| Header | CLSID | Status | Name | Path/File | Description |
| Protocol | {C6D89159-3467-4C2F-9918-3362DA57BCD2} | L | t-mobile | TMOBIL~1.DLL, | T-Mobile Hotspots |
| Protocol | {4D25FB7A-8902-4291-960E-9ADA051CFBBF} | O | tbr | %Program Files%\Crawler\ctbr.dll | Adware-CTBar |
| Filter | {DFAA31C8-A356-4313-9D95-5EDAB46C5070} | X | text/html | lmf32v.dll, qlink32.dll | Adware Hyperlinker |
| Filter | {950238FB-C706-4791-8674-4D429F85897E} | X | text/html | mfiltis.dll | Adware ISearch |
| Filter | {4F7681E5-6CAF-478D-9CB8-4CA593BEE7FB} | X | text/html | xplugin.dll | Adware TMKSoft |
| Filter | {E64E4E60-EF13-4C79-A159-119762E18181} | X | text/html | lmf32.dll | Adware Hyperlinker |
| Filter | {2DE94081-9FE6-4227-BC59-B7A80CC8308C} | X | text/html | searchrep***.dll, taggerbh***.dll, trackurl***.dll, urlcli***.dll, msvrfy***.dll, gstylebho***.dll, dnsrep***.dll, 2in1***.dll | Clientman parasite |
| Filter | {EE7A946E-61FA-4979-87B8-A6C462E6FA62} | X | text/html | httpfilter.dll, digfilt.dll | TROJ_SCAGENT.B |
| Filter | {CC905FF6-B553-496C-9DFA-CFF65ADCD0FC} | X | text/html | ms****.dll, searchrep***.dll (*** random digits) | Parasite Clientman |
| Filter | {3846F57F-F837-47D0-A93B-C8FC85A70D70} | X | text/html | V0.15.dat | Dialui-A |
| Filter | {********-****-****-****-************} | X | text/html | V0.26.dat | Dialui-C |
| Filter | {8293D547-38DD-4325-B35A-F1817EDFA5FC} | X | text/html | CASMF.DLL, cmappmf.dll | Adware.CasinoClient |
| Filter | {2AB289AE-4B90-4281-B2AE-1F4BB034B647} | X | text/html | sfcont.dll | RXToolbar |
| Filter | {8253D547-38DD-4325-B35A-F1817EDFA5F5} | X | text/html | plugin.dll | Adware.CasinoClient |
| Filter | {8D42AD12-D7A1-4797-BCB7-AD89E5FCE4F7} | L | text/html | PhoneFilter.dll | PBNext |
| Filter | {6793D547-38DD-4325-B35A-F1817EDFA567} | X | text/html | mfhlp.dll | Adware.CasinoClient |
| Filter | {F79B2338-A6E7-46D4-9201-422AA6E74F43} | L | text/html | EagleFlt.dll | tuEagles_Anti-Porn_parental_controls |
| Filter | {0FA7FD6B-47C3-425B-AE30-36383F1C4503} | X | text/html | ejrwx8drl.dll | QuickLinks/LinkMaker adware variant |
| Filter | {CEA53356-C414-4331-A35E-AA4CE9D8DFA2} | X | text/html | w9seq.dll | AdWare.Win32.Suggestor |
| Filter | {994D478A-45D0-4DB4-AE77-288B1E346E99} | X | text/html | FCAdvice.dll | FCADVICE |
| Filter | {2F6E85DC-8D2D-4896-8A4F-7DF8A7B1749D} | X | text/html | jalmp.dll | Adware-LinkMaker |
| Filter | {D332110E-3EDB-417B-B8E2-297B61C074C6} | X | text/html | OUGHYA~1.DLL | Adware-FFinder |
| Filter | {DA28E0DB-229C-4003-827E-96AE15AD90FB} | X | text/html | x3cqp0.dll | Adware.Suggestor |
| Filter | {65CBAF77-19CA-4B81-86D5-7835D59BEA85} | X | text/html | INTEL.dll, SoMP3.dll, so.dll | Adware-TargetAD |
| Filter | {B5F86455-BF18-4E12-965A-6642A0AC0549} | X | text/html | xeymi.dll | WinFixer |
| Filter | {994D478A-45D0-4DB4-AE27-738B1E346F99} | X | text/html | Batty2.dll | FullContext Pshope |
| Filter | {AE3B25B6-4C21-4038-BD35-99A05B5EF3EB} | X | text/html | s9ndzm6.dll | Quicklinks |
| Filter | {889A88EA-6A7A-44A8-86B6-A568EB90F243} | X | text/html | p2jlseh8.dll | Adware.Suggestor/Quicklinks |
| Filter | {994D478A-45D0-4DB4-AE28-738B1E346F99} | X | text/html | Exolon.dll | CasClient |
| Filter | {99FEA1B2-7881-11D1-A9E2-00403320FCF2} | L | text/html | %Program Files%\Desktop Armor\GeekSuperheroX.dll | Desktop_Armor |
| Filter | {0EB00690-8FA1-11D3-96C7-829E3EA50C29} | X | text/html | Maxthonz.dll, IeFilter.dll, ftpsconfig.dll, QTProxy.dll, mfc313u.dll | WOW chinese malware |
| Protocol | {0EB00690-8FA1-11D3-96C7-829E3EA50C29} | X | text/html | Maxthonz.dll, mfc313u.dll | WOW chinese malware |
| Filter hijack | {0EB00690-8FA1-11D3-96C7-829E3EA50C29} | X | text/html | mimefilte.dll | WOW chinese malware |
| Filter hijack | {07851C6A-1C43-41d9-8319-BC89154A8C00} | X | text/html | httpdchk.dll | TROJ_AGENT.TQZ |
| Filter hijack | {53B95211-7D77-11D2-9F80-00104B107C96} | X | text/html | %WINDIR%\twain_16.dll , %WINDIR%\xmlmimefilter.dll | Use SDFix under supervision, http://andymanchesta.com/SDFix_Changelog.htm |
| Filter hijack | {********-****-****-****-************} | | text/html | %SYSDIR%\msiebbar.dll | Trojan-Downloader.Win32.Agent.wis |
| Filter | {63B95211-7D77-11D2-9F80-00104B107C96} | X | text/html, text/plain | LORUX[^a.dll | CoolWebSearch parasite variant |
| Filter | {55A83695-84E2-49E2-AB1C-6E6733ECD8B4} | X | text/plain | madopew.dll | CoolWebSearch parasite variant |
| Filter | {C51721BE-858B-4A66-A8BF-D2882FF49820} | L | text/x-mrml | MidRadio.ocx | MidRadio Player from Yamaha |
| Filter hijack | {807563E5-5146-11D5-A672-00B0D022E945} | L | text/xml | MSOXMLMF.DLL | Microsoft Office XML Filter |
| Protocol | {CE5CD329-1650-414A-8DB0-4CBF72FAED87} | L | textwareilluminatorbase | textwareilluminatorbaseProtocol.dll | TextWare Illuminator (programming tool) |
| Protocol | {FF76A5DA-6158-4439-99FF-EDC1B3FE100C} | X | tpro | toolbar.dll | IBIS toolbar |
| Protocol | {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} | L | tv | msvidctl.dll | Item taken from whitelist of HijackThis |
| Protocol hijack | {9E754710-6158-11D5-B6CE-0050DAAEA668} | ? | tv | [none listed] | As yet unidentified. Probably WareOut malware |
| Protocol | {CBD30859-AF45-11d2-B6D6-00C04FBBDE6E} | L | tve-trigger | ~none listed~ | TV enhancement HTML trigger |
Engine Version 2.0 by CastleCops