sidebar - file detected by Kaspersky antivirus as AdWare.Win32.AdBand.b |
| SrchHook Class | {6E1BC898-505A-44f4-BC88-BCE43016AC96} | X BHO SH | BarSea.dll, SeaBar.dll | Parasite of Korean origin detected as Adware.BarSea
|
| XBTP07847 Class | {9B87D17F-BC96-443f-90C8-B0EB6767A54D} | O BHO | bonusbar.dll | BonusBar, unidentified Softomate Toolbar - should you have any information about this application, such as its homepage, its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| (no name) | {046167AA-53C2-4576-B362-291D9E852269} | X BHO | BBDown.dll | Unidentified parasite of Chinese origin - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| Barungo Bar | {BFB5F154-9212-46F3-B547-AC6106030A54} | O TB | barungo.dll | Barungo search toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice |
| {8151A854-F9E0-46F2-A1DC-72093BCA624F} | L BHO | Banneradfilter.dll | Banner Ad Filter |
| {AB77A7BF-8C5B-486A-B547-F9AD2B41A904} | L BHO | BROWSERHELPER.DLL | Evernet |
| BDhelp Class | {0CE14E5E-9B8C-4A33-B207-38B6DBE7278D} | X BHO | Bdhelper.dll, **********_****.dll (* = char or digit) | Baidu/BDSearch aka BDPlugin adware - also see here |
| Berm | {CF5C1D61-B8CC-11D9-AED1-004033A00168} | O TB | berm.dll | Berm_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.SearchIt.o |
| Barnes eCurrency Exchange PowerBar | {77FBF9B8-1D37-4FF2-9CED-192D8E3ABA6F} | L TB | Barnes_Toolbar_05_30_05.dll | Barnes eCurrency Exchange PowerBar |
| Flash Module | {6B1A0BFB-3B26-49c5-B699-F5692C673597} | X BHO | btaskv.dll, ktaskr.dll | Password stealer, a variant of Trojan.Nethell |
| Bucknell Bar | {4A773E21-FDD7-4E36-8254-6A44ED247D82} | L TB | BUBar.dll | Bucknell_University Library toolbar |
| SearchbarCash | {69555BE2-9A78-11d2-BA91-00600827878D} | X TB EB | br.dll | TinyBar Adware |
| Explorer Helper | {626482AF-17D0-5DFC-C12D-32A58E631863} | X BHO | btlmct32.dll | Downloader, a variant of Trojan-Spy.Win32.Agent.ir |
| barra Orange | {4E7BD74F-2B8D-469E-85B8-B36DA69ABB2F} | L BHO TB | BARRAO~1.DLL, barraorange.dll | barra Orange |
| (no name) | {5F551A91-F949-49C6-812F-1783D14F8D01} | X BHO | baisrc3.dll | Unidentified parasite of Chinese origin - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| BeInSync Toolbar | {1AC85D88-F777-471B-B541-48450C23F34D} | L TB | BeInSync_Toolbar.dll | BeInSync Toolbar |
| BIGLOBEツールバー(&B | {DD7EDCBC-F49A-4008-AA47-74D852489985} | L TB | biglobe.dll | Biglobe.ne.jp toolbar |
| BLin IeDoor Class | {A7934164-66CE-4B01-AD28-A42F734E448D} | X BHO | blinplug.dll | BLIN movie download/viewing software |