| OBJECT NAME | GUID | STATUS | FILENAME | DESCRIPTION |
|---|
| DVA Storm | {DEC7717A-5974-46F2-8698-2B490F0FCA08} | X BHO | lgmxvpatxqs.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| The leosrv | {7D787886-3B24-401C-A7BC-AF950A1C3CAC} | X TB | leosrv.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| CLinkPreviewerObject Object | {791A08A6-1CA5-4d13-BA20-1F859E7BDE30} | L BHO | LinkPreviewerBHO.dll | Link_Previewer by PC Magazine Utilities |
| &Linx Toolbar | {AB51D07A-3947-4C48-8641-728C73CB0FFA} | ? TB | LinxTool.dll | Unidentified Toolbar of Chinese origin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| Windows Shell | {90297F4A-E974-4C4E-AEA8-742C23FBD405} | X BHO | licmgr1032.dll | Unidentified parasite - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| Loader Class | {2E246FAE-8420-11D9-870D-000C2917DE7F} | X BHO | loader.dll | Platform-A Adult content dialer |
| lusrApp Class | {8BBC5357-A5C3-4C31-A55C-EDAF0241CDF1} | ? BHO | lusr.dll | Unidentified browser plugin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| Class | {DA39029C-D291-A968-3FF4-D0990D5CB5FC} | X BHO | LinkOptimizer.dll | Downloader trojan, attempts to connect to various Ukrainian websites - a variant of this trojan |
| Rmn plugin | {00EBB3B3-DEAD-4440-B1F8-B09DDDB89EF3} | X BHO | lbbd32.dll, lbcd64.dll | Password stealer, a variant of Trojan.Nethell |
| TBSB00459 | {0F10DBF5-784D-4BDB-920C-7C3E6DCDB0CD} | O BHO | l2i_-_insomnia.dll | Unidentified Softomate Toolbar - should you have any information about this application, such as its homepage, its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| {20A66F2F-31CE-11D5-8BF7-0090CC12D082} | O BHO | LightFrameIECOM.dll | For Lightframe monitors |
| Longdo Toolbar | {8BF27F8B-236F-4b81-AC69-8EB7690E5845} | L TB | LongdoBar.dll | Longdo Toolbar |
| Lose Weight Toolbar | {6AE02E1C-8859-4F57-9097-5A55A56A4CAF} | O TB | LoseWeightToolbar.dll | Lose_Weight_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.MyTool.f and by Bitdefender as Adware.Eztrack.C |
| DVA Storm | {F97B50CB-E441-427A-967E-0300347AD03E} | X BHO | lgmxvpatnpa.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| IconHlprObj Class | {03183603-F684-11d2-A17F-00A0C90AE44B} | L BHO | LockHlpr.dll | IconLock |
| TBSB09848 | {9F35CF46-1131-4EB7-A76C-ADF8AA620794} | X BHO | linksmanager.dll | LinksManager_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ah and by Bitdefender as Spyware.Cnsearchbar_DLL |
| (no name) | {********-****-****-****-************} | X SH | LOPTCON.dll | WareOut malware component, using a random Class ID |
| Only Best Sex Toolbar | {C4F54343-949A-47D4-8D45-460B79426FE5} | X TB | like_google.dll, obs_2.dll | WinThirtyTwo.a adware |
| Skyhook Wireless Loki | {7F16E247-9F8E-4778-956E-AFEDF3D2FE0C} | L TB | LokiIe.dll | Skyhook Wireless Loki |
| Lphant Toolbar Helper | {DF47B953-69DF-42C6-B1C1-48D1FFEA725D} | X BHO | Lphant_Toolbar.dll | Lphant P2P filesharing - bundled with WhenUSave adware |
| TBSB00225 | {346C26A5-489D-4857-9B75-CFCC0A1B5528} | O BHO | livesats.dll | LiveSats_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| The leosrv | {C31D988D-A314-49BB-BA51-7F57DEE5EA34} | X TB | leosrv.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| lofsbjbo.dll | {270165F1-9F65-569F-F895-F14F58F41072} | X BHO | lofsbjbo.dll | Password stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK |
| Lyrics Search Tools BHO, ShowBarEx Class | {1520CE3B-1C72-48D2-BE2D-7A0044255B36} | L BHO | lyricsdayToolbar_1.dll | Lyricsday Lyrics Search Tools |
| ShowBarEx Class | {92AB6385-AB63-4EDD-9403-E80ACC09A237} | L BHO | linkwantoolbar.dll, LINKWA~*.DLL | LinkwanToolbar - a toolbar of Chinese origin hailing from linkwan.com - contains various network testing tools |
| DVA Storm | {52676F4A-D830-4513-BE81-3A0C28B32C2F} | X BHO | lgmxvpatkmb.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| Locmag | {C51C1886-6246-48D4-BA0B-70AFD5A3D672} | X TB | locmag.dll | Locmag_Toolbar adware
|
| Nick | {A30B8EF5-82CA-4789-B77F-9C1C20DF53CB} | L TB | launchpadtoolbar.dll | Nick.com_Launchpad |
| DVA Storm | {D80F83DA-6FDC-4432-B350-29AABB316D2B} | X BHO | lgmxvpatamk.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| (no name) | {12FE2DFD-9644-42F1-AB2E-730552F028D6} | X BHO | lanbio.dll | "ComSpy", a keystroke logger that records both sides of IM's and P2P downloads, then emails the results out - detected by Kaspersky antivirus as Backdoor.Win32.Ulrbot.f |
| (no name) | {81270159-E8F9-4713-9646-03531E0EEF58} | X TB | LIE1D6FF.DLL, li16a4a6.dll | HTMLEdit hijacker |
| [full path to file] or " - " | {********-****-****-****-************} | X BHO | lbbho.dll (random Class ID) | RelatedLinks adware |
| Open LI Toolbar | {067C5591-C9FB-4dcc-835F-6CB5DC169D44} | O BHO | LIToolbar.dll | "Li Toolbar", a toolbar of Russian origin hailing from Li.ru |
| XBTB00977 | {C9FD0FB1-0121-4fbf-9B54-DBA85F34D743} | X BHO | leopardsearch.dll , LEOPAR~1.DLL | Leopard Search toolbar - browser hijacker |
| Libero | {2170AE22-BED6-4BD8-8A30-775F233B45C0} | L BHO | LiberoDll.dll | Libero Toolbar |
| DVA Storm | {21D27745-1B1A-4A5B-BEFB-7381FAEB5227} | X BHO | lgmxvpatklf.dll | Adware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family |
| LEC | {1DBAB667-A486-421e-AFE4-CF07DD0088E5} | L TB | LEC IE Translation Extension.dll | "Translate" translation software |
| The leosrv | {A3B1F7ED-8EDA-410F-8CB9-F6AFD8301B7C} | X TB | leosrv.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| Longdo Toolbar | {8BF27F8B-236F-4b81-AC69-8EB7690E5845} | L TB | longdo-98.dll | Longdo Toolbar - Thai dictionary search and compilation service |
| The leosrv | {14E52265-CCA3-4F78-A21B-88F4EE6E78C1} | X TB | leosrv.dll | Parasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family |
| TBSB00419 | {B2A3F2D7-1D0E-4F75-904E-DD81983F9D12} | O BHO | Layla.dll | Layla_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice. |
| lijzalit.dll | {1C954872-1230-6541-9548-6541025884C1} | X BHO | lijzalit.dll | Password stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
|
| LinkedIn Toolbar | {BB670D0B-5C46-40C7-B38B-40DD26987723} | L TB | LinkedInIEToolbar.dll | LinkedIn Toolbar |
| LiveSearchPro | {4D5025F3-F3DA-4300-B598-D45D37ADA74C} | X TB | LiveSearchPro.dll | ToolBar.LiveSearchPro adware |
| (no name) | {8F2183B9-F4DB-4913-8F82-6F9CC42E4CF8} | X BHO | laf**.dll , laf***.dll (* = random char or digit) | Trojan dropper, detected by ESET's Nod32 antivirus as Win32/Hoax.Renos.NAV - a member of the SmitFraud malware family |
| LV???—??— | {E475BD66-632F-4a5a-A306-8D5FFF8BD2D9} | L TB | LVDIEAdd.dll | LogoVista - Translation software |
| Bucket Class | {0D7DC475-59EB-4781-985F-A6F5D4E2BC73} | X BHO | Lie1D6Ff.dll, Iedcb1F5.dll | LZIO.com adware |
| Love Free Games Toolbar | {8DFD5077-FB25-4397-8D9F-ACFB8CC7E34B} | X TB | lfg-toolbar.dll, LFG-TO~1.DLL | LoveFreeGames adware |
| LinkPro | {AE60ED0D-2009-4F9B-9973-3899E655AF1C} | X TB | LinkProTB.dll | Parasite of Korean origin, detected as Win32.Spyware.linkpro |
| Her | {2A7102DE-1F71-4146-86FD-A722E8AB3489} | X BHO | lorinhib.dll, procins.dll | Keyword hijacker and trojan connecting to meoryprof.info and using seobiz.us as click referer |
| {49E0E0F0-5C30-11D4-945D-000000000000} | {49E0E0F0-5C30-11D4-945D-000000000000} | X BHO | lnkchg.dll | Electronic Group IEAccess dialer related |
| IEFon Toolbar | {7FEA0DF4-A118-4318-9FE6-92FEBE24933C} | L TB | Lunaphone_for_IE.dll | Lunaphone IE plugin |
| (no name) | {4A59F6D9-2130-43FD-9565-3795E75ADE5A} | ? BHO | LegiuCheckControl.dll | Unidentified browser plugin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| LaunchMagic.com, Inc. - IECTRL | {30121F5F-E81C-4EC0-A219-3395B0E42EE4} | L BHO | LMIECTRL.DLL | LaunchMagic.com software |
| AutoLoginBHO Class | {51D72277-601E-4D4C-915D-113E34F61523} | L BHO | LLB_AL.dll | LenderLab autologin |