| OBJECT NAME | GUID | STATUS | FILENAME | DESCRIPTION |
|---|
| PopThis! Pop-Up Blocker | {1C7D7C4D-945C-4BB7-B1B9-B25F0A967710} | L TB | PopThisPro.dll | Pop This! Pro |
| MSVPS System | {ACB1497A-9869-44DE-8EBF-7CA6FAC1C2A5} | X BHO | popnetksd.dll | Zlob downloader variant, a member of the SmitFraud malware family |
| CGIEUploader Object, PChome Context Menu | {CCAC9B65-EE47-4164-8EB6-E35C51735831} | ? BHO | PChomeCustMenu.dll | Unidentified browser plugin of Chinese origin, file located in a "Program Files\PChome\Uploader\dll" folder - should you have any information about this application, such as its homepage, its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| pics-factory Toolbar | {81CFC095-AC7A-4B6C-9EBF-9B353A7A7EE2} | X TB | pics-factory.dll, PICS-F~1.DLL | PicsFactory adware |
| CIEIntegrator Object | {5C3F6257-3E00-45C2-88D5-CB0F3A17BF0E} | X BHO | pblock.dll | WinSpyControl - rogue "security software" using false positives as a goad to purchase |
| PC Manager AddOn | {E346072D-A808-4760-A45B-2D563FDB02D2} | X BHO | PCMPoint.dll, PCMPoint1007.dll | Parasite of Korean origin hailing from and detected as PCManager adware |
| {7EED2A74-002E-481F-A283-D96B81EA244B} | L TB | Psukbar.dll | Pepesearch toolbar |
| Translator, Übersetzer | {FF284F5C-7CF9-4682-8701-D467C1DBB99F} | L TB | prmtie.dll, prmtienet.dll | PROMT translation software |
| Parental Control Toolbar | {4E7BD74F-2B8D-469E-9FA5-A33DE8DBE931} | L BHO TB | parentalcontrol.dll, PARENT~1.DLL | ParentalControl Bar |
| PowerSearch | {4E7BD74F-2B8D-469E-D1F0-E56FA787AD2D} | X TB | pwrscznc.dll | KeenValue PowerSearch adware variant, also see here |
| (no name) | {42132494-F48F-4187-ABC8-0F343AD2E465} | X BHO | Pbshmd.dll | PBar/4Arcade parasite |
| CPub Object | {C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53} | L BHO | PopupBlocker.dll | Anonymous Browsing Toolbar |
| Antair Printer Friendly | {8F6E832C-EF18-4B52-9F0D-C54FC8C49C0C} | L BHO | PrinterFriendly.dll | Antair "Printer Friendly" software |
| pjjxadwd.dll | {14FAE856-AD58-20CB-A025-CD4895FA6E41} | X BHO | pjjxadwd.dll | Password stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK
|
| PagoBar | {0A4F47F9-E276-4AE4-83E5-C7D9E476883A} | L TB | PagoBar.dll | PagoBar |
| Pa&nicware Pop-Up Stopper Pro | {B1E741E7-1E77-40D4-9FD8-51949B9CCBD0} | L TB | Popuppro.dll, Psbasic.dll | Pop-Up Stopper Pro |
| Pando Toolbar BHO | {E3EA4FD1-CADE-4ae5-84F7-086EEE888BE4} | O BHO | PANDOBAR.DLL, Uninstall Pando Toolbar.dll | Pando P2P software - adware supported |
| PhatCat ToolBar | {B67A62FA-7054-4335-B04B-FF28C61FF9DB} | L BHO | phattoolbar.dll | PhatBooster |
| Paginas Amarillas | {77FBF9B8-1D37-4FF2-9CED-192D8E3ABA6F} | O TB | paginasamarillas.dll, PAGINA~1.DLL | Paginasamarillas.com Search Bar - a Softomate Toolbar variant. Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Some of the toolbars are fine to have, so every case is different. Your choice. |
| PMInfo | {323C1C57-1E5E-46C0-8AE5-E35610388EB0} | X BHO | pminfo.dll | Parasite of Korean origin hailing from press.co.kr and detected as Adware.PremiereSearch |
| SidebarHelper Class | {AA18152F-C3FC-4045-9743-4441DC658CE7} | L BHO | PS_SidebarBHO.dll, PS_SID~1.DLL | PubSub internet search |
| (no name) | {********-****-****-****-************} | X SH | PasswdMon.dll | WareOut malware component, using a random Class ID |
| AdsCleaner Links Bar | {A8415B7A-F661-4D31-92D7-4398E50483DF} | L TB | Pakiegui.dll | AdsCleaner |
| turfbar | {9501479D-AA75-4F69-8CA6-59C22ADC1B5B} | O TB | pronoturf.dll | Pronoturf_Toolbar - a Softomate Toolbar variant - Softomate customizes toolbars to customers needs. The dll files for their toolbars contain some spyware/adware functionality, although not all of the toolbars use this. Installer detected by Kaspersky antivirus as AdWare.Win32.Mostofate.ah and by Bitdefender as Spyware.Cnsearchbar_DLL |
| Plaxo | {81CA3009-6200-4a6d-93C6-F1E9A6821C7F} | L BHO TB | plx_tlbr.dll | Plaxo IE Toolbar |
| CIEIntegrator Object | {BAA96B4B-D840-412F-B500-25C63B32FCBA} | X BHO | PNPI.dll | PopupNuker Pro - SpywareNuker adware related |
| A2NPopUpKiller Class | {8A321C7D-9CED-45A8-870D-DAE843A45FD0} | L BHO | Popupkiller.dll | Armorwall firewall |
| Msxml2.ServerXMLHTTP.5.0 | {EE95C1EF-38DC-499C-BB21-29387CBBD736} | X BHO | powrprof.ocx | Unidentified parasite - should you have any information about this application, such as for example the site where it was downloaded or installed, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| ViewSource Class | {A76602E1-33ED-4C42-867C-22D031159BFF} | X BHO | pluscashbag.dll | Parasite of Korean origin, detected as PlusCashbag or PlusCB adware |
| PDS Viewer | {5CB10D4A-0C14-4546-865D-935ECBFFA346} | X BHO | pdswin.dll | Downloader trojan, member of the FakeAlert aka SmitFraud malware family - produces IEDefender popups - also see here |
| CGIEUploader Class | {241DF82F-8DD6-4169-ACBE-0650E29D8E5C} | ? BHO | PChomeCustMenu.dll | Unidentified browser plugin of Chinese origin, file located in a "Program Files\PChome\Uploader\dll" folder - should you have any information about this application, such as its homepage or the site where it was downloaded or installed, its exact purpose and whether you did or did not install it wittingly, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks! |
| PhotoPos Pro Toolbar | {A057A204-BACC-4D26-9F9D-3BEFCFBE6E86} | O BHO TB | photoposcomtbr.dll, PHOTOP~1.DLL | PhotoPos toolbar - a VMN_Toolbar variant by Visicom Media, detected as AdWare.Win32.MegaSearch.j or Adware.VMN |
| Flash Module | {C8A3B994-E27A-42f5-A053-C63799E621FB} | X BHO | paruisd.dll, pidfenon.dll, simcard1.dll | Password stealer, a variant of Win32.Trojan-Spy.Banker.EGJ - detected by Kaspersky antivirus as Trojan-Spy.Win32.Banker.fkv |
| TBSB09223 | {0AC375BE-AE02-41AC-A478-0BBB8172D160} | O BHO | pricescan.dll | PriceSCAN_Toolbar - a Softomate Toolbar variant - detected by AntiVir as ADSPY/Agent.mvz |
| Page Update Watcher Toolbar | {376D7598-0F85-4543-8926-91CCD7BE080D} | L TB | PUWToolbar.dll | Page_Update_Watcher Toolbar |
| Pio12.Downloader | {77B97866-F977-451A-8285-F6BC84601C8A} | X BHO | pio12.dll | Agent-BDE trojan |
| &PC-WELT | {5C863CCC-AF2F-4AEE-908A-4EF6F635484D} | L TB | pcwBand.dll | PC-Welt.de Toolbar - see here |
| {790C1F44-C559-434B-BE18-13C042555D8E} | L TB | PhoneShell.dll | Telefoongids |
| XBTP06473 | {1D64667F-517D-4c6f-A3DE-6BB09CEBEA91} | X BHO | phazebar.dll | PhaZe.Toolbar adware |
| IPocketLinker Class | {2630AFBA-31F5-40F1-B054-3E86706F4E06} | L BHO | POCKET~1.DLL, Pocketizer.dll | PocketThis - also see here |
| PowerSearch | {4E7BD74F-2B8D-469E-DFF7-EC7DA787AD2D} | X BHO TB | Pwrsqsim.dll | KeenValue PowerSearch adware variant, also see here |
| PMURLMObj Class | {922C022A-E97F-4FB6-890E-D167DA951D5E} | L BHO | PMURLMon.dll | Related to Samsung_SDS software - should you have any information about this application, such as its exact purpose, do email us. Thanks! |
| &Proxy Toolbar | {21521694-BD6F-11DB-8C39-117D55D89593} | L TB | ProxyToolbar.dll | Proxy_Toolbar - also see here |
| ptjhbhlp.dll | {228DF602-9541-A985-210A-984A698C6F22} | X BHO | ptjhbhlp.dll | Password stealer of Chinese origin detected by Trend Micro as TSPY_ONLINEG.FOK |
| Shinedown Toolbar | {4E7BD74F-2B8D-469E-BCDC-C839F0D3F960} | O BHO TB | prodegetoolbar***.dll, PRODEG~*.DLL | Shinedown Toolbar - a Prodege_Toolbar by Visicom Media |
| P3PObject Class, P3P Client | {00000178-CD4A-447a-BCF9-6FD0096B5527} | L BHO | P3PClient.dll, P3PCLI~*.DLL | AT&T Privacy Bird P3P Client |
| BhoApp Class | {8E9F39F8-40EE-4dd2-A439-2A90224E5DB5} | X BHO | prxsmr.dll | Trojan, detected by Kaspersky antivirus as AdWare.Win32.Agent.cwy
|
| Search with Hinder8 Toolbar | {4E7BD74F-2B8D-469E-BAD3-CE39F0D3F960} | O BHO TB | prodegetoolbar***.dll, PRODEG~*.DLL | Search_with_Hinder8 Toolbar - a Prodege_Toolbar by Visicom Media |
| (no name) | {6113A2ED-1682-4B57-8DF9-1FEF9F6F6CA3} | X BHO SH | PCFreeHelper.dll, PCFREE~1.DLL | PCFree, rogue "security software" of Korean origin using false positives as goad to purchase and detected as Win32.Spyware.PCFree |
| PAYBACK Toolbar Helper | {BCD62654-FC96-4D95-8BF2-9EB17DB750CF} | L BHO | paybacktoolbar.dll | PAYBACK Toolbar |
| PopBlock Class | {A25A30C9-6D9A-46D0-A92C-05ABD82A83AE} | ? BHO | PopupBlocker.dll | Unidentified browser plugin, file located in a Program Files\AdBlocker folder - should you have any information about this application, do email us - if you actually have a copy of the file, please attach it to your email for analysis. Thanks!
|
| psychirise.Framework | {CBA8C1FD-55AC-4866-A3C2-73F55A7D85DC} | X BHO | psychirise.dll | Parasite of Korean origin detected as Win-Adware/Psychirise |
| PynixObj Class | {00000000-DD60-0064-6EC2-6E0100000000} | X BHO | Pynix.dll | Transponder aka BetterInternet adware variant |
| Prog.Hu | {11111111-199F-4489-8628-2AB8259FEA17} | L TB | ProghuBar.dll, PROGHU~1.DLL | Prog.hu toolbar |
| porlospelos Toolbar | {D940F380-49C7-4A05-9E33-53930AF5768F} | X TB | porlospelos.dll | Porlospelos.com Toolbar |