| OBJECT NAME | GUID | STATUS | FILENAME | DESCRIPTION |
|---|
| DNSProxyObj Class | {06594350-D723-11D8-9669-0800200C9A66} | X BHO | DNSProxy.dll | StickyPops adware variant |
| Class | {F4CF25D0-E9F8-1F77-6FCA-1D2341A5060D} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {D77E03FC-6793-0FEB-2D82-191AE95369A6} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| SXG Advisor | {16167372-A970-4412-B90E-B07CFED45E77} | X BHO | dpvtporvqm.dll | Adware downloader causing false spyware warnings, a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| Class | {A770CCE7-7208-DBB0-07E4-49DEFD3F792D} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| deviantART Toolbar | {ED46E61C-C391-49ED-82F8-A3DCAA44671F} | L TB | deviantART.dll | deviantART toolbar |
| Class | {C0B4B279-474B-064C-CC74-63866B0E0A96} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {FCBA9536-5CF1-66A5-22A7-AA44AA767AEB} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {B8E64B1D-97B9-D9CD-4452-E3D27877AC97} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| ???? | {0A50AAD3-7B56-4480-99E6-D76DF37408A1} | L TB | def_bar.dll | ASTRANSAC Japanese translation software |
| d.dll | {CF418C5F-A365-4962-B945-FD528D22D96D} | X BHO | diag.dll | Whatyoursearchingfor.com browser hijacker |
| Class | {35D77D78-8BE1-BF81-A036-49E3872CDC68} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| GNX Rolex | {34D7198C-3B26-4434-B8B0-53DCE7410E70} | X BHO | drnpfdxwrs.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| Class | {43544B19-A240-DF9B-5CE9-9DC02154188E} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {295C2B33-7D81-8183-3397-DFA7FA2E213F} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {CD408B0A-D3E8-4A45-95AC-69D511B0713D} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {DF77E1E7-BF9B-B625-1701-C1212318F7BC} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {7E7E29DB-D5D8-8F9C-04D0-1F78794D1C99} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| RDL Rolex | {A817505E-AB08-40AB-AD4D-643831AE697A} | X BHO | dkxrstqofr.dll | Adware downloader causing false spyware warnings, a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| Class | {0BA941F2-05DD-E3A4-45AF-E11A1A393241} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| (no name) | {0F6FE57C-D08A-C6DD-A931-08A6531AE256} | X BHO | dboumpi.dll | Variant of the DisableKey.A aka Busky downloader trojan |
| SetupHtml Class | {51641EF3-8A7A-4D84-8659-B0911E947CC8} | X BHO | DownloadHtml.dll, DOWNLO~*.DLL | AdBars adware |
| Class | {CC5FEABC-FD03-1BA4-2907-D32BC8AFEBB7} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {A7F8BA73-322B-30CD-A83E-AF577424E397} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| XTN Monitor | {5C57A186-DD05-4E74-BEFE-A104E8B21227} | X BHO | ddwlxtqdgx.dll | Adware downloader causing false spyware warnings, a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| Class | {3EAC3BA5-7412-4A8A-1395-BE66BF71FF3C} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| DeskalertsBHO | {20D58178-A7F9-47fe-A1B3-1CD46A030E20} | X BHO SH | deskbar.dll | DeskAlerts, a Softomate toolbar and DeskBar adware variant - also see here - NOTE: the file may be installed in a "Program Files\DeskBar" or "DeskAlerts" folder, but it must NOT be confused with the legitimate DeskBar software, which does NOT install a BHO! |
| Class | {BFBE0DA2-48E9-A396-3A21-50CC092AA4C1} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {22A99D53-6CB9-33A5-DED6-D04F5F0F1AE8} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {E10FC589-CE8A-8D18-40D8-08485E4D322A} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| (no name) | {ee2aa0f1-f20f-6c4e-d617-5455b3e75016} | X BHO | dfgaert.dll, krnl32.dll, mssvmdll.dll, mstsk32.dll, mxcrtp.dll, param32.ocx, posterm.dll, regdll32.exe, sthbdm32.dll, stubext.dll, svhc32.dll, systerm.exe, uncwqs.dll, winhid64.dll, winsys32.exe, wintst.dll | Installed by a variant of the FakeAle trojan - detected by AntiVir antivirus as TR/Tiny.I |
| direct | {DAE24ABD-3775-1DAA-DEDA-35DABDEABB24} | X BHO SH | direct.dll | Parasite of Chinese origin hailing from yasijang.net and detected as DirectToolbar.Adware |
| Class | {8F81986D-802E-D9AA-0FD3-B0937653C654} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| ohb | {CB5B2BC6-F957-4D8A-BE67-83F3EC58BA01} | X BHO | dsktrf.dll, dsktrf1.dll | Adware.Begin2Search |
| SXG Advisor | {98B55BD1-39BB-4446-895D-BF6A7A23CE70} | X BHO | dntpkwoowx.dll | Adware downloader causing false spyware warnings, a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| Class | {6F3C448D-F236-C71F-D625-50ABA41C39B6} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| SXG Advisor | {58DDA832-AEA0-4BCF-BC11-C01A3C51C077} | X BHO | dntpkwolox.dll | Adware downloader causing false spyware warnings, a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| RDS.Dataspace | {875AC22C-372A-4BCF-9964-101074CCC393} | ? BHO | dhcsvc32.dll | Unidentified browser plugin - should you have any information about this application, such as its homepage or the site where it was downloaded or installed, its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| Class | {16CBB339-18A3-B08C-B7CE-3C211D4BCA22} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| DeskbarBHO | {5B3644BC-8144-4587-90ED-92393DC77084} | X BHO SH | deskbar.dll | DeskBar adware variant - also see here - NOTE: is NOT related to the legitimate DeskBar software, which does NOT install a BHO!
|
| Class | {249E5DB1-93F1-255F-602A-35116A6A43F3} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {1A6A71F5-8D2A-F244-1BC7-73BCB7B92CED} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {AB9A8A52-4347-66CD-E844-7E706EC3D015} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {80127E37-4EFD-E63C-C706-18F6F66CDC8D} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {ADF96347-3F19-C655-40D2-F7597E5875AA} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {964992EF-9822-1424-5FB7-BC86A8949B79} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {0151F02E-FCEA-C108-C5C6-699029066F22} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {D264ABD1-798D-5E1E-6483-9855E705B9FE} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {B5AF6EDA-E0AF-5122-171D-967AF3AB913D} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {B4C91D4F-8735-A88D-E8BE-4D168226F78A} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {704E16AA-C13C-C3D3-02A7-38BA672B853A} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| ToolHelper | {AAAE1C1A-89F7-4AF6-ABD1-F8FBCFA47408} | O BHO | dvd4arab3.dll, DVD4AR~1.DLL | dvd4arab.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| {3F756BC4-26CB-497E-9409-8F09C1850C80} | L TB | dmexbar.dll | DMEXbar |
| Class | {16A16A71-9DCA-A795-D4CE-7570903FC4F8} | X BHO | D3**.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |
| Class | {3DA16FA2-BE71-AC09-172E-AA0DB0AF849E} | X BHO | D3**32.DLL (* = random char) | CoolWebSearch/HomeSearch adware component |