CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

spacer spacer

The CLSID / BHO List / Toolbar Master List

Currently 54019 entries and growing...

This is the Master BHO and Toolbar list copyrighted by Tony Klein and CastleCops. For expert assistance, please post here. The information is collected across the Internet by the CastleCops Team. Usage: please leave feedback requesting permission if you are interested in using this data beyond the approved channels.

BHOList - ToolbarList

KEY:
  • "X" - Certified spyware/foistware, or other malware
  • "L" - Legitimate items
  • "O" - Open to debate
  • "?" - Unknown Status
  • "BHO" - Browser Helper Object
  • "TB" - Toolbar
  • "SH" - R3 URL SearchHook
  • "EB" - IE Explorer Bar

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

    Random sampling...
    OBJECT NAMEGUIDSTATUSFILENAMEDESCRIPTION
    The bonsws{3FDA21ED-312C-44DD-9030-A2DC90FD1CCD}X TB bonsws.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    Gamburg provider {FD29313B-391A-4691-AF33-5A29C4EC6339}X BHO bnsock.dllPassword stealer, a variant of Trojan.Nethell
    HTML Source Editor{1E1B2879-88FF-11D2-8D96-D7ACAC95951F}X BHO Bannerads.dll, BANNER~*.DLLTargetnet.com/Focusin.com adware
    Ricerca con lo Sportello 626{BAD84E8A-7F47-4DE4-A523-1F4FDCE7C66F}? TB B.0.1.9.dllUnidentified Toolbar, file located in "Program Files\Ricerca con lo Sportello 626" folder - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    CSBrBHO{96DA5BEE-4ACC-476C-B3EC-54C6730C4293}X BHO brbho.dll, brbho***.dll, (* = random char) Comet_Cursor adware component
    bgrqfetx{29752075-A2DA-4AB7-97E9-C07AC3138561}X TB bgrqfetx.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    Flash Module{87C0BA52-F363-4419-8AC1-D7270A668687}X BHO btask.dll, ktask.dllTrojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ
    BHO Class{CA289809-C3F5-4A4E-8A02-68E497443E38}L BHO BHOAutomatic.dllToolbar4shopping.com FreeSearchingBar
    BHO.ext2{FBE58CC0-D14B-45FE-A717-57BB8247F652}X BHO bho2extn.dll, bho_e.dll, bhoext.dll, other semi-random filenames made up from the following fragments: bho, bho2, ie, ext, extn, _eParasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell , IE_Antivirus or similar popups - also see here
    XBTB04892{63C9A5DB-B6A9-48b9-9BD2-A63803F4A7F3}O BHO bibliahu.dllUnidentified Softomate Toolbar variant - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    BWWebHelper Class{40D06884-38E3-44A6-85AF-1FCF1F42553D}L BHO BridgeWorksWebAgentBHO.dllSentillion's Vergence Product Suite
    UrlHelper Class{6D023EBF-70B8-45A6-9ED5-556515FA0FE4}O BHO BearShareIEHelper.dll BearShare MediaBar
    FLV Helper{06EBC2B0-B41E-B0FC-BED2-3B2A9BC350B6}X BHO bvmtcs32.dllVariant of the Trojan-Spy.Win32.Agent.ir trojan
    BhoApp Class{0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2}X BHO blcs.dllUnidentified parasite - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    {7A431EC4-CC21-4DF7-9DB1-A2CF74C4CC98}L TB bpumToolBand.dllTelstra BigPond toolbar
    XNetIEObj Class{1808648B-3102-4293-8AD3-06AF71D3321B}L BHO Bho.dllAppExpress
    Macromedia Movie{DEFBC2DC-A419-A88C-7866-35824BC53021}X BHO bedtsc32.dllVariant of the Trojan-Spy.Win32.Agent.ir trojan
    bargainchecker.co.uk Toolbar{B7D3E479-CC68-42B5-A338-938ECE35F419}O TB bargaincheckerUK.dll bargainchecker.co.uk_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    (no name){B75F75B8-93F3-429D-FF34-660B206D897A}X BHO TB boln.dll, zolk.dll, zolker***.dll (* = digit)Trojan.StartPage.J
    TBSB01251 {D094D57D-DF73-4DF7-B69F-CC5E5A563039}O BHO barrakeys.dll BarraKeys - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    Msyst Class{D98F0B8E-DD0A-424b-B29F-B023F0C840F1}X BHO BdSvc3.dllParasite of Korean origin detected as Win-Adware/Kwsearch
    Microsoft Explorer{3657900C-451D-8645-8CBA-C735910FA104}X BHO brwctl32.dllBackdoor trojan, detected by Kaspersky antivirus and by CounterSpy as Trojan-Spy.Win32.Agent.ir
    BitComet Helper{3CAE1DC0-86F9-43C1-81F9-69782DE922E3}X BHO bhoFlash.dllUnidentified parasite of Chinese origin - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    Madcow{AE07101B-46D4-4A98-AF68-0333EA26E114}L TB BandObjectLib.dllLa Sapienza MadCow
    (no name){CF5159C2-895C-4188-98D5-748318E55F76}X BHO bho.dll, bgBHO.dllDownloader and browser hijacker of Chinese origin connecting to zj-soft.cn and redirecting searches to www.sosodui.cn/search.aspx - detected by AntiVir as TR/ATRAPS.Gen
    CIEPageHelper Object{A6F42CAD-2559-48DF-AF30-89E480AF5DFA}X BHO Bho.dll IEPageHelper adware - also see here
    MSN Search{24A1E1CC-4393-941E-B765-2264A695D4E3}X BHO browsearch.dllUnidentified parasite - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    biObj Class{000006B1-19B5-414A-849F-2A3C64AE6939}X BHO bi.dll Transponder adware variant
    UrlHelper Class{74322BF9-DF26-493f-B0DA-6D2FC5E6429E}O BHO BearShareIEHelper.dll BearShare MediaBar
    Freeware FileBar{84BC9DE6-2283-47EC-8375-1773F6FF9633}L TB BrowserCoolBar.dllFreeware Filebar
    Bonjour{9999A076-A9E2-4C99-8A2B-632FC9429223}L EBBonjourExplorerPlugin.dll Bonjour_for_Windows
    XBTB03429{B0A39B31-9B35-4ed3-973B-610845F3CA0B}O BHO betonusa.dll BetonUSA Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    Browster BrwIEConnector{908A31E8-2A6E-4736-8E8A-AAF00C4AE38F}L BHO Browster.dll, brobeta.dllBrowster
    Flash Module{0245D364-5F52-44ac-B6EB-7BAD6E3D7EF2}X BHO btasv.dll, ktasr.dllTrojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ
    QXK Olive{4F7764DC-5B4A-44B9-B629-E889E542C545}X BHO boqnrwdmqed.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    Platrium{D53E4ACF-EDF5-4071-903B-F84B64FC1EA2}X TB BRNstIE.dll Platrium - Collection of programs (games toolbar, sidesearch add-on, & weather program) that is supported by desktop pop-up advertising
    MSVPS System{C4F4DBBD-4A4C-4B40-97DA-2FE06DBB2901}X BHO bndsrsqo.dll, bndsrwgo.dll Zlob downloader variant, a member of the SmitFraud malware family - detected by Kaspersky antivirus as AdWare.Win32.Agent.ng
    OFK System{E2D31F0C-78A4-4713-A7E4-6F4A50525D4B}X BHO blopenvtrm.dll Zlob downloader variant, a member of the SmitFraud malware family
    Turbo BHO Class{FC7D27FB-CA10-4CE3-B312-8A164671FD03}O BHO bho.dll Centrum.cz_Turbo Toolbar
    {B7FDA31E-A16D-47F9-B374-78A866AC813D}L TB BonusBar.dllBonusBar
    Gamburg provider{F832BACA-4BD5-4eee-B420-4A85F0794030}X BHO berg2.dll, tinox1.dllPassword stealer, a variant of Trojan.Nethell
    XBTP06823 Class{9C4A57DA-A677-4f03-86C6-401BBC67136B}O BHO bijbelbar.dll, BIJBEL~*.DLL BijbelBar Bible Toolbar - - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. File detected by Kaspersky antivirus as AdWare.Win32.Mostofate.j
    VBA Object{0A421735-763D-2C51-953F-8FC802E4D138}X BHO brmdlg32.dllBackdoor trojan, a variant of Trojan-Spy.Win32.Agent.ir
    BDEX System{0B1B0622-6874-4751-B866-87C5CA1B93B9}X BHO blopenvwsd.dll Zlob downloader variant, a member of the SmitFraud malware family
    TBSB01827 {F547F70A-7719-4962-8A86-EE4A9C051B65}O BHO benetsafe.dll, BENETS~1.DLL BeNetSafe_Search_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    butootdApp Class{E240F5DA-F634-42FA-A878-5EC4730B41DC}X BHO butootd.dllUnidentified parasite of Korean origin connecting to youazone.com - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    BearShare Media Bar{E49CE899-CD83-4841-8CC9-6E284D7978D0}O TB BEARSMBR.DLL BearShare MediaBar
    BearFlix MediaBar{0388BA0C-C7F1-4E6A-BD7A-B59623F33363}O TB BearFlixMediaBar.dll BearFlix - optimized for the fast download of video files. Also see here
    Flash Module{66ADC876-890F-44d2-BBD6-390C52599B94}X BHO btask.dll, ktask.dllTrojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ
    MSVPS System, OFK System{2A82CA08-45C7-4D20-997D-35AEED4B130F}X BHO blopenvtrk.dll Zlob downloader variant, a member of the SmitFraud malware family
    ???{8B4429E0-81FD-4963-A60F-BEDF4AC88FBB}X TB bomulmodule.dllParasite of Korean origin detected as Win32.Spyware.Bomultoolbar
    XBTB03641 {BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}O BHO brokerbin.dll, BROKER~1.DLL BrokerBin.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    BndDrive2 BHO Class{8B27CC68-110C-46a9-80D3-F3107DE6EB98}X BHO BndDrive2.dll, BndDrive3.dll, BndDrive4.dll"Hyperlinks Rotator" aka ISMonitor adware hailing from zredirector.com - installs a "Internet Speed Monitor" sidebar - detected by Kaspersky antivirus as AdWare.Win32.Agent.ay
    bsh Class{6F28DDF6-172F-4944-B7BA-02EC30DFFD57}X BHO bssofth.dllBarSearch Sidebar, a parasite of Korean origin hailing from barsearch.co.kr and detected as W-32/Adware.BHO.Barsearch
    Explorer Breadcrumbs Helper Class{DB5FC78C-0D12-448B-A0B0-DB0F0E6B67DB}L BHO BCToolbar.dllExplorer Breadcrumbs

    spacer spacer