| OBJECT NAME | GUID | STATUS | FILENAME | DESCRIPTION |
|---|
| The bonsws | {3FDA21ED-312C-44DD-9030-A2DC90FD1CCD} | X TB | bonsws.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| Gamburg provider | {FD29313B-391A-4691-AF33-5A29C4EC6339} | X BHO | bnsock.dll | Password stealer, a variant of Trojan.Nethell |
| HTML Source Editor | {1E1B2879-88FF-11D2-8D96-D7ACAC95951F} | X BHO | Bannerads.dll, BANNER~*.DLL | Targetnet.com/Focusin.com adware |
| Ricerca con lo Sportello 626 | {BAD84E8A-7F47-4DE4-A523-1F4FDCE7C66F} | ? TB | B.0.1.9.dll | Unidentified Toolbar, file located in "Program Files\Ricerca con lo Sportello 626" folder - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| CSBrBHO | {96DA5BEE-4ACC-476C-B3EC-54C6730C4293} | X BHO | brbho.dll, brbho***.dll, (* = random char) | Comet_Cursor adware component |
| bgrqfetx | {29752075-A2DA-4AB7-97E9-C07AC3138561} | X TB | bgrqfetx.dll | Parasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
|
| Flash Module | {87C0BA52-F363-4419-8AC1-D7270A668687} | X BHO | btask.dll, ktask.dll | Trojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ |
| BHO Class | {CA289809-C3F5-4A4E-8A02-68E497443E38} | L BHO | BHOAutomatic.dll | Toolbar4shopping.com FreeSearchingBar |
| BHO.ext2 | {FBE58CC0-D14B-45FE-A717-57BB8247F652} | X BHO | bho2extn.dll, bho_e.dll, bhoext.dll, other semi-random filenames made up from the following fragments: bho, bho2, ie, ext, extn, _e | Parasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell , IE_Antivirus or similar popups - also see here
|
| XBTB04892 | {63C9A5DB-B6A9-48b9-9BD2-A63803F4A7F3} | O BHO | bibliahu.dll | Unidentified Softomate Toolbar variant - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| BWWebHelper Class | {40D06884-38E3-44A6-85AF-1FCF1F42553D} | L BHO | BridgeWorksWebAgentBHO.dll | Sentillion's Vergence Product Suite |
| UrlHelper Class | {6D023EBF-70B8-45A6-9ED5-556515FA0FE4} | O BHO | BearShareIEHelper.dll | BearShare MediaBar |
| FLV Helper | {06EBC2B0-B41E-B0FC-BED2-3B2A9BC350B6} | X BHO | bvmtcs32.dll | Variant of the Trojan-Spy.Win32.Agent.ir trojan |
| BhoApp Class | {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} | X BHO | blcs.dll | Unidentified parasite - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| {7A431EC4-CC21-4DF7-9DB1-A2CF74C4CC98} | L TB | bpumToolBand.dll | Telstra BigPond toolbar |
| XNetIEObj Class | {1808648B-3102-4293-8AD3-06AF71D3321B} | L BHO | Bho.dll | AppExpress |
| Macromedia Movie | {DEFBC2DC-A419-A88C-7866-35824BC53021} | X BHO | bedtsc32.dll | Variant of the Trojan-Spy.Win32.Agent.ir trojan |
| bargainchecker.co.uk Toolbar | {B7D3E479-CC68-42B5-A338-938ECE35F419} | O TB | bargaincheckerUK.dll | bargainchecker.co.uk_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| (no name) | {B75F75B8-93F3-429D-FF34-660B206D897A} | X BHO TB | boln.dll, zolk.dll, zolker***.dll (* = digit) | Trojan.StartPage.J |
| TBSB01251 | {D094D57D-DF73-4DF7-B69F-CC5E5A563039} | O BHO | barrakeys.dll | BarraKeys - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| Msyst Class | {D98F0B8E-DD0A-424b-B29F-B023F0C840F1} | X BHO | BdSvc3.dll | Parasite of Korean origin detected as Win-Adware/Kwsearch |
| Microsoft Explorer | {3657900C-451D-8645-8CBA-C735910FA104} | X BHO | brwctl32.dll | Backdoor trojan, detected by Kaspersky antivirus and by CounterSpy as Trojan-Spy.Win32.Agent.ir |
| BitComet Helper | {3CAE1DC0-86F9-43C1-81F9-69782DE922E3} | X BHO | bhoFlash.dll | Unidentified parasite of Chinese origin - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| Madcow | {AE07101B-46D4-4A98-AF68-0333EA26E114} | L TB | BandObjectLib.dll | La Sapienza MadCow |
| (no name) | {CF5159C2-895C-4188-98D5-748318E55F76} | X BHO | bho.dll, bgBHO.dll | Downloader and browser hijacker of Chinese origin connecting to zj-soft.cn and redirecting searches to www.sosodui.cn/search.aspx - detected by AntiVir as TR/ATRAPS.Gen |
| CIEPageHelper Object | {A6F42CAD-2559-48DF-AF30-89E480AF5DFA} | X BHO | Bho.dll | IEPageHelper adware - also see here |
| MSN Search | {24A1E1CC-4393-941E-B765-2264A695D4E3} | X BHO | browsearch.dll | Unidentified parasite - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
|
| biObj Class | {000006B1-19B5-414A-849F-2A3C64AE6939} | X BHO | bi.dll | Transponder adware variant |
| UrlHelper Class | {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} | O BHO | BearShareIEHelper.dll | BearShare MediaBar |
| Freeware FileBar | {84BC9DE6-2283-47EC-8375-1773F6FF9633} | L TB | BrowserCoolBar.dll | Freeware Filebar |
| Bonjour | {9999A076-A9E2-4C99-8A2B-632FC9429223} | L EB | BonjourExplorerPlugin.dll | Bonjour_for_Windows |
| XBTB03429 | {B0A39B31-9B35-4ed3-973B-610845F3CA0B} | O BHO | betonusa.dll | BetonUSA Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| Browster BrwIEConnector | {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} | L BHO | Browster.dll, brobeta.dll | Browster |
| Flash Module | {0245D364-5F52-44ac-B6EB-7BAD6E3D7EF2} | X BHO | btasv.dll, ktasr.dll | Trojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ |
| QXK Olive | {4F7764DC-5B4A-44B9-B629-E889E542C545} | X BHO | boqnrwdmqed.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
|
| Platrium | {D53E4ACF-EDF5-4071-903B-F84B64FC1EA2} | X TB | BRNstIE.dll | Platrium - Collection of programs (games toolbar, sidesearch add-on, & weather program) that is supported by desktop pop-up advertising |
| MSVPS System | {C4F4DBBD-4A4C-4B40-97DA-2FE06DBB2901} | X BHO | bndsrsqo.dll, bndsrwgo.dll | Zlob downloader variant, a member of the SmitFraud malware family - detected by Kaspersky antivirus as AdWare.Win32.Agent.ng |
| OFK System | {E2D31F0C-78A4-4713-A7E4-6F4A50525D4B} | X BHO | blopenvtrm.dll | Zlob downloader variant, a member of the SmitFraud malware family |
| Turbo BHO Class | {FC7D27FB-CA10-4CE3-B312-8A164671FD03} | O BHO | bho.dll | Centrum.cz_Turbo Toolbar |
| {B7FDA31E-A16D-47F9-B374-78A866AC813D} | L TB | BonusBar.dll | BonusBar |
| Gamburg provider | {F832BACA-4BD5-4eee-B420-4A85F0794030} | X BHO | berg2.dll, tinox1.dll | Password stealer, a variant of Trojan.Nethell |
| XBTP06823 Class | {9C4A57DA-A677-4f03-86C6-401BBC67136B} | O BHO | bijbelbar.dll, BIJBEL~*.DLL | BijbelBar Bible Toolbar - - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. File detected by Kaspersky antivirus as AdWare.Win32.Mostofate.j |
| VBA Object | {0A421735-763D-2C51-953F-8FC802E4D138} | X BHO | brmdlg32.dll | Backdoor trojan, a variant of Trojan-Spy.Win32.Agent.ir |
| BDEX System | {0B1B0622-6874-4751-B866-87C5CA1B93B9} | X BHO | blopenvwsd.dll | Zlob downloader variant, a member of the SmitFraud malware family |
| TBSB01827 | {F547F70A-7719-4962-8A86-EE4A9C051B65} | O BHO | benetsafe.dll, BENETS~1.DLL | BeNetSafe_Search_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| butootdApp Class | {E240F5DA-F634-42FA-A878-5EC4730B41DC} | X BHO | butootd.dll | Unidentified parasite of Korean origin connecting to youazone.com - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
|
| BearShare Media Bar | {E49CE899-CD83-4841-8CC9-6E284D7978D0} | O TB | BEARSMBR.DLL | BearShare MediaBar |
| BearFlix MediaBar | {0388BA0C-C7F1-4E6A-BD7A-B59623F33363} | O TB | BearFlixMediaBar.dll | BearFlix - optimized for the fast download of video files.
Also see here |
| Flash Module | {66ADC876-890F-44d2-BBD6-390C52599B94} | X BHO | btask.dll, ktask.dll | Trojan downloader, a variant of Win32.Trojan-Spy.Banker.EGJ |
| MSVPS System, OFK System | {2A82CA08-45C7-4D20-997D-35AEED4B130F} | X BHO | blopenvtrk.dll | Zlob downloader variant, a member of the SmitFraud malware family |
| ??? | {8B4429E0-81FD-4963-A60F-BEDF4AC88FBB} | X TB | bomulmodule.dll | Parasite of Korean origin detected as Win32.Spyware.Bomultoolbar
|
| XBTB03641 | {BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408} | O BHO | brokerbin.dll, BROKER~1.DLL | BrokerBin.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| BndDrive2 BHO Class | {8B27CC68-110C-46a9-80D3-F3107DE6EB98} | X BHO | BndDrive2.dll, BndDrive3.dll, BndDrive4.dll | "Hyperlinks Rotator" aka ISMonitor adware hailing from zredirector.com - installs a "Internet Speed Monitor" sidebar - detected by Kaspersky antivirus as AdWare.Win32.Agent.ay |
| bsh Class | {6F28DDF6-172F-4944-B7BA-02EC30DFFD57} | X BHO | bssofth.dll | BarSearch Sidebar, a parasite of Korean origin hailing from barsearch.co.kr and detected as W-32/Adware.BHO.Barsearch |
| Explorer Breadcrumbs Helper Class | {DB5FC78C-0D12-448B-A0B0-DB0F0E6B67DB} | L BHO | BCToolbar.dll | Explorer Breadcrumbs |