CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

spacer spacer

The CLSID / BHO List / Toolbar Master List

Currently 54019 entries and growing...

This is the Master BHO and Toolbar list copyrighted by Tony Klein and CastleCops. For expert assistance, please post here. The information is collected across the Internet by the CastleCops Team. Usage: please leave feedback requesting permission if you are interested in using this data beyond the approved channels.

BHOList - ToolbarList

KEY:
  • "X" - Certified spyware/foistware, or other malware
  • "L" - Legitimate items
  • "O" - Open to debate
  • "?" - Unknown Status
  • "BHO" - Browser Helper Object
  • "TB" - Toolbar
  • "SH" - R3 URL SearchHook
  • "EB" - IE Explorer Bar

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

    Random sampling...
    OBJECT NAMEGUIDSTATUSFILENAMEDESCRIPTION
    Cls{CF021F40-3E14-23A5-CBA2-717177656032}X BHO qwe6032.dllMakeMeSearch aka Tubby/Arau adware variant
    QQCycloneHelper{00000000-126D-4305-82F9-43058F20E8D2}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    QQCycloneHelper Class{00000000-127B-4305-82F9-43058F20E8D2}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    QRWindow{5B924612-2558-4E92-A280-A61EBA8EAED6}L TB QRToolBar.dll QRWindow
    qtvglped{F4F9CB8C-0CED-4062-A151-18F48BAB0560}X TB qtvglped.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    TBSB03083{91D8788F-CF0E-4e6c-B58A-8D9D84F21EEA}O BHO qbar.dllQBar Toolbar, an unidentified Softomate Toolbar of Chinese origin, detected by Kaspersky antivirus as Adware/win32.Mostofate.k - should you have any information about this application, such as its homepage, its exact purpose and whether you did or did not install it wittingly, do email us Thanks!
    Internet Speed Monitor{180175C0-913E-451c-9419-2D5500368D43}X EBQdrDrive20.dll"Hyperlinks Rotator" aka ISMonitor adware - installs a "Internet Speed Monitor" sidebar - detected by Kaspersky antivirus as AdWare.Win32.AdBand.a
    Qwika toolbar{6D53ADB7-6AD5-4A59-BFE4-7B57D2F4AA89}O TB qwika-final.dll, QWIKA-~1.DLL Qwika.com toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this.
    QQCycloneHelper{AA58ED57-01DD-4D91-8333-CF10577473F7}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    QQCycloneHelper Class{00000000-128B-4305-82F9-43058F20E8D2}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    Q~øÅÙ¹{8E1CEBF4-7E65-4441-AF52-DCE42AA6F201}O TB QBoxToy.dll"Q-Player", MP3 playing software from kr.qbox.com
    IEHlprObj Class{AA9742E6-AB51-48a8-831C-C1EB757C3E61}X BHO qyliehelper.dllAdware detected as Adware.Win32.Qyule
    IEHlprObj Class{CE7C3CF0-4B15-11D1-ABED-709549C10000}L BHO QLIEHelper.dllQuickLink-Pen Elite
    qtvglped {67D59DA3-7A57-42C3-BBC1-D348E3944F88}X TB qtvglped.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    QQCycloneHelper{089FD14C-132B-48FC-8861-0048AE113215}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    DVA Gate{2B98AA3D-B6F6-45B2-A9D8-9DCE94F6FFCC}X BHO qnmargolwqt.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    &QuickBar{0CD774FE-B25B-45AA-A16C-F6500E8A7B50}X TB Quickbar.dllParasite of Korean origin hailing from quickbar.co.kr, and detected as QuickBar adware
    H{E212B4E1-BA10-49c1-ADB1-6456D704CA6E}X BHO q24m.dllVariant of the Infostealer.Banker.D trojan
    DVA Gate{D08B4B63-1A30-4D54-AAAA-F1DF3A8CFF42}X BHO qnmargolwlp.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    H{70C872E5-69F5-456f-B809-484106881B7B}X BHO q24m.dll, re_.dllVariant of the Infostealer.Banker.D trojan
    QQCycloneHelper{00000000-12A3-4305-82F9-43058F20E8D2}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    BndAero6 IE Helper{82E5E2FF-9260-4d88-B0C6-7CC358C5D418}X BHO QdrDrive11.dll"Hyperlinks Rotator" aka ISMonitor adware hailing from zredirector.com - installs a "Internet Speed Monitor" sidebar - detected by Kaspersky antivirus as AdWare.Win32.AdBand.a
    qtvglped{1358BEF5-2BCF-469D-A33E-E967387862D6}X TB qtvglped.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    QQCycloneHelper Class{385AB8C5-FB22-4D17-8834-064E2BA0A6F0}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    qndsfmao {8925A538-F508-4A3E-8AF9-6C39E2D3AE7B}X TB qndsfmao.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    QSupport Class{7C3A71BA-2979-45AC-926C-9AC0098F9127}X BHO qserchcom.dllParasite, detected as Win-Adware/ToolBar.QSearch
    (no name){FDEB626D-6E2E-4AF0-AC0D-2089B0988C57}X BHO QQSERV~1.DLL, QQservice.dllUnidentified parasite of Chinese origin - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    DVA Storm{FFFDFF87-2CFE-40D6-9480-33E97FEC4362}X BHO qnmargololr.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    qtvglped {90972666-0EC6-40EC-8405-EE06D866CCD8}X TB qtvglped.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    MSVPS System{D3936AE2-494C-4D80-A4A3-702B63C30104}X BHO qnxplugin.dll MyGeek/Cpvfeed.com adware variant, detected by Kaspersky antivirus as AdWare.Win32.Agent.bn - logs search engine queries to a %Windir%\search_res.txt file. Also see here
    QQCycloneHelper{00000000-122B-4305-82F9-43058F20E8D2}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    Quick&MenuBar{23849BDD-E8A8-4B9E-AB7A-5830D3828AAE}L TB QuickMenuBar.dll QuickMenu toolbar
    H{8EF45F60-7FD5-4724-90BB-BB72335007B3}X BHO q24m.dll, re_.dllVariant of the Infostealer.Banker.D trojan
    qndsfmao{A8160B32-92A5-48CB-839D-D4C5D05054E4}X TB qndsfmao.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    Quran_b7thy{1B8DB3CB-CC40-41B8-8A00-9AFC2187A64D}O TB Quran_b7thy.dll Quran_B7thy_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    QQCycloneHelper Class{1ED08CAC-C333-48EE-A738-C94D1F1F319E}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    QURAN{2CD65C70-3E78-4BEA-8C28-48B2FA4986C9}O TB qurana.dll qurana toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    QQCycloneHelper{18093455-9012-4568-9076-908765467181}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    (no name){7B55BB05-0B4D-44fd-81A6-B136188F5DEB}X BHO questmod.dll, questmod-1.dll SA adware
    qtvglped{74E5E4E8-79DD-49AC-B64B-E74822D5F3CD}X TB qtvglped.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    QQCycloneHelper Class{34E6F97B-34E0-4CE5-B92B-F83634BEDC01}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    BndBlock5 BHO Class{82EA1A55-9CBC-404b-9D0C-E8BFB7EAAE9B}X BHO QdrDrive10.dll"Hyperlinks Rotator" aka ISMonitor adware hailing from zredirector.com - installs a "Internet Speed Monitor" sidebar - file detected by Kaspersky antivirus as AdWare.Win32.Agent.ay
    QQCycloneHelper{0005A87C-D626-4B3A-84F9-1D9571695F55}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    µÊÃÓ¤¹ß¾{DBE9657B-DEEC-4F72-86AA-A3FDF4490B6D}O TB qbar.dllQBar Toolbar, an unidentified Softomate Toolbar of Chinese origin, detected by Kaspersky antivirus as Adware/win32.Mostofate.k - should you have any information about this application, such as its homepage, its exact purpose and whether you did or did not install it wittingly, do email us Thanks!
    QQCycloneHelper{889D2FE8-5411-4565-8998-1DD2C5261283}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    QURANANET{25C81E91-280A-40B9-90F8-FF9336C46024}O BHO qurana.dll qurana toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    qvdntlmw{0250B459-0F71-48F6-9784-CB7F2C338A0A}X TB qvdntlmw.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    {CF021F40-3E14-23A5-CBA2-717177654820}X BHO qwe4820.dllMakeMeSearch aka Tubby/Arau adware variant
    QQCycloneHelper{00000000-0000-0000-0000-000000000000}X BHO QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    H{DAAD7A7D-A85C-4407-A336-5AB5354A6869}X BHO q333wrm.dllVariant of the Infostealer.Banker.D trojan
    qvdntlmw{D46D8461-406E-468C-9EAC-3156FB2ACD42}X TB qvdntlmw.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    QQCycloneHelper Class{0FA24E3D-422C-4D94-A125-104F32352C90}X BHO QQIEHelper01.dll, QQIEHelper02.dll TencentAddressBar adware - bundled with the Tencent_QQ instant messaging client
    ???{B32E00B5-E9F9-45f5-9236-0B9EB3862520}X TB qsearchbar.dllParasite, detected as Win-Adware/ToolBar.QSearch
    DVA First{0826898D-C6EA-40BB-B636-9C82B5565312}X BHO qvlbodmnwra.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    StFlex IE Helper{8334A30C-49E5-489a-B63D-5B927C1EF46E}X BHO QdrDrive15.dll"Hyperlinks Rotator" aka ISMonitor adware hailing from zredirector.com - installs a "Internet Speed Monitor" sidebar - detected by Kaspersky antivirus as AdWare.Win32.AdBand.a

    spacer spacer