| OBJECT NAME | GUID | STATUS | FILENAME | DESCRIPTION |
|---|
| RCUniverse | {4E7BD74F-2B8D-469E-A28F-ED6DB680B92F} | L BHO TB | RCUBAR10.DLL | RC_Universe |
| Redzee Toolbar | {34F459B8-1D37-4FF2-9EFA-192D8E3ABA6F} | O TB | redzee.dll | Redzee.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. |
| Rpoints Toolbar | {75770A73-AE54-4D18-8F75-880ADE6BC226} | O TB | rpoints.dll | RPoints toolbar a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. |
| ViewSource Class | {2B6F7199-53CE-4136-9340-06CBFB02484A} | X BHO | recommendsite.dll | InfoKey adware |
| RecomSite | {67665DD8-50E3-499E-86B8-0934E3E55598} | X EB | rcdssb.dll | Parasite of Korean origin detected as Adware.RecomSite |
| [full path to file] | {20AD49A2-94F3-42bD-F434-2604812C897C} | X BHO | random filenames (example: lsejkf94mjgfr.dll) | Parasite, detected by Kaspersky antivirus as Trojan-Downloader.Win32.Small.ddx |
| XBTB03004 | {C543F87B-D228-466C-8432-A6F7D1C44565} | O BHO | ramicro_toolbar.dll | RA-Recherche_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you trust it. |
| {80672997-D58C-4190-9843-C6C61AF8FE97} | X BHO | rundll16.dll | BrowserAid adware variant |
| RadioToolbar | {F275EF20-1E52-47B8-98D3-0537A2EB8223} | O TB | radiotoolbar.dll, RADIOT~*.DLL | RadioToolbar - a Dutch Softomate variant, detected by ESET's Nod32 antivirus as Adware.EZTracks. Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. |
| Editor plugin | {2B59A30B-E773-4c5f-BD26-080B7D3AB3F8} | X BHO | ramtask.dll | Variant of the Infostealer.Banker.D trojan |
| XBTP03004 | {19058002-11E0-486a-9EC7-2827CA0AB3B2} | O BHO | ramicro_toolbar.dll, RAMICR~1.DLL | RA-Recherche_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| Editor plugin | {2C91577A-5253-492c-89A6-DA08849A3298} | X BHO | reccon.dll | Variant of the Infostealer.Banker.D trojan |
| Real Estate Toolbox | {26A1CBE4-13EC-424B-854C-CCDA191FBA26} | O TB | realestatetoolbox.dll | Real Estate Toolbox Toolbar by CRWork.com - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ap |
| RG_Toolbar | {C5D431C0-9D73-43FF-8424-A9EE96B3727D} | O TB | rg.dll | Ricercagiuridica.com toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. |
| XBTP01975 | {B5D5C620-4AA9-42b7-ADA4-13BA26BD128F} | O BHO | realestate.com.au.dll, REALES~1.DLL | Realestate.com.au_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| (no name) | {C40624B4-CCDB-4F00-8888-7896032D234A} | X BHO | redir.dll | SpyGuarder - rogue "security software" using false positives as goad to purchase. |
| &RoboForm | {724D43A0-0D85-11D4-9908-00400523E39A} | L TB | RoboForm.dll | RoboForm |
| Vysr RoamAbout | {1A16D3C6-DC7B-485A-94B4-1BDC4900B184} | L BHO | roamabout.dll | Vysr RoamAbout |
| rtsplgob | {54B90419-5BDB-4D55-98E6-BD2113096FFA} | X TB | rtsplgob.dll | Parasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
|
| HtmlEvent | {E9919FD6-2DA2-4D5C-871D-89B548D882B8} | ? BHO | RedPepper.dll | Unidentified browser plugin of Chinese origin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| CRCCBHO Object | {97110207-DE87-43C7-B844-0276FB63141E} | L BHO | RCC.dll | Kwoopon |
| &Browser_Radio | {0F08F55E-A4D7-4D3A-8264-8F85008100C2} | O TB | radiojockeyorg.dll | RadioJockey.NET Browsertools |
| (no name) | {A1626E66-B26B-C628-A1DF-BDACCFA26EE1} | X BHO | Relive.dll | PWS-OnlineGames/66A1DE20 password stealer trojan - also see here |
| The retnsrp | {941FB260-9D22-480E-84D6-10DB7849180E} | X TB | retnsrp.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| {4E7BD74F-2B8D-469E-D3FC-F363BB81A82F} | L TB | rrtoolba.dll | ResellerRatings toolbar |
| Microsoft Class | {895A5924-74BA-43CD-B585-B031B44ECD66} | X BHO | reportUpdate.dll, UpdateFirewall.dll, dateWatch.dll, Updatewindows.dll, repairsafe.dll, Watchwindows.dll, policesystem.dll, policedriver.dll, other filenames | Unidentified parasite of Chinese origin - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| (no name) | {C71039EB-68AB-431A-9438-34B4C6FF86B5} | X BHO | redir.dll | Win-X-Defender or WinXProtector related - rogue "security software" using false positives as goad to purchase. A member of the SmitFraud malware family
|
| rtsplgob | {65059A5D-7EBF-41DC-8A37-B30F87021E22} | X TB | rtsplgob.dll | Parasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family |
| Recipe Rewards Toolbar | {9285901C-2731-4E57-8F17-6B016168CA98} | X BHO TB SH | rr-toolbar.dll, RR-TOO~1.DLL | Recipe Rewards Toolbar - a Traffix_inc EZTracks/aavalue.com foistware variant |
| TBSB03133 | {B28791A6-7300-47BB-966B-687670308FA6} | O BHO | realestatetoolbox.dll | Real Estate Toolbox Toolbar by CRWork.com - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ap |
| The retnsrp | {AAA535B5-251D-4B8F-A8D0-0D3A29C7309E} | X TB | retnsrp.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| ü°Ã·¤Á¸º | {95DE3278-0D29-4C21-80C8-296AD76465F2} | ? BHO | RELATE~1.DLL | Unidentified browser plugin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| rtsplgob | {4564780C-A9CF-47BF-A268-BB081BB8EE9A} | X TB | rtsplgob.dll | Parasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
|
| (no name) | {EFEE6B59-ADDB-40eb-BA2C-AF860F5B42B5} | X TB | readdb40.dll, reb69df2.dll | LZIO.com adware |
| MS Explorer | {705E9481-27B1-7C41-28BD-8E93811F4081} | X BHO | rswctl32.dll | Variant of the Trojan-Spy.Win32.Agent.ir trojan |
| rtsplgob | {E067413D-BC5E-4D4D-864D-A8932A9AC761} | X TB | rtsplgob.dll | Parasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family |
| [full path to file] | {C5AC49A2-94F3-42BD-F434-2604812C897D} | X BHO | random filenames (example: fkg94fdg.dll) | Parasite, detected by Kaspersky antivirus as Trojan-Downloader.Win32.Small.ddx |
| rosefilterrose Class | {64F11BD0-DEAB-4211-A5EC-3011CC9869A3} | L BHO | rosementiefilter.dll | Rosement_popup_killer |
| (no name) | {B45FC20D-6906-4E72-AA59-392CC61FDAA9} | X BHO | reginix86b.dll | Downloader, a variant of the Win32.Kolweb aka Durvil trojan |
| Resept Certificate Loader | {B40D0B13-9A70-4394-8F21-E2E4AE3A9BC4} | L BHO | ReseptLoader.dll | Resept/Trustalert Identity and Access management software |
| RCPRIVACY | {72EBDE8B-F1DC-4F6E-AA3F-13461861E239} | O BHO | RealConcept.dll, REALCO~1.DLL | RealConcept bar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| Barre d'Outils Radio Nejma | {CE41CDFF-BB50-4672-9BE3-5A1BE5990D2B} | O TB | RadioNejma.dll | Barre_d'Outils_Radio_Nejma - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| H | {78AFE66E-6F83-4ba3-B670-CE104A9733A2} | X BHO | rossix.dll | Variant of the Infostealer.Banker.D trojan |
| ReadFile Class | {811ABD55-9D94-4892-AB46-11D7DA29B8AE} | X BHO | rfa.dll, rfa2.dll | PWSteal.Bankash.F trojan - also see here |
| {79C9FDA0-0A67-4C56-BC89-6AB3FEC2752F} | L TB | racbar.dll | Rent a Coder Toolbar |
| (no name) | {********-****-****-****-************} | X BHO | rasman32.dll | WebPrefix adware variant |
| rijxbkin.dll | {25FD6584-698F-BCD2-602C-698745210352} | X BHO | rijxbkin.dll | Password stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
|
| Rediff Toolbar | {12F02779-6D88-4958-8AD3-83C12D86ADC7} | O TB SH | redifftoolbar.dll, REDIFF~1.DLL | Rediff.com Toolbar - see here - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| Rational IE Enabler | {1E9FB1C4-F40B-4E10-898E-D6209B122F6B} | L BHO | RTXIEEnabler.dll | Rational Robot Enabler for Microsoft .NET |
| {6166DA6E-9EE3-4A5B-8A84-F543CC942CBE} | X BHO | rpc32.dll | Usblog.A trojan |
| {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} | X TB | rundlg32.dll | SBSoft IWantSearch hijacker |
| (no name) | {83798BB2-00CD-4CF4-84CC-D814DC7A510F} | X BHO | redir.dll | SpyGuarder - rogue "security software" using false positives as goad to purchase. |
| [full path to file] | {25AD49A2-94F3-42BD-F434-2604812C897D} | X BHO | random filenames (example: mkkgf65h.dll) | Parasite, detected by Kaspersky antivirus as Trojan-Downloader.Win32.Small.ddx |
| {9819C369-5F62-4D37-9A42-44043A742C1E} | X BHO | redirect.dll | Dynamic Desktop Media adware variant |
| ReplaceSearchCtl Class | {832BEBED-C3DA-4534-A2C2-B2FFF220C820} | X BHO | replaceSearch.dll | Searchforit adware
|