home *** CD-ROM | disk | FTP | other *** search
/ Chip 2005 April / CHIP_CD_2005-04.iso / software / superutil_hit / files / su.exe / {app} / bho.mdb / BHO.json next >
JavaScript Object Notation  |  2004-11-21  |  180KB

  1. {
  2.     "schema": {
  3.         "CLSID": "Text (100)",
  4.         "RISK": "Text (100)",
  5.         "FILES": "Text (200)",
  6.         "NAME": "Text (100)",
  7.         "URL": "Text (200)",
  8.         "modified": "Long Integer",
  9.         "comments": "Text (255)"
  10.     },
  11.     "data": [
  12.         {
  13.             "CLSID": "{00000000-0000-0000-0000-000000000000}",
  14.             "RISK": "high",
  15.             "FILES": " CnbarIE.dll, Cnbabe.dll",
  16.             "NAME": "Commonname toolbar",
  17.             "URL": " http://www.doxdesk.com/parasite/CommonName.html ",
  18.             "modified": 0
  19.         },
  20.         {
  21.             "CLSID": "{00000000-0000-0000-0000-000000000001}",
  22.             "RISK": "high",
  23.             "FILES": " safesearch.dll",
  24.             "NAME": "AutoSearch",
  25.             "URL": " http://www.doxdesk.com/parasite/AutoSearch.html ",
  26.             "modified": 0
  27.         },
  28.         {
  29.             "CLSID": "{00000000-0000-0000-0000-000000000001}",
  30.             "RISK": "high",
  31.             "FILES": " MSXMLFILT.DLL ",
  32.             "NAME": "CWS hijacker",
  33.             "modified": 0
  34.         },
  35.         {
  36.             "CLSID": "{00000000-0000-0000-0000-000000000221}",
  37.             "RISK": "high",
  38.             "FILES": " CSIE.DLL",
  39.             "NAME": "IgetNet/ClearSearch",
  40.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/IGetNet.html\\\" target=\\\"_blank\\\">IgetNet/ClearSearch</a>",
  41.             "modified": 0
  42.         },
  43.         {
  44.             "CLSID": "{00000000-0000-0000-0000-000000000240}",
  45.             "RISK": "high",
  46.             "FILES": " IE_ClrSch.dll ",
  47.             "NAME": "IgetNet/ClearSearch",
  48.             "URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
  49.             "modified": 0
  50.         },
  51.         {
  52.             "CLSID": "{00000000-0000-5DFC-5652-1705043F6518}",
  53.             "RISK": "high",
  54.             "FILES": " audiosrv32.dll ",
  55.             "NAME": "\\\"TX 4\\\" BrowserAd adware",
  56.             "modified": 0
  57.         },
  58.         {
  59.             "CLSID": "{00000000-0000-7EBF-57C6-0BAE047EA682}",
  60.             "RISK": "high",
  61.             "FILES": " autodisc32.dll",
  62.             "NAME": "\"TX 4\" BrowserAd adware",
  63.             "modified": 0
  64.         },
  65.         {
  66.             "CLSID": "{00000000-0001-0345-2280-0287F27A63EE}",
  67.             "RISK": "high",
  68.             "FILES": " Browserad.dll",
  69.             "NAME": "\"TX 4\" BrowserAd adware",
  70.             "modified": 0
  71.         },
  72.         {
  73.             "CLSID": "{00000000-0001-1DBE-075A-39EC04BD88AF}",
  74.             "RISK": "high",
  75.             "FILES": " Avicap32.dll",
  76.             "NAME": "\\\"TX 4\\\" BrowserAd adware",
  77.             "modified": 0
  78.         },
  79.         {
  80.             "CLSID": "{00000000-0001-F7A6-1F38-0204019E355E}",
  81.             "RISK": "high",
  82.             "FILES": " Asferror32.dll",
  83.             "NAME": "\"TX 4\" BrowserAd adware",
  84.             "modified": 0
  85.         },
  86.         {
  87.             "CLSID": "{00000000-0002-0002-0000-000000000000}",
  88.             "RISK": "none",
  89.             "FILES": " siaiep.dll",
  90.             "NAME": "Steganos Internet Anonym 6",
  91.             "URL": " http://www.steganos.com/en/sia/ ",
  92.             "modified": 0
  93.         },
  94.         {
  95.             "CLSID": "{00000000-0002-53D4-0622-35EA0235778E}",
  96.             "RISK": "high",
  97.             "FILES": " Ati2dvaa32.dll",
  98.             "NAME": "\"TX 4\" BrowserAd adware",
  99.             "modified": 0
  100.         },
  101.         {
  102.             "CLSID": "{00000000-0007-5041-4354-0020e48020af}",
  103.             "RISK": "none",
  104.             "FILES": " 12Popup.dll",
  105.             "NAME": "12Ghosts Popup Killer",
  106.             "URL": " http://12ghosts.com/ghosts/popup.htm ",
  107.             "modified": 0
  108.         },
  109.         {
  110.             "CLSID": "{00000000-0008-5041-4354-0020e48020af}",
  111.             "RISK": "none",
  112.             "FILES": " 12popup.dll",
  113.             "NAME": "12Ghosts Popup Killer",
  114.             "URL": " <a href=\\\"http://12ghosts.com/ghosts/popup.htm\\\" TARGET=\\\"_blank\\\">12Ghosts Popup Killer</a>",
  115.             "modified": 0
  116.         },
  117.         {
  118.             "CLSID": "{00000000-0008-D357-0798-004401965D4A}",
  119.             "RISK": "high",
  120.             "FILES": " apphelp32.dll",
  121.             "NAME": "\"TX 4\" BrowserAd adware",
  122.             "modified": 0
  123.         },
  124.         {
  125.             "CLSID": "{00000000-0009-1C42-7D61-6CFF050894A7}",
  126.             "RISK": "high",
  127.             "FILES": " avisynthEx32.dll",
  128.             "NAME": "\\\"TX 4\\\" BrowserAd adware",
  129.             "modified": 0
  130.         },
  131.         {
  132.             "CLSID": "{00000000-0015-BD9C-263A-493001BA0C6C}",
  133.             "RISK": "high",
  134.             "FILES": " asycfilt32.dll",
  135.             "NAME": "\"TX 4\" BrowserAd adware",
  136.             "modified": 0
  137.         },
  138.         {
  139.             "CLSID": "{00000000-0033-C1AC-0E62-0C1F0537605D}",
  140.             "RISK": "high",
  141.             "FILES": " aviwrap32.dll",
  142.             "NAME": "\\\"TX 4\\\" BrowserAd adware",
  143.             "modified": 0
  144.         },
  145.         {
  146.             "CLSID": "{00000000-008C-1E65-6AA6-3A270279F027}",
  147.             "RISK": "high",
  148.             "FILES": " Ati2dvag32.dll",
  149.             "NAME": "\"TX 4\" BrowserAd adware",
  150.             "modified": 0
  151.         },
  152.         {
  153.             "CLSID": "{00000000-00FA-71ED-4ABA-348801BAA0A9}",
  154.             "RISK": "high",
  155.             "FILES": " Athprxy32.dll",
  156.             "NAME": "\"TX 4\" BrowserAd adware",
  157.             "modified": 0
  158.         },
  159.         {
  160.             "CLSID": "{00000000-0C95-B1F8-547A-405204D6961A}",
  161.             "RISK": "high",
  162.             "FILES": " avifile32.dll",
  163.             "NAME": "\"TX 4\" BrowserAd adware",
  164.             "modified": 0
  165.         },
  166.         {
  167.             "CLSID": "{00000000-5eb9-11d5-9d45-009027c14662}",
  168.             "RISK": "high",
  169.             "FILES": " ehelper.dll, VX2.dll",
  170.             "NAME": "VX2 Respondmiter",
  171.             "URL": " Blackstone Transponder http://www.doxdesk.com/parasite/Transponder.html ",
  172.             "modified": 0
  173.         },
  174.         {
  175.             "CLSID": "{00000000-623A-11D4-BCDB-005004131771}",
  176.             "RISK": "none",
  177.             "FILES": " Vgiehelper1-2-0-27.dll",
  178.             "NAME": "Videogate VG Companion",
  179.             "URL": " http://www.videogate.com/prod_overview.asp ",
  180.             "modified": 0
  181.         },
  182.         {
  183.             "CLSID": "{00000000-D9E3-4BC6-A0BD-3D0CA4BE5271}",
  184.             "RISK": "high",
  185.             "FILES": " Fhfmm.dll",
  186.             "NAME": "AdBreak",
  187.             "URL": " http://www.doxdesk.com/parasite/AdBreak.html ",
  188.             "modified": 0
  189.         },
  190.         {
  191.             "CLSID": "{0000001D-BA9B-11D2-BDF1-0090272A6D78}",
  192.             "RISK": "medium",
  193.             "FILES": " smbar.dll",
  194.             "NAME": "Surfmonkey",
  195.             "URL": " http://www.cexx.org/surfmonk.htm ",
  196.             "modified": 0
  197.         },
  198.         {
  199.             "CLSID": "{000000DA-0786-4633-87C6-1AA7A4429EF1}",
  200.             "RISK": "high",
  201.             "FILES": " emesx.dll",
  202.             "NAME": "FavoriteMan",
  203.             "URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
  204.             "modified": 0
  205.         },
  206.         {
  207.             "CLSID": "{000000F1-34E3-4633-87C6-1AA7A44296DA}",
  208.             "RISK": "high",
  209.             "FILES": " FOne.dll",
  210.             "NAME": "FavoriteMan/FOne",
  211.             "URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
  212.             "modified": 0
  213.         },
  214.         {
  215.             "CLSID": "{00000178-CD4A-447a-BCF9-6FD0096B5527}",
  216.             "RISK": "none",
  217.             "FILES": " P3PClient.dll, \\P3PCLI~1.DLL",
  218.             "NAME": "AT&T Privacy Bird P3P Client",
  219.             "URL": " http://www.privacybird.com/ ",
  220.             "modified": 0
  221.         },
  222.         {
  223.             "CLSID": "{00000185-B716-11D3-92F3-00D0B709A7D8}",
  224.             "RISK": "high",
  225.             "FILES": " BHO010~2.DLL",
  226.             "NAME": "InternetBillingSolution",
  227.             "modified": 0
  228.         },
  229.         {
  230.             "CLSID": "{00000185-C745-43D2-44F1-01A1C789C738}",
  231.             "RISK": "high",
  232.             "FILES": " BHO010~1 (dll)",
  233.             "NAME": "Smartbrowser",
  234.             "URL": " http://www.doxdesk.com/parasite/SmartBrowser.html ",
  235.             "modified": 0
  236.         },
  237.         {
  238.             "CLSID": "{0000026A-8230-4DD4-BE4F-6889D1E74167}",
  239.             "RISK": "high",
  240.             "FILES": " Tps108.dll",
  241.             "NAME": "Transponder",
  242.             "URL": " http://www.doxdesk.com/parasite/Transponder.html ",
  243.             "modified": 0
  244.         },
  245.         {
  246.             "CLSID": "{00000273-8230-4DD4-BE4F-6889D1E74167}",
  247.             "RISK": "high",
  248.             "FILES": " host.dll",
  249.             "NAME": "Transponder",
  250.             "URL": " http://www.doxdesk.com/parasite/Transponder.html ",
  251.             "modified": 0
  252.         },
  253.         {
  254.             "CLSID": "{00000285-B716-11D3-92F3-00D0B709A7D8}",
  255.             "RISK": "none",
  256.             "FILES": " iDcide.dll",
  257.             "NAME": "iDcide Privacy Companion",
  258.             "URL": " http://www.idcide.com/pages/per_intro.htm ",
  259.             "modified": 0
  260.         },
  261.         {
  262.             "CLSID": "{000004CC-E4FF-4F2C-BC30-DBEF0B983BC9}",
  263.             "RISK": "high",
  264.             "FILES": " Ipinsigt.dll",
  265.             "NAME": "IPInsight",
  266.             "URL": " http://www.doxdesk.com/parasite/IPInsight.html ",
  267.             "modified": 0
  268.         },
  269.         {
  270.             "CLSID": "{00000580-C637-11D5-831C-00105AD6ACF0}",
  271.             "RISK": "high",
  272.             "FILES": " Msview.dll",
  273.             "NAME": "VX2 Transponder variant",
  274.             "URL": " http://www.doxdesk.com/parasite/Transponder.html ",
  275.             "modified": 0
  276.         },
  277.         {
  278.             "CLSID": "{000006B1-19B5-414A-849F-2A3C64AE6939}",
  279.             "RISK": "high",
  280.             "FILES": " bi.dll",
  281.             "NAME": "VX2.aBetterInternet",
  282.             "URL": " http://www.doxdesk.com/parasite/Transponder.html ",
  283.             "modified": 0
  284.         },
  285.         {
  286.             "CLSID": "{00000762-3965-4A1A-98CE-3D4BF457D4C8}",
  287.             "RISK": "high",
  288.             "FILES": " sidesearch.dll, sidesearch****.dll ( * = digit)",
  289.             "NAME": "Lycos Sidesearch",
  290.             "URL": " http://install.sidesearch.lycos.com/install/default.asp ",
  291.             "modified": 0
  292.         },
  293.         {
  294.             "CLSID": "{00000EF1-0786-4633-87C6-1AA7A44296DA}",
  295.             "RISK": "high",
  296.             "FILES": " n3tpa1p.dll, Calsdr.dll, Gr0*.dll (* = digit), td1.dll, random file names",
  297.             "NAME": "FavoriteMan",
  298.             "URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
  299.             "modified": 0
  300.         },
  301.         {
  302.             "CLSID": "{00000EF1-34E3-4633-87C6-1AA7A44296DA}",
  303.             "RISK": "high",
  304.             "FILES": " F1.dll, mpz300.dll, ZZ.dll, ***.dll (random chars)",
  305.             "NAME": "FavoriteMan",
  306.             "URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
  307.             "modified": 0
  308.         },
  309.         {
  310.             "CLSID": "{000020DD-C72E-4113-AF77-DD56626C6C42}",
  311.             "RISK": "high",
  312.             "FILES": " twaintec.dll",
  313.             "NAME": "TwainTech adware",
  314.             "modified": 0
  315.         },
  316.         {
  317.             "CLSID": "{0000607D-D204-42C7-8E46-216055BF9918}",
  318.             "RISK": "high",
  319.             "FILES": " mxTarget.dll",
  320.             "NAME": "Twain-Tech",
  321.             "URL": " <a href=\\\"http://www.pestpatrol.com/PestInfo/t/twain-tech.asp\\\" target=\\\"_blank\\\">Twain-Tech</a>",
  322.             "modified": 0
  323.         },
  324.         {
  325.             "CLSID": "{0000CC75-ACF3-4cac-A0A9-DD3868E06852}",
  326.             "RISK": "medium",
  327.             "FILES": " Dapbho.dll",
  328.             "NAME": "DAP",
  329.             "URL": " http://www.speedbit.com/DefaultT.asp? ",
  330.             "modified": 0
  331.         },
  332.         {
  333.             "CLSID": "{00010a21-b924-4cd6-893c-eea1071ae8b3}",
  334.             "RISK": "high",
  335.             "FILES": " PCDBS.DLL",
  336.             "NAME": "AdsStore",
  337.             "modified": 0
  338.         },
  339.         {
  340.             "CLSID": "{00041A26-7033-432C-94C7-6371DE343822}",
  341.             "RISK": "high",
  342.             "FILES": " scbar.dll, winex.dll, se.dll",
  343.             "NAME": "SearchEnhancement hijacker",
  344.             "URL": " http://www.doxdesk.com/parasite/SCBar.html ",
  345.             "modified": 0
  346.         },
  347.         {
  348.             "CLSID": "{000E7270-CC7A-0786-8E7A-DA09B51938A6}",
  349.             "RISK": "high",
  350.             "FILES": " n3tpa1.dll, netpals.dll",
  351.             "NAME": "NetPal",
  352.             "URL": " http://www.doxdesk.com/parasite/NetPal.html ",
  353.             "modified": 0
  354.         },
  355.         {
  356.             "CLSID": "{00110011-4B0B-44D5-9718-90C88817369B}",
  357.             "RISK": "high",
  358.             "FILES": " NavExt.dll, sys_ext.dll",
  359.             "NAME": "CoolWebSearch parasite variant",
  360.             "modified": 0
  361.         },
  362.         {
  363.             "CLSID": "{0019C3E2-DD48-4A6D-AB2D-8D32436313D9}",
  364.             "RISK": "high",
  365.             "FILES": " oo4.dll, bsx5.dll",
  366.             "NAME": "BookedSpace",
  367.             "URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
  368.             "modified": 0
  369.         },
  370.         {
  371.             "CLSID": "{0019C3E2-DD48-4A6D-ABCD-8D32436313D9}",
  372.             "RISK": "high",
  373.             "FILES": " bxsx5.dll",
  374.             "NAME": "BookedSpace",
  375.             "modified": 0
  376.         },
  377.         {
  378.             "CLSID": "{0019C3E2-DD48-4A6D-ABCD-8D32436323D9}",
  379.             "RISK": "high",
  380.             "FILES": " bxxs5.dll",
  381.             "NAME": "BookedSpace",
  382.             "modified": 0
  383.         },
  384.         {
  385.             "CLSID": "{001DAE60-95C0-11d3-924E-009027950886}",
  386.             "RISK": "high",
  387.             "FILES": " Spotonbh.dll",
  388.             "NAME": "WebSearch",
  389.             "URL": " http://www.spywareguide.com/product_show.php?id=505 ",
  390.             "modified": 0
  391.         },
  392.         {
  393.             "CLSID": "{001F2470-5DF5-11d3-B991-00A0C9BB0874}",
  394.             "RISK": "high",
  395.             "FILES": " AtHocTBr.DLL",
  396.             "NAME": "AtHoc Toolbar",
  397.             "URL": " http://www.athoc.com/site/products/portalToolbar.asp ",
  398.             "modified": 0
  399.         },
  400.         {
  401.             "CLSID": "{001F2570-5DF5-11d3-B991-00A0C9BB0874}",
  402.             "RISK": "medium",
  403.             "FILES": " Ebayband.dll",
  404.             "NAME": "Ebay Toolbar",
  405.             "URL": " http://pages.ebay.com/ebay_toolbar/ ",
  406.             "modified": 0
  407.         },
  408.         {
  409.             "CLSID": "{004A5840-FF59-11d2-B50D-0090271D3FD4}",
  410.             "RISK": "none",
  411.             "FILES": " ?",
  412.             "NAME": "Yahoo Companion!",
  413.             "URL": " http://companion.yahoo.com/ ",
  414.             "modified": 0
  415.         },
  416.         {
  417.             "CLSID": "{004B23E0-1E63-4ED6-BCAC-922BA26CF096}",
  418.             "RISK": "none",
  419.             "FILES": " PBBHO.dll",
  420.             "NAME": "Wincognito popup blocker",
  421.             "modified": 0
  422.         },
  423.         {
  424.             "CLSID": "{0055C089-8582-441B-A0BF-17B458C2A3A8}",
  425.             "RISK": "none",
  426.             "FILES": " IDMIECC.dll",
  427.             "NAME": "Internet Download Manager",
  428.             "modified": 0
  429.         },
  430.         {
  431.             "CLSID": "{00673769-777F-4814-BE0F-74CBA1D823B8}",
  432.             "RISK": "high",
  433.             "FILES": " Iehook.dll",
  434.             "NAME": "Malware taking advantage of the ASN.1 exploit",
  435.             "modified": 0
  436.         },
  437.         {
  438.             "CLSID": "{0096CC0A-623C-4829-AD9C-19AF0DC9D8FE}",
  439.             "RISK": "medium",
  440.             "FILES": " Dapiebar.dll",
  441.             "NAME": "DAP",
  442.             "URL": " http://www.speedbit.com/DefaultT.asp? ",
  443.             "modified": 0
  444.         },
  445.         {
  446.             "CLSID": "{00A0A40C-F432-4C59-BA11-B25D142C7AB7}",
  447.             "RISK": "high",
  448.             "FILES": " 2IN***~1.DLL, (* = random char), mskceo.dll",
  449.             "NAME": "ClientMan",
  450.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  451.             "modified": 0
  452.         },
  453.         {
  454.             "CLSID": "{00A6FAF1-072E-44cf-8957-5838F569A31D}",
  455.             "RISK": "medium",
  456.             "FILES": " MWSSRCAS.DLL",
  457.             "NAME": "MyWebSearch",
  458.             "URL": " http://www.doxdesk.com/parasite/MySearch.html ",
  459.             "modified": 0
  460.         },
  461.         {
  462.             "CLSID": "{00C6482D-C502-44C8-8409-FCE54AD9C208}",
  463.             "RISK": "none",
  464.             "FILES": " SnagItBHO.dll",
  465.             "NAME": "SnagIt",
  466.             "URL": " http://www.techsmith.com/products/snagit/default.asp ",
  467.             "modified": 0
  468.         },
  469.         {
  470.             "CLSID": "{00D6A7E7-4A97-456f-848A-3B75BF7554D7}",
  471.             "RISK": "high",
  472.             "FILES": " PerfectNavBHO.dll, PERFEC~1.DLL",
  473.             "NAME": "IncrediFind variant",
  474.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/KeenValue.html\\\">IncrediFind variant</a>",
  475.             "modified": 0
  476.         },
  477.         {
  478.             "CLSID": "{00F16DC8-1B2A-42F4-B18B-E21DA9D2D7FD}",
  479.             "RISK": "high",
  480.             "FILES": " 01A00.DLL",
  481.             "NAME": "SubSearch parasite variant",
  482.             "modified": 0
  483.         },
  484.         {
  485.             "CLSID": "{014DA6C1-189F-421a-88CD-07CFE51CFF10}",
  486.             "RISK": "high",
  487.             "FILES": " eXacttoolbar.dll, S4bar.dll",
  488.             "NAME": "ExactSearch or MySearch",
  489.             "URL": " http://www.doxdesk.com/parasite/eXactSearch.html http://doxdesk.com/parasite/MySearch.html ",
  490.             "modified": 0
  491.         },
  492.         {
  493.             "CLSID": "{014DA6C9-189F-421a-88CD-07CFE51CFF10}",
  494.             "RISK": "high",
  495.             "FILES": " S4bar.dll, Mybar.dll",
  496.             "NAME": "MySearch",
  497.             "URL": " http://doxdesk.com/parasite/MySearch.html ",
  498.             "modified": 0
  499.         },
  500.         {
  501.             "CLSID": "{01A7812B-59E8-4A4F-BFD6-EEE6D4CB6BA2}",
  502.             "RISK": "none",
  503.             "FILES": " Tiscali BBar.dll  ",
  504.             "NAME": "Tiscali France",
  505.             "URL": " <a href=\\\"http://login.tiscali.fr/default.php\\\" target=\\\"_blank\\\">Tiscali France</a>",
  506.             "modified": 0
  507.         },
  508.         {
  509.             "CLSID": "{01C5BF6C-E699-4CD7-BEA1-786FA05C83AB}",
  510.             "RISK": "high",
  511.             "FILES": " AproposPlugin.dll",
  512.             "NAME": "PeopleOnPage/AproposMedia",
  513.             "URL": " http://www.doxdesk.com/parasite/AproposMedia.html ",
  514.             "modified": 0
  515.         },
  516.         {
  517.             "CLSID": "{01E04581-4EEE-11D0-BFE9-00AA005B4383}",
  518.             "RISK": "none",
  519.             "NAME": " Internet Explorer Address Bar",
  520.             "modified": 0
  521.         },
  522.         {
  523.             "CLSID": "{02336F51-24CA-4422-AB63-18841ADF35E6}",
  524.             "RISK": "none",
  525.             "FILES": " eCatbho.dll",
  526.             "NAME": "Iserv Accelerated Dialup",
  527.             "URL": " http://www.iserv.net/support/help_accel_info.shtml ",
  528.             "modified": 0
  529.         },
  530.         {
  531.             "CLSID": "{02478D28-C3F9-4efb-9B51-7695ECA05670}",
  532.             "RISK": "none",
  533.             "FILES": " Ycomp*_*_*_*.dll, Ycomp.dll",
  534.             "NAME": "Yahoo Companion!",
  535.             "URL": " http://companion.yahoo.com/ ",
  536.             "modified": 0
  537.         },
  538.         {
  539.             "CLSID": "{02478D38-C3F9-4efb-9B51-7695ECA05670}",
  540.             "RISK": "none",
  541.             "FILES": " Ycomp*_*_*_*.dll",
  542.             "NAME": "Yahoo Companion!",
  543.             "URL": " <a href=\\\"http://companion.yahoo.com/\\\" target=\\\"_blank\\\">Yahoo Companion!</a>",
  544.             "modified": 0
  545.         },
  546.         {
  547.             "CLSID": "{024DE5EB-3649-445E-8D57-C09A9A33D479}",
  548.             "RISK": "high",
  549.             "FILES": " phelper.dll",
  550.             "NAME": "Adlogix InPop",
  551.             "modified": 0
  552.         },
  553.         {
  554.             "CLSID": "{029BB53A-C312-4b09-9B4F-ED57AF027B28}",
  555.             "RISK": "high",
  556.             "FILES": " winhlp32.dll",
  557.             "NAME": "Lizard bar",
  558.             "modified": 0
  559.         },
  560.         {
  561.             "CLSID": "{029CA12C-89C1-46a7-A3C7-82F2F98635CB}",
  562.             "RISK": "medium",
  563.             "FILES": " bh******.dll , (* = random digit)",
  564.             "NAME": "Kontiki",
  565.             "URL": " http://www.extremetech.com/article2/0397336507300.asp ",
  566.             "modified": 0
  567.         },
  568.         {
  569.             "CLSID": "{02DCA195-602B-4B1F-83FF-381B7E804BDB}",
  570.             "RISK": "none",
  571.             "FILES": " Hdbho.dll",
  572.             "NAME": "HiDownload",
  573.             "URL": " http://www.hidownload.com/ ",
  574.             "modified": 0
  575.         },
  576.         {
  577.             "CLSID": "{0345B059-8731-42BC-B7B7-5121014B02C6}",
  578.             "RISK": "high",
  579.             "FILES": " ChangeURL_30.dll",
  580.             "NAME": "\"SiteHistory\"  hijacker",
  581.             "URL": " hailing from www.muul.com",
  582.             "modified": 0
  583.         },
  584.         {
  585.             "CLSID": "{0352960F-47BE-11D5-AB93-00D0B760B4EB}",
  586.             "RISK": "high",
  587.             "FILES": " Htcheck2.dll",
  588.             "NAME": "TOPicks",
  589.             "URL": " http://www.doxdesk.com/parasite/TOPicks.html ",
  590.             "modified": 0
  591.         },
  592.         {
  593.             "CLSID": "{04047354-D353-11D2-B3EB-0060B03C5581}",
  594.             "RISK": "none",
  595.             "FILES": " Hpbrsn22.dll",
  596.             "NAME": "Grupo Financiero Banorte software",
  597.             "modified": 0
  598.         },
  599.         {
  600.             "CLSID": "{04079851-5845-4dea-848C-3ECD647AA554}",
  601.             "RISK": "medium",
  602.             "FILES": " MYSRCHAS.DLL",
  603.             "NAME": "MyWay Search Assistant",
  604.             "URL": " http://www.doxdesk.com/parasite/MySearch.html ",
  605.             "modified": 0
  606.         },
  607.         {
  608.             "CLSID": "{04164EC4-1E48-4279-818E-3721931E7636}",
  609.             "RISK": "none",
  610.             "FILES": " CleanBar.dll",
  611.             "NAME": "CleanMyPc",
  612.             "modified": 0
  613.         },
  614.         {
  615.             "CLSID": "{0421701D-CF13-4E70-ADF0-45A953E7CB8B}",
  616.             "RISK": "high",
  617.             "FILES": " RH.dll",
  618.             "NAME": "SmartPops",
  619.             "modified": 0
  620.         },
  621.         {
  622.             "CLSID": "{0428FFC7-1931-45b7-95CB-3CBB919777E1}",
  623.             "RISK": "high",
  624.             "FILES": " PerfectNavBHO.dll, PERFEC~1.DLL",
  625.             "NAME": "IncrediFind variant",
  626.             "URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
  627.             "modified": 0
  628.         },
  629.         {
  630.             "CLSID": "{0428FFC7-1931-45b7-95CB-3CBB919777E1}",
  631.             "RISK": "high",
  632.             "FILES": " winenc32.dll",
  633.             "NAME": "i-Lookup/GlobalWebSearch",
  634.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  635.             "modified": 0
  636.         },
  637.         {
  638.             "CLSID": "{04719991-296F-4958-AA0F-FA25FFA5008B}",
  639.             "RISK": "high",
  640.             "FILES": " X8bar.dll",
  641.             "NAME": "Excite Search bar",
  642.             "URL": " http://www.excite.com/ ",
  643.             "modified": 0
  644.         },
  645.         {
  646.             "CLSID": "{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}",
  647.             "RISK": "medium",
  648.             "FILES": " Mybar.dll",
  649.             "NAME": "My Way Speedbar",
  650.             "URL": " http://www.doxdesk.com/parasite/MySearch.html ",
  651.             "modified": 0
  652.         },
  653.         {
  654.             "CLSID": "{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}",
  655.             "RISK": "medium",
  656.             "FILES": " Mybar.dll",
  657.             "NAME": "MySearch",
  658.             "URL": " <a href=\\\"http://doxdesk.com/parasite/MySearch.html\\\" target=\\\"_blank\\\">MySearch</a>",
  659.             "modified": 0
  660.         },
  661.         {
  662.             "CLSID": "{0549E6CB-9985-42F6-8FD6-4EC017E6AAE1}",
  663.             "RISK": "none",
  664.             "FILES": " PopThisV2.dll, PopThis.dll",
  665.             "NAME": "Pop This!",
  666.             "URL": " http://www.mathies.com/popthis/ ",
  667.             "modified": 0
  668.         },
  669.         {
  670.             "CLSID": "{058FC709-D5CD-4A95-92DB-59E6488ECDA4}",
  671.             "RISK": "none",
  672.             "FILES": " Sabho.dll",
  673.             "NAME": "Bbclient",
  674.             "URL": " http://bb4.com/ ",
  675.             "modified": 0
  676.         },
  677.         {
  678.             "CLSID": "{059B2FC0-741D-40F8-AEFA-D2C919EB9217}",
  679.             "RISK": "none",
  680.             "FILES": " Guardbho.dll",
  681.             "NAME": "Warnet BHO guard",
  682.             "URL": " http://www.warnet.com/download.html ",
  683.             "modified": 0
  684.         },
  685.         {
  686.             "CLSID": "{05BBB56A-2A69-4A5C-BFDA-43295DD67434}",
  687.             "RISK": "high",
  688.             "FILES": " Winy.dll",
  689.             "NAME": "ShopForGood/Marketdart",
  690.             "URL": " http://www.kephyr.com/spywarescanner/library/shopforgood/index.phtml ",
  691.             "modified": 0
  692.         },
  693.         {
  694.             "CLSID": "{06DFEDAA-6196-11D5-BFC8-00508B4A487D}",
  695.             "RISK": "high",
  696.             "FILES": " 7Search.dll",
  697.             "NAME": "7FaSSt /7Search",
  698.             "URL": " http://www.doxdesk.com/parasite/7FaSSt.html ",
  699.             "modified": 0
  700.         },
  701.         {
  702.             "CLSID": "{07B18EA1-A523-4961-B6BB-170DE4475CCA}",
  703.             "RISK": "medium",
  704.             "FILES": " Mwsbar.dll",
  705.             "NAME": "MyWebSearch",
  706.             "URL": " http://www.doxdesk.com/parasite/MySearch.html ",
  707.             "modified": 0
  708.         },
  709.         {
  710.             "CLSID": "{07B18EA9-A523-4961-B6BB-170DE4475CCA}",
  711.             "RISK": "medium",
  712.             "FILES": " Mwsbar.dll",
  713.             "NAME": "MyWebSearch",
  714.             "modified": 0
  715.         },
  716.         {
  717.             "CLSID": "{08351226-6472-43BD-8A40-D9221FF1C4CE}",
  718.             "RISK": "medium",
  719.             "FILES": " SbCIe026.dll",
  720.             "NAME": "SideStep",
  721.             "URL": " http://www.doxdesk.com/parasite/SideStep.html ",
  722.             "modified": 0
  723.         },
  724.         {
  725.             "CLSID": "{08442457-929D-4522-AE24-9D3E4664A0C1}",
  726.             "RISK": "none",
  727.             "FILES": " IEWorkaround3.dll",
  728.             "NAME": "IE URL Spoofing patch",
  729.             "URL": " http://security.openwares.org/ ",
  730.             "modified": 0
  731.         },
  732.         {
  733.             "CLSID": "{086AE192-23A6-48D6-96EC-715F53797E85}",
  734.             "RISK": "high",
  735.             "FILES": " DReplace.dll",
  736.             "NAME": "CoolWebSearch parasite variant",
  737.             "modified": 0
  738.         },
  739.         {
  740.             "CLSID": "{086CEFD5-A88D-4981-8915-D51F04360ED1}",
  741.             "RISK": "high",
  742.             "FILES": " winalot32.dll",
  743.             "NAME": "traffichog hijacker",
  744.             "modified": 0
  745.         },
  746.         {
  747.             "CLSID": "{087173EF-9829-4F49-8340-A524177D3F60}",
  748.             "RISK": "high",
  749.             "FILES": " inetp60.dll",
  750.             "NAME": "BrowserAid/SearchandClick",
  751.             "modified": 0
  752.         },
  753.         {
  754.             "CLSID": "{08C63920-DC18-11D2-9E1E-00A0247061AB}",
  755.             "RISK": "medium",
  756.             "FILES": " Aphelper.dll",
  757.             "NAME": "AdBlock",
  758.             "modified": 0
  759.         },
  760.         {
  761.             "CLSID": "{08DBDE36-DF28-11D5-8CA5-0050DA44A764}",
  762.             "RISK": "high",
  763.             "FILES": " Msvri.dll",
  764.             "NAME": "Friends.fr. toolbar",
  765.             "modified": 0
  766.         },
  767.         {
  768.             "CLSID": "{08E1C8E1-E565-44fc-A766-C9539BB3ABB7}",
  769.             "RISK": "high",
  770.             "FILES": " I1srchas.dll",
  771.             "NAME": "iWon Search Assistant",
  772.             "URL": " http://www.doxdesk.com/parasite/Aornum.html ",
  773.             "modified": 0
  774.         },
  775.         {
  776.             "CLSID": "{08E74C67-99A6-45C7-94DA-A397A8FD8082}",
  777.             "RISK": "none",
  778.             "FILES": " PopupMgr_*.*.*.*.dll ( * = digit)",
  779.             "NAME": "Popup Manager",
  780.             "URL": " http://www.popupwindowsoftware.com/Popup Manager ",
  781.             "modified": 0
  782.         },
  783.         {
  784.             "CLSID": "{09549E9B-8BC0-40A4-B5D6-BD761338D631}",
  785.             "RISK": "medium",
  786.             "FILES": " _module_bann.dll",
  787.             "NAME": "Pop-Aid",
  788.             "URL": " http://www.pop-aid.com/tac.html ",
  789.             "modified": 0
  790.         },
  791.         {
  792.             "CLSID": "{0982868C-47F0-4EFB-A664-C7B0B1015808}",
  793.             "RISK": "high",
  794.             "FILES": " Newads~1.dll , ms**** (* = random char)",
  795.             "NAME": "ClientMan",
  796.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  797.             "modified": 0
  798.         },
  799.         {
  800.             "CLSID": "{09F0F280-FB9A-481B-B69A-CB00DC44D027}",
  801.             "RISK": "medium",
  802.             "FILES": " PopupJammer.dll, POPUPJ~1.DLL",
  803.             "NAME": "Advanced Searchbar",
  804.             "modified": 0
  805.         },
  806.         {
  807.             "CLSID": "{09F0F280-FB9A-481B-B69A-CB00DC44D027}",
  808.             "RISK": "medium",
  809.             "FILES": " POPUPJ~1.DLL",
  810.             "NAME": "Advanced Searchbar",
  811.             "modified": 0
  812.         },
  813.         {
  814.             "CLSID": "{0A1375E1-56C2-11D6-8E45-8933A0FB5235}",
  815.             "RISK": "none",
  816.             "FILES": " Alibabar.dll",
  817.             "NAME": "ALiBaBar toolbar",
  818.             "modified": 0
  819.         },
  820.         {
  821.             "CLSID": "{0A1A2A3A-4A5A-6A7A-8A9A-AABACADAEAFA}",
  822.             "RISK": "high",
  823.             "FILES": " ********.dll   ( * = random char)",
  824.             "NAME": "Adware.IAGold",
  825.             "modified": 0
  826.         },
  827.         {
  828.             "CLSID": "{0A4DC360-26A5-4FC1-8FB2-ADD00738A99B}",
  829.             "RISK": "none",
  830.             "FILES": " SURFGH~1.DLL",
  831.             "NAME": "Surfghost",
  832.             "URL": " <a target=_top href=\"http://products.enterpriseitplanet.com/security/security/1059245261.html\">Surfghost</a>",
  833.             "modified": 0
  834.         },
  835.         {
  836.             "CLSID": "{0A5CF411-F0BF-4AF8-A2A4-8233F3109BED}",
  837.             "RISK": "high",
  838.             "FILES": " Stoolbar.dll",
  839.             "NAME": "HuntBar/Stoolbar",
  840.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  841.             "modified": 0
  842.         },
  843.         {
  844.             "CLSID": "{0A68C5A2-64AE-4415-88A2-6542304A4745}",
  845.             "RISK": "high",
  846.             "FILES": " Msiets.dll",
  847.             "NAME": "HuntBar",
  848.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  849.             "modified": 0
  850.         },
  851.         {
  852.             "CLSID": "{0A6A6F79-BBE3-4A8B-8A64-9D1D1100A347}",
  853.             "RISK": "none",
  854.             "FILES": " Netnose.dll",
  855.             "NAME": "NetNose toolbar",
  856.             "URL": " http://www.netnose.com/toolbar.htm ",
  857.             "modified": 0
  858.         },
  859.         {
  860.             "CLSID": "{0AAF602E-72A1-45FE-BAB1-06971E07EAA2}",
  861.             "RISK": "high",
  862.             "FILES": " Bmeb.dll",
  863.             "NAME": "i-lookup/Bmeb",
  864.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  865.             "modified": 0
  866.         },
  867.         {
  868.             "CLSID": "{0ADCDFE7-8490-406D-91BF-88F71FD7F8AE}",
  869.             "RISK": "none",
  870.             "FILES": " pwicc.dll",
  871.             "NAME": "Surf Pal",
  872.             "URL": " http://www.softdepia.com/surf_pal_download_116.html ",
  873.             "modified": 0
  874.         },
  875.         {
  876.             "CLSID": "{0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7}",
  877.             "RISK": "none",
  878.             "FILES": " NISShExt.dll",
  879.             "NAME": "NIS 2004",
  880.             "URL": "  http://www.symantec.com/sabu/nis/nis_pe/ ",
  881.             "modified": 0
  882.         },
  883.         {
  884.             "CLSID": "{0BA1C6EB-D062-4E37-9DB5-B07743276324}",
  885.             "RISK": "high",
  886.             "FILES": " ms****.dll, dnsrep********, ( * = random char)",
  887.             "NAME": "ClientMan",
  888.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  889.             "modified": 0
  890.         },
  891.         {
  892.             "CLSID": "{0C9CBFE1-91CD-40C2-BB64-1EC84C4C46AF}",
  893.             "RISK": "high",
  894.             "FILES": " abeb.dll",
  895.             "NAME": "i-lookup/Abeb",
  896.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  897.             "modified": 0
  898.         },
  899.         {
  900.             "CLSID": "{0CF0B8EE-6596-11D5-A98E-0003470BB48E}",
  901.             "RISK": "none",
  902.             "FILES": " CChelper.dll",
  903.             "NAME": "Panicware Popup Stopper",
  904.             "URL": " http://www.panicware.com/ ",
  905.             "modified": 0
  906.         },
  907.         {
  908.             "CLSID": "{0D245396-8535-11D3-B3F9-00A0C9424626}",
  909.             "RISK": "none",
  910.             "FILES": " WebClip.dll",
  911.             "NAME": "PaperClip WebClip",
  912.             "URL": " http://www.paperclip.com/ ",
  913.             "modified": 0
  914.         },
  915.         {
  916.             "CLSID": "{0D7DC475-59EB-4781-985F-A6F5D4E2BC73}",
  917.             "RISK": "high",
  918.             "FILES": " LIE1D6FF.DLL, Iedcb1f5iedcb1f5.dll",
  919.             "NAME": "unidentified adware",
  920.             "modified": 0
  921.         },
  922.         {
  923.             "CLSID": "{0DDBB570-0396-44C9-986A-8F6F61A51C2F}",
  924.             "RISK": "high",
  925.             "FILES": " Msiefr40.dll",
  926.             "NAME": "BrowserAid/FeaturedResults",
  927.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  928.             "modified": 0
  929.         },
  930.         {
  931.             "CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2E0099}",
  932.             "RISK": "high",
  933.             "FILES": " Searchit.dll",
  934.             "NAME": "SearchIt Toolbar",
  935.             "modified": 0
  936.         },
  937.         {
  938.             "CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EEB4C}",
  939.             "RISK": "high",
  940.             "FILES": " awtoolb.dll",
  941.             "NAME": "AroundWeb toolbar",
  942.             "modified": 0
  943.         },
  944.         {
  945.             "CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
  946.             "RISK": "medium",
  947.             "FILES": " Eclickz.dll",
  948.             "NAME": "eClickz toolbar",
  949.             "URL": " http://www.eclickz.com/privacy.php ",
  950.             "modified": 0
  951.         },
  952.         {
  953.             "CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
  954.             "RISK": "none",
  955.             "FILES": " Nntoolbar.dll",
  956.             "NAME": "NordNet toolbar",
  957.             "URL": " http://www.teletrade.se/toolbar/ ",
  958.             "modified": 0
  959.         },
  960.         {
  961.             "CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
  962.             "RISK": "none",
  963.             "FILES": " idabar.dll",
  964.             "NAME": "Internet Download Accelerator",
  965.             "URL": " http://www.westbyte.com/ida/index.phtml?pa...p=1&lng=English ",
  966.             "modified": 0
  967.         },
  968.         {
  969.             "CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
  970.             "RISK": "high",
  971.             "FILES": " ToolBand.dll",
  972.             "NAME": "Adult Search bar ASSbar",
  973.             "modified": 0
  974.         },
  975.         {
  976.             "CLSID": "{0E5CBF21-D15F-11D0-8301-00AA005B4383}",
  977.             "RISK": "none",
  978.             "NAME": " Internet Explorer Links Bar",
  979.             "modified": 0
  980.         },
  981.         {
  982.             "CLSID": "{0EEDB912-C5FA-486F-8334-57288578C627}",
  983.             "RISK": "medium",
  984.             "FILES": " RazaWebHook.dll",
  985.             "NAME": "Shareaza",
  986.             "URL": " http://www.shareaza.com/ ",
  987.             "modified": 0
  988.         },
  989.         {
  990.             "CLSID": "{0F660F64-F4C9-477F-8529-44181B717472}",
  991.             "RISK": "none",
  992.             "FILES": " Csmbho.Dll",
  993.             "NAME": "At&TWnclient",
  994.             "modified": 0
  995.         },
  996.         {
  997.             "CLSID": "{0FC817C2-3B45-11D4-8340-0050DA825906}",
  998.             "RISK": "high",
  999.             "FILES": " DeltaClick.dll",
  1000.             "NAME": "Deltabar : Deltaclick",
  1001.             "URL": " http://support.microsoft.com/?kbid=316770 ",
  1002.             "modified": 0
  1003.         },
  1004.         {
  1005.             "CLSID": "{0FFE2F08-3AC9-4A91-A61D-4FF24F91A561}",
  1006.             "RISK": "none",
  1007.             "FILES": " RM4IE.dll",
  1008.             "NAME": "DigiMarc ImageBridge",
  1009.             "URL": " <a href=\\\"http://www.digimarc.com/products/IMAGEBRIDGE/default.asp\\\" target=\\\"_blank\\\">DigiMarc ImageBridge</a>",
  1010.             "modified": 0
  1011.         },
  1012.         {
  1013.             "CLSID": "{10955232-B671-11D7-8066-0040F6F477E4}",
  1014.             "RISK": "high",
  1015.             "FILES": " whattn.dll",
  1016.             "NAME": "Whazit",
  1017.             "URL": " http://www.doxdesk.com/parasite/Whazit.html ",
  1018.             "modified": 0
  1019.         },
  1020.         {
  1021.             "CLSID": "{11359F4A-B191-42d7-905A-594F8CF0387B}",
  1022.             "RISK": "none",
  1023.             "FILES": " Lexbar.dll",
  1024.             "NAME": "Lexico toolbar",
  1025.             "URL": " http://dictionary.reference.com/tools/toolbar/ ",
  1026.             "modified": 0
  1027.         },
  1028.         {
  1029.             "CLSID": "{11904CE8-632A-4856-A7CC-00B33FE71BD8}",
  1030.             "RISK": "high",
  1031.             "FILES": " Spp3.dll",
  1032.             "NAME": "Sexxxpassport.com browser plugin",
  1033.             "modified": 0
  1034.         },
  1035.         {
  1036.             "CLSID": "{11990E9F-2A4D-11D6-9507-02608CDD2842}",
  1037.             "RISK": "high",
  1038.             "FILES": " SearchSquire.dll",
  1039.             "NAME": "SearchSquire",
  1040.             "URL": " http://www.doxdesk.com/parasite/SearchSquire.html ",
  1041.             "modified": 0
  1042.         },
  1043.         {
  1044.             "CLSID": "{11F6B95F-0774-4B8D-8C9E-6B552CBCAD14}",
  1045.             "RISK": "high",
  1046.             "FILES": " waeb.dll",
  1047.             "NAME": "I-lookup",
  1048.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  1049.             "modified": 0
  1050.         },
  1051.         {
  1052.             "CLSID": "{1201333E-BAD9-481C-BCF5-6904498CF85B}",
  1053.             "RISK": "medium",
  1054.             "FILES": " IEPKbho.dll",
  1055.             "NAME": "UNH Solutions",
  1056.             "URL": " http://www.unhsolutions.net/ ",
  1057.             "modified": 0
  1058.         },
  1059.         {
  1060.             "CLSID": "{120FF052-1C61-4C14-8F54-BBBC4A988590}",
  1061.             "RISK": "none",
  1062.             "FILES": " Bxpbar.dll",
  1063.             "NAME": "MolBiol.Net Toolbar",
  1064.             "URL": " http://www.r9corporation.fsnet.co.uk/toolbar/ ",
  1065.             "modified": 0
  1066.         },
  1067.         {
  1068.             "CLSID": "{123249EB-F891-44C4-946F-450064F9080E}",
  1069.             "RISK": "none",
  1070.             "FILES": " IEDrBar.dll",
  1071.             "NAME": "IE Doctor Toolbar",
  1072.             "URL": " http://www.axesoft.com/iedr/ ",
  1073.             "modified": 0
  1074.         },
  1075.         {
  1076.             "CLSID": "{12BA043E-293E-4CE4-A8C7-8460934FE801}",
  1077.             "RISK": "none",
  1078.             "FILES": " IBBHO.dll",
  1079.             "NAME": "IncrediBar",
  1080.             "URL": " http://www.incredibar.com/home.asp ",
  1081.             "modified": 0
  1082.         },
  1083.         {
  1084.             "CLSID": "{12DF6E3E-6272-4AE8-880B-2158D60791C0}",
  1085.             "RISK": "high",
  1086.             "FILES": " WinPage.dll",
  1087.             "NAME": "Winpage Blocker Startpage hijacker",
  1088.             "modified": 0
  1089.         },
  1090.         {
  1091.             "CLSID": "{136A9D1D-1F4B-43D4-8359-6F2382449255}",
  1092.             "RISK": "high",
  1093.             "FILES": " Superbar.dll",
  1094.             "NAME": "SuperBar",
  1095.             "URL": " http://www.doxdesk.com/parasite/SuperBar.html ",
  1096.             "modified": 0
  1097.         },
  1098.         {
  1099.             "CLSID": "{13707362-08A2-11D3-A26D-0060976E9E6A}",
  1100.             "RISK": "medium",
  1101.             "FILES": " Bizratebar.dll",
  1102.             "NAME": "Bizrate toolbar",
  1103.             "URL": " http://www.bizrate.com/bardownload/index.xpml ",
  1104.             "modified": 0
  1105.         },
  1106.         {
  1107.             "CLSID": "{139D88E5-C372-469D-B4C5-1FE00852AB9B}",
  1108.             "RISK": "high",
  1109.             "FILES": " ofrg.dll, favorite.dll",
  1110.             "NAME": "FavoriteMan",
  1111.             "URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
  1112.             "modified": 0
  1113.         },
  1114.         {
  1115.             "CLSID": "{13F537F0-AF09-11d6-9029-0002B31F9E59}",
  1116.             "RISK": "none",
  1117.             "FILES": " Ycomp*_*_*_*.dll",
  1118.             "NAME": "Yahoo Companion!",
  1119.             "URL": " http://companion.yahoo.com/ ",
  1120.             "modified": 0
  1121.         },
  1122.         {
  1123.             "CLSID": "{13F90341-AD79-4A9F-9B57-0234675670D6}",
  1124.             "RISK": "high",
  1125.             "FILES": " Ipsysdrv32.dll",
  1126.             "NAME": "p0rn related",
  1127.             "modified": 0
  1128.         },
  1129.         {
  1130.             "CLSID": "{1402DF89-8043-44E9-AFE8-CB3DB644EF7D}",
  1131.             "RISK": "none",
  1132.             "FILES": " Flitterbug.dll",
  1133.             "NAME": "Flitterbug Toolbar",
  1134.             "URL": " http://www.pccrafter.com/community/flitterbugsearch.aspx ",
  1135.             "modified": 0
  1136.         },
  1137.         {
  1138.             "CLSID": "{14B3D246-6274-40B5-8D50-6C2ADE2AB29B}",
  1139.             "RISK": "high",
  1140.             "FILES": " Snhelper.dll",
  1141.             "NAME": "ShopNavSearch/Srng",
  1142.             "URL": " http://www.doxdesk.com/parasite/Srng.html ",
  1143.             "modified": 0
  1144.         },
  1145.         {
  1146.             "CLSID": "{150FA160-130D-451F-B863-B655061432BA}",
  1147.             "RISK": "high",
  1148.             "FILES": " mgs_32.dll",
  1149.             "NAME": "CoolWebSearch parasite variant",
  1150.             "modified": 0
  1151.         },
  1152.         {
  1153.             "CLSID": "{157F70D2-49E8-11D3-B094-005004116944}",
  1154.             "RISK": "none",
  1155.             "FILES": " IEEventView.dll",
  1156.             "NAME": "Altigen AltiWeb",
  1157.             "modified": 0
  1158.         },
  1159.         {
  1160.             "CLSID": "{15C9938F-CB96-496D-800A-B827F2E34EA1}",
  1161.             "RISK": "none",
  1162.             "FILES": " blspc.dll",
  1163.             "NAME": "BellSouth Internet Services ISP software",
  1164.             "modified": 0
  1165.         },
  1166.         {
  1167.             "CLSID": "{16122F02-9713-11D3-9744-005004116944}",
  1168.             "RISK": "none",
  1169.             "FILES": " Dpiehook.dll",
  1170.             "NAME": "DialPad Everywhere",
  1171.             "URL": " http://dialpad.com/company/ ",
  1172.             "modified": 0
  1173.         },
  1174.         {
  1175.             "CLSID": "{1624F640-49AC-11D3-8ABD-00C04FA95EE0}",
  1176.             "RISK": "none",
  1177.             "FILES": " iFingerBHO.dll",
  1178.             "NAME": "iFinger",
  1179.             "URL": " http://www.ifinger.com/demo.asp?design=7 ",
  1180.             "modified": 0
  1181.         },
  1182.         {
  1183.             "CLSID": "{165EAF06-A068-4BE1-8418-D92B2A196878}",
  1184.             "RISK": "none",
  1185.             "FILES": " Goudengidsbar.dll",
  1186.             "NAME": "Gouden Gids toolbar",
  1187.             "URL": " http://www.goudengids.nl/static02/toolbar/info.html ",
  1188.             "modified": 0
  1189.         },
  1190.         {
  1191.             "CLSID": "{166348F1-2C41-4C9F-86BB-EB2B8ADE030C}",
  1192.             "RISK": "high",
  1193.             "FILES": " msvrfy******.dll, (* = random digits)",
  1194.             "NAME": "ClientMan",
  1195.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  1196.             "modified": 0
  1197.         },
  1198.         {
  1199.             "CLSID": "{16664845-0E00-11D2-8059-000000000000}",
  1200.             "RISK": "none",
  1201.             "FILES": " Catcher.dll",
  1202.             "NAME": "ReGet",
  1203.             "URL": " http://deluxe.reget.com/en/ ",
  1204.             "modified": 0
  1205.         },
  1206.         {
  1207.             "CLSID": "{1678F7E1-C422-11D0-AD7D-00400515CAAA}",
  1208.             "RISK": "high",
  1209.             "FILES": " comet.dll",
  1210.             "NAME": "Comet Cursor",
  1211.             "URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
  1212.             "modified": 0
  1213.         },
  1214.         {
  1215.             "CLSID": "{17456D4E-823D-9B68-283C-1A819CBBDD19}",
  1216.             "RISK": "none",
  1217.             "FILES": " 17456D~1.DLL",
  1218.             "NAME": "TechBar2",
  1219.             "URL": " http://www.windowsreinstall.com/sitestuff/shop/techbar.html ",
  1220.             "modified": 0
  1221.         },
  1222.         {
  1223.             "CLSID": "{17939A30-18E2-471E-9D3A-56DD725F1215}",
  1224.             "RISK": "none",
  1225.             "FILES": " Iebar.dll",
  1226.             "NAME": "ReGet",
  1227.             "URL": " http://deluxe.reget.com/en/ ",
  1228.             "modified": 0
  1229.         },
  1230.         {
  1231.             "CLSID": "{179E4B4A-76C3-4F65-BCED-C9FA1A28D2EF}",
  1232.             "RISK": "high",
  1233.             "FILES": " NN_Bar.dll, NN_Bar**.dll (* = random digit)",
  1234.             "NAME": "NetNucleus/Mirar webband",
  1235.             "modified": 0
  1236.         },
  1237.         {
  1238.             "CLSID": "{17DA0C9E-4A27-4ac5-BB75-5D24B8CDB972}",
  1239.             "RISK": "high",
  1240.             "FILES": " Excel10.dll",
  1241.             "NAME": "CoolWebSearch parasite variant",
  1242.             "modified": 0
  1243.         },
  1244.         {
  1245.             "CLSID": "{1808648B-3102-4293-8AD3-06AF71D3321B}",
  1246.             "RISK": "none",
  1247.             "FILES": " Bho.dll",
  1248.             "NAME": "AppExpress",
  1249.             "modified": 0
  1250.         },
  1251.         {
  1252.             "CLSID": "{18B79968-1A76-4953-9EBB-B651407F8998}",
  1253.             "RISK": "high",
  1254.             "FILES": " windec32.dll",
  1255.             "NAME": "I-Lookup",
  1256.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  1257.             "modified": 0
  1258.         },
  1259.         {
  1260.             "CLSID": "{19A447BA-9C2E-4864-93F5-A0645229771E}",
  1261.             "RISK": "high",
  1262.             "FILES": " Sbus.dll",
  1263.             "NAME": "i-lookup/Sbus",
  1264.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  1265.             "modified": 0
  1266.         },
  1267.         {
  1268.             "CLSID": "{19E41A2D-BD9D-48bb-9576-27B2CF0877C0}",
  1269.             "RISK": "high",
  1270.             "FILES": " ZippyToolbar.dll",
  1271.             "NAME": "ZippyLookup toolbar",
  1272.             "modified": 0
  1273.         },
  1274.         {
  1275.             "CLSID": "{1A214F62-47A7-4CA3-9D00-95A3965A8B4A}",
  1276.             "RISK": "none",
  1277.             "FILES": " AutoDisplay***.dll, (* = a random digit)",
  1278.             "NAME": "Popup Eliminator",
  1279.             "URL": " http://www.popupeliminator.info/ ",
  1280.             "modified": 0
  1281.         },
  1282.         {
  1283.             "CLSID": "{1A98BCA2-0BD1-47DE-9710-C7665F7F1FCB}",
  1284.             "RISK": "high",
  1285.             "FILES": " Iebrw.dll",
  1286.             "NAME": "SearchEx",
  1287.             "URL": " http://www.doxdesk.com/parasite/Searchex.html ",
  1288.             "modified": 0
  1289.         },
  1290.         {
  1291.             "CLSID": "{1B0E7716-898E-48cc-9690-4E338E8DE1D3}",
  1292.             "RISK": "high",
  1293.             "FILES": " Assist.dll",
  1294.             "NAME": "CnsMin",
  1295.             "modified": 0
  1296.         },
  1297.         {
  1298.             "CLSID": "{1B13BF1B-A528-4CC4-B5BF-553CAA6487AC}",
  1299.             "RISK": "high",
  1300.             "FILES": " Sbus.dll",
  1301.             "NAME": "i-lookup/Sbus",
  1302.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  1303.             "modified": 0
  1304.         },
  1305.         {
  1306.             "CLSID": "{1B77D30A-81C9-497A-8647-142F7511B1FB}",
  1307.             "RISK": "medium",
  1308.             "FILES": " Ieguard.dll",
  1309.             "NAME": "PAL PC Spy",
  1310.             "modified": 0
  1311.         },
  1312.         {
  1313.             "CLSID": "{1BC1FC4B-B0D2-4D8D-9307-2E40E2A8C257}",
  1314.             "RISK": "high",
  1315.             "FILES": " Hyperbar.dll",
  1316.             "NAME": "StartNow/HyperBar",
  1317.             "modified": 0
  1318.         },
  1319.         {
  1320.             "CLSID": "{1BDD55B8-3985-4E59-B906-5E0AD56D6710}",
  1321.             "RISK": "high",
  1322.             "FILES": " WH*_*******.dll, (* =random char)",
  1323.             "NAME": "Browserplugin.com malware",
  1324.             "modified": 0
  1325.         },
  1326.         {
  1327.             "CLSID": "{1C4DA27D-4D52-4465-A089-98E01BB725CA}",
  1328.             "RISK": "high",
  1329.             "FILES": " inetdctr.dll",
  1330.             "NAME": "Adware",
  1331.             "URL": "  as yet unidentified",
  1332.             "modified": 0
  1333.         },
  1334.         {
  1335.             "CLSID": "{1C78AB3F-A857-482e-80C0-3A1E5238A565}",
  1336.             "RISK": "high",
  1337.             "FILES": " toolbar.dll, toolbar_.dll",
  1338.             "NAME": "iSearch toolbar",
  1339.             "modified": 0
  1340.         },
  1341.         {
  1342.             "CLSID": "{1D62BD48-16F6-4004-A54A-3C41E4955A87}",
  1343.             "RISK": "none",
  1344.             "FILES": " BFTool_4.dll",
  1345.             "NAME": "Betfair",
  1346.             "URL": " <a target=_top href=\"http://www.betfair.com/\">Betfair</a>",
  1347.             "modified": 0
  1348.         },
  1349.         {
  1350.             "CLSID": "{1D870C86-AA3C-4451-81E4-71D480A1A652}",
  1351.             "RISK": "high",
  1352.             "FILES": " SbSrch_V22.dll",
  1353.             "NAME": "SubSearch v22",
  1354.             "URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
  1355.             "modified": 0
  1356.         },
  1357.         {
  1358.             "CLSID": "{1D9B10E0-E90C-11D7-A399-B7BAC8911A3F}",
  1359.             "RISK": "medium",
  1360.             "FILES": " Toolbar.dll",
  1361.             "NAME": "Arrow Toolbar",
  1362.             "URL": " <a href=\\\"http://www.rt-software.co.uk/\\\" target=\\\"_blank\\\">Arrow Toolbar</a>",
  1363.             "modified": 0
  1364.         },
  1365.         {
  1366.             "CLSID": "{1E1B2879-30C7-11D4-8DDF-525400E483E3}",
  1367.             "RISK": "high",
  1368.             "FILES": " ETop100.dll",
  1369.             "NAME": "NJStar Asian Explorer",
  1370.             "URL": " http://www.njstar.com/asianexplorer/ ",
  1371.             "modified": 0
  1372.         },
  1373.         {
  1374.             "CLSID": "{1E1B2879-88FA-11D3-8D96-D7ACAC95951A}",
  1375.             "RISK": "medium",
  1376.             "FILES": " Web.dll",
  1377.             "NAME": "Stealth Web Page Recorder",
  1378.             "URL": " http://www.blazingtools.com/downloads.html#xppl ",
  1379.             "modified": 0
  1380.         },
  1381.         {
  1382.             "CLSID": "{1E1B2879-88FF-11D2-8D96-000000000003}",
  1383.             "RISK": "high",
  1384.             "FILES": " SSocks5.dll",
  1385.             "NAME": "Backdoor.Lixy.B",
  1386.             "URL": " <a href=\\\"http://www.symantec.com/avcenter/venc/data/backdoor.lixy.b.html\\\" target=\\\"_blank\\\">Backdoor.Lixy.B</a>",
  1387.             "modified": 0
  1388.         },
  1389.         {
  1390.             "CLSID": "{1E1B2879-88FF-11D2-8D96-000000000004}",
  1391.             "RISK": "high",
  1392.             "FILES": " Ssocks32.dll, SSocks5.dll",
  1393.             "NAME": "Backdoor.Lixy.B",
  1394.             "URL": " http://www.symantec.com/avcenter/venc/data/backdoor.lixy.b.html ",
  1395.             "modified": 0
  1396.         },
  1397.         {
  1398.             "CLSID": "{1E1B2879-88FF-11D2-8D96-123457123457}",
  1399.             "RISK": "high",
  1400.             "FILES": " Explorer.dll",
  1401.             "NAME": "Clitor - unspecified malware",
  1402.             "modified": 0
  1403.         },
  1404.         {
  1405.             "CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC31337F}",
  1406.             "RISK": "high",
  1407.             "FILES": " Mslink32.dll",
  1408.             "NAME": "unidentified adware",
  1409.             "modified": 0
  1410.         },
  1411.         {
  1412.             "CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC95951A}",
  1413.             "RISK": "high",
  1414.             "FILES": " Lid.dll",
  1415.             "NAME": "BackDoor Lixy",
  1416.             "URL": " http://securityresponse.symantec.com/avcenter/venc/data/backdoor.lixy.html ",
  1417.             "modified": 0
  1418.         },
  1419.         {
  1420.             "CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC95951F}",
  1421.             "RISK": "high",
  1422.             "FILES": " CnbarIE.dll, HTMLedit.dll",
  1423.             "NAME": "Commonname toolbar",
  1424.             "URL": " http://www.doxdesk.com/parasite/CommonName.html ",
  1425.             "modified": 0
  1426.         },
  1427.         {
  1428.             "CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC95951F}",
  1429.             "RISK": "high",
  1430.             "FILES": " DNSErr.dll, Dnse.dll",
  1431.             "NAME": "CoolWebSearch parasite variant",
  1432.             "modified": 0
  1433.         },
  1434.         {
  1435.             "CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC97972F}",
  1436.             "RISK": "high",
  1437.             "FILES": " Msudp.dll",
  1438.             "NAME": "p0rn related",
  1439.             "modified": 0
  1440.         },
  1441.         {
  1442.             "CLSID": "{1E1B2879-88FF-11D2-8D96-FFFFAC95951F}",
  1443.             "RISK": "none",
  1444.             "FILES": " mtwbho.dll",
  1445.             "NAME": "Macro ToolsWorks",
  1446.             "URL": " http://www.pitrinec.com/toolsworks.htm ",
  1447.             "modified": 0
  1448.         },
  1449.         {
  1450.             "CLSID": "{1E1B2879-88FF-11D3-8D96-D7ACAC95951A}",
  1451.             "RISK": "high",
  1452.             "FILES": " bpkwb.dll, SYSTEMwb.dll, johnwb.dll",
  1453.             "NAME": "Personal Antispy keylogger",
  1454.             "URL": " http://www.botspot.com/Intelligent_Agent/2235.html ",
  1455.             "modified": 0
  1456.         },
  1457.         {
  1458.             "CLSID": "{1E1B2879-88FF-11D3-8D96-D7ACAC95951F}",
  1459.             "RISK": "medium",
  1460.             "FILES": " Web.dll",
  1461.             "NAME": "Perfect Keylogger",
  1462.             "modified": 0
  1463.         },
  1464.         {
  1465.             "CLSID": "{1E6F1D6A-1F20-11D4-8859-00A0CCE26836}",
  1466.             "RISK": "high",
  1467.             "FILES": " SVAplayer.dll, SVAPLA~1.DLL",
  1468.             "NAME": "QuickFlicks Streaming Player",
  1469.             "URL": " http://www.pestpatrol.com/PestInfo/db/q/quickflicks_streaming_player.asp ",
  1470.             "modified": 0
  1471.         },
  1472.         {
  1473.             "CLSID": "{1f0c8547-2639-4c91-b8aa-c7eca24c3163}",
  1474.             "RISK": "none",
  1475.             "FILES": " IC3HLPR.DLL",
  1476.             "NAME": "Aladdin Systems Internet Cleanup",
  1477.             "URL": " http://www.aladdinsys.com/internetcleanup/ ",
  1478.             "modified": 0
  1479.         },
  1480.         {
  1481.             "CLSID": "{1F2E844B-8211-46ff-8262-772F03295CF4}",
  1482.             "RISK": "none",
  1483.             "FILES": " PopFiltr.dll",
  1484.             "NAME": "Aladdin Systems Internet Cleanup",
  1485.             "URL": " http://www.aladdinsys.com/internetcleanup/ ",
  1486.             "modified": 0
  1487.         },
  1488.         {
  1489.             "CLSID": "{1F326B8F-CE7F-4C98-96A1-AC7A2B61D742}",
  1490.             "RISK": "none",
  1491.             "FILES": " Groowetoolbar.dll",
  1492.             "NAME": "Groowe Toolbar",
  1493.             "URL": "  http://www.groowe.com/ ",
  1494.             "modified": 0
  1495.         },
  1496.         {
  1497.             "CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFA2}",
  1498.             "RISK": "high",
  1499.             "FILES": " random four letter filename.dll",
  1500.             "NAME": "ToolbarCC",
  1501.             "URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
  1502.             "modified": 0
  1503.         },
  1504.         {
  1505.             "CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFA7}",
  1506.             "RISK": "high",
  1507.             "FILES": " win****.dll, (* = random character)",
  1508.             "NAME": "ToolbarCC/Rnd",
  1509.             "URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
  1510.             "modified": 0
  1511.         },
  1512.         {
  1513.             "CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFA8}",
  1514.             "RISK": "high",
  1515.             "FILES": " win****.dll  (* = random character)",
  1516.             "NAME": "ToolbarCC/Rnd",
  1517.             "URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
  1518.             "modified": 0
  1519.         },
  1520.         {
  1521.             "CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFAF}",
  1522.             "RISK": "high",
  1523.             "FILES": " (Random file name).dll",
  1524.             "NAME": "ToolbarCC/Rnd",
  1525.             "URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
  1526.             "modified": 0
  1527.         },
  1528.         {
  1529.             "CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB1}",
  1530.             "RISK": "high",
  1531.             "FILES": " MS****.dll  (* = random character)",
  1532.             "NAME": "CoolWebSearch parasite variant",
  1533.             "modified": 0
  1534.         },
  1535.         {
  1536.             "CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB2}",
  1537.             "RISK": "high",
  1538.             "FILES": " MS****.dll  (* = random character)",
  1539.             "NAME": "CoolWebSearch parasite variant",
  1540.             "modified": 0
  1541.         },
  1542.         {
  1543.             "CLSID": "{1F5D3D5F-5738-423C-A962-066EC1A6427F}",
  1544.             "RISK": "none",
  1545.             "FILES": " RmtAgent.DLL",
  1546.             "NAME": "EZ Popup blocker",
  1547.             "URL": " http://www.holovw.com/ezpopup/ezpopup.htm ",
  1548.             "modified": 0
  1549.         },
  1550.         {
  1551.             "CLSID": "{1FEA39D6-46B3-4F66-BC38-4839CFE198EA}",
  1552.             "RISK": "none",
  1553.             "FILES": " GeekSuperHeroSlapdown.dll",
  1554.             "NAME": "Geek Superhero",
  1555.             "modified": 0
  1556.         },
  1557.         {
  1558.             "CLSID": "{2005F7BA-6189-4607-BF8B-667679251CC0}",
  1559.             "RISK": "none",
  1560.             "FILES": " Linkmailer.dll",
  1561.             "NAME": "Linkmailer toolbar",
  1562.             "URL": " http://www.linkmailer.com/ ",
  1563.             "modified": 0
  1564.         },
  1565.         {
  1566.             "CLSID": "{2038A287-4221-4F76-A7C0-ADDD77AFABB3}",
  1567.             "RISK": "high",
  1568.             "FILES": " abeb.dll",
  1569.             "NAME": "i-lookup/Abeb",
  1570.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  1571.             "modified": 0
  1572.         },
  1573.         {
  1574.             "CLSID": "{204F937E-519E-4597-96FA-8F1F59F3CB6D}",
  1575.             "RISK": "high",
  1576.             "FILES": " ctor.dll",
  1577.             "NAME": "HotBar",
  1578.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/HotBar.html\\\" target=\\\"_blank\\\">HotBar</a>",
  1579.             "modified": 0
  1580.         },
  1581.         {
  1582.             "CLSID": "{206E52E0-D52E-11D4-AD54-0000E86C26F6}",
  1583.             "RISK": "none",
  1584.             "FILES": " Fdiehlp.dll, fdcatch.dll",
  1585.             "NAME": "Fresh Download",
  1586.             "URL": " http://www.freshdevices.com/freshdown.html ",
  1587.             "modified": 0
  1588.         },
  1589.         {
  1590.             "CLSID": "{20E5DE3E-3D2C-4E4F-969E-6C3F00354BC7}",
  1591.             "RISK": "none",
  1592.             "FILES": " GLAd.dll",
  1593.             "NAME": "GL-AD Popup Terminator",
  1594.             "URL": " http://www.gleanersoft.com/ ",
  1595.             "modified": 0
  1596.         },
  1597.         {
  1598.             "CLSID": "{21301D69-B8F1-46AA-B0B5-09EE2285914C}",
  1599.             "RISK": "high",
  1600.             "FILES": " CustomToolbar.dll",
  1601.             "NAME": "CustomToolbar",
  1602.             "URL": " http://www.doxdesk.com/parasite/CustomToolbar.html ",
  1603.             "modified": 0
  1604.         },
  1605.         {
  1606.             "CLSID": "{21301D69-B8F1-46AA-B0B5-09EE2285914C}",
  1607.             "RISK": "none",
  1608.             "FILES": " CustomToolbar.dll",
  1609.             "NAME": "KaxyToolbar",
  1610.             "URL": " <a target=\"_blank\" href=\"http://www.kaxy.com/get_the_free_kaxy_toolbar.htm\">KaxyToolbar</a>",
  1611.             "modified": 0
  1612.         },
  1613.         {
  1614.             "CLSID": "{21C32A07-0176-4FFE-BCDA-65D4A24F4303}",
  1615.             "RISK": "none",
  1616.             "FILES": " Intellistopper.dll, INTELL~1.DLL",
  1617.             "NAME": "Intellistopper Toolbar",
  1618.             "URL": " http://smartstopper.com/ ",
  1619.             "modified": 0
  1620.         },
  1621.         {
  1622.             "CLSID": "{224530A0-C9CB-4AEE-9C0F-54AC1B533211}",
  1623.             "RISK": "high",
  1624.             "FILES": " eXactToolbar.dll, Exacttoolbar*****.dll, (* = random digit)",
  1625.             "NAME": "Exact Searchbar",
  1626.             "URL": " http://www.doxdesk.com/parasite/eXactSearch.html ",
  1627.             "modified": 0
  1628.         },
  1629.         {
  1630.             "CLSID": "{227B8AA8-DAF2-4892-BD1D-73F568BCB24E}",
  1631.             "RISK": "none",
  1632.             "FILES": " mcbrhlpr.dll",
  1633.             "NAME": "McAfee`s Privacy Service",
  1634.             "URL": " http://www.mcafee.com/myapps/mps/default.asp ",
  1635.             "modified": 0
  1636.         },
  1637.         {
  1638.             "CLSID": "{22941A26-7033-432C-94C7-6371DE343822}",
  1639.             "RISK": "high",
  1640.             "FILES": " Scbar.dll, WindowEnhancer.dll",
  1641.             "NAME": "SearchEnhancement hijacker",
  1642.             "URL": " http://groups.google.com/groups?q=searchenhancement&hl=en&lr=&ie=UTF-8&oe=UTF-8&selm=5fa201c33b6c%24abac7a20%243101280a%40phx.gbl&rnum=1 ",
  1643.             "modified": 0
  1644.         },
  1645.         {
  1646.             "CLSID": "{22998D24-B789-4CA2-A7FC-CD7CE7DEB14C}",
  1647.             "RISK": "high",
  1648.             "FILES": " seek99.dll",
  1649.             "NAME": "seek99 Pay Per Click toolbar",
  1650.             "modified": 0
  1651.         },
  1652.         {
  1653.             "CLSID": "{22D003CE-6952-46C5-80B9-D19B479620AB}",
  1654.             "RISK": "none",
  1655.             "FILES": " Stumbleupon.dll, stumble.dll, STUMBL~1.DLL",
  1656.             "NAME": "Stumbleupon toolbar",
  1657.             "URL": " http://www.stumbleupon.com/ ",
  1658.             "modified": 0
  1659.         },
  1660.         {
  1661.             "CLSID": "{2318C2B1-4965-11D4-9B18-009027A5CD4F}",
  1662.             "RISK": "none",
  1663.             "FILES": " googletoolbar.dll, googletoolbar*.dll (* = digit), googlenav.dll, googlenav*.dll, googletoolbar_en_*.**-big.dll, googletoolbar_en_*.*.**-deleon.dll",
  1664.             "NAME": "Google Toolbar",
  1665.             "modified": 0
  1666.         },
  1667.         {
  1668.             "CLSID": "{23BC1CCF-4BE7-497F-B154-6ADA68425FBB}",
  1669.             "RISK": "high",
  1670.             "FILES": " expext.dll",
  1671.             "NAME": "Expext/MetaDirect hijacker",
  1672.             "modified": 0
  1673.         },
  1674.         {
  1675.             "CLSID": "{23DDAE8C-6A79-4d62-80AA-E95D89CB9811}",
  1676.             "RISK": "high",
  1677.             "FILES": " explbar.dll",
  1678.             "NAME": "Pugi/SearchExplorer",
  1679.             "URL": " http://www.doxdesk.com/parasite/Pugi.html ",
  1680.             "modified": 0
  1681.         },
  1682.         {
  1683.             "CLSID": "{243B17DE-77C7-46BF-B94B-0B5F309A0E64}",
  1684.             "RISK": "medium",
  1685.             "FILES": " mnyside.dll",
  1686.             "NAME": "Microsoft Money",
  1687.             "URL": " http://www.microsoft.com/money/default.asp ",
  1688.             "modified": 0
  1689.         },
  1690.         {
  1691.             "CLSID": "{248B131E-01EA-4587-8EFE-1D915E143D5E}",
  1692.             "RISK": "none",
  1693.             "FILES": " WackGet.dll",
  1694.             "NAME": "WackGet",
  1695.             "URL": " http://www.webattack.com/get/wackget.shtml ",
  1696.             "modified": 0
  1697.         },
  1698.         {
  1699.             "CLSID": "{24AC2D89-8566-4A52-850A-24FAF8DF57E0}",
  1700.             "RISK": "none",
  1701.             "FILES": " TRPageReaderBar_.dll",
  1702.             "NAME": "IE Page-Reader Bar",
  1703.             "URL": " http://www.text-reader.com/pagereaderbar/index.html    ",
  1704.             "modified": 0
  1705.         },
  1706.         {
  1707.             "CLSID": "{25F7FA20-3FC3-11D7-B487-00D05990014C}",
  1708.             "RISK": "high",
  1709.             "FILES": " trackurl******.dll , (* = random digit)",
  1710.             "NAME": "ClientMan",
  1711.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  1712.             "modified": 0
  1713.         },
  1714.         {
  1715.             "CLSID": "{2645D297-DD4B-4DD3-BAB0-34D4BB8F7EE6}",
  1716.             "RISK": "none",
  1717.             "FILES": " Cpw.dll",
  1718.             "NAME": "Mini Popup Killer",
  1719.             "URL": " http://www.web-checker.com/ ",
  1720.             "modified": 0
  1721.         },
  1722.         {
  1723.             "CLSID": "{2662BDD7-05D6-408F-B241-FF98FACE6054}",
  1724.             "RISK": "high",
  1725.             "FILES": " Xtupdate.dll, BWUpdate.dll, U.dll",
  1726.             "NAME": "Xupiter",
  1727.             "URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
  1728.             "modified": 0
  1729.         },
  1730.         {
  1731.             "CLSID": "{267D5BD3-0DC2-4724-A196-7F4794FBB9EB}",
  1732.             "RISK": "high",
  1733.             "FILES": " outones.dll, newones.dll",
  1734.             "NAME": "Whazit",
  1735.             "URL": " http://www.doxdesk.com/parasite/Whazit.html ",
  1736.             "modified": 0
  1737.         },
  1738.         {
  1739.             "CLSID": "{269B6797-664E-48AA-B283-B012BDF6E525}",
  1740.             "RISK": "high",
  1741.             "FILES": " BHO.dll",
  1742.             "NAME": "eUniverse/Keenvalue variant",
  1743.             "modified": 0
  1744.         },
  1745.         {
  1746.             "CLSID": "{26CA4BD4-E63A-423D-AE08-933C2F8F0977}",
  1747.             "RISK": "none",
  1748.             "FILES": " ANONIE~1.DLL",
  1749.             "NAME": "GetAnonymous",
  1750.             "URL": " http://www.getanonymous.com/getanonymous/ ",
  1751.             "modified": 0
  1752.         },
  1753.         {
  1754.             "CLSID": "{270B845C-712C-4773-BEE0-AE2D2001CD0F}",
  1755.             "RISK": "high",
  1756.             "FILES": " Surebar.dll",
  1757.             "NAME": "EZCybersearch variant",
  1758.             "URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
  1759.             "modified": 0
  1760.         },
  1761.         {
  1762.             "CLSID": "{2737A6C0-7E24-11D7-B299-00E0297E0844}",
  1763.             "RISK": "high",
  1764.             "FILES": " (varying file name)",
  1765.             "NAME": "WurldMedia",
  1766.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  1767.             "modified": 0
  1768.         },
  1769.         {
  1770.             "CLSID": "{27557cf1-a237-496d-8c8f-08f3844c6a8b}",
  1771.             "RISK": "high",
  1772.             "FILES": " WhistleHelper.dll",
  1773.             "NAME": "WhistleSoftware",
  1774.             "URL": " http://www.uslocalweather.com/privacy.asp ",
  1775.             "modified": 0
  1776.         },
  1777.         {
  1778.             "CLSID": "{27A5FF76-9919-492C-98E3-EDA3502FC829}",
  1779.             "RISK": "high",
  1780.             "FILES": " ml_32.dll",
  1781.             "NAME": "MyPageFinder",
  1782.             "URL": " http://www.doxdesk.com/parasite/MyPageFinder.html ",
  1783.             "modified": 0
  1784.         },
  1785.         {
  1786.             "CLSID": "{2843DAC1-05EF-11D2-95BA-0060083493D6}",
  1787.             "RISK": "none",
  1788.             "FILES": " web_ie.dll",
  1789.             "NAME": "Dragon Speech Recognition software",
  1790.             "URL": " http://www.voicerecognition.com/dragtool.html ",
  1791.             "modified": 0
  1792.         },
  1793.         {
  1794.             "CLSID": "{296AE49F-E195-4835-895C-91788B938DF8}",
  1795.             "RISK": "none",
  1796.             "FILES": " Ieiebho.dll",
  1797.             "NAME": "Image Extractor",
  1798.             "URL": " http://www.icegiant.com/ieie.shtml ",
  1799.             "modified": 0
  1800.         },
  1801.         {
  1802.             "CLSID": "{297caf50-e4f7-11d1-a380-00600896eccc}",
  1803.             "RISK": "none",
  1804.             "FILES": " QAPHLPR.DLL",
  1805.             "NAME": "Segue",
  1806.             "URL": " <a href=\\\"http://www.segue.com/html/s_services/training/s_sscp.asp\\\" target=\\\"_blank\\\">Segue</a>",
  1807.             "modified": 0
  1808.         },
  1809.         {
  1810.             "CLSID": "{29A38549-AF6F-11D4-89D6-BC1DFD912B00}",
  1811.             "RISK": "high",
  1812.             "FILES": " bho1.dll",
  1813.             "NAME": "unidentified hijacker",
  1814.             "modified": 0
  1815.         },
  1816.         {
  1817.             "CLSID": "{29F7B7FA-ADC8-48ea-9E1C-EA87A05AE642}",
  1818.             "RISK": "high",
  1819.             "FILES": " sbb.dll",
  1820.             "NAME": "Commander Toolbar",
  1821.             "modified": 0
  1822.         },
  1823.         {
  1824.             "CLSID": "{2A57772A-D963-4533-A999-A4D66B7EF424}",
  1825.             "RISK": "high",
  1826.             "FILES": " 00S00.dll, Mscheck.dll",
  1827.             "NAME": "SubSearch parasite variant",
  1828.             "modified": 0
  1829.         },
  1830.         {
  1831.             "CLSID": "{2A646672-9C3A-4C28-9A7A-1FB0F63F28B6}",
  1832.             "RISK": "none",
  1833.             "FILES": " daiehlp.dll",
  1834.             "NAME": "Internet Download Accelerator",
  1835.             "URL": " http://www.westbyte.com/ida/index.phtml?page=information&tmp=1&lng=English ",
  1836.             "modified": 0
  1837.         },
  1838.         {
  1839.             "CLSID": "{2AF8CED6-5BD8-4310-A90C-9664EFB16B10}",
  1840.             "RISK": "high",
  1841.             "FILES": " coolbar.dll",
  1842.             "NAME": "LookThru Cool Search Bar",
  1843.             "URL": " stealth installed",
  1844.             "modified": 0
  1845.         },
  1846.         {
  1847.             "CLSID": "{2B3452C5-1B9A-440F-A203-F6ED0F64C895}",
  1848.             "RISK": "high",
  1849.             "FILES": " rem00001.dll",
  1850.             "NAME": "BookedSpace/Remanent",
  1851.             "URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
  1852.             "modified": 0
  1853.         },
  1854.         {
  1855.             "CLSID": "{2BC43670-C0BD-4794-BB11-F60F3E001DC5}",
  1856.             "RISK": "high",
  1857.             "FILES": " ddmp.dll",
  1858.             "NAME": "Dynamic Desktop Media adware",
  1859.             "modified": 0
  1860.         },
  1861.         {
  1862.             "CLSID": "{2BDEC2E4-819F-11D5-8846-006097B89050}",
  1863.             "RISK": "none",
  1864.             "FILES": " Ilsenav.dll",
  1865.             "NAME": "Ilse Navigator Toolbar",
  1866.             "URL": " http://fun.ilse.nl/?page=navigator ",
  1867.             "modified": 0
  1868.         },
  1869.         {
  1870.             "CLSID": "{2CF0B992-5EEB-4143-99C0-5297EF71F443}",
  1871.             "RISK": "high",
  1872.             "FILES": " stlbdist.dll",
  1873.             "NAME": "BrowserAid/Startium",
  1874.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  1875.             "modified": 0
  1876.         },
  1877.         {
  1878.             "CLSID": "{2CF0B992-5EEB-4143-99C0-5297EF71F444}",
  1879.             "RISK": "high",
  1880.             "FILES": " stlbdist.dll",
  1881.             "NAME": "BrowserAid/Startium",
  1882.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  1883.             "modified": 0
  1884.         },
  1885.         {
  1886.             "CLSID": "{2CF0B992-5EEB-4143-99C0-5297EF71F44A}",
  1887.             "RISK": "high",
  1888.             "FILES": " stlbad123.dll, stlbupdt.dll",
  1889.             "NAME": "BrowserAid/Startium",
  1890.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  1891.             "modified": 0
  1892.         },
  1893.         {
  1894.             "CLSID": "{2CF0B992-5EEB-4143-99C2-5297EF71F44A}",
  1895.             "RISK": "high",
  1896.             "FILES": " stlbupdt.dll",
  1897.             "NAME": "BrowserAid/Startium",
  1898.             "modified": 0
  1899.         },
  1900.         {
  1901.             "CLSID": "{2CF0B992-5EEB-4143-99C2-5297EF71F44B}",
  1902.             "RISK": "high",
  1903.             "FILES": " stlbupdt.dll",
  1904.             "NAME": "BrowserAid/Startium",
  1905.             "modified": 0
  1906.         },
  1907.         {
  1908.             "CLSID": "{2D38A51A-23C9-48a1-A33C-48675AA2B494}",
  1909.             "RISK": "high",
  1910.             "FILES": " winres.dll",
  1911.             "NAME": "CoolWebSearch parasite variant",
  1912.             "modified": 0
  1913.         },
  1914.         {
  1915.             "CLSID": "{2D556983-83D7-4630-9AA5-27C74CA27B79}",
  1916.             "RISK": "high",
  1917.             "FILES": " Drbr.dll",
  1918.             "NAME": "i-lookup/Drbr",
  1919.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  1920.             "modified": 0
  1921.         },
  1922.         {
  1923.             "CLSID": "{2D7CB618-CC1C-4126-A7E3-F5B12D3BCF71}",
  1924.             "RISK": "high",
  1925.             "FILES": " ngpw34.dll",
  1926.             "NAME": "ESD Technologies/Adblaster adware",
  1927.             "modified": 0
  1928.         },
  1929.         {
  1930.             "CLSID": "{2E03C0FD-4C48-43A7-9A54-00240C70FF16}",
  1931.             "RISK": "none",
  1932.             "FILES": " BhoECart.dll",
  1933.             "NAME": "e-Carte Bleue internet banking software",
  1934.             "modified": 0
  1935.         },
  1936.         {
  1937.             "CLSID": "{2E12B523-3D4C-4FAC-9B04-0376A8F5E879}",
  1938.             "RISK": "high",
  1939.             "FILES": " WindowsIE.dll",
  1940.             "NAME": "InetSpeak",
  1941.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  1942.             "modified": 0
  1943.         },
  1944.         {
  1945.             "CLSID": "{2E9CAFF6-30C7-4208-8807-E79D4EC6F806}",
  1946.             "RISK": "high",
  1947.             "FILES": " Submithook.dll",
  1948.             "NAME": "CoolWebSearch parasite variant",
  1949.             "modified": 0
  1950.         },
  1951.         {
  1952.             "CLSID": "{2ECB7FB2-0333-416F-92FD-4904AD49252B}",
  1953.             "RISK": "none",
  1954.             "FILES": " 3Dnato~1.dll",
  1955.             "NAME": "3dna toolbar",
  1956.             "URL": " http://www.3dna.net/products/desktop.htm ",
  1957.             "modified": 0
  1958.         },
  1959.         {
  1960.             "CLSID": "{2EF37A01-884F-11D5-AC99-B112050ECB4F}",
  1961.             "RISK": "none",
  1962.             "FILES": " HTMLEdit.dll",
  1963.             "NAME": "ZeroPopup",
  1964.             "URL": " http://www.tooto.com/popup-killer/ ",
  1965.             "modified": 0
  1966.         },
  1967.         {
  1968.             "CLSID": "{2F24B54D-3A27-11D8-8169-00C02623048A}",
  1969.             "RISK": "high",
  1970.             "FILES": " Testadit3.dll",
  1971.             "NAME": "ezSearching",
  1972.             "URL": " <a target=_top href=\"http://doxdesk.com/parasite/ezSearching.html\">ezSearching</a>",
  1973.             "modified": 0
  1974.         },
  1975.         {
  1976.             "CLSID": "{2F2FBF0D-254F-11D5-B1E5-0050DAD7AF62}",
  1977.             "RISK": "none",
  1978.             "FILES": " Anonymizer.dll",
  1979.             "NAME": "Anonymizer",
  1980.             "URL": " http://www.anonymizer.com/surfing/ ",
  1981.             "modified": 0
  1982.         },
  1983.         {
  1984.             "CLSID": "{2F4F8CC3-FF89-11D1-9F63-0020182D7E20}",
  1985.             "RISK": "none",
  1986.             "FILES": " espie.dll",
  1987.             "NAME": "eSafe",
  1988.             "URL": " http://www.esafe.com/esafe/default.asp?cf=tl ",
  1989.             "modified": 0
  1990.         },
  1991.         {
  1992.             "CLSID": "{30192F8D-0958-44E6-B54D-331FD39AC959}",
  1993.             "RISK": "high",
  1994.             "FILES": " Toolband.dll",
  1995.             "NAME": "CoolWebSearch parasite variant",
  1996.             "modified": 0
  1997.         },
  1998.         {
  1999.             "CLSID": "{305C398B-4278-4AD6-86D9-6A2774596BE3}",
  2000.             "RISK": "none",
  2001.             "FILES": " IEZ.dll",
  2002.             "NAME": "Login Manager",
  2003.             "URL": " http://www.browserplus.com/ ",
  2004.             "modified": 0
  2005.         },
  2006.         {
  2007.             "CLSID": "{30A56549-9D5B-4D34-AFA7-440A7F0538A9}",
  2008.             "RISK": "high",
  2009.             "FILES": " Opnste.dll",
  2010.             "NAME": "OpenSite adware",
  2011.             "modified": 0
  2012.         },
  2013.         {
  2014.             "CLSID": "{312FA154-E1B7-4336-9833-EE6B38D58B56}",
  2015.             "RISK": "high",
  2016.             "FILES": " pbcommon.dll",
  2017.             "NAME": "ProBot Activity Monitor",
  2018.             "URL": " http://www.pestpatrol.com/PestInfo/P/ProBot_Activity_Monitor.asp ",
  2019.             "modified": 0
  2020.         },
  2021.         {
  2022.             "CLSID": "{316AEF8D-3C37-423E-9E6E-13820A9DC37A}",
  2023.             "RISK": "medium",
  2024.             "FILES": " IrlOnIE.dll",
  2025.             "NAME": "HackerSmacker firewall",
  2026.             "modified": 0
  2027.         },
  2028.         {
  2029.             "CLSID": "{31995C64-CB4D-483E-82C2-CCFFE2F66CAB}",
  2030.             "RISK": "high",
  2031.             "FILES": " msvcn.dll",
  2032.             "NAME": "SubSearch v22",
  2033.             "URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
  2034.             "modified": 0
  2035.         },
  2036.         {
  2037.             "CLSID": "{319A68DB-06D0-46DA-9F93-A810D5A70836}",
  2038.             "RISK": "high",
  2039.             "FILES": " Zipclix.dll",
  2040.             "NAME": "Zipclix",
  2041.             "URL": " http://www.doxdesk.com/parasite/Zipclix.html ",
  2042.             "modified": 0
  2043.         },
  2044.         {
  2045.             "CLSID": "{31FF080D-12A3-439A-A2EF-4BA95A3148E8}",
  2046.             "RISK": "none",
  2047.             "FILES": " msie2gr.dll",
  2048.             "NAME": "GetRight",
  2049.             "URL": " http://www.getright.com/ ",
  2050.             "modified": 0
  2051.         },
  2052.         {
  2053.             "CLSID": "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}",
  2054.             "RISK": "none",
  2055.             "FILES": " Toolband.dll",
  2056.             "NAME": "Canon EasyWebPrint",
  2057.             "URL": " http://www.canoneasywebprint.com/en/index.htm ",
  2058.             "modified": 0
  2059.         },
  2060.         {
  2061.             "CLSID": "{333F6B96-3992-4D58-A499-145A10FE48C3}",
  2062.             "RISK": "none",
  2063.             "FILES": " Bhossafe.dll",
  2064.             "NAME": "MBNA ShopSafe",
  2065.             "modified": 0
  2066.         },
  2067.         {
  2068.             "CLSID": "{33414365-E6C7-460d-880A-A163BD69E84D}",
  2069.             "RISK": "medium",
  2070.             "FILES": " FujiFld.dll",
  2071.             "NAME": "Via-Christi.org",
  2072.             "modified": 0
  2073.         },
  2074.         {
  2075.             "CLSID": "{337D0C1D-4053-4FAB-AF2B-45C2F7B0FAA6}",
  2076.             "RISK": "high",
  2077.             "FILES": " Browseraidtoolbar.dll",
  2078.             "NAME": "Findit Quick BrowserAid",
  2079.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  2080.             "modified": 0
  2081.         },
  2082.         {
  2083.             "CLSID": "{337D0C1D-4053-4FAB-AF2B-45C2F7B0FAA7}",
  2084.             "RISK": "high",
  2085.             "FILES": " Quicklaunchie.dll, Broweraidtoolbar.dll",
  2086.             "NAME": "BrowserAid",
  2087.             "modified": 0
  2088.         },
  2089.         {
  2090.             "CLSID": "{3392BD0A-A851-4AA4-86E0-4651006F9EA8}",
  2091.             "RISK": "medium",
  2092.             "FILES": " agtbho.dll",
  2093.             "NAME": "Atomica",
  2094.             "URL": " http://www.atomica.com/index.html ",
  2095.             "modified": 0
  2096.         },
  2097.         {
  2098.             "CLSID": "{339BB23F-A864-48C0-A59F-29EA915965EC}",
  2099.             "RISK": "high",
  2100.             "FILES": " toolbar.dll",
  2101.             "NAME": "Huntbar",
  2102.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  2103.             "modified": 0
  2104.         },
  2105.         {
  2106.             "CLSID": "{340166BC-786B-401F-96AC-7C8821EFA9CD}",
  2107.             "RISK": "none",
  2108.             "FILES": " MereSurferF.dll",
  2109.             "NAME": "MereSurfer",
  2110.             "URL": " <a href=\\\"http://www.meresoft.com/products/meresurfer/\\\" target=\\\"_blank\\\">MereSurfer</a>",
  2111.             "modified": 0
  2112.         },
  2113.         {
  2114.             "CLSID": "{3424643B-A93E-45BF-ACA9-AF8B3ACC7BF0}",
  2115.             "RISK": "none",
  2116.             "FILES": " spyhunter.dll, SPYHUN~2.DLL",
  2117.             "NAME": "Internet Spy Hunter",
  2118.             "URL": " http://www.tooto.com/spyhunter/ ",
  2119.             "modified": 0
  2120.         },
  2121.         {
  2122.             "CLSID": "{348FE907-249E-4C65-A838-F34A193FE1D1}",
  2123.             "RISK": "none",
  2124.             "FILES": " TaskBHO.dll",
  2125.             "NAME": "WinTask",
  2126.             "modified": 0
  2127.         },
  2128.         {
  2129.             "CLSID": "{34D516EA-40E3-4E3B-8BA8-505112738ED5}",
  2130.             "RISK": "high",
  2131.             "FILES": " ctavp3.dll",
  2132.             "NAME": "ezSearching",
  2133.             "URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
  2134.             "modified": 0
  2135.         },
  2136.         {
  2137.             "CLSID": "{35CC7369-C6EB-4A64-AB05-44CF0B5087A0}",
  2138.             "RISK": "high",
  2139.             "FILES": " Chgrgs.dll",
  2140.             "NAME": "i-Lookup/Chgrgs",
  2141.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  2142.             "modified": 0
  2143.         },
  2144.         {
  2145.             "CLSID": "{35EB9C91-1CA6-11d5-8B2B-00C04F779127}",
  2146.             "RISK": "medium",
  2147.             "FILES": " VAIEHE~1.DLL",
  2148.             "NAME": "Vital Agent IT",
  2149.             "modified": 0
  2150.         },
  2151.         {
  2152.             "CLSID": "{3611204F-4B3C-11D4-B416-E159A5067F41}",
  2153.             "RISK": "medium",
  2154.             "FILES": " TOMBAR.DLL",
  2155.             "NAME": "from rusure.com",
  2156.             "modified": 0
  2157.         },
  2158.         {
  2159.             "CLSID": "{3643ABC2-21BF-46B9-B230-F247DB0C6FD6}",
  2160.             "RISK": "high",
  2161.             "FILES": " IeBHOs.dll",
  2162.             "NAME": "E2Give",
  2163.             "URL": " http://www.doxdesk.com/parasite/E2Give.html ",
  2164.             "modified": 0
  2165.         },
  2166.         {
  2167.             "CLSID": "{3643ABC2-21BF-46B9-B230-F247DB0C6FD6}",
  2168.             "RISK": "none",
  2169.             "FILES": " IeBHOs.dll",
  2170.             "NAME": "Internet Explorer Popup Control",
  2171.             "URL": " http://www.devhood.com/tools/tool_details.aspx?tool_id=268 ",
  2172.             "modified": 0
  2173.         },
  2174.         {
  2175.             "CLSID": "{3717DF55-0396-463d-98B7-647C7DC6898A}",
  2176.             "RISK": "high",
  2177.             "FILES": " Hithopper.dll",
  2178.             "NAME": "HitHopper",
  2179.             "URL": " http://www.hithopper.com/ ",
  2180.             "modified": 0
  2181.         },
  2182.         {
  2183.             "CLSID": "{3717DF55-0396-463d-98B7-647C7DC6898A}",
  2184.             "RISK": "medium",
  2185.             "FILES": " Salmon.dll",
  2186.             "NAME": "SalmonAnglers toolbar",
  2187.             "URL": " http://salmonanglers.com/toolbar/toolbar2.html ",
  2188.             "modified": 0
  2189.         },
  2190.         {
  2191.             "CLSID": "{371C6960-302C-45D0-9504-50B820247439}",
  2192.             "RISK": "none",
  2193.             "FILES": " Winie.dll",
  2194.             "NAME": "WinGet",
  2195.             "URL": " http://www.nicksoft.com/ ",
  2196.             "modified": 0
  2197.         },
  2198.         {
  2199.             "CLSID": "{3750BFA3-1392-4AF3-AF86-9D2D4776E5A4}",
  2200.             "RISK": "high",
  2201.             "FILES": " potd.dll, sec.dll",
  2202.             "NAME": "Burnaby Module >e-card_viewer",
  2203.             "URL": " http://www.symantec.com/avcenter/venc/data/ortyc.trojan.html ",
  2204.             "modified": 0
  2205.         },
  2206.         {
  2207.             "CLSID": "{3789CBF0-C4CA-4e98-B93B-22ACF0587FBA}",
  2208.             "RISK": "high",
  2209.             "FILES": " qi32.dll",
  2210.             "NAME": "Pugi/Qidion",
  2211.             "URL": " <a href=http://www.doxdesk.com/parasite/Pugi.html\" TARGET=\"_blank\">Pugi/Qidion</a>",
  2212.             "modified": 0
  2213.         },
  2214.         {
  2215.             "CLSID": "{37C8204D-97C3-4127-BB28-1BFF3FA2F7DA}",
  2216.             "RISK": "none",
  2217.             "FILES": " PnIE.dll",
  2218.             "NAME": "GuardIE",
  2219.             "URL": " http://www.downloadatoz.com/guardie/ ",
  2220.             "modified": 0
  2221.         },
  2222.         {
  2223.             "CLSID": "{382AA497-20D7-4EBB-A188-74660465940D}",
  2224.             "RISK": "high",
  2225.             "FILES": " Drbr.dll",
  2226.             "NAME": "i-lookup/Drbr",
  2227.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  2228.             "modified": 0
  2229.         },
  2230.         {
  2231.             "CLSID": "{387EDF53-1CF2-4523-BC2F-13462651BE8C}",
  2232.             "RISK": "none",
  2233.             "FILES": " Bhocitus.dll",
  2234.             "NAME": "Citibank Virtual Account software",
  2235.             "URL": " <a href=\\\"https://www.accountonline.com/CB/integrity/learn.jsp\\\" TARGET=\\\"_blank\\\">Citibank Virtual Account software</a>",
  2236.             "modified": 0
  2237.         },
  2238.         {
  2239.             "CLSID": "{388D7EBB-CBB9-4126-8DB2-86DC6863A206}",
  2240.             "RISK": "high",
  2241.             "FILES": " iexplorr11.dll",
  2242.             "NAME": "InetSpeak/Iexplorr",
  2243.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  2244.             "modified": 0
  2245.         },
  2246.         {
  2247.             "CLSID": "{38AAF321-C5B4-11D1-B75E-400000000000}",
  2248.             "RISK": "none",
  2249.             "FILES": " REGET.DLL",
  2250.             "NAME": "Reget Deluxe",
  2251.             "URL": " http://deluxe.reget.com/en/ ",
  2252.             "modified": 0
  2253.         },
  2254.         {
  2255.             "CLSID": "{38D2A281-0444-433C-9ED6-A2851795F32A}",
  2256.             "RISK": "none",
  2257.             "FILES": " TRReaderBar_.dll",
  2258.             "NAME": "Cosmo Popup",
  2259.             "URL": " http://popbegone.askcosmo.com/ ",
  2260.             "modified": 0
  2261.         },
  2262.         {
  2263.             "CLSID": "{392BE62B-E7DE-430A-8859-0AFE677DE6E1}",
  2264.             "RISK": "high",
  2265.             "FILES": " bs2.dll",
  2266.             "NAME": "BookedSpace - Remanent",
  2267.             "URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
  2268.             "modified": 0
  2269.         },
  2270.         {
  2271.             "CLSID": "{397D7D63-816E-4ECF-8761-775C932C5CF1}",
  2272.             "RISK": "high",
  2273.             "FILES": " iDonate.dll",
  2274.             "NAME": "Amazon related?",
  2275.             "modified": 0
  2276.         },
  2277.         {
  2278.             "CLSID": "{39AF31DD-EAFC-45EA-A56C-385B52E25CC0}",
  2279.             "RISK": "high",
  2280.             "FILES": " iexplorr22.dll",
  2281.             "NAME": "InetSpeak/Iexplorr",
  2282.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  2283.             "modified": 0
  2284.         },
  2285.         {
  2286.             "CLSID": "{3A279869-C6B6-4410-A041-0435DE6AD916}",
  2287.             "RISK": "high",
  2288.             "FILES": " M030106SHOP.DLL",
  2289.             "NAME": "WurldMedia",
  2290.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  2291.             "modified": 0
  2292.         },
  2293.         {
  2294.             "CLSID": "{3A6514CD-A457-11D4-8AF3-000102686B79}",
  2295.             "RISK": "none",
  2296.             "FILES": " Webbug.dll",
  2297.             "NAME": "Bugnosis",
  2298.             "URL": " http://www.bugnosis.org/ ",
  2299.             "modified": 0
  2300.         },
  2301.         {
  2302.             "CLSID": "{3AA90BC2-58C0-4F4D-A87C-2C6F3D3CD5FE}",
  2303.             "RISK": "high",
  2304.             "FILES": " Minst.dll",
  2305.             "NAME": "Wishbone Toolbar",
  2306.             "URL": " http://www.wishbonemedia.com/products.html ",
  2307.             "modified": 0
  2308.         },
  2309.         {
  2310.             "CLSID": "{3C060EA2-E6A9-4E49-A530-D4657B8C449A}",
  2311.             "RISK": "none",
  2312.             "FILES": " pkR.dll",
  2313.             "NAME": "Zero Knowledge Freedom",
  2314.             "URL": " http://www.freedom.net/ ",
  2315.             "modified": 0
  2316.         },
  2317.         {
  2318.             "CLSID": "{3C6A1597-3058-481A-8884-684A01988815}",
  2319.             "RISK": "none",
  2320.             "FILES": " Linkmgr.dll",
  2321.             "NAME": "iLOR ",
  2322.             "URL": " http://www.ilor.com/searchblank.htm ",
  2323.             "modified": 0
  2324.         },
  2325.         {
  2326.             "CLSID": "{3CEFF6CD-6F08-4E4D-BCCD-FF7415288C3B}",
  2327.             "RISK": "high",
  2328.             "FILES": " Shdocvw.dll, do not delete the file itself, it`s a Windows system file!",
  2329.             "NAME": "Alexa Toolbar",
  2330.             "URL": " http://pages.alexa.com/prod_serv/quicktour_new.html ",
  2331.             "modified": 0
  2332.         },
  2333.         {
  2334.             "CLSID": "{3D2C1DA4-BCD3-4317-9548-2E08BD222FF0}",
  2335.             "RISK": "none",
  2336.             "FILES": " Popups~1.dll",
  2337.             "NAME": "Popup Remover",
  2338.             "modified": 0
  2339.         },
  2340.         {
  2341.             "CLSID": "{3D898C55-74CC-4B7C-B5F1-45913F368388}",
  2342.             "RISK": "medium",
  2343.             "FILES": " amesp~1.DLL",
  2344.             "NAME": "AdKiller",
  2345.             "URL": " http://www.softcows.com/killer/ ",
  2346.             "modified": 0
  2347.         },
  2348.         {
  2349.             "CLSID": "{3DDF45E0-9271-11D5-B1C2-000255705902}",
  2350.             "RISK": "none",
  2351.             "FILES": " zksproxy.dll",
  2352.             "NAME": "Freedom WebSecure",
  2353.             "URL": " http://www.freedom.net/products/websecure/index.html ",
  2354.             "modified": 0
  2355.         },
  2356.         {
  2357.             "CLSID": "{3DE88907-3E38-11D4-BEB2-CBE76C0598DD}",
  2358.             "RISK": "none",
  2359.             "FILES": " Bandobject.dll",
  2360.             "NAME": "PeoplePC ISP software",
  2361.             "URL": " http://www.ispoffer.com/ppc_online.asp ",
  2362.             "modified": 0
  2363.         },
  2364.         {
  2365.             "CLSID": "{3DF73DF8-41E2-4fc2-8CBF-4B9407433755}",
  2366.             "RISK": "high",
  2367.             "FILES": " lxTB.dll ",
  2368.             "NAME": "Alexa",
  2369.             "URL": " http://www.safersite.com/PestInfo/a/Alexa_Toolbar.asp ",
  2370.             "modified": 0
  2371.         },
  2372.         {
  2373.             "CLSID": "{3F753E5A-DF80-4850-801C-35880F80756C}",
  2374.             "RISK": "none",
  2375.             "FILES": " VMarks.dll",
  2376.             "NAME": "Visual Marks",
  2377.             "URL": " http://www.6bytes.com/visualmarks.html ",
  2378.             "modified": 0
  2379.         },
  2380.         {
  2381.             "CLSID": "{3FF41DB4-33EA-4D77-9D24-180754FF76F2}",
  2382.             "RISK": "none",
  2383.             "FILES": " ADIEFLTR.DLL",
  2384.             "NAME": "AdIEFiltr",
  2385.             "URL": " http://www.utils32.com/adiefiltr.asp ",
  2386.             "modified": 0
  2387.         },
  2388.         {
  2389.             "CLSID": "{40AC4D2D-491D-11D4-AAF2-0008C75DCD2B}",
  2390.             "RISK": "high",
  2391.             "FILES": " Bpboh.dll, Mbho.dll",
  2392.             "NAME": "WurldMedia/bpboh",
  2393.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  2394.             "modified": 0
  2395.         },
  2396.         {
  2397.             "CLSID": "{40D61F04-59E4-4C8D-BF6E-697AB9C21F43}",
  2398.             "RISK": "none",
  2399.             "FILES": " ChessBar.dll",
  2400.             "NAME": "Instant Chess",
  2401.             "URL": " http://www.instantchess.com/?EXP=1&SN=uIKmSVlUf899VVfz ",
  2402.             "modified": 0
  2403.         },
  2404.         {
  2405.             "CLSID": "{4115122B-85FF-4DD3-9515-F075BEDE5EB5}",
  2406.             "RISK": "none",
  2407.             "FILES": " PBHelper.dll",
  2408.             "NAME": "PopupBlock",
  2409.             "URL": " http://www.popupblock.net/ ",
  2410.             "modified": 0
  2411.         },
  2412.         {
  2413.             "CLSID": "{4115122B-85FF-4DD3-9515-F075BEDE5EB5}",
  2414.             "RISK": "none",
  2415.             "FILES": " PBHelper.dll",
  2416.             "NAME": "SlipStream Web Accelerator",
  2417.             "URL": " <a href=\\\"http://www.slipstreamdata.com/sp.html\\\" target=\\\"_blank\\\">SlipStream Web Accelerator</a>",
  2418.             "modified": 0
  2419.         },
  2420.         {
  2421.             "CLSID": "{41353F8B-78CE-48A5-BE44-153ED293D192}",
  2422.             "RISK": "none",
  2423.             "FILES": " PopLib.dll",
  2424.             "NAME": "Bayden PopupPopper",
  2425.             "URL": " http://www.bayden.com/Popper/default.asp ",
  2426.             "modified": 0
  2427.         },
  2428.         {
  2429.             "CLSID": "{4178A354-348B-11D3-9AB2-00805F1A0ADB}",
  2430.             "RISK": "medium",
  2431.             "FILES": " Qrscript.dll",
  2432.             "NAME": "Compaq related",
  2433.             "modified": 0
  2434.         },
  2435.         {
  2436.             "CLSID": "{4194307F-65BB-454A-81D4-9E8A9D7CBAEA}",
  2437.             "RISK": "none",
  2438.             "FILES": " Teomabab.dll",
  2439.             "NAME": "Teoma search bar",
  2440.             "URL": " http://sp.ask.com/docs/teoma/toolbar/ ",
  2441.             "modified": 0
  2442.         },
  2443.         {
  2444.             "CLSID": "{41C098D1-A36B-11d4-9F8C-00E07D02355A}",
  2445.             "RISK": "none",
  2446.             "FILES": " GEOSAP~1.DLL",
  2447.             "NAME": "GeoSapoBar",
  2448.             "URL": " <a target=_top href=\"http://geo.sapo.pt/asp/idconteudos.asp?idconteudos=21&Language=English\">GeoSapoBar</a>",
  2449.             "modified": 0
  2450.         },
  2451.         {
  2452.             "CLSID": "{4209B4C1-1295-4908-9312-A53C036EB3CD}",
  2453.             "RISK": "high",
  2454.             "FILES": " BHO.dll",
  2455.             "NAME": "PopMonster SearchNav.com/PopNav foistware",
  2456.             "modified": 0
  2457.         },
  2458.         {
  2459.             "CLSID": "{423BD222-52BE-471A-BE01-75FCCEB3D48F}",
  2460.             "RISK": "high",
  2461.             "FILES": " winenc32.dll",
  2462.             "NAME": "i-Lookup/GlobalWebSearch",
  2463.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/ILookup.html\\\" target=\\\"_blank\\\">i-Lookup/GlobalWebSearch</a>",
  2464.             "modified": 0
  2465.         },
  2466.         {
  2467.             "CLSID": "{42A7CE31-CEE7-4CCE-A060-A44A7E52E062}",
  2468.             "RISK": "none",
  2469.             "FILES": " kie.dll",
  2470.             "NAME": "Keyboard Express",
  2471.             "URL": " <a HREF=\\\"http://www.keyboardexpress.com/keyexpdo.htm\\\" TARGET=\\\"_blank\\\">Keyboard Express</a>",
  2472.             "modified": 0
  2473.         },
  2474.         {
  2475.             "CLSID": "{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}",
  2476.             "RISK": "none",
  2477.             "FILES": " NavShExt.dll",
  2478.             "NAME": "Norton Antivirus",
  2479.             "URL": " http://www.symantec.com/nav/nav_9xnt/ ",
  2480.             "modified": 0
  2481.         },
  2482.         {
  2483.             "CLSID": "{437434D2-065E-499D-A337-59657DF3342F}",
  2484.             "RISK": "none",
  2485.             "FILES": " CTBand.dll",
  2486.             "NAME": "PowerIE",
  2487.             "URL": " http://www.powerie.com/ ",
  2488.             "modified": 0
  2489.         },
  2490.         {
  2491.             "CLSID": "{43872F3D-F7C8-4fa6-BE94-B3C263C1E2A9}",
  2492.             "RISK": "none",
  2493.             "FILES": " BHOIPAY.DLL",
  2494.             "NAME": "Interpay",
  2495.             "URL": " http://www.interpay.nl/english/content/dynamic.asp ",
  2496.             "modified": 0
  2497.         },
  2498.         {
  2499.             "CLSID": "{43D29D14-460E-4F3A-9037-E60F11EF12F0}",
  2500.             "RISK": "medium",
  2501.             "FILES": " Lightframe3iecom.dll",
  2502.             "NAME": "Philips Lightframe3 Monitor related",
  2503.             "modified": 0
  2504.         },
  2505.         {
  2506.             "CLSID": "{43D9E6F0-1776-4897-AE14-ECEDECBAFEC0}",
  2507.             "RISK": "none",
  2508.             "FILES": " askbarAB.dll, askbarAC.dll, askbarAD.dll",
  2509.             "NAME": "Ask Jeeves toolbar",
  2510.             "URL": " http://sp.ask.com/docs/toolbar/ ",
  2511.             "modified": 0
  2512.         },
  2513.         {
  2514.             "CLSID": "{43FA5935-E36E-4937-8127-A90191B2EC68}",
  2515.             "RISK": "high",
  2516.             "FILES": " domain11.dll",
  2517.             "NAME": "LoveTester scumware",
  2518.             "URL": " <a href=\\\"http://spamwatch.codefish.net.au/modules.php?op=modload&name=News&file=index&catid=&topic=24\\\" target=\\\"_blank\\\">LoveTester scumware</a>",
  2519.             "modified": 0
  2520.         },
  2521.         {
  2522.             "CLSID": "{4401FDC3-7996-4774-8D2B-C1AE9CD6CC25}",
  2523.             "RISK": "none",
  2524.             "FILES": " fplaunch.dll",
  2525.             "NAME": "E-book systems FlipAlbum",
  2526.             "URL": " http://www.flipalbum.com/ ",
  2527.             "modified": 0
  2528.         },
  2529.         {
  2530.             "CLSID": "{442599A9-EB41-4F1F-B999-737BC587F314}",
  2531.             "RISK": "none",
  2532.             "FILES": " NAJDIS~1.DLL",
  2533.             "NAME": "Najdi.si Toolbar",
  2534.             "URL": " <a href=\\\"http://www.najdi.si/\\\" target=\\\"_blank\\\">Najdi.si Toolbar</a>",
  2535.             "modified": 0
  2536.         },
  2537.         {
  2538.             "CLSID": "{447160CD-ECF5-4EA2-8A8A-1F70CA363F85}",
  2539.             "RISK": "high",
  2540.             "FILES": " bundle********.dll, MS****.dll (* = random char)",
  2541.             "NAME": "ClientMan",
  2542.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  2543.             "modified": 0
  2544.         },
  2545.         {
  2546.             "CLSID": "{44A23DAB-8D31-43AE-9F68-5AC24CF7CE8C}",
  2547.             "RISK": "high",
  2548.             "FILES": " Msinfosys.dll",
  2549.             "NAME": "Msinfosys/AutoSearch hijacker",
  2550.             "URL": " http://www.doxdesk.com/parasite/AutoSearch.html ",
  2551.             "modified": 0
  2552.         },
  2553.         {
  2554.             "CLSID": "{44AF5221-A43E-224E-56BA-ABCD43C344D1}",
  2555.             "RISK": "none",
  2556.             "FILES": " Dboostie.dll",
  2557.             "NAME": "WinBoost",
  2558.             "URL": " http://www.magellass.com/ ",
  2559.             "modified": 0
  2560.         },
  2561.         {
  2562.             "CLSID": "{44BE0690-5429-47f0-85BB-3FFD8020233E}",
  2563.             "RISK": "high",
  2564.             "FILES": " Ucmtsaie.dll",
  2565.             "NAME": "UCmore Search Accelerator",
  2566.             "modified": 0
  2567.         },
  2568.         {
  2569.             "CLSID": "{459CAF0F-CA9F-4d69-A1A9-B0699D07AB8A}",
  2570.             "RISK": "none",
  2571.             "FILES": " NUKERB~1.DLL",
  2572.             "NAME": "AdNuker",
  2573.             "URL": " http://www.adnuker.com/ ",
  2574.             "modified": 0
  2575.         },
  2576.         {
  2577.             "CLSID": "{45AD732C-2CE2-4666-B366-B2214AD57A49}",
  2578.             "RISK": "none",
  2579.             "FILES": " sbhelp.dll",
  2580.             "NAME": "Desktop Sidebar",
  2581.             "URL": " http://sidebar.tech-critic.com/ ",
  2582.             "modified": 0
  2583.         },
  2584.         {
  2585.             "CLSID": "{4647E382-520B-11D2-A0D0-004033D0645D}",
  2586.             "RISK": "high",
  2587.             "FILES": " mybands.dll",
  2588.             "NAME": "Internet Marketing Toolbar Pro",
  2589.             "URL": " http://www.ezimedia.com/ ",
  2590.             "modified": 0
  2591.         },
  2592.         {
  2593.             "CLSID": "{4647E382-520B-11D2-A0D0-004033D0645D}",
  2594.             "RISK": "none",
  2595.             "FILES": " DOCSShlToolBar.dll",
  2596.             "NAME": "Hummingbird DM Extensions",
  2597.             "modified": 0
  2598.         },
  2599.         {
  2600.             "CLSID": "{46832FF5-95B5-4654-88F4-7F5F37AD1FC2}",
  2601.             "RISK": "none",
  2602.             "FILES": " WSO.dll",
  2603.             "NAME": "Alladin eToken Web Sign On",
  2604.             "modified": 0
  2605.         },
  2606.         {
  2607.             "CLSID": "{46AE04C0-BCFA-4728-90E7-00EB4A8B3863}",
  2608.             "RISK": "medium",
  2609.             "FILES": " eBayband.dll",
  2610.             "NAME": "Ebay Toolbar",
  2611.             "URL": " http://pages.ebay.com/ebay_toolbar/ ",
  2612.             "modified": 0
  2613.         },
  2614.         {
  2615.             "CLSID": "{46B9D770-1B7D-45D1-81B4-AC07B2F127EF}",
  2616.             "RISK": "none",
  2617.             "FILES": " Flashbho.dll",
  2618.             "NAME": "Macromedia Flash FlashSwitch",
  2619.             "URL": " http://www.flashswitch.com/ ",
  2620.             "modified": 0
  2621.         },
  2622.         {
  2623.             "CLSID": "{4708D1EF-3800-4E4E-9948-360BA9164264}",
  2624.             "RISK": "none",
  2625.             "FILES": " unknown",
  2626.             "NAME": "Wordz Toolbar",
  2627.             "URL": " http://www.webattack.com/get/wordz.shtml ",
  2628.             "modified": 0
  2629.         },
  2630.         {
  2631.             "CLSID": "{474264BC-9571-47C1-85B9-780F756DC9CE}",
  2632.             "RISK": "none",
  2633.             "FILES": " BHOManager.dll",
  2634.             "NAME": "Astra LoadTest",
  2635.             "URL": " http://astratryandbuy.mercuryinteractive.com/cgi-bin/portal/trynbuy/alt.jsp?prod=8021 ",
  2636.             "modified": 0
  2637.         },
  2638.         {
  2639.             "CLSID": "{47833539-D0C5-4125-9FA8-0819E2EAAC93}",
  2640.             "RISK": "none",
  2641.             "FILES": " AcroIEFavClient.dll",
  2642.             "NAME": "Adobe Acrobat",
  2643.             "URL": " http://www.adobe.com/products/acrobatpro/main.html ",
  2644.             "modified": 0
  2645.         },
  2646.         {
  2647.             "CLSID": "{4845C240-1DFD-11D3-97DE-00104B873412}",
  2648.             "RISK": "none",
  2649.             "FILES": " Imarkup.ocx",
  2650.             "NAME": "iMarkup",
  2651.             "URL": " http://www.imarkup.com/ ",
  2652.             "modified": 0
  2653.         },
  2654.         {
  2655.             "CLSID": "{48BF2BC0-2945-11D8-8CAC-00080EC65465}",
  2656.             "RISK": "none",
  2657.             "FILES": " IR5V0_QCX.DLL",
  2658.             "NAME": "Intel video driver",
  2659.             "modified": 0
  2660.         },
  2661.         {
  2662.             "CLSID": "{496756A6-05E2-4646-96B5-071EC0394E9C}",
  2663.             "RISK": "medium",
  2664.             "FILES": " sonywebtie.dll",
  2665.             "NAME": "Sony related; Points tracker",
  2666.             "modified": 0
  2667.         },
  2668.         {
  2669.             "CLSID": "{4982D40A-C53B-4615-B15B-B5B5E98D167C}",
  2670.             "RISK": "none",
  2671.             "FILES": " toolbar.dll",
  2672.             "NAME": "AOL toolbar",
  2673.             "modified": 0
  2674.         },
  2675.         {
  2676.             "CLSID": "{499DB658-1909-420B-931A-4A8CAEFD232F}",
  2677.             "RISK": "high",
  2678.             "FILES": " Drvman32.dll",
  2679.             "NAME": "W32.Aspam.Trojan.B",
  2680.             "URL": " http://securityresponse.symantec.com/avcenter/venc/data/w32.aspam.trojan.b.html ",
  2681.             "modified": 0
  2682.         },
  2683.         {
  2684.             "CLSID": "{49A69FA0-2678-45CD-A069-6ACC372B20F8}",
  2685.             "RISK": "none",
  2686.             "FILES": " ?",
  2687.             "NAME": "Download Mage",
  2688.             "URL": " http://www.dlmage.com/product.htm ",
  2689.             "modified": 0
  2690.         },
  2691.         {
  2692.             "CLSID": "{49E0E0F0-5C30-11D4-945D-000000000000}",
  2693.             "RISK": "none",
  2694.             "FILES": " iesecpro.dll",
  2695.             "NAME": "IE SEcurity Pro",
  2696.             "URL": " http://www.softandco.com/redir.html?u=http://www.mybestsoft.com/iesec/index.html&pn=IE%20Security%20Pro ",
  2697.             "modified": 0
  2698.         },
  2699.         {
  2700.             "CLSID": "{49E0E0F0-5C30-11D4-945D-010002000012}",
  2701.             "RISK": "none",
  2702.             "FILES": " Ccpopb~1.dll",
  2703.             "NAME": "Coffeecup Popup Blocker",
  2704.             "URL": " http://www.coffeecup.com/popup-blocker/ ",
  2705.             "modified": 0
  2706.         },
  2707.         {
  2708.             "CLSID": "{49F2248D-1734-4B0F-A7B8-542E526EE07C}",
  2709.             "RISK": "high",
  2710.             "FILES": " autosearch.dll",
  2711.             "NAME": "YellowPages adware",
  2712.             "modified": 0
  2713.         },
  2714.         {
  2715.             "CLSID": "{4A20B7AF-2835-47EF-BBBF-09CAF8AF2907}",
  2716.             "RISK": "unknown",
  2717.             "FILES": " ?",
  2718.             "NAME": "Health and Fitness toolbar",
  2719.             "modified": 0
  2720.         },
  2721.         {
  2722.             "CLSID": "{4A2AACF3-ADF6-11D5-98A9-00E018981B9E}",
  2723.             "RISK": "high",
  2724.             "FILES": " newdotnet*_**.dll",
  2725.             "NAME": "NewDotNet",
  2726.             "URL": " http://www.doxdesk.com/parasite/NewDotNet.html ",
  2727.             "modified": 0
  2728.         },
  2729.         {
  2730.             "CLSID": "{4A368E80-174F-4872-96B5-0B27DDD11DB2}",
  2731.             "RISK": "none",
  2732.             "FILES": " dlprotect.dll",
  2733.             "NAME": "SpywareGuard",
  2734.             "URL": " http://www.wilderssecurity.net/spywareguard.html ",
  2735.             "modified": 0
  2736.         },
  2737.         {
  2738.             "CLSID": "{4A3A071E-F913-4eee-AE15-AEFFA16FB6BC}",
  2739.             "RISK": "none",
  2740.             "FILES": " PopUpWasher21.dll",
  2741.             "NAME": "Pop-Up Washer",
  2742.             "URL": " <a href=\\\"http://www.popup-killer.info/popup-washer/\\\" target=\\\"_blank\\\">Pop-Up Washer</a>",
  2743.             "modified": 0
  2744.         },
  2745.         {
  2746.             "CLSID": "{4B021269-DD24-48B2-96B4-DA121E9C0502}",
  2747.             "RISK": "high",
  2748.             "FILES": " ctpp*.dll, ctpp*_**.dll (* = random digit)",
  2749.             "NAME": "ezSearching",
  2750.             "URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
  2751.             "modified": 0
  2752.         },
  2753.         {
  2754.             "CLSID": "{4B2F5308-2CB0-40E2-8030-59936ED5D22C}",
  2755.             "RISK": "high",
  2756.             "FILES": " Hyperbar.dll",
  2757.             "NAME": "StartNow/HyperBar",
  2758.             "modified": 0
  2759.         },
  2760.         {
  2761.             "CLSID": "{4B5F2E08-6F39-479A-B547-B2026E4C7EDF}",
  2762.             "RISK": "none",
  2763.             "FILES": " Pnel.Dll",
  2764.             "NAME": "Earthlink Pop-Up blocker",
  2765.             "URL": " http://www.earthlink.net/home/software/popupblocker/totalaccessdownload/ ",
  2766.             "modified": 0
  2767.         },
  2768.         {
  2769.             "CLSID": "{4B7B69EB-A00F-4FCD-B601-ACCBB86ED528}",
  2770.             "RISK": "none",
  2771.             "FILES": " POP-Stopper-IE.dll",
  2772.             "NAME": "POP-Stopper-IE",
  2773.             "modified": 0
  2774.         },
  2775.         {
  2776.             "CLSID": "{4B8E6575-1013-45e9-BF77-9852ECEF07A9}",
  2777.             "RISK": "high",
  2778.             "FILES": " Tlsbar.dll",
  2779.             "NAME": "TheLocalSearch SmartBar",
  2780.             "URL": " http://www.thelocalsearch.com/ ",
  2781.             "modified": 0
  2782.         },
  2783.         {
  2784.             "CLSID": "{4BC3AC04-3E56-411D-B465-4FEA06654611}",
  2785.             "RISK": "none",
  2786.             "FILES": " ThinClientToolbar.dll",
  2787.             "NAME": "Iserv Accelerated Dialup",
  2788.             "URL": " http://www.iserv.net/support/help_accel_info.shtml ",
  2789.             "modified": 0
  2790.         },
  2791.         {
  2792.             "CLSID": "{4BCF322B-9621-4e90-9678-F1424EB7584E}",
  2793.             "RISK": "high",
  2794.             "FILES": " UDPMOD.DLL",
  2795.             "NAME": "Dialer",
  2796.             "modified": 0
  2797.         },
  2798.         {
  2799.             "CLSID": "{4C12361F-3431-4A69-B0CA-CA788A8F7C12}",
  2800.             "RISK": "none",
  2801.             "FILES": " MereSurfInstall.dll",
  2802.             "NAME": "MereSurfer",
  2803.             "URL": " <a href=\\\"http://www.meresoft.com/products/meresurfer/\\\" target=\\\"_blank\\\">MereSurfer</a>",
  2804.             "modified": 0
  2805.         },
  2806.         {
  2807.             "CLSID": "{4C4871FD-30F6-4430-8834-BC75D58F1529}",
  2808.             "RISK": "high",
  2809.             "FILES": " Sbsrch_v2.dll",
  2810.             "NAME": "SubSearch",
  2811.             "URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
  2812.             "modified": 0
  2813.         },
  2814.         {
  2815.             "CLSID": "{4C4C942D-03B0-4041-94F2-73991832615F}",
  2816.             "RISK": "medium",
  2817.             "FILES": " ArtTodayToolbar.dll",
  2818.             "NAME": "ArtToday",
  2819.             "URL": " http://www.arttoday.com/toolbar/index.shtml ",
  2820.             "modified": 0
  2821.         },
  2822.         {
  2823.             "CLSID": "{4C7B6DE1-99A4-4CF1-8B44-68889900E1D0}",
  2824.             "RISK": "none",
  2825.             "FILES": " bpumToolBand.dll",
  2826.             "NAME": "Telstra BigPond toolbar",
  2827.             "URL": " http://www.bigpond.com/helpcentre/toolbar/ ",
  2828.             "modified": 0
  2829.         },
  2830.         {
  2831.             "CLSID": "{4CC0FAF8-6048-421C-9FE2-261A9ECE5F80}",
  2832.             "RISK": "high",
  2833.             "FILES": " Fastseekertoolbar.dll, FASTSE~2.DLL",
  2834.             "NAME": "Fastseeker toolbar",
  2835.             "modified": 0
  2836.         },
  2837.         {
  2838.             "CLSID": "{4CEBBC6B-5CEE-4644-80CF-38980BAE93F6}",
  2839.             "RISK": "high",
  2840.             "FILES": " Iexplorr23.dll",
  2841.             "NAME": "InetSpeak/Iexplorr",
  2842.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  2843.             "modified": 0
  2844.         },
  2845.         {
  2846.             "CLSID": "{4D63CEBE-B169-426C-B092-C130C498B6E6}",
  2847.             "RISK": "none",
  2848.             "FILES": " CSShell.dll",
  2849.             "NAME": "ContentSaver Offline Browser",
  2850.             "URL": " http://www.macropool.com/en/index.html ",
  2851.             "modified": 0
  2852.         },
  2853.         {
  2854.             "CLSID": "{4DF1DB24-A57C-11d3-A180-00A0C90AE44B}",
  2855.             "RISK": "none",
  2856.             "FILES": " Cookiehlpr.dll",
  2857.             "NAME": "CookieCop",
  2858.             "URL": " http://www.pcmag.com/article2/04149624400.asp ",
  2859.             "modified": 0
  2860.         },
  2861.         {
  2862.             "CLSID": "{4DF5B116-4FD9-4039-B377-1130953A980F}",
  2863.             "RISK": "none",
  2864.             "FILES": " ToolBand.dll",
  2865.             "NAME": "RHSI toolbar",
  2866.             "URL": " http://www.rogershelp.com/help/content/download/software/softwareinfo.shtml ",
  2867.             "modified": 0
  2868.         },
  2869.         {
  2870.             "CLSID": "{4E1075F4-EEC4-4a86-ADD7-CD5F52858C31}",
  2871.             "RISK": "high",
  2872.             "FILES": " 2020Search.dll, \\2020SE~1.DLL",
  2873.             "NAME": "2020Search",
  2874.             "modified": 0
  2875.         },
  2876.         {
  2877.             "CLSID": "{4E4B8455-0390-4417-8774-6868F5544810}",
  2878.             "RISK": "unknown",
  2879.             "FILES": " GameBar.dll",
  2880.             "NAME": "Game Net Bar",
  2881.             "URL": " http://play.game.net/ ",
  2882.             "modified": 0
  2883.         },
  2884.         {
  2885.             "CLSID": "{4E7BD74F-2B8D-469E-92C6-CE7EB590A94D}",
  2886.             "RISK": "high",
  2887.             "FILES": " 2020Search2.dll, \\2020SE~1.DLL",
  2888.             "NAME": "2020Search",
  2889.             "modified": 0
  2890.         },
  2891.         {
  2892.             "CLSID": "{4E7BD74F-2B8D-469E-92EA-EC65A294AE31}",
  2893.             "RISK": "none",
  2894.             "FILES": " ALTAVI~1.DLL",
  2895.             "NAME": "Altavista Toolbar",
  2896.             "URL": " http://www.altavista.com/toolbar ",
  2897.             "modified": 0
  2898.         },
  2899.         {
  2900.             "CLSID": "{4E7BD74F-2B8D-469E-98F7-EB6DB99AA93B}",
  2901.             "RISK": "high",
  2902.             "FILES": " ifsomatic.dll",
  2903.             "NAME": "Searchcentrix hijacker",
  2904.             "modified": 0
  2905.         },
  2906.         {
  2907.             "CLSID": "{4E7BD74F-2B8D-469E-A08D-8F6FA787AD2D}",
  2908.             "RISK": "high",
  2909.             "FILES": " pwrsc032.dll",
  2910.             "NAME": "PowerSearch toolbar",
  2911.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/KeenValue.html\\\" TARGET=\\\"_blank\\\">PowerSearch toolbar</a>",
  2912.             "modified": 0
  2913.         },
  2914.         {
  2915.             "CLSID": "{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}",
  2916.             "RISK": "high",
  2917.             "FILES": " pwrs0102.dll",
  2918.             "NAME": "PowerSearch toolbar",
  2919.             "modified": 0
  2920.         },
  2921.         {
  2922.             "CLSID": "{4E7BD74F-2B8D-469E-A0E8-ED6DB696BB7D}",
  2923.             "RISK": "high",
  2924.             "FILES": " ACBARV2.DLL",
  2925.             "NAME": "Americlicks hijacker",
  2926.             "modified": 0
  2927.         },
  2928.         {
  2929.             "CLSID": "{4E7BD74F-2B8D-469E-A0E8-F76FA694BF2E}",
  2930.             "RISK": "high",
  2931.             "FILES": " searchv2.dll",
  2932.             "NAME": "Push toolbar",
  2933.             "modified": 0
  2934.         },
  2935.         {
  2936.             "CLSID": "{4E7BD74F-2B8D-469E-A1E4-EA6FA787AD2D}",
  2937.             "RISK": "high",
  2938.             "FILES": " pwrscuz3.dll",
  2939.             "NAME": "PowerSearch toolbar",
  2940.             "URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
  2941.             "modified": 0
  2942.         },
  2943.         {
  2944.             "CLSID": "{4E7BD74F-2B8D-469E-A3F3-E96FF4D5FA7D}",
  2945.             "RISK": "none",
  2946.             "FILES": " cvm1.dll",
  2947.             "NAME": "Shop n Search toolbar",
  2948.             "URL": "  http://www.consumervaluemall.com/toolbar/en/install.html ",
  2949.             "modified": 0
  2950.         },
  2951.         {
  2952.             "CLSID": "{4E7BD74F-2B8D-469E-A3FA-F363B384B77D}",
  2953.             "RISK": "medium",
  2954.             "FILES": " Mqgold.dll, mqgold*.dll (* = digit)",
  2955.             "NAME": "MapQuest toolbar",
  2956.             "URL": " http://www.mapquest.com/features/main.adp?page=mqtoolbar ",
  2957.             "modified": 0
  2958.         },
  2959.         {
  2960.             "CLSID": "{4E7BD74F-2B8D-469E-A58D-8F6FA787AD2D}",
  2961.             "RISK": "high",
  2962.             "FILES": " PWRSC037.DLL",
  2963.             "NAME": "hijacker",
  2964.             "modified": 0
  2965.         },
  2966.         {
  2967.             "CLSID": "{4E7BD74F-2B8D-469E-A68E-8E1CA787AD2D}",
  2968.             "RISK": "high",
  2969.             "FILES": " pwrs0104.dll",
  2970.             "NAME": "PowerSearch toolbar",
  2971.             "modified": 0
  2972.         },
  2973.         {
  2974.             "CLSID": "{4E7BD74F-2B8D-469E-AA8E-8E1CA787AD2D}",
  2975.             "RISK": "high",
  2976.             "FILES": " pwrs0108.dll",
  2977.             "NAME": "PowerSearch toolbar",
  2978.             "modified": 0
  2979.         },
  2980.         {
  2981.             "CLSID": "{4E7BD74F-2B8D-469E-C0FB-EF60B19DA02A}",
  2982.             "RISK": "high",
  2983.             "FILES": " Wzhelper.dll",
  2984.             "NAME": "Searchcentrix hijacker",
  2985.             "modified": 0
  2986.         },
  2987.         {
  2988.             "CLSID": "{4E7BD74F-2B8D-469E-C0FB-EF60B19DB42E}",
  2989.             "RISK": "high",
  2990.             "FILES": " SNHelper.dll",
  2991.             "NAME": "ShopNavSearch/Srng",
  2992.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/Srng.html\\\" TARGET=\\\"_blank\\\">ShopNavSearch/Srng</a>",
  2993.             "modified": 0
  2994.         },
  2995.         {
  2996.             "CLSID": "{4E7BD74F-2B8D-469E-C0FB-EF60B19DBC34}",
  2997.             "RISK": "high",
  2998.             "FILES": " ifhelper.dll",
  2999.             "NAME": "Searchcentrix hijacker",
  3000.             "modified": 0
  3001.         },
  3002.         {
  3003.             "CLSID": "{4E7BD74F-2B8D-469E-C0FB-FA62BD92B438}",
  3004.             "RISK": "none",
  3005.             "FILES": " engineer.dll",
  3006.             "NAME": "Engineering.com Toolbar",
  3007.             "modified": 0
  3008.         },
  3009.         {
  3010.             "CLSID": "{4E7BD74F-2B8D-469E-C0FB-FB6DA681FA7D}",
  3011.             "RISK": "none",
  3012.             "FILES": " Trader.dll",
  3013.             "NAME": "TrendTrader toolbar",
  3014.             "modified": 0
  3015.         },
  3016.         {
  3017.             "CLSID": "{4E7BD74F-2B8D-469E-C0FC-F76FA694BF2E}",
  3018.             "RISK": "high",
  3019.             "FILES": " Searchbr.dll",
  3020.             "NAME": "eUniverse SirSearch",
  3021.             "modified": 0
  3022.         },
  3023.         {
  3024.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD60B590A87D}",
  3025.             "RISK": "medium",
  3026.             "FILES": " realbar.dll",
  3027.             "NAME": "Real One toolbar",
  3028.             "modified": 0
  3029.         },
  3030.         {
  3031.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD60B890A37D}",
  3032.             "RISK": "none",
  3033.             "FILES": " yellbar.dll",
  3034.             "NAME": "British Yellow Pages",
  3035.             "URL": " <a href=\\\"http://uk.yell.com/tools/toolbar/yellbar.cab\\\" target=\\\"_blank\\\">British Yellow Pages</a>",
  3036.             "modified": 0
  3037.         },
  3038.         {
  3039.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD63B29BB37D}",
  3040.             "RISK": "high",
  3041.             "FILES": " infobar.dll",
  3042.             "NAME": "eUniverse Flowgo toolbar",
  3043.             "modified": 0
  3044.         },
  3045.         {
  3046.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD63B399BC7D}",
  3047.             "RISK": "high",
  3048.             "FILES": " flgobar.dll",
  3049.             "NAME": "eUniverse Flowgo toolbar",
  3050.             "modified": 0
  3051.         },
  3052.         {
  3053.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD69B994BD7D}",
  3054.             "RISK": "high",
  3055.             "FILES": " gamebar.dll",
  3056.             "NAME": "GameBar",
  3057.             "URL": " <a target=_top href=\"http://member.game.net/Membership/Privacy.asp\">GameBar</a>",
  3058.             "modified": 0
  3059.         },
  3060.         {
  3061.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD69BD9BBF3A}",
  3062.             "RISK": "none",
  3063.             "FILES": " geniebar.dll",
  3064.             "NAME": "SmartGenie",
  3065.             "URL": " <a href=\\\"http://www.smartgenie.com/\\\" target=\\\"_blank\\\">SmartGenie</a>",
  3066.             "modified": 0
  3067.         },
  3068.         {
  3069.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD6DB787FA7D}",
  3070.             "RISK": "none",
  3071.             "FILES": " Rcabar.dll",
  3072.             "NAME": "R/C Toolbar",
  3073.             "URL": " http://www.rcairport.com/toolbar/ ",
  3074.             "modified": 0
  3075.         },
  3076.         {
  3077.             "CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD78A087B530}",
  3078.             "RISK": "none",
  3079.             "FILES": " Morttbar.dll",
  3080.             "NAME": "Mortgage Toolbar",
  3081.             "URL": " http://www.mortgage.com ",
  3082.             "modified": 0
  3083.         },
  3084.         {
  3085.             "CLSID": "{4E7BD74F-2B8D-469E-C1EB-ED65B786FA7D}",
  3086.             "RISK": "none",
  3087.             "FILES": " Scirus.dll",
  3088.             "NAME": "Scirus toolbar",
  3089.             "URL": " http://www.scirus.com/toolbar/ ",
  3090.             "modified": 0
  3091.         },
  3092.         {
  3093.             "CLSID": "{4E7BD74F-2B8D-469E-C1F2-F063A081BF33}",
  3094.             "RISK": "none",
  3095.             "FILES": " Nettools.dll",
  3096.             "NAME": "Nettools",
  3097.             "URL": " http://www.firewalls.com/toolbar.asp ",
  3098.             "modified": 0
  3099.         },
  3100.         {
  3101.             "CLSID": "{4E7BD74F-2B8D-469E-C3FF-FB7FB59BFA7D}",
  3102.             "RISK": "none",
  3103.             "FILES": " Nasdaq.dll",
  3104.             "NAME": "Nasdaq Toolbar",
  3105.             "URL": " http://www.nasdaq.com/services/nasdaq_toolbar.stm   ",
  3106.             "modified": 0
  3107.         },
  3108.         {
  3109.             "CLSID": "{4E7BD74F-2B8D-469E-D1F0-E56FA787AD2D}",
  3110.             "RISK": "high",
  3111.             "FILES": " pwrscznc.dll",
  3112.             "NAME": "PowerSearch toolbar",
  3113.             "modified": 0
  3114.         },
  3115.         {
  3116.             "CLSID": "{4E7BD74F-2B8D-469E-D1F7-EB6DB99AA97D}",
  3117.             "RISK": "high",
  3118.             "FILES": " somatic.dll",
  3119.             "NAME": "Searchcentrix seek4free hijacker",
  3120.             "modified": 0
  3121.         },
  3122.         {
  3123.             "CLSID": "{4E7BD74F-2B8D-469E-D3EC-FE6EB89AB529}",
  3124.             "RISK": "none",
  3125.             "FILES": " Toolbara.dll",
  3126.             "NAME": "BridalClicks toolbar",
  3127.             "URL": " http://www.bridalclicks.com/ ",
  3128.             "modified": 0
  3129.         },
  3130.         {
  3131.             "CLSID": "{4E7BD74F-2B8D-469E-D3FA-F27BA787AD2D}",
  3132.             "RISK": "high",
  3133.             "FILES": " pwrswmda.dll",
  3134.             "NAME": "PowerSearch toolbar",
  3135.             "URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
  3136.             "modified": 0
  3137.         },
  3138.         {
  3139.             "CLSID": "{4E7BD74F-2B8D-469E-D3FC-F363BB81A82F}",
  3140.             "RISK": "none",
  3141.             "FILES": " rrtoolba.dll",
  3142.             "NAME": "ResellerRatings toolbar",
  3143.             "URL": " http://www.resellerratings.com/ ",
  3144.             "modified": 0
  3145.         },
  3146.         {
  3147.             "CLSID": "{4E7BD74F-2B8D-469E-D4F3-F66DA787AD2D}",
  3148.             "RISK": "high",
  3149.             "FILES": " pwrsaimf.dll",
  3150.             "NAME": "PowerSearch toolbar",
  3151.             "modified": 0
  3152.         },
  3153.         {
  3154.             "CLSID": "{4E7BD74F-2B8D-469E-D6F5-F66EA787AD2D}",
  3155.             "RISK": "high",
  3156.             "FILES": " pwrsbikd.dll",
  3157.             "NAME": "PowerSearch toolbar",
  3158.             "modified": 0
  3159.         },
  3160.         {
  3161.             "CLSID": "{4E7BD74F-2B8D-469E-D7E4-F660B597BF2A}",
  3162.             "RISK": "high",
  3163.             "FILES": " Webalize.dll",
  3164.             "NAME": "Searchcentrix Webalize toolbar",
  3165.             "modified": 0
  3166.         },
  3167.         {
  3168.             "CLSID": "{4E7BD74F-2B8D-469E-D7EE-FE6FA781BF33}",
  3169.             "RISK": "none",
  3170.             "FILES": " Netscape.dll",
  3171.             "NAME": "Netscape toolbar",
  3172.             "modified": 0
  3173.         },
  3174.         {
  3175.             "CLSID": "{4E7BD74F-2B8D-469E-D9FB-FA6BAD98FA7D}",
  3176.             "RISK": "high",
  3177.             "FILES": " MyGeek.dll",
  3178.             "NAME": "Search-o-Matic2000 toolbar",
  3179.             "modified": 0
  3180.         },
  3181.         {
  3182.             "CLSID": "{4E7BD74F-2B8D-469E-DAEE-FE7EB39ABD7D}",
  3183.             "RISK": "none",
  3184.             "FILES": " GOGRAPH.DLL",
  3185.             "NAME": "Gograph",
  3186.             "URL": " http://en.toolbar.gograph.com/ ",
  3187.             "modified": 0
  3188.         },
  3189.         {
  3190.             "CLSID": "{4E7BD74F-2B8D-469E-DBFC-ED1CA787AD2D}",
  3191.             "RISK": "high",
  3192.             "FILES": " pwrs0rbi.dll",
  3193.             "NAME": "PowerSearch toolbar",
  3194.             "modified": 0
  3195.         },
  3196.         {
  3197.             "CLSID": "{4E7BD74F-2B8D-469E-DFF7-EC6BF4D5FA7D}",
  3198.             "RISK": "high",
  3199.             "FILES": " gsim.dll",
  3200.             "NAME": "Searchcentrix.com/Mygeek.com hijacker",
  3201.             "modified": 0
  3202.         },
  3203.         {
  3204.             "CLSID": "{4E7BD74F-2B8D-469E-DFF7-EC7DA787AD2D}",
  3205.             "RISK": "high",
  3206.             "FILES": " Pwrsqsim.dll",
  3207.             "NAME": "PowerSearch toolbar",
  3208.             "modified": 0
  3209.         },
  3210.         {
  3211.             "CLSID": "{4E7D0B40-F575-4A29-9710-4675EAF4686A}",
  3212.             "RISK": "none",
  3213.             "FILES": " Minijvab.dll",
  3214.             "NAME": "Mini Jeeves Toolbar",
  3215.             "URL": " http://www.ask.co.uk/toolbar/index.asp ",
  3216.             "modified": 0
  3217.         },
  3218.         {
  3219.             "CLSID": "{4EBDC6E1-4B3C-11D7-BC75-008048C7A589}",
  3220.             "RISK": "none",
  3221.             "FILES": " Softwaresearch.dll",
  3222.             "NAME": "Software Search bar",
  3223.             "URL": " http://www.iebars.com/softwaresearch.html ",
  3224.             "modified": 0
  3225.         },
  3226.         {
  3227.             "CLSID": "{4F869C58-D71D-4850-8BDD-7B5CDF8EC911}",
  3228.             "RISK": "none",
  3229.             "FILES": " ibestbar.dll",
  3230.             "NAME": "iBest",
  3231.             "URL": " <a target=_top href=\"http://cyberpoa.com.br/deupaunomicro/banibest.htm\">iBest</a>",
  3232.             "modified": 0
  3233.         },
  3234.         {
  3235.             "CLSID": "{4F92B827-1E56-4E30-A978-A17A7861A606}",
  3236.             "RISK": "none",
  3237.             "FILES": " ebBlinds.dll",
  3238.             "NAME": "Object Desktop Webblinds",
  3239.             "URL": " http://www.stardock.com/products/webblinds/ ",
  3240.             "modified": 0
  3241.         },
  3242.         {
  3243.             "CLSID": "{4FC95EDD-4796-4966-9049-29649C80111D}",
  3244.             "RISK": "high",
  3245.             "FILES": " incfindbho.dll, INCFIN~1.DLL",
  3246.             "NAME": "IncrediFind/Keenvalue",
  3247.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/KeenValue.html\\\"TARGET=\\\"_blank\\\">IncrediFind/Keenvalue</a>",
  3248.             "modified": 0
  3249.         },
  3250.         {
  3251.             "CLSID": "{5074851C-F67A-488E-A9C9-C244573F4068}",
  3252.             "RISK": "high",
  3253.             "FILES": " ieasst.dll, iecomp.dll",
  3254.             "NAME": "SeekSeek",
  3255.             "modified": 0
  3256.         },
  3257.         {
  3258.             "CLSID": "{516E2306-7ADF-47EC-AEA8-ACB6B51899F1}",
  3259.             "RISK": "none",
  3260.             "FILES": " Icapture.dll",
  3261.             "NAME": "MacroExpress",
  3262.             "URL": " http://www.macros.com/ ",
  3263.             "modified": 0
  3264.         },
  3265.         {
  3266.             "CLSID": "{525BBD23-1863-46C6-86D6-5F9A3715D44E}",
  3267.             "RISK": "high",
  3268.             "FILES": " mbho.dll",
  3269.             "NAME": "WurldMedia",
  3270.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  3271.             "modified": 0
  3272.         },
  3273.         {
  3274.             "CLSID": "{52706EF7-D7A2-49AD-A615-E903858CF284}",
  3275.             "RISK": "none",
  3276.             "FILES": " X1iebho.dll",
  3277.             "NAME": "NetZero toolbar",
  3278.             "modified": 0
  3279.         },
  3280.         {
  3281.             "CLSID": "{528DA727-EC08-461E-9564-DF5C971E8574}",
  3282.             "RISK": "high",
  3283.             "FILES": " WinNB40.dll",
  3284.             "NAME": "NetNucleus/Mirar webband",
  3285.             "modified": 0
  3286.         },
  3287.         {
  3288.             "CLSID": "{52D9BB0E-07DF-11D5-AE44-444553540000}",
  3289.             "RISK": "none",
  3290.             "FILES": " BHO.dll",
  3291.             "NAME": "ContextMenu ControlFreak",
  3292.             "URL": " http://www.hace.us-inc.com/cmcf.shtml ",
  3293.             "modified": 0
  3294.         },
  3295.         {
  3296.             "CLSID": "{5321E378-FFAD-4999-8C62-03CA8155F0B3}",
  3297.             "RISK": "high",
  3298.             "FILES": " 1.00.07.dll, *.**.**.dll, (* = digit)",
  3299.             "NAME": "CoolWebSearch parasite variant",
  3300.             "modified": 0
  3301.         },
  3302.         {
  3303.             "CLSID": "{53707962-6F74-2D53-2644-206D7942484F}",
  3304.             "RISK": "none",
  3305.             "FILES": " SDhelper.dll",
  3306.             "NAME": "Spybot - Search & Destroy",
  3307.             "URL": " http://spybot.eon.net.au/ ",
  3308.             "modified": 0
  3309.         },
  3310.         {
  3311.             "CLSID": "{53CBEE82-D747-11d3-9ED0-005004189684}",
  3312.             "RISK": "high",
  3313.             "FILES": " Ucmie.dll",
  3314.             "NAME": "UCmore toolbar",
  3315.             "URL": " http://www.doxdesk.com/parasite/UCmore.html ",
  3316.             "modified": 0
  3317.         },
  3318.         {
  3319.             "CLSID": "{53E10C2C-43B2-4657-BA29-AAE179E7D35C}",
  3320.             "RISK": "high",
  3321.             "FILES": " BHO2.dll",
  3322.             "NAME": "HighTraffic",
  3323.             "URL": " http://www.doxdesk.com/parasite/HighTraffic.html ",
  3324.             "modified": 0
  3325.         },
  3326.         {
  3327.             "CLSID": "{5420be57-2ed4-4f4f-9eb9-381cec2290e7}",
  3328.             "RISK": "none",
  3329.             "FILES": " ReadBar.dll",
  3330.             "NAME": "ReadingBar",
  3331.             "URL": " http://www.readingbar.com/help/English.htm ",
  3332.             "modified": 0
  3333.         },
  3334.         {
  3335.             "CLSID": "{54A85A38-A699-4AEC-8F88-AB542210C93B}",
  3336.             "RISK": "high",
  3337.             "FILES": " Gws.dll",
  3338.             "NAME": "i-lookup search bar",
  3339.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  3340.             "modified": 0
  3341.         },
  3342.         {
  3343.             "CLSID": "{54EC170F-6EB1-47C6-9C4D-EB0BE20CE45E}",
  3344.             "RISK": "medium",
  3345.             "FILES": " Aphelper.dll",
  3346.             "NAME": "AdBlock",
  3347.             "URL": " http://adblock.linkz.com/Home.php ",
  3348.             "modified": 0
  3349.         },
  3350.         {
  3351.             "CLSID": "{54ED9B49-81D1-4866-95A6-30F01DE0047E}",
  3352.             "RISK": "high",
  3353.             "FILES": " iexplorr29.dll",
  3354.             "NAME": "InetSpeak/Iexplorr",
  3355.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/InetSpeak.html\\\" target=\\\"_blank\\\">InetSpeak/Iexplorr</a>",
  3356.             "modified": 0
  3357.         },
  3358.         {
  3359.             "CLSID": "{5538fb62-f725-4433-a965-91314e8d8e4d}",
  3360.             "RISK": "none",
  3361.             "FILES": " toolbar1.dll",
  3362.             "NAME": "Vivisimo",
  3363.             "URL": " <a href=\\\"http://vivisimo.com/toolbar/toolbar-features.html\\\" target=\\\"_blank\\\">Vivisimo</a>",
  3364.             "modified": 0
  3365.         },
  3366.         {
  3367.             "CLSID": "{55910916-8B4E-4C1E-9253-CCE296EA71EB}",
  3368.             "RISK": "high",
  3369.             "FILES": " eabh.dll",
  3370.             "NAME": "Ezula TopText",
  3371.             "URL": " http://www.cexx.org/toptext.htm ",
  3372.             "modified": 0
  3373.         },
  3374.         {
  3375.             "CLSID": "{55EDFA0E-B812-4AE5-94CC-8ABE6EA13515}",
  3376.             "RISK": "unknown",
  3377.             "FILES": " GameBar.dll",
  3378.             "NAME": "Game Net bar",
  3379.             "URL": " <a target=_top href=\"http://play.game.net/\">Game Net bar</a>",
  3380.             "modified": 0
  3381.         },
  3382.         {
  3383.             "CLSID": "{56071E0D-C61B-11D3-B41C-00E02927A304}",
  3384.             "RISK": "none",
  3385.             "FILES": " FreeBHOR.dll",
  3386.             "NAME": "Zero Knowledge Freedom",
  3387.             "URL": " http://www.freedom.net/ ",
  3388.             "modified": 0
  3389.         },
  3390.         {
  3391.             "CLSID": "{562C1A20-72E7-4ED8-A26D-0DC57415FE92}",
  3392.             "RISK": "medium",
  3393.             "FILES": " PGI.DLL",
  3394.             "NAME": "Vantage popup guard",
  3395.             "modified": 0
  3396.         },
  3397.         {
  3398.             "CLSID": "{56796C51-A689-4360-B813-18A47C9D05C2}",
  3399.             "RISK": "none",
  3400.             "FILES": " Adpurger.dll",
  3401.             "NAME": "AdPurger",
  3402.             "URL": " http://www.adpurger.com/ ",
  3403.             "modified": 0
  3404.         },
  3405.         {
  3406.             "CLSID": "{569E7719-1A11-415E-9206-AC1860FB8BFF}",
  3407.             "RISK": "none",
  3408.             "FILES": " IGCatcher.dll",
  3409.             "NAME": "InstantGet",
  3410.             "URL": " http://www.majorgeeks.com/download.php?det=3886 ",
  3411.             "modified": 0
  3412.         },
  3413.         {
  3414.             "CLSID": "{576EB0AD-6980-11D5-A9CD-0001032FEE17}",
  3415.             "RISK": "none",
  3416.             "FILES": " Ycheckh.dll",
  3417.             "NAME": "Yahoo Companion!",
  3418.             "URL": " http://companion.yahoo.com/ ",
  3419.             "modified": 0
  3420.         },
  3421.         {
  3422.             "CLSID": "{57D23905-A2A3-4002-8C48-09DEA366703F}",
  3423.             "RISK": "none",
  3424.             "FILES": " Watchie.dll",
  3425.             "NAME": "AdCutOff",
  3426.             "URL": " http://www.soft2u.com/download/adcutoff/adcutoff.html ",
  3427.             "modified": 0
  3428.         },
  3429.         {
  3430.             "CLSID": "{57E69D5A-6539-4d7d-9637-775DE8A385B4}",
  3431.             "RISK": "high",
  3432.             "FILES": " Xupitertoolbar.dll, t.dll",
  3433.             "NAME": "Xupiter",
  3434.             "URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
  3435.             "modified": 0
  3436.         },
  3437.         {
  3438.             "CLSID": "{57E91B41-F40A-11D1-B792-444553540000}",
  3439.             "RISK": "none",
  3440.             "FILES": " Antapi.dll",
  3441.             "NAME": "NetAnts",
  3442.             "URL": " http://www.netants.com/ ",
  3443.             "modified": 0
  3444.         },
  3445.         {
  3446.             "CLSID": "{58359010-BF36-11D3-99A2-0050DA2EE1BE}",
  3447.             "RISK": "high",
  3448.             "FILES": " ?",
  3449.             "NAME": "Ezula TopText",
  3450.             "URL": " http://www.cexx.org/toptext.htm ",
  3451.             "modified": 0
  3452.         },
  3453.         {
  3454.             "CLSID": "{5843A29E-1246-11D4-BA8C-0050DA707ACD}",
  3455.             "RISK": "high",
  3456.             "FILES": " crs32.dll",
  3457.             "NAME": "Gratisware",
  3458.             "URL": " http://www.doxdesk.com/parasite/Gratisware.html ",
  3459.             "modified": 0
  3460.         },
  3461.         {
  3462.             "CLSID": "{587DBF2D-9145-4c9e-92C2-1F953DA73773}",
  3463.             "RISK": "high",
  3464.             "FILES": " Iefeatsl.dll, win**32.dll, sys**32.dll, ie**32.dll, ms**32.dll, (* = random char)",
  3465.             "NAME": "CoolWebSearch parasite variant",
  3466.             "modified": 0
  3467.         },
  3468.         {
  3469.             "CLSID": "{5886A6DC-AAF4-45E9-979A-8E5E6DEE30E7}",
  3470.             "RISK": "high",
  3471.             "FILES": " zSearch.dll",
  3472.             "NAME": "TotalVelocity zSearch toolbar",
  3473.             "modified": 0
  3474.         },
  3475.         {
  3476.             "CLSID": "{58A83E4F-477A-4A3F-BF9B-B65BC2BD5598}",
  3477.             "RISK": "none",
  3478.             "FILES": " siClientUIHotmail.dll",
  3479.             "NAME": "Spam Inspector Hotmail plugin",
  3480.             "URL": " http://www.giantcompany.com/default.aspx?PID=A22046 ",
  3481.             "modified": 0
  3482.         },
  3483.         {
  3484.             "CLSID": "{5998B08E-CFAC-11D5-822A-0050048E6E38}",
  3485.             "RISK": "high",
  3486.             "FILES": " SurfPlugin.dll",
  3487.             "NAME": "JimmySurf",
  3488.             "URL": " http://www.pestpatrol.com/PestInfo/j/jimmysurf.asp ",
  3489.             "modified": 0
  3490.         },
  3491.         {
  3492.             "CLSID": "{5A3A5040-4210-11D7-BD2E-00080E34122F}",
  3493.             "RISK": "high",
  3494.             "FILES": " M030206POHS.DLL",
  3495.             "NAME": "WurldMedia",
  3496.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  3497.             "modified": 0
  3498.         },
  3499.         {
  3500.             "CLSID": "{5ADA9CAC-04F9-4DD2-ABFD-74D673BE8624}",
  3501.             "RISK": "none",
  3502.             "FILES": " _MWOLTB.DLL",
  3503.             "NAME": "Merriam-Webster Toolbar",
  3504.             "URL": " <a href=\\\"http://www.m-w.com/tools/toolbar/\\\" target=\\\"_blank\\\">Merriam-Webster Toolbar</a>",
  3505.             "modified": 0
  3506.         },
  3507.         {
  3508.             "CLSID": "{5B2AD7D7-81E3-4B74-8B74-4600A67BBB8A}",
  3509.             "RISK": "none",
  3510.             "FILES": " PAGESURF.DLL",
  3511.             "NAME": "PageSurf.com Toolbar",
  3512.             "URL": " http://www.pagesurf.com/toolbar.html ",
  3513.             "modified": 0
  3514.         },
  3515.         {
  3516.             "CLSID": "{5BBFC00A-312C-4777-A5DF-DDA65C67120C}",
  3517.             "RISK": "none",
  3518.             "FILES": " Ubp.dll",
  3519.             "NAME": "Antipop-up UOL toolbar",
  3520.             "URL": " http://antipopup.uol.com.br/ ",
  3521.             "modified": 0
  3522.         },
  3523.         {
  3524.             "CLSID": "{5C9DCA26-CEC4-4280-A831-D622D4DBF113}",
  3525.             "RISK": "none",
  3526.             "FILES": " LINKMA~1.DLL",
  3527.             "NAME": "Linkman",
  3528.             "URL": " http://www.outertech.com/index.php?_charisma_page=product&id=5 ",
  3529.             "modified": 0
  3530.         },
  3531.         {
  3532.             "CLSID": "{5CA3D70E-1895-11CF-8E15-001234567890}",
  3533.             "RISK": "medium",
  3534.             "FILES": " tfswshx.dll",
  3535.             "NAME": "Hewlett-Packard/Veritas DLA software",
  3536.             "modified": 0
  3537.         },
  3538.         {
  3539.             "CLSID": "{5CF8A355-F8C6-4883-9C25-49D01A7D25BE}",
  3540.             "RISK": "high",
  3541.             "FILES": " zestyfind.dll",
  3542.             "NAME": "hijacker",
  3543.             "modified": 0
  3544.         },
  3545.         {
  3546.             "CLSID": "{5D60FF48-95BE-4956-B4C6-6BB168A70310}",
  3547.             "RISK": "high",
  3548.             "FILES": " incfindbho.dll, INCFIN~1.DLL",
  3549.             "NAME": "IncrediFind/Keenvalue",
  3550.             "URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
  3551.             "modified": 0
  3552.         },
  3553.         {
  3554.             "CLSID": "{5DAFD089-24B1-4c5e-BD42-8CA72550717B}",
  3555.             "RISK": "high",
  3556.             "FILES": " saiemod.dll",
  3557.             "NAME": "180Solutions.com SurfAssistant",
  3558.             "modified": 0
  3559.         },
  3560.         {
  3561.             "CLSID": "{5DE4E98D-DE09-4BC3-8A70-A6D9A24F4EC9}",
  3562.             "RISK": "none",
  3563.             "FILES": " 1Cie.dll",
  3564.             "NAME": "Image Extractor",
  3565.             "URL": " http://www.icegiant.com/ieie.shtml ",
  3566.             "modified": 0
  3567.         },
  3568.         {
  3569.             "CLSID": "{5E92F538-B50B-46C5-9C5F-C6EECED3F6C6}",
  3570.             "RISK": "medium",
  3571.             "FILES": " Ultrabar.dll",
  3572.             "NAME": "Dogpile toolbar",
  3573.             "modified": 0
  3574.         },
  3575.         {
  3576.             "CLSID": "{5ED50735-B0D9-47C6-9774-02DD8E6FE053}",
  3577.             "RISK": "high",
  3578.             "FILES": " disable.dll",
  3579.             "NAME": "ClientMan",
  3580.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/ClientMan.html\\\" TARGET=\\\"_blank\\\">ClientMan</a>",
  3581.             "modified": 0
  3582.         },
  3583.         {
  3584.             "CLSID": "{5F186CB1-08C6-4034-8529-CDC625463D99}",
  3585.             "RISK": "none",
  3586.             "FILES": " ANNSHE~1.DLL",
  3587.             "NAME": "Emeris Annotis Mail",
  3588.             "URL": " http://www.emeris.com/pages/home.php ",
  3589.             "modified": 0
  3590.         },
  3591.         {
  3592.             "CLSID": "{5F1ABCDB-A875-46c1-8345-B72A4567E486}",
  3593.             "RISK": "high",
  3594.             "FILES": " ISTbar.dll",
  3595.             "NAME": "ISTBar",
  3596.             "URL": " http://www.doxdesk.com/parasite/ISTbar.html ",
  3597.             "modified": 0
  3598.         },
  3599.         {
  3600.             "CLSID": "{5F1ABCDB-A875-46c1-8345-B72A4567E486}",
  3601.             "RISK": "high",
  3602.             "FILES": " data.dll, toolbar_nieuw**.dll (* = random digit)",
  3603.             "NAME": "DotCom toolbar variant",
  3604.             "modified": 0
  3605.         },
  3606.         {
  3607.             "CLSID": "{5F48C39E-5581-4701-9A76-96A6E25E5BCC}",
  3608.             "RISK": "none",
  3609.             "FILES": " SGengine.dll",
  3610.             "NAME": "SurfGhost",
  3611.             "URL": " <a href=\\\"http://products.enterpriseitplanet.com/security/security/1059245261.html\\\"TARGET=\\\"_blank\\\">SurfGhost</a>",
  3612.             "modified": 0
  3613.         },
  3614.         {
  3615.             "CLSID": "{5F50A50A-0A0F-4F58-8B1C-62BC60F9B05A}",
  3616.             "RISK": "none",
  3617.             "FILES": " Ncrssa~1.dll",
  3618.             "NAME": "Newz Crawler",
  3619.             "URL": " http://www.newzcrawler.com/ ",
  3620.             "modified": 0
  3621.         },
  3622.         {
  3623.             "CLSID": "{5F5564AC-DE7A-4DCD-9296-32E71A35DCB6}",
  3624.             "RISK": "high",
  3625.             "FILES": " Browseraidtoolbar.dll, Quicklaunchie.dll",
  3626.             "NAME": "BrowserAid CashToolbar/QuickLaunch toolbar",
  3627.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  3628.             "modified": 0
  3629.         },
  3630.         {
  3631.             "CLSID": "{5F5564AC-DE7A-4DCD-9296-32E71A35DCB7}",
  3632.             "RISK": "high",
  3633.             "FILES": " bptlb.dll",
  3634.             "NAME": "BrowserPal toolbar",
  3635.             "URL": " http://www.doxdesk.com/parasite/BrowserPal.html ",
  3636.             "modified": 0
  3637.         },
  3638.         {
  3639.             "CLSID": "{5F6293C0-8686-11d5-9C62-000102117FC3}",
  3640.             "RISK": "none",
  3641.             "FILES": " palz3003.dll ",
  3642.             "NAME": "mini eresMas toolbar",
  3643.             "modified": 0
  3644.         },
  3645.         {
  3646.             "CLSID": "{601ED020-FB6C-11D3-87D8-0050DA59922B}",
  3647.             "RISK": "none",
  3648.             "FILES": " wsbho2k0.dll",
  3649.             "NAME": "WS_FTP",
  3650.             "URL": " http://www.ipswitch.com/Products/WS_FTP/ ",
  3651.             "modified": 0
  3652.         },
  3653.         {
  3654.             "CLSID": "{604B283A-4E26-4504-98E7-72859F949547}",
  3655.             "RISK": "none",
  3656.             "FILES": " sypcms.dll",
  3657.             "NAME": "Hitware Popup Killer Lite",
  3658.             "modified": 0
  3659.         },
  3660.         {
  3661.             "CLSID": "{6085FB5B-C281-4B9C-8E5D-D2792EA30D2F}",
  3662.             "RISK": "high",
  3663.             "FILES": " Netpal.dll",
  3664.             "NAME": "Netpal",
  3665.             "URL": " http://www.doxdesk.com/parasite/NetPal.html ",
  3666.             "modified": 0
  3667.         },
  3668.         {
  3669.             "CLSID": "{60C718BD-2471-44E4-AFCF-6625BEB620BF}",
  3670.             "RISK": "none",
  3671.             "FILES": " IEPerformanceAddon.dll",
  3672.             "NAME": "IE Performance Addon",
  3673.             "URL": " http://dotexe.mastak.com/ ",
  3674.             "modified": 0
  3675.         },
  3676.         {
  3677.             "CLSID": "{60D3AAEB-AA39-4AE0-B2F9-E4AF0613A2A3}",
  3678.             "RISK": "none",
  3679.             "FILES": " Abg_plugin.dll",
  3680.             "NAME": "Adbegone",
  3681.             "URL": " http://www.cyberspacehq.com/products/adbegone/home.shtm ",
  3682.             "modified": 0
  3683.         },
  3684.         {
  3685.             "CLSID": "{60E78CAC-E9A7-4302-B9EE-8582EDE22FBF}",
  3686.             "RISK": "high",
  3687.             "FILES": " BHO001.DLL",
  3688.             "NAME": "iGetNet/Natural Language Navigation",
  3689.             "URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
  3690.             "modified": 0
  3691.         },
  3692.         {
  3693.             "CLSID": "{6165D324-3AAF-4C63-B545-C7D2285BEA1C}",
  3694.             "RISK": "none",
  3695.             "FILES": " thbho.dll",
  3696.             "NAME": "BrowseAloud",
  3697.             "URL": " http://www.browsealoud.com/ ",
  3698.             "modified": 0
  3699.         },
  3700.         {
  3701.             "CLSID": "{6172E460-FAE3-11D2-B494-004005A47AAA}",
  3702.             "RISK": "none",
  3703.             "FILES": " Iec.dll",
  3704.             "NAME": "Powermarks Bookmark manager",
  3705.             "URL": " http://www.kaylon.com/power.html ",
  3706.             "modified": 0
  3707.         },
  3708.         {
  3709.             "CLSID": "{61B5B39F-0750-4637-9D70-A63A79978B5D}",
  3710.             "RISK": "none",
  3711.             "FILES": " gameknot_toolbar.dll",
  3712.             "NAME": "GameKnot",
  3713.             "URL": " http://gameknot.com/list_games.pl? ",
  3714.             "modified": 0
  3715.         },
  3716.         {
  3717.             "CLSID": "{61D029AC-972B-49FE-A155-962DFA0A37BB}",
  3718.             "RISK": "high",
  3719.             "FILES": " Ineb.dll",
  3720.             "NAME": "i-lookup search bar",
  3721.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  3722.             "modified": 0
  3723.         },
  3724.         {
  3725.             "CLSID": "{6231D512-E4A4-4DF2-BE62-5B8F0EE348EF}",
  3726.             "RISK": "high",
  3727.             "FILES": " cesweb.dll",
  3728.             "NAME": "CnsMin",
  3729.             "modified": 0
  3730.         },
  3731.         {
  3732.             "CLSID": "{62999427-33FC-4baf-9C9C-BCE6BD127F08}",
  3733.             "RISK": "none",
  3734.             "FILES": " Dapiebar.dll",
  3735.             "NAME": "DAP",
  3736.             "URL": " http://www.speedbit.com/DefaultT.asp? ",
  3737.             "modified": 0
  3738.         },
  3739.         {
  3740.             "CLSID": "{634EFDE4-087D-4ce9-952F-63C9EEB2E0BF}",
  3741.             "RISK": "high",
  3742.             "FILES": " WNDPOS~1.DLL",
  3743.             "NAME": "Adware linked to www.Townews.com",
  3744.             "modified": 0
  3745.         },
  3746.         {
  3747.             "CLSID": "{63B78BC1-A711-4D46-AD2F-C581AC420D41}",
  3748.             "RISK": "high",
  3749.             "FILES": " Btiein.dll, *******~1.EXE, (* = random char/digit)",
  3750.             "NAME": "Huntbar",
  3751.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  3752.             "modified": 0
  3753.         },
  3754.         {
  3755.             "CLSID": "{63CF97E8-4133-438a-A831-CC9C6D47D673}",
  3756.             "RISK": "high",
  3757.             "FILES": " Flcp.dll",
  3758.             "NAME": "FlashTrack",
  3759.             "URL": " Ftapp <a href=\\\"http://www.doxdesk.com/parasite/FlashTrack.html\\\" target=\\\"_blank\\\">FlashTrack Ftapp</a>",
  3760.             "modified": 0
  3761.         },
  3762.         {
  3763.             "CLSID": "{6427806D-3820-11D5-9939-00B0D0522EB5}",
  3764.             "RISK": "none",
  3765.             "FILES": " FireConverterBrowserHelperObject.dll",
  3766.             "NAME": "Firepad FireConverter",
  3767.             "URL": " http://www.palmblvd.com/software/pc/FireConverter-2000-11-8-palm-pc.html ",
  3768.             "modified": 0
  3769.         },
  3770.         {
  3771.             "CLSID": "{645FD3BC-C314-4F7A-9D2E-64D62A0FDD78}",
  3772.             "RISK": "high",
  3773.             "FILES": " pop***.dll , (* = random digit)",
  3774.             "NAME": "PeopleOnPage/AproposMedia",
  3775.             "URL": " http://www.doxdesk.com/parasite/AproposMedia.html ",
  3776.             "modified": 0
  3777.         },
  3778.         {
  3779.             "CLSID": "{65394353-C60B-4480-ADC3-02B7B4C434B4}",
  3780.             "RISK": "medium",
  3781.             "FILES": " IETOOLBAR.DLL",
  3782.             "NAME": "ToolButton bar",
  3783.             "URL": " http://www.toolbutton.com/ ",
  3784.             "modified": 0
  3785.         },
  3786.         {
  3787.             "CLSID": "{656EC4B7-072B-4698-B504-2A414C1F0037}",
  3788.             "RISK": "none",
  3789.             "FILES": " prpl_IePopupBlocker.dll",
  3790.             "NAME": "Propel PopupBlocker",
  3791.             "URL": " http://www.propel.com/ac/block.jsp ",
  3792.             "modified": 0
  3793.         },
  3794.         {
  3795.             "CLSID": "{657B9354-BB3B-4500-A9B0-109B4FA64815}",
  3796.             "RISK": "high",
  3797.             "FILES": " amcis32.dll",
  3798.             "NAME": "Win32/Aspam.Trojan",
  3799.             "URL": " http://www.doxdesk.com/parasite/ASpam.html ",
  3800.             "modified": 0
  3801.         },
  3802.         {
  3803.             "CLSID": "{6596829B-37D4-40ad-971B-1E9041725C52}",
  3804.             "RISK": "high",
  3805.             "FILES": " ietb.dll",
  3806.             "NAME": "Commander Toolbar",
  3807.             "modified": 0
  3808.         },
  3809.         {
  3810.             "CLSID": "{6596829B-37D4-40ad-971B-1E9041725C52}",
  3811.             "RISK": "high",
  3812.             "FILES": " sbb.dll",
  3813.             "NAME": "Commander Toolbar",
  3814.             "modified": 0
  3815.         },
  3816.         {
  3817.             "CLSID": "{65C8C1F5-230E-4DC9-9A0D-F3159A5E7778}",
  3818.             "RISK": "high",
  3819.             "FILES": " pop***.dll, ( * = random digit)",
  3820.             "NAME": "PeopleOnPage/AproposMedia",
  3821.             "URL": " http://www.doxdesk.com/parasite/AproposMedia.html ",
  3822.             "modified": 0
  3823.         },
  3824.         {
  3825.             "CLSID": "{6607C683-AE7C-11D4-ACD7-0050DAC291A2}",
  3826.             "RISK": "high",
  3827.             "FILES": " Myiemonitor.dll",
  3828.             "NAME": "OpinionBar",
  3829.             "URL": " http://www.earncashontheinternet.com/paidtosurf/review/opinionbar.asp ",
  3830.             "modified": 0
  3831.         },
  3832.         {
  3833.             "CLSID": "{663C7429-E454-11D3-B9AE-0000B4C32B4D}",
  3834.             "RISK": "none",
  3835.             "FILES": " webka.dll",
  3836.             "NAME": "Kangaroo Toolbar",
  3837.             "modified": 0
  3838.         },
  3839.         {
  3840.             "CLSID": "{6656B666-992F-4D74-8588-8CAC9E79D90C}",
  3841.             "RISK": "high",
  3842.             "FILES": " CNBabe.dll",
  3843.             "NAME": "Commonname toolbar",
  3844.             "URL": " http://www.doxdesk.com/parasite/CommonName.html ",
  3845.             "modified": 0
  3846.         },
  3847.         {
  3848.             "CLSID": "{665ACD90-4541-4836-9FE4-062386BB8F05}",
  3849.             "RISK": "high",
  3850.             "FILES": " Flt.dll, Ftapp.dll",
  3851.             "NAME": "FlashTrack",
  3852.             "URL": " Ftapp http://www.doxdesk.com/parasite/FlashTrack.html ",
  3853.             "modified": 0
  3854.         },
  3855.         {
  3856.             "CLSID": "{669695BC-A811-4A9D-8CDF-BA8C795F261C}",
  3857.             "RISK": "high",
  3858.             "FILES": " PowrStrp.dll",
  3859.             "NAME": "Powerstrip",
  3860.             "URL": " http://doxdesk.com/parasite/PowerStrip.html ",
  3861.             "modified": 0
  3862.         },
  3863.         {
  3864.             "CLSID": "{669695BC-A811-4A9D-8CDF-BA8C795F261C}",
  3865.             "RISK": "medium",
  3866.             "FILES": " dlIEbar.dll",
  3867.             "NAME": "Slingshot",
  3868.             "URL": " <a href=\\\"http://www.tenebril.com/products/slingshot/\\\" target=\\\"_blank\\\">Slingshot</a>",
  3869.             "modified": 0
  3870.         },
  3871.         {
  3872.             "CLSID": "{66993893-61B8-47DC-B10D-21E0C86DD9C8}",
  3873.             "RISK": "high",
  3874.             "FILES": " iehelper.dll",
  3875.             "NAME": "LinkReplacer",
  3876.             "URL": " http://www.doxdesk.com/parasite/LinkReplacer.html ",
  3877.             "modified": 0
  3878.         },
  3879.         {
  3880.             "CLSID": "{66F67511-2665-4C34-9E20-FAC2C0954EF2}",
  3881.             "RISK": "high",
  3882.             "FILES": " whattt.dll",
  3883.             "NAME": "Whazit",
  3884.             "URL": " http://www.doxdesk.com/parasite/Whazit.html ",
  3885.             "modified": 0
  3886.         },
  3887.         {
  3888.             "CLSID": "{6754A456-BAD9-11D4-93D3-00B0D03A2F91}",
  3889.             "RISK": "medium",
  3890.             "FILES": " Odigobho.dll",
  3891.             "NAME": "Odigo",
  3892.             "URL": " http://www.odigo.org/ ",
  3893.             "modified": 0
  3894.         },
  3895.         {
  3896.             "CLSID": "{67970B26-F57D-4455-8262-81C3AE3B8B5E}",
  3897.             "RISK": "medium",
  3898.             "FILES": " NetSnip.dll",
  3899.             "NAME": "Net Snippets",
  3900.             "URL": " http://www.netsnippets.com/product_info.htm ",
  3901.             "modified": 0
  3902.         },
  3903.         {
  3904.             "CLSID": "{68513770-A18E-11D7-B77C-00C0DFF3F600}",
  3905.             "RISK": "high",
  3906.             "FILES": " Helper.dll",
  3907.             "NAME": "PrecisionPop adware",
  3908.             "modified": 0
  3909.         },
  3910.         {
  3911.             "CLSID": "{68E69D9D-63C9-4C32-A53B-CBE1D5A5903E}",
  3912.             "RISK": "none",
  3913.             "FILES": " uwcdsbho.dll ",
  3914.             "NAME": "Cyber Defender 2003",
  3915.             "modified": 0
  3916.         },
  3917.         {
  3918.             "CLSID": "{69135BDE-5FDC-4B61-98AA-82AD2091BCCC}",
  3919.             "RISK": "high",
  3920.             "FILES": " systb.dll",
  3921.             "NAME": "IEplugin",
  3922.             "URL": " http://www.doxdesk.com/parasite/IEPlugin.html ",
  3923.             "modified": 0
  3924.         },
  3925.         {
  3926.             "CLSID": "{69550BE2-9A78-11D2-BA91-00600827878D}",
  3927.             "RISK": "high",
  3928.             "FILES": " shdocvw.dll",
  3929.             "NAME": "Tinybar (do not delete the file itself",
  3930.             "URL": " it`s a Windows system file!)  http://www.doxdesk.com/parasite/TinyBar.html ",
  3931.             "modified": 0
  3932.         },
  3933.         {
  3934.             "CLSID": "{6A85D97D-665D-4825-8341-9501AD9F56A3}",
  3935.             "RISK": "high",
  3936.             "FILES": " Stoolbar.dll",
  3937.             "NAME": "HuntBar/WebSearch",
  3938.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  3939.             "modified": 0
  3940.         },
  3941.         {
  3942.             "CLSID": "{6AC15BAC-8AE7-11D3-A458-0000C07BA55F}",
  3943.             "RISK": "medium",
  3944.             "FILES": " Webhelp.dll",
  3945.             "NAME": "Webhelp",
  3946.             "URL": " http://www.webhelp.com/webhelp/products/cobrowse.jsp ",
  3947.             "modified": 0
  3948.         },
  3949.         {
  3950.             "CLSID": "{6ACD11BD-4CA0-4283-A8D8-872B9BA289B6}",
  3951.             "RISK": "high",
  3952.             "FILES": " webcbrowse.dll, webcbrowse*.dll  (* = digit)",
  3953.             "NAME": "eAcceleration StopSign",
  3954.             "URL": " http://www.doxdesk.com/parasite/DownloadReceiver.html ",
  3955.             "modified": 0
  3956.         },
  3957.         {
  3958.             "CLSID": "{6AF9BC61-3CC5-42A7-82D1-FFC2562A7289}",
  3959.             "RISK": "high",
  3960.             "FILES": " Alxie328.dll",
  3961.             "NAME": "Alexa Toolbar",
  3962.             "URL": " http://pages.alexa.com/prod_serv/quicktour_new.html ",
  3963.             "modified": 0
  3964.         },
  3965.         {
  3966.             "CLSID": "{6B12DABB-0B7C-44FA-B0B3-4BAFF3790256}",
  3967.             "RISK": "high",
  3968.             "FILES": " Iexplorr24.dll",
  3969.             "NAME": "InetSpeak/Iexplorr",
  3970.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  3971.             "modified": 0
  3972.         },
  3973.         {
  3974.             "CLSID": "{6BC013D0-77D9-11d5-AB95-0050DA664D35}",
  3975.             "RISK": "unknown",
  3976.             "FILES": " Yodelizer.dll",
  3977.             "NAME": "My Yodlee Assistant",
  3978.             "URL": " https://www.yodlee.com/solutions/platform.html ",
  3979.             "modified": 0
  3980.         },
  3981.         {
  3982.             "CLSID": "{6C3797D2-3FEF-4cd4-B654-D3AE55B4128C}",
  3983.             "RISK": "none",
  3984.             "FILES": " IEBand.dll",
  3985.             "NAME": "KingSoft FastAIT translation software",
  3986.             "modified": 0
  3987.         },
  3988.         {
  3989.             "CLSID": "{6CC1C918-AE8B-4373-A5B4-28BA1851E39A}",
  3990.             "RISK": "high",
  3991.             "FILES": " winshow.dll",
  3992.             "NAME": "Winshow/Searchv.com hijacker",
  3993.             "URL": " http://www.doxdesk.com/parasite/Winshow.html ",
  3994.             "modified": 0
  3995.         },
  3996.         {
  3997.             "CLSID": "{6CC1C91A-AE8B-4373-A5B4-28BA1851E39A}",
  3998.             "RISK": "high",
  3999.             "FILES": " winlink.dll",
  4000.             "NAME": "CoolWebSearch parasite variant",
  4001.             "modified": 0
  4002.         },
  4003.         {
  4004.             "CLSID": "{6CDF3C49-20E6-48d7-811B-9F5DD17F1D90}",
  4005.             "RISK": "high",
  4006.             "FILES": " sfg****.dll",
  4007.             "NAME": "SafeguardProtect hijacker",
  4008.             "modified": 0
  4009.         },
  4010.         {
  4011.             "CLSID": "{6D0AC7F7-B628-4581-A8B2-14D97F24AA76}",
  4012.             "RISK": "high",
  4013.             "FILES": " brbho.dll",
  4014.             "NAME": "Comet Cursor",
  4015.             "URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
  4016.             "modified": 0
  4017.         },
  4018.         {
  4019.             "CLSID": "{6D55490C-1BD4-4790-BA31-84D261316E28}",
  4020.             "RISK": "high",
  4021.             "FILES": " Highlighthelper.dll",
  4022.             "NAME": "BrowserAid/ABCSearch",
  4023.             "URL": " http://www.doxdesk.com/parasite/CashToolbar.html ",
  4024.             "modified": 0
  4025.         },
  4026.         {
  4027.             "CLSID": "{6D6F1AF0-DDCB-477F-A896-5D75E53B80A3}",
  4028.             "RISK": "none",
  4029.             "FILES": " RM4IE.dll ",
  4030.             "NAME": "DigiMarc ImageBridge",
  4031.             "modified": 0
  4032.         },
  4033.         {
  4034.             "CLSID": "{6E18F3FD-82DA-46EE-944C-CBEC9071D2F7}",
  4035.             "RISK": "none",
  4036.             "FILES": " NetworldToolbar.dll",
  4037.             "NAME": "NetWorld online toolbar",
  4038.             "URL": " http://www.nwonline.net/toolbar.asp ",
  4039.             "modified": 0
  4040.         },
  4041.         {
  4042.             "CLSID": "{6E1C5E3D-A8E6-4a92-820F-BFCFE45BA158}",
  4043.             "RISK": "high",
  4044.             "FILES": " veev****.dll (* = random char)",
  4045.             "NAME": "SafeguardProtect hijacker",
  4046.             "modified": 0
  4047.         },
  4048.         {
  4049.             "CLSID": "{6E34D984-4054-45E3-8452-0159A2F0D232}",
  4050.             "RISK": "high",
  4051.             "FILES": " Veevo.dll",
  4052.             "NAME": "SafeguardProtect hijacker",
  4053.             "modified": 0
  4054.         },
  4055.         {
  4056.             "CLSID": "{6EF3AE25-5A7D-40C2-9B44-9ED0068621C0}",
  4057.             "RISK": "high",
  4058.             "FILES": " windec32.dll",
  4059.             "NAME": "I-lookup",
  4060.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  4061.             "modified": 0
  4062.         },
  4063.         {
  4064.             "CLSID": "{6F8ADBE2-8C92-4362-B0E6-7321AA49EE46}",
  4065.             "RISK": "high",
  4066.             "FILES": " Ultrabar.dll",
  4067.             "NAME": "New Toolbar is for the Dogs",
  4068.             "URL": " http://www.spywareinfo.com/newsletter/archives/0903/3.php ",
  4069.             "modified": 0
  4070.         },
  4071.         {
  4072.             "CLSID": "{6F91A936-734D-4EE7-9320-50718870285D}",
  4073.             "RISK": "none",
  4074.             "FILES": " Popuppurger.dll",
  4075.             "NAME": "Popup Purger",
  4076.             "URL": " http://www.pop-up-killer.biz/ ",
  4077.             "modified": 0
  4078.         },
  4079.         {
  4080.             "CLSID": "{7011471D-3F74-498E-88E1-C0491200312D}",
  4081.             "RISK": "high",
  4082.             "FILES": " Otglove.dll",
  4083.             "NAME": "FriendGreetings E-Card foistware",
  4084.             "URL": " http://vil.nai.com/vil/content/v_99760.htm ",
  4085.             "modified": 0
  4086.         },
  4087.         {
  4088.             "CLSID": "{702AD576-FDDB-4d0f-9811-A43252064684}",
  4089.             "RISK": "high",
  4090.             "FILES": " Toolbar.dll",
  4091.             "NAME": "Xupiter Orbitexplorer",
  4092.             "URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
  4093.             "modified": 0
  4094.         },
  4095.         {
  4096.             "CLSID": "{707E6F76-9FFB-4920-A976-EA101271BC25}",
  4097.             "RISK": "high",
  4098.             "FILES": " Jeired.dll, TvmBho.dll",
  4099.             "NAME": "CleverIEHooker",
  4100.             "modified": 0
  4101.         },
  4102.         {
  4103.             "CLSID": "{7157CE13-F711-49CD-AA5F-4FA80EAA622B}",
  4104.             "RISK": "none",
  4105.             "FILES": " MFEHelper.dll",
  4106.             "NAME": "MyFamilyHelper",
  4107.             "URL": " <a href=\\\"http://www.myfam.com/commonindex/signup.asp\\\" target=\\\"_blank\\\">MyFamilyHelper</a>",
  4108.             "modified": 0
  4109.         },
  4110.         {
  4111.             "CLSID": "{71AAABE5-1F0F-11d7-BD6F-004854603DCE}",
  4112.             "RISK": "medium",
  4113.             "FILES": " toolbar.dll",
  4114.             "NAME": "Trellian Toolbar",
  4115.             "URL": " http://www.submitwolf.com/toolbar/ ",
  4116.             "modified": 0
  4117.         },
  4118.         {
  4119.             "CLSID": "{71B8AB7E-CB3F-4471-878E-8E1DFDF49B8B}",
  4120.             "RISK": "high",
  4121.             "FILES": " WebCompassBar.dll",
  4122.             "NAME": "Bonzi",
  4123.             "URL": " <a target=_top href=\"http://accs-net.com/smallfish/bonzi.htm\">Bonzi</a>",
  4124.             "modified": 0
  4125.         },
  4126.         {
  4127.             "CLSID": "{71CC3BD4-6217-44AB-B8D0-96AEAF9A8678}",
  4128.             "RISK": "high",
  4129.             "FILES": " UC.dll",
  4130.             "NAME": "UCmore toolbar",
  4131.             "URL": " http://www.doxdesk.com/parasite/UCmore.html ",
  4132.             "modified": 0
  4133.         },
  4134.         {
  4135.             "CLSID": "{71ED4FBA-4024-4bbe-91DC-9704C93F453E}",
  4136.             "RISK": "high",
  4137.             "FILES": " Iesearchbar.dll",
  4138.             "NAME": "Blazefind IESearchbar",
  4139.             "modified": 0
  4140.         },
  4141.         {
  4142.             "CLSID": "{724D43A0-0D85-11D4-9908-00400523E39A}",
  4143.             "RISK": "none",
  4144.             "FILES": " RoboForm.dll",
  4145.             "NAME": "RoboForm",
  4146.             "URL": " http://www.roboform.com/ ",
  4147.             "modified": 0
  4148.         },
  4149.         {
  4150.             "CLSID": "{724d43a9-0d85-11d4-9908-00400523e39a}",
  4151.             "RISK": "none",
  4152.             "FILES": " RoboForm.dll",
  4153.             "NAME": "RoboForm",
  4154.             "URL": " <a href=\\\"http://www.roboform.com/\\\" target=\\\"_blank\\\">RoboForm</a>",
  4155.             "modified": 0
  4156.         },
  4157.         {
  4158.             "CLSID": "{72557F9F-13AE-44C9-B3D7-5091B599027C}",
  4159.             "RISK": "high",
  4160.             "FILES": " smail11.dll",
  4161.             "NAME": "LoveTester scumware",
  4162.             "URL": " http://spamwatch.codefish.net.au/modules.php?op=modload&name=News&file=index&catid=&topic=24 ",
  4163.             "modified": 0
  4164.         },
  4165.         {
  4166.             "CLSID": "{727D45C4-2BD1-41D2-B54E-97DEAF06AD9A}",
  4167.             "RISK": "medium",
  4168.             "FILES": " msietk1020.dll",
  4169.             "NAME": "SearchFu/123Search",
  4170.             "URL": " http://www.pestpatrol.com/PestInfo/s/search123.asp ",
  4171.             "modified": 0
  4172.         },
  4173.         {
  4174.             "CLSID": "{72A58725-2635-4725-8C53-676DFD1FEB8D}",
  4175.             "RISK": "high",
  4176.             "FILES": " zeropopupbar.dll, Zeropopup.dll, Blocker.dll, \\ZEROPO~1.DLL",
  4177.             "NAME": "ZeroPopupBar",
  4178.             "URL": " http://www.doxdesk.com/parasite/ZeroPopUp.html ",
  4179.             "modified": 0
  4180.         },
  4181.         {
  4182.             "CLSID": "{72CEAE02-DF9C-49F3-9689-10D1B82DC343}",
  4183.             "RISK": "high",
  4184.             "FILES": " Toolbar.dll",
  4185.             "NAME": "BrowserAid/FindIt-Quick",
  4186.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  4187.             "modified": 0
  4188.         },
  4189.         {
  4190.             "CLSID": "{72EFCEB7-436E-11D3-93ED-0008C7396667}",
  4191.             "RISK": "medium",
  4192.             "FILES": " ?",
  4193.             "NAME": "DigitalMe toolbar",
  4194.             "URL": " http://www.digitalme.com/Learn_More/ie5_toolbar/ ",
  4195.             "modified": 0
  4196.         },
  4197.         {
  4198.             "CLSID": "{730F2451-A3FE-4A72-938C-FC8A74F15978}",
  4199.             "RISK": "high",
  4200.             "FILES": " Bho.dll",
  4201.             "NAME": "IGN Keywords",
  4202.             "URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
  4203.             "modified": 0
  4204.         },
  4205.         {
  4206.             "CLSID": "{748A5D0A-68D3-11D4-A67E-00E098823A80}",
  4207.             "RISK": "unknown",
  4208.             "FILES": " Iehelper.dll",
  4209.             "NAME": "?",
  4210.             "modified": 0
  4211.         },
  4212.         {
  4213.             "CLSID": "{753AA023-02D1-447D-8B55-53A91A5ABF18}",
  4214.             "RISK": "high",
  4215.             "FILES": " Bmeb.dll",
  4216.             "NAME": "i-Lookup/Bmeb",
  4217.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  4218.             "modified": 0
  4219.         },
  4220.         {
  4221.             "CLSID": "{7559B76E-0222-4d77-9499-CCE9EB4EDC2F}",
  4222.             "RISK": "none",
  4223.             "FILES": " AdShield.dll",
  4224.             "NAME": "Adshield",
  4225.             "URL": " http://www.adshield.org/ ",
  4226.             "modified": 0
  4227.         },
  4228.         {
  4229.             "CLSID": "{760A9DDE-1433-4A7C-8189-D6735BB5D3DD}",
  4230.             "RISK": "high",
  4231.             "FILES": " EzSearch.dll",
  4232.             "NAME": "EZCybersearch bar",
  4233.             "URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
  4234.             "modified": 0
  4235.         },
  4236.         {
  4237.             "CLSID": "{765E6B09-6832-4738-BDBE-25F226BA2AB0}",
  4238.             "RISK": "high",
  4239.             "FILES": " allch.dll, QcBar.dll",
  4240.             "NAME": "Qcbar/AdultLinks",
  4241.             "URL": " http://www.doxdesk.com/parasite/AdultLinks.html ",
  4242.             "modified": 0
  4243.         },
  4244.         {
  4245.             "CLSID": "{769a6fad-c100-4af9-9bf9-439e05ba1542}",
  4246.             "RISK": "none",
  4247.             "FILES": " mscoree.dll",
  4248.             "NAME": "Buzzoff Toolbar",
  4249.             "modified": 0
  4250.         },
  4251.         {
  4252.             "CLSID": "{76D92AF6-2C25-4667-A54F-F75012BCB7B1}",
  4253.             "RISK": "none",
  4254.             "FILES": " Veronicabarshell.dll",
  4255.             "NAME": "Veronica toolbar",
  4256.             "URL": " http://www.veronica.nl/modules.php?name=toolbarhelp&site=corporate ",
  4257.             "modified": 0
  4258.         },
  4259.         {
  4260.             "CLSID": "{76EAE03C-F2B1-4397-97E8-390920B7C2DC}",
  4261.             "RISK": "none",
  4262.             "FILES": " V3Bar.dll",
  4263.             "NAME": "Ahnlab V3 antivirus",
  4264.             "URL": " http://home.ahnlab.com/english/product/01_1.html ",
  4265.             "modified": 0
  4266.         },
  4267.         {
  4268.             "CLSID": "{76EC9B95-D244-41F9-A5BE-6896EFFB40CF}",
  4269.             "RISK": "high",
  4270.             "FILES": " SearchToolbar.dll",
  4271.             "NAME": "Search Toolbar",
  4272.             "URL": " http://www.searchtoolbar.com/download.php ",
  4273.             "modified": 0
  4274.         },
  4275.         {
  4276.             "CLSID": "{774E69B6-C981-11D6-B1B1-0050DAB9F678}",
  4277.             "RISK": "none",
  4278.             "FILES": " browserToolbar.dll",
  4279.             "NAME": "NitroShock",
  4280.             "URL": " http://www.nitroshock.com/ ",
  4281.             "modified": 0
  4282.         },
  4283.         {
  4284.             "CLSID": "{77712A64-F30B-47C8-A363-CDA1CEC7DC1B}",
  4285.             "RISK": "medium",
  4286.             "FILES": " Advancedbar.dll, ADVANC~1.DLL",
  4287.             "NAME": "Advanced Searchbar",
  4288.             "modified": 0
  4289.         },
  4290.         {
  4291.             "CLSID": "{777D0B4C-75C9-4874-ABFF-80B4BE8DC532}",
  4292.             "RISK": "none",
  4293.             "FILES": " IEBand2.dll",
  4294.             "NAME": "Download Toolbar",
  4295.             "URL": " http://www.diodia.com/downloadtoolbar.htm ",
  4296.             "modified": 0
  4297.         },
  4298.         {
  4299.             "CLSID": "{778B6755-2A32-11D4-A68C-00104BB641A7}",
  4300.             "RISK": "none",
  4301.             "FILES": " JCLBANDBHO.DLL",
  4302.             "NAME": "Pitrinec MyExplorerBar",
  4303.             "URL": " <a href=\\\"http://www.pitrinec.com/meb_index.htm\\\" target=\\\"_blank\\\">Pitrinec MyExplorerBar</a>",
  4304.             "modified": 0
  4305.         },
  4306.         {
  4307.             "CLSID": "{78104A01-8E71-4F30-9A36-3793799615B4}",
  4308.             "RISK": "none",
  4309.             "FILES": " mime_filter.dll",
  4310.             "NAME": "Rights Management Add-on",
  4311.             "URL": " http://www.microsoft.com/windows/ie/downloads/addon/default.asp ",
  4312.             "modified": 0
  4313.         },
  4314.         {
  4315.             "CLSID": "{78839ABD-14B9-11D4-BA68-00104BC6425F}",
  4316.             "RISK": "none",
  4317.             "FILES": " BHO.dll",
  4318.             "NAME": "Xerox DocuShare",
  4319.             "URL": " http://docushare.capousd.org/docushare/en_US/help/release.htm ",
  4320.             "modified": 0
  4321.         },
  4322.         {
  4323.             "CLSID": "{78B5D524-8F7C-4B57-8D17-0D446F868994}",
  4324.             "RISK": "none",
  4325.             "FILES": " ASRFIELib.dll",
  4326.             "NAME": "Assistant surfer",
  4327.             "URL": " http://www.unhsolutions.net/ASRF/ ",
  4328.             "modified": 0
  4329.         },
  4330.         {
  4331.             "CLSID": "{79049BCB-7C3A-467B-BFA9-0B8C1CD44463}",
  4332.             "RISK": "high",
  4333.             "FILES": " StartMakeToolbar.ocx",
  4334.             "NAME": "StartMake.com toolbar",
  4335.             "modified": 0
  4336.         },
  4337.         {
  4338.             "CLSID": "{79369D5C-2903-4b7a-ADE2-D5E0DEE14D24}",
  4339.             "RISK": "high",
  4340.             "FILES": " GoogleMS.dll, Word10.dll",
  4341.             "NAME": "CoolWebSearch parasite variant",
  4342.             "modified": 0
  4343.         },
  4344.         {
  4345.             "CLSID": "{799A370D-5993-4887-9DF7-0A4756A77D00}",
  4346.             "RISK": "high",
  4347.             "FILES": " SEARCH~1.DLL, Searchaddon.dll",
  4348.             "NAME": "CoolWebSearch parasite variant",
  4349.             "modified": 0
  4350.         },
  4351.         {
  4352.             "CLSID": "{79C9FB71-7827-11D3-8DF7-00105A119B7C}",
  4353.             "RISK": "high",
  4354.             "FILES": " NPBH.dll",
  4355.             "NAME": "Article about this software",
  4356.             "URL": " http://www.internetnews.com/IAR/article.php/177951 ",
  4357.             "modified": 0
  4358.         },
  4359.         {
  4360.             "CLSID": "{7A33D136-248C-4BA5-B72D-BB68F4AD9039}",
  4361.             "RISK": "none",
  4362.             "FILES": " GOLDEN~1.DLL",
  4363.             "NAME": "LittleBigBar",
  4364.             "URL": " http://www.littlebigbar.com/ ",
  4365.             "modified": 0
  4366.         },
  4367.         {
  4368.             "CLSID": "{7A3BA17E-A5C6-4889-8A78-80A3C3382118}",
  4369.             "RISK": "none",
  4370.             "FILES": " Jimworld.dll",
  4371.             "NAME": "JimWorld toolbar",
  4372.             "modified": 0
  4373.         },
  4374.         {
  4375.             "CLSID": "{7A431EC4-CC21-4DF7-9DB1-A2CF74C4CC98}",
  4376.             "RISK": "none",
  4377.             "FILES": " bpumToolBand.dll",
  4378.             "NAME": "Telstra BigPond toolbar",
  4379.             "URL": " http://www.bigpond.com/helpcentre/toolbar/ ",
  4380.             "modified": 0
  4381.         },
  4382.         {
  4383.             "CLSID": "{7A4CB73C-64DF-4155-9EFA-57F86560245E}",
  4384.             "RISK": "none",
  4385.             "FILES": " Mbnbar.dll",
  4386.             "NAME": "MolBiol.Net Toolbar",
  4387.             "URL": " http://www.r9corporation.fsnet.co.uk/toolbar/ ",
  4388.             "modified": 0
  4389.         },
  4390.         {
  4391.             "CLSID": "{7A9BC6B1-7F27-47c6-A66D-13582E81E537}",
  4392.             "RISK": "none",
  4393.             "FILES": " Cleanbho.dll",
  4394.             "NAME": "CleanMyPc",
  4395.             "modified": 0
  4396.         },
  4397.         {
  4398.             "CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
  4399.             "RISK": "none",
  4400.             "FILES": " Croc_bar.dll",
  4401.             "NAME": "Croc Crawler",
  4402.             "URL": " http://www.croccrawler.com/download/croccrawler_toolbar.html ",
  4403.             "modified": 0
  4404.         },
  4405.         {
  4406.             "CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
  4407.             "RISK": "high",
  4408.             "FILES": " Ultrabar.dll",
  4409.             "NAME": "UltraBar",
  4410.             "URL": " http://www.ultrabar.com/ ",
  4411.             "modified": 0
  4412.         },
  4413.         {
  4414.             "CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
  4415.             "RISK": "none",
  4416.             "FILES": " Croc_bar.dll",
  4417.             "NAME": "Croc Crawler",
  4418.             "URL": " http://www.croccrawler.com/download/croccrawler_toolbar.html ",
  4419.             "modified": 0
  4420.         },
  4421.         {
  4422.             "CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
  4423.             "RISK": "high",
  4424.             "FILES": " donk_bar.dll",
  4425.             "NAME": "LOP",
  4426.             "modified": 0
  4427.         },
  4428.         {
  4429.             "CLSID": "{7B64270B-1216-47CE-9708-DE9D2D628CC5}",
  4430.             "RISK": "high",
  4431.             "FILES": " proventactics.dll",
  4432.             "NAME": "ProvenTactics toolbar",
  4433.             "URL": " http://www.proventactics.com/ ",
  4434.             "modified": 0
  4435.         },
  4436.         {
  4437.             "CLSID": "{7BA7B95F-9B92-4132-8012-E19B585CAF21}",
  4438.             "RISK": "none",
  4439.             "FILES": " Nutshell.dll",
  4440.             "NAME": "Nutshell toolbar",
  4441.             "URL": " http://www.torrez.org/projects/nutshell/ ",
  4442.             "modified": 0
  4443.         },
  4444.         {
  4445.             "CLSID": "{7C0D0F1A-AA1F-4F43-94EC-3F88651C8C7F}",
  4446.             "RISK": "none",
  4447.             "FILES": " Killafing3.dll",
  4448.             "NAME": "KillaFing 3",
  4449.             "modified": 0
  4450.         },
  4451.         {
  4452.             "CLSID": "{7C24A476-8B03-46ed-8CCF-CE8AE7213C99}",
  4453.             "RISK": "high",
  4454.             "FILES": " seek99.dll",
  4455.             "NAME": "Seek99 toolbar",
  4456.             "URL": " http://big3.seek99.com/toolbar.htm ",
  4457.             "modified": 0
  4458.         },
  4459.         {
  4460.             "CLSID": "{7D9E713D-0388-4384-BDD8-2A42EB1C4F04}",
  4461.             "RISK": "none",
  4462.             "FILES": " rxcnbrsrctrl.dll",
  4463.             "NAME": "ProxyConn Accelerator",
  4464.             "URL": " http://www.proxyconn.com/ ",
  4465.             "modified": 0
  4466.         },
  4467.         {
  4468.             "CLSID": "{7DAAC7DE-9EF0-4FF0-BFA5-AFF3E899054C}",
  4469.             "RISK": "none",
  4470.             "FILES": " Tweakbho.dll",
  4471.             "NAME": "Tweak Master",
  4472.             "URL": " http://www.tweakmaster.com/ ",
  4473.             "modified": 0
  4474.         },
  4475.         {
  4476.             "CLSID": "{7DAFD8A1-A6F8-11D3-9B51-0000E85300BA}",
  4477.             "RISK": "none",
  4478.             "FILES": " Iehlpobj.dll",
  4479.             "NAME": "GetIt",
  4480.             "URL": " http://www.simtel.net/product.php?url_fb_product_page=39290 ",
  4481.             "modified": 0
  4482.         },
  4483.         {
  4484.             "CLSID": "{7DD896A9-7AEB-430F-955B-CD125604FDCB}",
  4485.             "RISK": "high",
  4486.             "FILES": " Veg32.dll, InvisiblePop.DLL",
  4487.             "NAME": "DailyWinner Prize Bar",
  4488.             "URL": " http://www.doxdesk.com/parasite/DailyWinner.html ",
  4489.             "modified": 0
  4490.         },
  4491.         {
  4492.             "CLSID": "{7E600446-2123-4CC9-A69D-7EEC55AB9956}",
  4493.             "RISK": "none",
  4494.             "FILES": " PUK.dll",
  4495.             "NAME": "Popup Killer",
  4496.             "URL": " http://www.downlinx.com/proghtml/263/26325.htm ",
  4497.             "modified": 0
  4498.         },
  4499.         {
  4500.             "CLSID": "{7E6CDC1C-3B90-47D7-B2A8-24438CA96075}",
  4501.             "RISK": "none",
  4502.             "FILES": " bho.dll",
  4503.             "NAME": "iBest",
  4504.             "URL": " http://cyberpoa.com.br/deupaunomicro/banibest.htm ",
  4505.             "modified": 0
  4506.         },
  4507.         {
  4508.             "CLSID": "{7E82235C-F31E-46CB-AF9F-1ADD94C585FF}",
  4509.             "RISK": "none",
  4510.             "FILES": " pstopper.dll",
  4511.             "NAME": "Panicware Popup Stopper",
  4512.             "URL": " http://www.panicware.com/ ",
  4513.             "modified": 0
  4514.         },
  4515.         {
  4516.             "CLSID": "{7EED2A74-002E-481F-A283-D96B81EA244B}",
  4517.             "RISK": "none",
  4518.             "FILES": " Psukbar.dll",
  4519.             "NAME": "Pepesearch toolbar",
  4520.             "URL": " www.pepesearch.co.uk ",
  4521.             "modified": 0
  4522.         },
  4523.         {
  4524.             "CLSID": "{80230FFE-53DD-11D2-AE5F-0000832F3A64}",
  4525.             "RISK": "none",
  4526.             "FILES": " clie.dll",
  4527.             "NAME": "WestGroup Citelink",
  4528.             "URL": " http://www.abiworld.org/citelink/citelinkfaq.html ",
  4529.             "modified": 0
  4530.         },
  4531.         {
  4532.             "CLSID": "{80672997-D58C-4190-9843-C6C61AF8FE97}",
  4533.             "RISK": "high",
  4534.             "FILES": " rundll16.dll",
  4535.             "NAME": "BrowserAid/Rundll16",
  4536.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  4537.             "modified": 0
  4538.         },
  4539.         {
  4540.             "CLSID": "{80841D20-757E-4A6B-9934-2B3CB9AE83CB}",
  4541.             "RISK": "unknown",
  4542.             "FILES": " Showbarbho.dll",
  4543.             "NAME": "ShowBar",
  4544.             "modified": 0
  4545.         },
  4546.         {
  4547.             "CLSID": "{80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9}",
  4548.             "RISK": "none",
  4549.             "FILES": " KVShell_1.dll ",
  4550.             "NAME": "Jiangmin AntiVirus Bar",
  4551.             "URL": " <a href=\\\"http://english.duba.net/duba_intr.htm\\\" target=\\\"_blank\\\">Jiangmin AntiVirus Bar</a>",
  4552.             "modified": 0
  4553.         },
  4554.         {
  4555.             "CLSID": "{80E81A0E-9741-4FBC-8EE3-3B78C04ADA1D}",
  4556.             "RISK": "high",
  4557.             "FILES": " TpBar.dll",
  4558.             "NAME": "TOPicks",
  4559.             "URL": " http://www.doxdesk.com/parasite/TOPicks.html ",
  4560.             "modified": 0
  4561.         },
  4562.         {
  4563.             "CLSID": "{81270159-E8F9-4713-9646-03531E0EEF58}",
  4564.             "RISK": "high",
  4565.             "FILES": " LIE1D6FF.DLL",
  4566.             "NAME": "HTMLEdit trojan/hijacker",
  4567.             "modified": 0
  4568.         },
  4569.         {
  4570.             "CLSID": "{8151A854-F9E0-46F2-A1DC-72093BCA624F}",
  4571.             "RISK": "none",
  4572.             "FILES": " Banneradfilter.dll",
  4573.             "NAME": "Banner Ad Filter",
  4574.             "URL": " http://www.tooto.com/banneradfilter/ ",
  4575.             "modified": 0
  4576.         },
  4577.         {
  4578.             "CLSID": "{81766E08-CE68-4F23-95C4-C1468FDE68AA}",
  4579.             "RISK": "none",
  4580.             "FILES": " ZONNETSHELL.DLL",
  4581.             "NAME": "Zonnet toolbar",
  4582.             "URL": " <a href=\\\"http://www.zonnet.nl/toolbar/\\\" target=\\\"_blank\\\">Zonnet toolbar</a>",
  4583.             "modified": 0
  4584.         },
  4585.         {
  4586.             "CLSID": "{81F4066B-F330-4872-8094-3E9FBCCEC8C1}",
  4587.             "RISK": "none",
  4588.             "FILES": " RepliGoIEBar.dll",
  4589.             "NAME": "RepliGo",
  4590.             "URL": " <a href=\\\"http://www.cerience.com/\\\" target=\\\"_blank\\\">RepliGo</a>",
  4591.             "modified": 0
  4592.         },
  4593.         {
  4594.             "CLSID": "{82315A18-6CFB-44a7-BDFD-90E36537C252}",
  4595.             "RISK": "high",
  4596.             "FILES": " QuickSearchBar1_27.dll",
  4597.             "NAME": "NewDotNet SearchBar",
  4598.             "modified": 0
  4599.         },
  4600.         {
  4601.             "CLSID": "{82315A18-6CFB-44a7-BDFD-90E36537C252}",
  4602.             "RISK": "high",
  4603.             "FILES": " QuickSearchBar1_27.dll ",
  4604.             "NAME": "NewDotNet searchbar",
  4605.             "modified": 0
  4606.         },
  4607.         {
  4608.             "CLSID": "{82599E0A-8C81-11d7-9F97-0050FC5441CB}",
  4609.             "RISK": "high",
  4610.             "FILES": " shdocvw.dll",
  4611.             "NAME": "TinyBar (do not delete the file itself",
  4612.             "URL": " it`s a Windows system file!) http://www.doxdesk.com/parasite/TinyBar.html ",
  4613.             "modified": 0
  4614.         },
  4615.         {
  4616.             "CLSID": "{8272B062-BD4D-4EAD-A149-45B3CE3F5CDA}",
  4617.             "RISK": "medium",
  4618.             "FILES": " GPalm.dll",
  4619.             "NAME": "GreasyPalm bar",
  4620.             "URL": " http://www.greasypalm.co.uk/ ",
  4621.             "modified": 0
  4622.         },
  4623.         {
  4624.             "CLSID": "{82B98006-7A56-11D2-A26F-00C04F962769}",
  4625.             "RISK": "high",
  4626.             "FILES": " Flylib.dll",
  4627.             "NAME": "Flyswat",
  4628.             "URL": " http://accs-net.com/smallfish/flyswat.htm ",
  4629.             "modified": 0
  4630.         },
  4631.         {
  4632.             "CLSID": "{82DF1118-9B92-45d8-B78F-1737A69A06E1}",
  4633.             "RISK": "none",
  4634.             "FILES": " CheckIt86.dll",
  4635.             "NAME": "CheckIT 86",
  4636.             "URL": " http://www.smithmicro.com/checkit/c86home.tpl?cart=105637616214768186 ",
  4637.             "modified": 0
  4638.         },
  4639.         {
  4640.             "CLSID": "{8333C319-0669-4893-A418-F56D9249FCA6}",
  4641.             "RISK": "high",
  4642.             "FILES": " DailyToolbar.dll",
  4643.             "NAME": "DailyToolbar",
  4644.             "URL": "  p0rn related.",
  4645.             "modified": 0
  4646.         },
  4647.         {
  4648.             "CLSID": "{834261E1-DD97-4177-853B-C907E5D5BD6E}",
  4649.             "RISK": "high",
  4650.             "FILES": " dpe.dll",
  4651.             "NAME": "CWS hijacker",
  4652.             "modified": 0
  4653.         },
  4654.         {
  4655.             "CLSID": "{83A30C59-3A50-49E6-9DAF-4923C4EA3C23}",
  4656.             "RISK": "none",
  4657.             "FILES": " LgxIEBar.dll",
  4658.             "NAME": "WebSpeech",
  4659.             "URL": " http://www.webspeech.de/index1.php ",
  4660.             "modified": 0
  4661.         },
  4662.         {
  4663.             "CLSID": "{83DE62E0-5805-11D8-9B25-00E04C60FAF2}",
  4664.             "RISK": "high",
  4665.             "FILES": " 2_0_1browserhelper2.dll",
  4666.             "NAME": "BlazeFind hijacker variant",
  4667.             "modified": 0
  4668.         },
  4669.         {
  4670.             "CLSID": "{856D6A8E-A24C-498A-A55A-2B25C606A6B4}",
  4671.             "RISK": "high",
  4672.             "FILES": " netster.dll, _netster.dll ",
  4673.             "NAME": "Netster Smart Browse Toolbar",
  4674.             "URL": " http://at.netster.com/Index.asp?Site=YXQubmV0c3Rlci5jb20%3D ",
  4675.             "modified": 0
  4676.         },
  4677.         {
  4678.             "CLSID": "{85810C93-C14C-11D5-BC4B-0050BA28E4FE}",
  4679.             "RISK": "none",
  4680.             "FILES": " Popkill.dll",
  4681.             "NAME": "Super Popup Blocker",
  4682.             "URL": " http://www.pop-up-killer.biz/ ",
  4683.             "modified": 0
  4684.         },
  4685.         {
  4686.             "CLSID": "{858126B0-3708-4051-AE8E-B48521401CA2}",
  4687.             "RISK": "high",
  4688.             "FILES": " ctsr*.dll  (* = random digit)",
  4689.             "NAME": "ezSearching",
  4690.             "URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
  4691.             "modified": 0
  4692.         },
  4693.         {
  4694.             "CLSID": "{85A702BA-EA8F-4B83-AA07-07A5186ACD7E}",
  4695.             "RISK": "high",
  4696.             "FILES": " ME*.dll, SS*.DLL, (* = random digit)",
  4697.             "NAME": "Medialoads Enhanced/Downloadware",
  4698.             "modified": 0
  4699.         },
  4700.         {
  4701.             "CLSID": "{85C2C2A1-3F20-4EAD-ADC3-BD3217391543}",
  4702.             "RISK": "high",
  4703.             "FILES": " Rundll16.dll",
  4704.             "NAME": "BrowserAid/Rundll16",
  4705.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  4706.             "modified": 0
  4707.         },
  4708.         {
  4709.             "CLSID": "{85C76FBD-6218-4379-95C1-B4F37BF6180}",
  4710.             "RISK": "high",
  4711.             "FILES": " SearchBar.dll",
  4712.             "NAME": "PopMonster SearchNav.com/PopNav foistware",
  4713.             "modified": 0
  4714.         },
  4715.         {
  4716.             "CLSID": "{85DDD882-701E-401B-8A7D-D51227048214}",
  4717.             "RISK": "medium",
  4718.             "FILES": " Iewatch.dll",
  4719.             "NAME": "IEWatch monitoring program",
  4720.             "URL": " http://www.eanaptyxis.com/default.htm ",
  4721.             "modified": 0
  4722.         },
  4723.         {
  4724.             "CLSID": "{862fb893-b24b-4fad-80d3-a1158eb34db4}",
  4725.             "RISK": "medium",
  4726.             "FILES": " cnetsearchbar.dll",
  4727.             "NAME": "CNET SearchBar",
  4728.             "URL": " <a href=\\\"http://www.search.com/guides/sb/faq.html\\\" target=\\\"_blank\\\">CNET SearchBar</a>",
  4729.             "modified": 0
  4730.         },
  4731.         {
  4732.             "CLSID": "{86B09C4E-4137-4863-B585-380205F1F774}",
  4733.             "RISK": "none",
  4734.             "FILES": " CSShell.dll ",
  4735.             "NAME": "ContentSaver Offline Browser",
  4736.             "URL": " <a href=\\\"http://www.macropool.com/en/index.html\\\" target=\\\"_blank\\\">ContentSaver Offline Browser</a>",
  4737.             "modified": 0
  4738.         },
  4739.         {
  4740.             "CLSID": "{86BCA93E-457B-4054-AFB0-E428DA1563E1}",
  4741.             "RISK": "none",
  4742.             "FILES": " Petoolbar401.dll",
  4743.             "NAME": "Popup Eliminator",
  4744.             "URL": " http://www.popupeliminator.info/ ",
  4745.             "modified": 0
  4746.         },
  4747.         {
  4748.             "CLSID": "{87766247-311C-43B4-8499-3D5FEC94A183}",
  4749.             "RISK": "high",
  4750.             "FILES": " Wtoolsb.dll",
  4751.             "NAME": "HuntBar variant",
  4752.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/HuntBar.html\\\">HuntBar variant</a>",
  4753.             "modified": 0
  4754.         },
  4755.         {
  4756.             "CLSID": "{8786386E-4B22-11D6-9C60-E5DA06D87378}",
  4757.             "RISK": "high",
  4758.             "FILES": " BandObjs1,0,0,1.dll",
  4759.             "NAME": "BandObjects/eStart",
  4760.             "URL": " http://www.doxdesk.com/parasite/eStart.html ",
  4761.             "modified": 0
  4762.         },
  4763.         {
  4764.             "CLSID": "{87B1E57C-FF70-4C69-9CE8-57CB8F67ABA8}",
  4765.             "RISK": "high",
  4766.             "FILES": " Wbm.dll",
  4767.             "NAME": "Wishbone Toolbar",
  4768.             "URL": " http://www.wishbonemedia.com/products.html ",
  4769.             "modified": 0
  4770.         },
  4771.         {
  4772.             "CLSID": "{88C5C070-8C60-4F45-9345-3Ffb96334Cad}",
  4773.             "RISK": "none",
  4774.             "FILES": " Openwaresiepatch.dll, IEWorkaround.dll",
  4775.             "NAME": "Openwares IE patch",
  4776.             "modified": 0
  4777.         },
  4778.         {
  4779.             "CLSID": "{89044184-F260-4FDD-8FAB-2662814846E5}",
  4780.             "RISK": "medium",
  4781.             "FILES": " mstfgher.dll, msnetxxi.dll",
  4782.             "NAME": "eBlaster email recorder and key logger",
  4783.             "URL": " http://spectorsoft.com/products/eBlaster_Windows/index.html ",
  4784.             "modified": 0
  4785.         },
  4786.         {
  4787.             "CLSID": "{8952A998-1E7E-4716-B23D-3DBE03910972}",
  4788.             "RISK": "high",
  4789.             "FILES": " Toolbar.dll",
  4790.             "NAME": "HuntBar",
  4791.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  4792.             "modified": 0
  4793.         },
  4794.         {
  4795.             "CLSID": "{89AEAB46-8E8A-4045-9003-5614BFBFE90B}",
  4796.             "RISK": "high",
  4797.             "FILES": " Winlocatorhelper.dll",
  4798.             "NAME": "Xlocator/Winlocator",
  4799.             "modified": 0
  4800.         },
  4801.         {
  4802.             "CLSID": "{8A05273A-2EA5-42DE-AA75-59EA7D9D50D7}",
  4803.             "RISK": "high",
  4804.             "FILES": " Msiets.dll",
  4805.             "NAME": "Huntbar",
  4806.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  4807.             "modified": 0
  4808.         },
  4809.         {
  4810.             "CLSID": "{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}",
  4811.             "RISK": "high",
  4812.             "FILES": " NN_Bar.dll, NN_Bar**.dll (* = random digit)",
  4813.             "NAME": "NetNucleus/Mirar webband",
  4814.             "modified": 0
  4815.         },
  4816.         {
  4817.             "CLSID": "{8A321C7D-9CED-45A8-870D-DAE843A45FD0}",
  4818.             "RISK": "none",
  4819.             "FILES": " Popupkilller.dll",
  4820.             "NAME": "Armorwall firewall",
  4821.             "URL": " http://www.totalfirewall.com/ ",
  4822.             "modified": 0
  4823.         },
  4824.         {
  4825.             "CLSID": "{8B3868B4-EBA8-48FA-A19B-E1DFB99066FA}",
  4826.             "RISK": "none",
  4827.             "FILES": " Flashcap.dll, FCBHO.dll",
  4828.             "NAME": "FlashCapture",
  4829.             "URL": " http://www.flashcapture.com/ ",
  4830.             "modified": 0
  4831.         },
  4832.         {
  4833.             "CLSID": "{8B68564D-53FD-4293-B80C-993A9F3988EE}",
  4834.             "RISK": "none",
  4835.             "FILES": " FSBar.dll",
  4836.             "NAME": "Freeserve toolbar",
  4837.             "modified": 0
  4838.         },
  4839.         {
  4840.             "CLSID": "{8C6685AB-43FF-4BF0-822C-03F03E0B47EA}",
  4841.             "RISK": "medium",
  4842.             "FILES": " myfastaccess.dll",
  4843.             "NAME": "My-fast-access",
  4844.             "URL": " http://www.my-fast-access.com/first/ ",
  4845.             "modified": 0
  4846.         },
  4847.         {
  4848.             "CLSID": "{8DB3D69D-DA5E-4165-B781-72A761790672}",
  4849.             "RISK": "none",
  4850.             "FILES": " Bhodshop.dll",
  4851.             "NAME": "Discover Deskshop",
  4852.             "URL": " http://www2.discovercard.com/shopcenter/deskshop/main.shtml ",
  4853.             "modified": 0
  4854.         },
  4855.         {
  4856.             "CLSID": "{8DB672BD-330F-11D8-8168-00C02623048A}",
  4857.             "RISK": "high",
  4858.             "FILES": " Testadit.dll ",
  4859.             "NAME": "ezSearching",
  4860.             "URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
  4861.             "modified": 0
  4862.         },
  4863.         {
  4864.             "CLSID": "{8E09B2CC-C2A0-4786-B099-0B9101E92CA1}",
  4865.             "RISK": "none",
  4866.             "FILES": " YellowToolbar.dll",
  4867.             "NAME": "Yellow Internet Toolbar",
  4868.             "URL": " http://www.yellowinternet.com/toolbar.asp ",
  4869.             "modified": 0
  4870.         },
  4871.         {
  4872.             "CLSID": "{8E1E80F3-A3F0-41d4-BAA7-470442CFC906}",
  4873.             "RISK": "medium",
  4874.             "FILES": " Nocs.dll",
  4875.             "NAME": "Nocs/NitroClicks toolbar",
  4876.             "modified": 0
  4877.         },
  4878.         {
  4879.             "CLSID": "{8E2FF476-C576-4637-9F73-5FFE2116CC12}",
  4880.             "RISK": "none",
  4881.             "FILES": " jetbar.dll",
  4882.             "NAME": "Jetbar",
  4883.             "modified": 0
  4884.         },
  4885.         {
  4886.             "CLSID": "{8E4C16F3-45C8-4B24-99E6-F55082B7C4F1}",
  4887.             "RISK": "high",
  4888.             "FILES": " Ineb.dll",
  4889.             "NAME": "i-Lookup",
  4890.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  4891.             "modified": 0
  4892.         },
  4893.         {
  4894.             "CLSID": "{8E718888-423F-11D2-876E-00A0C9082467}",
  4895.             "RISK": "none",
  4896.             "FILES": " msdxm.ocx",
  4897.             "NAME": "Internet Explorer Radio Bar",
  4898.             "modified": 0
  4899.         },
  4900.         {
  4901.             "CLSID": "{8E85E48B-7FD4-423D-BFAD-FA345D497EB5}",
  4902.             "RISK": "none",
  4903.             "FILES": " ShellBar.dll",
  4904.             "NAME": "Command Prompt Bar",
  4905.             "URL": " http://perso.wanadoo.fr/ruindivision/ ",
  4906.             "modified": 0
  4907.         },
  4908.         {
  4909.             "CLSID": "{8E929F51-5914-11D6-971F-0050FC3F9161}",
  4910.             "RISK": "none",
  4911.             "FILES": " IEBand.dll",
  4912.             "NAME": "Pictures toolbar",
  4913.             "URL": "  http://www.diodia.com/features.htm ",
  4914.             "modified": 0
  4915.         },
  4916.         {
  4917.             "CLSID": "{8E9C4F32-BD3F-4C49-9AF5-3F4C5D32EBD7}",
  4918.             "RISK": "high",
  4919.             "FILES": " mbho.dll",
  4920.             "NAME": "WurldMedia",
  4921.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  4922.             "modified": 0
  4923.         },
  4924.         {
  4925.             "CLSID": "{8EA2F0B0-CA9F-4EAA-A21E-7D14D35E8D68}",
  4926.             "RISK": "none",
  4927.             "FILES": " popup.dll",
  4928.             "NAME": "StopPops",
  4929.             "URL": " <a href=\\\"http://www.stoppops.com/?ad_id=2501\\\" target=\\\"_blank\\\">StopPops</a>",
  4930.             "modified": 0
  4931.         },
  4932.         {
  4933.             "CLSID": "{8F05B1A8-9D77-4B8F-AF54-6B2202066F95}",
  4934.             "RISK": "none",
  4935.             "FILES": " popupus.dll",
  4936.             "NAME": "Panicware Popup Stopper",
  4937.             "URL": " http://www.panicware.com/ ",
  4938.             "modified": 0
  4939.         },
  4940.         {
  4941.             "CLSID": "{8F0D6EED-BC11-4E7F-8276-9748947E4A50}",
  4942.             "RISK": "high",
  4943.             "FILES": " Winlocator.dll",
  4944.             "NAME": "Xlocator/Winlocator",
  4945.             "modified": 0
  4946.         },
  4947.         {
  4948.             "CLSID": "{8F4E5661-F99E-4B3E-8D85-0EA71C0748E4}",
  4949.             "RISK": "high",
  4950.             "FILES": " Wsem***.dll , (* = digit)",
  4951.             "NAME": "MoneyTree/DyFuCa",
  4952.             "URL": " http://www.doxdesk.com/parasite/MoneyTree.html ",
  4953.             "modified": 0
  4954.         },
  4955.         {
  4956.             "CLSID": "{8F6E45AE-F89E-4E54-AAC5-16232008816E}",
  4957.             "RISK": "medium",
  4958.             "FILES": " GB_BHO.DLL",
  4959.             "NAME": "LittleBigBar",
  4960.             "URL": " http://www.littlebigbar.com/ ",
  4961.             "modified": 0
  4962.         },
  4963.         {
  4964.             "CLSID": "{8FB0F3E2-5193-11d7-9F88-0050FC5441CB}",
  4965.             "RISK": "high",
  4966.             "FILES": " shdocvw.dll, NOTE:  Do not delete dll itself; its a Windows system file!)",
  4967.             "NAME": "Tinybar",
  4968.             "URL": " http://www.doxdesk.com/parasite/TinyBar.html ",
  4969.             "modified": 0
  4970.         },
  4971.         {
  4972.             "CLSID": "{8FE3B060-4574-4691-B15A-B8A6703EBF6F}",
  4973.             "RISK": "none",
  4974.             "FILES": " Addressbarplus.dll",
  4975.             "NAME": "Addressbar Plus",
  4976.             "URL": " www.adressbar.com  ",
  4977.             "modified": 0
  4978.         },
  4979.         {
  4980.             "CLSID": "{8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3}",
  4981.             "RISK": "none",
  4982.             "FILES": " SnagItIEAddin.dll",
  4983.             "NAME": "SnagIt",
  4984.             "URL": " http://www.techsmith.com/products/snagit/default.asp ",
  4985.             "modified": 0
  4986.         },
  4987.         {
  4988.             "CLSID": "{904691A1-C588-4B27-BC47-D8599EDB3F97}",
  4989.             "RISK": "none",
  4990.             "FILES": " TelefoonBar.dll",
  4991.             "NAME": "Dutch Phonebook bar",
  4992.             "URL": " <a target=_top href=\"http://www.telefoongidsmedia.nl/telefoongidswm/show/id=44023\">Dutch Phonebook bar</a>",
  4993.             "modified": 0
  4994.         },
  4995.         {
  4996.             "CLSID": "{907CA0E5-CE84-11D6-9508-02608CDD2841}",
  4997.             "RISK": "high",
  4998.             "FILES": " SEARCH~2.DLL",
  4999.             "NAME": "SearchSquire",
  5000.             "URL": " http://www.doxdesk.com/parasite/SearchSquire.html ",
  5001.             "modified": 0
  5002.         },
  5003.         {
  5004.             "CLSID": "{907CA0E5-CE84-11D6-9508-02608CDD2842}",
  5005.             "RISK": "high",
  5006.             "FILES": " SearchSquire2.dll",
  5007.             "NAME": "SearchSquire",
  5008.             "URL": " http://www.doxdesk.com/parasite/SearchSquire.html ",
  5009.             "modified": 0
  5010.         },
  5011.         {
  5012.             "CLSID": "{907CA0E5-CE84-11D6-9508-02608CDD2846}",
  5013.             "RISK": "high",
  5014.             "FILES": " SearchUpdate33.dll, SEARCH~1.DLL",
  5015.             "NAME": "SearchSquire",
  5016.             "URL": " http://doxdesk.com/parasite/SearchSquire.html ",
  5017.             "modified": 0
  5018.         },
  5019.         {
  5020.             "CLSID": "{90DA654C-083C-11D6-8A9D-0050BA8452C0}",
  5021.             "RISK": "high",
  5022.             "FILES": " sbsrch_v2.dll",
  5023.             "NAME": "SubSearch",
  5024.             "URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
  5025.             "modified": 0
  5026.         },
  5027.         {
  5028.             "CLSID": "{90E34F98-E3E6-4CD7-A592-E964FED8AF78}",
  5029.             "RISK": "high",
  5030.             "FILES": " iexplorr26.dll",
  5031.             "NAME": "InetSpeak/Iexplorr",
  5032.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/InetSpeak.html\\\" target=\\\"_blank\\\">InetSpeak/Iexplorr</a>",
  5033.             "modified": 0
  5034.         },
  5035.         {
  5036.             "CLSID": "{91397D20-1446-11D4-8AF4-0040CA1127B6}",
  5037.             "RISK": "high",
  5038.             "FILES": " YNDBAR.DLL",
  5039.             "NAME": "Russian Searchbar",
  5040.             "URL": " <a target=_top href=\"http://bar.yandex.ru\">Russian Searchbar</a>",
  5041.             "modified": 0
  5042.         },
  5043.         {
  5044.             "CLSID": "{914AFB33-550B-4BD0-B4EF-8DA185504836}",
  5045.             "RISK": "high",
  5046.             "FILES": " Winobject.dll",
  5047.             "NAME": "IEPlugin",
  5048.             "URL": " http://www.doxdesk.com/parasite/IEPlugin.html ",
  5049.             "modified": 0
  5050.         },
  5051.         {
  5052.             "CLSID": "{91DE4477-9CDC-4806-9BCB-28A963988E94}",
  5053.             "RISK": "none",
  5054.             "FILES": " RepliGoIEHelper.dll",
  5055.             "NAME": "RepliGo",
  5056.             "URL": " <a href=\\\"http://www.cerience.com/\\\" target=\\\"_blank\\\">RepliGo</a>",
  5057.             "modified": 0
  5058.         },
  5059.         {
  5060.             "CLSID": "{92C7D65C-52F3-4545-8A35-213D730DB1ED}",
  5061.             "RISK": "high",
  5062.             "FILES": " Spredirect.dll",
  5063.             "NAME": "ActualNames SearchPike",
  5064.             "URL": " http://www.doxdesk.com/parasite/ActualNames.html ",
  5065.             "modified": 0
  5066.         },
  5067.         {
  5068.             "CLSID": "{92CBA277-292B-461f-9DEA-67A5C834E101}",
  5069.             "RISK": "none",
  5070.             "FILES": " Linkmgr.dll",
  5071.             "NAME": "Ask Jeeves toolbar",
  5072.             "URL": " http://sp.ask.com/docs/toolbar/ ",
  5073.             "modified": 0
  5074.         },
  5075.         {
  5076.             "CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
  5077.             "RISK": "high",
  5078.             "FILES": " toolbar.dll",
  5079.             "NAME": "WhyPPC",
  5080.             "URL": " <a target=_top href=\"http://whyppc.com/privacy.php\">WhyPPC</a>",
  5081.             "modified": 0
  5082.         },
  5083.         {
  5084.             "CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
  5085.             "RISK": "none",
  5086.             "FILES": " Mrwords.dll",
  5087.             "NAME": "MrWordsmith Search toolbar",
  5088.             "URL": " http://toolbar.mrwordsmith.com/ ",
  5089.             "modified": 0
  5090.         },
  5091.         {
  5092.             "CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
  5093.             "RISK": "none",
  5094.             "FILES": " ast.dll",
  5095.             "NAME": "AST Toolbar",
  5096.             "URL": " http://www.ast-ss.com/toolbar/toolbar_intro.asp ",
  5097.             "modified": 0
  5098.         },
  5099.         {
  5100.             "CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
  5101.             "RISK": "none",
  5102.             "FILES": " toolbar.dll",
  5103.             "NAME": "Dutch search toolbar",
  5104.             "modified": 0
  5105.         },
  5106.         {
  5107.             "CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
  5108.             "RISK": "high",
  5109.             "FILES": " toolbar.dll",
  5110.             "NAME": "Fizzle Wizzle Entertainment Searchbar",
  5111.             "modified": 0
  5112.         },
  5113.         {
  5114.             "CLSID": "{930E4DE1-973D-42D6-BF6E-6788E06BD003}",
  5115.             "RISK": "none",
  5116.             "FILES": " Webbug.dll",
  5117.             "NAME": "Bugnosis",
  5118.             "URL": " <a target=_top href=\"http://www.bugnosis.org/\">Bugnosis</a>",
  5119.             "modified": 0
  5120.         },
  5121.         {
  5122.             "CLSID": "{94326E3F-F51F-4863-A832-4ACD0D7D4BC3}",
  5123.             "RISK": "high",
  5124.             "FILES": " iexplorr27.dll",
  5125.             "NAME": "InetSpeak/Iexplorr",
  5126.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/InetSpeak.html\\\" target=\\\"_blank\\\">InetSpeak/Iexplorr</a>",
  5127.             "modified": 0
  5128.         },
  5129.         {
  5130.             "CLSID": "{947E6D5A-4B9F-4CF4-91B3-562CA8D03313}",
  5131.             "RISK": "high",
  5132.             "FILES": " IE_ClrSch.dll",
  5133.             "NAME": "IGetNet/ClearSearch",
  5134.             "URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
  5135.             "modified": 0
  5136.         },
  5137.         {
  5138.             "CLSID": "{94927A13-4AAA-476A-989D-392456427688}",
  5139.             "RISK": "high",
  5140.             "FILES": " ms****.dll, urlcli*******.dll (* = random char)",
  5141.             "NAME": "ClientMan",
  5142.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  5143.             "modified": 0
  5144.         },
  5145.         {
  5146.             "CLSID": "{95188727-288F-4581-A48D-EAB3BD027314}",
  5147.             "RISK": "none",
  5148.             "FILES": " ZendIEToolbar.dll",
  5149.             "NAME": "Zend Studio",
  5150.             "URL": " <a href=\\\"http://www.zend.com/store/products/zend-studio.php\\\" target=\\\"_blank\\\">Zend Studio</a>",
  5151.             "modified": 0
  5152.         },
  5153.         {
  5154.             "CLSID": "{9527D42F-D666-11D3-B8DD-00600838CD5F}",
  5155.             "RISK": "none",
  5156.             "FILES": " IETie.dll, nbiels.dll",
  5157.             "NAME": "GhostSurf",
  5158.             "URL": " http://www.tenebril.com/products/ghostsurf/ ",
  5159.             "modified": 0
  5160.         },
  5161.         {
  5162.             "CLSID": "{9527D42F-D666-11D3-B8DD-00600838CD5F}",
  5163.             "RISK": "medium",
  5164.             "FILES": " dlIE.dll",
  5165.             "NAME": "Slingshot",
  5166.             "URL": " <a href=\\\"http://www.tenebril.com/products/slingshot/\\\" target=\\\"_blank\\\">Slingshot</a>",
  5167.             "modified": 0
  5168.         },
  5169.         {
  5170.             "CLSID": "{954F618B-0DEC-4D1A-9317-E0FC96F87865}",
  5171.             "RISK": "none",
  5172.             "FILES": " IETOOL~1.DLL",
  5173.             "NAME": "Alive Text to Speech",
  5174.             "URL": " http://www.text-speech.com/ ",
  5175.             "modified": 0
  5176.         },
  5177.         {
  5178.             "CLSID": "{9595C62C-76C6-49A6-9BDA-3253DD7A34FF}",
  5179.             "RISK": "none",
  5180.             "FILES": " Fdabar.dll, Fdabar99.dll ",
  5181.             "NAME": "Free Downloads Accelerator",
  5182.             "URL": " http://www.freedownloadscenter.com/Games/Tetris_Clone_Games/Bloxx_Download.html ",
  5183.             "modified": 0
  5184.         },
  5185.         {
  5186.             "CLSID": "{95E02C52-05FC-425D-8378-9DA70F9CD763}",
  5187.             "RISK": "high",
  5188.             "FILES": " Aadl.dll",
  5189.             "NAME": "Superlogy.com hijacker",
  5190.             "modified": 0
  5191.         },
  5192.         {
  5193.             "CLSID": "{965E6B07-6832-4738-BDBE-25F226BA2AB0}",
  5194.             "RISK": "high",
  5195.             "FILES": " Qabar.dll",
  5196.             "NAME": "AdultLinks Qabar",
  5197.             "URL": " http://www.doxdesk.com/parasite/AdultLinks.html ",
  5198.             "modified": 0
  5199.         },
  5200.         {
  5201.             "CLSID": "{9677F3F1-E994-451F-805F-7148CC8AE040}",
  5202.             "RISK": "high",
  5203.             "FILES": " Ultrabar.dll",
  5204.             "NAME": "WebCrawler toolbar",
  5205.             "modified": 0
  5206.         },
  5207.         {
  5208.             "CLSID": "{96BBDFE1-2951-4F81-811E-31DF6436A329}",
  5209.             "RISK": "high",
  5210.             "FILES": " custtlb.dll",
  5211.             "NAME": "SCN TOOLBAR PROBLEMS",
  5212.             "URL": " <a href=\\\"http://sportscollectors.net/home/default.asp\\\" target=\\\"_blank\\\">SCN TOOLBAR PROBLEMS</a>",
  5213.             "modified": 0
  5214.         },
  5215.         {
  5216.             "CLSID": "{96BE1D9A-9E54-4344-A27A-37C088D64FB4}",
  5217.             "RISK": "high",
  5218.             "FILES": " dnsrep*******.dll , (* = random char), Ms****.dll (* = random char)",
  5219.             "NAME": "ClientMan",
  5220.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  5221.             "modified": 0
  5222.         },
  5223.         {
  5224.             "CLSID": "{96BE1D9A-9E54-4344-A27A-37C088D64FB4}",
  5225.             "RISK": "high",
  5226.             "FILES": " mseffm.dll",
  5227.             "NAME": "ClientMan",
  5228.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/ClientMan.html\\\"TARGET=\\\"_blank\\\">ClientMan</a>",
  5229.             "modified": 0
  5230.         },
  5231.         {
  5232.             "CLSID": "{96DA5BEE-4ACC-476C-B3EC-54C6730C4293}",
  5233.             "RISK": "high",
  5234.             "FILES": " brbho.dll, brbho***.dll,  (* = random char) ",
  5235.             "NAME": "Comet Cursor",
  5236.             "URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
  5237.             "modified": 0
  5238.         },
  5239.         {
  5240.             "CLSID": "{9819C369-5F62-4D37-9A42-44043A742C1E}",
  5241.             "RISK": "high",
  5242.             "FILES": " redirect.dll",
  5243.             "NAME": "Dynamic Desktop Media adware",
  5244.             "modified": 0
  5245.         },
  5246.         {
  5247.             "CLSID": "{9885224C-1217-4c5f-83C2-00002E6CEF2B}",
  5248.             "RISK": "none",
  5249.             "FILES": " unknown",
  5250.             "NAME": "Neotrace",
  5251.             "URL": " http://www.networkingfiles.com/PingFinger/Neotrace.htm ",
  5252.             "modified": 0
  5253.         },
  5254.         {
  5255.             "CLSID": "{9896231A-C487-43A5-8369-6EC9B0A96CC0}",
  5256.             "RISK": "high",
  5257.             "FILES": " WStart.dll",
  5258.             "NAME": "unidentified hijacker",
  5259.             "modified": 0
  5260.         },
  5261.         {
  5262.             "CLSID": "{98C92840-EB1C-40bd-B6A5-395EC9CD6510}",
  5263.             "RISK": "none",
  5264.             "FILES": " IGIEBar.dll",
  5265.             "NAME": "InstantGet",
  5266.             "URL": " http://www.majorgeeks.com/download.php?det=3886 ",
  5267.             "modified": 0
  5268.         },
  5269.         {
  5270.             "CLSID": "{98D7B53E-B1D2-4755-B0A4-703E18FF91E8}",
  5271.             "RISK": "high",
  5272.             "FILES": " M030106SHOP.DLL",
  5273.             "NAME": "WurldMedia",
  5274.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  5275.             "modified": 0
  5276.         },
  5277.         {
  5278.             "CLSID": "{98DBBF16-CA43-4c33-BE80-99E6694468A4}",
  5279.             "RISK": "high",
  5280.             "FILES": " msole.dll, msmk.dll",
  5281.             "NAME": "CoolWebSearch/Payfortraffic.net",
  5282.             "modified": 0
  5283.         },
  5284.         {
  5285.             "CLSID": "{98DE779A-2364-4293-AB71-2B97C61C4640}",
  5286.             "RISK": "none",
  5287.             "FILES": " Fdahlp.dll",
  5288.             "NAME": "Free Downloads Accelerator",
  5289.             "URL": " http://www.freedownloadscenter.com/Games/Tetris_Clone_Games/Bloxx_Download.html ",
  5290.             "modified": 0
  5291.         },
  5292.         {
  5293.             "CLSID": "{99A10100-66BB-11D4-A02A-00600818E7D8}",
  5294.             "RISK": "none",
  5295.             "FILES": " wziebs.dll",
  5296.             "NAME": "WinZip",
  5297.             "modified": 0
  5298.         },
  5299.         {
  5300.             "CLSID": "{99AFC088-C0DD-40ED-92D8-0C53E8997510}",
  5301.             "RISK": "medium",
  5302.             "FILES": " grapevine.dll",
  5303.             "NAME": "WWGrapevine Toolbar",
  5304.             "modified": 0
  5305.         },
  5306.         {
  5307.             "CLSID": "{99EBA16F-C13A-40a6-A9C7-5F3EEC4E7BE6}",
  5308.             "RISK": "none",
  5309.             "FILES": " AKServer.dll",
  5310.             "NAME": "Ad Killer",
  5311.             "modified": 0
  5312.         },
  5313.         {
  5314.             "CLSID": "{9A23B8A4-C6C9-4A68-8FA6-5F905DC8FF80}",
  5315.             "RISK": "none",
  5316.             "FILES": " PKExt.dll",
  5317.             "NAME": "AbsoluteShield IE Popup blocker",
  5318.             "URL": " http://www.sys-shield.com/popupblocker.htm ",
  5319.             "modified": 0
  5320.         },
  5321.         {
  5322.             "CLSID": "{9AD55269-A21C-4260-BA7F-866FD09E8A8E}",
  5323.             "RISK": "high",
  5324.             "FILES": " EasyBarShell.dll",
  5325.             "NAME": "Easybar",
  5326.             "URL": " http://www.easybar.nl/ ",
  5327.             "modified": 0
  5328.         },
  5329.         {
  5330.             "CLSID": "{9C691A33-7DDA-4C2F-BE4C-C176083F35CF}",
  5331.             "RISK": "high",
  5332.             "FILES": " bridge.dll",
  5333.             "NAME": "WinFavorites/Bridge",
  5334.             "modified": 0
  5335.         },
  5336.         {
  5337.             "CLSID": "{9C777253-3E17-42d6-897A-11B8617A8F7C}",
  5338.             "RISK": "high",
  5339.             "FILES": " IELib.dll",
  5340.             "NAME": "RedV Protector Suite",
  5341.             "URL": " http://services.bee.net/redv/protectorsuite/ ",
  5342.             "modified": 0
  5343.         },
  5344.         {
  5345.             "CLSID": "{9DD4258A-7138-49C4-8D34-587879A5C7A4}",
  5346.             "RISK": "high",
  5347.             "FILES": " Msnbho.dll",
  5348.             "NAME": "MSN SmartTags",
  5349.             "URL": " http://www.zdnet.com/anchordesk/stories/story/010738277196700.html ",
  5350.             "modified": 0
  5351.         },
  5352.         {
  5353.             "CLSID": "{9E0C6AAD-A8E3-4E49-9DBD-786099B599A4}",
  5354.             "RISK": "none",
  5355.             "FILES": " AccessibilityToolbar.dll",
  5356.             "NAME": "AccessibilityToolbar",
  5357.             "URL": " <a href=\\\"http://www.nils.org.au/ais/web/resources/toolbar/\\\" target=\\\"_blank\\\">AccessibilityToolbar</a>",
  5358.             "modified": 0
  5359.         },
  5360.         {
  5361.             "CLSID": "{9E1128F1-53FA-11d5-8490-0048548030CA}",
  5362.             "RISK": "none",
  5363.             "FILES": " m-wtoolbar.dll",
  5364.             "NAME": "Merriam-Webster Toolbar",
  5365.             "URL": " http://www.m-w.com/tools/toolbar/ ",
  5366.             "modified": 0
  5367.         },
  5368.         {
  5369.             "CLSID": "{9E3849D6-41EF-4B2F-86B7-632EF90758E4}",
  5370.             "RISK": "none",
  5371.             "FILES": " V3Bar.dll",
  5372.             "NAME": "Ahnlab V3 Antivirus",
  5373.             "URL": " http://home.ahnlab.com/english/product/01_1.html ",
  5374.             "modified": 0
  5375.         },
  5376.         {
  5377.             "CLSID": "{9E5BD40E-6287-11D6-9772-0002A5DD2483}",
  5378.             "RISK": "none",
  5379.             "FILES": " unknown",
  5380.             "NAME": "JBrowse toolbar",
  5381.             "URL": " http://jbrowse.com/products/jbrowse/doc/helppage.html ",
  5382.             "modified": 0
  5383.         },
  5384.         {
  5385.             "CLSID": "{9ECB9560-04F9-4bbc-943D-298DDF1699E1}",
  5386.             "RISK": "none",
  5387.             "FILES": " NISShExt.dll",
  5388.             "NAME": "NIS 2004",
  5389.             "URL": " http://www.symantec.com/sabu/nis/nis_pe/ ",
  5390.             "modified": 0
  5391.         },
  5392.         {
  5393.             "CLSID": "{9EEE0111-E81A-11D6-B1B2-444553540000}",
  5394.             "RISK": "none",
  5395.             "FILES": " ToolBand.dll",
  5396.             "NAME": "Addresses Toolbar",
  5397.             "URL": " http://www.addresses.com/toolbar_download.php ",
  5398.             "modified": 0
  5399.         },
  5400.         {
  5401.             "CLSID": "{9F6A22E6-1682-4F82-9B72-6314794CB253}",
  5402.             "RISK": "none",
  5403.             "FILES": " Updated.dll",
  5404.             "NAME": "Pop Blocker",
  5405.             "URL": " http://www.iepopblocker.com/ ",
  5406.             "modified": 0
  5407.         },
  5408.         {
  5409.             "CLSID": "{9FB534E3-67CB-4307-AE0A-9E8B5581BE2C}",
  5410.             "RISK": "high",
  5411.             "FILES": " WinSB.dll",
  5412.             "NAME": "\"Windows Search Bar\" hijacker",
  5413.             "modified": 0
  5414.         },
  5415.         {
  5416.             "CLSID": "{9FD12933-810D-4526-B7C4-0914E098D384}",
  5417.             "RISK": "medium",
  5418.             "FILES": " BH205171.DLL",
  5419.             "NAME": "Kontiki",
  5420.             "URL": " http://www.extremetech.com/article2/0397336507300.asp ",
  5421.             "modified": 0
  5422.         },
  5423.         {
  5424.             "CLSID": "{A045DC85-FC44-45be-8A50-E4F9C62C9A84}",
  5425.             "RISK": "high",
  5426.             "FILES": " PerfectNavBHO.dll, PERFEC~1.DLL",
  5427.             "NAME": "IncrediFind variant",
  5428.             "URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
  5429.             "modified": 0
  5430.         },
  5431.         {
  5432.             "CLSID": "{A096A159-4E58-45A9-8EE6-B11466851181}",
  5433.             "RISK": "high",
  5434.             "FILES": " msietk1020.dll, msiebho.dll",
  5435.             "NAME": "SearchFu/123Search",
  5436.             "URL": " http://www.pestpatrol.com/PestInfo/s/search123.asp ",
  5437.             "modified": 0
  5438.         },
  5439.         {
  5440.             "CLSID": "{A097840A-61F8-4B89-8693-F68F641CC838}",
  5441.             "RISK": "high",
  5442.             "FILES": " urlcli*******.dll (* = random digit), Ms****.dll (* = random char)",
  5443.             "NAME": "ClientMan",
  5444.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html TARGET= ",
  5445.             "modified": 0
  5446.         },
  5447.         {
  5448.             "CLSID": "{A09790E7-DD00-4A83-B632-5B563423CFBB}",
  5449.             "RISK": "none",
  5450.             "FILES": " PopupKillerIEDLL.dll",
  5451.             "NAME": "Smart Popup killer",
  5452.             "URL": " http://www.firstnetsoft.com/ ",
  5453.             "modified": 0
  5454.         },
  5455.         {
  5456.             "CLSID": "{A114D52B-870C-4F15-8021-B6D7F91A054B}",
  5457.             "RISK": "none",
  5458.             "FILES": " IE.dll",
  5459.             "NAME": "iFinger software",
  5460.             "URL": " http://www.ifinger.com/demo.asp?design=7 ",
  5461.             "modified": 0
  5462.         },
  5463.         {
  5464.             "CLSID": "{A116A5C1-AD77-446C-992A-F56200B112DB}",
  5465.             "RISK": "high",
  5466.             "FILES": " Homepage.dll, Hmepge.dll, ",
  5467.             "NAME": "Searchex",
  5468.             "URL": " http://www.doxdesk.com/parasite/Searchex.html ",
  5469.             "modified": 0
  5470.         },
  5471.         {
  5472.             "CLSID": "{A1A70944-467A-4080-8BB0-13F0B2069F45}",
  5473.             "RISK": "unknown",
  5474.             "FILES": " XPLIEUCG.DLL",
  5475.             "NAME": "?",
  5476.             "modified": 0
  5477.         },
  5478.         {
  5479.             "CLSID": "{A1DD937D-71E1-4BB5-BD5D-1B01B9CB1C2F}",
  5480.             "RISK": "high",
  5481.             "FILES": " WinSB.dll",
  5482.             "NAME": "\\\"Windows Search Bar\\\" hijacker",
  5483.             "modified": 0
  5484.         },
  5485.         {
  5486.             "CLSID": "{A28C2A31-3AB0-4118-922F-F6B3184F5495}",
  5487.             "RISK": "high",
  5488.             "FILES": " WebCompass.dll",
  5489.             "NAME": "BonziBuddy",
  5490.             "URL": " http://accs-net.com/smallfish/bonzi.htm ",
  5491.             "modified": 0
  5492.         },
  5493.         {
  5494.             "CLSID": "{A3E02B37-8608-4f57-AD58-AB91F32BA4F4}",
  5495.             "RISK": "high",
  5496.             "FILES": " Masterbar.dll",
  5497.             "NAME": "Pugi/Masterbar",
  5498.             "URL": " http://www.doxdesk.com/parasite/Pugi.html ",
  5499.             "modified": 0
  5500.         },
  5501.         {
  5502.             "CLSID": "{A3E3F04C-F98C-4295-95EF-41C57425B077}",
  5503.             "RISK": "high",
  5504.             "FILES": " CNBarIE.dll",
  5505.             "NAME": "Commonname toolbar",
  5506.             "URL": " http://www.doxdesk.com/parasite/CommonName.html ",
  5507.             "modified": 0
  5508.         },
  5509.         {
  5510.             "CLSID": "{A44CBB0B-C77D-4BF5-87CC-B4EE79AD1B7E}",
  5511.             "RISK": "none",
  5512.             "FILES": " JD2002.dll",
  5513.             "NAME": "Justdo software",
  5514.             "URL": " http://www.justdosoft.com/ ",
  5515.             "modified": 0
  5516.         },
  5517.         {
  5518.             "CLSID": "{A491D208-B353-490F-B81A-A8A3DC97042D}",
  5519.             "RISK": "none",
  5520.             "FILES": " smiehlp.dll",
  5521.             "NAME": "Secretmaker",
  5522.             "URL": " <a href=\\\"http://www.secretmaker.com/\\\" target=\\\"_blank\\\">Secretmaker</a>",
  5523.             "modified": 0
  5524.         },
  5525.         {
  5526.             "CLSID": "{A49AA76F-7215-4F80-97D6-9A7E16A5FEE1}",
  5527.             "RISK": "high",
  5528.             "FILES": " coolbar.dll",
  5529.             "NAME": "LookThru Cool Search Bar",
  5530.             "modified": 0
  5531.         },
  5532.         {
  5533.             "CLSID": "{A5366673-E8CA-11D3-9CD9-0090271D075B}",
  5534.             "RISK": "none",
  5535.             "FILES": " Jccatch.dll",
  5536.             "NAME": "FlashGet",
  5537.             "URL": " http://www.amazesoft.com/ ",
  5538.             "modified": 0
  5539.         },
  5540.         {
  5541.             "CLSID": "{A5483501-070C-41DD-AF44-9BD8864B3015}",
  5542.             "RISK": "high",
  5543.             "FILES": " httper.dll",
  5544.             "NAME": "Httper",
  5545.             "URL": " http://www.doxdesk.com/parasite/Httper.html ",
  5546.             "modified": 0
  5547.         },
  5548.         {
  5549.             "CLSID": "{A55581DC-2CDB-4089-8878-71A080B22342}",
  5550.             "RISK": "high",
  5551.             "FILES": " Autosearch.dll, AUTOSE~1.DLL",
  5552.             "NAME": "CoolWebSearch parasite variant",
  5553.             "modified": 0
  5554.         },
  5555.         {
  5556.             "CLSID": "{A58686ED-FC46-44C3-95C6-4A812AB776F1}",
  5557.             "RISK": "none",
  5558.             "FILES": " FerretBand.dll",
  5559.             "NAME": "WebFerret",
  5560.             "URL": " http://www.ferretsoft.com/learn.htm ",
  5561.             "modified": 0
  5562.         },
  5563.         {
  5564.             "CLSID": "{A586BE00-52AC-11D3-A075-E51A86A6C62B}",
  5565.             "RISK": "unknown",
  5566.             "FILES": " IEHelper.dll",
  5567.             "NAME": "ParentPresent - PP Browser",
  5568.             "URL": " http://www.parentpresent.org/Browser.htm ",
  5569.             "modified": 0
  5570.         },
  5571.         {
  5572.             "CLSID": "{A6250FB8-2206-499E-A7AA-E1EC437E71C0}",
  5573.             "RISK": "high",
  5574.             "FILES": " Msielink.dll",
  5575.             "NAME": "Huntbar",
  5576.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  5577.             "modified": 0
  5578.         },
  5579.         {
  5580.             "CLSID": "{A6475E6B-3C2E-4B1F-82FD-8F1C0B1D8AD0}",
  5581.             "RISK": "high",
  5582.             "FILES": " BabeIE.dll",
  5583.             "NAME": "Commonname toolbar",
  5584.             "URL": " http://www.doxdesk.com/parasite/CommonName.html ",
  5585.             "modified": 0
  5586.         },
  5587.         {
  5588.             "CLSID": "{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB}",
  5589.             "RISK": "none",
  5590.             "FILES": " advsbar.dll",
  5591.             "NAME": "Advanced Stock Bar",
  5592.             "URL": " http://www.ashkon.com/stockbar/ ",
  5593.             "modified": 0
  5594.         },
  5595.         {
  5596.             "CLSID": "{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB}",
  5597.             "RISK": "unknown",
  5598.             "FILES": " SIMPLE~1.DLL",
  5599.             "NAME": "A Simple Internet Toolbar",
  5600.             "modified": 0
  5601.         },
  5602.         {
  5603.             "CLSID": "{A6890AA5-C6C7-4BCF-A46D-0FDAC4EA90EB}",
  5604.             "RISK": "medium",
  5605.             "FILES": " PCHEasysearch.dll",
  5606.             "NAME": "PCH EasySearchBar",
  5607.             "modified": 0
  5608.         },
  5609.         {
  5610.             "CLSID": "{A6927151-F5B4-11D4-AE7A-00D00925CF52}",
  5611.             "RISK": "none",
  5612.             "FILES": " Iehelper.dll",
  5613.             "NAME": "DlExpert",
  5614.             "URL": " http://www.yanew.com/ ",
  5615.             "modified": 0
  5616.         },
  5617.         {
  5618.             "CLSID": "{A6F42CAD-2559-48DF-AF30-89E480AF5DFA}",
  5619.             "RISK": "high",
  5620.             "FILES": " Bho.dll",
  5621.             "NAME": "Adware.IEPageHelper",
  5622.             "modified": 0
  5623.         },
  5624.         {
  5625.             "CLSID": "{A76066C9-941B-4209-9D96-0AC80501100D}",
  5626.             "RISK": "high",
  5627.             "FILES": " iexplorr11.dll",
  5628.             "NAME": "InetSpeak/Iexplorr",
  5629.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  5630.             "modified": 0
  5631.         },
  5632.         {
  5633.             "CLSID": "{A85C4A1B-BD36-44E5-A70F-8EC347D9B24F}",
  5634.             "RISK": "high",
  5635.             "FILES": " bs3.dll",
  5636.             "NAME": "BookedSpace - Remanent",
  5637.             "URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
  5638.             "modified": 0
  5639.         },
  5640.         {
  5641.             "CLSID": "{A8B9F08F-2FC4-4ADE-9049-CFBA586971BA}",
  5642.             "RISK": "high",
  5643.             "FILES": " Bho2.dll",
  5644.             "NAME": "HighTraffic",
  5645.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/HighTraffic.html\\\" target=\\\"_blank\\\">HighTraffic</a>",
  5646.             "modified": 0
  5647.         },
  5648.         {
  5649.             "CLSID": "{A8E16533-7A2A-43F1-9EE9-901136EBA5D8}",
  5650.             "RISK": "none",
  5651.             "FILES": " Admintoobar.dll",
  5652.             "NAME": "Adminimizer toolbar",
  5653.             "URL": " http://www.aspmodules.com/at/ ",
  5654.             "modified": 0
  5655.         },
  5656.         {
  5657.             "CLSID": "{A94EDD52-85B3-472F-8BC0-D651D760FBF8}",
  5658.             "RISK": "none",
  5659.             "FILES": " PopupZeroIEDLL.dll",
  5660.             "NAME": "Popup Zero Pro",
  5661.             "URL": " http://www.pcssafe.com/popupzero.html ",
  5662.             "modified": 0
  5663.         },
  5664.         {
  5665.             "CLSID": "{A97CA2C0-78CF-11D7-9945-0008A11C885C}",
  5666.             "RISK": "unknown",
  5667.             "FILES": " D3DIIM.DLL",
  5668.             "NAME": "?",
  5669.             "modified": 0
  5670.         },
  5671.         {
  5672.             "CLSID": "{A9EEF0D7-5695-45BA-8943-ED3B95A50BD2}",
  5673.             "RISK": "high",
  5674.             "FILES": " CheckUrl.dll",
  5675.             "NAME": "CheckUrl",
  5676.             "modified": 0
  5677.         },
  5678.         {
  5679.             "CLSID": "{AA58ED58-01DD-4d91-8333-CF10577473F7}",
  5680.             "RISK": "none",
  5681.             "FILES": " googletoolbar.dll, googletoolbar*.dll (* = number), googletoolbar_en_*.**-big.dll, Googletoolbar_en_*.*.**-deleon.dll.",
  5682.             "NAME": "Google toolbar",
  5683.             "URL": " http://toolbar.google.com/ ",
  5684.             "modified": 0
  5685.         },
  5686.         {
  5687.             "CLSID": "{AB77A7BF-8C5B-486A-B547-F9AD2B41A904}",
  5688.             "RISK": "none",
  5689.             "FILES": " BROWSERHELPER.DLL",
  5690.             "NAME": "Evernet",
  5691.             "URL": " http://www.evernetgroup.com/ ",
  5692.             "modified": 0
  5693.         },
  5694.         {
  5695.             "CLSID": "{ACB1E670-3217-45C4-A021-6B829A8A27CB}",
  5696.             "RISK": "none",
  5697.             "FILES": " VSCShellExtension.dll",
  5698.             "NAME": "McAfee Virusscan",
  5699.             "URL": " http://www.mcafee.com/default.asp ",
  5700.             "modified": 0
  5701.         },
  5702.         {
  5703.             "CLSID": "{AE113CC0-1115-BDD1-1B3D-229549C10001}",
  5704.             "RISK": "none",
  5705.             "FILES": " MHTQS_M.dll",
  5706.             "NAME": "MHT QuickSaver",
  5707.             "URL": " http://www.sycory.com/mht_quick_saver.htm ",
  5708.             "modified": 0
  5709.         },
  5710.         {
  5711.             "CLSID": "{AE7CD045-E861-484f-8273-0445EE161910}",
  5712.             "RISK": "none",
  5713.             "FILES": " AcroIEFavClient.dll",
  5714.             "NAME": "Adobe Acrobat",
  5715.             "URL": " http://www.adobe.com/products/acrobatpro/main.html ",
  5716.             "modified": 0
  5717.         },
  5718.         {
  5719.             "CLSID": "{AEE46806-2C5A-4A4E-A5DD-B4531F64A187}",
  5720.             "RISK": "high",
  5721.             "FILES": " ********.dll (* = random char)",
  5722.             "NAME": "searchsprint bar",
  5723.             "modified": 0
  5724.         },
  5725.         {
  5726.             "CLSID": "{AEFCDEC8-EB7D-429F-BC73-4F30D07BFE41}",
  5727.             "RISK": "high",
  5728.             "FILES": " CTADL1.DLL",
  5729.             "NAME": "EzCybersearch variant",
  5730.             "modified": 0
  5731.         },
  5732.         {
  5733.             "CLSID": "{AF657644-964C-4348-A8AD-72524B3A3FF1}",
  5734.             "RISK": "high",
  5735.             "FILES": " DELPHI~1.DLL",
  5736.             "NAME": "TopSurfer",
  5737.             "modified": 0
  5738.         },
  5739.         {
  5740.             "CLSID": "{B0000209-50CF-11D1-A140-0000F802C250}",
  5741.             "RISK": "none",
  5742.             "FILES": " VAPopupKiller.dll",
  5743.             "NAME": "Popup Eater",
  5744.             "URL": "  http://www.simpliciti.biz/popupeater_over.htm ",
  5745.             "modified": 0
  5746.         },
  5747.         {
  5748.             "CLSID": "{B195B3B3-8A05-11D3-97A4-0004ACA6948E}",
  5749.             "RISK": "high",
  5750.             "FILES": " Hbhostie.dll",
  5751.             "NAME": "Hotbar",
  5752.             "URL": " http://www.doxdesk.com/parasite/HotBar.html ",
  5753.             "modified": 0
  5754.         },
  5755.         {
  5756.             "CLSID": "{B1E741E7-1E77-40D4-9FD8-51949B9CCBD0}",
  5757.             "RISK": "none",
  5758.             "FILES": " Popuppro.dll",
  5759.             "NAME": "Pop-Up Stopper Pro",
  5760.             "URL": " http://www.panicware.com/popupstopper.html ",
  5761.             "modified": 0
  5762.         },
  5763.         {
  5764.             "CLSID": "{B24BA06E-FB7B-4757-95C2-DC01125F750E}",
  5765.             "RISK": "none",
  5766.             "FILES": " Yrefresher.dll, YREFRE~1.DLL",
  5767.             "NAME": "IE refresh tool",
  5768.             "modified": 0
  5769.         },
  5770.         {
  5771.             "CLSID": "{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5}",
  5772.             "RISK": "medium",
  5773.             "FILES": " Hptoolkt.dll, hpdtlk02.dll ",
  5774.             "NAME": "HP Explore Toolbar",
  5775.             "modified": 0
  5776.         },
  5777.         {
  5778.             "CLSID": "{B3269F9A-6521-4793-A951-3E9A9B2E55E7}",
  5779.             "RISK": "medium",
  5780.             "FILES": " Duwibco.dll",
  5781.             "NAME": "Douwantit Shopping Assistant",
  5782.             "modified": 0
  5783.         },
  5784.         {
  5785.             "CLSID": "{B405EE45-1AA2-410D-A6CF-1A74371DCD62}",
  5786.             "RISK": "high",
  5787.             "FILES": " Hotlink.dll",
  5788.             "NAME": "Searchex",
  5789.             "URL": " http://www.doxdesk.com/parasite/Searchex.html ",
  5790.             "modified": 0
  5791.         },
  5792.         {
  5793.             "CLSID": "{B40A6610-1D16-11D3-80B2-005004994DA2}",
  5794.             "RISK": "high",
  5795.             "FILES": " Bpieclient.dll",
  5796.             "NAME": "iChoose browser enhancement",
  5797.             "URL": " http://www.luckysoftware.dk/ichoose.php ",
  5798.             "modified": 0
  5799.         },
  5800.         {
  5801.             "CLSID": "{B418B139-414D-4374-820F-EE74520C5A0D}",
  5802.             "RISK": "high",
  5803.             "FILES": " ctavp5.dll, ctav3.dll",
  5804.             "NAME": "ezSearching",
  5805.             "URL": " <a target=_top href=\"http://doxdesk.com/parasite/ezSearching.html\">ezSearching</a>",
  5806.             "modified": 0
  5807.         },
  5808.         {
  5809.             "CLSID": "{B427BF1E-A970-47DA-9BC3-02E8C5EC667D}",
  5810.             "RISK": "medium",
  5811.             "FILES": " IESPY.DLL",
  5812.             "NAME": "XPCSpy",
  5813.             "URL": " http://www.botspot.com/Intelligent_Agent/2250.html ",
  5814.             "modified": 0
  5815.         },
  5816.         {
  5817.             "CLSID": "{B50FCD28-C2CC-4f3b-B755-62B086EDE4D5}",
  5818.             "RISK": "none",
  5819.             "FILES": " Toolbar.dll",
  5820.             "NAME": "Be-Hosted/BeGlobal.com Demobar",
  5821.             "modified": 0
  5822.         },
  5823.         {
  5824.             "CLSID": "{B549456D-F5D0-4641-BCED-8648A0C13D83}",
  5825.             "RISK": "high",
  5826.             "FILES": " BrowserHelper.dll",
  5827.             "NAME": "Adtomi adware",
  5828.             "modified": 0
  5829.         },
  5830.         {
  5831.             "CLSID": "{B57F2FF0-F338-4ED0-BD82-FB074FEFAA1F}",
  5832.             "RISK": "none",
  5833.             "FILES": " Bar.dll",
  5834.             "NAME": "Pagego toolbar",
  5835.             "URL": " http://www.pagego.com/ ",
  5836.             "modified": 0
  5837.         },
  5838.         {
  5839.             "CLSID": "{B5A34A93-D538-43A7-8371-864CB6148D12}",
  5840.             "RISK": "none",
  5841.             "FILES": " KVShell_1.dll",
  5842.             "NAME": "Jiangmin AntiVirus Bar",
  5843.             "URL": " <a href=\\\"http://english.duba.net/duba_intr.htm\\\" target=\\\"_blank\\\">Jiangmin AntiVirus Bar</a>",
  5844.             "modified": 0
  5845.         },
  5846.         {
  5847.             "CLSID": "{B5B57F4F-EFA5-11D4-A971-444553540000}",
  5848.             "RISK": "none",
  5849.             "FILES": " windowshades.dll, WINDOW~1.DLL ",
  5850.             "NAME": "Window Shades",
  5851.             "URL": " http://www.g-m-m.com/Software/WindowShades/ ",
  5852.             "modified": 0
  5853.         },
  5854.         {
  5855.             "CLSID": "{B6598677-4B54-42A9-BA67-8B64E3FCD92D}",
  5856.             "RISK": "high",
  5857.             "FILES": " psic1.dll",
  5858.             "NAME": "ezSearching",
  5859.             "modified": 0
  5860.         },
  5861.         {
  5862.             "CLSID": "{B7B76DD6-B6F0-4443-AF81-6A3ECF12A57D}",
  5863.             "RISK": "none",
  5864.             "FILES": " _MWOLTB.DLL",
  5865.             "NAME": "Merriam-Webster Toolbar",
  5866.             "URL": " <a href=\\\"http://www.m-w.com/tools/toolbar/\\\" target=\\\"_blank\\\">Merriam-Webster Toolbar</a>",
  5867.             "modified": 0
  5868.         },
  5869.         {
  5870.             "CLSID": "{B7DB7E5A-81FD-11D1-8B75-0080C83788F7}",
  5871.             "RISK": "none",
  5872.             "FILES": " ie4_trap.dll",
  5873.             "NAME": "WinRunner",
  5874.             "modified": 0
  5875.         },
  5876.         {
  5877.             "CLSID": "{B7FDA31E-A16D-47F9-B374-78A866AC813D}",
  5878.             "RISK": "none",
  5879.             "FILES": " BonusBar.dll",
  5880.             "NAME": "BonusBar",
  5881.             "URL": " http://www.bignerdsoftware.com/ ",
  5882.             "modified": 0
  5883.         },
  5884.         {
  5885.             "CLSID": "{B824E7B0-E8E3-4D75-895E-2C309EA4CC5D}",
  5886.             "RISK": "medium",
  5887.             "FILES": " Sgpopupblocker.dll ",
  5888.             "NAME": "SafeGuard Popup Blocker",
  5889.             "modified": 0
  5890.         },
  5891.         {
  5892.             "CLSID": "{B847676D-72AC-4393-BFFF-43A1EB979352}",
  5893.             "RISK": "high",
  5894.             "FILES": " wcadw.dll",
  5895.             "NAME": "CoolWebSearch parasite variant",
  5896.             "modified": 0
  5897.         },
  5898.         {
  5899.             "CLSID": "{B88D6F42-A1AC-11D3-8424-00105A9B8D85}",
  5900.             "RISK": "none",
  5901.             "FILES": " oichlpr.dll",
  5902.             "NAME": "Orbiscom O-card Software",
  5903.             "URL": " http://www.orbiscom.com/products/ocard.html ",
  5904.             "modified": 0
  5905.         },
  5906.         {
  5907.             "CLSID": "{B8C0220D-763D-49A4-95F4-61DFDEC66EE6}",
  5908.             "RISK": "high",
  5909.             "FILES": " MEDUP012.DLL",
  5910.             "NAME": "MediaUpdate",
  5911.             "URL": " http://www.doxdesk.com/parasite/MediaUpdate.html ",
  5912.             "modified": 0
  5913.         },
  5914.         {
  5915.             "CLSID": "{B930BA63-9E5A-11D3-A288-0000E80E2EDE}",
  5916.             "RISK": "none",
  5917.             "FILES": " Mdhelper.dll",
  5918.             "NAME": "MassDownloader",
  5919.             "URL": " http://www.metaproducts.com/mp/mpProducts_Detail.asp?id=3 ",
  5920.             "modified": 0
  5921.         },
  5922.         {
  5923.             "CLSID": "{B98F79F4-3619-49FB-A7E7-B737E58C5727}",
  5924.             "RISK": "high",
  5925.             "FILES": " netster.dll, _netster.dl",
  5926.             "NAME": "Netster Smart Browse Toolbar",
  5927.             "URL": " http://at.netster.com/Index.asp?Site=YXQubmV0c3Rlci5jb20%3D ",
  5928.             "modified": 0
  5929.         },
  5930.         {
  5931.             "CLSID": "{B9D6B3C2-09AD-464A-8162-8C55114C808A}",
  5932.             "RISK": "none",
  5933.             "FILES": " Vcs3RT.dll",
  5934.             "NAME": "AV VCS Voice Changer",
  5935.             "URL": " http://www.audio4fun.com/ ",
  5936.             "modified": 0
  5937.         },
  5938.         {
  5939.             "CLSID": "{B9D90B27-AD4A-413a-88CB-3E6DDC10DC2D}",
  5940.             "RISK": "high",
  5941.             "FILES": " MSOPT.DLL",
  5942.             "NAME": "TrojanDownloader",
  5943.             "modified": 0
  5944.         },
  5945.         {
  5946.             "CLSID": "{B9F633F6-EA44-45F4-91EB-FABFC65A0634}",
  5947.             "RISK": "none",
  5948.             "FILES": " sybil.dll",
  5949.             "NAME": "Liquid Surf",
  5950.             "modified": 0
  5951.         },
  5952.         {
  5953.             "CLSID": "{BA25708B-154D-4D40-8607-67AA5190C395}",
  5954.             "RISK": "none",
  5955.             "FILES": " ISengine.dll",
  5956.             "NAME": "Intellistopper Toolbar",
  5957.             "URL": " http://smartstopper.com/ ",
  5958.             "modified": 0
  5959.         },
  5960.         {
  5961.             "CLSID": "{BA3D9F56-5EC1-497D-881A-93A28F58D9AD}",
  5962.             "RISK": "high",
  5963.             "FILES": " IE.dll",
  5964.             "NAME": "GoHip/Browserenh",
  5965.             "URL": " http://www.gohip.com/ ",
  5966.             "modified": 0
  5967.         },
  5968.         {
  5969.             "CLSID": "{BA52B914-B692-46c4-B683-905236F6F655}",
  5970.             "RISK": "none",
  5971.             "FILES": " mcvsshl.dll",
  5972.             "NAME": "McAfee Virusscan",
  5973.             "URL": " <a href=\\\"http://www.mcafee.com/default.asp\\\" TARGET=\\\"_blank\\\">McAfee Virusscan</a>",
  5974.             "modified": 0
  5975.         },
  5976.         {
  5977.             "CLSID": "{BA7270AE-5636-4618-BAF3-F86ADA39F036}",
  5978.             "RISK": "high",
  5979.             "FILES": " icoourl.dll",
  5980.             "NAME": "P2P Networking",
  5981.             "modified": 0
  5982.         },
  5983.         {
  5984.             "CLSID": "{ba77911b-a393-4a2e-b5b5-5b8ed17d7b43}",
  5985.             "RISK": "high",
  5986.             "FILES": " disable1.dll",
  5987.             "NAME": "ClientMan",
  5988.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/ClientMan.html\\\"TARGET=\\\"_blank\\\"> ClientMan</a>",
  5989.             "modified": 0
  5990.         },
  5991.         {
  5992.             "CLSID": "{BB9AAAF3-4F8D-48B5-A565-FF3E58433DC2}",
  5993.             "RISK": "high",
  5994.             "FILES": " SurfairyHlp.dll",
  5995.             "NAME": "Divago Surfairy",
  5996.             "URL": " http://www.doxdesk.com/parasite/Surfairy.html ",
  5997.             "modified": 0
  5998.         },
  5999.         {
  6000.             "CLSID": "{BBE59AF5-EE22-4A3A-AB26-3F774D1B4216}",
  6001.             "RISK": "none",
  6002.             "FILES": " Folderbox.dll",
  6003.             "NAME": "FolderBox",
  6004.             "URL": " http://www.baxbex.com/products.html ",
  6005.             "modified": 0
  6006.         },
  6007.         {
  6008.             "CLSID": "{BC0D2038-2DE5-4A6F-92BC-B18A3E0DE32A}",
  6009.             "RISK": "high",
  6010.             "FILES": " iexplorr11.dll",
  6011.             "NAME": "InetSpeak/Iexplorr",
  6012.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  6013.             "modified": 0
  6014.         },
  6015.         {
  6016.             "CLSID": "{BC207F7D-3E63-4ACA-99B5-FB5F8428200C}",
  6017.             "RISK": "high",
  6018.             "FILES": " Bdsrhook.dll",
  6019.             "NAME": "BDplugin",
  6020.             "modified": 0
  6021.         },
  6022.         {
  6023.             "CLSID": "{BC246652-868E-11d5-9C62-000102117FC3}",
  6024.             "RISK": "none",
  6025.             "FILES": " palz3003.dll",
  6026.             "NAME": "mini eresMas toolbar",
  6027.             "modified": 0
  6028.         },
  6029.         {
  6030.             "CLSID": "{BC97B254-B2B9-4D40-971D-78E0978F5F26}",
  6031.             "RISK": "high",
  6032.             "FILES": " ietoolbar.dll",
  6033.             "NAME": "CoolWebSearch parasite variant",
  6034.             "modified": 0
  6035.         },
  6036.         {
  6037.             "CLSID": "{BCF96FB4-5F1B-497B-AECC-910304A55011}",
  6038.             "RISK": "high",
  6039.             "FILES": " hh.dll, hhU.dll, hhUU.dll, neti.dll",
  6040.             "NAME": "Hungry Hands porn hijacker",
  6041.             "modified": 0
  6042.         },
  6043.         {
  6044.             "CLSID": "{BD0BA5CD-7C8E-47ED-935E-1ABBAC9B29E0}",
  6045.             "RISK": "high",
  6046.             "FILES": " 88313.dll",
  6047.             "NAME": "SubSearch parasite variant",
  6048.             "modified": 0
  6049.         },
  6050.         {
  6051.             "CLSID": "{BD51AEC6-7991-4A60-94D6-D5FEBB655D10}",
  6052.             "RISK": "high",
  6053.             "FILES": " IEMsg.dll",
  6054.             "NAME": "IETray",
  6055.             "URL": " http://www.doxdesk.com/parasite/IETray.html ",
  6056.             "modified": 0
  6057.         },
  6058.         {
  6059.             "CLSID": "{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0}",
  6060.             "RISK": "none",
  6061.             "FILES": " Msntb.dll",
  6062.             "NAME": "MSN Toolbar",
  6063.             "URL": " http://toolbar.msn.com/ ",
  6064.             "modified": 0
  6065.         },
  6066.         {
  6067.             "CLSID": "{BDF3E430-B101-42AD-A544-FADC6B084872}",
  6068.             "RISK": "none",
  6069.             "FILES": " NavShExt.dll",
  6070.             "NAME": "Norton Antivirus",
  6071.             "URL": " http://www.symantec.com/nav/nav_9xnt/ ",
  6072.             "modified": 0
  6073.         },
  6074.         {
  6075.             "CLSID": "{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}",
  6076.             "RISK": "high",
  6077.             "FILES": " AdRoar.dll",
  6078.             "NAME": "AdRoar adware",
  6079.             "modified": 0
  6080.         },
  6081.         {
  6082.             "CLSID": "{BEBF337B-9073-4574-9FC1-E0175BB25292}",
  6083.             "RISK": "none",
  6084.             "FILES": " Barratools.dll",
  6085.             "NAME": "Telefonicaonline.com",
  6086.             "modified": 0
  6087.         },
  6088.         {
  6089.             "CLSID": "{BF55256A-3B3B-11D2-B05B-000001145917}",
  6090.             "RISK": "none",
  6091.             "FILES": " Weaddon.dll",
  6092.             "NAME": "Tiny Personal Firewall",
  6093.             "URL": " http://www.tinysoftware.com/home/tiny2?s=2793868933884634691A0&la=EN&va=&pg=tpf4_overview ",
  6094.             "modified": 0
  6095.         },
  6096.         {
  6097.             "CLSID": "{BFC32E1D-EE75-4A48-BC60-104E11EE2431}",
  6098.             "RISK": "none",
  6099.             "FILES": " WEBIE.DLL",
  6100.             "NAME": "Abitz Translator",
  6101.             "URL": " <a target=_top href=\"http://www.abitz.com/uebersetz/pctransengl.php3\">Abitz Translator</a>",
  6102.             "modified": 0
  6103.         },
  6104.         {
  6105.             "CLSID": "{C079AD60-CD4A-447a-BCF9-6FD0096B5527}",
  6106.             "RISK": "none",
  6107.             "FILES": " P3Pclient.dll",
  6108.             "NAME": "AT&T Worldnet Privacy Tool",
  6109.             "URL": " http://www.research.att.com/news/2001/December/PrivacyTool.html ",
  6110.             "modified": 0
  6111.         },
  6112.         {
  6113.             "CLSID": "{C08DF07A-3E49-4E25-9AB0-D3882835F153}",
  6114.             "RISK": "none",
  6115.             "FILES": " Iehelp.dll",
  6116.             "NAME": "Textware BookCase",
  6117.             "URL": " http://www.textware.dk/bookcase.htm ",
  6118.             "modified": 0
  6119.         },
  6120.         {
  6121.             "CLSID": "{C09C9904-FD44-11D6-A711-00105AC8F168}",
  6122.             "RISK": "none",
  6123.             "FILES": " Ieplugin.dll",
  6124.             "NAME": "Metamail Reader",
  6125.             "URL": " http://www.metamail.com/technology/ ",
  6126.             "modified": 0
  6127.         },
  6128.         {
  6129.             "CLSID": "{C109664B-CEB1-420b-B353-D55A561536DD}",
  6130.             "RISK": "high",
  6131.             "FILES": " SYSsfitb.dll",
  6132.             "NAME": "AdShooter/Searchforit",
  6133.             "modified": 0
  6134.         },
  6135.         {
  6136.             "CLSID": "{C10A16B7-70FE-4CE3-A261-6FBA7CC3DD5B}",
  6137.             "RISK": "high",
  6138.             "FILES": " Lookquick.dll",
  6139.             "NAME": "LookQuick toolbar",
  6140.             "URL": " http://www.lookquick.com/toolbar.html ",
  6141.             "modified": 0
  6142.         },
  6143.         {
  6144.             "CLSID": "{C14DC52F-B4D9-11D5-B1E6-0050DAD7AF62}",
  6145.             "RISK": "none",
  6146.             "FILES": " Anonymizer.dll, ANONYM~1.DLL",
  6147.             "NAME": "Anonymizer",
  6148.             "URL": " http://www.anonymizer.com/surfing/ ",
  6149.             "modified": 0
  6150.         },
  6151.         {
  6152.             "CLSID": "{C1D458F1-B97C-11D5-B3DF-00B0D0A5B433}",
  6153.             "RISK": "none",
  6154.             "FILES": " Wxbho.dll",
  6155.             "NAME": "WaveExpress/TvTonic",
  6156.             "URL": " http://www.wave.com/news/press_archive/01/011022wavexpress.html ",
  6157.             "modified": 0
  6158.         },
  6159.         {
  6160.             "CLSID": "{C1E58A84-95B3-4630-B8C2-D06B77B7A0FC}",
  6161.             "RISK": "high",
  6162.             "FILES": " Nhelper.dll",
  6163.             "NAME": "NavExcel browser helper",
  6164.             "URL": " http://www.doxdesk.com/parasite/NavExcel.html ",
  6165.             "modified": 0
  6166.         },
  6167.         {
  6168.             "CLSID": "{C2614DA1-D197-11d3-9765-ED762A928249}",
  6169.             "RISK": "none",
  6170.             "FILES": " Ieho.dll",
  6171.             "NAME": "Alligator download manager",
  6172.             "URL": " http://www.nearsoftware.com/alligator/maininfo/ ",
  6173.             "modified": 0
  6174.         },
  6175.         {
  6176.             "CLSID": "{C298fb42-e3e2-11d3-adcd-0050dac24e8f}",
  6177.             "RISK": "high",
  6178.             "FILES": " Iwonbar.dll",
  6179.             "NAME": "iWon Toolbar",
  6180.             "URL": " http://www.doxdesk.com/parasite/Aornum.html ",
  6181.             "modified": 0
  6182.         },
  6183.         {
  6184.             "CLSID": "{C331BD6E-06AB-41A0-B95F-D7CA379ACEAA}",
  6185.             "RISK": "high",
  6186.             "FILES": " WBM.DLL",
  6187.             "NAME": "Wishbone Toolbar",
  6188.             "URL": " http://www.wishbonemedia.com/products.html ",
  6189.             "modified": 0
  6190.         },
  6191.         {
  6192.             "CLSID": "{C338BA09-B77C-11D5-9214-00104B3195F0}",
  6193.             "RISK": "none",
  6194.             "FILES": " RecordOCX.ocx",
  6195.             "NAME": "DejaSurf",
  6196.             "URL": " http://www.dejasurf.com ",
  6197.             "modified": 0
  6198.         },
  6199.         {
  6200.             "CLSID": "{C3BCC488-1AE7-11D4-AB82-0010A4EC2338}",
  6201.             "RISK": "high",
  6202.             "FILES": " hoproxy.dll ",
  6203.             "NAME": "Vividence Connector",
  6204.             "URL": " http://www.vividence.com/public/products/vividence+xms+enterprise/vividence+xms+enterprise/connector.htm ",
  6205.             "modified": 0
  6206.         },
  6207.         {
  6208.             "CLSID": "{C3EBC7C0-CF8B-11D4-9F90-006008DFE22A}",
  6209.             "RISK": "medium",
  6210.             "FILES": " Sc.dll",
  6211.             "NAME": "SyvumClickTM",
  6212.             "URL": " http://www.syvum.com/click/download.html ",
  6213.             "modified": 0
  6214.         },
  6215.         {
  6216.             "CLSID": "{C41A1C0E-EA6C-11D4-B1B8-444553540000}",
  6217.             "RISK": "none",
  6218.             "FILES": " gbieh.dll",
  6219.             "NAME": "G-Buster Browser Defense",
  6220.             "modified": 0
  6221.         },
  6222.         {
  6223.             "CLSID": "{C4296108-BF2F-448f-AF2F-10062E5121BC}",
  6224.             "RISK": "medium",
  6225.             "FILES": " DpNMIEHELP.dll",
  6226.             "NAME": "MS Visual Studio DevPartner Profiler",
  6227.             "URL": " http://msdn.microsoft.com/vstudio/partners/tools/compuware.asp ",
  6228.             "modified": 0
  6229.         },
  6230.         {
  6231.             "CLSID": "{C4CA6559-2CF1-48B6-96B2-8340A06FD129}",
  6232.             "RISK": "high",
  6233.             "FILES": " AdBar.dll ",
  6234.             "NAME": "AdBars",
  6235.             "modified": 0
  6236.         },
  6237.         {
  6238.             "CLSID": "{C4D99500-4C77-11D4-93B7-0040950570BA}",
  6239.             "RISK": "high",
  6240.             "FILES": " boombar.dll",
  6241.             "NAME": "eBoom Search Bar",
  6242.             "URL": "  InetSpeak variant http://www.doxdesk.com/parasite/InetSpeak.html ",
  6243.             "modified": 0
  6244.         },
  6245.         {
  6246.             "CLSID": "{C52149CE-7962-4C8D-95A4-8733F63199BF}",
  6247.             "RISK": "none",
  6248.             "FILES": " unknown",
  6249.             "NAME": "NQL Browser Recorder",
  6250.             "URL": " http://www.nqltech.com/BrowserRecorder.asp ",
  6251.             "modified": 0
  6252.         },
  6253.         {
  6254.             "CLSID": "{C56CB6B0-0D96-11D6-8C65-B2868B609932}",
  6255.             "RISK": "none",
  6256.             "FILES": " Ntiehelper.dll",
  6257.             "NAME": "Net Transport",
  6258.             "URL": " http://lycos26486.l78.lycos.com.cn/default.htm ",
  6259.             "modified": 0
  6260.         },
  6261.         {
  6262.             "CLSID": "{C5941EE5-6DFA-11D8-86B0-0002441A9695}",
  6263.             "RISK": "high",
  6264.             "FILES": " 3_0_1browserhelper3.dll",
  6265.             "NAME": "BlazeFind hijacker variant",
  6266.             "modified": 0
  6267.         },
  6268.         {
  6269.             "CLSID": "{C6335B00-E8D9-423e-A691-48D17CBB6C5A}",
  6270.             "RISK": "high",
  6271.             "FILES": " Praizetoolbar.dll",
  6272.             "NAME": "Praize toolbar",
  6273.             "URL": " http://www.praize.com/toolbar/ ",
  6274.             "modified": 0
  6275.         },
  6276.         {
  6277.             "CLSID": "{C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53}",
  6278.             "RISK": "none",
  6279.             "FILES": " BHOPXP.dll",
  6280.             "NAME": "Popup XP",
  6281.             "URL": " <a href=\\\"http://www.codeproject.com/atl/popupblocker.asp\\\" target=\\\"_blank\\\">Popup XP</a>",
  6282.             "modified": 0
  6283.         },
  6284.         {
  6285.             "CLSID": "{C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53}",
  6286.             "RISK": "none",
  6287.             "FILES": " PopupBlocker.dll",
  6288.             "NAME": "OsbornTech popup blocker",
  6289.             "modified": 0
  6290.         },
  6291.         {
  6292.             "CLSID": "{C6CEAC32-D45C-11D4-94AF-0050BABD5FD6}",
  6293.             "RISK": "none",
  6294.             "FILES": " Urlorgie.dll",
  6295.             "NAME": "URL Organizer",
  6296.             "URL": " http://www.urlorg.com/about.shtml ",
  6297.             "modified": 0
  6298.         },
  6299.         {
  6300.             "CLSID": "{C6EA5A8D-8B01-4498-8B9A-B40AA281035F}",
  6301.             "RISK": "none",
  6302.             "FILES": " popkiller.dll",
  6303.             "NAME": "IEMate",
  6304.             "URL": " http://www.retsinasoftware.com/ ",
  6305.             "modified": 0
  6306.         },
  6307.         {
  6308.             "CLSID": "{C733AE47-6AC0-4837-93DA-70278E88E7B2}",
  6309.             "RISK": "none",
  6310.             "FILES": " gtindctr.dll",
  6311.             "NAME": "Gtran wireless",
  6312.             "URL": " <a href=\\\"http://www.gtranwireless.com/products/index.html\\\" target=\\\"_blank\\\">Gtran wireless</a>",
  6313.             "modified": 0
  6314.         },
  6315.         {
  6316.             "CLSID": "{C77E900A-FF55-400E-9BAA-E042C8212898}",
  6317.             "RISK": "high",
  6318.             "FILES": " ToolbarStarter.dll",
  6319.             "NAME": "EasyBar/Toolbarcash",
  6320.             "modified": 0
  6321.         },
  6322.         {
  6323.             "CLSID": "{C7967580-5F17-11D4-AAC2-0000B4936E0C}",
  6324.             "RISK": "high",
  6325.             "FILES": " System61.dll",
  6326.             "NAME": "System61 hijacker",
  6327.             "modified": 0
  6328.         },
  6329.         {
  6330.             "CLSID": "{C7ADE150-743D-11D4-8141-00E029626F6A}",
  6331.             "RISK": "high",
  6332.             "FILES": " KER7120.DLL, Kernell32.dll",
  6333.             "NAME": "NetPal/PrizePopper",
  6334.             "URL": " http://www.doxdesk.com/parasite/NetPal.html ",
  6335.             "modified": 0
  6336.         },
  6337.         {
  6338.             "CLSID": "{C82B55F0-60E0-478C-BC55-E4E22F11301D}",
  6339.             "RISK": "high",
  6340.             "FILES": " Chgrgs.dll",
  6341.             "NAME": "i-Lookup/Chgrgs",
  6342.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  6343.             "modified": 0
  6344.         },
  6345.         {
  6346.             "CLSID": "{C8847EEA-72D6-11D4-AB4F-00B0D02332EE}",
  6347.             "RISK": "medium",
  6348.             "FILES": " Phook.dll",
  6349.             "NAME": "InstallShield DigitalWizard",
  6350.             "URL": " http://www.installshield.com/isus/ ",
  6351.             "modified": 0
  6352.         },
  6353.         {
  6354.             "CLSID": "{C900B400-CDFE-11D3-976A-00E02913A9E0}",
  6355.             "RISK": "high",
  6356.             "FILES": " Whiehlpr.dll",
  6357.             "NAME": "Webhancer",
  6358.             "URL": " http://www.cexx.org/webhancer.htm ",
  6359.             "modified": 0
  6360.         },
  6361.         {
  6362.             "CLSID": "{C9176930-9C9F-4cba-9723-0F58C3E7CED6}",
  6363.             "RISK": "high",
  6364.             "FILES": " (Random file name)",
  6365.             "NAME": "Whazit ",
  6366.             "URL": " http://www.doxdesk.com/parasite/Whazit.html ",
  6367.             "modified": 0
  6368.         },
  6369.         {
  6370.             "CLSID": "{C966C82E-DAEA-4A30-B788-EF32D6F7C3D4}",
  6371.             "RISK": "none",
  6372.             "FILES": " popad.dll",
  6373.             "NAME": "PopSubtract",
  6374.             "URL": " http://www.popsubtract.com/features.html ",
  6375.             "modified": 0
  6376.         },
  6377.         {
  6378.             "CLSID": "{CA0B9B71-C2AF-11D3-B376-0800460222F0}",
  6379.             "RISK": "high",
  6380.             "FILES": " Iwonbar.dll",
  6381.             "NAME": "iWon Toolbar",
  6382.             "URL": " http://www.doxdesk.com/parasite/Aornum.html ",
  6383.             "modified": 0
  6384.         },
  6385.         {
  6386.             "CLSID": "{CA1D1B05-9C66-11D5-A009-000103C1E50B}",
  6387.             "RISK": "high",
  6388.             "FILES": " Pbar.dll",
  6389.             "NAME": "4Arcade PBar",
  6390.             "URL": " http://www.4arcade.com/powersearch/index.shtml ",
  6391.             "modified": 0
  6392.         },
  6393.         {
  6394.             "CLSID": "{CA8A9780-280D-11CF-A24D-444553540000}",
  6395.             "RISK": "none",
  6396.             "FILES": " Pdf.ocx",
  6397.             "NAME": "Adobe Acrobat",
  6398.             "URL": " http://www.adobe.com/products/acrobatpro/main.html ",
  6399.             "modified": 0
  6400.         },
  6401.         {
  6402.             "CLSID": "{CA92B524-BC8A-4610-BD2C-6BD3E28155D0}",
  6403.             "RISK": "high",
  6404.             "FILES": " Bdhelper.dll",
  6405.             "NAME": "CnsMin variant",
  6406.             "URL": " http://www.doxdesk.com/parasite/CnsMin.html ",
  6407.             "modified": 0
  6408.         },
  6409.         {
  6410.             "CLSID": "{CAAE9D7F-FFCC-46CF-8DEE-00DCC6CDF5A1}",
  6411.             "RISK": "none",
  6412.             "FILES": " ZillaBar.dll",
  6413.             "NAME": "StopZilla",
  6414.             "URL": " <a href=\\\"http://www.stopzilla.com/site/\\\" target=\\\"_blank\\\">StopZilla</a>",
  6415.             "modified": 0
  6416.         },
  6417.         {
  6418.             "CLSID": "{CADC957A-EF3E-4a08-B6DA-366BFFB97321}",
  6419.             "RISK": "none",
  6420.             "FILES": " Searchhippo.dll",
  6421.             "NAME": "SearchHippo",
  6422.             "URL": " http://www.searchhippo.com/ ",
  6423.             "modified": 0
  6424.         },
  6425.         {
  6426.             "CLSID": "{CB7CE223-955E-11D3-81AA-344203C10000}",
  6427.             "RISK": "medium",
  6428.             "FILES": " Mscack.dll",
  6429.             "NAME": "SpIE Monitoring program",
  6430.             "URL": " http://www.satacoy.com/spie/main.htm ",
  6431.             "modified": 0
  6432.         },
  6433.         {
  6434.             "CLSID": "{CBA523B2-1906-4D14-95A2-CD8E233701C7}",
  6435.             "RISK": "high",
  6436.             "FILES": " waeb.dll",
  6437.             "NAME": "I-Lookup",
  6438.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  6439.             "modified": 0
  6440.         },
  6441.         {
  6442.             "CLSID": "{CBA74CDA-DF78-4AD9-954E-3B15D0A993DE}",
  6443.             "RISK": "none",
  6444.             "FILES": " SpoofStickBHO.dll",
  6445.             "NAME": "SpoofStick",
  6446.             "URL": " <a href=\\\"http://www.corestreet.com/spoofstick/\\\" target=\\\"_blank\\\">SpoofStick</a>",
  6447.             "modified": 0
  6448.         },
  6449.         {
  6450.             "CLSID": "{CBAA6F21-985C-11D4-A02B-00B0D073E889}",
  6451.             "RISK": "none",
  6452.             "FILES": " Llieobj.dll",
  6453.             "NAME": "LexLink toolbar",
  6454.             "URL": " http://www.llrx.com/features/lexnex.htm ",
  6455.             "modified": 0
  6456.         },
  6457.         {
  6458.             "CLSID": "{CBB0A6A0-8430-11D4-814D-0050047090B1}",
  6459.             "RISK": "none",
  6460.             "FILES": " Surfsaver.dll",
  6461.             "NAME": "Surfsaver",
  6462.             "URL": " http://www.surfsaver.com/ ",
  6463.             "modified": 0
  6464.         },
  6465.         {
  6466.             "CLSID": "{cc4b2ee5-4803-11d7-8a38-00b0d0c6b814}",
  6467.             "RISK": "none",
  6468.             "FILES": " Gdiehelp.dll",
  6469.             "NAME": "McAfee Privacy Service",
  6470.             "URL": " http://us.mcafee.com/root/package.asp?pkgid=104 ",
  6471.             "modified": 0
  6472.         },
  6473.         {
  6474.             "CLSID": "{CC7C8206-344B-45AB-B898-78D06229268F}",
  6475.             "RISK": "none",
  6476.             "FILES": " Iadiebho.dll",
  6477.             "NAME": "Incredible Automatic Downloader",
  6478.             "URL": " http://www.unhsolutions.net/IAD/ ",
  6479.             "modified": 0
  6480.         },
  6481.         {
  6482.             "CLSID": "{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}",
  6483.             "RISK": "high",
  6484.             "FILES": " DashBar15.dll",
  6485.             "NAME": "DashBar",
  6486.             "modified": 0
  6487.         },
  6488.         {
  6489.             "CLSID": "{CC916B4B-BE44-4026-A19D-8C74BBD23361}",
  6490.             "RISK": "high",
  6491.             "FILES": " Gstyle~1.dll, Metahe~1.dll, ms****.dll  (* = random char)",
  6492.             "NAME": "ClientMan",
  6493.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  6494.             "modified": 0
  6495.         },
  6496.         {
  6497.             "CLSID": "{CCE83E45-30B2-4BAE-B1F5-25D128D27A43}",
  6498.             "RISK": "high",
  6499.             "FILES": " Ezsearch.dll",
  6500.             "NAME": "EZCybersearch bar",
  6501.             "URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
  6502.             "modified": 0
  6503.         },
  6504.         {
  6505.             "CLSID": "{CD209A08-98B5-4669-AF9F-447AC5253356}",
  6506.             "RISK": "high",
  6507.             "FILES": " CSapp.dll ",
  6508.             "NAME": "CSApp",
  6509.             "URL": " <a href=\\\"http://www.pestpatrol.com/PestInfo/c/csapp_dll.asp#Detection%20and%20Removal\\\" target=\\\"_blank\\\">CSApp</a>",
  6510.             "modified": 0
  6511.         },
  6512.         {
  6513.             "CLSID": "{CD2A865B-6C0F-44F9-BAA1-7CDB31E04BC8}",
  6514.             "RISK": "high",
  6515.             "FILES": " BarBHO.dll",
  6516.             "NAME": "Searchcentrix.com Hijacker",
  6517.             "modified": 0
  6518.         },
  6519.         {
  6520.             "CLSID": "{CD4C3CF0-4B15-11D1-ABED-709549C10000}",
  6521.             "RISK": "high",
  6522.             "FILES": " Goiehlp.dll",
  6523.             "NAME": "Go`Zilla",
  6524.             "URL": " http://www.oit.duke.edu/ats/support/spyware/gozilla.html ",
  6525.             "modified": 0
  6526.         },
  6527.         {
  6528.             "CLSID": "{CDBCFEAE-10BA-482C-9F6E-FC67207082D8}",
  6529.             "RISK": "high",
  6530.             "FILES": " mdefshop.dll",
  6531.             "NAME": "WurldMedia",
  6532.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  6533.             "modified": 0
  6534.         },
  6535.         {
  6536.             "CLSID": "{CE000992-A58C-4441-8938-744CD72AB27F}",
  6537.             "RISK": "none",
  6538.             "FILES": " i-nav_4_0_0.dll",
  6539.             "NAME": "Verisign i-Nav",
  6540.             "URL": " http://www.idnnow.com/index.jsp?lang=en ",
  6541.             "modified": 0
  6542.         },
  6543.         {
  6544.             "CLSID": "{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}",
  6545.             "RISK": "high",
  6546.             "FILES": " Apuc.dll",
  6547.             "NAME": "Bargain Buddy",
  6548.             "URL": " http://www.doxdesk.com/parasite/BargainBuddy.html ",
  6549.             "modified": 0
  6550.         },
  6551.         {
  6552.             "CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
  6553.             "RISK": "high",
  6554.             "FILES": " Ubmon.dll",
  6555.             "NAME": "URLBlaze",
  6556.             "URL": " http://www.urlblaze.com ",
  6557.             "modified": 0
  6558.         },
  6559.         {
  6560.             "CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
  6561.             "RISK": "high",
  6562.             "FILES": " Iehelper.dll, IE_SPY.DLL",
  6563.             "NAME": "ShopNavSearch/Srng",
  6564.             "URL": " http://www.doxdesk.com/parasite/Srng.html ",
  6565.             "modified": 0
  6566.         },
  6567.         {
  6568.             "CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
  6569.             "RISK": "none",
  6570.             "FILES": " PwMgr.dll",
  6571.             "NAME": "AOL Browser helper",
  6572.             "URL": " http://free.aol.com/tryaolfree/cdt.adp?139331 ",
  6573.             "modified": 0
  6574.         },
  6575.         {
  6576.             "CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
  6577.             "RISK": "none",
  6578.             "FILES": " IE_SPY.dll",
  6579.             "NAME": "Kensington MouseWorks",
  6580.             "URL": " http://www.apple.com/downloads/macosx/drivers/kensingtonmouseworks.html ",
  6581.             "modified": 0
  6582.         },
  6583.         {
  6584.             "CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
  6585.             "RISK": "none",
  6586.             "FILES": " iehelper.dll",
  6587.             "NAME": "Lotus Organizer",
  6588.             "URL": " http://www.lotus.com/products/organizer5.nsf ",
  6589.             "modified": 0
  6590.         },
  6591.         {
  6592.             "CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10001}",
  6593.             "RISK": "high",
  6594.             "FILES": " iemonit.dll",
  6595.             "NAME": "IeMonit",
  6596.             "URL": " http://www.doxdesk.com/parasite/IEMonit.html ",
  6597.             "modified": 0
  6598.         },
  6599.         {
  6600.             "CLSID": "{CECFF8DE-C145-4570-B030-10105AA82920}",
  6601.             "RISK": "none",
  6602.             "FILES": " Lateralartstoolbar.dll",
  6603.             "NAME": "Lateral Arts Toolbar",
  6604.             "URL": " http://www.larts.co.uk/Toolbar.shtml ",
  6605.             "modified": 0
  6606.         },
  6607.         {
  6608.             "CLSID": "{CF021F40-3E14-23A5-CBA2-717765721306}",
  6609.             "RISK": "high",
  6610.             "FILES": " wer1306.dll",
  6611.             "NAME": "CoolWebSearch parasite variant",
  6612.             "modified": 0
  6613.         },
  6614.         {
  6615.             "CLSID": "{CFB25594-4D5F-11D6-AB7B-00B0D094B576}",
  6616.             "RISK": "none",
  6617.             "FILES": " IEPlugIn.dll",
  6618.             "NAME": "Systran toolbar",
  6619.             "URL": " http://www.systransoft.com/Products/Personal.html ",
  6620.             "modified": 0
  6621.         },
  6622.         {
  6623.             "CLSID": "{D14641FA-445B-448E-9994-209f7AF15641}",
  6624.             "RISK": "high",
  6625.             "FILES": " mbho.dll",
  6626.             "NAME": "WurldMedia",
  6627.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  6628.             "modified": 0
  6629.         },
  6630.         {
  6631.             "CLSID": "{D14D6793-9B65-11D3-80B6-00500487BDBA}",
  6632.             "RISK": "high",
  6633.             "FILES": " Csbho.dll",
  6634.             "NAME": "Comet Cursor",
  6635.             "URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
  6636.             "modified": 0
  6637.         },
  6638.         {
  6639.             "CLSID": "{D157330A-9EF3-49F8-9A67-4141AC41ADD4}",
  6640.             "RISK": "high",
  6641.             "FILES": " CnsHook.dll",
  6642.             "NAME": "CnsMin",
  6643.             "modified": 0
  6644.         },
  6645.         {
  6646.             "CLSID": "{D1F6ABEF-B889-11D2-8E3C-DCCA155F9A71}",
  6647.             "RISK": "high",
  6648.             "FILES": " Alexaie.dll",
  6649.             "NAME": "Alexa Toolbar",
  6650.             "URL": " http://pages.alexa.com/prod_serv/webmasters.html?p=Dest_W_t_40_L1 ",
  6651.             "modified": 0
  6652.         },
  6653.         {
  6654.             "CLSID": "{D2000F80-ABC6-11D3-9794-0090274D4CCA}",
  6655.             "RISK": "medium",
  6656.             "FILES": " OSIEHLPR.DLL",
  6657.             "NAME": "Onscan",
  6658.             "URL": " <a target=_top href=\"http://www.suespace.com/web/onscan/partners_related/network.html\">Onscan</a>",
  6659.             "modified": 0
  6660.         },
  6661.         {
  6662.             "CLSID": "{D2F719F3-106A-402B-9996-3A5B12ACA564}",
  6663.             "RISK": "none",
  6664.             "FILES": " Pnie.dll",
  6665.             "NAME": "Guard-IE",
  6666.             "URL": " http://www.downloadatoz.com/guardie/ ",
  6667.             "modified": 0
  6668.         },
  6669.         {
  6670.             "CLSID": "{D319662B-D5BF-4538-ADF3-8D3E36362608}",
  6671.             "RISK": "high",
  6672.             "FILES": " x0ff.dll, X0ff*.dll (* = random digit)",
  6673.             "NAME": "ClearStream Accelerator by X10.com",
  6674.             "modified": 0
  6675.         },
  6676.         {
  6677.             "CLSID": "{D34F641F-5210-4EB0-8ED5-9179F47E15B7}",
  6678.             "RISK": "high",
  6679.             "FILES": " blckbho.dll",
  6680.             "NAME": "BrowserPal Toolbar",
  6681.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  6682.             "modified": 0
  6683.         },
  6684.         {
  6685.             "CLSID": "{D3919E1A-D6A5-11D6-AC3E-00B0D094B576}",
  6686.             "RISK": "none",
  6687.             "FILES": " IEPlugIn.dll",
  6688.             "NAME": "Systran",
  6689.             "URL": " http://www.systransoft.com/Products/Features.html ",
  6690.             "modified": 0
  6691.         },
  6692.         {
  6693.             "CLSID": "{D3EA3B57-9A3E-4E80-BFF0-595F7A91D55E}",
  6694.             "RISK": "medium",
  6695.             "FILES": " XenoBar.dll",
  6696.             "NAME": "XenoBar popupblocker",
  6697.             "URL": " <a href=\\\"http://www.ultrasoftware.net/archive/detail.asp?id=2459\\\" target=\\\"_blank\\\">XenoBar popupblocker</a>",
  6698.             "modified": 0
  6699.         },
  6700.         {
  6701.             "CLSID": "{D3F01312-8A3D-4D41-A4FA-FB61D295CB6B}",
  6702.             "RISK": "high",
  6703.             "FILES": " Surebar.dll",
  6704.             "NAME": "EZCybersearch/Surebar",
  6705.             "URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
  6706.             "modified": 0
  6707.         },
  6708.         {
  6709.             "CLSID": "{D4003A01-9B2C-4e24-9CD2-8D7DB1BDE096}",
  6710.             "RISK": "none",
  6711.             "FILES": " DGSToolbar.dll",
  6712.             "NAME": "De Gule Sider toolbar",
  6713.             "modified": 0
  6714.         },
  6715.         {
  6716.             "CLSID": "{D44B5436-B3E4-4595-B0E9-106690E70A58}",
  6717.             "RISK": "high",
  6718.             "FILES": " plg_ie0.dll, *********. dll (random chars)",
  6719.             "NAME": "Lop.com",
  6720.             "URL": " http://www.doxdesk.com/parasite/lop.html ",
  6721.             "modified": 0
  6722.         },
  6723.         {
  6724.             "CLSID": "{D44BBB61-E17F-4AE6-A502-8D7E0B29E616}",
  6725.             "RISK": "none",
  6726.             "FILES": " Stumble.dll, STUMBL~1.DLL",
  6727.             "NAME": "Stumbleupon toolbar",
  6728.             "modified": 0
  6729.         },
  6730.         {
  6731.             "CLSID": "{D48F2E28-68E2-4920-9848-D6E6C7AB3EB7}",
  6732.             "RISK": "high",
  6733.             "FILES": " Redirector.dll",
  6734.             "NAME": "Xupiter Orbitexplorer",
  6735.             "URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
  6736.             "modified": 0
  6737.         },
  6738.         {
  6739.             "CLSID": "{D4D505DF-D582-400c-91B6-84921012AFE3}",
  6740.             "RISK": "high",
  6741.             "FILES": " pdfupd.dll PDF****.dll",
  6742.             "NAME": "PopUpDefence hijacker",
  6743.             "modified": 0
  6744.         },
  6745.         {
  6746.             "CLSID": "{D4E7C68D-37FD-11D4-9D32-0000A00B0B0B}",
  6747.             "RISK": "none",
  6748.             "FILES": " Cpbrhelp.dll",
  6749.             "NAME": "Cookie Pal",
  6750.             "URL": " http://www.kburra.com/cpal.html ",
  6751.             "modified": 0
  6752.         },
  6753.         {
  6754.             "CLSID": "{D593DE91-7B41-45C2-830E-E9A99AB142AA}",
  6755.             "RISK": "none",
  6756.             "FILES": " 1ClickPicGrabber.dll",
  6757.             "NAME": "1ClickPicGrabber",
  6758.             "URL": " <a href=\\\"http://www.zabersoft.com/products.php?id=3\\\" target=\\\"_blank\\\">1ClickPicGrabber</a>",
  6759.             "modified": 0
  6760.         },
  6761.         {
  6762.             "CLSID": "{D5B72AED-E54A-11D6-B1B2-444553540000}",
  6763.             "RISK": "high",
  6764.             "FILES": " Bho.dll, other, random file names",
  6765.             "NAME": "Whazit",
  6766.             "URL": " http://www.doxdesk.com/parasite/Whazit.html ",
  6767.             "modified": 0
  6768.         },
  6769.         {
  6770.             "CLSID": "{D5C778F1-CF13-4E70-ADF0-45A953E7CB8B}",
  6771.             "RISK": "high",
  6772.             "FILES": " Ne.dll",
  6773.             "NAME": "SmartPops  - Network Essentials",
  6774.             "URL": " http://www.doxdesk.com/parasite/NetworkEssentials.html ",
  6775.             "modified": 0
  6776.         },
  6777.         {
  6778.             "CLSID": "{D6223CBC-A263-4CB1-B35E-1AE40FEF3B3B}",
  6779.             "RISK": "high",
  6780.             "FILES": " ietoolbar.dll",
  6781.             "NAME": "power-linking-profits.com toolbar",
  6782.             "modified": 0
  6783.         },
  6784.         {
  6785.             "CLSID": "{D6862A22-1DD6-11D3-BB7C-444553540000}",
  6786.             "RISK": "high",
  6787.             "FILES": " Bho.dll",
  6788.             "NAME": "InetSpeak",
  6789.             "URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
  6790.             "modified": 0
  6791.         },
  6792.         {
  6793.             "CLSID": "{D6DFF6D8-B94B-4720-B730-1C38C7065C3B}",
  6794.             "RISK": "high",
  6795.             "FILES": " Btlink.dll",
  6796.             "NAME": "HuntBar",
  6797.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  6798.             "modified": 0
  6799.         },
  6800.         {
  6801.             "CLSID": "{D6E66235-7AA6-44ED-A06C-6F2033B1D993}",
  6802.             "RISK": "high",
  6803.             "FILES": " Msiein.dll",
  6804.             "NAME": "HuntBar",
  6805.             "URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
  6806.             "modified": 0
  6807.         },
  6808.         {
  6809.             "CLSID": "{D6FC35D1-04AB-4D40-94CF-2E5AE4D0F8D2}",
  6810.             "RISK": "high",
  6811.             "FILES": " llch.dll",
  6812.             "NAME": "Qcbar/AdultLinks",
  6813.             "URL": " http://www.doxdesk.com/parasite/AdultLinks.html ",
  6814.             "modified": 0
  6815.         },
  6816.         {
  6817.             "CLSID": "{D7258ABE-571F-4DC2-ABD1-8393B13B1269}",
  6818.             "RISK": "high",
  6819.             "FILES": " RSSToolbar.dll",
  6820.             "NAME": "Related Site Search (BrowserAid)",
  6821.             "URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
  6822.             "modified": 0
  6823.         },
  6824.         {
  6825.             "CLSID": "{D7D7004C-A763-4F8C-B0D4-55A7E017E69D}",
  6826.             "RISK": "high",
  6827.             "FILES": " newones.dll",
  6828.             "NAME": "Whazit",
  6829.             "URL": " http://www.doxdesk.com/parasite/Whazit.html ",
  6830.             "modified": 0
  6831.         },
  6832.         {
  6833.             "CLSID": "{D7F30B62-8269-41AF-9539-B2697FA7D77E}",
  6834.             "RISK": "none",
  6835.             "FILES": " PnEL.dll",
  6836.             "NAME": "Earthlink Pop-Up blocker",
  6837.             "URL": " http://www.earthlink.net/home/software/popupblocker/totalaccessdownload/ ",
  6838.             "modified": 0
  6839.         },
  6840.         {
  6841.             "CLSID": "{D8073790-84C7-4602-BF77-C6ACBF1612E4}",
  6842.             "RISK": "none",
  6843.             "FILES": " IBToolBar.dll",
  6844.             "NAME": "IncrediBar",
  6845.             "URL": " http://www.incredibar.com/home.asp ",
  6846.             "modified": 0
  6847.         },
  6848.         {
  6849.             "CLSID": "{D80E1356-AC78-4218-961C-A7689B4CB7FE}",
  6850.             "RISK": "high",
  6851.             "FILES": " Ttbbho.dll",
  6852.             "NAME": "Comodo Trust Toolbar",
  6853.             "URL": " http://www.trusttoolbar.com/ ",
  6854.             "modified": 0
  6855.         },
  6856.         {
  6857.             "CLSID": "{D81AB57B-7327-4347-B7C7-9EF7CA87CE09}",
  6858.             "RISK": "none",
  6859.             "FILES": " Slimbho2.dll",
  6860.             "NAME": "Orbiscom Online Secure Payments",
  6861.             "URL": " http://www.orbiscom.com/products/ocard.html ",
  6862.             "modified": 0
  6863.         },
  6864.         {
  6865.             "CLSID": "{D848A3CA-0BFB-4DE0-BA9E-A57F0CCA1C13}",
  6866.             "RISK": "high",
  6867.             "FILES": " Dealhlpr.dll",
  6868.             "NAME": "Dealhelper.com adware",
  6869.             "modified": 0
  6870.         },
  6871.         {
  6872.             "CLSID": "{D879A0F1-2B3B-4409-8879-FAD6E49E1EA9}",
  6873.             "RISK": "high",
  6874.             "FILES": " mshtmpre.dll",
  6875.             "NAME": "Unidentified hijacker",
  6876.             "modified": 0
  6877.         },
  6878.         {
  6879.             "CLSID": "{D8E25C53-9508-4f5c-9249-D98D438891D5}",
  6880.             "RISK": "high",
  6881.             "FILES": " ssurf022.dll",
  6882.             "NAME": "MediaUpdate/SafeSurfing",
  6883.             "URL": " http://www.doxdesk.com/parasite/MediaUpdate.html ",
  6884.             "modified": 0
  6885.         },
  6886.         {
  6887.             "CLSID": "{D8FA0364-7866-40A7-B340-A6069265AD9F}",
  6888.             "RISK": "high",
  6889.             "FILES": " Csearch.dll",
  6890.             "NAME": "CSearch",
  6891.             "modified": 0
  6892.         },
  6893.         {
  6894.             "CLSID": "{D97287B6-4018-4060-948D-54D2122FC5C3}",
  6895.             "RISK": "high",
  6896.             "FILES": " 0002C00.dll",
  6897.             "NAME": "SubSearch parasite variant",
  6898.             "modified": 0
  6899.         },
  6900.         {
  6901.             "CLSID": "{D985E70B-97F1-477E-AF6C-66E496DEDBD6}",
  6902.             "RISK": "high",
  6903.             "FILES": " 2ndpower.dll",
  6904.             "NAME": "SecondPower Multimedia Speedbar",
  6905.             "URL": " http://support.microsoft.com/default.aspx?kbid=320159 ",
  6906.             "modified": 0
  6907.         },
  6908.         {
  6909.             "CLSID": "{D9A5A49C-60EB-4C07-8570-8FB8FE825E7C}",
  6910.             "RISK": "high",
  6911.             "FILES": " sbsrch_v2.dll",
  6912.             "NAME": "Subsearch",
  6913.             "URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
  6914.             "modified": 0
  6915.         },
  6916.         {
  6917.             "CLSID": "{DB0018A2-F7D9-4B71-9651-640143DF23F9}",
  6918.             "RISK": "high",
  6919.             "FILES": " ctap7.dll",
  6920.             "NAME": "ezSearching",
  6921.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/ezSearching.html\\\" target=\\\"_blank\\\">ezSearching</a>",
  6922.             "modified": 0
  6923.         },
  6924.         {
  6925.             "CLSID": "{DB43E4E6-FF8A-4018-8C8E-F68587A44A73}",
  6926.             "RISK": "none",
  6927.             "FILES": " PopUpCop.dll",
  6928.             "NAME": "PopUpCop",
  6929.             "URL": " http://www.botspot.com/Intelligent_Agent/1972.html ",
  6930.             "modified": 0
  6931.         },
  6932.         {
  6933.             "CLSID": "{DB96792F-834A-40FC-97CD-9A8ECDF484FE}",
  6934.             "RISK": "none",
  6935.             "FILES": " MapStanIETB.dll",
  6936.             "NAME": "MapStan toolbar",
  6937.             "URL": " http://www.mapstan.net/en/predownload.jsp ",
  6938.             "modified": 0
  6939.         },
  6940.         {
  6941.             "CLSID": "{DD41D66E-CE4F-11D2-8DA9-00A0249EABF4}",
  6942.             "RISK": "none",
  6943.             "FILES": " Formwhiz.dll",
  6944.             "NAME": "FormWhiz",
  6945.             "URL": " http://www.pcmag.com/article2/041495753000.asp ",
  6946.             "modified": 0
  6947.         },
  6948.         {
  6949.             "CLSID": "{DE614603-6320-4046-A7A7-6A69CEC26F14}",
  6950.             "RISK": "high",
  6951.             "FILES": " 4b_1,0,0,5_navpmc.dll, 4b_1,0,0,6_mslagent.dll, 4b_1,0,0,7_mslagent.dll ",
  6952.             "NAME": "MagicControl variant",
  6953.             "modified": 0
  6954.         },
  6955.         {
  6956.             "CLSID": "{DEDEDE03-0000-0000-C000-00A300000043}",
  6957.             "RISK": "none",
  6958.             "FILES": " MantaCL.dll",
  6959.             "NAME": "MantaDB Utilities",
  6960.             "URL": " <a target=_top href=\"http://www.mantadb.com/\">MantaDB Utilities</a>",
  6961.             "modified": 0
  6962.         },
  6963.         {
  6964.             "CLSID": "{E0000C3F-8DE9-4FCB-9294-22FC06851B37}",
  6965.             "RISK": "none",
  6966.             "FILES": " SmartSMS.dll",
  6967.             "NAME": "SmartSMS",
  6968.             "modified": 0
  6969.         },
  6970.         {
  6971.             "CLSID": "{E01D96AB-DBBD-451D-BDCB-0EE420BC91B1}",
  6972.             "RISK": "none",
  6973.             "FILES": " Zibbar.dll",
  6974.             "NAME": "Zibb.nl Toolbar",
  6975.             "URL": " http://www.zibb.nl/dossier.asp?portal=0&sctr=21&dossier=1100&bt=A&portalnaam=home ",
  6976.             "modified": 0
  6977.         },
  6978.         {
  6979.             "CLSID": "{E02E86EB-220B-4B59-A251-F849405E1D64}",
  6980.             "RISK": "none",
  6981.             "FILES": " inetLockBho.dll",
  6982.             "NAME": "PC Magazine Password Profiler",
  6983.             "modified": 0
  6984.         },
  6985.         {
  6986.             "CLSID": "{E0B9B5FE-B66E-4FB0-A1D9-726F0E743CFD}",
  6987.             "RISK": "high",
  6988.             "FILES": " SurfairyPP.dll",
  6989.             "NAME": "Divago Surfairy",
  6990.             "URL": " http://www.doxdesk.com/parasite/Surfairy.html ",
  6991.             "modified": 0
  6992.         },
  6993.         {
  6994.             "CLSID": "{E0E899AB-F487-11D5-8D29-0050BA6940E3}",
  6995.             "RISK": "none",
  6996.             "FILES": " fgiebar.dll",
  6997.             "NAME": "FlashGet",
  6998.             "URL": " http://www.amazesoft.com/ ",
  6999.             "modified": 0
  7000.         },
  7001.         {
  7002.             "CLSID": "{E0F0E0E1-5D45-11D4-BC00-2DCC73302D70}",
  7003.             "RISK": "high",
  7004.             "FILES": " cpr.dll",
  7005.             "NAME": "AdRoar adware",
  7006.             "modified": 0
  7007.         },
  7008.         {
  7009.             "CLSID": "{E166B4A2-83E7-11D3-B4FD-004005A47AAA}",
  7010.             "RISK": "none",
  7011.             "FILES": " iec.dll",
  7012.             "NAME": "Powermarks Bookmark manager",
  7013.             "URL": " http://www.kaylon.com/power.html ",
  7014.             "modified": 0
  7015.         },
  7016.         {
  7017.             "CLSID": "{E19569C7-DBCA-4576-96A6-97DE7C5A22EF}",
  7018.             "RISK": "none",
  7019.             "FILES": " FREESE~1.DLL",
  7020.             "NAME": "FreeSearchPal",
  7021.             "URL": " http://www.freesearchpal.com/toolbar.html ",
  7022.             "modified": 0
  7023.         },
  7024.         {
  7025.             "CLSID": "{E24AD748-155E-4254-B674-4EDF86E7E1DF}",
  7026.             "RISK": "none",
  7027.             "FILES": " POP-UP~1.DLL",
  7028.             "NAME": "Acronis Privacy Expert Suite",
  7029.             "modified": 0
  7030.         },
  7031.         {
  7032.             "CLSID": "{E26FDEC1-053B-11D6-B969-CEEBA9E95046}",
  7033.             "RISK": "none",
  7034.             "FILES": " Ieband3.dll",
  7035.             "NAME": "FirstStop WebSearch",
  7036.             "URL": " http://www.firststopwebsearch.com/ ",
  7037.             "modified": 0
  7038.         },
  7039.         {
  7040.             "CLSID": "{E2B1672A-DA31-4F7D-A2BF-C18C50BF8F6F}",
  7041.             "RISK": "high",
  7042.             "FILES": " Searchbosstoolbar.dll",
  7043.             "NAME": "SearchBoss toolbar",
  7044.             "URL": " http://www.searchboss.com/tools/searchbar/  ",
  7045.             "modified": 0
  7046.         },
  7047.         {
  7048.             "CLSID": "{E2DDF680-9905-4dee-8C64-0A5DE7FE133C}",
  7049.             "RISK": "high",
  7050.             "FILES": " mssearch.dll",
  7051.             "NAME": "CoolWebSearch parasite variant",
  7052.             "modified": 0
  7053.         },
  7054.         {
  7055.             "CLSID": "{E3215F20-3212-11D6-9F8B-00D0B743919D}",
  7056.             "RISK": "none",
  7057.             "FILES": " StopzillaBHO.dll, SZIEBHO.dll ",
  7058.             "NAME": "StopZilla",
  7059.             "URL": " http://www.stopzilla.com/site/ ",
  7060.             "modified": 0
  7061.         },
  7062.         {
  7063.             "CLSID": "{E3EEBBE8-9CAB-4C76-B26A-747E25EBB4C6}",
  7064.             "RISK": "high",
  7065.             "FILES": " coolwebsearch-info.dll, COOLWE~1.DLL",
  7066.             "NAME": "CoolWebSearch parasite variant",
  7067.             "modified": 0
  7068.         },
  7069.         {
  7070.             "CLSID": "{E479EDE1-923E-11D3-B82B-00E09871521B}",
  7071.             "RISK": "none",
  7072.             "FILES": " CompassIE.dll, CmpsIE.dll",
  7073.             "NAME": "Compass",
  7074.             "URL": " http://www.softgauge.com/compass/ ",
  7075.             "modified": 0
  7076.         },
  7077.         {
  7078.             "CLSID": "{E539DEA3-BA67-4F1F-A897-5F2F4F29A063}",
  7079.             "RISK": "high",
  7080.             "FILES": " winenc32.dll",
  7081.             "NAME": "i-Lookup/GlobalWebSearch",
  7082.             "URL": " <a href=\\\"http://www.doxdesk.com/parasite/ILookup.html\\\" target=\\\"_blank\\\">i-Lookup/GlobalWebSearch</a>",
  7083.             "modified": 0
  7084.         },
  7085.         {
  7086.             "CLSID": "{E5E4E352-6947-44EE-A420-DB84EFD3FE93}",
  7087.             "RISK": "high",
  7088.             "FILES": " ehelper.dll",
  7089.             "NAME": "CnsMin related",
  7090.             "URL": " http://www.doxdesk.com/parasite/CnsMin.html ",
  7091.             "modified": 0
  7092.         },
  7093.         {
  7094.             "CLSID": "{E626DA33-FCDD-4918-833D-FD39900B11F0}",
  7095.             "RISK": "none",
  7096.             "FILES": " IECompanion.dll",
  7097.             "NAME": "IECompanion",
  7098.             "URL": " http://www.bados.com/modules.php?name=Products&prod=IECompanion ",
  7099.             "modified": 0
  7100.         },
  7101.         {
  7102.             "CLSID": "{E6B64F67-B100-4636-8D51-D113E1F5FF93}",
  7103.             "RISK": "none",
  7104.             "FILES": " CSShell.dll",
  7105.             "NAME": "ContentSaver Offline Browser",
  7106.             "URL": " http://www.macropool.com/en/index.html ",
  7107.             "modified": 0
  7108.         },
  7109.         {
  7110.             "CLSID": "{E720B458-B65A-438C-9FF3-B1DF65D7DB3E}",
  7111.             "RISK": "high",
  7112.             "FILES": " LocatorS.dll",
  7113.             "NAME": "LocatorS toolbar",
  7114.             "modified": 0
  7115.         },
  7116.         {
  7117.             "CLSID": "{E720B458-B65A-438C-9FF3-B1DF65D7DB3F}",
  7118.             "RISK": "high",
  7119.             "FILES": " shdocvw.dll ",
  7120.             "NAME": "LocatorS toolbar",
  7121.             "modified": 0
  7122.         },
  7123.         {
  7124.             "CLSID": "{E75B287F-2D04-11D5-BBE0-0050047AA3D1}",
  7125.             "RISK": "none",
  7126.             "FILES": " AimAtSite.dll",
  7127.             "NAME": "AimAtSite Toolbar",
  7128.             "modified": 0
  7129.         },
  7130.         {
  7131.             "CLSID": "{E7AFFF2A-1B57-49C7-BF6B-E5123394C970}",
  7132.             "RISK": "high",
  7133.             "FILES": " webinfo.dll",
  7134.             "NAME": "CoolWebSearch parasite variant",
  7135.             "modified": 0
  7136.         },
  7137.         {
  7138.             "CLSID": "{E7DC02F7-A213-4866-B800-FDCB4555FB79}",
  7139.             "RISK": "none",
  7140.             "FILES": " BO.DLL",
  7141.             "NAME": "MECA instant messenger client",
  7142.             "URL": " http://www.meca.com/Default.htm ",
  7143.             "modified": 0
  7144.         },
  7145.         {
  7146.             "CLSID": "{E868656B-F0D3-4A61-8FE8-F47C90119E39}",
  7147.             "RISK": "medium",
  7148.             "FILES": " Meca Plugin.dll",
  7149.             "NAME": "Meca Messenger",
  7150.             "URL": " http://www.meca.com/Default.htm ",
  7151.             "modified": 0
  7152.         },
  7153.         {
  7154.             "CLSID": "{E8B4F3AA-9509-4081-9A85-914D5E9BEC81}",
  7155.             "RISK": "high",
  7156.             "FILES": " bpv1a.dll",
  7157.             "NAME": "Best Phrases adware",
  7158.             "modified": 0
  7159.         },
  7160.         {
  7161.             "CLSID": "{E8C0F153-B768-4e68-B14F-40F0E8531675}",
  7162.             "RISK": "none",
  7163.             "FILES": " BhoCiti.dll",
  7164.             "NAME": "Citibank Virtual Account software",
  7165.             "URL": " https://www.accountonline.com/CB/integrity/learn.jsp ",
  7166.             "modified": 0
  7167.         },
  7168.         {
  7169.             "CLSID": "{E9147A0A-A866-4214-B47C-DA821891240F}",
  7170.             "RISK": "high",
  7171.             "FILES": " ngsw31.dll",
  7172.             "NAME": "ESD Technologies/Adblaster adware",
  7173.             "modified": 0
  7174.         },
  7175.         {
  7176.             "CLSID": "{E915E62E-41DA-40D0-8106-3438B4D24394}",
  7177.             "RISK": "none",
  7178.             "FILES": " SurfBar.dll",
  7179.             "NAME": "WinSweep",
  7180.             "modified": 0
  7181.         },
  7182.         {
  7183.             "CLSID": "{E97DAE80-0305-427e-ABA1-BDD775EF53B0}",
  7184.             "RISK": "none",
  7185.             "FILES": " Ietb.dll",
  7186.             "NAME": "SearchSpot",
  7187.             "URL": " http://www.searchspot.com/toolbar.html ",
  7188.             "modified": 0
  7189.         },
  7190.         {
  7191.             "CLSID": "{EA4587EB-3106-448a-8B31-F1572E981765}",
  7192.             "RISK": "none",
  7193.             "FILES": " MYLOGO.DLL",
  7194.             "NAME": "EDENSOFT MYLOGO",
  7195.             "URL": " http://www.edensoft.com/mylogo/ ",
  7196.             "modified": 0
  7197.         },
  7198.         {
  7199.             "CLSID": "{EA7F9A52-0A05-11D2-98C5-00104B7229C2}",
  7200.             "RISK": "none",
  7201.             "FILES": " Waveie.dll",
  7202.             "NAME": "WebTV Wave Top",
  7203.             "URL": " http://www.aitech.com/support/specialtechnlgs.htm ",
  7204.             "modified": 0
  7205.         },
  7206.         {
  7207.             "CLSID": "{EAD0B31D-9DAE-42CE-9821-EF9794AEC515}",
  7208.             "RISK": "high",
  7209.             "FILES": " CGLBAR.DLL",
  7210.             "NAME": "CamGirlsLive Toolbar",
  7211.             "modified": 0
  7212.         },
  7213.         {
  7214.             "CLSID": "{EAE191BA-FB87-40CA-80D2-D639A2595150}",
  7215.             "RISK": "none",
  7216.             "FILES": " Iemdl.dll",
  7217.             "NAME": "IE Middle Clicker",
  7218.             "URL": " http://www.cs.huji.ac.il/~gadam/ ",
  7219.             "modified": 0
  7220.         },
  7221.         {
  7222.             "CLSID": "{EBB03E3E-020A-418D-B322-761B730CA860}",
  7223.             "RISK": "none",
  7224.             "FILES": " ANWBTOOLBAR.DLL",
  7225.             "NAME": "Dutch Autoclub",
  7226.             "URL": " <a href=\\\"http://route.anwb.nl/zoek_plattegrond.html\\\" target=\\\"_blank\\\">Dutch Autoclub</a>",
  7227.             "modified": 0
  7228.         },
  7229.         {
  7230.             "CLSID": "{EBBD88E5-C372-469D-B4C5-1FE00352AB9B}",
  7231.             "RISK": "high",
  7232.             "FILES": " ss32.dll",
  7233.             "NAME": "FavoriteMan/SpyAssault",
  7234.             "URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
  7235.             "modified": 0
  7236.         },
  7237.         {
  7238.             "CLSID": "{EBBFE27C-BDF0-11D2-BBE5-00609419F467}",
  7239.             "RISK": "high",
  7240.             "FILES": " amcis.dll",
  7241.             "NAME": "Aureate/Radiate",
  7242.             "URL": " http://www.cexx.org/aureate.htm ",
  7243.             "modified": 0
  7244.         },
  7245.         {
  7246.             "CLSID": "{EBCDDA60-2A68-11D3-8A43-0060083CFB9C}",
  7247.             "RISK": "medium",
  7248.             "FILES": " Nzdd.dll, Nzdd*dll (* = digit), Rdxph.dll, Sdph20.dll",
  7249.             "NAME": "Netzip",
  7250.             "URL": " Real Download Netscape Smart Download http://editor.actrix.co.nz/byarticle/spyw.htm ",
  7251.             "modified": 0
  7252.         },
  7253.         {
  7254.             "CLSID": "{EBDCEF51-9973-49E5-BBE8-5CC880CE2030}",
  7255.             "RISK": "none",
  7256.             "FILES": " ebh.dll",
  7257.             "NAME": "Web Highlighter",
  7258.             "URL": " http://www.pcmag.com/article2/04149311400.asp ",
  7259.             "modified": 0
  7260.         },
  7261.         {
  7262.             "CLSID": "{EC1EB3CD-9916-4869-9AAF-441BD28F462D}",
  7263.             "RISK": "none",
  7264.             "FILES": " adiefltr.dll",
  7265.             "NAME": "AdIEFiltr",
  7266.             "URL": " http://www.utils32.com/adiefiltr.htm ",
  7267.             "modified": 0
  7268.         },
  7269.         {
  7270.             "CLSID": "{EC2D89DE-6936-4CB3-A641-94DB2CAAF67F}",
  7271.             "RISK": "none",
  7272.             "FILES": " BndFltr.dll",
  7273.             "NAME": "AdIEFiltr",
  7274.             "URL": " http://www.utils32.com/adiefiltr.htm AdIEFiltr ",
  7275.             "modified": 0
  7276.         },
  7277.         {
  7278.             "CLSID": "{EC788B03-A743-4274-AC9E-DB4F2A03F515}",
  7279.             "RISK": "high",
  7280.             "FILES": " Wst.dll",
  7281.             "NAME": "SearchAndBrowse toolbar",
  7282.             "URL": " http://www.doxdesk.com/parasite/SearchAndBrowse.html ",
  7283.             "modified": 0
  7284.         },
  7285.         {
  7286.             "CLSID": "{ED24BB32-17E8-422E-993F-159800A392E7}",
  7287.             "RISK": "none",
  7288.             "FILES": " MapStanIETB.dll",
  7289.             "NAME": "MapStan toolbar",
  7290.             "URL": " http://www.mapstan.net/en/predownload.jsp ",
  7291.             "modified": 0
  7292.         },
  7293.         {
  7294.             "CLSID": "{ED657BAF-1EE5-4A07-9D2E-6D0525EFC69B}",
  7295.             "RISK": "high",
  7296.             "FILES": " icoourlext.dll ",
  7297.             "NAME": "P2P Networking",
  7298.             "modified": 0
  7299.         },
  7300.         {
  7301.             "CLSID": "{ED8DB0FD-D8F4-4b2c-BB5B-9EF040FE104D}",
  7302.             "RISK": "high",
  7303.             "FILES": " Ucmie.dll",
  7304.             "NAME": "UCmore toolbar",
  7305.             "URL": " http://www.doxdesk.com/parasite/UCmore.html ",
  7306.             "modified": 0
  7307.         },
  7308.         {
  7309.             "CLSID": "{EDFB8B62-59EE-11d5-86C2-00E02975242F}",
  7310.             "RISK": "none",
  7311.             "FILES": " Ilorbar.dll",
  7312.             "NAME": "iLOR Toolbar",
  7313.             "URL": "   http://www.ilor.com/ILSToolBeta.htm  ",
  7314.             "modified": 0
  7315.         },
  7316.         {
  7317.             "CLSID": "{EE392A64-F30B-47C8-A363-CDA1CEC7DC1B}",
  7318.             "RISK": "high",
  7319.             "FILES": " Bar.dll",
  7320.             "NAME": "NewtonKnows search bar",
  7321.             "URL": " http://www.doxdesk.com/parasite/NewtonKnows.html ",
  7322.             "modified": 0
  7323.         },
  7324.         {
  7325.             "CLSID": "{EE392A64-F30B-47C8-A363-CDA1CEC7DC1B}",
  7326.             "RISK": "none",
  7327.             "FILES": " Widgetbar.dll",
  7328.             "NAME": "Widget Toolbar",
  7329.             "URL": " http://www.widgetsworld.co.uk/toolbar.php?PHPSESSID=191d3fbca9bc393f6fcad96959fd8729 ",
  7330.             "modified": 0
  7331.         },
  7332.         {
  7333.             "CLSID": "{EE9DD090-902D-4623-9360-FB7D8666202B}",
  7334.             "RISK": "none",
  7335.             "FILES": " AbsoluteBar.dll ",
  7336.             "NAME": "AbsoluteShield Internet Eraser",
  7337.             "modified": 0
  7338.         },
  7339.         {
  7340.             "CLSID": "{EF99BD32-C1FB-11D2-892F-0090271D4F88}",
  7341.             "RISK": "none",
  7342.             "FILES": " Ycomp*_*_*_*.dll",
  7343.             "NAME": "Yahoo Companion!",
  7344.             "URL": " http://companion.yahoo.com/ ",
  7345.             "modified": 0
  7346.         },
  7347.         {
  7348.             "CLSID": "{EFA24E62-B078-11d0-89E4-00C04FC9E26E}",
  7349.             "RISK": "none",
  7350.             "NAME": " IE History Band",
  7351.             "modified": 0
  7352.         },
  7353.         {
  7354.             "CLSID": "{EFD440C0-0943-11d3-9D65-00A0CC22CBC4}",
  7355.             "RISK": "none",
  7356.             "FILES": " Qphelper.dll",
  7357.             "NAME": "Compaq Quick Print Helper",
  7358.             "modified": 0
  7359.         },
  7360.         {
  7361.             "CLSID": "{EFD84954-6B46-42f4-81F3-94CE9A77052D}",
  7362.             "RISK": "high",
  7363.             "FILES": " lbbho.dll",
  7364.             "NAME": "RelatedLinks adware",
  7365.             "modified": 0
  7366.         },
  7367.         {
  7368.             "CLSID": "{F0DC0CFE-D11A-489B-84C0-63748AFAABF3}",
  7369.             "RISK": "high",
  7370.             "FILES": " Cmctl.dll",
  7371.             "NAME": "ZyncosMark",
  7372.             "URL": " http://www.tek-tips.com/gviewthread.cfm/lev2/8/lev3/57/pid/538/qid/221627 ",
  7373.             "modified": 0
  7374.         },
  7375.         {
  7376.             "CLSID": "{F101D8F9-9E90-4401-9FBF-9B515CAA045F}",
  7377.             "RISK": "none",
  7378.             "FILES": " SGengine.dll",
  7379.             "NAME": "SurfGhost",
  7380.             "URL": " http://products.enterpriseitplanet.com/security/security/1059245261.html ",
  7381.             "modified": 0
  7382.         },
  7383.         {
  7384.             "CLSID": "{F104576A-91BA-40AD-91DE-2C20801339AB}",
  7385.             "RISK": "medium",
  7386.             "FILES": " Keywords001.dll",
  7387.             "NAME": "KazaaMate",
  7388.             "modified": 0
  7389.         },
  7390.         {
  7391.             "CLSID": "{F14AABDD-0232-4e5a-9B52-4178AC0A62B5}",
  7392.             "RISK": "none",
  7393.             "FILES": " adsubtb.dll",
  7394.             "NAME": "AdSubtract",
  7395.             "URL": " <a href=\\\"http://www.adsubtract.com/index.html\\\" target=\\\"_blank\\\">AdSubtract</a>",
  7396.             "modified": 0
  7397.         },
  7398.         {
  7399.             "CLSID": "{F16E9E5F-92DD-4000-8701-FBDD48F24B86}",
  7400.             "RISK": "none",
  7401.             "FILES": " Iebarget.dll",
  7402.             "NAME": "GameScanner",
  7403.             "URL": " http://www.gamescanner.com/iebar/  ",
  7404.             "modified": 0
  7405.         },
  7406.         {
  7407.             "CLSID": "{F16E9E5F-92DD-4000-8701-FBDD48F24B86}",
  7408.             "RISK": "none",
  7409.             "FILES": " Iebarget.dll",
  7410.             "NAME": "Semiseek toolbar",
  7411.             "URL": " http://www.semiseek.com/toolbar.htm ",
  7412.             "modified": 0
  7413.         },
  7414.         {
  7415.             "CLSID": "{F195A1A9-4033-4E5B-B85C-848C3E31A83A}",
  7416.             "RISK": "high",
  7417.             "FILES": " syslibie.dll",
  7418.             "NAME": "Unidentified adware",
  7419.             "modified": 0
  7420.         },
  7421.         {
  7422.             "CLSID": "{F1FABE79-25FC-46de-8C5A-2C6DB9D64333}",
  7423.             "RISK": "high",
  7424.             "FILES": " AlxTB1.dll, AlxTB2.dll",
  7425.             "NAME": "Alexa",
  7426.             "URL": " http://www.safersite.com/PestInfo/a/Alexa_Toolbar.asp ",
  7427.             "modified": 0
  7428.         },
  7429.         {
  7430.             "CLSID": "{F264E777-7AB7-4BEB-8A42-5C37C8F4B6B4}",
  7431.             "RISK": "none",
  7432.             "FILES": " Enotebar.dll",
  7433.             "NAME": "eNotes toolbar",
  7434.             "modified": 0
  7435.         },
  7436.         {
  7437.             "CLSID": "{F281FFC7-6C63-4bf9-83F2-AB7A6157B109}",
  7438.             "RISK": "high",
  7439.             "FILES": " kdpupd.dll",
  7440.             "NAME": "SafeguardProtect hijacker",
  7441.             "modified": 0
  7442.         },
  7443.         {
  7444.             "CLSID": "{F2863EDE-7980-443A-AEA2-0F46076D590F}",
  7445.             "RISK": "high",
  7446.             "FILES": " Wat.dll",
  7447.             "NAME": "Roings.com \\\"search enhancement\\\"",
  7448.             "modified": 0
  7449.         },
  7450.         {
  7451.             "CLSID": "{F2E259E8-0FC8-438C-A6E0-342DD80FA53E}",
  7452.             "RISK": "none",
  7453.             "FILES": " CopernicAgentExt.dll, COPERN~1.DLL",
  7454.             "NAME": "Copernic",
  7455.             "URL": " http://www.copernic.com/en/products/agent/index.html ",
  7456.             "modified": 0
  7457.         },
  7458.         {
  7459.             "CLSID": "{F325E940-45EE-11D7-A420-444553540000}",
  7460.             "RISK": "high",
  7461.             "FILES": " M030206POHS.DLL",
  7462.             "NAME": "WurldMedia",
  7463.             "URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
  7464.             "modified": 0
  7465.         },
  7466.         {
  7467.             "CLSID": "{F34EA099-67D1-40c7-97A0-74E4C663E8DC}",
  7468.             "RISK": "none",
  7469.             "FILES": " iResolve.dll",
  7470.             "NAME": "iResolve",
  7471.             "URL": " http://www.i-dns.net/support_download/downloads/iResolve/iResolve_faq.html ",
  7472.             "modified": 0
  7473.         },
  7474.         {
  7475.             "CLSID": "{F36C1198-FC6B-4012-9928-DFA76FB56CC3}",
  7476.             "RISK": "high",
  7477.             "FILES": " GAMhelper.dll",
  7478.             "NAME": "unknown hijacker",
  7479.             "URL": " produces popups and -unders",
  7480.             "modified": 0
  7481.         },
  7482.         {
  7483.             "CLSID": "{F4A27D22-E603-4B1B-B8D0-1CF7D57E56F2}",
  7484.             "RISK": "none",
  7485.             "FILES": " IEExt.dll",
  7486.             "NAME": "NetLeech",
  7487.             "modified": 0
  7488.         },
  7489.         {
  7490.             "CLSID": "{F4A645D0-D4D5-439E-9DBC-B31BBD9CB890}",
  7491.             "RISK": "high",
  7492.             "FILES": " BPV2s.dll",
  7493.             "NAME": "BestPhrases variant",
  7494.             "URL": " http://www.pestpatrol.com/PestInfo/b/bpv1a_dll.asp ",
  7495.             "modified": 0
  7496.         },
  7497.         {
  7498.             "CLSID": "{F50CE767-AE72-45EB-AECD-E8786C240373}",
  7499.             "RISK": "none",
  7500.             "FILES": " Petoolbar***.dll, * = a random digit)",
  7501.             "NAME": "Popup Eliminator",
  7502.             "URL": " http://www.popupeliminator.info/ ",
  7503.             "modified": 0
  7504.         },
  7505.         {
  7506.             "CLSID": "{F5528ECB-D64C-479D-AFEB-89C90FA191A3}",
  7507.             "RISK": "none",
  7508.             "FILES": " TOOLBAR.DLL",
  7509.             "NAME": "Pengs Toolbar",
  7510.             "URL": " http://www.pengs.com/free_toolbar.htm ",
  7511.             "modified": 0
  7512.         },
  7513.         {
  7514.             "CLSID": "{F5735C15-1FB2-41FE-BA12-242757E69DDE}",
  7515.             "RISK": "none",
  7516.             "FILES": " toolbar.dll",
  7517.             "NAME": "NetZero toolbar",
  7518.             "modified": 0
  7519.         },
  7520.         {
  7521.             "CLSID": "{F585D290-1BF4-480A-AEC2-4182593F1E32}",
  7522.             "RISK": "high",
  7523.             "FILES": " Webtool.dll",
  7524.             "NAME": "Netguarder Web Cleaner",
  7525.             "URL": " http://210.82.112.58/en/index.htm ",
  7526.             "modified": 0
  7527.         },
  7528.         {
  7529.             "CLSID": "{F757FBBF-10E5-4DDA-BBEA-2357E54BEA2B}",
  7530.             "RISK": "none",
  7531.             "FILES": " LLBHO3.dll",
  7532.             "NAME": "LiveLink Explorer",
  7533.             "URL": " http://www.opentext.net/livelink/ ",
  7534.             "modified": 0
  7535.         },
  7536.         {
  7537.             "CLSID": "{F760CB9E-C60F-4A89-890E-FAE8B849493E}",
  7538.             "RISK": "high",
  7539.             "FILES": " Madise.dll",
  7540.             "NAME": "MagicAds adware",
  7541.             "modified": 0
  7542.         },
  7543.         {
  7544.             "CLSID": "{F79AD27F-8140-4E33-8B1D-C4FC6B663CCA}",
  7545.             "RISK": "medium",
  7546.             "FILES": " CopernicMeta.dll",
  7547.             "NAME": "Copernic Meta toolbar",
  7548.             "modified": 0
  7549.         },
  7550.         {
  7551.             "CLSID": "{F7B040B5-307B-4FAC-BB93-556A08156BAC}",
  7552.             "RISK": "medium",
  7553.             "FILES": " Toolbar.dll",
  7554.             "NAME": "ACSearch toolbar",
  7555.             "modified": 0
  7556.         },
  7557.         {
  7558.             "CLSID": "{F7F808F0-6F7D-442C-93E3-4A4827C2E4C8}",
  7559.             "RISK": "high",
  7560.             "FILES": " opti130.dll, nem***.dll, (* = digit)",
  7561.             "NAME": "Dyfuca/Internet Optimizer",
  7562.             "URL": " http://www.doxdesk.com/parasite/InternetOptimizer.html ",
  7563.             "modified": 0
  7564.         },
  7565.         {
  7566.             "CLSID": "{F8A53FBE-5846-11D2-A022-006097D2400E}",
  7567.             "RISK": "none",
  7568.             "FILES": " Ielink.dll",
  7569.             "NAME": "Mindmaker",
  7570.             "URL": " http://www.mindmaker.com/ ",
  7571.             "modified": 0
  7572.         },
  7573.         {
  7574.             "CLSID": "{F8AC5CE3-4B50-49D6-B632-FAEA1734FD29}",
  7575.             "RISK": "medium",
  7576.             "FILES": " Ferretband.dll",
  7577.             "NAME": "WebFerret",
  7578.             "URL": " http://www.ferretsoft.com/learn.htm ",
  7579.             "modified": 0
  7580.         },
  7581.         {
  7582.             "CLSID": "{F9765480-72D1-11D4-A75A-004F49045A87}",
  7583.             "RISK": "high",
  7584.             "FILES": " eXactToolbar.dll, Exacttoolbar*****.dll, (* = random digit)",
  7585.             "NAME": "eXact Search Bar",
  7586.             "URL": " http://www.doxdesk.com/parasite/eXactSearch.html ",
  7587.             "modified": 0
  7588.         },
  7589.         {
  7590.             "CLSID": "{F998DBF2-AA30-4599-8901-490F433E2ABC}",
  7591.             "RISK": "none",
  7592.             "FILES": " zkstlbr.dll",
  7593.             "NAME": "Freedom WebSecure",
  7594.             "URL": " http://www.freedom.net/products/websecure/index.html ",
  7595.             "modified": 0
  7596.         },
  7597.         {
  7598.             "CLSID": "{F9B9480F-8BE3-4117-985D-350ACEF1897A}",
  7599.             "RISK": "none",
  7600.             "FILES": " KudoZnetBar.dll ",
  7601.             "NAME": "KudoZ.NET toolbar",
  7602.             "modified": 0
  7603.         },
  7604.         {
  7605.             "CLSID": "{FA79FA22-8DB3-43D1-997B-6DBFD8845569}",
  7606.             "RISK": "high",
  7607.             "FILES": " Myaccess.dll",
  7608.             "NAME": "Meridian popupper",
  7609.             "URL": " http://www.doxdesk.com/parasite/Meridian.html ",
  7610.             "modified": 0
  7611.         },
  7612.         {
  7613.             "CLSID": "{FA91B828-F937-4568-82C1-843627E63ED7}",
  7614.             "RISK": "none",
  7615.             "FILES": " BandObjs.dll",
  7616.             "NAME": "Zero Knowledge Freedom Popup Killer",
  7617.             "URL": " http://www.freedom.net/ ",
  7618.             "modified": 0
  7619.         },
  7620.         {
  7621.             "CLSID": "{FAC6E0E1-5D45-4907-BC00-302D702DCC73}",
  7622.             "RISK": "high",
  7623.             "FILES": " cpr.dll",
  7624.             "NAME": "AdRoar adware",
  7625.             "modified": 0
  7626.         },
  7627.         {
  7628.             "CLSID": "{FB2961FD-DD24-4F8A-8A92-6F9325FF6F11}",
  7629.             "RISK": "high",
  7630.             "FILES": " Toolbar.dll",
  7631.             "NAME": "Supaseek toolbar",
  7632.             "modified": 0
  7633.         },
  7634.         {
  7635.             "CLSID": "{FB986A68-EAE4-11D4-9BD1-0080C6F60B6A}",
  7636.             "RISK": "medium",
  7637.             "FILES": " CouponBar.dll",
  7638.             "NAME": "CouponBar",
  7639.             "modified": 0
  7640.         },
  7641.         {
  7642.             "CLSID": "{FBAA0B9E-A059-43E4-9699-76EB0AEB975B}",
  7643.             "RISK": "high",
  7644.             "FILES": " Gws.dll",
  7645.             "NAME": "i-lookup search bar",
  7646.             "URL": " http://www.doxdesk.com/parasite/ILookup.html ",
  7647.             "modified": 0
  7648.         },
  7649.         {
  7650.             "CLSID": "{FBED6A02-71FB-11D8-86B0-0002441A9695}",
  7651.             "RISK": "high",
  7652.             "FILES": " 5_0_1browserhelper5.dll",
  7653.             "NAME": "BlazeFind hijacker variant",
  7654.             "modified": 0
  7655.         },
  7656.         {
  7657.             "CLSID": "{FC4C5EAE-66EE-11D4-BC67-0000E8E582D2}",
  7658.             "RISK": "high",
  7659.             "FILES": " e2bho.dll",
  7660.             "NAME": "Hijacker",
  7661.             "URL": "  as yet unidentified",
  7662.             "modified": 0
  7663.         },
  7664.         {
  7665.             "CLSID": "{FCADDC14-BD46-408A-9842-CDBE1C6D37EB}",
  7666.             "RISK": "high",
  7667.             "FILES": " browserhelpere******.dll (* = random digit), Ms****.dll (* = random char), Tagger~*.dll",
  7668.             "NAME": "ClientMan",
  7669.             "URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
  7670.             "modified": 0
  7671.         },
  7672.         {
  7673.             "CLSID": "{FCADDC14-BD46-408A-9842-CDBE1C6D37EB}",
  7674.             "RISK": "none",
  7675.             "FILES": " adflr.dll",
  7676.             "NAME": "IE Doctor toolbar",
  7677.             "URL": " http://www.axesoft.com/iedr/ ",
  7678.             "modified": 0
  7679.         },
  7680.         {
  7681.             "CLSID": "{FD7D6851-616E-48DE-AF55-EE2E34F389B0}",
  7682.             "RISK": "high",
  7683.             "FILES": " SearchScoutToolbar.dll",
  7684.             "NAME": "SearchScout (Gator)",
  7685.             "URL": " http://www.doxdesk.com/parasite/Gator.html ",
  7686.             "modified": 0
  7687.         },
  7688.         {
  7689.             "CLSID": "{FD9BC004-8331-4457-B830-4759FF704C22}",
  7690.             "RISK": "high",
  7691.             "FILES": " Msiesh.dll",
  7692.             "NAME": "CoolWebSearch parasite variant",
  7693.             "modified": 0
  7694.         },
  7695.         {
  7696.             "CLSID": "{FDD3B846-8D59-4ffb-8758-209B6AD74ACC}",
  7697.             "RISK": "medium",
  7698.             "FILES": " mnyviewer.dll",
  7699.             "NAME": "Microsoft Money",
  7700.             "URL": " http://www.microsoft.com/money/default.asp ",
  7701.             "modified": 0
  7702.         },
  7703.         {
  7704.             "CLSID": "{FE6BC4EF-5676-484B-88AE-883323913256}",
  7705.             "RISK": "high",
  7706.             "FILES": " Csietb.dll",
  7707.             "NAME": "Comet Cursor",
  7708.             "URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
  7709.             "modified": 0
  7710.         },
  7711.         {
  7712.             "CLSID": "{FEFAFFDD-573B-4795-BDB7-85F2D68743D8}",
  7713.             "RISK": "medium",
  7714.             "FILES": " nHook10.dll",
  7715.             "NAME": "linked to www.netpia.com",
  7716.             "modified": 0
  7717.         },
  7718.         {
  7719.             "CLSID": "{FF1BF4C7-4E08-4A28-A43F-9D60A9F7A880}",
  7720.             "RISK": "high",
  7721.             "FILES": " Mshelper.dll",
  7722.             "NAME": "CoolWebSearch parasite variant",
  7723.             "modified": 0
  7724.         },
  7725.         {
  7726.             "CLSID": "{FF284F5C-7CF9-4682-8701-D467C1DBB99F}",
  7727.             "RISK": "unknown",
  7728.             "FILES": " prmtie.dll",
  7729.             "NAME": "Translator (unknown)",
  7730.             "modified": 0
  7731.         },
  7732.         {
  7733.             "CLSID": "{FF7FD490-34E7-4FA1-927A-F5799E6AAD7B}",
  7734.             "RISK": "high",
  7735.             "FILES": " win32.dll",
  7736.             "NAME": "Surferbar hijacker",
  7737.             "URL": " http://forums.spywareinfo.com/index.php?showtopic=10456 ",
  7738.             "modified": 0
  7739.         },
  7740.         {
  7741.             "CLSID": "{FF905E0C-CFE9-4A90-AFFF-C13AF5D908F0}",
  7742.             "RISK": "high",
  7743.             "FILES": " CasinoRewardsExplorerToolbar.dll",
  7744.             "NAME": "CasinoRewards software",
  7745.             "modified": 0
  7746.         },
  7747.         {
  7748.             "CLSID": "{FFCBEECE-FB0C-11D2-AB16-00104B9BBBD2}",
  7749.             "RISK": "none",
  7750.             "FILES": " Ahiehelp.Dll",
  7751.             "NAME": "Excite/@Home ISP proxy software",
  7752.             "modified": 0
  7753.         },
  7754.         {
  7755.             "CLSID": "{FFD2825E-0785-40C5-9A41-518F53A8261F}",
  7756.             "RISK": "high",
  7757.             "FILES": " SiteHlpr.dll",
  7758.             "NAME": "VX2 Variant",
  7759.             "URL": " http://www.doxdesk.com/parasite/Transponder.html ",
  7760.             "modified": 0
  7761.         },
  7762.         {
  7763.             "CLSID": "{FFFFFEF0-5B30-21D4-945D-000000000000}",
  7764.             "RISK": "none",
  7765.             "FILES": " SDIEInt.dll",
  7766.             "NAME": "Stardownloader",
  7767.             "URL": " http://www.stardownloader.com/index.php ",
  7768.             "modified": 0
  7769.         },
  7770.         {
  7771.             "CLSID": "{FFFFFFFF-FFFF-FFFF-FFFF-5F8507C5F4E9}",
  7772.             "RISK": "high",
  7773.             "FILES": " iempg.dll,  iempg2.dll",
  7774.             "NAME": "MPGcom toolbar",
  7775.             "modified": 0
  7776.         },
  7777.         {
  7778.             "CLSID": "{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}",
  7779.             "RISK": "none",
  7780.             "FILES": " AcroIEhelper.ocx, AcroIEhelper.dll",
  7781.             "NAME": "Adobe Acrobat reader",
  7782.             "URL": " http://www.adobe.com/products/acrobat/readstep2.html ",
  7783.             "modified": 0
  7784.         },
  7785.         {
  7786.             "CLSID": "{E5A1691B-D188-4419-AD02-90002030B8EE}",
  7787.             "RISK": "none",
  7788.             "FILES": "IEFlash.dll",
  7789.             "NAME": "FlashFXP Plugin",
  7790.             "modified": 0
  7791.         },
  7792.         {
  7793.             "CLSID": "{21FFB6C0-0DA1-11D5-A9D5-00500413153C}",
  7794.             "RISK": "high",
  7795.             "FILES": "gain.dll",
  7796.             "NAME": "GAIN adware",
  7797.             "modified": 0
  7798.         },
  7799.         {
  7800.             "CLSID": "{42132494-F48F-4187-ABC8-0F343AD2E465}",
  7801.             "RISK": "high",
  7802.             "FILES": "Pbshmd.dll",
  7803.             "NAME": "Pbar",
  7804.             "URL": "http://www.pbar.net",
  7805.             "modified": 0
  7806.         },
  7807.         {
  7808.             "CLSID": "{549B5CA7-4A86-11D7-A4DF-000874180BB3}",
  7809.             "RISK": "none",
  7810.             "NAME": "No name BHO",
  7811.             "modified": 0
  7812.         },
  7813.         {
  7814.             "CLSID": "{463DF89F-A163-4DF6-A25F-9E4126267F03}",
  7815.             "modified": 0
  7816.         },
  7817.         {
  7818.             "CLSID": "{4D568F0F-8AC9-40AB-88B7-415134C78777}",
  7819.             "RISK": "high",
  7820.             "FILES": "winb2s32.dll",
  7821.             "NAME": "Begin2Search bar, iLookup variant",
  7822.             "URL": "http://www.doxdesk.com/parasite/ILookup.html",
  7823.             "modified": 0
  7824.         },
  7825.         {
  7826.             "CLSID": "{E8EAEB34-F7B5-4C55-87FF-720FAF53D841}",
  7827.             "RISK": "high",
  7828.             "FILES": " midaddle.dll, *****.dll (* = random char/digit)",
  7829.             "NAME": "MidAddle adware",
  7830.             "URL": "http://www.adrants.com/2004/06/adspyre-launches-midaddle-ad-system.php",
  7831.             "modified": 0
  7832.         },
  7833.         {
  7834.             "CLSID": "{046D6EA4-15E3-4b27-8010-45BD78A9219E}",
  7835.             "RISK": "high",
  7836.             "FILES": "inetkw.dll",
  7837.             "NAME": "Actual Names (AdvSearch) Internet Keywords",
  7838.             "URL": "http://www.pestpatrol.com/pestinfo/a/actualnames.asp",
  7839.             "modified": 0
  7840.         },
  7841.         {
  7842.             "CLSID": "{01F44A8A-8C97-4325-A378-76E68DC4AB2E}",
  7843.             "RISK": "high",
  7844.             "FILES": "systb.dll",
  7845.             "NAME": "IEPlugin variant",
  7846.             "URL": "http://www.doxdesk.com/parasite/IEPlugin.html",
  7847.             "modified": 0
  7848.         },
  7849.         {
  7850.             "CLSID": "{00000000-0000-0000-BFA1-D7EE6696B865}",
  7851.             "RISK": "high",
  7852.             "FILES": "icdd7ee6.dll",
  7853.             "NAME": " LZIO Free Community adware",
  7854.             "modified": 0
  7855.         },
  7856.         {
  7857.             "CLSID": "{49E0E0F0-5C30-11D4-945D-000000000003}",
  7858.             "RISK": "none",
  7859.             "FILES": "popup.dll",
  7860.             "NAME": "Ashampoo WinOptimizer",
  7861.             "URL": "http://www.ashampoo.com/frontend/products/php/product.php?idstring=0106&session_langid=2",
  7862.             "modified": 0
  7863.         },
  7864.         {
  7865.             "CLSID": "{00320615-B6C2-40A6-8F99-F1C52D674FAD}",
  7866.             "RISK": "high",
  7867.             "FILES": "localNRD.dll",
  7868.             "NAME": "Transponder parasite variant",
  7869.             "URL": "http://www.doxdesk.com/parasite/Transponder.html",
  7870.             "modified": 0
  7871.         },
  7872.         {
  7873.             "CLSID": "{3EC8E271-FAB9-418a-8A8E-65AEB4029E64}",
  7874.             "RISK": "medium",
  7875.             "NAME": "VirtuMonde Adware",
  7876.             "modified": 0
  7877.         },
  7878.         {
  7879.             "CLSID": "{36B0A261-EA24-6BE5-6027-7FC4035DD69B}",
  7880.             "RISK": "high",
  7881.             "FILES": "sdkpj32.dll",
  7882.             "NAME": "TrojanDownloader.Win32.Agent.an",
  7883.             "modified": 0
  7884.         },
  7885.         {
  7886.             "CLSID": "{EC29DB06-7594-67B6-AD29-44125C744D4C}",
  7887.             "RISK": "none",
  7888.             "FILES": "winit.dll",
  7889.             "NAME": "WinIt",
  7890.             "modified": 0
  7891.         },
  7892.         {
  7893.             "CLSID": "{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}",
  7894.             "RISK": "none",
  7895.             "FILES": "msntb.dll",
  7896.             "NAME": "MSN Toolbar",
  7897.             "URL": "http://toolbar.msn.com/",
  7898.             "modified": 0
  7899.         },
  7900.         {
  7901.             "CLSID": "{9394EDE7-C8B5-483E-8773-474BF36AF6E4}",
  7902.             "RISK": "none",
  7903.             "FILES": "stmain.dll",
  7904.             "NAME": "MSN Toolbar",
  7905.             "URL": "http://toolbar.msn.com/",
  7906.             "modified": 0
  7907.         },
  7908.         {
  7909.             "CLSID": "{********-****-****-****-***********}2",
  7910.             "RISK": "high",
  7911.             "FILES": " WinNB42.dll, (random Class ID)",
  7912.             "NAME": "NetNucleus/Mirar webband",
  7913.             "modified": 0
  7914.         },
  7915.         {
  7916.             "CLSID": "{********-****-****-****-************}1",
  7917.             "RISK": "high",
  7918.             "FILES": " WinNB41.dll, (random Class ID)",
  7919.             "NAME": "NetNucleus/Mirar webband",
  7920.             "modified": 0
  7921.         },
  7922.         {
  7923.             "CLSID": "{********-****-****-****-************}0",
  7924.             "RISK": "high",
  7925.             "FILES": " SuperBar.dll , (random Class ID)",
  7926.             "NAME": "SuperBar",
  7927.             "URL": " http://www.doxdesk.com/parasite/SuperBar.html ",
  7928.             "modified": 0
  7929.         },
  7930.         {
  7931.             "CLSID": "{CF7C3CF0-4B15-11D1-ABED-709549C10000}",
  7932.             "RISK": "none",
  7933.             "FILES": "IEHelper.dll",
  7934.             "NAME": "Advanced System Optimizer",
  7935.             "URL": "http://www.systweak.com/",
  7936.             "modified": 0
  7937.         },
  7938.         {
  7939.             "CLSID": "{467FAEB2-5F5B-4c81-BAE0-2A4752CA7F4E}",
  7940.             "RISK": "high",
  7941.             "FILES": " (random chars/digits).dll",
  7942.             "NAME": "CoolWebSearch parasite variant",
  7943.             "URL": "http://www.wilderssecurity.com/showpost.php?p=229285&postcount=28",
  7944.             "modified": 0
  7945.         },
  7946.         {
  7947.             "CLSID": "{28CAEFF3-0F18-4036-B504-51D73BD81C3A}",
  7948.             "RISK": "high",
  7949.             "FILES": "Elitebar.dll, ELITEB~*.DLL (* = digit)",
  7950.             "NAME": "EliteBar, SearchMiracle",
  7951.             "modified": 0
  7952.         }
  7953.     ]
  7954. }