CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

spacer spacer

The CLSID / BHO List / Toolbar Master List

Currently 54019 entries and growing...

This is the Master BHO and Toolbar list copyrighted by Tony Klein and CastleCops. For expert assistance, please post here. The information is collected across the Internet by the CastleCops Team. Usage: please leave feedback requesting permission if you are interested in using this data beyond the approved channels.

BHOList - ToolbarList

KEY:
  • "X" - Certified spyware/foistware, or other malware
  • "L" - Legitimate items
  • "O" - Open to debate
  • "?" - Unknown Status
  • "BHO" - Browser Helper Object
  • "TB" - Toolbar
  • "SH" - R3 URL SearchHook
  • "EB" - IE Explorer Bar

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

    Random sampling...
    OBJECT NAMEGUIDSTATUSFILENAMEDESCRIPTION
    zSearch Bar{5886A6DC-AAF4-45E9-979A-8E5E6DEE30E7}X BHO TB zSearch.dllTotalVelocity zSearch parasite - also see here
    ZSIEBhoOne Class{06A548B7-25F0-416E-88AB-A8F6C4DE325C}L BHO ZSIEBho.dll1st Popup Killer & IE Assistant
    TBSB00808{425E30F0-CCC6-4E24-BBEB-BCBD31720B37}O BHO zoombar.dllZoombar Toolbar, an unidentified Softomate Toolbar - should you have any information about this application, such as its homepage, its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    ¥ÖéÂ÷Î÷Î BHO{169AB831-DC64-4DEC-A9B5-99A8C1772059}? BHO ZHIMAT~1.DLLUnidentified browser plugin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    ViewSource Class, Zero Popup{EB23F789-F17F-4bcc-988B-6B70A3A67E9C}X BHO Zero-Popup.dll, ZERO-P~*.DLL ZeroPopUpBar adware
    zywmcime.dll{3319A1F1-9410-9654-3201-345FFA349133}X BHO zywmcime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    Zaman IE Toolbar{C49DD894-C6DE-4910-8C41-BA20F852D8BC}O TB zaman.dll Zaman_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you both trust it and expressly meant to install it.
    ZoomTown Toolbar{4E7BD74F-2B8D-469E-97B0-A92DF4D5F433}O BHO TB Zoomtowntoolbar.dll, ZOOMTO~1.DLL Zoomtown_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    zywmdime.dll{4319A1F1-9410-9654-3201-345FFA349134}X BHO zywmdime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    Video{F856BB9E-855B-498D-883E-3509C550A031}X BHO zol.dll, konsana.dll, zlrad.dll, other semi-random filenames composed of the following fragments: k, w, z, o, so, onsa, l, na, radParasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell or similar popups - also see here
    zywlcime.dll{37A924AF-1A5F-CF21-AB1D-1D5CF82A8A73}X BHO zywlcime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    XBTB09091 {4E18C2FC-0FB3-42f4-A79A-7B7872B209C7}O BHO zidz.dll Zidz.com_ToolBar - a Softomate Toolbar variant - Installer detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ap and by Bitdefender as Adware.Softomate.CZ
    zptlcsys.dll{50940F85-F015-14F1-A05F-F69858AC6D05}X BHO zptlcsys.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    XBTP01640{8B4F961F-0B84-4201-BBB1-34E45368F39E}O BHO Zoomtowntoolbar.dll, ZOOMTO~1.DLL Zoomtown_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you both trust it and expressly meant to install it.
    zyzxhime.dll{8A59145F-315D-BC23-AC1F-145DF81A34A8}X BHO zyzxhime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    Zearching Bar{5B2CCE61-46CE-11d8-8734-0050FCF57E49}X TB zearching.dllDetected as Adware.Zearching - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    ZILLAbar BHO{2F19BBE7-D050-4C39-829E-C2F9E15C90F0}L BHO ZillaBar.dll STOPZilla
    zywmeime.dll{5319A1F1-9410-9654-3201-345FFA349135}X BHO zywmeime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    PRBHO.HTMLDocumentCtrl{AAC73F50-03DD-47E5-AD18-FDD65BF29E3D}X BHO ZComBHO.dllParasite detected by Ahnlab antivirus as Win-Adware/Zcom
    ZillaBar{CAAE9D7F-FFCC-46CF-8DEE-00DCC6CDF5A1}L TB ZillaBar.dll STOPZilla
    Zoomtown Toolbar{E5E2F8B2-79A4-495C-8581-90BA2C845CC2}O BHO Zoomtowntoolbar.dll, ZOOMTO~1.DLL Zoomtown_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    ZILLAbar{8FC8AE66-AC15-4C0D-9E9A-51296A0C52FA}L TB ZillaBar.dll STOPZilla
    (no name){05B8D9C8-35AF-946E-72B1-08D571A4E36B}X BHO zovddxf.dll Busky_AN downloader trojan
    {E01D96AB-DBBD-451D-BDCB-0EE420BC91B1}L TB Zibbar.dllZibb.nl Toolbar
    XBTB06823 Class{CCC651FC-1613-4cd1-8FD0-ECD69CB2C50F}O BHO zaman.dll Zaman_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you both trust it and expressly meant to install it.
    zxmsawin.dll{4A041F13-A111-12A3-B0CF-F99818AA68A4}X BHO zxmsawin.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    {72A58725-2635-4725-8C53-676DFD1FEB8D}X BHO zeropopupbar.dll, Zeropopup.dll, Blocker.dll, ZERO ZeroPopup toolbar
    Reflectent IE Helper Object{C34AFC14-3FF5-4EF0-A935-720AE0621C08}L BHO ZBHook.dll EdgeSight systems management software
    XBTP03991{8FB1B824-62C1-4E9E-9C8B-32F7A461F708}O BHO zotspot.dllZotspot searchengine
    zptlbsys.dll{40940F85-F015-14F1-A05F-F69858AC6D04}X BHO zptlbsys.dll Password stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    Video {414B0283-2228-4F26-8BB3-C2211FA99223}X BHO zsol.dll, konsana.dll, zlrad.dll, other semi-random filenames composed of the following fragments: k, w, z, o, so, onsa, l, na, radParasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell or similar popups - also see here
    zyzxiime.dll{9A59145F-315D-BC23-AC1F-145DF81A34A9}X BHO zyzxiime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    ZIP bar{28880C09-187F-4E97-BF87-9148C12435F3}L TB SH zipbar2.dll, zipbar.dll Navigate_Network_ToolBar - also read here - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you both trust it and expressly meant to install it.
    Zango Search Assistant Helper{56F1D444-11BF-4879-A12B-79CF0177F038}X BHO zangohook.dll, seekmohook.dll180Solutions ZangoSearch adware variant - also see this_note
    Ziptionary BHO{F9FF8423-50F2-4f80-A31D-D1A03DBE9D86}L BHO ziptionary.dll Ziptionary
    Video {22FEDE76-4017-466D-BDE9-5D3E72EED32C}X BHO zsol.dll, konsana.dll, zlrad.dll, other semi-random filenames composed of the following fragments: k, w, z, o, so, onsa, l, na, radParasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell or similar popups - also see here
    Zoomtown Toolbar {E5E2F8B2-79A4-495C-8581-90BA2C845CC2}O TB Zoomtowntoolbar.dll, ZOOMTO~*.DLL Zoomtown_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you both trust it and expressly meant to install it.
    Zango Toolbar, Seekmo Toolbar{5CBE2611-C31B-401F-89BC-4CBB25E853D7}X BHO TB ZbHostIE.dll, SkHostIE.dll180Solutions ZangoSearch adware variant - also see this_note
    zyzxfime.dll{6A59145F-315D-BC23-AC1F-145DF81A34A6}X BHO zyzxfime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    zycbbime.dll{2A698102-5904-AFD0-20DF-CD1A65829CA2}X BHO zycbbime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    zywlaime.dll{17A924AF-1A5F-CF21-AB1D-1D5CF82A8A71}X BHO zywlaime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    {5CF8A355-F8C6-4883-9C25-49D01A7D25BE}X TB zestyfind.dllhijacker
    zxptejpg.dll{91698482-6555-3666-1222-954784129019}X BHO zxptejpg.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    TBSB02495{E8401D8D-668F-4690-942C-AA2E54C7AEC9}O BHO zawyabar.dll Zawya_Investor Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this.
    ZeroPopUp Bar{72A58725-2635-4725-8C53-686DFD1FEB8D}X TB zp.dll ZeroPopupBar adware
    Zawya Toolbar{1927A727-D04B-436C-8A6F-7C44A3C090C6}O TB zawyabar.dll Zawya_Investor Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this.
    WinView plugin{8AE578E0-6DF5-41E0-869F-F65A32D2F6BD}X BHO z_view.dll, om_view.dll, xmlview.dll, oggwin.dll, domsys.dll, similar semi-random filenamesParasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell , IE_Antivirus or similar popups - also see here
    {72A58725-2635-4725-8C53-676DFD1FEB8D}X TB zeropopupbar.dll, Zeropopup.dll, Blocker.dll, ZERO ZeroPopupBar adware
    ZXBToolbar {C49DD894-C6DE-4910-8C41-BA20F852D8BC}O TB zxbinstallerxpblue2.dll, ZXBINS~1.DLLZxbinstaller.com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    zxmsewin.dll{8A041F13-A111-12A3-B0CF-F99818AA68A8}X BHO zxmsewin.dllPassword stealer trojan of Chinese origin, a variant of Infostealer.Gampass
    zywlbime.dll{27A924AF-1A5F-CF21-AB1D-1D5CF82A8A72}X BHO zywlbime.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    DocuCom PDF{E3286BF1-E654-42FF-B4A6-5E111731DF6B}L TB ZeonIEFavClient.dllZeon DocuCom PDF Gold
    ZlangoBHO{C219F6EA-DE74-4E6C-A09F-4EC7DB9DA195}L BHO Zlango.dllZlango Pic-Talk
    ZILLAbar Browser Helper Object{1827766B-9F49-4854-8034-F6EE26FCB1EC}L BHO ZB2.dll, SZSG.dll STOPZilla
    XBTP01640{E885A80F-35B4-4599-B656-CD888118F224}O BHO TB Zoomtowntoolbar.dll, ZOOMTO~*.DLL Zoomtown_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Remove unless you both trust it and expressly meant to install it.

    spacer spacer