CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

spacer spacer

The CLSID / BHO List / Toolbar Master List

Currently 54019 entries and growing...

This is the Master BHO and Toolbar list copyrighted by Tony Klein and CastleCops. For expert assistance, please post here. The information is collected across the Internet by the CastleCops Team. Usage: please leave feedback requesting permission if you are interested in using this data beyond the approved channels.

BHOList - ToolbarList

KEY:
  • "X" - Certified spyware/foistware, or other malware
  • "L" - Legitimate items
  • "O" - Open to debate
  • "?" - Unknown Status
  • "BHO" - Browser Helper Object
  • "TB" - Toolbar
  • "SH" - R3 URL SearchHook
  • "EB" - IE Explorer Bar

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

    Random sampling...
    OBJECT NAMEGUIDSTATUSFILENAMEDESCRIPTION
    Helper Class{DDFF7594-1808-4847-9F31-8EFE47B8EBCC}L BHO GTIEHelper.dll GigaTrust content security software
    XBTP03811{85A3F3A9-CCD8-40e0-95BE-18D218855BCD}O BHO getionaryPL.dll, getionaryEN.dll, GETION~1.DLL Getionary Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this.
    G-Buster Browser Defense ISG{C41A1C0E-EA6C-11D4-B1B8-444553540015}L BHO gbiehisg.dll GAS "G-Buster Browser Defense" - Brazilian e-commerce and e-banking transaction protection software
    Groovy Searches Bar{0EF2F1DA-AA22-5255-47DC-DBBBBAF2F13C}X TB GSBToolBar.dll Groovy_Searches Bar
    Genealogie Werkbalk{DAF44BF7-A45E-4450-979C-91CF07434C3D}O TB genealogiewerkbalk1.2.dll, genealogiewerkbalk*.*.dll, GENEAL~*.DLL Genealogie_Werkbalk - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    glbhoobj Class{73693193-CCBA-43EC-AF93-E6C8DF54698F}X BHO glbho.dll GloboSearch adware
    gktxaspm{10B9E92F-421E-44B2-A093-9DE0F3FAB2BC}X TB gktxaspm.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    Google Gears Helper{E0FEFE40-FBF9-42AE-BA58-794CA7E3FB53}L BHO gears.dllGoogle Gears
    &Gooru Toolbar{12C65305-B33D-4963-8905-C39CC1813C44}L TB GOORUT~1.DLL, goorutoolbar.dllGooru Toolbar
    (no name){7AEB8CAD-3AFE-3393-F6B3-96311A1EA1D4}X SH Gfxxlhdj.dllUnidentified parasite - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    GratisSMS.se Verktygsfält{2D69E865-9291-4428-B482-EC33F183E37F}O TB gratissms.dll GratisSMS.se_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    AntiVirus Toolbar{34650ADE-B14D-486d-AA6E-3D4453A59158}X TB gtb.dll PCSecureSystem , AVSystemCare and other rogue "security software" using false positives as goad to purchase - members of the SmitFraud malware family
    H{F873E8F3-6E4F-4633-8E7A-F61E97E2663E}X BHO gEsy23.dllVariant of the Infostealer.Banker.D trojan
    Gilly Messenger Toolbar{94EE7C62-24B1-4FCC-9EA9-532DAF4EF924}O TB GillyMessenger_Toolbar.dllGilly Messenger
    QXK Olive{8A5F6E49-69D8-4BCC-8F63-8331AD0656ED}X BHO gfetqaxskro.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    Ganges Toolbar{BFB5F154-9212-46F3-B547-AC6106030A54}O TB ganges_toolbar.dll, GANGES~1.DLL Ganges_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Bitdefender antivirus as Adware.Softomate.FU
    GetBar{2DE039A2-4038-4B6F-AE4C-804E9CA99388}L TB getbar.dll Getbar - also see here
    GÃǯ·º½ øÅÙ¹{575B344D-3B8E-434F-9849-BACFE9C7D2F7}L TB Gbar.dllGplus Toolbar provided by Gmarket - also see here
    gxvpsafm {EA815359-2AD7-4BCD-9A11-9AD7DADE2F12}X TB gxvpsafm.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    GuardBar.BHO{62F5BBB6-A71E-46E7-AE78-73D25185EDC8}X BHO GuardBar.dllStingware GuardBar
    GlobalEnglish Toolbar{12F02779-6D88-4958-8AD3-83C12D86ADC7}L TB getb.dll GlobalEnglish Productivity Toolbar
    DVA Gate{DB9D1BB8-3615-48A6-BF50-5CB45AB28230}X BHO gndarmblaor.dll Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    GoldPoll Toolbar{79043293-F03A-4ed3-9E0E-D0D97AB4D937}L TB GoldPoll.dllGoldPoll Toolbar
    XBTP08578{61D49CA5-2743-4139-BD2E-028C99F14C2E}O BHO Guia_Facil_Toolbar.dll, GUIA_F~1.DLL GuiaFacilnet.com.br toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this.
    Google Toolbar Helper{2318C2B1-4965-11d4-9B18-009027A5CD4F}X BHO googletoolbar1.dllMalware, detected as Troj/BHO-DC - NOTE: The CLSID in question is ALSO used by the Google Toolbar, although NOT for the BHO but for the Toolbar itself, see here
    GbiehHK.GBIEHObj{5D76C957-9549-4666-9B5E-A0B480DDC165}X BHO GbiehHK.dllUnidentified password stealer of Brazilian origin - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    gxvpsafm{6B56C8CA-C94E-4DBA-BF1B-6C07AFCC644E}X TB gxvpsafm.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    {68AE7BF6-C47E-44D2-9CCE-90FD6E69A0B0}? TB GDBAR.DLLGames Domain toolbar
    ohb{22DFEAE8-9AD2-4FC6-9CBA-A6566CA3B6EB}X BHO gpstool.dll Begin2Search adware variant connecting to gophersearch.com
    Getionary Toolbar {3FE20A68-5F78-4CF1-A941-3AAA55DE4C9D}O TB getionaryPL.dll, getionaryEN.dll, GETION~1.DLL Getionary Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this.
    Google Accelerator!{********-****-****-****-************}X BHO googlech.dll, googlecb.dll, googleci.dll, googlecd.dll, googlec*.dll, googledw.dll Password stealer, detected by Kaspersky antivirus as Trojan-PSW.Win32.YahooPass.bi
    Greatnet.de - Toolbar{01E69986-A054-4C52-ABE8-EF63DF1C5211}O TB greatnet.dll Greatnet.de Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    {61B5B39F-0750-4637-9D70-A63A79978B5D}L TB gameknot_toolbar.dllGameKnot
    QXK Olive{4B1DD1F9-BC8D-403A-A5E3-3F6B9E7AADFE}X BHO gfetqaxstgm.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    gxvpsafm{63733480-2CC8-4334-8627-35651AAF74F4}X TB gxvpsafm.dllParasite causing false spyware warnings and connecting to fake "security sites" - member of the FakeAlert aka SmitFraud malware family
    QXK Olive{BA00DCFD-75B6-48F2-889A-56595E335AA1}X BHO gfetqaxsvgb.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    H{D11FCCFD-479A-417a-9633-CBDD600E2C6C}X BHO geyrr.dllVariant of the Infostealer.Banker.D trojan
    GigagetIEHelper{111CAA23-6F4F-42AC-8555-B48C1D87BBAB}L BHO gigagetbho_v10.dll Gigaget
    GO{4E7BD74F-2B8D-469E-DDF9-BF2CF4D5FA7D}O BHO TB go.dllGo.Com Toolbar
    GuruNet{E8893D9E-169E-4a05-B0B6-FC5809D1AA77}L TB GuruNetToolbar.dll, GuruNetToolbarU.dllGuruNet
    Google Toolbar Helper{DE8C8BF0-4A16-12DD-CBBD-789569C11983}X BHO GOOGLE~1.DLLUnidentified parasite of Chinese origin - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    &Google Notebook{CCCCCCD3-666F-4F81-8B69-745DE9F6D897}L BHO gnotes*.*.*.*-**********.dll , gnotes*.*.*.**-**********.dll (* = digit)Google Notebook
    XBTP06575{B814DEE4-49A2-4958-B204-F3B17279B663}O BHO gold-factory.dll, GOLD-F~1.DLLgold-factory Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    QXK Olive{968E7D9C-275F-41D8-96B5-B7BD8B12FDEE}X BHO gfetqaxsrnm.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    GC Com Toolbar{A4E1E477-8FEA-4896-AD03-1F85747A0971}O TB gc_com_co.,_ldt.dll, GC_COM~1.DLL GC_Com Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice.
    (no name){EF3446E8-FC32-4E55-9C56-0B8DA015FC10}X BHO GE.dllMalware, detected by Kaspersky antivirus as Trojan-Downloader.Win32.Agent.csp
    Gold Manager{D26AAB3B-B0DD-456C-A7E5-4DA9565FD6EE}X BHO goldmng.dll, goldman.dll, gldmng.dll, gldman.dll gldmanager.dll, GLDMAN~1.DLL, GOLDMA~1.DLLParasite redirecting to fake security sites, member of the FakeAlert aka SmitFraud malware family - produces IEDefender , FilesSecure , MalwareBell , IE_Antivirus or similar popups - also see here
    Google Update Class{ADD57508-1A52-4FAA-A7B3-A3ADE8FAEFEC}O BHO GoopdateBho.dllRelated to the Google Update Service, and part of a Google_Gears install package
    IE 4.x-6.x BHO for GetBar{1C31FF18-DBA7-4201-8504-5C76AEDB0A45}L BHO gbhlp.dll Getbar - also see here
    Go!Zilla IE Helper{E1FF080D-12A3-439A-A2EF-4BA95A3148E8}L BHO GozCatch.dll Go!Zilla download manager and accelerator
    goo?????{D6AEADB4-95D7-475D-BCD8-CBBC3B59A6FE}X TB goostick3.dllGoostick Toolbar, detected as Adware.Win32.Goostick
    GlotBar{58308D8A-FA3F-4ce7-AAFE-0B97A103B491}L TB glotbar.dllGlotbar provided by Interglot.com
    GStartBHO Class{EADD3112-0CF8-444b-AC0F-EBA38E004554}X BHO SH giga32.dll GigaSearch parasite
    Grip Toolbar{4E7BD74F-2B8D-469E-A58D-E56FA49CA83A}X BHO TB gripcz37.dllNetGuide/CursorZone Grip Toolbar - an eUniverse Keenvalue adware variant - also see here
    GX Quick Search{4BA5EA99-21A5-4f7d-84E7-E68F89A0DBF9}L TB GXQuickSearch.dll GXSearch

    spacer spacer