CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

spacer spacer

The CLSID / BHO List / Toolbar Master List

Currently 54019 entries and growing...

This is the Master BHO and Toolbar list copyrighted by Tony Klein and CastleCops. For expert assistance, please post here. The information is collected across the Internet by the CastleCops Team. Usage: please leave feedback requesting permission if you are interested in using this data beyond the approved channels.

BHOList - ToolbarList

KEY:
  • "X" - Certified spyware/foistware, or other malware
  • "L" - Legitimate items
  • "O" - Open to debate
  • "?" - Unknown Status
  • "BHO" - Browser Helper Object
  • "TB" - Toolbar
  • "SH" - R3 URL SearchHook
  • "EB" - IE Explorer Bar

  •   

    ABC List: A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z

    Random sampling...
    OBJECT NAMEGUIDSTATUSFILENAMEDESCRIPTION
    DVA Storm{DEC7717A-5974-46F2-8698-2B490F0FCA08}X BHO lgmxvpatxqs.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    The leosrv{7D787886-3B24-401C-A7BC-AF950A1C3CAC}X TB leosrv.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    CLinkPreviewerObject Object{791A08A6-1CA5-4d13-BA20-1F859E7BDE30}L BHO LinkPreviewerBHO.dll Link_Previewer by PC Magazine Utilities
    &Linx Toolbar{AB51D07A-3947-4C48-8641-728C73CB0FFA}? TB LinxTool.dllUnidentified Toolbar of Chinese origin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    Windows Shell{90297F4A-E974-4C4E-AEA8-742C23FBD405}X BHO licmgr1032.dllUnidentified parasite - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    Loader Class{2E246FAE-8420-11D9-870D-000C2917DE7F}X BHO loader.dllPlatform-A Adult content dialer
    lusrApp Class{8BBC5357-A5C3-4C31-A55C-EDAF0241CDF1}? BHO lusr.dllUnidentified browser plugin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    Class{DA39029C-D291-A968-3FF4-D0990D5CB5FC}X BHO LinkOptimizer.dllDownloader trojan, attempts to connect to various Ukrainian websites - a variant of this trojan
    Rmn plugin{00EBB3B3-DEAD-4440-B1F8-B09DDDB89EF3}X BHO lbbd32.dll, lbcd64.dllPassword stealer, a variant of Trojan.Nethell
    TBSB00459 {0F10DBF5-784D-4BDB-920C-7C3E6DCDB0CD}O BHO l2i_-_insomnia.dllUnidentified Softomate Toolbar - should you have any information about this application, such as its homepage, its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    {20A66F2F-31CE-11D5-8BF7-0090CC12D082}O BHO LightFrameIECOM.dllFor Lightframe monitors
    Longdo Toolbar{8BF27F8B-236F-4b81-AC69-8EB7690E5845}L TB LongdoBar.dllLongdo Toolbar
    Lose Weight Toolbar{6AE02E1C-8859-4F57-9097-5A55A56A4CAF}O TB LoseWeightToolbar.dll Lose_Weight_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.MyTool.f and by Bitdefender as Adware.Eztrack.C
    DVA Storm{F97B50CB-E441-427A-967E-0300347AD03E}X BHO lgmxvpatnpa.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    IconHlprObj Class{03183603-F684-11d2-A17F-00A0C90AE44B}L BHO LockHlpr.dllIconLock
    TBSB09848{9F35CF46-1131-4EB7-A76C-ADF8AA620794}X BHO linksmanager.dll LinksManager_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ah and by Bitdefender as Spyware.Cnsearchbar_DLL
    (no name){********-****-****-****-************}X SH LOPTCON.dll WareOut malware component, using a random Class ID
    Only Best Sex Toolbar{C4F54343-949A-47D4-8D45-460B79426FE5}X TB like_google.dll, obs_2.dll WinThirtyTwo.a adware
    Skyhook Wireless Loki{7F16E247-9F8E-4778-956E-AFEDF3D2FE0C}L TB LokiIe.dllSkyhook Wireless Loki
    Lphant Toolbar Helper{DF47B953-69DF-42C6-B1C1-48D1FFEA725D}X BHO Lphant_Toolbar.dll Lphant P2P filesharing - bundled with WhenUSave adware
    TBSB00225{346C26A5-489D-4857-9B75-CFCC0A1B5528}O BHO livesats.dll LiveSats_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    The leosrv{C31D988D-A314-49BB-BA51-7F57DEE5EA34}X TB leosrv.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    lofsbjbo.dll{270165F1-9F65-569F-F895-F14F58F41072}X BHO lofsbjbo.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    Lyrics Search Tools BHO, ShowBarEx Class{1520CE3B-1C72-48D2-BE2D-7A0044255B36}L BHO lyricsdayToolbar_1.dll Lyricsday Lyrics Search Tools
    ShowBarEx Class{92AB6385-AB63-4EDD-9403-E80ACC09A237}L BHO linkwantoolbar.dll, LINKWA~*.DLL LinkwanToolbar - a toolbar of Chinese origin hailing from linkwan.com - contains various network testing tools
    DVA Storm{52676F4A-D830-4513-BE81-3A0C28B32C2F}X BHO lgmxvpatkmb.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    Locmag{C51C1886-6246-48D4-BA0B-70AFD5A3D672}X TB locmag.dll Locmag_Toolbar adware
    Nick{A30B8EF5-82CA-4789-B77F-9C1C20DF53CB}L TB launchpadtoolbar.dll Nick.com_Launchpad
    DVA Storm{D80F83DA-6FDC-4432-B350-29AABB316D2B}X BHO lgmxvpatamk.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    (no name){12FE2DFD-9644-42F1-AB2E-730552F028D6}X BHO lanbio.dll"ComSpy", a keystroke logger that records both sides of IM's and P2P downloads, then emails the results out - detected by Kaspersky antivirus as Backdoor.Win32.Ulrbot.f
    (no name){81270159-E8F9-4713-9646-03531E0EEF58}X TB LIE1D6FF.DLL, li16a4a6.dllHTMLEdit hijacker
    [full path to file] or " - "{********-****-****-****-************}X BHO lbbho.dll (random Class ID)RelatedLinks adware
    Open LI Toolbar{067C5591-C9FB-4dcc-835F-6CB5DC169D44}O BHO LIToolbar.dll"Li Toolbar", a toolbar of Russian origin hailing from Li.ru
    XBTB00977{C9FD0FB1-0121-4fbf-9B54-DBA85F34D743}X BHO leopardsearch.dll , LEOPAR~1.DLLLeopard Search toolbar - browser hijacker
    Libero{2170AE22-BED6-4BD8-8A30-775F233B45C0}L BHO LiberoDll.dllLibero Toolbar
    DVA Storm{21D27745-1B1A-4A5B-BEFB-7381FAEB5227}X BHO lgmxvpatklf.dllAdware downloader causing false spyware warnings and connecting to rogue "security sites", a member of the Trojan-Downloader.Zlob.Media-Codec aka NewMediaCodec malware family
    LEC{1DBAB667-A486-421e-AFE4-CF07DD0088E5}L TB LEC IE Translation Extension.dll"Translate" translation software
    The leosrv{A3B1F7ED-8EDA-410F-8CB9-F6AFD8301B7C}X TB leosrv.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    Longdo Toolbar{8BF27F8B-236F-4b81-AC69-8EB7690E5845}L TB longdo-98.dll Longdo Toolbar - Thai dictionary search and compilation service
    The leosrv{14E52265-CCA3-4F78-A21B-88F4EE6E78C1}X TB leosrv.dllParasite connecting to rogue "security sites", member of the FakeAlert aka SmitFraud malware family
    TBSB00419{B2A3F2D7-1D0E-4F75-904E-DD81983F9D12}O BHO Layla.dll Layla_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Your choice.
    lijzalit.dll{1C954872-1230-6541-9548-6541025884C1}X BHO lijzalit.dllPassword stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
    LinkedIn Toolbar{BB670D0B-5C46-40C7-B38B-40DD26987723}L TB LinkedInIEToolbar.dllLinkedIn Toolbar
    LiveSearchPro{4D5025F3-F3DA-4300-B598-D45D37ADA74C}X TB LiveSearchPro.dll ToolBar.LiveSearchPro adware
    (no name){8F2183B9-F4DB-4913-8F82-6F9CC42E4CF8}X BHO laf**.dll , laf***.dll (* = random char or digit)Trojan dropper, detected by ESET's Nod32 antivirus as Win32/Hoax.Renos.NAV - a member of the SmitFraud malware family
    LV???—??—{E475BD66-632F-4a5a-A306-8D5FFF8BD2D9}L TB LVDIEAdd.dll LogoVista - Translation software
    Bucket Class{0D7DC475-59EB-4781-985F-A6F5D4E2BC73}X BHO Lie1D6Ff.dll, Iedcb1F5.dllLZIO.com adware
    Love Free Games Toolbar{8DFD5077-FB25-4397-8D9F-ACFB8CC7E34B}X TB lfg-toolbar.dll, LFG-TO~1.DLL LoveFreeGames adware
    LinkPro{AE60ED0D-2009-4F9B-9973-3899E655AF1C}X TB LinkProTB.dllParasite of Korean origin, detected as Win32.Spyware.linkpro
    Her{2A7102DE-1F71-4146-86FD-A722E8AB3489}X BHO lorinhib.dll, procins.dllKeyword hijacker and trojan connecting to meoryprof.info and using seobiz.us as click referer
    {49E0E0F0-5C30-11D4-945D-000000000000}{49E0E0F0-5C30-11D4-945D-000000000000}X BHO lnkchg.dllElectronic Group IEAccess dialer related
    IEFon Toolbar{7FEA0DF4-A118-4318-9FE6-92FEBE24933C}L TB Lunaphone_for_IE.dll Lunaphone IE plugin
    (no name){4A59F6D9-2130-43FD-9565-3795E75ADE5A}? BHO LegiuCheckControl.dllUnidentified browser plugin - should you have any information about this application, such as its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
    LaunchMagic.com, Inc. - IECTRL{30121F5F-E81C-4EC0-A219-3395B0E42EE4}L BHO LMIECTRL.DLLLaunchMagic.com software
    AutoLoginBHO Class{51D72277-601E-4D4C-915D-113E34F61523}L BHO LLB_AL.dll LenderLab autologin

    spacer spacer