CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

spacer spacer

The CLSID / BHO List / Toolbar Master List

Currently 53472 entries and growing...

This is the Master BHO and Toolbar list copyrighted by Tony Klein and CastleCops. For expert assistance, please post here. The information is collected across the Internet by the CastleCops Team. Usage: please leave feedback requesting permission if you are interested in using this data beyond the approved channels.

BHOList - ToolbarList

KEY:
  • "X" - Certified spyware/foistware, or other malware
  • "L" - Legitimate items
  • "O" - Open to debate
  • "?" - Unknown Status
  • "BHO" - Browser Helper Object
  • "TB" - Toolbar
  • "SH" - R3 URL SearchHook
  • "EB" - IE Explorer Bar

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

    Random sampling...
    OBJECT NAMEGUIDSTATUSFILENAMEDESCRIPTION
    (no name){00000000-167B-41bc-95FF-86A07B14712C}X BHO he3bbcff.dllLZIO.com adware
    {B405EE45-1AA2-410D-A6CF-1A74371DCD62}X BHO Hotlink.dll SearchEx/CantFind adware variant
    Herold Toolbar{4E7BD74F-2B8D-469E-8CB0-AF25F39AAE39}L BHO TB heroldtoolbar.dll, HEROLD~1.DLLHerold.at Toolbar
    Habbo Toolbar{FDC0927F-B3CD-4BD7-8776-9DC955881094}O TB habbo.dll Habbo_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this.
    Starware Horóscopos{aa504d2e-229d-4ae4-8e6e-3bc8392660ab}X TB Horoscopes_ES.dll Comet_Systems/StarWare adware
    Helper {CEDB3E8F-9293-A485-366F-376283B59030}X BHO hmqtse32.dllParasite of Russian origin connecting to ku-dzu.com - a variant of the Trojan-Spy.Win32.Agent.ir trojan
    HHOTTView{E98C083C-BE4D-4339-A491-FB5FFFA34A00}L TB HHOTTView.dll HHOTTView
    XBTP00626{2299F798-D0CA-4159-8FB9-D5D1CD7008F9}O BHO hubdogtoolbar1.0.dll, HUBDOG~1.DLL Hubdog_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    ???{6431FA1E-3F8E-4E8C-8D1C-5F96712E952C}X BHO hclick.dllParasite of Korean origin detected as Win32.Spyware.headclick
    XuZheng_Helper{29D83095-5469-48EA-9123-BC01DFAFE6DA}X BHO Helper.dll, Helper_94QQ.dllUnidentified parasite of Chinese origin - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    Flash Module{3495FCBF-8E0F-4338-B476-3025B6EF68D4}X BHO hyperconn.dll, hyperser.dllPassword stealer, a variant of Win32.Trojan-Spy.Banker.EGJ
    HandySelector{B3D9ED4C-68F7-4F0A-B72F-8D0FFE3C8CD5}L TB HandySelector.dll HandySelector
    TBSB09479{7C719462-56A5-4351-99E8-B1B0215CF0FB}O BHO hash10.dll HASH_10 Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    Internet Explorer Tracker{1E1B2879-88FF-11D2-8D96-D7ACAC95951F}X BHO HTMLEdit.dll GoGoTools adware component
    Browser Adjustment{A262ED46-3F21-4AE2-AA63-5FFD0C011863}? BHO HEXTEN~1.DLLUnidentified browser plugin - should you have any further information about this application such as its exact purpose and whether you did or did not install it wittingly, do email us. Thanks!
    EyeOnIE Class{BE5EAD7D-1C3A-4DDE-9A8D-5AE1B426E10F}L BHO hjtools.dll"HongJie Tools" - folder encryption and disk protection software of Chinese origin hailing from 55Tools.com
    Hibrosoft HSToolBar{DEBDD6EC-E81A-4987-9C9C-06DDC5ADDECE}L BHO HSToolBar.dllSmartGrabber
    (no name){768C22B7-B27E-4126-B6CE-5939DFCA4651}X BHO hprt.dll HotPort adware component
    HomepageBHO{1CA480CD-C0E5-4548-874E-B85B17905B3A}X BHO hp****.tmp (* = random char or digit)A variant of the Zlob.F trojan, a SmitFraud/PSGuard/SpyAxe malware component
    HP Print Enhancer{0347C33E-8762-4905-BF09-768834316C61}L BHO hpswp_printenhancer.dllHP Smart Web Printing
    Happymoney{3D00CF9D-3225-4956-A1E6-02F03AD1EF08}X BHO happybagsband.dll, HAPPYB~1.DLLParasite of Korean origin detected as Adware.HappyMoney
    (no name){0860d663-43fd-4607-9309-d351fdf28488}X BHO Horoscopes_FR.dll Comet_Systems/StarWare adware
    FCToolbarURLSearchHook Class{0d343d34-0c2c-4392-9a2e-7a803d752814}O SH Helper.dll Ron_Paul_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    Hanacashback{4F6F8E51-6315-437E-8A07-F1C2DF41F6D9}X BHO hanacashback.dllParasite of Korean origin detected as Adware/HanaCashBack
    WebDownload Class{497E009F-F979-4A96-BB04-71C302DBA316}X BHO HBLoad.dllParasite of Chinese origin, a Henbang adware component
    StockBar Class{07A3D336-90D3-4C90-922D-7257D56434BF}X TB htmlbar.dll DirectIP adware variant
    &Web Shutter{5B48A820-5C79-42AF-ABF6-0035A2392A4B}L TB Hsiebar.dllWeb Shutter
    Hotmail Browser Alert{a7b8bf6e-044f-4112-8497-f62cb87b16a3}L TB HotmailBrowserAlert.DLLHotmail Browser Alert
    (no name){3E48B471-EB2E-4ccf-9EA9-8905F737B895}O BHO SH HGNSRCAS.DLL HughesNET Search Toolbar - powered by MyWebSearch/MySearch (now owned by Ask Jeeves Inc - see this_note )
    HTML Quick Edit Bar{DD398E08-4F8E-42B8-9446-3500D27310CC}L EBhtmlquickeditbar.dllHTML Quick Edit Bar
    TBSB02770{B0FD0B12-EF22-411A-8320-65B11E25D755}O BHO hunted_cow_studios_ltd.dll Hunted_Cow_Fallen_Sword_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    (no name){F7D40011-29BB-43EB-9C97-875CE89E9E36}X BHO hp100.tmp, hp101.tmp Zlob-PV trojan
    (no name){AE40EBA0-2D49-48C9-BA8D-E9F046240F5F}O BHO hook.dll, DoubleHook.dll, Dh.dll OverSpy keylogging/monitoring software - remove unless you installed it yourself.
    Startnow{1BC1FC4B-B0D2-4D8D-9307-2E40E2A8C257}X TB Hyperbar.dllHyperBar adware
    Hunted Cow Fallen Sword Toolbar{BFB5F154-9212-46F3-B547-AC6106030A54}O TB hunted_cow_studios_ltd.dll Hunted_Cow_Fallen_Sword_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    HP Print Clips{053F9267-DC04-4294-A72C-58F732D338C0}L BHO hpswp_framework.dll, LeoFrameworkDLL.dllHP Smart Web Printing
    ToolbarBrand {BFB5F154-9212-46F3-B547-AC6106030A54}O TB HITS2U~1.DLL, Hits2uToolbar.dll hits2u_toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    Google Module{28C703D0-B4A9-4b2f-9123-CE8294761861}X BHO halifax1.dll, halifax2.dllPassword stealer, a variant of Troj/Ambler-C
    HelloWorldBHO{C8FCFA2B-5588-45A8-8306-0DEFAF6C761C}X BHO hunk.dllUnidentified parasite of Chinese Origin - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    RUPKPro{93E4D845-DBA0-47F0-8720-4549BDACF648}L BHO hwpkpro.dll Right_Utilities Hitware Companion tracks eraser
    HomepageBHO{724510C3-F3C8-4FB7-879A-D99F29008A2F}X BHO hp****.tmp (* = random char or digit) Zlob.F trojan, a SmitFraud/PSGuard/SpyAxe malware component
    Military.com Toolbar Helper{7D5FBE1D-F012-4F2A-8A1C-42E1037972B7}L BHO Helper.6.dllMilitary.com Toolbar
    (no name){6416E001-1190-3001-0699-ca3230262a11}X BHO hext_help.acmUnidentified parasite, file present in the Common Files\System folder - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    URLMonitor Class{3ED9FFDA-79DB-4B2D-99B7-16EA3C4A3A92}X BHO hap.dllHenbang Adware
    hanapoint{6E2FD9C5-0672-4B1D-BED5-599E7F298913}X BHO hanapt.dll Parasite of Korean origin hailing from hanapoint.co.kr and detected as Hanapoint adware
    XBTP04522{ABC9A420-1D87-4277-97E1-250AA864F84E}O BHO hbpl.dll Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you both trust it and expressly meant to install it. Should you have a copy of the file, do email us attaching the file to your email for analysis. Thanks!
    Hi5 ToolBar{A891DF3C-858A-453B-B45A-EB7325295FE7}O TB HI5TOO~*.DLL Hi5.com toolbar
    HomepageBHO{893FAD3A-931E-4E53-B515-B1426D63799B}X BHO hp****.tmp (* = random char or digit)A variant of the PUPER.G/SmitFraud/DesktopHijack trojan - also see here
    The hdtip{382C8A97-BFEF-47B5-9770-87C4DE651E37}X TB hdtip.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    Honeywell Hendrix Framework Browser Helper Object {3B5A16AC-9744-11D3-80DE-00C04F6847E2}L BHO HSCBHO.dll Honeywell HMIWeb Solution Pack
    HomepageBHO{3BF1F86F-B1A8-489B-8D8B-43781D51411F}X BHO hp****.tmp (* = random char or digit)SmitFraud/DesktopHijack adware alias Puper-N trojan
    &HughesNet Toolbar{CB2D4F99-8F9E-4992-880E-5962045A36E1}L TB hgnbar.dll HughesNet broadband access software
    The hdtip{17D69B84-065B-4F88-AFE8-3BA9B4907501}X TB hdtip.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    The hdtip{7E259026-2CBD-4F42-AB62-230C0D4ABDAD}X TB hdtip.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    HomepageBHO{27150F81-0877-42E9-AF13-55E5A3439A26}X BHO hp******.tmp (* = random char or digit) Puper-BA aka Zlob.H trojan - a SmitFraud/PSGuard/SpywareStrike/SpyAxe malware component

    spacer spacer