home
***
CD-ROM
|
disk
|
FTP
|
other
***
search
/
Chip 2005 April
/
CHIP_CD_2005-04.iso
/
software
/
superutil_hit
/
files
/
su.exe
/
{app}
/
bho.mdb
/
BHO.json
next >
Wrap
JavaScript Object Notation
|
2004-11-21
|
180KB
{
"schema": {
"CLSID": "Text (100)",
"RISK": "Text (100)",
"FILES": "Text (200)",
"NAME": "Text (100)",
"URL": "Text (200)",
"modified": "Long Integer",
"comments": "Text (255)"
},
"data": [
{
"CLSID": "{00000000-0000-0000-0000-000000000000}",
"RISK": "high",
"FILES": " CnbarIE.dll, Cnbabe.dll",
"NAME": "Commonname toolbar",
"URL": " http://www.doxdesk.com/parasite/CommonName.html ",
"modified": 0
},
{
"CLSID": "{00000000-0000-0000-0000-000000000001}",
"RISK": "high",
"FILES": " safesearch.dll",
"NAME": "AutoSearch",
"URL": " http://www.doxdesk.com/parasite/AutoSearch.html ",
"modified": 0
},
{
"CLSID": "{00000000-0000-0000-0000-000000000001}",
"RISK": "high",
"FILES": " MSXMLFILT.DLL ",
"NAME": "CWS hijacker",
"modified": 0
},
{
"CLSID": "{00000000-0000-0000-0000-000000000221}",
"RISK": "high",
"FILES": " CSIE.DLL",
"NAME": "IgetNet/ClearSearch",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/IGetNet.html\\\" target=\\\"_blank\\\">IgetNet/ClearSearch</a>",
"modified": 0
},
{
"CLSID": "{00000000-0000-0000-0000-000000000240}",
"RISK": "high",
"FILES": " IE_ClrSch.dll ",
"NAME": "IgetNet/ClearSearch",
"URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
"modified": 0
},
{
"CLSID": "{00000000-0000-5DFC-5652-1705043F6518}",
"RISK": "high",
"FILES": " audiosrv32.dll ",
"NAME": "\\\"TX 4\\\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0000-7EBF-57C6-0BAE047EA682}",
"RISK": "high",
"FILES": " autodisc32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0001-0345-2280-0287F27A63EE}",
"RISK": "high",
"FILES": " Browserad.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0001-1DBE-075A-39EC04BD88AF}",
"RISK": "high",
"FILES": " Avicap32.dll",
"NAME": "\\\"TX 4\\\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0001-F7A6-1F38-0204019E355E}",
"RISK": "high",
"FILES": " Asferror32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0002-0002-0000-000000000000}",
"RISK": "none",
"FILES": " siaiep.dll",
"NAME": "Steganos Internet Anonym 6",
"URL": " http://www.steganos.com/en/sia/ ",
"modified": 0
},
{
"CLSID": "{00000000-0002-53D4-0622-35EA0235778E}",
"RISK": "high",
"FILES": " Ati2dvaa32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0007-5041-4354-0020e48020af}",
"RISK": "none",
"FILES": " 12Popup.dll",
"NAME": "12Ghosts Popup Killer",
"URL": " http://12ghosts.com/ghosts/popup.htm ",
"modified": 0
},
{
"CLSID": "{00000000-0008-5041-4354-0020e48020af}",
"RISK": "none",
"FILES": " 12popup.dll",
"NAME": "12Ghosts Popup Killer",
"URL": " <a href=\\\"http://12ghosts.com/ghosts/popup.htm\\\" TARGET=\\\"_blank\\\">12Ghosts Popup Killer</a>",
"modified": 0
},
{
"CLSID": "{00000000-0008-D357-0798-004401965D4A}",
"RISK": "high",
"FILES": " apphelp32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0009-1C42-7D61-6CFF050894A7}",
"RISK": "high",
"FILES": " avisynthEx32.dll",
"NAME": "\\\"TX 4\\\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0015-BD9C-263A-493001BA0C6C}",
"RISK": "high",
"FILES": " asycfilt32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0033-C1AC-0E62-0C1F0537605D}",
"RISK": "high",
"FILES": " aviwrap32.dll",
"NAME": "\\\"TX 4\\\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-008C-1E65-6AA6-3A270279F027}",
"RISK": "high",
"FILES": " Ati2dvag32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-00FA-71ED-4ABA-348801BAA0A9}",
"RISK": "high",
"FILES": " Athprxy32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-0C95-B1F8-547A-405204D6961A}",
"RISK": "high",
"FILES": " avifile32.dll",
"NAME": "\"TX 4\" BrowserAd adware",
"modified": 0
},
{
"CLSID": "{00000000-5eb9-11d5-9d45-009027c14662}",
"RISK": "high",
"FILES": " ehelper.dll, VX2.dll",
"NAME": "VX2 Respondmiter",
"URL": " Blackstone Transponder http://www.doxdesk.com/parasite/Transponder.html ",
"modified": 0
},
{
"CLSID": "{00000000-623A-11D4-BCDB-005004131771}",
"RISK": "none",
"FILES": " Vgiehelper1-2-0-27.dll",
"NAME": "Videogate VG Companion",
"URL": " http://www.videogate.com/prod_overview.asp ",
"modified": 0
},
{
"CLSID": "{00000000-D9E3-4BC6-A0BD-3D0CA4BE5271}",
"RISK": "high",
"FILES": " Fhfmm.dll",
"NAME": "AdBreak",
"URL": " http://www.doxdesk.com/parasite/AdBreak.html ",
"modified": 0
},
{
"CLSID": "{0000001D-BA9B-11D2-BDF1-0090272A6D78}",
"RISK": "medium",
"FILES": " smbar.dll",
"NAME": "Surfmonkey",
"URL": " http://www.cexx.org/surfmonk.htm ",
"modified": 0
},
{
"CLSID": "{000000DA-0786-4633-87C6-1AA7A4429EF1}",
"RISK": "high",
"FILES": " emesx.dll",
"NAME": "FavoriteMan",
"URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
"modified": 0
},
{
"CLSID": "{000000F1-34E3-4633-87C6-1AA7A44296DA}",
"RISK": "high",
"FILES": " FOne.dll",
"NAME": "FavoriteMan/FOne",
"URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
"modified": 0
},
{
"CLSID": "{00000178-CD4A-447a-BCF9-6FD0096B5527}",
"RISK": "none",
"FILES": " P3PClient.dll, \\P3PCLI~1.DLL",
"NAME": "AT&T Privacy Bird P3P Client",
"URL": " http://www.privacybird.com/ ",
"modified": 0
},
{
"CLSID": "{00000185-B716-11D3-92F3-00D0B709A7D8}",
"RISK": "high",
"FILES": " BHO010~2.DLL",
"NAME": "InternetBillingSolution",
"modified": 0
},
{
"CLSID": "{00000185-C745-43D2-44F1-01A1C789C738}",
"RISK": "high",
"FILES": " BHO010~1 (dll)",
"NAME": "Smartbrowser",
"URL": " http://www.doxdesk.com/parasite/SmartBrowser.html ",
"modified": 0
},
{
"CLSID": "{0000026A-8230-4DD4-BE4F-6889D1E74167}",
"RISK": "high",
"FILES": " Tps108.dll",
"NAME": "Transponder",
"URL": " http://www.doxdesk.com/parasite/Transponder.html ",
"modified": 0
},
{
"CLSID": "{00000273-8230-4DD4-BE4F-6889D1E74167}",
"RISK": "high",
"FILES": " host.dll",
"NAME": "Transponder",
"URL": " http://www.doxdesk.com/parasite/Transponder.html ",
"modified": 0
},
{
"CLSID": "{00000285-B716-11D3-92F3-00D0B709A7D8}",
"RISK": "none",
"FILES": " iDcide.dll",
"NAME": "iDcide Privacy Companion",
"URL": " http://www.idcide.com/pages/per_intro.htm ",
"modified": 0
},
{
"CLSID": "{000004CC-E4FF-4F2C-BC30-DBEF0B983BC9}",
"RISK": "high",
"FILES": " Ipinsigt.dll",
"NAME": "IPInsight",
"URL": " http://www.doxdesk.com/parasite/IPInsight.html ",
"modified": 0
},
{
"CLSID": "{00000580-C637-11D5-831C-00105AD6ACF0}",
"RISK": "high",
"FILES": " Msview.dll",
"NAME": "VX2 Transponder variant",
"URL": " http://www.doxdesk.com/parasite/Transponder.html ",
"modified": 0
},
{
"CLSID": "{000006B1-19B5-414A-849F-2A3C64AE6939}",
"RISK": "high",
"FILES": " bi.dll",
"NAME": "VX2.aBetterInternet",
"URL": " http://www.doxdesk.com/parasite/Transponder.html ",
"modified": 0
},
{
"CLSID": "{00000762-3965-4A1A-98CE-3D4BF457D4C8}",
"RISK": "high",
"FILES": " sidesearch.dll, sidesearch****.dll ( * = digit)",
"NAME": "Lycos Sidesearch",
"URL": " http://install.sidesearch.lycos.com/install/default.asp ",
"modified": 0
},
{
"CLSID": "{00000EF1-0786-4633-87C6-1AA7A44296DA}",
"RISK": "high",
"FILES": " n3tpa1p.dll, Calsdr.dll, Gr0*.dll (* = digit), td1.dll, random file names",
"NAME": "FavoriteMan",
"URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
"modified": 0
},
{
"CLSID": "{00000EF1-34E3-4633-87C6-1AA7A44296DA}",
"RISK": "high",
"FILES": " F1.dll, mpz300.dll, ZZ.dll, ***.dll (random chars)",
"NAME": "FavoriteMan",
"URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
"modified": 0
},
{
"CLSID": "{000020DD-C72E-4113-AF77-DD56626C6C42}",
"RISK": "high",
"FILES": " twaintec.dll",
"NAME": "TwainTech adware",
"modified": 0
},
{
"CLSID": "{0000607D-D204-42C7-8E46-216055BF9918}",
"RISK": "high",
"FILES": " mxTarget.dll",
"NAME": "Twain-Tech",
"URL": " <a href=\\\"http://www.pestpatrol.com/PestInfo/t/twain-tech.asp\\\" target=\\\"_blank\\\">Twain-Tech</a>",
"modified": 0
},
{
"CLSID": "{0000CC75-ACF3-4cac-A0A9-DD3868E06852}",
"RISK": "medium",
"FILES": " Dapbho.dll",
"NAME": "DAP",
"URL": " http://www.speedbit.com/DefaultT.asp? ",
"modified": 0
},
{
"CLSID": "{00010a21-b924-4cd6-893c-eea1071ae8b3}",
"RISK": "high",
"FILES": " PCDBS.DLL",
"NAME": "AdsStore",
"modified": 0
},
{
"CLSID": "{00041A26-7033-432C-94C7-6371DE343822}",
"RISK": "high",
"FILES": " scbar.dll, winex.dll, se.dll",
"NAME": "SearchEnhancement hijacker",
"URL": " http://www.doxdesk.com/parasite/SCBar.html ",
"modified": 0
},
{
"CLSID": "{000E7270-CC7A-0786-8E7A-DA09B51938A6}",
"RISK": "high",
"FILES": " n3tpa1.dll, netpals.dll",
"NAME": "NetPal",
"URL": " http://www.doxdesk.com/parasite/NetPal.html ",
"modified": 0
},
{
"CLSID": "{00110011-4B0B-44D5-9718-90C88817369B}",
"RISK": "high",
"FILES": " NavExt.dll, sys_ext.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{0019C3E2-DD48-4A6D-AB2D-8D32436313D9}",
"RISK": "high",
"FILES": " oo4.dll, bsx5.dll",
"NAME": "BookedSpace",
"URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
"modified": 0
},
{
"CLSID": "{0019C3E2-DD48-4A6D-ABCD-8D32436313D9}",
"RISK": "high",
"FILES": " bxsx5.dll",
"NAME": "BookedSpace",
"modified": 0
},
{
"CLSID": "{0019C3E2-DD48-4A6D-ABCD-8D32436323D9}",
"RISK": "high",
"FILES": " bxxs5.dll",
"NAME": "BookedSpace",
"modified": 0
},
{
"CLSID": "{001DAE60-95C0-11d3-924E-009027950886}",
"RISK": "high",
"FILES": " Spotonbh.dll",
"NAME": "WebSearch",
"URL": " http://www.spywareguide.com/product_show.php?id=505 ",
"modified": 0
},
{
"CLSID": "{001F2470-5DF5-11d3-B991-00A0C9BB0874}",
"RISK": "high",
"FILES": " AtHocTBr.DLL",
"NAME": "AtHoc Toolbar",
"URL": " http://www.athoc.com/site/products/portalToolbar.asp ",
"modified": 0
},
{
"CLSID": "{001F2570-5DF5-11d3-B991-00A0C9BB0874}",
"RISK": "medium",
"FILES": " Ebayband.dll",
"NAME": "Ebay Toolbar",
"URL": " http://pages.ebay.com/ebay_toolbar/ ",
"modified": 0
},
{
"CLSID": "{004A5840-FF59-11d2-B50D-0090271D3FD4}",
"RISK": "none",
"FILES": " ?",
"NAME": "Yahoo Companion!",
"URL": " http://companion.yahoo.com/ ",
"modified": 0
},
{
"CLSID": "{004B23E0-1E63-4ED6-BCAC-922BA26CF096}",
"RISK": "none",
"FILES": " PBBHO.dll",
"NAME": "Wincognito popup blocker",
"modified": 0
},
{
"CLSID": "{0055C089-8582-441B-A0BF-17B458C2A3A8}",
"RISK": "none",
"FILES": " IDMIECC.dll",
"NAME": "Internet Download Manager",
"modified": 0
},
{
"CLSID": "{00673769-777F-4814-BE0F-74CBA1D823B8}",
"RISK": "high",
"FILES": " Iehook.dll",
"NAME": "Malware taking advantage of the ASN.1 exploit",
"modified": 0
},
{
"CLSID": "{0096CC0A-623C-4829-AD9C-19AF0DC9D8FE}",
"RISK": "medium",
"FILES": " Dapiebar.dll",
"NAME": "DAP",
"URL": " http://www.speedbit.com/DefaultT.asp? ",
"modified": 0
},
{
"CLSID": "{00A0A40C-F432-4C59-BA11-B25D142C7AB7}",
"RISK": "high",
"FILES": " 2IN***~1.DLL, (* = random char), mskceo.dll",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{00A6FAF1-072E-44cf-8957-5838F569A31D}",
"RISK": "medium",
"FILES": " MWSSRCAS.DLL",
"NAME": "MyWebSearch",
"URL": " http://www.doxdesk.com/parasite/MySearch.html ",
"modified": 0
},
{
"CLSID": "{00C6482D-C502-44C8-8409-FCE54AD9C208}",
"RISK": "none",
"FILES": " SnagItBHO.dll",
"NAME": "SnagIt",
"URL": " http://www.techsmith.com/products/snagit/default.asp ",
"modified": 0
},
{
"CLSID": "{00D6A7E7-4A97-456f-848A-3B75BF7554D7}",
"RISK": "high",
"FILES": " PerfectNavBHO.dll, PERFEC~1.DLL",
"NAME": "IncrediFind variant",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/KeenValue.html\\\">IncrediFind variant</a>",
"modified": 0
},
{
"CLSID": "{00F16DC8-1B2A-42F4-B18B-E21DA9D2D7FD}",
"RISK": "high",
"FILES": " 01A00.DLL",
"NAME": "SubSearch parasite variant",
"modified": 0
},
{
"CLSID": "{014DA6C1-189F-421a-88CD-07CFE51CFF10}",
"RISK": "high",
"FILES": " eXacttoolbar.dll, S4bar.dll",
"NAME": "ExactSearch or MySearch",
"URL": " http://www.doxdesk.com/parasite/eXactSearch.html http://doxdesk.com/parasite/MySearch.html ",
"modified": 0
},
{
"CLSID": "{014DA6C9-189F-421a-88CD-07CFE51CFF10}",
"RISK": "high",
"FILES": " S4bar.dll, Mybar.dll",
"NAME": "MySearch",
"URL": " http://doxdesk.com/parasite/MySearch.html ",
"modified": 0
},
{
"CLSID": "{01A7812B-59E8-4A4F-BFD6-EEE6D4CB6BA2}",
"RISK": "none",
"FILES": " Tiscali BBar.dll ",
"NAME": "Tiscali France",
"URL": " <a href=\\\"http://login.tiscali.fr/default.php\\\" target=\\\"_blank\\\">Tiscali France</a>",
"modified": 0
},
{
"CLSID": "{01C5BF6C-E699-4CD7-BEA1-786FA05C83AB}",
"RISK": "high",
"FILES": " AproposPlugin.dll",
"NAME": "PeopleOnPage/AproposMedia",
"URL": " http://www.doxdesk.com/parasite/AproposMedia.html ",
"modified": 0
},
{
"CLSID": "{01E04581-4EEE-11D0-BFE9-00AA005B4383}",
"RISK": "none",
"NAME": " Internet Explorer Address Bar",
"modified": 0
},
{
"CLSID": "{02336F51-24CA-4422-AB63-18841ADF35E6}",
"RISK": "none",
"FILES": " eCatbho.dll",
"NAME": "Iserv Accelerated Dialup",
"URL": " http://www.iserv.net/support/help_accel_info.shtml ",
"modified": 0
},
{
"CLSID": "{02478D28-C3F9-4efb-9B51-7695ECA05670}",
"RISK": "none",
"FILES": " Ycomp*_*_*_*.dll, Ycomp.dll",
"NAME": "Yahoo Companion!",
"URL": " http://companion.yahoo.com/ ",
"modified": 0
},
{
"CLSID": "{02478D38-C3F9-4efb-9B51-7695ECA05670}",
"RISK": "none",
"FILES": " Ycomp*_*_*_*.dll",
"NAME": "Yahoo Companion!",
"URL": " <a href=\\\"http://companion.yahoo.com/\\\" target=\\\"_blank\\\">Yahoo Companion!</a>",
"modified": 0
},
{
"CLSID": "{024DE5EB-3649-445E-8D57-C09A9A33D479}",
"RISK": "high",
"FILES": " phelper.dll",
"NAME": "Adlogix InPop",
"modified": 0
},
{
"CLSID": "{029BB53A-C312-4b09-9B4F-ED57AF027B28}",
"RISK": "high",
"FILES": " winhlp32.dll",
"NAME": "Lizard bar",
"modified": 0
},
{
"CLSID": "{029CA12C-89C1-46a7-A3C7-82F2F98635CB}",
"RISK": "medium",
"FILES": " bh******.dll , (* = random digit)",
"NAME": "Kontiki",
"URL": " http://www.extremetech.com/article2/0397336507300.asp ",
"modified": 0
},
{
"CLSID": "{02DCA195-602B-4B1F-83FF-381B7E804BDB}",
"RISK": "none",
"FILES": " Hdbho.dll",
"NAME": "HiDownload",
"URL": " http://www.hidownload.com/ ",
"modified": 0
},
{
"CLSID": "{0345B059-8731-42BC-B7B7-5121014B02C6}",
"RISK": "high",
"FILES": " ChangeURL_30.dll",
"NAME": "\"SiteHistory\" hijacker",
"URL": " hailing from www.muul.com",
"modified": 0
},
{
"CLSID": "{0352960F-47BE-11D5-AB93-00D0B760B4EB}",
"RISK": "high",
"FILES": " Htcheck2.dll",
"NAME": "TOPicks",
"URL": " http://www.doxdesk.com/parasite/TOPicks.html ",
"modified": 0
},
{
"CLSID": "{04047354-D353-11D2-B3EB-0060B03C5581}",
"RISK": "none",
"FILES": " Hpbrsn22.dll",
"NAME": "Grupo Financiero Banorte software",
"modified": 0
},
{
"CLSID": "{04079851-5845-4dea-848C-3ECD647AA554}",
"RISK": "medium",
"FILES": " MYSRCHAS.DLL",
"NAME": "MyWay Search Assistant",
"URL": " http://www.doxdesk.com/parasite/MySearch.html ",
"modified": 0
},
{
"CLSID": "{04164EC4-1E48-4279-818E-3721931E7636}",
"RISK": "none",
"FILES": " CleanBar.dll",
"NAME": "CleanMyPc",
"modified": 0
},
{
"CLSID": "{0421701D-CF13-4E70-ADF0-45A953E7CB8B}",
"RISK": "high",
"FILES": " RH.dll",
"NAME": "SmartPops",
"modified": 0
},
{
"CLSID": "{0428FFC7-1931-45b7-95CB-3CBB919777E1}",
"RISK": "high",
"FILES": " PerfectNavBHO.dll, PERFEC~1.DLL",
"NAME": "IncrediFind variant",
"URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
"modified": 0
},
{
"CLSID": "{0428FFC7-1931-45b7-95CB-3CBB919777E1}",
"RISK": "high",
"FILES": " winenc32.dll",
"NAME": "i-Lookup/GlobalWebSearch",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{04719991-296F-4958-AA0F-FA25FFA5008B}",
"RISK": "high",
"FILES": " X8bar.dll",
"NAME": "Excite Search bar",
"URL": " http://www.excite.com/ ",
"modified": 0
},
{
"CLSID": "{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}",
"RISK": "medium",
"FILES": " Mybar.dll",
"NAME": "My Way Speedbar",
"URL": " http://www.doxdesk.com/parasite/MySearch.html ",
"modified": 0
},
{
"CLSID": "{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}",
"RISK": "medium",
"FILES": " Mybar.dll",
"NAME": "MySearch",
"URL": " <a href=\\\"http://doxdesk.com/parasite/MySearch.html\\\" target=\\\"_blank\\\">MySearch</a>",
"modified": 0
},
{
"CLSID": "{0549E6CB-9985-42F6-8FD6-4EC017E6AAE1}",
"RISK": "none",
"FILES": " PopThisV2.dll, PopThis.dll",
"NAME": "Pop This!",
"URL": " http://www.mathies.com/popthis/ ",
"modified": 0
},
{
"CLSID": "{058FC709-D5CD-4A95-92DB-59E6488ECDA4}",
"RISK": "none",
"FILES": " Sabho.dll",
"NAME": "Bbclient",
"URL": " http://bb4.com/ ",
"modified": 0
},
{
"CLSID": "{059B2FC0-741D-40F8-AEFA-D2C919EB9217}",
"RISK": "none",
"FILES": " Guardbho.dll",
"NAME": "Warnet BHO guard",
"URL": " http://www.warnet.com/download.html ",
"modified": 0
},
{
"CLSID": "{05BBB56A-2A69-4A5C-BFDA-43295DD67434}",
"RISK": "high",
"FILES": " Winy.dll",
"NAME": "ShopForGood/Marketdart",
"URL": " http://www.kephyr.com/spywarescanner/library/shopforgood/index.phtml ",
"modified": 0
},
{
"CLSID": "{06DFEDAA-6196-11D5-BFC8-00508B4A487D}",
"RISK": "high",
"FILES": " 7Search.dll",
"NAME": "7FaSSt /7Search",
"URL": " http://www.doxdesk.com/parasite/7FaSSt.html ",
"modified": 0
},
{
"CLSID": "{07B18EA1-A523-4961-B6BB-170DE4475CCA}",
"RISK": "medium",
"FILES": " Mwsbar.dll",
"NAME": "MyWebSearch",
"URL": " http://www.doxdesk.com/parasite/MySearch.html ",
"modified": 0
},
{
"CLSID": "{07B18EA9-A523-4961-B6BB-170DE4475CCA}",
"RISK": "medium",
"FILES": " Mwsbar.dll",
"NAME": "MyWebSearch",
"modified": 0
},
{
"CLSID": "{08351226-6472-43BD-8A40-D9221FF1C4CE}",
"RISK": "medium",
"FILES": " SbCIe026.dll",
"NAME": "SideStep",
"URL": " http://www.doxdesk.com/parasite/SideStep.html ",
"modified": 0
},
{
"CLSID": "{08442457-929D-4522-AE24-9D3E4664A0C1}",
"RISK": "none",
"FILES": " IEWorkaround3.dll",
"NAME": "IE URL Spoofing patch",
"URL": " http://security.openwares.org/ ",
"modified": 0
},
{
"CLSID": "{086AE192-23A6-48D6-96EC-715F53797E85}",
"RISK": "high",
"FILES": " DReplace.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{086CEFD5-A88D-4981-8915-D51F04360ED1}",
"RISK": "high",
"FILES": " winalot32.dll",
"NAME": "traffichog hijacker",
"modified": 0
},
{
"CLSID": "{087173EF-9829-4F49-8340-A524177D3F60}",
"RISK": "high",
"FILES": " inetp60.dll",
"NAME": "BrowserAid/SearchandClick",
"modified": 0
},
{
"CLSID": "{08C63920-DC18-11D2-9E1E-00A0247061AB}",
"RISK": "medium",
"FILES": " Aphelper.dll",
"NAME": "AdBlock",
"modified": 0
},
{
"CLSID": "{08DBDE36-DF28-11D5-8CA5-0050DA44A764}",
"RISK": "high",
"FILES": " Msvri.dll",
"NAME": "Friends.fr. toolbar",
"modified": 0
},
{
"CLSID": "{08E1C8E1-E565-44fc-A766-C9539BB3ABB7}",
"RISK": "high",
"FILES": " I1srchas.dll",
"NAME": "iWon Search Assistant",
"URL": " http://www.doxdesk.com/parasite/Aornum.html ",
"modified": 0
},
{
"CLSID": "{08E74C67-99A6-45C7-94DA-A397A8FD8082}",
"RISK": "none",
"FILES": " PopupMgr_*.*.*.*.dll ( * = digit)",
"NAME": "Popup Manager",
"URL": " http://www.popupwindowsoftware.com/Popup Manager ",
"modified": 0
},
{
"CLSID": "{09549E9B-8BC0-40A4-B5D6-BD761338D631}",
"RISK": "medium",
"FILES": " _module_bann.dll",
"NAME": "Pop-Aid",
"URL": " http://www.pop-aid.com/tac.html ",
"modified": 0
},
{
"CLSID": "{0982868C-47F0-4EFB-A664-C7B0B1015808}",
"RISK": "high",
"FILES": " Newads~1.dll , ms**** (* = random char)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{09F0F280-FB9A-481B-B69A-CB00DC44D027}",
"RISK": "medium",
"FILES": " PopupJammer.dll, POPUPJ~1.DLL",
"NAME": "Advanced Searchbar",
"modified": 0
},
{
"CLSID": "{09F0F280-FB9A-481B-B69A-CB00DC44D027}",
"RISK": "medium",
"FILES": " POPUPJ~1.DLL",
"NAME": "Advanced Searchbar",
"modified": 0
},
{
"CLSID": "{0A1375E1-56C2-11D6-8E45-8933A0FB5235}",
"RISK": "none",
"FILES": " Alibabar.dll",
"NAME": "ALiBaBar toolbar",
"modified": 0
},
{
"CLSID": "{0A1A2A3A-4A5A-6A7A-8A9A-AABACADAEAFA}",
"RISK": "high",
"FILES": " ********.dll ( * = random char)",
"NAME": "Adware.IAGold",
"modified": 0
},
{
"CLSID": "{0A4DC360-26A5-4FC1-8FB2-ADD00738A99B}",
"RISK": "none",
"FILES": " SURFGH~1.DLL",
"NAME": "Surfghost",
"URL": " <a target=_top href=\"http://products.enterpriseitplanet.com/security/security/1059245261.html\">Surfghost</a>",
"modified": 0
},
{
"CLSID": "{0A5CF411-F0BF-4AF8-A2A4-8233F3109BED}",
"RISK": "high",
"FILES": " Stoolbar.dll",
"NAME": "HuntBar/Stoolbar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{0A68C5A2-64AE-4415-88A2-6542304A4745}",
"RISK": "high",
"FILES": " Msiets.dll",
"NAME": "HuntBar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{0A6A6F79-BBE3-4A8B-8A64-9D1D1100A347}",
"RISK": "none",
"FILES": " Netnose.dll",
"NAME": "NetNose toolbar",
"URL": " http://www.netnose.com/toolbar.htm ",
"modified": 0
},
{
"CLSID": "{0AAF602E-72A1-45FE-BAB1-06971E07EAA2}",
"RISK": "high",
"FILES": " Bmeb.dll",
"NAME": "i-lookup/Bmeb",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{0ADCDFE7-8490-406D-91BF-88F71FD7F8AE}",
"RISK": "none",
"FILES": " pwicc.dll",
"NAME": "Surf Pal",
"URL": " http://www.softdepia.com/surf_pal_download_116.html ",
"modified": 0
},
{
"CLSID": "{0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7}",
"RISK": "none",
"FILES": " NISShExt.dll",
"NAME": "NIS 2004",
"URL": " http://www.symantec.com/sabu/nis/nis_pe/ ",
"modified": 0
},
{
"CLSID": "{0BA1C6EB-D062-4E37-9DB5-B07743276324}",
"RISK": "high",
"FILES": " ms****.dll, dnsrep********, ( * = random char)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{0C9CBFE1-91CD-40C2-BB64-1EC84C4C46AF}",
"RISK": "high",
"FILES": " abeb.dll",
"NAME": "i-lookup/Abeb",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{0CF0B8EE-6596-11D5-A98E-0003470BB48E}",
"RISK": "none",
"FILES": " CChelper.dll",
"NAME": "Panicware Popup Stopper",
"URL": " http://www.panicware.com/ ",
"modified": 0
},
{
"CLSID": "{0D245396-8535-11D3-B3F9-00A0C9424626}",
"RISK": "none",
"FILES": " WebClip.dll",
"NAME": "PaperClip WebClip",
"URL": " http://www.paperclip.com/ ",
"modified": 0
},
{
"CLSID": "{0D7DC475-59EB-4781-985F-A6F5D4E2BC73}",
"RISK": "high",
"FILES": " LIE1D6FF.DLL, Iedcb1f5iedcb1f5.dll",
"NAME": "unidentified adware",
"modified": 0
},
{
"CLSID": "{0DDBB570-0396-44C9-986A-8F6F61A51C2F}",
"RISK": "high",
"FILES": " Msiefr40.dll",
"NAME": "BrowserAid/FeaturedResults",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2E0099}",
"RISK": "high",
"FILES": " Searchit.dll",
"NAME": "SearchIt Toolbar",
"modified": 0
},
{
"CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EEB4C}",
"RISK": "high",
"FILES": " awtoolb.dll",
"NAME": "AroundWeb toolbar",
"modified": 0
},
{
"CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
"RISK": "medium",
"FILES": " Eclickz.dll",
"NAME": "eClickz toolbar",
"URL": " http://www.eclickz.com/privacy.php ",
"modified": 0
},
{
"CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
"RISK": "none",
"FILES": " Nntoolbar.dll",
"NAME": "NordNet toolbar",
"URL": " http://www.teletrade.se/toolbar/ ",
"modified": 0
},
{
"CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
"RISK": "none",
"FILES": " idabar.dll",
"NAME": "Internet Download Accelerator",
"URL": " http://www.westbyte.com/ida/index.phtml?pa...p=1&lng=English ",
"modified": 0
},
{
"CLSID": "{0E1230F8-EA50-42A9-983C-D22ABC2EED3B}",
"RISK": "high",
"FILES": " ToolBand.dll",
"NAME": "Adult Search bar ASSbar",
"modified": 0
},
{
"CLSID": "{0E5CBF21-D15F-11D0-8301-00AA005B4383}",
"RISK": "none",
"NAME": " Internet Explorer Links Bar",
"modified": 0
},
{
"CLSID": "{0EEDB912-C5FA-486F-8334-57288578C627}",
"RISK": "medium",
"FILES": " RazaWebHook.dll",
"NAME": "Shareaza",
"URL": " http://www.shareaza.com/ ",
"modified": 0
},
{
"CLSID": "{0F660F64-F4C9-477F-8529-44181B717472}",
"RISK": "none",
"FILES": " Csmbho.Dll",
"NAME": "At&TWnclient",
"modified": 0
},
{
"CLSID": "{0FC817C2-3B45-11D4-8340-0050DA825906}",
"RISK": "high",
"FILES": " DeltaClick.dll",
"NAME": "Deltabar : Deltaclick",
"URL": " http://support.microsoft.com/?kbid=316770 ",
"modified": 0
},
{
"CLSID": "{0FFE2F08-3AC9-4A91-A61D-4FF24F91A561}",
"RISK": "none",
"FILES": " RM4IE.dll",
"NAME": "DigiMarc ImageBridge",
"URL": " <a href=\\\"http://www.digimarc.com/products/IMAGEBRIDGE/default.asp\\\" target=\\\"_blank\\\">DigiMarc ImageBridge</a>",
"modified": 0
},
{
"CLSID": "{10955232-B671-11D7-8066-0040F6F477E4}",
"RISK": "high",
"FILES": " whattn.dll",
"NAME": "Whazit",
"URL": " http://www.doxdesk.com/parasite/Whazit.html ",
"modified": 0
},
{
"CLSID": "{11359F4A-B191-42d7-905A-594F8CF0387B}",
"RISK": "none",
"FILES": " Lexbar.dll",
"NAME": "Lexico toolbar",
"URL": " http://dictionary.reference.com/tools/toolbar/ ",
"modified": 0
},
{
"CLSID": "{11904CE8-632A-4856-A7CC-00B33FE71BD8}",
"RISK": "high",
"FILES": " Spp3.dll",
"NAME": "Sexxxpassport.com browser plugin",
"modified": 0
},
{
"CLSID": "{11990E9F-2A4D-11D6-9507-02608CDD2842}",
"RISK": "high",
"FILES": " SearchSquire.dll",
"NAME": "SearchSquire",
"URL": " http://www.doxdesk.com/parasite/SearchSquire.html ",
"modified": 0
},
{
"CLSID": "{11F6B95F-0774-4B8D-8C9E-6B552CBCAD14}",
"RISK": "high",
"FILES": " waeb.dll",
"NAME": "I-lookup",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{1201333E-BAD9-481C-BCF5-6904498CF85B}",
"RISK": "medium",
"FILES": " IEPKbho.dll",
"NAME": "UNH Solutions",
"URL": " http://www.unhsolutions.net/ ",
"modified": 0
},
{
"CLSID": "{120FF052-1C61-4C14-8F54-BBBC4A988590}",
"RISK": "none",
"FILES": " Bxpbar.dll",
"NAME": "MolBiol.Net Toolbar",
"URL": " http://www.r9corporation.fsnet.co.uk/toolbar/ ",
"modified": 0
},
{
"CLSID": "{123249EB-F891-44C4-946F-450064F9080E}",
"RISK": "none",
"FILES": " IEDrBar.dll",
"NAME": "IE Doctor Toolbar",
"URL": " http://www.axesoft.com/iedr/ ",
"modified": 0
},
{
"CLSID": "{12BA043E-293E-4CE4-A8C7-8460934FE801}",
"RISK": "none",
"FILES": " IBBHO.dll",
"NAME": "IncrediBar",
"URL": " http://www.incredibar.com/home.asp ",
"modified": 0
},
{
"CLSID": "{12DF6E3E-6272-4AE8-880B-2158D60791C0}",
"RISK": "high",
"FILES": " WinPage.dll",
"NAME": "Winpage Blocker Startpage hijacker",
"modified": 0
},
{
"CLSID": "{136A9D1D-1F4B-43D4-8359-6F2382449255}",
"RISK": "high",
"FILES": " Superbar.dll",
"NAME": "SuperBar",
"URL": " http://www.doxdesk.com/parasite/SuperBar.html ",
"modified": 0
},
{
"CLSID": "{13707362-08A2-11D3-A26D-0060976E9E6A}",
"RISK": "medium",
"FILES": " Bizratebar.dll",
"NAME": "Bizrate toolbar",
"URL": " http://www.bizrate.com/bardownload/index.xpml ",
"modified": 0
},
{
"CLSID": "{139D88E5-C372-469D-B4C5-1FE00852AB9B}",
"RISK": "high",
"FILES": " ofrg.dll, favorite.dll",
"NAME": "FavoriteMan",
"URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
"modified": 0
},
{
"CLSID": "{13F537F0-AF09-11d6-9029-0002B31F9E59}",
"RISK": "none",
"FILES": " Ycomp*_*_*_*.dll",
"NAME": "Yahoo Companion!",
"URL": " http://companion.yahoo.com/ ",
"modified": 0
},
{
"CLSID": "{13F90341-AD79-4A9F-9B57-0234675670D6}",
"RISK": "high",
"FILES": " Ipsysdrv32.dll",
"NAME": "p0rn related",
"modified": 0
},
{
"CLSID": "{1402DF89-8043-44E9-AFE8-CB3DB644EF7D}",
"RISK": "none",
"FILES": " Flitterbug.dll",
"NAME": "Flitterbug Toolbar",
"URL": " http://www.pccrafter.com/community/flitterbugsearch.aspx ",
"modified": 0
},
{
"CLSID": "{14B3D246-6274-40B5-8D50-6C2ADE2AB29B}",
"RISK": "high",
"FILES": " Snhelper.dll",
"NAME": "ShopNavSearch/Srng",
"URL": " http://www.doxdesk.com/parasite/Srng.html ",
"modified": 0
},
{
"CLSID": "{150FA160-130D-451F-B863-B655061432BA}",
"RISK": "high",
"FILES": " mgs_32.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{157F70D2-49E8-11D3-B094-005004116944}",
"RISK": "none",
"FILES": " IEEventView.dll",
"NAME": "Altigen AltiWeb",
"modified": 0
},
{
"CLSID": "{15C9938F-CB96-496D-800A-B827F2E34EA1}",
"RISK": "none",
"FILES": " blspc.dll",
"NAME": "BellSouth Internet Services ISP software",
"modified": 0
},
{
"CLSID": "{16122F02-9713-11D3-9744-005004116944}",
"RISK": "none",
"FILES": " Dpiehook.dll",
"NAME": "DialPad Everywhere",
"URL": " http://dialpad.com/company/ ",
"modified": 0
},
{
"CLSID": "{1624F640-49AC-11D3-8ABD-00C04FA95EE0}",
"RISK": "none",
"FILES": " iFingerBHO.dll",
"NAME": "iFinger",
"URL": " http://www.ifinger.com/demo.asp?design=7 ",
"modified": 0
},
{
"CLSID": "{165EAF06-A068-4BE1-8418-D92B2A196878}",
"RISK": "none",
"FILES": " Goudengidsbar.dll",
"NAME": "Gouden Gids toolbar",
"URL": " http://www.goudengids.nl/static02/toolbar/info.html ",
"modified": 0
},
{
"CLSID": "{166348F1-2C41-4C9F-86BB-EB2B8ADE030C}",
"RISK": "high",
"FILES": " msvrfy******.dll, (* = random digits)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{16664845-0E00-11D2-8059-000000000000}",
"RISK": "none",
"FILES": " Catcher.dll",
"NAME": "ReGet",
"URL": " http://deluxe.reget.com/en/ ",
"modified": 0
},
{
"CLSID": "{1678F7E1-C422-11D0-AD7D-00400515CAAA}",
"RISK": "high",
"FILES": " comet.dll",
"NAME": "Comet Cursor",
"URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
"modified": 0
},
{
"CLSID": "{17456D4E-823D-9B68-283C-1A819CBBDD19}",
"RISK": "none",
"FILES": " 17456D~1.DLL",
"NAME": "TechBar2",
"URL": " http://www.windowsreinstall.com/sitestuff/shop/techbar.html ",
"modified": 0
},
{
"CLSID": "{17939A30-18E2-471E-9D3A-56DD725F1215}",
"RISK": "none",
"FILES": " Iebar.dll",
"NAME": "ReGet",
"URL": " http://deluxe.reget.com/en/ ",
"modified": 0
},
{
"CLSID": "{179E4B4A-76C3-4F65-BCED-C9FA1A28D2EF}",
"RISK": "high",
"FILES": " NN_Bar.dll, NN_Bar**.dll (* = random digit)",
"NAME": "NetNucleus/Mirar webband",
"modified": 0
},
{
"CLSID": "{17DA0C9E-4A27-4ac5-BB75-5D24B8CDB972}",
"RISK": "high",
"FILES": " Excel10.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{1808648B-3102-4293-8AD3-06AF71D3321B}",
"RISK": "none",
"FILES": " Bho.dll",
"NAME": "AppExpress",
"modified": 0
},
{
"CLSID": "{18B79968-1A76-4953-9EBB-B651407F8998}",
"RISK": "high",
"FILES": " windec32.dll",
"NAME": "I-Lookup",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{19A447BA-9C2E-4864-93F5-A0645229771E}",
"RISK": "high",
"FILES": " Sbus.dll",
"NAME": "i-lookup/Sbus",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{19E41A2D-BD9D-48bb-9576-27B2CF0877C0}",
"RISK": "high",
"FILES": " ZippyToolbar.dll",
"NAME": "ZippyLookup toolbar",
"modified": 0
},
{
"CLSID": "{1A214F62-47A7-4CA3-9D00-95A3965A8B4A}",
"RISK": "none",
"FILES": " AutoDisplay***.dll, (* = a random digit)",
"NAME": "Popup Eliminator",
"URL": " http://www.popupeliminator.info/ ",
"modified": 0
},
{
"CLSID": "{1A98BCA2-0BD1-47DE-9710-C7665F7F1FCB}",
"RISK": "high",
"FILES": " Iebrw.dll",
"NAME": "SearchEx",
"URL": " http://www.doxdesk.com/parasite/Searchex.html ",
"modified": 0
},
{
"CLSID": "{1B0E7716-898E-48cc-9690-4E338E8DE1D3}",
"RISK": "high",
"FILES": " Assist.dll",
"NAME": "CnsMin",
"modified": 0
},
{
"CLSID": "{1B13BF1B-A528-4CC4-B5BF-553CAA6487AC}",
"RISK": "high",
"FILES": " Sbus.dll",
"NAME": "i-lookup/Sbus",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{1B77D30A-81C9-497A-8647-142F7511B1FB}",
"RISK": "medium",
"FILES": " Ieguard.dll",
"NAME": "PAL PC Spy",
"modified": 0
},
{
"CLSID": "{1BC1FC4B-B0D2-4D8D-9307-2E40E2A8C257}",
"RISK": "high",
"FILES": " Hyperbar.dll",
"NAME": "StartNow/HyperBar",
"modified": 0
},
{
"CLSID": "{1BDD55B8-3985-4E59-B906-5E0AD56D6710}",
"RISK": "high",
"FILES": " WH*_*******.dll, (* =random char)",
"NAME": "Browserplugin.com malware",
"modified": 0
},
{
"CLSID": "{1C4DA27D-4D52-4465-A089-98E01BB725CA}",
"RISK": "high",
"FILES": " inetdctr.dll",
"NAME": "Adware",
"URL": " as yet unidentified",
"modified": 0
},
{
"CLSID": "{1C78AB3F-A857-482e-80C0-3A1E5238A565}",
"RISK": "high",
"FILES": " toolbar.dll, toolbar_.dll",
"NAME": "iSearch toolbar",
"modified": 0
},
{
"CLSID": "{1D62BD48-16F6-4004-A54A-3C41E4955A87}",
"RISK": "none",
"FILES": " BFTool_4.dll",
"NAME": "Betfair",
"URL": " <a target=_top href=\"http://www.betfair.com/\">Betfair</a>",
"modified": 0
},
{
"CLSID": "{1D870C86-AA3C-4451-81E4-71D480A1A652}",
"RISK": "high",
"FILES": " SbSrch_V22.dll",
"NAME": "SubSearch v22",
"URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
"modified": 0
},
{
"CLSID": "{1D9B10E0-E90C-11D7-A399-B7BAC8911A3F}",
"RISK": "medium",
"FILES": " Toolbar.dll",
"NAME": "Arrow Toolbar",
"URL": " <a href=\\\"http://www.rt-software.co.uk/\\\" target=\\\"_blank\\\">Arrow Toolbar</a>",
"modified": 0
},
{
"CLSID": "{1E1B2879-30C7-11D4-8DDF-525400E483E3}",
"RISK": "high",
"FILES": " ETop100.dll",
"NAME": "NJStar Asian Explorer",
"URL": " http://www.njstar.com/asianexplorer/ ",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FA-11D3-8D96-D7ACAC95951A}",
"RISK": "medium",
"FILES": " Web.dll",
"NAME": "Stealth Web Page Recorder",
"URL": " http://www.blazingtools.com/downloads.html#xppl ",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-000000000003}",
"RISK": "high",
"FILES": " SSocks5.dll",
"NAME": "Backdoor.Lixy.B",
"URL": " <a href=\\\"http://www.symantec.com/avcenter/venc/data/backdoor.lixy.b.html\\\" target=\\\"_blank\\\">Backdoor.Lixy.B</a>",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-000000000004}",
"RISK": "high",
"FILES": " Ssocks32.dll, SSocks5.dll",
"NAME": "Backdoor.Lixy.B",
"URL": " http://www.symantec.com/avcenter/venc/data/backdoor.lixy.b.html ",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-123457123457}",
"RISK": "high",
"FILES": " Explorer.dll",
"NAME": "Clitor - unspecified malware",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC31337F}",
"RISK": "high",
"FILES": " Mslink32.dll",
"NAME": "unidentified adware",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC95951A}",
"RISK": "high",
"FILES": " Lid.dll",
"NAME": "BackDoor Lixy",
"URL": " http://securityresponse.symantec.com/avcenter/venc/data/backdoor.lixy.html ",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC95951F}",
"RISK": "high",
"FILES": " CnbarIE.dll, HTMLedit.dll",
"NAME": "Commonname toolbar",
"URL": " http://www.doxdesk.com/parasite/CommonName.html ",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC95951F}",
"RISK": "high",
"FILES": " DNSErr.dll, Dnse.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-D7ACAC97972F}",
"RISK": "high",
"FILES": " Msudp.dll",
"NAME": "p0rn related",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D2-8D96-FFFFAC95951F}",
"RISK": "none",
"FILES": " mtwbho.dll",
"NAME": "Macro ToolsWorks",
"URL": " http://www.pitrinec.com/toolsworks.htm ",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D3-8D96-D7ACAC95951A}",
"RISK": "high",
"FILES": " bpkwb.dll, SYSTEMwb.dll, johnwb.dll",
"NAME": "Personal Antispy keylogger",
"URL": " http://www.botspot.com/Intelligent_Agent/2235.html ",
"modified": 0
},
{
"CLSID": "{1E1B2879-88FF-11D3-8D96-D7ACAC95951F}",
"RISK": "medium",
"FILES": " Web.dll",
"NAME": "Perfect Keylogger",
"modified": 0
},
{
"CLSID": "{1E6F1D6A-1F20-11D4-8859-00A0CCE26836}",
"RISK": "high",
"FILES": " SVAplayer.dll, SVAPLA~1.DLL",
"NAME": "QuickFlicks Streaming Player",
"URL": " http://www.pestpatrol.com/PestInfo/db/q/quickflicks_streaming_player.asp ",
"modified": 0
},
{
"CLSID": "{1f0c8547-2639-4c91-b8aa-c7eca24c3163}",
"RISK": "none",
"FILES": " IC3HLPR.DLL",
"NAME": "Aladdin Systems Internet Cleanup",
"URL": " http://www.aladdinsys.com/internetcleanup/ ",
"modified": 0
},
{
"CLSID": "{1F2E844B-8211-46ff-8262-772F03295CF4}",
"RISK": "none",
"FILES": " PopFiltr.dll",
"NAME": "Aladdin Systems Internet Cleanup",
"URL": " http://www.aladdinsys.com/internetcleanup/ ",
"modified": 0
},
{
"CLSID": "{1F326B8F-CE7F-4C98-96A1-AC7A2B61D742}",
"RISK": "none",
"FILES": " Groowetoolbar.dll",
"NAME": "Groowe Toolbar",
"URL": " http://www.groowe.com/ ",
"modified": 0
},
{
"CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFA2}",
"RISK": "high",
"FILES": " random four letter filename.dll",
"NAME": "ToolbarCC",
"URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
"modified": 0
},
{
"CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFA7}",
"RISK": "high",
"FILES": " win****.dll, (* = random character)",
"NAME": "ToolbarCC/Rnd",
"URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
"modified": 0
},
{
"CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFA8}",
"RISK": "high",
"FILES": " win****.dll (* = random character)",
"NAME": "ToolbarCC/Rnd",
"URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
"modified": 0
},
{
"CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFAF}",
"RISK": "high",
"FILES": " (Random file name).dll",
"NAME": "ToolbarCC/Rnd",
"URL": " http://www.doxdesk.com/parasite/ToolbarCC.html ",
"modified": 0
},
{
"CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB1}",
"RISK": "high",
"FILES": " MS****.dll (* = random character)",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{1F48AA48-C53A-4E21-85E7-AC7CC6B5FFB2}",
"RISK": "high",
"FILES": " MS****.dll (* = random character)",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{1F5D3D5F-5738-423C-A962-066EC1A6427F}",
"RISK": "none",
"FILES": " RmtAgent.DLL",
"NAME": "EZ Popup blocker",
"URL": " http://www.holovw.com/ezpopup/ezpopup.htm ",
"modified": 0
},
{
"CLSID": "{1FEA39D6-46B3-4F66-BC38-4839CFE198EA}",
"RISK": "none",
"FILES": " GeekSuperHeroSlapdown.dll",
"NAME": "Geek Superhero",
"modified": 0
},
{
"CLSID": "{2005F7BA-6189-4607-BF8B-667679251CC0}",
"RISK": "none",
"FILES": " Linkmailer.dll",
"NAME": "Linkmailer toolbar",
"URL": " http://www.linkmailer.com/ ",
"modified": 0
},
{
"CLSID": "{2038A287-4221-4F76-A7C0-ADDD77AFABB3}",
"RISK": "high",
"FILES": " abeb.dll",
"NAME": "i-lookup/Abeb",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{204F937E-519E-4597-96FA-8F1F59F3CB6D}",
"RISK": "high",
"FILES": " ctor.dll",
"NAME": "HotBar",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/HotBar.html\\\" target=\\\"_blank\\\">HotBar</a>",
"modified": 0
},
{
"CLSID": "{206E52E0-D52E-11D4-AD54-0000E86C26F6}",
"RISK": "none",
"FILES": " Fdiehlp.dll, fdcatch.dll",
"NAME": "Fresh Download",
"URL": " http://www.freshdevices.com/freshdown.html ",
"modified": 0
},
{
"CLSID": "{20E5DE3E-3D2C-4E4F-969E-6C3F00354BC7}",
"RISK": "none",
"FILES": " GLAd.dll",
"NAME": "GL-AD Popup Terminator",
"URL": " http://www.gleanersoft.com/ ",
"modified": 0
},
{
"CLSID": "{21301D69-B8F1-46AA-B0B5-09EE2285914C}",
"RISK": "high",
"FILES": " CustomToolbar.dll",
"NAME": "CustomToolbar",
"URL": " http://www.doxdesk.com/parasite/CustomToolbar.html ",
"modified": 0
},
{
"CLSID": "{21301D69-B8F1-46AA-B0B5-09EE2285914C}",
"RISK": "none",
"FILES": " CustomToolbar.dll",
"NAME": "KaxyToolbar",
"URL": " <a target=\"_blank\" href=\"http://www.kaxy.com/get_the_free_kaxy_toolbar.htm\">KaxyToolbar</a>",
"modified": 0
},
{
"CLSID": "{21C32A07-0176-4FFE-BCDA-65D4A24F4303}",
"RISK": "none",
"FILES": " Intellistopper.dll, INTELL~1.DLL",
"NAME": "Intellistopper Toolbar",
"URL": " http://smartstopper.com/ ",
"modified": 0
},
{
"CLSID": "{224530A0-C9CB-4AEE-9C0F-54AC1B533211}",
"RISK": "high",
"FILES": " eXactToolbar.dll, Exacttoolbar*****.dll, (* = random digit)",
"NAME": "Exact Searchbar",
"URL": " http://www.doxdesk.com/parasite/eXactSearch.html ",
"modified": 0
},
{
"CLSID": "{227B8AA8-DAF2-4892-BD1D-73F568BCB24E}",
"RISK": "none",
"FILES": " mcbrhlpr.dll",
"NAME": "McAfee`s Privacy Service",
"URL": " http://www.mcafee.com/myapps/mps/default.asp ",
"modified": 0
},
{
"CLSID": "{22941A26-7033-432C-94C7-6371DE343822}",
"RISK": "high",
"FILES": " Scbar.dll, WindowEnhancer.dll",
"NAME": "SearchEnhancement hijacker",
"URL": " http://groups.google.com/groups?q=searchenhancement&hl=en&lr=&ie=UTF-8&oe=UTF-8&selm=5fa201c33b6c%24abac7a20%243101280a%40phx.gbl&rnum=1 ",
"modified": 0
},
{
"CLSID": "{22998D24-B789-4CA2-A7FC-CD7CE7DEB14C}",
"RISK": "high",
"FILES": " seek99.dll",
"NAME": "seek99 Pay Per Click toolbar",
"modified": 0
},
{
"CLSID": "{22D003CE-6952-46C5-80B9-D19B479620AB}",
"RISK": "none",
"FILES": " Stumbleupon.dll, stumble.dll, STUMBL~1.DLL",
"NAME": "Stumbleupon toolbar",
"URL": " http://www.stumbleupon.com/ ",
"modified": 0
},
{
"CLSID": "{2318C2B1-4965-11D4-9B18-009027A5CD4F}",
"RISK": "none",
"FILES": " googletoolbar.dll, googletoolbar*.dll (* = digit), googlenav.dll, googlenav*.dll, googletoolbar_en_*.**-big.dll, googletoolbar_en_*.*.**-deleon.dll",
"NAME": "Google Toolbar",
"modified": 0
},
{
"CLSID": "{23BC1CCF-4BE7-497F-B154-6ADA68425FBB}",
"RISK": "high",
"FILES": " expext.dll",
"NAME": "Expext/MetaDirect hijacker",
"modified": 0
},
{
"CLSID": "{23DDAE8C-6A79-4d62-80AA-E95D89CB9811}",
"RISK": "high",
"FILES": " explbar.dll",
"NAME": "Pugi/SearchExplorer",
"URL": " http://www.doxdesk.com/parasite/Pugi.html ",
"modified": 0
},
{
"CLSID": "{243B17DE-77C7-46BF-B94B-0B5F309A0E64}",
"RISK": "medium",
"FILES": " mnyside.dll",
"NAME": "Microsoft Money",
"URL": " http://www.microsoft.com/money/default.asp ",
"modified": 0
},
{
"CLSID": "{248B131E-01EA-4587-8EFE-1D915E143D5E}",
"RISK": "none",
"FILES": " WackGet.dll",
"NAME": "WackGet",
"URL": " http://www.webattack.com/get/wackget.shtml ",
"modified": 0
},
{
"CLSID": "{24AC2D89-8566-4A52-850A-24FAF8DF57E0}",
"RISK": "none",
"FILES": " TRPageReaderBar_.dll",
"NAME": "IE Page-Reader Bar",
"URL": " http://www.text-reader.com/pagereaderbar/index.html ",
"modified": 0
},
{
"CLSID": "{25F7FA20-3FC3-11D7-B487-00D05990014C}",
"RISK": "high",
"FILES": " trackurl******.dll , (* = random digit)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{2645D297-DD4B-4DD3-BAB0-34D4BB8F7EE6}",
"RISK": "none",
"FILES": " Cpw.dll",
"NAME": "Mini Popup Killer",
"URL": " http://www.web-checker.com/ ",
"modified": 0
},
{
"CLSID": "{2662BDD7-05D6-408F-B241-FF98FACE6054}",
"RISK": "high",
"FILES": " Xtupdate.dll, BWUpdate.dll, U.dll",
"NAME": "Xupiter",
"URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
"modified": 0
},
{
"CLSID": "{267D5BD3-0DC2-4724-A196-7F4794FBB9EB}",
"RISK": "high",
"FILES": " outones.dll, newones.dll",
"NAME": "Whazit",
"URL": " http://www.doxdesk.com/parasite/Whazit.html ",
"modified": 0
},
{
"CLSID": "{269B6797-664E-48AA-B283-B012BDF6E525}",
"RISK": "high",
"FILES": " BHO.dll",
"NAME": "eUniverse/Keenvalue variant",
"modified": 0
},
{
"CLSID": "{26CA4BD4-E63A-423D-AE08-933C2F8F0977}",
"RISK": "none",
"FILES": " ANONIE~1.DLL",
"NAME": "GetAnonymous",
"URL": " http://www.getanonymous.com/getanonymous/ ",
"modified": 0
},
{
"CLSID": "{270B845C-712C-4773-BEE0-AE2D2001CD0F}",
"RISK": "high",
"FILES": " Surebar.dll",
"NAME": "EZCybersearch variant",
"URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
"modified": 0
},
{
"CLSID": "{2737A6C0-7E24-11D7-B299-00E0297E0844}",
"RISK": "high",
"FILES": " (varying file name)",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{27557cf1-a237-496d-8c8f-08f3844c6a8b}",
"RISK": "high",
"FILES": " WhistleHelper.dll",
"NAME": "WhistleSoftware",
"URL": " http://www.uslocalweather.com/privacy.asp ",
"modified": 0
},
{
"CLSID": "{27A5FF76-9919-492C-98E3-EDA3502FC829}",
"RISK": "high",
"FILES": " ml_32.dll",
"NAME": "MyPageFinder",
"URL": " http://www.doxdesk.com/parasite/MyPageFinder.html ",
"modified": 0
},
{
"CLSID": "{2843DAC1-05EF-11D2-95BA-0060083493D6}",
"RISK": "none",
"FILES": " web_ie.dll",
"NAME": "Dragon Speech Recognition software",
"URL": " http://www.voicerecognition.com/dragtool.html ",
"modified": 0
},
{
"CLSID": "{296AE49F-E195-4835-895C-91788B938DF8}",
"RISK": "none",
"FILES": " Ieiebho.dll",
"NAME": "Image Extractor",
"URL": " http://www.icegiant.com/ieie.shtml ",
"modified": 0
},
{
"CLSID": "{297caf50-e4f7-11d1-a380-00600896eccc}",
"RISK": "none",
"FILES": " QAPHLPR.DLL",
"NAME": "Segue",
"URL": " <a href=\\\"http://www.segue.com/html/s_services/training/s_sscp.asp\\\" target=\\\"_blank\\\">Segue</a>",
"modified": 0
},
{
"CLSID": "{29A38549-AF6F-11D4-89D6-BC1DFD912B00}",
"RISK": "high",
"FILES": " bho1.dll",
"NAME": "unidentified hijacker",
"modified": 0
},
{
"CLSID": "{29F7B7FA-ADC8-48ea-9E1C-EA87A05AE642}",
"RISK": "high",
"FILES": " sbb.dll",
"NAME": "Commander Toolbar",
"modified": 0
},
{
"CLSID": "{2A57772A-D963-4533-A999-A4D66B7EF424}",
"RISK": "high",
"FILES": " 00S00.dll, Mscheck.dll",
"NAME": "SubSearch parasite variant",
"modified": 0
},
{
"CLSID": "{2A646672-9C3A-4C28-9A7A-1FB0F63F28B6}",
"RISK": "none",
"FILES": " daiehlp.dll",
"NAME": "Internet Download Accelerator",
"URL": " http://www.westbyte.com/ida/index.phtml?page=information&tmp=1&lng=English ",
"modified": 0
},
{
"CLSID": "{2AF8CED6-5BD8-4310-A90C-9664EFB16B10}",
"RISK": "high",
"FILES": " coolbar.dll",
"NAME": "LookThru Cool Search Bar",
"URL": " stealth installed",
"modified": 0
},
{
"CLSID": "{2B3452C5-1B9A-440F-A203-F6ED0F64C895}",
"RISK": "high",
"FILES": " rem00001.dll",
"NAME": "BookedSpace/Remanent",
"URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
"modified": 0
},
{
"CLSID": "{2BC43670-C0BD-4794-BB11-F60F3E001DC5}",
"RISK": "high",
"FILES": " ddmp.dll",
"NAME": "Dynamic Desktop Media adware",
"modified": 0
},
{
"CLSID": "{2BDEC2E4-819F-11D5-8846-006097B89050}",
"RISK": "none",
"FILES": " Ilsenav.dll",
"NAME": "Ilse Navigator Toolbar",
"URL": " http://fun.ilse.nl/?page=navigator ",
"modified": 0
},
{
"CLSID": "{2CF0B992-5EEB-4143-99C0-5297EF71F443}",
"RISK": "high",
"FILES": " stlbdist.dll",
"NAME": "BrowserAid/Startium",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{2CF0B992-5EEB-4143-99C0-5297EF71F444}",
"RISK": "high",
"FILES": " stlbdist.dll",
"NAME": "BrowserAid/Startium",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{2CF0B992-5EEB-4143-99C0-5297EF71F44A}",
"RISK": "high",
"FILES": " stlbad123.dll, stlbupdt.dll",
"NAME": "BrowserAid/Startium",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{2CF0B992-5EEB-4143-99C2-5297EF71F44A}",
"RISK": "high",
"FILES": " stlbupdt.dll",
"NAME": "BrowserAid/Startium",
"modified": 0
},
{
"CLSID": "{2CF0B992-5EEB-4143-99C2-5297EF71F44B}",
"RISK": "high",
"FILES": " stlbupdt.dll",
"NAME": "BrowserAid/Startium",
"modified": 0
},
{
"CLSID": "{2D38A51A-23C9-48a1-A33C-48675AA2B494}",
"RISK": "high",
"FILES": " winres.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{2D556983-83D7-4630-9AA5-27C74CA27B79}",
"RISK": "high",
"FILES": " Drbr.dll",
"NAME": "i-lookup/Drbr",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{2D7CB618-CC1C-4126-A7E3-F5B12D3BCF71}",
"RISK": "high",
"FILES": " ngpw34.dll",
"NAME": "ESD Technologies/Adblaster adware",
"modified": 0
},
{
"CLSID": "{2E03C0FD-4C48-43A7-9A54-00240C70FF16}",
"RISK": "none",
"FILES": " BhoECart.dll",
"NAME": "e-Carte Bleue internet banking software",
"modified": 0
},
{
"CLSID": "{2E12B523-3D4C-4FAC-9B04-0376A8F5E879}",
"RISK": "high",
"FILES": " WindowsIE.dll",
"NAME": "InetSpeak",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{2E9CAFF6-30C7-4208-8807-E79D4EC6F806}",
"RISK": "high",
"FILES": " Submithook.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{2ECB7FB2-0333-416F-92FD-4904AD49252B}",
"RISK": "none",
"FILES": " 3Dnato~1.dll",
"NAME": "3dna toolbar",
"URL": " http://www.3dna.net/products/desktop.htm ",
"modified": 0
},
{
"CLSID": "{2EF37A01-884F-11D5-AC99-B112050ECB4F}",
"RISK": "none",
"FILES": " HTMLEdit.dll",
"NAME": "ZeroPopup",
"URL": " http://www.tooto.com/popup-killer/ ",
"modified": 0
},
{
"CLSID": "{2F24B54D-3A27-11D8-8169-00C02623048A}",
"RISK": "high",
"FILES": " Testadit3.dll",
"NAME": "ezSearching",
"URL": " <a target=_top href=\"http://doxdesk.com/parasite/ezSearching.html\">ezSearching</a>",
"modified": 0
},
{
"CLSID": "{2F2FBF0D-254F-11D5-B1E5-0050DAD7AF62}",
"RISK": "none",
"FILES": " Anonymizer.dll",
"NAME": "Anonymizer",
"URL": " http://www.anonymizer.com/surfing/ ",
"modified": 0
},
{
"CLSID": "{2F4F8CC3-FF89-11D1-9F63-0020182D7E20}",
"RISK": "none",
"FILES": " espie.dll",
"NAME": "eSafe",
"URL": " http://www.esafe.com/esafe/default.asp?cf=tl ",
"modified": 0
},
{
"CLSID": "{30192F8D-0958-44E6-B54D-331FD39AC959}",
"RISK": "high",
"FILES": " Toolband.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{305C398B-4278-4AD6-86D9-6A2774596BE3}",
"RISK": "none",
"FILES": " IEZ.dll",
"NAME": "Login Manager",
"URL": " http://www.browserplus.com/ ",
"modified": 0
},
{
"CLSID": "{30A56549-9D5B-4D34-AFA7-440A7F0538A9}",
"RISK": "high",
"FILES": " Opnste.dll",
"NAME": "OpenSite adware",
"modified": 0
},
{
"CLSID": "{312FA154-E1B7-4336-9833-EE6B38D58B56}",
"RISK": "high",
"FILES": " pbcommon.dll",
"NAME": "ProBot Activity Monitor",
"URL": " http://www.pestpatrol.com/PestInfo/P/ProBot_Activity_Monitor.asp ",
"modified": 0
},
{
"CLSID": "{316AEF8D-3C37-423E-9E6E-13820A9DC37A}",
"RISK": "medium",
"FILES": " IrlOnIE.dll",
"NAME": "HackerSmacker firewall",
"modified": 0
},
{
"CLSID": "{31995C64-CB4D-483E-82C2-CCFFE2F66CAB}",
"RISK": "high",
"FILES": " msvcn.dll",
"NAME": "SubSearch v22",
"URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
"modified": 0
},
{
"CLSID": "{319A68DB-06D0-46DA-9F93-A810D5A70836}",
"RISK": "high",
"FILES": " Zipclix.dll",
"NAME": "Zipclix",
"URL": " http://www.doxdesk.com/parasite/Zipclix.html ",
"modified": 0
},
{
"CLSID": "{31FF080D-12A3-439A-A2EF-4BA95A3148E8}",
"RISK": "none",
"FILES": " msie2gr.dll",
"NAME": "GetRight",
"URL": " http://www.getright.com/ ",
"modified": 0
},
{
"CLSID": "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}",
"RISK": "none",
"FILES": " Toolband.dll",
"NAME": "Canon EasyWebPrint",
"URL": " http://www.canoneasywebprint.com/en/index.htm ",
"modified": 0
},
{
"CLSID": "{333F6B96-3992-4D58-A499-145A10FE48C3}",
"RISK": "none",
"FILES": " Bhossafe.dll",
"NAME": "MBNA ShopSafe",
"modified": 0
},
{
"CLSID": "{33414365-E6C7-460d-880A-A163BD69E84D}",
"RISK": "medium",
"FILES": " FujiFld.dll",
"NAME": "Via-Christi.org",
"modified": 0
},
{
"CLSID": "{337D0C1D-4053-4FAB-AF2B-45C2F7B0FAA6}",
"RISK": "high",
"FILES": " Browseraidtoolbar.dll",
"NAME": "Findit Quick BrowserAid",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{337D0C1D-4053-4FAB-AF2B-45C2F7B0FAA7}",
"RISK": "high",
"FILES": " Quicklaunchie.dll, Broweraidtoolbar.dll",
"NAME": "BrowserAid",
"modified": 0
},
{
"CLSID": "{3392BD0A-A851-4AA4-86E0-4651006F9EA8}",
"RISK": "medium",
"FILES": " agtbho.dll",
"NAME": "Atomica",
"URL": " http://www.atomica.com/index.html ",
"modified": 0
},
{
"CLSID": "{339BB23F-A864-48C0-A59F-29EA915965EC}",
"RISK": "high",
"FILES": " toolbar.dll",
"NAME": "Huntbar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{340166BC-786B-401F-96AC-7C8821EFA9CD}",
"RISK": "none",
"FILES": " MereSurferF.dll",
"NAME": "MereSurfer",
"URL": " <a href=\\\"http://www.meresoft.com/products/meresurfer/\\\" target=\\\"_blank\\\">MereSurfer</a>",
"modified": 0
},
{
"CLSID": "{3424643B-A93E-45BF-ACA9-AF8B3ACC7BF0}",
"RISK": "none",
"FILES": " spyhunter.dll, SPYHUN~2.DLL",
"NAME": "Internet Spy Hunter",
"URL": " http://www.tooto.com/spyhunter/ ",
"modified": 0
},
{
"CLSID": "{348FE907-249E-4C65-A838-F34A193FE1D1}",
"RISK": "none",
"FILES": " TaskBHO.dll",
"NAME": "WinTask",
"modified": 0
},
{
"CLSID": "{34D516EA-40E3-4E3B-8BA8-505112738ED5}",
"RISK": "high",
"FILES": " ctavp3.dll",
"NAME": "ezSearching",
"URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
"modified": 0
},
{
"CLSID": "{35CC7369-C6EB-4A64-AB05-44CF0B5087A0}",
"RISK": "high",
"FILES": " Chgrgs.dll",
"NAME": "i-Lookup/Chgrgs",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{35EB9C91-1CA6-11d5-8B2B-00C04F779127}",
"RISK": "medium",
"FILES": " VAIEHE~1.DLL",
"NAME": "Vital Agent IT",
"modified": 0
},
{
"CLSID": "{3611204F-4B3C-11D4-B416-E159A5067F41}",
"RISK": "medium",
"FILES": " TOMBAR.DLL",
"NAME": "from rusure.com",
"modified": 0
},
{
"CLSID": "{3643ABC2-21BF-46B9-B230-F247DB0C6FD6}",
"RISK": "high",
"FILES": " IeBHOs.dll",
"NAME": "E2Give",
"URL": " http://www.doxdesk.com/parasite/E2Give.html ",
"modified": 0
},
{
"CLSID": "{3643ABC2-21BF-46B9-B230-F247DB0C6FD6}",
"RISK": "none",
"FILES": " IeBHOs.dll",
"NAME": "Internet Explorer Popup Control",
"URL": " http://www.devhood.com/tools/tool_details.aspx?tool_id=268 ",
"modified": 0
},
{
"CLSID": "{3717DF55-0396-463d-98B7-647C7DC6898A}",
"RISK": "high",
"FILES": " Hithopper.dll",
"NAME": "HitHopper",
"URL": " http://www.hithopper.com/ ",
"modified": 0
},
{
"CLSID": "{3717DF55-0396-463d-98B7-647C7DC6898A}",
"RISK": "medium",
"FILES": " Salmon.dll",
"NAME": "SalmonAnglers toolbar",
"URL": " http://salmonanglers.com/toolbar/toolbar2.html ",
"modified": 0
},
{
"CLSID": "{371C6960-302C-45D0-9504-50B820247439}",
"RISK": "none",
"FILES": " Winie.dll",
"NAME": "WinGet",
"URL": " http://www.nicksoft.com/ ",
"modified": 0
},
{
"CLSID": "{3750BFA3-1392-4AF3-AF86-9D2D4776E5A4}",
"RISK": "high",
"FILES": " potd.dll, sec.dll",
"NAME": "Burnaby Module >e-card_viewer",
"URL": " http://www.symantec.com/avcenter/venc/data/ortyc.trojan.html ",
"modified": 0
},
{
"CLSID": "{3789CBF0-C4CA-4e98-B93B-22ACF0587FBA}",
"RISK": "high",
"FILES": " qi32.dll",
"NAME": "Pugi/Qidion",
"URL": " <a href=http://www.doxdesk.com/parasite/Pugi.html\" TARGET=\"_blank\">Pugi/Qidion</a>",
"modified": 0
},
{
"CLSID": "{37C8204D-97C3-4127-BB28-1BFF3FA2F7DA}",
"RISK": "none",
"FILES": " PnIE.dll",
"NAME": "GuardIE",
"URL": " http://www.downloadatoz.com/guardie/ ",
"modified": 0
},
{
"CLSID": "{382AA497-20D7-4EBB-A188-74660465940D}",
"RISK": "high",
"FILES": " Drbr.dll",
"NAME": "i-lookup/Drbr",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{387EDF53-1CF2-4523-BC2F-13462651BE8C}",
"RISK": "none",
"FILES": " Bhocitus.dll",
"NAME": "Citibank Virtual Account software",
"URL": " <a href=\\\"https://www.accountonline.com/CB/integrity/learn.jsp\\\" TARGET=\\\"_blank\\\">Citibank Virtual Account software</a>",
"modified": 0
},
{
"CLSID": "{388D7EBB-CBB9-4126-8DB2-86DC6863A206}",
"RISK": "high",
"FILES": " iexplorr11.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{38AAF321-C5B4-11D1-B75E-400000000000}",
"RISK": "none",
"FILES": " REGET.DLL",
"NAME": "Reget Deluxe",
"URL": " http://deluxe.reget.com/en/ ",
"modified": 0
},
{
"CLSID": "{38D2A281-0444-433C-9ED6-A2851795F32A}",
"RISK": "none",
"FILES": " TRReaderBar_.dll",
"NAME": "Cosmo Popup",
"URL": " http://popbegone.askcosmo.com/ ",
"modified": 0
},
{
"CLSID": "{392BE62B-E7DE-430A-8859-0AFE677DE6E1}",
"RISK": "high",
"FILES": " bs2.dll",
"NAME": "BookedSpace - Remanent",
"URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
"modified": 0
},
{
"CLSID": "{397D7D63-816E-4ECF-8761-775C932C5CF1}",
"RISK": "high",
"FILES": " iDonate.dll",
"NAME": "Amazon related?",
"modified": 0
},
{
"CLSID": "{39AF31DD-EAFC-45EA-A56C-385B52E25CC0}",
"RISK": "high",
"FILES": " iexplorr22.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{3A279869-C6B6-4410-A041-0435DE6AD916}",
"RISK": "high",
"FILES": " M030106SHOP.DLL",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{3A6514CD-A457-11D4-8AF3-000102686B79}",
"RISK": "none",
"FILES": " Webbug.dll",
"NAME": "Bugnosis",
"URL": " http://www.bugnosis.org/ ",
"modified": 0
},
{
"CLSID": "{3AA90BC2-58C0-4F4D-A87C-2C6F3D3CD5FE}",
"RISK": "high",
"FILES": " Minst.dll",
"NAME": "Wishbone Toolbar",
"URL": " http://www.wishbonemedia.com/products.html ",
"modified": 0
},
{
"CLSID": "{3C060EA2-E6A9-4E49-A530-D4657B8C449A}",
"RISK": "none",
"FILES": " pkR.dll",
"NAME": "Zero Knowledge Freedom",
"URL": " http://www.freedom.net/ ",
"modified": 0
},
{
"CLSID": "{3C6A1597-3058-481A-8884-684A01988815}",
"RISK": "none",
"FILES": " Linkmgr.dll",
"NAME": "iLOR ",
"URL": " http://www.ilor.com/searchblank.htm ",
"modified": 0
},
{
"CLSID": "{3CEFF6CD-6F08-4E4D-BCCD-FF7415288C3B}",
"RISK": "high",
"FILES": " Shdocvw.dll, do not delete the file itself, it`s a Windows system file!",
"NAME": "Alexa Toolbar",
"URL": " http://pages.alexa.com/prod_serv/quicktour_new.html ",
"modified": 0
},
{
"CLSID": "{3D2C1DA4-BCD3-4317-9548-2E08BD222FF0}",
"RISK": "none",
"FILES": " Popups~1.dll",
"NAME": "Popup Remover",
"modified": 0
},
{
"CLSID": "{3D898C55-74CC-4B7C-B5F1-45913F368388}",
"RISK": "medium",
"FILES": " amesp~1.DLL",
"NAME": "AdKiller",
"URL": " http://www.softcows.com/killer/ ",
"modified": 0
},
{
"CLSID": "{3DDF45E0-9271-11D5-B1C2-000255705902}",
"RISK": "none",
"FILES": " zksproxy.dll",
"NAME": "Freedom WebSecure",
"URL": " http://www.freedom.net/products/websecure/index.html ",
"modified": 0
},
{
"CLSID": "{3DE88907-3E38-11D4-BEB2-CBE76C0598DD}",
"RISK": "none",
"FILES": " Bandobject.dll",
"NAME": "PeoplePC ISP software",
"URL": " http://www.ispoffer.com/ppc_online.asp ",
"modified": 0
},
{
"CLSID": "{3DF73DF8-41E2-4fc2-8CBF-4B9407433755}",
"RISK": "high",
"FILES": " lxTB.dll ",
"NAME": "Alexa",
"URL": " http://www.safersite.com/PestInfo/a/Alexa_Toolbar.asp ",
"modified": 0
},
{
"CLSID": "{3F753E5A-DF80-4850-801C-35880F80756C}",
"RISK": "none",
"FILES": " VMarks.dll",
"NAME": "Visual Marks",
"URL": " http://www.6bytes.com/visualmarks.html ",
"modified": 0
},
{
"CLSID": "{3FF41DB4-33EA-4D77-9D24-180754FF76F2}",
"RISK": "none",
"FILES": " ADIEFLTR.DLL",
"NAME": "AdIEFiltr",
"URL": " http://www.utils32.com/adiefiltr.asp ",
"modified": 0
},
{
"CLSID": "{40AC4D2D-491D-11D4-AAF2-0008C75DCD2B}",
"RISK": "high",
"FILES": " Bpboh.dll, Mbho.dll",
"NAME": "WurldMedia/bpboh",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{40D61F04-59E4-4C8D-BF6E-697AB9C21F43}",
"RISK": "none",
"FILES": " ChessBar.dll",
"NAME": "Instant Chess",
"URL": " http://www.instantchess.com/?EXP=1&SN=uIKmSVlUf899VVfz ",
"modified": 0
},
{
"CLSID": "{4115122B-85FF-4DD3-9515-F075BEDE5EB5}",
"RISK": "none",
"FILES": " PBHelper.dll",
"NAME": "PopupBlock",
"URL": " http://www.popupblock.net/ ",
"modified": 0
},
{
"CLSID": "{4115122B-85FF-4DD3-9515-F075BEDE5EB5}",
"RISK": "none",
"FILES": " PBHelper.dll",
"NAME": "SlipStream Web Accelerator",
"URL": " <a href=\\\"http://www.slipstreamdata.com/sp.html\\\" target=\\\"_blank\\\">SlipStream Web Accelerator</a>",
"modified": 0
},
{
"CLSID": "{41353F8B-78CE-48A5-BE44-153ED293D192}",
"RISK": "none",
"FILES": " PopLib.dll",
"NAME": "Bayden PopupPopper",
"URL": " http://www.bayden.com/Popper/default.asp ",
"modified": 0
},
{
"CLSID": "{4178A354-348B-11D3-9AB2-00805F1A0ADB}",
"RISK": "medium",
"FILES": " Qrscript.dll",
"NAME": "Compaq related",
"modified": 0
},
{
"CLSID": "{4194307F-65BB-454A-81D4-9E8A9D7CBAEA}",
"RISK": "none",
"FILES": " Teomabab.dll",
"NAME": "Teoma search bar",
"URL": " http://sp.ask.com/docs/teoma/toolbar/ ",
"modified": 0
},
{
"CLSID": "{41C098D1-A36B-11d4-9F8C-00E07D02355A}",
"RISK": "none",
"FILES": " GEOSAP~1.DLL",
"NAME": "GeoSapoBar",
"URL": " <a target=_top href=\"http://geo.sapo.pt/asp/idconteudos.asp?idconteudos=21&Language=English\">GeoSapoBar</a>",
"modified": 0
},
{
"CLSID": "{4209B4C1-1295-4908-9312-A53C036EB3CD}",
"RISK": "high",
"FILES": " BHO.dll",
"NAME": "PopMonster SearchNav.com/PopNav foistware",
"modified": 0
},
{
"CLSID": "{423BD222-52BE-471A-BE01-75FCCEB3D48F}",
"RISK": "high",
"FILES": " winenc32.dll",
"NAME": "i-Lookup/GlobalWebSearch",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/ILookup.html\\\" target=\\\"_blank\\\">i-Lookup/GlobalWebSearch</a>",
"modified": 0
},
{
"CLSID": "{42A7CE31-CEE7-4CCE-A060-A44A7E52E062}",
"RISK": "none",
"FILES": " kie.dll",
"NAME": "Keyboard Express",
"URL": " <a HREF=\\\"http://www.keyboardexpress.com/keyexpdo.htm\\\" TARGET=\\\"_blank\\\">Keyboard Express</a>",
"modified": 0
},
{
"CLSID": "{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}",
"RISK": "none",
"FILES": " NavShExt.dll",
"NAME": "Norton Antivirus",
"URL": " http://www.symantec.com/nav/nav_9xnt/ ",
"modified": 0
},
{
"CLSID": "{437434D2-065E-499D-A337-59657DF3342F}",
"RISK": "none",
"FILES": " CTBand.dll",
"NAME": "PowerIE",
"URL": " http://www.powerie.com/ ",
"modified": 0
},
{
"CLSID": "{43872F3D-F7C8-4fa6-BE94-B3C263C1E2A9}",
"RISK": "none",
"FILES": " BHOIPAY.DLL",
"NAME": "Interpay",
"URL": " http://www.interpay.nl/english/content/dynamic.asp ",
"modified": 0
},
{
"CLSID": "{43D29D14-460E-4F3A-9037-E60F11EF12F0}",
"RISK": "medium",
"FILES": " Lightframe3iecom.dll",
"NAME": "Philips Lightframe3 Monitor related",
"modified": 0
},
{
"CLSID": "{43D9E6F0-1776-4897-AE14-ECEDECBAFEC0}",
"RISK": "none",
"FILES": " askbarAB.dll, askbarAC.dll, askbarAD.dll",
"NAME": "Ask Jeeves toolbar",
"URL": " http://sp.ask.com/docs/toolbar/ ",
"modified": 0
},
{
"CLSID": "{43FA5935-E36E-4937-8127-A90191B2EC68}",
"RISK": "high",
"FILES": " domain11.dll",
"NAME": "LoveTester scumware",
"URL": " <a href=\\\"http://spamwatch.codefish.net.au/modules.php?op=modload&name=News&file=index&catid=&topic=24\\\" target=\\\"_blank\\\">LoveTester scumware</a>",
"modified": 0
},
{
"CLSID": "{4401FDC3-7996-4774-8D2B-C1AE9CD6CC25}",
"RISK": "none",
"FILES": " fplaunch.dll",
"NAME": "E-book systems FlipAlbum",
"URL": " http://www.flipalbum.com/ ",
"modified": 0
},
{
"CLSID": "{442599A9-EB41-4F1F-B999-737BC587F314}",
"RISK": "none",
"FILES": " NAJDIS~1.DLL",
"NAME": "Najdi.si Toolbar",
"URL": " <a href=\\\"http://www.najdi.si/\\\" target=\\\"_blank\\\">Najdi.si Toolbar</a>",
"modified": 0
},
{
"CLSID": "{447160CD-ECF5-4EA2-8A8A-1F70CA363F85}",
"RISK": "high",
"FILES": " bundle********.dll, MS****.dll (* = random char)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{44A23DAB-8D31-43AE-9F68-5AC24CF7CE8C}",
"RISK": "high",
"FILES": " Msinfosys.dll",
"NAME": "Msinfosys/AutoSearch hijacker",
"URL": " http://www.doxdesk.com/parasite/AutoSearch.html ",
"modified": 0
},
{
"CLSID": "{44AF5221-A43E-224E-56BA-ABCD43C344D1}",
"RISK": "none",
"FILES": " Dboostie.dll",
"NAME": "WinBoost",
"URL": " http://www.magellass.com/ ",
"modified": 0
},
{
"CLSID": "{44BE0690-5429-47f0-85BB-3FFD8020233E}",
"RISK": "high",
"FILES": " Ucmtsaie.dll",
"NAME": "UCmore Search Accelerator",
"modified": 0
},
{
"CLSID": "{459CAF0F-CA9F-4d69-A1A9-B0699D07AB8A}",
"RISK": "none",
"FILES": " NUKERB~1.DLL",
"NAME": "AdNuker",
"URL": " http://www.adnuker.com/ ",
"modified": 0
},
{
"CLSID": "{45AD732C-2CE2-4666-B366-B2214AD57A49}",
"RISK": "none",
"FILES": " sbhelp.dll",
"NAME": "Desktop Sidebar",
"URL": " http://sidebar.tech-critic.com/ ",
"modified": 0
},
{
"CLSID": "{4647E382-520B-11D2-A0D0-004033D0645D}",
"RISK": "high",
"FILES": " mybands.dll",
"NAME": "Internet Marketing Toolbar Pro",
"URL": " http://www.ezimedia.com/ ",
"modified": 0
},
{
"CLSID": "{4647E382-520B-11D2-A0D0-004033D0645D}",
"RISK": "none",
"FILES": " DOCSShlToolBar.dll",
"NAME": "Hummingbird DM Extensions",
"modified": 0
},
{
"CLSID": "{46832FF5-95B5-4654-88F4-7F5F37AD1FC2}",
"RISK": "none",
"FILES": " WSO.dll",
"NAME": "Alladin eToken Web Sign On",
"modified": 0
},
{
"CLSID": "{46AE04C0-BCFA-4728-90E7-00EB4A8B3863}",
"RISK": "medium",
"FILES": " eBayband.dll",
"NAME": "Ebay Toolbar",
"URL": " http://pages.ebay.com/ebay_toolbar/ ",
"modified": 0
},
{
"CLSID": "{46B9D770-1B7D-45D1-81B4-AC07B2F127EF}",
"RISK": "none",
"FILES": " Flashbho.dll",
"NAME": "Macromedia Flash FlashSwitch",
"URL": " http://www.flashswitch.com/ ",
"modified": 0
},
{
"CLSID": "{4708D1EF-3800-4E4E-9948-360BA9164264}",
"RISK": "none",
"FILES": " unknown",
"NAME": "Wordz Toolbar",
"URL": " http://www.webattack.com/get/wordz.shtml ",
"modified": 0
},
{
"CLSID": "{474264BC-9571-47C1-85B9-780F756DC9CE}",
"RISK": "none",
"FILES": " BHOManager.dll",
"NAME": "Astra LoadTest",
"URL": " http://astratryandbuy.mercuryinteractive.com/cgi-bin/portal/trynbuy/alt.jsp?prod=8021 ",
"modified": 0
},
{
"CLSID": "{47833539-D0C5-4125-9FA8-0819E2EAAC93}",
"RISK": "none",
"FILES": " AcroIEFavClient.dll",
"NAME": "Adobe Acrobat",
"URL": " http://www.adobe.com/products/acrobatpro/main.html ",
"modified": 0
},
{
"CLSID": "{4845C240-1DFD-11D3-97DE-00104B873412}",
"RISK": "none",
"FILES": " Imarkup.ocx",
"NAME": "iMarkup",
"URL": " http://www.imarkup.com/ ",
"modified": 0
},
{
"CLSID": "{48BF2BC0-2945-11D8-8CAC-00080EC65465}",
"RISK": "none",
"FILES": " IR5V0_QCX.DLL",
"NAME": "Intel video driver",
"modified": 0
},
{
"CLSID": "{496756A6-05E2-4646-96B5-071EC0394E9C}",
"RISK": "medium",
"FILES": " sonywebtie.dll",
"NAME": "Sony related; Points tracker",
"modified": 0
},
{
"CLSID": "{4982D40A-C53B-4615-B15B-B5B5E98D167C}",
"RISK": "none",
"FILES": " toolbar.dll",
"NAME": "AOL toolbar",
"modified": 0
},
{
"CLSID": "{499DB658-1909-420B-931A-4A8CAEFD232F}",
"RISK": "high",
"FILES": " Drvman32.dll",
"NAME": "W32.Aspam.Trojan.B",
"URL": " http://securityresponse.symantec.com/avcenter/venc/data/w32.aspam.trojan.b.html ",
"modified": 0
},
{
"CLSID": "{49A69FA0-2678-45CD-A069-6ACC372B20F8}",
"RISK": "none",
"FILES": " ?",
"NAME": "Download Mage",
"URL": " http://www.dlmage.com/product.htm ",
"modified": 0
},
{
"CLSID": "{49E0E0F0-5C30-11D4-945D-000000000000}",
"RISK": "none",
"FILES": " iesecpro.dll",
"NAME": "IE SEcurity Pro",
"URL": " http://www.softandco.com/redir.html?u=http://www.mybestsoft.com/iesec/index.html&pn=IE%20Security%20Pro ",
"modified": 0
},
{
"CLSID": "{49E0E0F0-5C30-11D4-945D-010002000012}",
"RISK": "none",
"FILES": " Ccpopb~1.dll",
"NAME": "Coffeecup Popup Blocker",
"URL": " http://www.coffeecup.com/popup-blocker/ ",
"modified": 0
},
{
"CLSID": "{49F2248D-1734-4B0F-A7B8-542E526EE07C}",
"RISK": "high",
"FILES": " autosearch.dll",
"NAME": "YellowPages adware",
"modified": 0
},
{
"CLSID": "{4A20B7AF-2835-47EF-BBBF-09CAF8AF2907}",
"RISK": "unknown",
"FILES": " ?",
"NAME": "Health and Fitness toolbar",
"modified": 0
},
{
"CLSID": "{4A2AACF3-ADF6-11D5-98A9-00E018981B9E}",
"RISK": "high",
"FILES": " newdotnet*_**.dll",
"NAME": "NewDotNet",
"URL": " http://www.doxdesk.com/parasite/NewDotNet.html ",
"modified": 0
},
{
"CLSID": "{4A368E80-174F-4872-96B5-0B27DDD11DB2}",
"RISK": "none",
"FILES": " dlprotect.dll",
"NAME": "SpywareGuard",
"URL": " http://www.wilderssecurity.net/spywareguard.html ",
"modified": 0
},
{
"CLSID": "{4A3A071E-F913-4eee-AE15-AEFFA16FB6BC}",
"RISK": "none",
"FILES": " PopUpWasher21.dll",
"NAME": "Pop-Up Washer",
"URL": " <a href=\\\"http://www.popup-killer.info/popup-washer/\\\" target=\\\"_blank\\\">Pop-Up Washer</a>",
"modified": 0
},
{
"CLSID": "{4B021269-DD24-48B2-96B4-DA121E9C0502}",
"RISK": "high",
"FILES": " ctpp*.dll, ctpp*_**.dll (* = random digit)",
"NAME": "ezSearching",
"URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
"modified": 0
},
{
"CLSID": "{4B2F5308-2CB0-40E2-8030-59936ED5D22C}",
"RISK": "high",
"FILES": " Hyperbar.dll",
"NAME": "StartNow/HyperBar",
"modified": 0
},
{
"CLSID": "{4B5F2E08-6F39-479A-B547-B2026E4C7EDF}",
"RISK": "none",
"FILES": " Pnel.Dll",
"NAME": "Earthlink Pop-Up blocker",
"URL": " http://www.earthlink.net/home/software/popupblocker/totalaccessdownload/ ",
"modified": 0
},
{
"CLSID": "{4B7B69EB-A00F-4FCD-B601-ACCBB86ED528}",
"RISK": "none",
"FILES": " POP-Stopper-IE.dll",
"NAME": "POP-Stopper-IE",
"modified": 0
},
{
"CLSID": "{4B8E6575-1013-45e9-BF77-9852ECEF07A9}",
"RISK": "high",
"FILES": " Tlsbar.dll",
"NAME": "TheLocalSearch SmartBar",
"URL": " http://www.thelocalsearch.com/ ",
"modified": 0
},
{
"CLSID": "{4BC3AC04-3E56-411D-B465-4FEA06654611}",
"RISK": "none",
"FILES": " ThinClientToolbar.dll",
"NAME": "Iserv Accelerated Dialup",
"URL": " http://www.iserv.net/support/help_accel_info.shtml ",
"modified": 0
},
{
"CLSID": "{4BCF322B-9621-4e90-9678-F1424EB7584E}",
"RISK": "high",
"FILES": " UDPMOD.DLL",
"NAME": "Dialer",
"modified": 0
},
{
"CLSID": "{4C12361F-3431-4A69-B0CA-CA788A8F7C12}",
"RISK": "none",
"FILES": " MereSurfInstall.dll",
"NAME": "MereSurfer",
"URL": " <a href=\\\"http://www.meresoft.com/products/meresurfer/\\\" target=\\\"_blank\\\">MereSurfer</a>",
"modified": 0
},
{
"CLSID": "{4C4871FD-30F6-4430-8834-BC75D58F1529}",
"RISK": "high",
"FILES": " Sbsrch_v2.dll",
"NAME": "SubSearch",
"URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
"modified": 0
},
{
"CLSID": "{4C4C942D-03B0-4041-94F2-73991832615F}",
"RISK": "medium",
"FILES": " ArtTodayToolbar.dll",
"NAME": "ArtToday",
"URL": " http://www.arttoday.com/toolbar/index.shtml ",
"modified": 0
},
{
"CLSID": "{4C7B6DE1-99A4-4CF1-8B44-68889900E1D0}",
"RISK": "none",
"FILES": " bpumToolBand.dll",
"NAME": "Telstra BigPond toolbar",
"URL": " http://www.bigpond.com/helpcentre/toolbar/ ",
"modified": 0
},
{
"CLSID": "{4CC0FAF8-6048-421C-9FE2-261A9ECE5F80}",
"RISK": "high",
"FILES": " Fastseekertoolbar.dll, FASTSE~2.DLL",
"NAME": "Fastseeker toolbar",
"modified": 0
},
{
"CLSID": "{4CEBBC6B-5CEE-4644-80CF-38980BAE93F6}",
"RISK": "high",
"FILES": " Iexplorr23.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{4D63CEBE-B169-426C-B092-C130C498B6E6}",
"RISK": "none",
"FILES": " CSShell.dll",
"NAME": "ContentSaver Offline Browser",
"URL": " http://www.macropool.com/en/index.html ",
"modified": 0
},
{
"CLSID": "{4DF1DB24-A57C-11d3-A180-00A0C90AE44B}",
"RISK": "none",
"FILES": " Cookiehlpr.dll",
"NAME": "CookieCop",
"URL": " http://www.pcmag.com/article2/04149624400.asp ",
"modified": 0
},
{
"CLSID": "{4DF5B116-4FD9-4039-B377-1130953A980F}",
"RISK": "none",
"FILES": " ToolBand.dll",
"NAME": "RHSI toolbar",
"URL": " http://www.rogershelp.com/help/content/download/software/softwareinfo.shtml ",
"modified": 0
},
{
"CLSID": "{4E1075F4-EEC4-4a86-ADD7-CD5F52858C31}",
"RISK": "high",
"FILES": " 2020Search.dll, \\2020SE~1.DLL",
"NAME": "2020Search",
"modified": 0
},
{
"CLSID": "{4E4B8455-0390-4417-8774-6868F5544810}",
"RISK": "unknown",
"FILES": " GameBar.dll",
"NAME": "Game Net Bar",
"URL": " http://play.game.net/ ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-92C6-CE7EB590A94D}",
"RISK": "high",
"FILES": " 2020Search2.dll, \\2020SE~1.DLL",
"NAME": "2020Search",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-92EA-EC65A294AE31}",
"RISK": "none",
"FILES": " ALTAVI~1.DLL",
"NAME": "Altavista Toolbar",
"URL": " http://www.altavista.com/toolbar ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-98F7-EB6DB99AA93B}",
"RISK": "high",
"FILES": " ifsomatic.dll",
"NAME": "Searchcentrix hijacker",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A08D-8F6FA787AD2D}",
"RISK": "high",
"FILES": " pwrsc032.dll",
"NAME": "PowerSearch toolbar",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/KeenValue.html\\\" TARGET=\\\"_blank\\\">PowerSearch toolbar</a>",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}",
"RISK": "high",
"FILES": " pwrs0102.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A0E8-ED6DB696BB7D}",
"RISK": "high",
"FILES": " ACBARV2.DLL",
"NAME": "Americlicks hijacker",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A0E8-F76FA694BF2E}",
"RISK": "high",
"FILES": " searchv2.dll",
"NAME": "Push toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A1E4-EA6FA787AD2D}",
"RISK": "high",
"FILES": " pwrscuz3.dll",
"NAME": "PowerSearch toolbar",
"URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A3F3-E96FF4D5FA7D}",
"RISK": "none",
"FILES": " cvm1.dll",
"NAME": "Shop n Search toolbar",
"URL": " http://www.consumervaluemall.com/toolbar/en/install.html ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A3FA-F363B384B77D}",
"RISK": "medium",
"FILES": " Mqgold.dll, mqgold*.dll (* = digit)",
"NAME": "MapQuest toolbar",
"URL": " http://www.mapquest.com/features/main.adp?page=mqtoolbar ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A58D-8F6FA787AD2D}",
"RISK": "high",
"FILES": " PWRSC037.DLL",
"NAME": "hijacker",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-A68E-8E1CA787AD2D}",
"RISK": "high",
"FILES": " pwrs0104.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-AA8E-8E1CA787AD2D}",
"RISK": "high",
"FILES": " pwrs0108.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FB-EF60B19DA02A}",
"RISK": "high",
"FILES": " Wzhelper.dll",
"NAME": "Searchcentrix hijacker",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FB-EF60B19DB42E}",
"RISK": "high",
"FILES": " SNHelper.dll",
"NAME": "ShopNavSearch/Srng",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/Srng.html\\\" TARGET=\\\"_blank\\\">ShopNavSearch/Srng</a>",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FB-EF60B19DBC34}",
"RISK": "high",
"FILES": " ifhelper.dll",
"NAME": "Searchcentrix hijacker",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FB-FA62BD92B438}",
"RISK": "none",
"FILES": " engineer.dll",
"NAME": "Engineering.com Toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FB-FB6DA681FA7D}",
"RISK": "none",
"FILES": " Trader.dll",
"NAME": "TrendTrader toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FC-F76FA694BF2E}",
"RISK": "high",
"FILES": " Searchbr.dll",
"NAME": "eUniverse SirSearch",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD60B590A87D}",
"RISK": "medium",
"FILES": " realbar.dll",
"NAME": "Real One toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD60B890A37D}",
"RISK": "none",
"FILES": " yellbar.dll",
"NAME": "British Yellow Pages",
"URL": " <a href=\\\"http://uk.yell.com/tools/toolbar/yellbar.cab\\\" target=\\\"_blank\\\">British Yellow Pages</a>",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD63B29BB37D}",
"RISK": "high",
"FILES": " infobar.dll",
"NAME": "eUniverse Flowgo toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD63B399BC7D}",
"RISK": "high",
"FILES": " flgobar.dll",
"NAME": "eUniverse Flowgo toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD69B994BD7D}",
"RISK": "high",
"FILES": " gamebar.dll",
"NAME": "GameBar",
"URL": " <a target=_top href=\"http://member.game.net/Membership/Privacy.asp\">GameBar</a>",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD69BD9BBF3A}",
"RISK": "none",
"FILES": " geniebar.dll",
"NAME": "SmartGenie",
"URL": " <a href=\\\"http://www.smartgenie.com/\\\" target=\\\"_blank\\\">SmartGenie</a>",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD6DB787FA7D}",
"RISK": "none",
"FILES": " Rcabar.dll",
"NAME": "R/C Toolbar",
"URL": " http://www.rcairport.com/toolbar/ ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C0FF-FD78A087B530}",
"RISK": "none",
"FILES": " Morttbar.dll",
"NAME": "Mortgage Toolbar",
"URL": " http://www.mortgage.com ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C1EB-ED65B786FA7D}",
"RISK": "none",
"FILES": " Scirus.dll",
"NAME": "Scirus toolbar",
"URL": " http://www.scirus.com/toolbar/ ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C1F2-F063A081BF33}",
"RISK": "none",
"FILES": " Nettools.dll",
"NAME": "Nettools",
"URL": " http://www.firewalls.com/toolbar.asp ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-C3FF-FB7FB59BFA7D}",
"RISK": "none",
"FILES": " Nasdaq.dll",
"NAME": "Nasdaq Toolbar",
"URL": " http://www.nasdaq.com/services/nasdaq_toolbar.stm ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D1F0-E56FA787AD2D}",
"RISK": "high",
"FILES": " pwrscznc.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D1F7-EB6DB99AA97D}",
"RISK": "high",
"FILES": " somatic.dll",
"NAME": "Searchcentrix seek4free hijacker",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D3EC-FE6EB89AB529}",
"RISK": "none",
"FILES": " Toolbara.dll",
"NAME": "BridalClicks toolbar",
"URL": " http://www.bridalclicks.com/ ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D3FA-F27BA787AD2D}",
"RISK": "high",
"FILES": " pwrswmda.dll",
"NAME": "PowerSearch toolbar",
"URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D3FC-F363BB81A82F}",
"RISK": "none",
"FILES": " rrtoolba.dll",
"NAME": "ResellerRatings toolbar",
"URL": " http://www.resellerratings.com/ ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D4F3-F66DA787AD2D}",
"RISK": "high",
"FILES": " pwrsaimf.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D6F5-F66EA787AD2D}",
"RISK": "high",
"FILES": " pwrsbikd.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D7E4-F660B597BF2A}",
"RISK": "high",
"FILES": " Webalize.dll",
"NAME": "Searchcentrix Webalize toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D7EE-FE6FA781BF33}",
"RISK": "none",
"FILES": " Netscape.dll",
"NAME": "Netscape toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-D9FB-FA6BAD98FA7D}",
"RISK": "high",
"FILES": " MyGeek.dll",
"NAME": "Search-o-Matic2000 toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-DAEE-FE7EB39ABD7D}",
"RISK": "none",
"FILES": " GOGRAPH.DLL",
"NAME": "Gograph",
"URL": " http://en.toolbar.gograph.com/ ",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-DBFC-ED1CA787AD2D}",
"RISK": "high",
"FILES": " pwrs0rbi.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-DFF7-EC6BF4D5FA7D}",
"RISK": "high",
"FILES": " gsim.dll",
"NAME": "Searchcentrix.com/Mygeek.com hijacker",
"modified": 0
},
{
"CLSID": "{4E7BD74F-2B8D-469E-DFF7-EC7DA787AD2D}",
"RISK": "high",
"FILES": " Pwrsqsim.dll",
"NAME": "PowerSearch toolbar",
"modified": 0
},
{
"CLSID": "{4E7D0B40-F575-4A29-9710-4675EAF4686A}",
"RISK": "none",
"FILES": " Minijvab.dll",
"NAME": "Mini Jeeves Toolbar",
"URL": " http://www.ask.co.uk/toolbar/index.asp ",
"modified": 0
},
{
"CLSID": "{4EBDC6E1-4B3C-11D7-BC75-008048C7A589}",
"RISK": "none",
"FILES": " Softwaresearch.dll",
"NAME": "Software Search bar",
"URL": " http://www.iebars.com/softwaresearch.html ",
"modified": 0
},
{
"CLSID": "{4F869C58-D71D-4850-8BDD-7B5CDF8EC911}",
"RISK": "none",
"FILES": " ibestbar.dll",
"NAME": "iBest",
"URL": " <a target=_top href=\"http://cyberpoa.com.br/deupaunomicro/banibest.htm\">iBest</a>",
"modified": 0
},
{
"CLSID": "{4F92B827-1E56-4E30-A978-A17A7861A606}",
"RISK": "none",
"FILES": " ebBlinds.dll",
"NAME": "Object Desktop Webblinds",
"URL": " http://www.stardock.com/products/webblinds/ ",
"modified": 0
},
{
"CLSID": "{4FC95EDD-4796-4966-9049-29649C80111D}",
"RISK": "high",
"FILES": " incfindbho.dll, INCFIN~1.DLL",
"NAME": "IncrediFind/Keenvalue",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/KeenValue.html\\\"TARGET=\\\"_blank\\\">IncrediFind/Keenvalue</a>",
"modified": 0
},
{
"CLSID": "{5074851C-F67A-488E-A9C9-C244573F4068}",
"RISK": "high",
"FILES": " ieasst.dll, iecomp.dll",
"NAME": "SeekSeek",
"modified": 0
},
{
"CLSID": "{516E2306-7ADF-47EC-AEA8-ACB6B51899F1}",
"RISK": "none",
"FILES": " Icapture.dll",
"NAME": "MacroExpress",
"URL": " http://www.macros.com/ ",
"modified": 0
},
{
"CLSID": "{525BBD23-1863-46C6-86D6-5F9A3715D44E}",
"RISK": "high",
"FILES": " mbho.dll",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{52706EF7-D7A2-49AD-A615-E903858CF284}",
"RISK": "none",
"FILES": " X1iebho.dll",
"NAME": "NetZero toolbar",
"modified": 0
},
{
"CLSID": "{528DA727-EC08-461E-9564-DF5C971E8574}",
"RISK": "high",
"FILES": " WinNB40.dll",
"NAME": "NetNucleus/Mirar webband",
"modified": 0
},
{
"CLSID": "{52D9BB0E-07DF-11D5-AE44-444553540000}",
"RISK": "none",
"FILES": " BHO.dll",
"NAME": "ContextMenu ControlFreak",
"URL": " http://www.hace.us-inc.com/cmcf.shtml ",
"modified": 0
},
{
"CLSID": "{5321E378-FFAD-4999-8C62-03CA8155F0B3}",
"RISK": "high",
"FILES": " 1.00.07.dll, *.**.**.dll, (* = digit)",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{53707962-6F74-2D53-2644-206D7942484F}",
"RISK": "none",
"FILES": " SDhelper.dll",
"NAME": "Spybot - Search & Destroy",
"URL": " http://spybot.eon.net.au/ ",
"modified": 0
},
{
"CLSID": "{53CBEE82-D747-11d3-9ED0-005004189684}",
"RISK": "high",
"FILES": " Ucmie.dll",
"NAME": "UCmore toolbar",
"URL": " http://www.doxdesk.com/parasite/UCmore.html ",
"modified": 0
},
{
"CLSID": "{53E10C2C-43B2-4657-BA29-AAE179E7D35C}",
"RISK": "high",
"FILES": " BHO2.dll",
"NAME": "HighTraffic",
"URL": " http://www.doxdesk.com/parasite/HighTraffic.html ",
"modified": 0
},
{
"CLSID": "{5420be57-2ed4-4f4f-9eb9-381cec2290e7}",
"RISK": "none",
"FILES": " ReadBar.dll",
"NAME": "ReadingBar",
"URL": " http://www.readingbar.com/help/English.htm ",
"modified": 0
},
{
"CLSID": "{54A85A38-A699-4AEC-8F88-AB542210C93B}",
"RISK": "high",
"FILES": " Gws.dll",
"NAME": "i-lookup search bar",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{54EC170F-6EB1-47C6-9C4D-EB0BE20CE45E}",
"RISK": "medium",
"FILES": " Aphelper.dll",
"NAME": "AdBlock",
"URL": " http://adblock.linkz.com/Home.php ",
"modified": 0
},
{
"CLSID": "{54ED9B49-81D1-4866-95A6-30F01DE0047E}",
"RISK": "high",
"FILES": " iexplorr29.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/InetSpeak.html\\\" target=\\\"_blank\\\">InetSpeak/Iexplorr</a>",
"modified": 0
},
{
"CLSID": "{5538fb62-f725-4433-a965-91314e8d8e4d}",
"RISK": "none",
"FILES": " toolbar1.dll",
"NAME": "Vivisimo",
"URL": " <a href=\\\"http://vivisimo.com/toolbar/toolbar-features.html\\\" target=\\\"_blank\\\">Vivisimo</a>",
"modified": 0
},
{
"CLSID": "{55910916-8B4E-4C1E-9253-CCE296EA71EB}",
"RISK": "high",
"FILES": " eabh.dll",
"NAME": "Ezula TopText",
"URL": " http://www.cexx.org/toptext.htm ",
"modified": 0
},
{
"CLSID": "{55EDFA0E-B812-4AE5-94CC-8ABE6EA13515}",
"RISK": "unknown",
"FILES": " GameBar.dll",
"NAME": "Game Net bar",
"URL": " <a target=_top href=\"http://play.game.net/\">Game Net bar</a>",
"modified": 0
},
{
"CLSID": "{56071E0D-C61B-11D3-B41C-00E02927A304}",
"RISK": "none",
"FILES": " FreeBHOR.dll",
"NAME": "Zero Knowledge Freedom",
"URL": " http://www.freedom.net/ ",
"modified": 0
},
{
"CLSID": "{562C1A20-72E7-4ED8-A26D-0DC57415FE92}",
"RISK": "medium",
"FILES": " PGI.DLL",
"NAME": "Vantage popup guard",
"modified": 0
},
{
"CLSID": "{56796C51-A689-4360-B813-18A47C9D05C2}",
"RISK": "none",
"FILES": " Adpurger.dll",
"NAME": "AdPurger",
"URL": " http://www.adpurger.com/ ",
"modified": 0
},
{
"CLSID": "{569E7719-1A11-415E-9206-AC1860FB8BFF}",
"RISK": "none",
"FILES": " IGCatcher.dll",
"NAME": "InstantGet",
"URL": " http://www.majorgeeks.com/download.php?det=3886 ",
"modified": 0
},
{
"CLSID": "{576EB0AD-6980-11D5-A9CD-0001032FEE17}",
"RISK": "none",
"FILES": " Ycheckh.dll",
"NAME": "Yahoo Companion!",
"URL": " http://companion.yahoo.com/ ",
"modified": 0
},
{
"CLSID": "{57D23905-A2A3-4002-8C48-09DEA366703F}",
"RISK": "none",
"FILES": " Watchie.dll",
"NAME": "AdCutOff",
"URL": " http://www.soft2u.com/download/adcutoff/adcutoff.html ",
"modified": 0
},
{
"CLSID": "{57E69D5A-6539-4d7d-9637-775DE8A385B4}",
"RISK": "high",
"FILES": " Xupitertoolbar.dll, t.dll",
"NAME": "Xupiter",
"URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
"modified": 0
},
{
"CLSID": "{57E91B41-F40A-11D1-B792-444553540000}",
"RISK": "none",
"FILES": " Antapi.dll",
"NAME": "NetAnts",
"URL": " http://www.netants.com/ ",
"modified": 0
},
{
"CLSID": "{58359010-BF36-11D3-99A2-0050DA2EE1BE}",
"RISK": "high",
"FILES": " ?",
"NAME": "Ezula TopText",
"URL": " http://www.cexx.org/toptext.htm ",
"modified": 0
},
{
"CLSID": "{5843A29E-1246-11D4-BA8C-0050DA707ACD}",
"RISK": "high",
"FILES": " crs32.dll",
"NAME": "Gratisware",
"URL": " http://www.doxdesk.com/parasite/Gratisware.html ",
"modified": 0
},
{
"CLSID": "{587DBF2D-9145-4c9e-92C2-1F953DA73773}",
"RISK": "high",
"FILES": " Iefeatsl.dll, win**32.dll, sys**32.dll, ie**32.dll, ms**32.dll, (* = random char)",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{5886A6DC-AAF4-45E9-979A-8E5E6DEE30E7}",
"RISK": "high",
"FILES": " zSearch.dll",
"NAME": "TotalVelocity zSearch toolbar",
"modified": 0
},
{
"CLSID": "{58A83E4F-477A-4A3F-BF9B-B65BC2BD5598}",
"RISK": "none",
"FILES": " siClientUIHotmail.dll",
"NAME": "Spam Inspector Hotmail plugin",
"URL": " http://www.giantcompany.com/default.aspx?PID=A22046 ",
"modified": 0
},
{
"CLSID": "{5998B08E-CFAC-11D5-822A-0050048E6E38}",
"RISK": "high",
"FILES": " SurfPlugin.dll",
"NAME": "JimmySurf",
"URL": " http://www.pestpatrol.com/PestInfo/j/jimmysurf.asp ",
"modified": 0
},
{
"CLSID": "{5A3A5040-4210-11D7-BD2E-00080E34122F}",
"RISK": "high",
"FILES": " M030206POHS.DLL",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{5ADA9CAC-04F9-4DD2-ABFD-74D673BE8624}",
"RISK": "none",
"FILES": " _MWOLTB.DLL",
"NAME": "Merriam-Webster Toolbar",
"URL": " <a href=\\\"http://www.m-w.com/tools/toolbar/\\\" target=\\\"_blank\\\">Merriam-Webster Toolbar</a>",
"modified": 0
},
{
"CLSID": "{5B2AD7D7-81E3-4B74-8B74-4600A67BBB8A}",
"RISK": "none",
"FILES": " PAGESURF.DLL",
"NAME": "PageSurf.com Toolbar",
"URL": " http://www.pagesurf.com/toolbar.html ",
"modified": 0
},
{
"CLSID": "{5BBFC00A-312C-4777-A5DF-DDA65C67120C}",
"RISK": "none",
"FILES": " Ubp.dll",
"NAME": "Antipop-up UOL toolbar",
"URL": " http://antipopup.uol.com.br/ ",
"modified": 0
},
{
"CLSID": "{5C9DCA26-CEC4-4280-A831-D622D4DBF113}",
"RISK": "none",
"FILES": " LINKMA~1.DLL",
"NAME": "Linkman",
"URL": " http://www.outertech.com/index.php?_charisma_page=product&id=5 ",
"modified": 0
},
{
"CLSID": "{5CA3D70E-1895-11CF-8E15-001234567890}",
"RISK": "medium",
"FILES": " tfswshx.dll",
"NAME": "Hewlett-Packard/Veritas DLA software",
"modified": 0
},
{
"CLSID": "{5CF8A355-F8C6-4883-9C25-49D01A7D25BE}",
"RISK": "high",
"FILES": " zestyfind.dll",
"NAME": "hijacker",
"modified": 0
},
{
"CLSID": "{5D60FF48-95BE-4956-B4C6-6BB168A70310}",
"RISK": "high",
"FILES": " incfindbho.dll, INCFIN~1.DLL",
"NAME": "IncrediFind/Keenvalue",
"URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
"modified": 0
},
{
"CLSID": "{5DAFD089-24B1-4c5e-BD42-8CA72550717B}",
"RISK": "high",
"FILES": " saiemod.dll",
"NAME": "180Solutions.com SurfAssistant",
"modified": 0
},
{
"CLSID": "{5DE4E98D-DE09-4BC3-8A70-A6D9A24F4EC9}",
"RISK": "none",
"FILES": " 1Cie.dll",
"NAME": "Image Extractor",
"URL": " http://www.icegiant.com/ieie.shtml ",
"modified": 0
},
{
"CLSID": "{5E92F538-B50B-46C5-9C5F-C6EECED3F6C6}",
"RISK": "medium",
"FILES": " Ultrabar.dll",
"NAME": "Dogpile toolbar",
"modified": 0
},
{
"CLSID": "{5ED50735-B0D9-47C6-9774-02DD8E6FE053}",
"RISK": "high",
"FILES": " disable.dll",
"NAME": "ClientMan",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/ClientMan.html\\\" TARGET=\\\"_blank\\\">ClientMan</a>",
"modified": 0
},
{
"CLSID": "{5F186CB1-08C6-4034-8529-CDC625463D99}",
"RISK": "none",
"FILES": " ANNSHE~1.DLL",
"NAME": "Emeris Annotis Mail",
"URL": " http://www.emeris.com/pages/home.php ",
"modified": 0
},
{
"CLSID": "{5F1ABCDB-A875-46c1-8345-B72A4567E486}",
"RISK": "high",
"FILES": " ISTbar.dll",
"NAME": "ISTBar",
"URL": " http://www.doxdesk.com/parasite/ISTbar.html ",
"modified": 0
},
{
"CLSID": "{5F1ABCDB-A875-46c1-8345-B72A4567E486}",
"RISK": "high",
"FILES": " data.dll, toolbar_nieuw**.dll (* = random digit)",
"NAME": "DotCom toolbar variant",
"modified": 0
},
{
"CLSID": "{5F48C39E-5581-4701-9A76-96A6E25E5BCC}",
"RISK": "none",
"FILES": " SGengine.dll",
"NAME": "SurfGhost",
"URL": " <a href=\\\"http://products.enterpriseitplanet.com/security/security/1059245261.html\\\"TARGET=\\\"_blank\\\">SurfGhost</a>",
"modified": 0
},
{
"CLSID": "{5F50A50A-0A0F-4F58-8B1C-62BC60F9B05A}",
"RISK": "none",
"FILES": " Ncrssa~1.dll",
"NAME": "Newz Crawler",
"URL": " http://www.newzcrawler.com/ ",
"modified": 0
},
{
"CLSID": "{5F5564AC-DE7A-4DCD-9296-32E71A35DCB6}",
"RISK": "high",
"FILES": " Browseraidtoolbar.dll, Quicklaunchie.dll",
"NAME": "BrowserAid CashToolbar/QuickLaunch toolbar",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{5F5564AC-DE7A-4DCD-9296-32E71A35DCB7}",
"RISK": "high",
"FILES": " bptlb.dll",
"NAME": "BrowserPal toolbar",
"URL": " http://www.doxdesk.com/parasite/BrowserPal.html ",
"modified": 0
},
{
"CLSID": "{5F6293C0-8686-11d5-9C62-000102117FC3}",
"RISK": "none",
"FILES": " palz3003.dll ",
"NAME": "mini eresMas toolbar",
"modified": 0
},
{
"CLSID": "{601ED020-FB6C-11D3-87D8-0050DA59922B}",
"RISK": "none",
"FILES": " wsbho2k0.dll",
"NAME": "WS_FTP",
"URL": " http://www.ipswitch.com/Products/WS_FTP/ ",
"modified": 0
},
{
"CLSID": "{604B283A-4E26-4504-98E7-72859F949547}",
"RISK": "none",
"FILES": " sypcms.dll",
"NAME": "Hitware Popup Killer Lite",
"modified": 0
},
{
"CLSID": "{6085FB5B-C281-4B9C-8E5D-D2792EA30D2F}",
"RISK": "high",
"FILES": " Netpal.dll",
"NAME": "Netpal",
"URL": " http://www.doxdesk.com/parasite/NetPal.html ",
"modified": 0
},
{
"CLSID": "{60C718BD-2471-44E4-AFCF-6625BEB620BF}",
"RISK": "none",
"FILES": " IEPerformanceAddon.dll",
"NAME": "IE Performance Addon",
"URL": " http://dotexe.mastak.com/ ",
"modified": 0
},
{
"CLSID": "{60D3AAEB-AA39-4AE0-B2F9-E4AF0613A2A3}",
"RISK": "none",
"FILES": " Abg_plugin.dll",
"NAME": "Adbegone",
"URL": " http://www.cyberspacehq.com/products/adbegone/home.shtm ",
"modified": 0
},
{
"CLSID": "{60E78CAC-E9A7-4302-B9EE-8582EDE22FBF}",
"RISK": "high",
"FILES": " BHO001.DLL",
"NAME": "iGetNet/Natural Language Navigation",
"URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
"modified": 0
},
{
"CLSID": "{6165D324-3AAF-4C63-B545-C7D2285BEA1C}",
"RISK": "none",
"FILES": " thbho.dll",
"NAME": "BrowseAloud",
"URL": " http://www.browsealoud.com/ ",
"modified": 0
},
{
"CLSID": "{6172E460-FAE3-11D2-B494-004005A47AAA}",
"RISK": "none",
"FILES": " Iec.dll",
"NAME": "Powermarks Bookmark manager",
"URL": " http://www.kaylon.com/power.html ",
"modified": 0
},
{
"CLSID": "{61B5B39F-0750-4637-9D70-A63A79978B5D}",
"RISK": "none",
"FILES": " gameknot_toolbar.dll",
"NAME": "GameKnot",
"URL": " http://gameknot.com/list_games.pl? ",
"modified": 0
},
{
"CLSID": "{61D029AC-972B-49FE-A155-962DFA0A37BB}",
"RISK": "high",
"FILES": " Ineb.dll",
"NAME": "i-lookup search bar",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{6231D512-E4A4-4DF2-BE62-5B8F0EE348EF}",
"RISK": "high",
"FILES": " cesweb.dll",
"NAME": "CnsMin",
"modified": 0
},
{
"CLSID": "{62999427-33FC-4baf-9C9C-BCE6BD127F08}",
"RISK": "none",
"FILES": " Dapiebar.dll",
"NAME": "DAP",
"URL": " http://www.speedbit.com/DefaultT.asp? ",
"modified": 0
},
{
"CLSID": "{634EFDE4-087D-4ce9-952F-63C9EEB2E0BF}",
"RISK": "high",
"FILES": " WNDPOS~1.DLL",
"NAME": "Adware linked to www.Townews.com",
"modified": 0
},
{
"CLSID": "{63B78BC1-A711-4D46-AD2F-C581AC420D41}",
"RISK": "high",
"FILES": " Btiein.dll, *******~1.EXE, (* = random char/digit)",
"NAME": "Huntbar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{63CF97E8-4133-438a-A831-CC9C6D47D673}",
"RISK": "high",
"FILES": " Flcp.dll",
"NAME": "FlashTrack",
"URL": " Ftapp <a href=\\\"http://www.doxdesk.com/parasite/FlashTrack.html\\\" target=\\\"_blank\\\">FlashTrack Ftapp</a>",
"modified": 0
},
{
"CLSID": "{6427806D-3820-11D5-9939-00B0D0522EB5}",
"RISK": "none",
"FILES": " FireConverterBrowserHelperObject.dll",
"NAME": "Firepad FireConverter",
"URL": " http://www.palmblvd.com/software/pc/FireConverter-2000-11-8-palm-pc.html ",
"modified": 0
},
{
"CLSID": "{645FD3BC-C314-4F7A-9D2E-64D62A0FDD78}",
"RISK": "high",
"FILES": " pop***.dll , (* = random digit)",
"NAME": "PeopleOnPage/AproposMedia",
"URL": " http://www.doxdesk.com/parasite/AproposMedia.html ",
"modified": 0
},
{
"CLSID": "{65394353-C60B-4480-ADC3-02B7B4C434B4}",
"RISK": "medium",
"FILES": " IETOOLBAR.DLL",
"NAME": "ToolButton bar",
"URL": " http://www.toolbutton.com/ ",
"modified": 0
},
{
"CLSID": "{656EC4B7-072B-4698-B504-2A414C1F0037}",
"RISK": "none",
"FILES": " prpl_IePopupBlocker.dll",
"NAME": "Propel PopupBlocker",
"URL": " http://www.propel.com/ac/block.jsp ",
"modified": 0
},
{
"CLSID": "{657B9354-BB3B-4500-A9B0-109B4FA64815}",
"RISK": "high",
"FILES": " amcis32.dll",
"NAME": "Win32/Aspam.Trojan",
"URL": " http://www.doxdesk.com/parasite/ASpam.html ",
"modified": 0
},
{
"CLSID": "{6596829B-37D4-40ad-971B-1E9041725C52}",
"RISK": "high",
"FILES": " ietb.dll",
"NAME": "Commander Toolbar",
"modified": 0
},
{
"CLSID": "{6596829B-37D4-40ad-971B-1E9041725C52}",
"RISK": "high",
"FILES": " sbb.dll",
"NAME": "Commander Toolbar",
"modified": 0
},
{
"CLSID": "{65C8C1F5-230E-4DC9-9A0D-F3159A5E7778}",
"RISK": "high",
"FILES": " pop***.dll, ( * = random digit)",
"NAME": "PeopleOnPage/AproposMedia",
"URL": " http://www.doxdesk.com/parasite/AproposMedia.html ",
"modified": 0
},
{
"CLSID": "{6607C683-AE7C-11D4-ACD7-0050DAC291A2}",
"RISK": "high",
"FILES": " Myiemonitor.dll",
"NAME": "OpinionBar",
"URL": " http://www.earncashontheinternet.com/paidtosurf/review/opinionbar.asp ",
"modified": 0
},
{
"CLSID": "{663C7429-E454-11D3-B9AE-0000B4C32B4D}",
"RISK": "none",
"FILES": " webka.dll",
"NAME": "Kangaroo Toolbar",
"modified": 0
},
{
"CLSID": "{6656B666-992F-4D74-8588-8CAC9E79D90C}",
"RISK": "high",
"FILES": " CNBabe.dll",
"NAME": "Commonname toolbar",
"URL": " http://www.doxdesk.com/parasite/CommonName.html ",
"modified": 0
},
{
"CLSID": "{665ACD90-4541-4836-9FE4-062386BB8F05}",
"RISK": "high",
"FILES": " Flt.dll, Ftapp.dll",
"NAME": "FlashTrack",
"URL": " Ftapp http://www.doxdesk.com/parasite/FlashTrack.html ",
"modified": 0
},
{
"CLSID": "{669695BC-A811-4A9D-8CDF-BA8C795F261C}",
"RISK": "high",
"FILES": " PowrStrp.dll",
"NAME": "Powerstrip",
"URL": " http://doxdesk.com/parasite/PowerStrip.html ",
"modified": 0
},
{
"CLSID": "{669695BC-A811-4A9D-8CDF-BA8C795F261C}",
"RISK": "medium",
"FILES": " dlIEbar.dll",
"NAME": "Slingshot",
"URL": " <a href=\\\"http://www.tenebril.com/products/slingshot/\\\" target=\\\"_blank\\\">Slingshot</a>",
"modified": 0
},
{
"CLSID": "{66993893-61B8-47DC-B10D-21E0C86DD9C8}",
"RISK": "high",
"FILES": " iehelper.dll",
"NAME": "LinkReplacer",
"URL": " http://www.doxdesk.com/parasite/LinkReplacer.html ",
"modified": 0
},
{
"CLSID": "{66F67511-2665-4C34-9E20-FAC2C0954EF2}",
"RISK": "high",
"FILES": " whattt.dll",
"NAME": "Whazit",
"URL": " http://www.doxdesk.com/parasite/Whazit.html ",
"modified": 0
},
{
"CLSID": "{6754A456-BAD9-11D4-93D3-00B0D03A2F91}",
"RISK": "medium",
"FILES": " Odigobho.dll",
"NAME": "Odigo",
"URL": " http://www.odigo.org/ ",
"modified": 0
},
{
"CLSID": "{67970B26-F57D-4455-8262-81C3AE3B8B5E}",
"RISK": "medium",
"FILES": " NetSnip.dll",
"NAME": "Net Snippets",
"URL": " http://www.netsnippets.com/product_info.htm ",
"modified": 0
},
{
"CLSID": "{68513770-A18E-11D7-B77C-00C0DFF3F600}",
"RISK": "high",
"FILES": " Helper.dll",
"NAME": "PrecisionPop adware",
"modified": 0
},
{
"CLSID": "{68E69D9D-63C9-4C32-A53B-CBE1D5A5903E}",
"RISK": "none",
"FILES": " uwcdsbho.dll ",
"NAME": "Cyber Defender 2003",
"modified": 0
},
{
"CLSID": "{69135BDE-5FDC-4B61-98AA-82AD2091BCCC}",
"RISK": "high",
"FILES": " systb.dll",
"NAME": "IEplugin",
"URL": " http://www.doxdesk.com/parasite/IEPlugin.html ",
"modified": 0
},
{
"CLSID": "{69550BE2-9A78-11D2-BA91-00600827878D}",
"RISK": "high",
"FILES": " shdocvw.dll",
"NAME": "Tinybar (do not delete the file itself",
"URL": " it`s a Windows system file!) http://www.doxdesk.com/parasite/TinyBar.html ",
"modified": 0
},
{
"CLSID": "{6A85D97D-665D-4825-8341-9501AD9F56A3}",
"RISK": "high",
"FILES": " Stoolbar.dll",
"NAME": "HuntBar/WebSearch",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{6AC15BAC-8AE7-11D3-A458-0000C07BA55F}",
"RISK": "medium",
"FILES": " Webhelp.dll",
"NAME": "Webhelp",
"URL": " http://www.webhelp.com/webhelp/products/cobrowse.jsp ",
"modified": 0
},
{
"CLSID": "{6ACD11BD-4CA0-4283-A8D8-872B9BA289B6}",
"RISK": "high",
"FILES": " webcbrowse.dll, webcbrowse*.dll (* = digit)",
"NAME": "eAcceleration StopSign",
"URL": " http://www.doxdesk.com/parasite/DownloadReceiver.html ",
"modified": 0
},
{
"CLSID": "{6AF9BC61-3CC5-42A7-82D1-FFC2562A7289}",
"RISK": "high",
"FILES": " Alxie328.dll",
"NAME": "Alexa Toolbar",
"URL": " http://pages.alexa.com/prod_serv/quicktour_new.html ",
"modified": 0
},
{
"CLSID": "{6B12DABB-0B7C-44FA-B0B3-4BAFF3790256}",
"RISK": "high",
"FILES": " Iexplorr24.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{6BC013D0-77D9-11d5-AB95-0050DA664D35}",
"RISK": "unknown",
"FILES": " Yodelizer.dll",
"NAME": "My Yodlee Assistant",
"URL": " https://www.yodlee.com/solutions/platform.html ",
"modified": 0
},
{
"CLSID": "{6C3797D2-3FEF-4cd4-B654-D3AE55B4128C}",
"RISK": "none",
"FILES": " IEBand.dll",
"NAME": "KingSoft FastAIT translation software",
"modified": 0
},
{
"CLSID": "{6CC1C918-AE8B-4373-A5B4-28BA1851E39A}",
"RISK": "high",
"FILES": " winshow.dll",
"NAME": "Winshow/Searchv.com hijacker",
"URL": " http://www.doxdesk.com/parasite/Winshow.html ",
"modified": 0
},
{
"CLSID": "{6CC1C91A-AE8B-4373-A5B4-28BA1851E39A}",
"RISK": "high",
"FILES": " winlink.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{6CDF3C49-20E6-48d7-811B-9F5DD17F1D90}",
"RISK": "high",
"FILES": " sfg****.dll",
"NAME": "SafeguardProtect hijacker",
"modified": 0
},
{
"CLSID": "{6D0AC7F7-B628-4581-A8B2-14D97F24AA76}",
"RISK": "high",
"FILES": " brbho.dll",
"NAME": "Comet Cursor",
"URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
"modified": 0
},
{
"CLSID": "{6D55490C-1BD4-4790-BA31-84D261316E28}",
"RISK": "high",
"FILES": " Highlighthelper.dll",
"NAME": "BrowserAid/ABCSearch",
"URL": " http://www.doxdesk.com/parasite/CashToolbar.html ",
"modified": 0
},
{
"CLSID": "{6D6F1AF0-DDCB-477F-A896-5D75E53B80A3}",
"RISK": "none",
"FILES": " RM4IE.dll ",
"NAME": "DigiMarc ImageBridge",
"modified": 0
},
{
"CLSID": "{6E18F3FD-82DA-46EE-944C-CBEC9071D2F7}",
"RISK": "none",
"FILES": " NetworldToolbar.dll",
"NAME": "NetWorld online toolbar",
"URL": " http://www.nwonline.net/toolbar.asp ",
"modified": 0
},
{
"CLSID": "{6E1C5E3D-A8E6-4a92-820F-BFCFE45BA158}",
"RISK": "high",
"FILES": " veev****.dll (* = random char)",
"NAME": "SafeguardProtect hijacker",
"modified": 0
},
{
"CLSID": "{6E34D984-4054-45E3-8452-0159A2F0D232}",
"RISK": "high",
"FILES": " Veevo.dll",
"NAME": "SafeguardProtect hijacker",
"modified": 0
},
{
"CLSID": "{6EF3AE25-5A7D-40C2-9B44-9ED0068621C0}",
"RISK": "high",
"FILES": " windec32.dll",
"NAME": "I-lookup",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{6F8ADBE2-8C92-4362-B0E6-7321AA49EE46}",
"RISK": "high",
"FILES": " Ultrabar.dll",
"NAME": "New Toolbar is for the Dogs",
"URL": " http://www.spywareinfo.com/newsletter/archives/0903/3.php ",
"modified": 0
},
{
"CLSID": "{6F91A936-734D-4EE7-9320-50718870285D}",
"RISK": "none",
"FILES": " Popuppurger.dll",
"NAME": "Popup Purger",
"URL": " http://www.pop-up-killer.biz/ ",
"modified": 0
},
{
"CLSID": "{7011471D-3F74-498E-88E1-C0491200312D}",
"RISK": "high",
"FILES": " Otglove.dll",
"NAME": "FriendGreetings E-Card foistware",
"URL": " http://vil.nai.com/vil/content/v_99760.htm ",
"modified": 0
},
{
"CLSID": "{702AD576-FDDB-4d0f-9811-A43252064684}",
"RISK": "high",
"FILES": " Toolbar.dll",
"NAME": "Xupiter Orbitexplorer",
"URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
"modified": 0
},
{
"CLSID": "{707E6F76-9FFB-4920-A976-EA101271BC25}",
"RISK": "high",
"FILES": " Jeired.dll, TvmBho.dll",
"NAME": "CleverIEHooker",
"modified": 0
},
{
"CLSID": "{7157CE13-F711-49CD-AA5F-4FA80EAA622B}",
"RISK": "none",
"FILES": " MFEHelper.dll",
"NAME": "MyFamilyHelper",
"URL": " <a href=\\\"http://www.myfam.com/commonindex/signup.asp\\\" target=\\\"_blank\\\">MyFamilyHelper</a>",
"modified": 0
},
{
"CLSID": "{71AAABE5-1F0F-11d7-BD6F-004854603DCE}",
"RISK": "medium",
"FILES": " toolbar.dll",
"NAME": "Trellian Toolbar",
"URL": " http://www.submitwolf.com/toolbar/ ",
"modified": 0
},
{
"CLSID": "{71B8AB7E-CB3F-4471-878E-8E1DFDF49B8B}",
"RISK": "high",
"FILES": " WebCompassBar.dll",
"NAME": "Bonzi",
"URL": " <a target=_top href=\"http://accs-net.com/smallfish/bonzi.htm\">Bonzi</a>",
"modified": 0
},
{
"CLSID": "{71CC3BD4-6217-44AB-B8D0-96AEAF9A8678}",
"RISK": "high",
"FILES": " UC.dll",
"NAME": "UCmore toolbar",
"URL": " http://www.doxdesk.com/parasite/UCmore.html ",
"modified": 0
},
{
"CLSID": "{71ED4FBA-4024-4bbe-91DC-9704C93F453E}",
"RISK": "high",
"FILES": " Iesearchbar.dll",
"NAME": "Blazefind IESearchbar",
"modified": 0
},
{
"CLSID": "{724D43A0-0D85-11D4-9908-00400523E39A}",
"RISK": "none",
"FILES": " RoboForm.dll",
"NAME": "RoboForm",
"URL": " http://www.roboform.com/ ",
"modified": 0
},
{
"CLSID": "{724d43a9-0d85-11d4-9908-00400523e39a}",
"RISK": "none",
"FILES": " RoboForm.dll",
"NAME": "RoboForm",
"URL": " <a href=\\\"http://www.roboform.com/\\\" target=\\\"_blank\\\">RoboForm</a>",
"modified": 0
},
{
"CLSID": "{72557F9F-13AE-44C9-B3D7-5091B599027C}",
"RISK": "high",
"FILES": " smail11.dll",
"NAME": "LoveTester scumware",
"URL": " http://spamwatch.codefish.net.au/modules.php?op=modload&name=News&file=index&catid=&topic=24 ",
"modified": 0
},
{
"CLSID": "{727D45C4-2BD1-41D2-B54E-97DEAF06AD9A}",
"RISK": "medium",
"FILES": " msietk1020.dll",
"NAME": "SearchFu/123Search",
"URL": " http://www.pestpatrol.com/PestInfo/s/search123.asp ",
"modified": 0
},
{
"CLSID": "{72A58725-2635-4725-8C53-676DFD1FEB8D}",
"RISK": "high",
"FILES": " zeropopupbar.dll, Zeropopup.dll, Blocker.dll, \\ZEROPO~1.DLL",
"NAME": "ZeroPopupBar",
"URL": " http://www.doxdesk.com/parasite/ZeroPopUp.html ",
"modified": 0
},
{
"CLSID": "{72CEAE02-DF9C-49F3-9689-10D1B82DC343}",
"RISK": "high",
"FILES": " Toolbar.dll",
"NAME": "BrowserAid/FindIt-Quick",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{72EFCEB7-436E-11D3-93ED-0008C7396667}",
"RISK": "medium",
"FILES": " ?",
"NAME": "DigitalMe toolbar",
"URL": " http://www.digitalme.com/Learn_More/ie5_toolbar/ ",
"modified": 0
},
{
"CLSID": "{730F2451-A3FE-4A72-938C-FC8A74F15978}",
"RISK": "high",
"FILES": " Bho.dll",
"NAME": "IGN Keywords",
"URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
"modified": 0
},
{
"CLSID": "{748A5D0A-68D3-11D4-A67E-00E098823A80}",
"RISK": "unknown",
"FILES": " Iehelper.dll",
"NAME": "?",
"modified": 0
},
{
"CLSID": "{753AA023-02D1-447D-8B55-53A91A5ABF18}",
"RISK": "high",
"FILES": " Bmeb.dll",
"NAME": "i-Lookup/Bmeb",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{7559B76E-0222-4d77-9499-CCE9EB4EDC2F}",
"RISK": "none",
"FILES": " AdShield.dll",
"NAME": "Adshield",
"URL": " http://www.adshield.org/ ",
"modified": 0
},
{
"CLSID": "{760A9DDE-1433-4A7C-8189-D6735BB5D3DD}",
"RISK": "high",
"FILES": " EzSearch.dll",
"NAME": "EZCybersearch bar",
"URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
"modified": 0
},
{
"CLSID": "{765E6B09-6832-4738-BDBE-25F226BA2AB0}",
"RISK": "high",
"FILES": " allch.dll, QcBar.dll",
"NAME": "Qcbar/AdultLinks",
"URL": " http://www.doxdesk.com/parasite/AdultLinks.html ",
"modified": 0
},
{
"CLSID": "{769a6fad-c100-4af9-9bf9-439e05ba1542}",
"RISK": "none",
"FILES": " mscoree.dll",
"NAME": "Buzzoff Toolbar",
"modified": 0
},
{
"CLSID": "{76D92AF6-2C25-4667-A54F-F75012BCB7B1}",
"RISK": "none",
"FILES": " Veronicabarshell.dll",
"NAME": "Veronica toolbar",
"URL": " http://www.veronica.nl/modules.php?name=toolbarhelp&site=corporate ",
"modified": 0
},
{
"CLSID": "{76EAE03C-F2B1-4397-97E8-390920B7C2DC}",
"RISK": "none",
"FILES": " V3Bar.dll",
"NAME": "Ahnlab V3 antivirus",
"URL": " http://home.ahnlab.com/english/product/01_1.html ",
"modified": 0
},
{
"CLSID": "{76EC9B95-D244-41F9-A5BE-6896EFFB40CF}",
"RISK": "high",
"FILES": " SearchToolbar.dll",
"NAME": "Search Toolbar",
"URL": " http://www.searchtoolbar.com/download.php ",
"modified": 0
},
{
"CLSID": "{774E69B6-C981-11D6-B1B1-0050DAB9F678}",
"RISK": "none",
"FILES": " browserToolbar.dll",
"NAME": "NitroShock",
"URL": " http://www.nitroshock.com/ ",
"modified": 0
},
{
"CLSID": "{77712A64-F30B-47C8-A363-CDA1CEC7DC1B}",
"RISK": "medium",
"FILES": " Advancedbar.dll, ADVANC~1.DLL",
"NAME": "Advanced Searchbar",
"modified": 0
},
{
"CLSID": "{777D0B4C-75C9-4874-ABFF-80B4BE8DC532}",
"RISK": "none",
"FILES": " IEBand2.dll",
"NAME": "Download Toolbar",
"URL": " http://www.diodia.com/downloadtoolbar.htm ",
"modified": 0
},
{
"CLSID": "{778B6755-2A32-11D4-A68C-00104BB641A7}",
"RISK": "none",
"FILES": " JCLBANDBHO.DLL",
"NAME": "Pitrinec MyExplorerBar",
"URL": " <a href=\\\"http://www.pitrinec.com/meb_index.htm\\\" target=\\\"_blank\\\">Pitrinec MyExplorerBar</a>",
"modified": 0
},
{
"CLSID": "{78104A01-8E71-4F30-9A36-3793799615B4}",
"RISK": "none",
"FILES": " mime_filter.dll",
"NAME": "Rights Management Add-on",
"URL": " http://www.microsoft.com/windows/ie/downloads/addon/default.asp ",
"modified": 0
},
{
"CLSID": "{78839ABD-14B9-11D4-BA68-00104BC6425F}",
"RISK": "none",
"FILES": " BHO.dll",
"NAME": "Xerox DocuShare",
"URL": " http://docushare.capousd.org/docushare/en_US/help/release.htm ",
"modified": 0
},
{
"CLSID": "{78B5D524-8F7C-4B57-8D17-0D446F868994}",
"RISK": "none",
"FILES": " ASRFIELib.dll",
"NAME": "Assistant surfer",
"URL": " http://www.unhsolutions.net/ASRF/ ",
"modified": 0
},
{
"CLSID": "{79049BCB-7C3A-467B-BFA9-0B8C1CD44463}",
"RISK": "high",
"FILES": " StartMakeToolbar.ocx",
"NAME": "StartMake.com toolbar",
"modified": 0
},
{
"CLSID": "{79369D5C-2903-4b7a-ADE2-D5E0DEE14D24}",
"RISK": "high",
"FILES": " GoogleMS.dll, Word10.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{799A370D-5993-4887-9DF7-0A4756A77D00}",
"RISK": "high",
"FILES": " SEARCH~1.DLL, Searchaddon.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{79C9FB71-7827-11D3-8DF7-00105A119B7C}",
"RISK": "high",
"FILES": " NPBH.dll",
"NAME": "Article about this software",
"URL": " http://www.internetnews.com/IAR/article.php/177951 ",
"modified": 0
},
{
"CLSID": "{7A33D136-248C-4BA5-B72D-BB68F4AD9039}",
"RISK": "none",
"FILES": " GOLDEN~1.DLL",
"NAME": "LittleBigBar",
"URL": " http://www.littlebigbar.com/ ",
"modified": 0
},
{
"CLSID": "{7A3BA17E-A5C6-4889-8A78-80A3C3382118}",
"RISK": "none",
"FILES": " Jimworld.dll",
"NAME": "JimWorld toolbar",
"modified": 0
},
{
"CLSID": "{7A431EC4-CC21-4DF7-9DB1-A2CF74C4CC98}",
"RISK": "none",
"FILES": " bpumToolBand.dll",
"NAME": "Telstra BigPond toolbar",
"URL": " http://www.bigpond.com/helpcentre/toolbar/ ",
"modified": 0
},
{
"CLSID": "{7A4CB73C-64DF-4155-9EFA-57F86560245E}",
"RISK": "none",
"FILES": " Mbnbar.dll",
"NAME": "MolBiol.Net Toolbar",
"URL": " http://www.r9corporation.fsnet.co.uk/toolbar/ ",
"modified": 0
},
{
"CLSID": "{7A9BC6B1-7F27-47c6-A66D-13582E81E537}",
"RISK": "none",
"FILES": " Cleanbho.dll",
"NAME": "CleanMyPc",
"modified": 0
},
{
"CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
"RISK": "none",
"FILES": " Croc_bar.dll",
"NAME": "Croc Crawler",
"URL": " http://www.croccrawler.com/download/croccrawler_toolbar.html ",
"modified": 0
},
{
"CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
"RISK": "high",
"FILES": " Ultrabar.dll",
"NAME": "UltraBar",
"URL": " http://www.ultrabar.com/ ",
"modified": 0
},
{
"CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
"RISK": "none",
"FILES": " Croc_bar.dll",
"NAME": "Croc Crawler",
"URL": " http://www.croccrawler.com/download/croccrawler_toolbar.html ",
"modified": 0
},
{
"CLSID": "{7B49A2A5-B45F-46F3-AC60-2578477671EE}",
"RISK": "high",
"FILES": " donk_bar.dll",
"NAME": "LOP",
"modified": 0
},
{
"CLSID": "{7B64270B-1216-47CE-9708-DE9D2D628CC5}",
"RISK": "high",
"FILES": " proventactics.dll",
"NAME": "ProvenTactics toolbar",
"URL": " http://www.proventactics.com/ ",
"modified": 0
},
{
"CLSID": "{7BA7B95F-9B92-4132-8012-E19B585CAF21}",
"RISK": "none",
"FILES": " Nutshell.dll",
"NAME": "Nutshell toolbar",
"URL": " http://www.torrez.org/projects/nutshell/ ",
"modified": 0
},
{
"CLSID": "{7C0D0F1A-AA1F-4F43-94EC-3F88651C8C7F}",
"RISK": "none",
"FILES": " Killafing3.dll",
"NAME": "KillaFing 3",
"modified": 0
},
{
"CLSID": "{7C24A476-8B03-46ed-8CCF-CE8AE7213C99}",
"RISK": "high",
"FILES": " seek99.dll",
"NAME": "Seek99 toolbar",
"URL": " http://big3.seek99.com/toolbar.htm ",
"modified": 0
},
{
"CLSID": "{7D9E713D-0388-4384-BDD8-2A42EB1C4F04}",
"RISK": "none",
"FILES": " rxcnbrsrctrl.dll",
"NAME": "ProxyConn Accelerator",
"URL": " http://www.proxyconn.com/ ",
"modified": 0
},
{
"CLSID": "{7DAAC7DE-9EF0-4FF0-BFA5-AFF3E899054C}",
"RISK": "none",
"FILES": " Tweakbho.dll",
"NAME": "Tweak Master",
"URL": " http://www.tweakmaster.com/ ",
"modified": 0
},
{
"CLSID": "{7DAFD8A1-A6F8-11D3-9B51-0000E85300BA}",
"RISK": "none",
"FILES": " Iehlpobj.dll",
"NAME": "GetIt",
"URL": " http://www.simtel.net/product.php?url_fb_product_page=39290 ",
"modified": 0
},
{
"CLSID": "{7DD896A9-7AEB-430F-955B-CD125604FDCB}",
"RISK": "high",
"FILES": " Veg32.dll, InvisiblePop.DLL",
"NAME": "DailyWinner Prize Bar",
"URL": " http://www.doxdesk.com/parasite/DailyWinner.html ",
"modified": 0
},
{
"CLSID": "{7E600446-2123-4CC9-A69D-7EEC55AB9956}",
"RISK": "none",
"FILES": " PUK.dll",
"NAME": "Popup Killer",
"URL": " http://www.downlinx.com/proghtml/263/26325.htm ",
"modified": 0
},
{
"CLSID": "{7E6CDC1C-3B90-47D7-B2A8-24438CA96075}",
"RISK": "none",
"FILES": " bho.dll",
"NAME": "iBest",
"URL": " http://cyberpoa.com.br/deupaunomicro/banibest.htm ",
"modified": 0
},
{
"CLSID": "{7E82235C-F31E-46CB-AF9F-1ADD94C585FF}",
"RISK": "none",
"FILES": " pstopper.dll",
"NAME": "Panicware Popup Stopper",
"URL": " http://www.panicware.com/ ",
"modified": 0
},
{
"CLSID": "{7EED2A74-002E-481F-A283-D96B81EA244B}",
"RISK": "none",
"FILES": " Psukbar.dll",
"NAME": "Pepesearch toolbar",
"URL": " www.pepesearch.co.uk ",
"modified": 0
},
{
"CLSID": "{80230FFE-53DD-11D2-AE5F-0000832F3A64}",
"RISK": "none",
"FILES": " clie.dll",
"NAME": "WestGroup Citelink",
"URL": " http://www.abiworld.org/citelink/citelinkfaq.html ",
"modified": 0
},
{
"CLSID": "{80672997-D58C-4190-9843-C6C61AF8FE97}",
"RISK": "high",
"FILES": " rundll16.dll",
"NAME": "BrowserAid/Rundll16",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{80841D20-757E-4A6B-9934-2B3CB9AE83CB}",
"RISK": "unknown",
"FILES": " Showbarbho.dll",
"NAME": "ShowBar",
"modified": 0
},
{
"CLSID": "{80BF4637-D65B-43F3-BB60-C5DD3D5FB7B9}",
"RISK": "none",
"FILES": " KVShell_1.dll ",
"NAME": "Jiangmin AntiVirus Bar",
"URL": " <a href=\\\"http://english.duba.net/duba_intr.htm\\\" target=\\\"_blank\\\">Jiangmin AntiVirus Bar</a>",
"modified": 0
},
{
"CLSID": "{80E81A0E-9741-4FBC-8EE3-3B78C04ADA1D}",
"RISK": "high",
"FILES": " TpBar.dll",
"NAME": "TOPicks",
"URL": " http://www.doxdesk.com/parasite/TOPicks.html ",
"modified": 0
},
{
"CLSID": "{81270159-E8F9-4713-9646-03531E0EEF58}",
"RISK": "high",
"FILES": " LIE1D6FF.DLL",
"NAME": "HTMLEdit trojan/hijacker",
"modified": 0
},
{
"CLSID": "{8151A854-F9E0-46F2-A1DC-72093BCA624F}",
"RISK": "none",
"FILES": " Banneradfilter.dll",
"NAME": "Banner Ad Filter",
"URL": " http://www.tooto.com/banneradfilter/ ",
"modified": 0
},
{
"CLSID": "{81766E08-CE68-4F23-95C4-C1468FDE68AA}",
"RISK": "none",
"FILES": " ZONNETSHELL.DLL",
"NAME": "Zonnet toolbar",
"URL": " <a href=\\\"http://www.zonnet.nl/toolbar/\\\" target=\\\"_blank\\\">Zonnet toolbar</a>",
"modified": 0
},
{
"CLSID": "{81F4066B-F330-4872-8094-3E9FBCCEC8C1}",
"RISK": "none",
"FILES": " RepliGoIEBar.dll",
"NAME": "RepliGo",
"URL": " <a href=\\\"http://www.cerience.com/\\\" target=\\\"_blank\\\">RepliGo</a>",
"modified": 0
},
{
"CLSID": "{82315A18-6CFB-44a7-BDFD-90E36537C252}",
"RISK": "high",
"FILES": " QuickSearchBar1_27.dll",
"NAME": "NewDotNet SearchBar",
"modified": 0
},
{
"CLSID": "{82315A18-6CFB-44a7-BDFD-90E36537C252}",
"RISK": "high",
"FILES": " QuickSearchBar1_27.dll ",
"NAME": "NewDotNet searchbar",
"modified": 0
},
{
"CLSID": "{82599E0A-8C81-11d7-9F97-0050FC5441CB}",
"RISK": "high",
"FILES": " shdocvw.dll",
"NAME": "TinyBar (do not delete the file itself",
"URL": " it`s a Windows system file!) http://www.doxdesk.com/parasite/TinyBar.html ",
"modified": 0
},
{
"CLSID": "{8272B062-BD4D-4EAD-A149-45B3CE3F5CDA}",
"RISK": "medium",
"FILES": " GPalm.dll",
"NAME": "GreasyPalm bar",
"URL": " http://www.greasypalm.co.uk/ ",
"modified": 0
},
{
"CLSID": "{82B98006-7A56-11D2-A26F-00C04F962769}",
"RISK": "high",
"FILES": " Flylib.dll",
"NAME": "Flyswat",
"URL": " http://accs-net.com/smallfish/flyswat.htm ",
"modified": 0
},
{
"CLSID": "{82DF1118-9B92-45d8-B78F-1737A69A06E1}",
"RISK": "none",
"FILES": " CheckIt86.dll",
"NAME": "CheckIT 86",
"URL": " http://www.smithmicro.com/checkit/c86home.tpl?cart=105637616214768186 ",
"modified": 0
},
{
"CLSID": "{8333C319-0669-4893-A418-F56D9249FCA6}",
"RISK": "high",
"FILES": " DailyToolbar.dll",
"NAME": "DailyToolbar",
"URL": " p0rn related.",
"modified": 0
},
{
"CLSID": "{834261E1-DD97-4177-853B-C907E5D5BD6E}",
"RISK": "high",
"FILES": " dpe.dll",
"NAME": "CWS hijacker",
"modified": 0
},
{
"CLSID": "{83A30C59-3A50-49E6-9DAF-4923C4EA3C23}",
"RISK": "none",
"FILES": " LgxIEBar.dll",
"NAME": "WebSpeech",
"URL": " http://www.webspeech.de/index1.php ",
"modified": 0
},
{
"CLSID": "{83DE62E0-5805-11D8-9B25-00E04C60FAF2}",
"RISK": "high",
"FILES": " 2_0_1browserhelper2.dll",
"NAME": "BlazeFind hijacker variant",
"modified": 0
},
{
"CLSID": "{856D6A8E-A24C-498A-A55A-2B25C606A6B4}",
"RISK": "high",
"FILES": " netster.dll, _netster.dll ",
"NAME": "Netster Smart Browse Toolbar",
"URL": " http://at.netster.com/Index.asp?Site=YXQubmV0c3Rlci5jb20%3D ",
"modified": 0
},
{
"CLSID": "{85810C93-C14C-11D5-BC4B-0050BA28E4FE}",
"RISK": "none",
"FILES": " Popkill.dll",
"NAME": "Super Popup Blocker",
"URL": " http://www.pop-up-killer.biz/ ",
"modified": 0
},
{
"CLSID": "{858126B0-3708-4051-AE8E-B48521401CA2}",
"RISK": "high",
"FILES": " ctsr*.dll (* = random digit)",
"NAME": "ezSearching",
"URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
"modified": 0
},
{
"CLSID": "{85A702BA-EA8F-4B83-AA07-07A5186ACD7E}",
"RISK": "high",
"FILES": " ME*.dll, SS*.DLL, (* = random digit)",
"NAME": "Medialoads Enhanced/Downloadware",
"modified": 0
},
{
"CLSID": "{85C2C2A1-3F20-4EAD-ADC3-BD3217391543}",
"RISK": "high",
"FILES": " Rundll16.dll",
"NAME": "BrowserAid/Rundll16",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{85C76FBD-6218-4379-95C1-B4F37BF6180}",
"RISK": "high",
"FILES": " SearchBar.dll",
"NAME": "PopMonster SearchNav.com/PopNav foistware",
"modified": 0
},
{
"CLSID": "{85DDD882-701E-401B-8A7D-D51227048214}",
"RISK": "medium",
"FILES": " Iewatch.dll",
"NAME": "IEWatch monitoring program",
"URL": " http://www.eanaptyxis.com/default.htm ",
"modified": 0
},
{
"CLSID": "{862fb893-b24b-4fad-80d3-a1158eb34db4}",
"RISK": "medium",
"FILES": " cnetsearchbar.dll",
"NAME": "CNET SearchBar",
"URL": " <a href=\\\"http://www.search.com/guides/sb/faq.html\\\" target=\\\"_blank\\\">CNET SearchBar</a>",
"modified": 0
},
{
"CLSID": "{86B09C4E-4137-4863-B585-380205F1F774}",
"RISK": "none",
"FILES": " CSShell.dll ",
"NAME": "ContentSaver Offline Browser",
"URL": " <a href=\\\"http://www.macropool.com/en/index.html\\\" target=\\\"_blank\\\">ContentSaver Offline Browser</a>",
"modified": 0
},
{
"CLSID": "{86BCA93E-457B-4054-AFB0-E428DA1563E1}",
"RISK": "none",
"FILES": " Petoolbar401.dll",
"NAME": "Popup Eliminator",
"URL": " http://www.popupeliminator.info/ ",
"modified": 0
},
{
"CLSID": "{87766247-311C-43B4-8499-3D5FEC94A183}",
"RISK": "high",
"FILES": " Wtoolsb.dll",
"NAME": "HuntBar variant",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/HuntBar.html\\\">HuntBar variant</a>",
"modified": 0
},
{
"CLSID": "{8786386E-4B22-11D6-9C60-E5DA06D87378}",
"RISK": "high",
"FILES": " BandObjs1,0,0,1.dll",
"NAME": "BandObjects/eStart",
"URL": " http://www.doxdesk.com/parasite/eStart.html ",
"modified": 0
},
{
"CLSID": "{87B1E57C-FF70-4C69-9CE8-57CB8F67ABA8}",
"RISK": "high",
"FILES": " Wbm.dll",
"NAME": "Wishbone Toolbar",
"URL": " http://www.wishbonemedia.com/products.html ",
"modified": 0
},
{
"CLSID": "{88C5C070-8C60-4F45-9345-3Ffb96334Cad}",
"RISK": "none",
"FILES": " Openwaresiepatch.dll, IEWorkaround.dll",
"NAME": "Openwares IE patch",
"modified": 0
},
{
"CLSID": "{89044184-F260-4FDD-8FAB-2662814846E5}",
"RISK": "medium",
"FILES": " mstfgher.dll, msnetxxi.dll",
"NAME": "eBlaster email recorder and key logger",
"URL": " http://spectorsoft.com/products/eBlaster_Windows/index.html ",
"modified": 0
},
{
"CLSID": "{8952A998-1E7E-4716-B23D-3DBE03910972}",
"RISK": "high",
"FILES": " Toolbar.dll",
"NAME": "HuntBar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{89AEAB46-8E8A-4045-9003-5614BFBFE90B}",
"RISK": "high",
"FILES": " Winlocatorhelper.dll",
"NAME": "Xlocator/Winlocator",
"modified": 0
},
{
"CLSID": "{8A05273A-2EA5-42DE-AA75-59EA7D9D50D7}",
"RISK": "high",
"FILES": " Msiets.dll",
"NAME": "Huntbar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{8A0DCBDA-6E20-489C-9041-C1E8A0352E75}",
"RISK": "high",
"FILES": " NN_Bar.dll, NN_Bar**.dll (* = random digit)",
"NAME": "NetNucleus/Mirar webband",
"modified": 0
},
{
"CLSID": "{8A321C7D-9CED-45A8-870D-DAE843A45FD0}",
"RISK": "none",
"FILES": " Popupkilller.dll",
"NAME": "Armorwall firewall",
"URL": " http://www.totalfirewall.com/ ",
"modified": 0
},
{
"CLSID": "{8B3868B4-EBA8-48FA-A19B-E1DFB99066FA}",
"RISK": "none",
"FILES": " Flashcap.dll, FCBHO.dll",
"NAME": "FlashCapture",
"URL": " http://www.flashcapture.com/ ",
"modified": 0
},
{
"CLSID": "{8B68564D-53FD-4293-B80C-993A9F3988EE}",
"RISK": "none",
"FILES": " FSBar.dll",
"NAME": "Freeserve toolbar",
"modified": 0
},
{
"CLSID": "{8C6685AB-43FF-4BF0-822C-03F03E0B47EA}",
"RISK": "medium",
"FILES": " myfastaccess.dll",
"NAME": "My-fast-access",
"URL": " http://www.my-fast-access.com/first/ ",
"modified": 0
},
{
"CLSID": "{8DB3D69D-DA5E-4165-B781-72A761790672}",
"RISK": "none",
"FILES": " Bhodshop.dll",
"NAME": "Discover Deskshop",
"URL": " http://www2.discovercard.com/shopcenter/deskshop/main.shtml ",
"modified": 0
},
{
"CLSID": "{8DB672BD-330F-11D8-8168-00C02623048A}",
"RISK": "high",
"FILES": " Testadit.dll ",
"NAME": "ezSearching",
"URL": " http://www.doxdesk.com/parasite/ezSearching.html ",
"modified": 0
},
{
"CLSID": "{8E09B2CC-C2A0-4786-B099-0B9101E92CA1}",
"RISK": "none",
"FILES": " YellowToolbar.dll",
"NAME": "Yellow Internet Toolbar",
"URL": " http://www.yellowinternet.com/toolbar.asp ",
"modified": 0
},
{
"CLSID": "{8E1E80F3-A3F0-41d4-BAA7-470442CFC906}",
"RISK": "medium",
"FILES": " Nocs.dll",
"NAME": "Nocs/NitroClicks toolbar",
"modified": 0
},
{
"CLSID": "{8E2FF476-C576-4637-9F73-5FFE2116CC12}",
"RISK": "none",
"FILES": " jetbar.dll",
"NAME": "Jetbar",
"modified": 0
},
{
"CLSID": "{8E4C16F3-45C8-4B24-99E6-F55082B7C4F1}",
"RISK": "high",
"FILES": " Ineb.dll",
"NAME": "i-Lookup",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{8E718888-423F-11D2-876E-00A0C9082467}",
"RISK": "none",
"FILES": " msdxm.ocx",
"NAME": "Internet Explorer Radio Bar",
"modified": 0
},
{
"CLSID": "{8E85E48B-7FD4-423D-BFAD-FA345D497EB5}",
"RISK": "none",
"FILES": " ShellBar.dll",
"NAME": "Command Prompt Bar",
"URL": " http://perso.wanadoo.fr/ruindivision/ ",
"modified": 0
},
{
"CLSID": "{8E929F51-5914-11D6-971F-0050FC3F9161}",
"RISK": "none",
"FILES": " IEBand.dll",
"NAME": "Pictures toolbar",
"URL": " http://www.diodia.com/features.htm ",
"modified": 0
},
{
"CLSID": "{8E9C4F32-BD3F-4C49-9AF5-3F4C5D32EBD7}",
"RISK": "high",
"FILES": " mbho.dll",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{8EA2F0B0-CA9F-4EAA-A21E-7D14D35E8D68}",
"RISK": "none",
"FILES": " popup.dll",
"NAME": "StopPops",
"URL": " <a href=\\\"http://www.stoppops.com/?ad_id=2501\\\" target=\\\"_blank\\\">StopPops</a>",
"modified": 0
},
{
"CLSID": "{8F05B1A8-9D77-4B8F-AF54-6B2202066F95}",
"RISK": "none",
"FILES": " popupus.dll",
"NAME": "Panicware Popup Stopper",
"URL": " http://www.panicware.com/ ",
"modified": 0
},
{
"CLSID": "{8F0D6EED-BC11-4E7F-8276-9748947E4A50}",
"RISK": "high",
"FILES": " Winlocator.dll",
"NAME": "Xlocator/Winlocator",
"modified": 0
},
{
"CLSID": "{8F4E5661-F99E-4B3E-8D85-0EA71C0748E4}",
"RISK": "high",
"FILES": " Wsem***.dll , (* = digit)",
"NAME": "MoneyTree/DyFuCa",
"URL": " http://www.doxdesk.com/parasite/MoneyTree.html ",
"modified": 0
},
{
"CLSID": "{8F6E45AE-F89E-4E54-AAC5-16232008816E}",
"RISK": "medium",
"FILES": " GB_BHO.DLL",
"NAME": "LittleBigBar",
"URL": " http://www.littlebigbar.com/ ",
"modified": 0
},
{
"CLSID": "{8FB0F3E2-5193-11d7-9F88-0050FC5441CB}",
"RISK": "high",
"FILES": " shdocvw.dll, NOTE: Do not delete dll itself; its a Windows system file!)",
"NAME": "Tinybar",
"URL": " http://www.doxdesk.com/parasite/TinyBar.html ",
"modified": 0
},
{
"CLSID": "{8FE3B060-4574-4691-B15A-B8A6703EBF6F}",
"RISK": "none",
"FILES": " Addressbarplus.dll",
"NAME": "Addressbar Plus",
"URL": " www.adressbar.com ",
"modified": 0
},
{
"CLSID": "{8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3}",
"RISK": "none",
"FILES": " SnagItIEAddin.dll",
"NAME": "SnagIt",
"URL": " http://www.techsmith.com/products/snagit/default.asp ",
"modified": 0
},
{
"CLSID": "{904691A1-C588-4B27-BC47-D8599EDB3F97}",
"RISK": "none",
"FILES": " TelefoonBar.dll",
"NAME": "Dutch Phonebook bar",
"URL": " <a target=_top href=\"http://www.telefoongidsmedia.nl/telefoongidswm/show/id=44023\">Dutch Phonebook bar</a>",
"modified": 0
},
{
"CLSID": "{907CA0E5-CE84-11D6-9508-02608CDD2841}",
"RISK": "high",
"FILES": " SEARCH~2.DLL",
"NAME": "SearchSquire",
"URL": " http://www.doxdesk.com/parasite/SearchSquire.html ",
"modified": 0
},
{
"CLSID": "{907CA0E5-CE84-11D6-9508-02608CDD2842}",
"RISK": "high",
"FILES": " SearchSquire2.dll",
"NAME": "SearchSquire",
"URL": " http://www.doxdesk.com/parasite/SearchSquire.html ",
"modified": 0
},
{
"CLSID": "{907CA0E5-CE84-11D6-9508-02608CDD2846}",
"RISK": "high",
"FILES": " SearchUpdate33.dll, SEARCH~1.DLL",
"NAME": "SearchSquire",
"URL": " http://doxdesk.com/parasite/SearchSquire.html ",
"modified": 0
},
{
"CLSID": "{90DA654C-083C-11D6-8A9D-0050BA8452C0}",
"RISK": "high",
"FILES": " sbsrch_v2.dll",
"NAME": "SubSearch",
"URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
"modified": 0
},
{
"CLSID": "{90E34F98-E3E6-4CD7-A592-E964FED8AF78}",
"RISK": "high",
"FILES": " iexplorr26.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/InetSpeak.html\\\" target=\\\"_blank\\\">InetSpeak/Iexplorr</a>",
"modified": 0
},
{
"CLSID": "{91397D20-1446-11D4-8AF4-0040CA1127B6}",
"RISK": "high",
"FILES": " YNDBAR.DLL",
"NAME": "Russian Searchbar",
"URL": " <a target=_top href=\"http://bar.yandex.ru\">Russian Searchbar</a>",
"modified": 0
},
{
"CLSID": "{914AFB33-550B-4BD0-B4EF-8DA185504836}",
"RISK": "high",
"FILES": " Winobject.dll",
"NAME": "IEPlugin",
"URL": " http://www.doxdesk.com/parasite/IEPlugin.html ",
"modified": 0
},
{
"CLSID": "{91DE4477-9CDC-4806-9BCB-28A963988E94}",
"RISK": "none",
"FILES": " RepliGoIEHelper.dll",
"NAME": "RepliGo",
"URL": " <a href=\\\"http://www.cerience.com/\\\" target=\\\"_blank\\\">RepliGo</a>",
"modified": 0
},
{
"CLSID": "{92C7D65C-52F3-4545-8A35-213D730DB1ED}",
"RISK": "high",
"FILES": " Spredirect.dll",
"NAME": "ActualNames SearchPike",
"URL": " http://www.doxdesk.com/parasite/ActualNames.html ",
"modified": 0
},
{
"CLSID": "{92CBA277-292B-461f-9DEA-67A5C834E101}",
"RISK": "none",
"FILES": " Linkmgr.dll",
"NAME": "Ask Jeeves toolbar",
"URL": " http://sp.ask.com/docs/toolbar/ ",
"modified": 0
},
{
"CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
"RISK": "high",
"FILES": " toolbar.dll",
"NAME": "WhyPPC",
"URL": " <a target=_top href=\"http://whyppc.com/privacy.php\">WhyPPC</a>",
"modified": 0
},
{
"CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
"RISK": "none",
"FILES": " Mrwords.dll",
"NAME": "MrWordsmith Search toolbar",
"URL": " http://toolbar.mrwordsmith.com/ ",
"modified": 0
},
{
"CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
"RISK": "none",
"FILES": " ast.dll",
"NAME": "AST Toolbar",
"URL": " http://www.ast-ss.com/toolbar/toolbar_intro.asp ",
"modified": 0
},
{
"CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
"RISK": "none",
"FILES": " toolbar.dll",
"NAME": "Dutch search toolbar",
"modified": 0
},
{
"CLSID": "{92F02779-6D88-4958-8AD3-83C12D86ADC7}",
"RISK": "high",
"FILES": " toolbar.dll",
"NAME": "Fizzle Wizzle Entertainment Searchbar",
"modified": 0
},
{
"CLSID": "{930E4DE1-973D-42D6-BF6E-6788E06BD003}",
"RISK": "none",
"FILES": " Webbug.dll",
"NAME": "Bugnosis",
"URL": " <a target=_top href=\"http://www.bugnosis.org/\">Bugnosis</a>",
"modified": 0
},
{
"CLSID": "{94326E3F-F51F-4863-A832-4ACD0D7D4BC3}",
"RISK": "high",
"FILES": " iexplorr27.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/InetSpeak.html\\\" target=\\\"_blank\\\">InetSpeak/Iexplorr</a>",
"modified": 0
},
{
"CLSID": "{947E6D5A-4B9F-4CF4-91B3-562CA8D03313}",
"RISK": "high",
"FILES": " IE_ClrSch.dll",
"NAME": "IGetNet/ClearSearch",
"URL": " http://www.doxdesk.com/parasite/IGetNet.html ",
"modified": 0
},
{
"CLSID": "{94927A13-4AAA-476A-989D-392456427688}",
"RISK": "high",
"FILES": " ms****.dll, urlcli*******.dll (* = random char)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{95188727-288F-4581-A48D-EAB3BD027314}",
"RISK": "none",
"FILES": " ZendIEToolbar.dll",
"NAME": "Zend Studio",
"URL": " <a href=\\\"http://www.zend.com/store/products/zend-studio.php\\\" target=\\\"_blank\\\">Zend Studio</a>",
"modified": 0
},
{
"CLSID": "{9527D42F-D666-11D3-B8DD-00600838CD5F}",
"RISK": "none",
"FILES": " IETie.dll, nbiels.dll",
"NAME": "GhostSurf",
"URL": " http://www.tenebril.com/products/ghostsurf/ ",
"modified": 0
},
{
"CLSID": "{9527D42F-D666-11D3-B8DD-00600838CD5F}",
"RISK": "medium",
"FILES": " dlIE.dll",
"NAME": "Slingshot",
"URL": " <a href=\\\"http://www.tenebril.com/products/slingshot/\\\" target=\\\"_blank\\\">Slingshot</a>",
"modified": 0
},
{
"CLSID": "{954F618B-0DEC-4D1A-9317-E0FC96F87865}",
"RISK": "none",
"FILES": " IETOOL~1.DLL",
"NAME": "Alive Text to Speech",
"URL": " http://www.text-speech.com/ ",
"modified": 0
},
{
"CLSID": "{9595C62C-76C6-49A6-9BDA-3253DD7A34FF}",
"RISK": "none",
"FILES": " Fdabar.dll, Fdabar99.dll ",
"NAME": "Free Downloads Accelerator",
"URL": " http://www.freedownloadscenter.com/Games/Tetris_Clone_Games/Bloxx_Download.html ",
"modified": 0
},
{
"CLSID": "{95E02C52-05FC-425D-8378-9DA70F9CD763}",
"RISK": "high",
"FILES": " Aadl.dll",
"NAME": "Superlogy.com hijacker",
"modified": 0
},
{
"CLSID": "{965E6B07-6832-4738-BDBE-25F226BA2AB0}",
"RISK": "high",
"FILES": " Qabar.dll",
"NAME": "AdultLinks Qabar",
"URL": " http://www.doxdesk.com/parasite/AdultLinks.html ",
"modified": 0
},
{
"CLSID": "{9677F3F1-E994-451F-805F-7148CC8AE040}",
"RISK": "high",
"FILES": " Ultrabar.dll",
"NAME": "WebCrawler toolbar",
"modified": 0
},
{
"CLSID": "{96BBDFE1-2951-4F81-811E-31DF6436A329}",
"RISK": "high",
"FILES": " custtlb.dll",
"NAME": "SCN TOOLBAR PROBLEMS",
"URL": " <a href=\\\"http://sportscollectors.net/home/default.asp\\\" target=\\\"_blank\\\">SCN TOOLBAR PROBLEMS</a>",
"modified": 0
},
{
"CLSID": "{96BE1D9A-9E54-4344-A27A-37C088D64FB4}",
"RISK": "high",
"FILES": " dnsrep*******.dll , (* = random char), Ms****.dll (* = random char)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{96BE1D9A-9E54-4344-A27A-37C088D64FB4}",
"RISK": "high",
"FILES": " mseffm.dll",
"NAME": "ClientMan",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/ClientMan.html\\\"TARGET=\\\"_blank\\\">ClientMan</a>",
"modified": 0
},
{
"CLSID": "{96DA5BEE-4ACC-476C-B3EC-54C6730C4293}",
"RISK": "high",
"FILES": " brbho.dll, brbho***.dll, (* = random char) ",
"NAME": "Comet Cursor",
"URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
"modified": 0
},
{
"CLSID": "{9819C369-5F62-4D37-9A42-44043A742C1E}",
"RISK": "high",
"FILES": " redirect.dll",
"NAME": "Dynamic Desktop Media adware",
"modified": 0
},
{
"CLSID": "{9885224C-1217-4c5f-83C2-00002E6CEF2B}",
"RISK": "none",
"FILES": " unknown",
"NAME": "Neotrace",
"URL": " http://www.networkingfiles.com/PingFinger/Neotrace.htm ",
"modified": 0
},
{
"CLSID": "{9896231A-C487-43A5-8369-6EC9B0A96CC0}",
"RISK": "high",
"FILES": " WStart.dll",
"NAME": "unidentified hijacker",
"modified": 0
},
{
"CLSID": "{98C92840-EB1C-40bd-B6A5-395EC9CD6510}",
"RISK": "none",
"FILES": " IGIEBar.dll",
"NAME": "InstantGet",
"URL": " http://www.majorgeeks.com/download.php?det=3886 ",
"modified": 0
},
{
"CLSID": "{98D7B53E-B1D2-4755-B0A4-703E18FF91E8}",
"RISK": "high",
"FILES": " M030106SHOP.DLL",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{98DBBF16-CA43-4c33-BE80-99E6694468A4}",
"RISK": "high",
"FILES": " msole.dll, msmk.dll",
"NAME": "CoolWebSearch/Payfortraffic.net",
"modified": 0
},
{
"CLSID": "{98DE779A-2364-4293-AB71-2B97C61C4640}",
"RISK": "none",
"FILES": " Fdahlp.dll",
"NAME": "Free Downloads Accelerator",
"URL": " http://www.freedownloadscenter.com/Games/Tetris_Clone_Games/Bloxx_Download.html ",
"modified": 0
},
{
"CLSID": "{99A10100-66BB-11D4-A02A-00600818E7D8}",
"RISK": "none",
"FILES": " wziebs.dll",
"NAME": "WinZip",
"modified": 0
},
{
"CLSID": "{99AFC088-C0DD-40ED-92D8-0C53E8997510}",
"RISK": "medium",
"FILES": " grapevine.dll",
"NAME": "WWGrapevine Toolbar",
"modified": 0
},
{
"CLSID": "{99EBA16F-C13A-40a6-A9C7-5F3EEC4E7BE6}",
"RISK": "none",
"FILES": " AKServer.dll",
"NAME": "Ad Killer",
"modified": 0
},
{
"CLSID": "{9A23B8A4-C6C9-4A68-8FA6-5F905DC8FF80}",
"RISK": "none",
"FILES": " PKExt.dll",
"NAME": "AbsoluteShield IE Popup blocker",
"URL": " http://www.sys-shield.com/popupblocker.htm ",
"modified": 0
},
{
"CLSID": "{9AD55269-A21C-4260-BA7F-866FD09E8A8E}",
"RISK": "high",
"FILES": " EasyBarShell.dll",
"NAME": "Easybar",
"URL": " http://www.easybar.nl/ ",
"modified": 0
},
{
"CLSID": "{9C691A33-7DDA-4C2F-BE4C-C176083F35CF}",
"RISK": "high",
"FILES": " bridge.dll",
"NAME": "WinFavorites/Bridge",
"modified": 0
},
{
"CLSID": "{9C777253-3E17-42d6-897A-11B8617A8F7C}",
"RISK": "high",
"FILES": " IELib.dll",
"NAME": "RedV Protector Suite",
"URL": " http://services.bee.net/redv/protectorsuite/ ",
"modified": 0
},
{
"CLSID": "{9DD4258A-7138-49C4-8D34-587879A5C7A4}",
"RISK": "high",
"FILES": " Msnbho.dll",
"NAME": "MSN SmartTags",
"URL": " http://www.zdnet.com/anchordesk/stories/story/010738277196700.html ",
"modified": 0
},
{
"CLSID": "{9E0C6AAD-A8E3-4E49-9DBD-786099B599A4}",
"RISK": "none",
"FILES": " AccessibilityToolbar.dll",
"NAME": "AccessibilityToolbar",
"URL": " <a href=\\\"http://www.nils.org.au/ais/web/resources/toolbar/\\\" target=\\\"_blank\\\">AccessibilityToolbar</a>",
"modified": 0
},
{
"CLSID": "{9E1128F1-53FA-11d5-8490-0048548030CA}",
"RISK": "none",
"FILES": " m-wtoolbar.dll",
"NAME": "Merriam-Webster Toolbar",
"URL": " http://www.m-w.com/tools/toolbar/ ",
"modified": 0
},
{
"CLSID": "{9E3849D6-41EF-4B2F-86B7-632EF90758E4}",
"RISK": "none",
"FILES": " V3Bar.dll",
"NAME": "Ahnlab V3 Antivirus",
"URL": " http://home.ahnlab.com/english/product/01_1.html ",
"modified": 0
},
{
"CLSID": "{9E5BD40E-6287-11D6-9772-0002A5DD2483}",
"RISK": "none",
"FILES": " unknown",
"NAME": "JBrowse toolbar",
"URL": " http://jbrowse.com/products/jbrowse/doc/helppage.html ",
"modified": 0
},
{
"CLSID": "{9ECB9560-04F9-4bbc-943D-298DDF1699E1}",
"RISK": "none",
"FILES": " NISShExt.dll",
"NAME": "NIS 2004",
"URL": " http://www.symantec.com/sabu/nis/nis_pe/ ",
"modified": 0
},
{
"CLSID": "{9EEE0111-E81A-11D6-B1B2-444553540000}",
"RISK": "none",
"FILES": " ToolBand.dll",
"NAME": "Addresses Toolbar",
"URL": " http://www.addresses.com/toolbar_download.php ",
"modified": 0
},
{
"CLSID": "{9F6A22E6-1682-4F82-9B72-6314794CB253}",
"RISK": "none",
"FILES": " Updated.dll",
"NAME": "Pop Blocker",
"URL": " http://www.iepopblocker.com/ ",
"modified": 0
},
{
"CLSID": "{9FB534E3-67CB-4307-AE0A-9E8B5581BE2C}",
"RISK": "high",
"FILES": " WinSB.dll",
"NAME": "\"Windows Search Bar\" hijacker",
"modified": 0
},
{
"CLSID": "{9FD12933-810D-4526-B7C4-0914E098D384}",
"RISK": "medium",
"FILES": " BH205171.DLL",
"NAME": "Kontiki",
"URL": " http://www.extremetech.com/article2/0397336507300.asp ",
"modified": 0
},
{
"CLSID": "{A045DC85-FC44-45be-8A50-E4F9C62C9A84}",
"RISK": "high",
"FILES": " PerfectNavBHO.dll, PERFEC~1.DLL",
"NAME": "IncrediFind variant",
"URL": " http://www.doxdesk.com/parasite/KeenValue.html ",
"modified": 0
},
{
"CLSID": "{A096A159-4E58-45A9-8EE6-B11466851181}",
"RISK": "high",
"FILES": " msietk1020.dll, msiebho.dll",
"NAME": "SearchFu/123Search",
"URL": " http://www.pestpatrol.com/PestInfo/s/search123.asp ",
"modified": 0
},
{
"CLSID": "{A097840A-61F8-4B89-8693-F68F641CC838}",
"RISK": "high",
"FILES": " urlcli*******.dll (* = random digit), Ms****.dll (* = random char)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html TARGET= ",
"modified": 0
},
{
"CLSID": "{A09790E7-DD00-4A83-B632-5B563423CFBB}",
"RISK": "none",
"FILES": " PopupKillerIEDLL.dll",
"NAME": "Smart Popup killer",
"URL": " http://www.firstnetsoft.com/ ",
"modified": 0
},
{
"CLSID": "{A114D52B-870C-4F15-8021-B6D7F91A054B}",
"RISK": "none",
"FILES": " IE.dll",
"NAME": "iFinger software",
"URL": " http://www.ifinger.com/demo.asp?design=7 ",
"modified": 0
},
{
"CLSID": "{A116A5C1-AD77-446C-992A-F56200B112DB}",
"RISK": "high",
"FILES": " Homepage.dll, Hmepge.dll, ",
"NAME": "Searchex",
"URL": " http://www.doxdesk.com/parasite/Searchex.html ",
"modified": 0
},
{
"CLSID": "{A1A70944-467A-4080-8BB0-13F0B2069F45}",
"RISK": "unknown",
"FILES": " XPLIEUCG.DLL",
"NAME": "?",
"modified": 0
},
{
"CLSID": "{A1DD937D-71E1-4BB5-BD5D-1B01B9CB1C2F}",
"RISK": "high",
"FILES": " WinSB.dll",
"NAME": "\\\"Windows Search Bar\\\" hijacker",
"modified": 0
},
{
"CLSID": "{A28C2A31-3AB0-4118-922F-F6B3184F5495}",
"RISK": "high",
"FILES": " WebCompass.dll",
"NAME": "BonziBuddy",
"URL": " http://accs-net.com/smallfish/bonzi.htm ",
"modified": 0
},
{
"CLSID": "{A3E02B37-8608-4f57-AD58-AB91F32BA4F4}",
"RISK": "high",
"FILES": " Masterbar.dll",
"NAME": "Pugi/Masterbar",
"URL": " http://www.doxdesk.com/parasite/Pugi.html ",
"modified": 0
},
{
"CLSID": "{A3E3F04C-F98C-4295-95EF-41C57425B077}",
"RISK": "high",
"FILES": " CNBarIE.dll",
"NAME": "Commonname toolbar",
"URL": " http://www.doxdesk.com/parasite/CommonName.html ",
"modified": 0
},
{
"CLSID": "{A44CBB0B-C77D-4BF5-87CC-B4EE79AD1B7E}",
"RISK": "none",
"FILES": " JD2002.dll",
"NAME": "Justdo software",
"URL": " http://www.justdosoft.com/ ",
"modified": 0
},
{
"CLSID": "{A491D208-B353-490F-B81A-A8A3DC97042D}",
"RISK": "none",
"FILES": " smiehlp.dll",
"NAME": "Secretmaker",
"URL": " <a href=\\\"http://www.secretmaker.com/\\\" target=\\\"_blank\\\">Secretmaker</a>",
"modified": 0
},
{
"CLSID": "{A49AA76F-7215-4F80-97D6-9A7E16A5FEE1}",
"RISK": "high",
"FILES": " coolbar.dll",
"NAME": "LookThru Cool Search Bar",
"modified": 0
},
{
"CLSID": "{A5366673-E8CA-11D3-9CD9-0090271D075B}",
"RISK": "none",
"FILES": " Jccatch.dll",
"NAME": "FlashGet",
"URL": " http://www.amazesoft.com/ ",
"modified": 0
},
{
"CLSID": "{A5483501-070C-41DD-AF44-9BD8864B3015}",
"RISK": "high",
"FILES": " httper.dll",
"NAME": "Httper",
"URL": " http://www.doxdesk.com/parasite/Httper.html ",
"modified": 0
},
{
"CLSID": "{A55581DC-2CDB-4089-8878-71A080B22342}",
"RISK": "high",
"FILES": " Autosearch.dll, AUTOSE~1.DLL",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{A58686ED-FC46-44C3-95C6-4A812AB776F1}",
"RISK": "none",
"FILES": " FerretBand.dll",
"NAME": "WebFerret",
"URL": " http://www.ferretsoft.com/learn.htm ",
"modified": 0
},
{
"CLSID": "{A586BE00-52AC-11D3-A075-E51A86A6C62B}",
"RISK": "unknown",
"FILES": " IEHelper.dll",
"NAME": "ParentPresent - PP Browser",
"URL": " http://www.parentpresent.org/Browser.htm ",
"modified": 0
},
{
"CLSID": "{A6250FB8-2206-499E-A7AA-E1EC437E71C0}",
"RISK": "high",
"FILES": " Msielink.dll",
"NAME": "Huntbar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{A6475E6B-3C2E-4B1F-82FD-8F1C0B1D8AD0}",
"RISK": "high",
"FILES": " BabeIE.dll",
"NAME": "Commonname toolbar",
"URL": " http://www.doxdesk.com/parasite/CommonName.html ",
"modified": 0
},
{
"CLSID": "{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB}",
"RISK": "none",
"FILES": " advsbar.dll",
"NAME": "Advanced Stock Bar",
"URL": " http://www.ashkon.com/stockbar/ ",
"modified": 0
},
{
"CLSID": "{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB}",
"RISK": "unknown",
"FILES": " SIMPLE~1.DLL",
"NAME": "A Simple Internet Toolbar",
"modified": 0
},
{
"CLSID": "{A6890AA5-C6C7-4BCF-A46D-0FDAC4EA90EB}",
"RISK": "medium",
"FILES": " PCHEasysearch.dll",
"NAME": "PCH EasySearchBar",
"modified": 0
},
{
"CLSID": "{A6927151-F5B4-11D4-AE7A-00D00925CF52}",
"RISK": "none",
"FILES": " Iehelper.dll",
"NAME": "DlExpert",
"URL": " http://www.yanew.com/ ",
"modified": 0
},
{
"CLSID": "{A6F42CAD-2559-48DF-AF30-89E480AF5DFA}",
"RISK": "high",
"FILES": " Bho.dll",
"NAME": "Adware.IEPageHelper",
"modified": 0
},
{
"CLSID": "{A76066C9-941B-4209-9D96-0AC80501100D}",
"RISK": "high",
"FILES": " iexplorr11.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{A85C4A1B-BD36-44E5-A70F-8EC347D9B24F}",
"RISK": "high",
"FILES": " bs3.dll",
"NAME": "BookedSpace - Remanent",
"URL": " http://www.doxdesk.com/parasite/BookedSpace.html ",
"modified": 0
},
{
"CLSID": "{A8B9F08F-2FC4-4ADE-9049-CFBA586971BA}",
"RISK": "high",
"FILES": " Bho2.dll",
"NAME": "HighTraffic",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/HighTraffic.html\\\" target=\\\"_blank\\\">HighTraffic</a>",
"modified": 0
},
{
"CLSID": "{A8E16533-7A2A-43F1-9EE9-901136EBA5D8}",
"RISK": "none",
"FILES": " Admintoobar.dll",
"NAME": "Adminimizer toolbar",
"URL": " http://www.aspmodules.com/at/ ",
"modified": 0
},
{
"CLSID": "{A94EDD52-85B3-472F-8BC0-D651D760FBF8}",
"RISK": "none",
"FILES": " PopupZeroIEDLL.dll",
"NAME": "Popup Zero Pro",
"URL": " http://www.pcssafe.com/popupzero.html ",
"modified": 0
},
{
"CLSID": "{A97CA2C0-78CF-11D7-9945-0008A11C885C}",
"RISK": "unknown",
"FILES": " D3DIIM.DLL",
"NAME": "?",
"modified": 0
},
{
"CLSID": "{A9EEF0D7-5695-45BA-8943-ED3B95A50BD2}",
"RISK": "high",
"FILES": " CheckUrl.dll",
"NAME": "CheckUrl",
"modified": 0
},
{
"CLSID": "{AA58ED58-01DD-4d91-8333-CF10577473F7}",
"RISK": "none",
"FILES": " googletoolbar.dll, googletoolbar*.dll (* = number), googletoolbar_en_*.**-big.dll, Googletoolbar_en_*.*.**-deleon.dll.",
"NAME": "Google toolbar",
"URL": " http://toolbar.google.com/ ",
"modified": 0
},
{
"CLSID": "{AB77A7BF-8C5B-486A-B547-F9AD2B41A904}",
"RISK": "none",
"FILES": " BROWSERHELPER.DLL",
"NAME": "Evernet",
"URL": " http://www.evernetgroup.com/ ",
"modified": 0
},
{
"CLSID": "{ACB1E670-3217-45C4-A021-6B829A8A27CB}",
"RISK": "none",
"FILES": " VSCShellExtension.dll",
"NAME": "McAfee Virusscan",
"URL": " http://www.mcafee.com/default.asp ",
"modified": 0
},
{
"CLSID": "{AE113CC0-1115-BDD1-1B3D-229549C10001}",
"RISK": "none",
"FILES": " MHTQS_M.dll",
"NAME": "MHT QuickSaver",
"URL": " http://www.sycory.com/mht_quick_saver.htm ",
"modified": 0
},
{
"CLSID": "{AE7CD045-E861-484f-8273-0445EE161910}",
"RISK": "none",
"FILES": " AcroIEFavClient.dll",
"NAME": "Adobe Acrobat",
"URL": " http://www.adobe.com/products/acrobatpro/main.html ",
"modified": 0
},
{
"CLSID": "{AEE46806-2C5A-4A4E-A5DD-B4531F64A187}",
"RISK": "high",
"FILES": " ********.dll (* = random char)",
"NAME": "searchsprint bar",
"modified": 0
},
{
"CLSID": "{AEFCDEC8-EB7D-429F-BC73-4F30D07BFE41}",
"RISK": "high",
"FILES": " CTADL1.DLL",
"NAME": "EzCybersearch variant",
"modified": 0
},
{
"CLSID": "{AF657644-964C-4348-A8AD-72524B3A3FF1}",
"RISK": "high",
"FILES": " DELPHI~1.DLL",
"NAME": "TopSurfer",
"modified": 0
},
{
"CLSID": "{B0000209-50CF-11D1-A140-0000F802C250}",
"RISK": "none",
"FILES": " VAPopupKiller.dll",
"NAME": "Popup Eater",
"URL": " http://www.simpliciti.biz/popupeater_over.htm ",
"modified": 0
},
{
"CLSID": "{B195B3B3-8A05-11D3-97A4-0004ACA6948E}",
"RISK": "high",
"FILES": " Hbhostie.dll",
"NAME": "Hotbar",
"URL": " http://www.doxdesk.com/parasite/HotBar.html ",
"modified": 0
},
{
"CLSID": "{B1E741E7-1E77-40D4-9FD8-51949B9CCBD0}",
"RISK": "none",
"FILES": " Popuppro.dll",
"NAME": "Pop-Up Stopper Pro",
"URL": " http://www.panicware.com/popupstopper.html ",
"modified": 0
},
{
"CLSID": "{B24BA06E-FB7B-4757-95C2-DC01125F750E}",
"RISK": "none",
"FILES": " Yrefresher.dll, YREFRE~1.DLL",
"NAME": "IE refresh tool",
"modified": 0
},
{
"CLSID": "{B2847E28-5D7D-4DEB-8B67-05D28BCF79F5}",
"RISK": "medium",
"FILES": " Hptoolkt.dll, hpdtlk02.dll ",
"NAME": "HP Explore Toolbar",
"modified": 0
},
{
"CLSID": "{B3269F9A-6521-4793-A951-3E9A9B2E55E7}",
"RISK": "medium",
"FILES": " Duwibco.dll",
"NAME": "Douwantit Shopping Assistant",
"modified": 0
},
{
"CLSID": "{B405EE45-1AA2-410D-A6CF-1A74371DCD62}",
"RISK": "high",
"FILES": " Hotlink.dll",
"NAME": "Searchex",
"URL": " http://www.doxdesk.com/parasite/Searchex.html ",
"modified": 0
},
{
"CLSID": "{B40A6610-1D16-11D3-80B2-005004994DA2}",
"RISK": "high",
"FILES": " Bpieclient.dll",
"NAME": "iChoose browser enhancement",
"URL": " http://www.luckysoftware.dk/ichoose.php ",
"modified": 0
},
{
"CLSID": "{B418B139-414D-4374-820F-EE74520C5A0D}",
"RISK": "high",
"FILES": " ctavp5.dll, ctav3.dll",
"NAME": "ezSearching",
"URL": " <a target=_top href=\"http://doxdesk.com/parasite/ezSearching.html\">ezSearching</a>",
"modified": 0
},
{
"CLSID": "{B427BF1E-A970-47DA-9BC3-02E8C5EC667D}",
"RISK": "medium",
"FILES": " IESPY.DLL",
"NAME": "XPCSpy",
"URL": " http://www.botspot.com/Intelligent_Agent/2250.html ",
"modified": 0
},
{
"CLSID": "{B50FCD28-C2CC-4f3b-B755-62B086EDE4D5}",
"RISK": "none",
"FILES": " Toolbar.dll",
"NAME": "Be-Hosted/BeGlobal.com Demobar",
"modified": 0
},
{
"CLSID": "{B549456D-F5D0-4641-BCED-8648A0C13D83}",
"RISK": "high",
"FILES": " BrowserHelper.dll",
"NAME": "Adtomi adware",
"modified": 0
},
{
"CLSID": "{B57F2FF0-F338-4ED0-BD82-FB074FEFAA1F}",
"RISK": "none",
"FILES": " Bar.dll",
"NAME": "Pagego toolbar",
"URL": " http://www.pagego.com/ ",
"modified": 0
},
{
"CLSID": "{B5A34A93-D538-43A7-8371-864CB6148D12}",
"RISK": "none",
"FILES": " KVShell_1.dll",
"NAME": "Jiangmin AntiVirus Bar",
"URL": " <a href=\\\"http://english.duba.net/duba_intr.htm\\\" target=\\\"_blank\\\">Jiangmin AntiVirus Bar</a>",
"modified": 0
},
{
"CLSID": "{B5B57F4F-EFA5-11D4-A971-444553540000}",
"RISK": "none",
"FILES": " windowshades.dll, WINDOW~1.DLL ",
"NAME": "Window Shades",
"URL": " http://www.g-m-m.com/Software/WindowShades/ ",
"modified": 0
},
{
"CLSID": "{B6598677-4B54-42A9-BA67-8B64E3FCD92D}",
"RISK": "high",
"FILES": " psic1.dll",
"NAME": "ezSearching",
"modified": 0
},
{
"CLSID": "{B7B76DD6-B6F0-4443-AF81-6A3ECF12A57D}",
"RISK": "none",
"FILES": " _MWOLTB.DLL",
"NAME": "Merriam-Webster Toolbar",
"URL": " <a href=\\\"http://www.m-w.com/tools/toolbar/\\\" target=\\\"_blank\\\">Merriam-Webster Toolbar</a>",
"modified": 0
},
{
"CLSID": "{B7DB7E5A-81FD-11D1-8B75-0080C83788F7}",
"RISK": "none",
"FILES": " ie4_trap.dll",
"NAME": "WinRunner",
"modified": 0
},
{
"CLSID": "{B7FDA31E-A16D-47F9-B374-78A866AC813D}",
"RISK": "none",
"FILES": " BonusBar.dll",
"NAME": "BonusBar",
"URL": " http://www.bignerdsoftware.com/ ",
"modified": 0
},
{
"CLSID": "{B824E7B0-E8E3-4D75-895E-2C309EA4CC5D}",
"RISK": "medium",
"FILES": " Sgpopupblocker.dll ",
"NAME": "SafeGuard Popup Blocker",
"modified": 0
},
{
"CLSID": "{B847676D-72AC-4393-BFFF-43A1EB979352}",
"RISK": "high",
"FILES": " wcadw.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{B88D6F42-A1AC-11D3-8424-00105A9B8D85}",
"RISK": "none",
"FILES": " oichlpr.dll",
"NAME": "Orbiscom O-card Software",
"URL": " http://www.orbiscom.com/products/ocard.html ",
"modified": 0
},
{
"CLSID": "{B8C0220D-763D-49A4-95F4-61DFDEC66EE6}",
"RISK": "high",
"FILES": " MEDUP012.DLL",
"NAME": "MediaUpdate",
"URL": " http://www.doxdesk.com/parasite/MediaUpdate.html ",
"modified": 0
},
{
"CLSID": "{B930BA63-9E5A-11D3-A288-0000E80E2EDE}",
"RISK": "none",
"FILES": " Mdhelper.dll",
"NAME": "MassDownloader",
"URL": " http://www.metaproducts.com/mp/mpProducts_Detail.asp?id=3 ",
"modified": 0
},
{
"CLSID": "{B98F79F4-3619-49FB-A7E7-B737E58C5727}",
"RISK": "high",
"FILES": " netster.dll, _netster.dl",
"NAME": "Netster Smart Browse Toolbar",
"URL": " http://at.netster.com/Index.asp?Site=YXQubmV0c3Rlci5jb20%3D ",
"modified": 0
},
{
"CLSID": "{B9D6B3C2-09AD-464A-8162-8C55114C808A}",
"RISK": "none",
"FILES": " Vcs3RT.dll",
"NAME": "AV VCS Voice Changer",
"URL": " http://www.audio4fun.com/ ",
"modified": 0
},
{
"CLSID": "{B9D90B27-AD4A-413a-88CB-3E6DDC10DC2D}",
"RISK": "high",
"FILES": " MSOPT.DLL",
"NAME": "TrojanDownloader",
"modified": 0
},
{
"CLSID": "{B9F633F6-EA44-45F4-91EB-FABFC65A0634}",
"RISK": "none",
"FILES": " sybil.dll",
"NAME": "Liquid Surf",
"modified": 0
},
{
"CLSID": "{BA25708B-154D-4D40-8607-67AA5190C395}",
"RISK": "none",
"FILES": " ISengine.dll",
"NAME": "Intellistopper Toolbar",
"URL": " http://smartstopper.com/ ",
"modified": 0
},
{
"CLSID": "{BA3D9F56-5EC1-497D-881A-93A28F58D9AD}",
"RISK": "high",
"FILES": " IE.dll",
"NAME": "GoHip/Browserenh",
"URL": " http://www.gohip.com/ ",
"modified": 0
},
{
"CLSID": "{BA52B914-B692-46c4-B683-905236F6F655}",
"RISK": "none",
"FILES": " mcvsshl.dll",
"NAME": "McAfee Virusscan",
"URL": " <a href=\\\"http://www.mcafee.com/default.asp\\\" TARGET=\\\"_blank\\\">McAfee Virusscan</a>",
"modified": 0
},
{
"CLSID": "{BA7270AE-5636-4618-BAF3-F86ADA39F036}",
"RISK": "high",
"FILES": " icoourl.dll",
"NAME": "P2P Networking",
"modified": 0
},
{
"CLSID": "{ba77911b-a393-4a2e-b5b5-5b8ed17d7b43}",
"RISK": "high",
"FILES": " disable1.dll",
"NAME": "ClientMan",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/ClientMan.html\\\"TARGET=\\\"_blank\\\"> ClientMan</a>",
"modified": 0
},
{
"CLSID": "{BB9AAAF3-4F8D-48B5-A565-FF3E58433DC2}",
"RISK": "high",
"FILES": " SurfairyHlp.dll",
"NAME": "Divago Surfairy",
"URL": " http://www.doxdesk.com/parasite/Surfairy.html ",
"modified": 0
},
{
"CLSID": "{BBE59AF5-EE22-4A3A-AB26-3F774D1B4216}",
"RISK": "none",
"FILES": " Folderbox.dll",
"NAME": "FolderBox",
"URL": " http://www.baxbex.com/products.html ",
"modified": 0
},
{
"CLSID": "{BC0D2038-2DE5-4A6F-92BC-B18A3E0DE32A}",
"RISK": "high",
"FILES": " iexplorr11.dll",
"NAME": "InetSpeak/Iexplorr",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{BC207F7D-3E63-4ACA-99B5-FB5F8428200C}",
"RISK": "high",
"FILES": " Bdsrhook.dll",
"NAME": "BDplugin",
"modified": 0
},
{
"CLSID": "{BC246652-868E-11d5-9C62-000102117FC3}",
"RISK": "none",
"FILES": " palz3003.dll",
"NAME": "mini eresMas toolbar",
"modified": 0
},
{
"CLSID": "{BC97B254-B2B9-4D40-971D-78E0978F5F26}",
"RISK": "high",
"FILES": " ietoolbar.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{BCF96FB4-5F1B-497B-AECC-910304A55011}",
"RISK": "high",
"FILES": " hh.dll, hhU.dll, hhUU.dll, neti.dll",
"NAME": "Hungry Hands porn hijacker",
"modified": 0
},
{
"CLSID": "{BD0BA5CD-7C8E-47ED-935E-1ABBAC9B29E0}",
"RISK": "high",
"FILES": " 88313.dll",
"NAME": "SubSearch parasite variant",
"modified": 0
},
{
"CLSID": "{BD51AEC6-7991-4A60-94D6-D5FEBB655D10}",
"RISK": "high",
"FILES": " IEMsg.dll",
"NAME": "IETray",
"URL": " http://www.doxdesk.com/parasite/IETray.html ",
"modified": 0
},
{
"CLSID": "{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0}",
"RISK": "none",
"FILES": " Msntb.dll",
"NAME": "MSN Toolbar",
"URL": " http://toolbar.msn.com/ ",
"modified": 0
},
{
"CLSID": "{BDF3E430-B101-42AD-A544-FADC6B084872}",
"RISK": "none",
"FILES": " NavShExt.dll",
"NAME": "Norton Antivirus",
"URL": " http://www.symantec.com/nav/nav_9xnt/ ",
"modified": 0
},
{
"CLSID": "{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}",
"RISK": "high",
"FILES": " AdRoar.dll",
"NAME": "AdRoar adware",
"modified": 0
},
{
"CLSID": "{BEBF337B-9073-4574-9FC1-E0175BB25292}",
"RISK": "none",
"FILES": " Barratools.dll",
"NAME": "Telefonicaonline.com",
"modified": 0
},
{
"CLSID": "{BF55256A-3B3B-11D2-B05B-000001145917}",
"RISK": "none",
"FILES": " Weaddon.dll",
"NAME": "Tiny Personal Firewall",
"URL": " http://www.tinysoftware.com/home/tiny2?s=2793868933884634691A0&la=EN&va=&pg=tpf4_overview ",
"modified": 0
},
{
"CLSID": "{BFC32E1D-EE75-4A48-BC60-104E11EE2431}",
"RISK": "none",
"FILES": " WEBIE.DLL",
"NAME": "Abitz Translator",
"URL": " <a target=_top href=\"http://www.abitz.com/uebersetz/pctransengl.php3\">Abitz Translator</a>",
"modified": 0
},
{
"CLSID": "{C079AD60-CD4A-447a-BCF9-6FD0096B5527}",
"RISK": "none",
"FILES": " P3Pclient.dll",
"NAME": "AT&T Worldnet Privacy Tool",
"URL": " http://www.research.att.com/news/2001/December/PrivacyTool.html ",
"modified": 0
},
{
"CLSID": "{C08DF07A-3E49-4E25-9AB0-D3882835F153}",
"RISK": "none",
"FILES": " Iehelp.dll",
"NAME": "Textware BookCase",
"URL": " http://www.textware.dk/bookcase.htm ",
"modified": 0
},
{
"CLSID": "{C09C9904-FD44-11D6-A711-00105AC8F168}",
"RISK": "none",
"FILES": " Ieplugin.dll",
"NAME": "Metamail Reader",
"URL": " http://www.metamail.com/technology/ ",
"modified": 0
},
{
"CLSID": "{C109664B-CEB1-420b-B353-D55A561536DD}",
"RISK": "high",
"FILES": " SYSsfitb.dll",
"NAME": "AdShooter/Searchforit",
"modified": 0
},
{
"CLSID": "{C10A16B7-70FE-4CE3-A261-6FBA7CC3DD5B}",
"RISK": "high",
"FILES": " Lookquick.dll",
"NAME": "LookQuick toolbar",
"URL": " http://www.lookquick.com/toolbar.html ",
"modified": 0
},
{
"CLSID": "{C14DC52F-B4D9-11D5-B1E6-0050DAD7AF62}",
"RISK": "none",
"FILES": " Anonymizer.dll, ANONYM~1.DLL",
"NAME": "Anonymizer",
"URL": " http://www.anonymizer.com/surfing/ ",
"modified": 0
},
{
"CLSID": "{C1D458F1-B97C-11D5-B3DF-00B0D0A5B433}",
"RISK": "none",
"FILES": " Wxbho.dll",
"NAME": "WaveExpress/TvTonic",
"URL": " http://www.wave.com/news/press_archive/01/011022wavexpress.html ",
"modified": 0
},
{
"CLSID": "{C1E58A84-95B3-4630-B8C2-D06B77B7A0FC}",
"RISK": "high",
"FILES": " Nhelper.dll",
"NAME": "NavExcel browser helper",
"URL": " http://www.doxdesk.com/parasite/NavExcel.html ",
"modified": 0
},
{
"CLSID": "{C2614DA1-D197-11d3-9765-ED762A928249}",
"RISK": "none",
"FILES": " Ieho.dll",
"NAME": "Alligator download manager",
"URL": " http://www.nearsoftware.com/alligator/maininfo/ ",
"modified": 0
},
{
"CLSID": "{C298fb42-e3e2-11d3-adcd-0050dac24e8f}",
"RISK": "high",
"FILES": " Iwonbar.dll",
"NAME": "iWon Toolbar",
"URL": " http://www.doxdesk.com/parasite/Aornum.html ",
"modified": 0
},
{
"CLSID": "{C331BD6E-06AB-41A0-B95F-D7CA379ACEAA}",
"RISK": "high",
"FILES": " WBM.DLL",
"NAME": "Wishbone Toolbar",
"URL": " http://www.wishbonemedia.com/products.html ",
"modified": 0
},
{
"CLSID": "{C338BA09-B77C-11D5-9214-00104B3195F0}",
"RISK": "none",
"FILES": " RecordOCX.ocx",
"NAME": "DejaSurf",
"URL": " http://www.dejasurf.com ",
"modified": 0
},
{
"CLSID": "{C3BCC488-1AE7-11D4-AB82-0010A4EC2338}",
"RISK": "high",
"FILES": " hoproxy.dll ",
"NAME": "Vividence Connector",
"URL": " http://www.vividence.com/public/products/vividence+xms+enterprise/vividence+xms+enterprise/connector.htm ",
"modified": 0
},
{
"CLSID": "{C3EBC7C0-CF8B-11D4-9F90-006008DFE22A}",
"RISK": "medium",
"FILES": " Sc.dll",
"NAME": "SyvumClickTM",
"URL": " http://www.syvum.com/click/download.html ",
"modified": 0
},
{
"CLSID": "{C41A1C0E-EA6C-11D4-B1B8-444553540000}",
"RISK": "none",
"FILES": " gbieh.dll",
"NAME": "G-Buster Browser Defense",
"modified": 0
},
{
"CLSID": "{C4296108-BF2F-448f-AF2F-10062E5121BC}",
"RISK": "medium",
"FILES": " DpNMIEHELP.dll",
"NAME": "MS Visual Studio DevPartner Profiler",
"URL": " http://msdn.microsoft.com/vstudio/partners/tools/compuware.asp ",
"modified": 0
},
{
"CLSID": "{C4CA6559-2CF1-48B6-96B2-8340A06FD129}",
"RISK": "high",
"FILES": " AdBar.dll ",
"NAME": "AdBars",
"modified": 0
},
{
"CLSID": "{C4D99500-4C77-11D4-93B7-0040950570BA}",
"RISK": "high",
"FILES": " boombar.dll",
"NAME": "eBoom Search Bar",
"URL": " InetSpeak variant http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{C52149CE-7962-4C8D-95A4-8733F63199BF}",
"RISK": "none",
"FILES": " unknown",
"NAME": "NQL Browser Recorder",
"URL": " http://www.nqltech.com/BrowserRecorder.asp ",
"modified": 0
},
{
"CLSID": "{C56CB6B0-0D96-11D6-8C65-B2868B609932}",
"RISK": "none",
"FILES": " Ntiehelper.dll",
"NAME": "Net Transport",
"URL": " http://lycos26486.l78.lycos.com.cn/default.htm ",
"modified": 0
},
{
"CLSID": "{C5941EE5-6DFA-11D8-86B0-0002441A9695}",
"RISK": "high",
"FILES": " 3_0_1browserhelper3.dll",
"NAME": "BlazeFind hijacker variant",
"modified": 0
},
{
"CLSID": "{C6335B00-E8D9-423e-A691-48D17CBB6C5A}",
"RISK": "high",
"FILES": " Praizetoolbar.dll",
"NAME": "Praize toolbar",
"URL": " http://www.praize.com/toolbar/ ",
"modified": 0
},
{
"CLSID": "{C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53}",
"RISK": "none",
"FILES": " BHOPXP.dll",
"NAME": "Popup XP",
"URL": " <a href=\\\"http://www.codeproject.com/atl/popupblocker.asp\\\" target=\\\"_blank\\\">Popup XP</a>",
"modified": 0
},
{
"CLSID": "{C68AE9C0-0909-4DDC-B661-C1AFB9F5AE53}",
"RISK": "none",
"FILES": " PopupBlocker.dll",
"NAME": "OsbornTech popup blocker",
"modified": 0
},
{
"CLSID": "{C6CEAC32-D45C-11D4-94AF-0050BABD5FD6}",
"RISK": "none",
"FILES": " Urlorgie.dll",
"NAME": "URL Organizer",
"URL": " http://www.urlorg.com/about.shtml ",
"modified": 0
},
{
"CLSID": "{C6EA5A8D-8B01-4498-8B9A-B40AA281035F}",
"RISK": "none",
"FILES": " popkiller.dll",
"NAME": "IEMate",
"URL": " http://www.retsinasoftware.com/ ",
"modified": 0
},
{
"CLSID": "{C733AE47-6AC0-4837-93DA-70278E88E7B2}",
"RISK": "none",
"FILES": " gtindctr.dll",
"NAME": "Gtran wireless",
"URL": " <a href=\\\"http://www.gtranwireless.com/products/index.html\\\" target=\\\"_blank\\\">Gtran wireless</a>",
"modified": 0
},
{
"CLSID": "{C77E900A-FF55-400E-9BAA-E042C8212898}",
"RISK": "high",
"FILES": " ToolbarStarter.dll",
"NAME": "EasyBar/Toolbarcash",
"modified": 0
},
{
"CLSID": "{C7967580-5F17-11D4-AAC2-0000B4936E0C}",
"RISK": "high",
"FILES": " System61.dll",
"NAME": "System61 hijacker",
"modified": 0
},
{
"CLSID": "{C7ADE150-743D-11D4-8141-00E029626F6A}",
"RISK": "high",
"FILES": " KER7120.DLL, Kernell32.dll",
"NAME": "NetPal/PrizePopper",
"URL": " http://www.doxdesk.com/parasite/NetPal.html ",
"modified": 0
},
{
"CLSID": "{C82B55F0-60E0-478C-BC55-E4E22F11301D}",
"RISK": "high",
"FILES": " Chgrgs.dll",
"NAME": "i-Lookup/Chgrgs",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{C8847EEA-72D6-11D4-AB4F-00B0D02332EE}",
"RISK": "medium",
"FILES": " Phook.dll",
"NAME": "InstallShield DigitalWizard",
"URL": " http://www.installshield.com/isus/ ",
"modified": 0
},
{
"CLSID": "{C900B400-CDFE-11D3-976A-00E02913A9E0}",
"RISK": "high",
"FILES": " Whiehlpr.dll",
"NAME": "Webhancer",
"URL": " http://www.cexx.org/webhancer.htm ",
"modified": 0
},
{
"CLSID": "{C9176930-9C9F-4cba-9723-0F58C3E7CED6}",
"RISK": "high",
"FILES": " (Random file name)",
"NAME": "Whazit ",
"URL": " http://www.doxdesk.com/parasite/Whazit.html ",
"modified": 0
},
{
"CLSID": "{C966C82E-DAEA-4A30-B788-EF32D6F7C3D4}",
"RISK": "none",
"FILES": " popad.dll",
"NAME": "PopSubtract",
"URL": " http://www.popsubtract.com/features.html ",
"modified": 0
},
{
"CLSID": "{CA0B9B71-C2AF-11D3-B376-0800460222F0}",
"RISK": "high",
"FILES": " Iwonbar.dll",
"NAME": "iWon Toolbar",
"URL": " http://www.doxdesk.com/parasite/Aornum.html ",
"modified": 0
},
{
"CLSID": "{CA1D1B05-9C66-11D5-A009-000103C1E50B}",
"RISK": "high",
"FILES": " Pbar.dll",
"NAME": "4Arcade PBar",
"URL": " http://www.4arcade.com/powersearch/index.shtml ",
"modified": 0
},
{
"CLSID": "{CA8A9780-280D-11CF-A24D-444553540000}",
"RISK": "none",
"FILES": " Pdf.ocx",
"NAME": "Adobe Acrobat",
"URL": " http://www.adobe.com/products/acrobatpro/main.html ",
"modified": 0
},
{
"CLSID": "{CA92B524-BC8A-4610-BD2C-6BD3E28155D0}",
"RISK": "high",
"FILES": " Bdhelper.dll",
"NAME": "CnsMin variant",
"URL": " http://www.doxdesk.com/parasite/CnsMin.html ",
"modified": 0
},
{
"CLSID": "{CAAE9D7F-FFCC-46CF-8DEE-00DCC6CDF5A1}",
"RISK": "none",
"FILES": " ZillaBar.dll",
"NAME": "StopZilla",
"URL": " <a href=\\\"http://www.stopzilla.com/site/\\\" target=\\\"_blank\\\">StopZilla</a>",
"modified": 0
},
{
"CLSID": "{CADC957A-EF3E-4a08-B6DA-366BFFB97321}",
"RISK": "none",
"FILES": " Searchhippo.dll",
"NAME": "SearchHippo",
"URL": " http://www.searchhippo.com/ ",
"modified": 0
},
{
"CLSID": "{CB7CE223-955E-11D3-81AA-344203C10000}",
"RISK": "medium",
"FILES": " Mscack.dll",
"NAME": "SpIE Monitoring program",
"URL": " http://www.satacoy.com/spie/main.htm ",
"modified": 0
},
{
"CLSID": "{CBA523B2-1906-4D14-95A2-CD8E233701C7}",
"RISK": "high",
"FILES": " waeb.dll",
"NAME": "I-Lookup",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{CBA74CDA-DF78-4AD9-954E-3B15D0A993DE}",
"RISK": "none",
"FILES": " SpoofStickBHO.dll",
"NAME": "SpoofStick",
"URL": " <a href=\\\"http://www.corestreet.com/spoofstick/\\\" target=\\\"_blank\\\">SpoofStick</a>",
"modified": 0
},
{
"CLSID": "{CBAA6F21-985C-11D4-A02B-00B0D073E889}",
"RISK": "none",
"FILES": " Llieobj.dll",
"NAME": "LexLink toolbar",
"URL": " http://www.llrx.com/features/lexnex.htm ",
"modified": 0
},
{
"CLSID": "{CBB0A6A0-8430-11D4-814D-0050047090B1}",
"RISK": "none",
"FILES": " Surfsaver.dll",
"NAME": "Surfsaver",
"URL": " http://www.surfsaver.com/ ",
"modified": 0
},
{
"CLSID": "{cc4b2ee5-4803-11d7-8a38-00b0d0c6b814}",
"RISK": "none",
"FILES": " Gdiehelp.dll",
"NAME": "McAfee Privacy Service",
"URL": " http://us.mcafee.com/root/package.asp?pkgid=104 ",
"modified": 0
},
{
"CLSID": "{CC7C8206-344B-45AB-B898-78D06229268F}",
"RISK": "none",
"FILES": " Iadiebho.dll",
"NAME": "Incredible Automatic Downloader",
"URL": " http://www.unhsolutions.net/IAD/ ",
"modified": 0
},
{
"CLSID": "{CC90CDA0-74A0-45b4-80EF-D89CA8C249B8}",
"RISK": "high",
"FILES": " DashBar15.dll",
"NAME": "DashBar",
"modified": 0
},
{
"CLSID": "{CC916B4B-BE44-4026-A19D-8C74BBD23361}",
"RISK": "high",
"FILES": " Gstyle~1.dll, Metahe~1.dll, ms****.dll (* = random char)",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{CCE83E45-30B2-4BAE-B1F5-25D128D27A43}",
"RISK": "high",
"FILES": " Ezsearch.dll",
"NAME": "EZCybersearch bar",
"URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
"modified": 0
},
{
"CLSID": "{CD209A08-98B5-4669-AF9F-447AC5253356}",
"RISK": "high",
"FILES": " CSapp.dll ",
"NAME": "CSApp",
"URL": " <a href=\\\"http://www.pestpatrol.com/PestInfo/c/csapp_dll.asp#Detection%20and%20Removal\\\" target=\\\"_blank\\\">CSApp</a>",
"modified": 0
},
{
"CLSID": "{CD2A865B-6C0F-44F9-BAA1-7CDB31E04BC8}",
"RISK": "high",
"FILES": " BarBHO.dll",
"NAME": "Searchcentrix.com Hijacker",
"modified": 0
},
{
"CLSID": "{CD4C3CF0-4B15-11D1-ABED-709549C10000}",
"RISK": "high",
"FILES": " Goiehlp.dll",
"NAME": "Go`Zilla",
"URL": " http://www.oit.duke.edu/ats/support/spyware/gozilla.html ",
"modified": 0
},
{
"CLSID": "{CDBCFEAE-10BA-482C-9F6E-FC67207082D8}",
"RISK": "high",
"FILES": " mdefshop.dll",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{CE000992-A58C-4441-8938-744CD72AB27F}",
"RISK": "none",
"FILES": " i-nav_4_0_0.dll",
"NAME": "Verisign i-Nav",
"URL": " http://www.idnnow.com/index.jsp?lang=en ",
"modified": 0
},
{
"CLSID": "{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1}",
"RISK": "high",
"FILES": " Apuc.dll",
"NAME": "Bargain Buddy",
"URL": " http://www.doxdesk.com/parasite/BargainBuddy.html ",
"modified": 0
},
{
"CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
"RISK": "high",
"FILES": " Ubmon.dll",
"NAME": "URLBlaze",
"URL": " http://www.urlblaze.com ",
"modified": 0
},
{
"CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
"RISK": "high",
"FILES": " Iehelper.dll, IE_SPY.DLL",
"NAME": "ShopNavSearch/Srng",
"URL": " http://www.doxdesk.com/parasite/Srng.html ",
"modified": 0
},
{
"CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
"RISK": "none",
"FILES": " PwMgr.dll",
"NAME": "AOL Browser helper",
"URL": " http://free.aol.com/tryaolfree/cdt.adp?139331 ",
"modified": 0
},
{
"CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
"RISK": "none",
"FILES": " IE_SPY.dll",
"NAME": "Kensington MouseWorks",
"URL": " http://www.apple.com/downloads/macosx/drivers/kensingtonmouseworks.html ",
"modified": 0
},
{
"CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10000}",
"RISK": "none",
"FILES": " iehelper.dll",
"NAME": "Lotus Organizer",
"URL": " http://www.lotus.com/products/organizer5.nsf ",
"modified": 0
},
{
"CLSID": "{CE7C3CF0-4B15-11D1-ABED-709549C10001}",
"RISK": "high",
"FILES": " iemonit.dll",
"NAME": "IeMonit",
"URL": " http://www.doxdesk.com/parasite/IEMonit.html ",
"modified": 0
},
{
"CLSID": "{CECFF8DE-C145-4570-B030-10105AA82920}",
"RISK": "none",
"FILES": " Lateralartstoolbar.dll",
"NAME": "Lateral Arts Toolbar",
"URL": " http://www.larts.co.uk/Toolbar.shtml ",
"modified": 0
},
{
"CLSID": "{CF021F40-3E14-23A5-CBA2-717765721306}",
"RISK": "high",
"FILES": " wer1306.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{CFB25594-4D5F-11D6-AB7B-00B0D094B576}",
"RISK": "none",
"FILES": " IEPlugIn.dll",
"NAME": "Systran toolbar",
"URL": " http://www.systransoft.com/Products/Personal.html ",
"modified": 0
},
{
"CLSID": "{D14641FA-445B-448E-9994-209f7AF15641}",
"RISK": "high",
"FILES": " mbho.dll",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{D14D6793-9B65-11D3-80B6-00500487BDBA}",
"RISK": "high",
"FILES": " Csbho.dll",
"NAME": "Comet Cursor",
"URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
"modified": 0
},
{
"CLSID": "{D157330A-9EF3-49F8-9A67-4141AC41ADD4}",
"RISK": "high",
"FILES": " CnsHook.dll",
"NAME": "CnsMin",
"modified": 0
},
{
"CLSID": "{D1F6ABEF-B889-11D2-8E3C-DCCA155F9A71}",
"RISK": "high",
"FILES": " Alexaie.dll",
"NAME": "Alexa Toolbar",
"URL": " http://pages.alexa.com/prod_serv/webmasters.html?p=Dest_W_t_40_L1 ",
"modified": 0
},
{
"CLSID": "{D2000F80-ABC6-11D3-9794-0090274D4CCA}",
"RISK": "medium",
"FILES": " OSIEHLPR.DLL",
"NAME": "Onscan",
"URL": " <a target=_top href=\"http://www.suespace.com/web/onscan/partners_related/network.html\">Onscan</a>",
"modified": 0
},
{
"CLSID": "{D2F719F3-106A-402B-9996-3A5B12ACA564}",
"RISK": "none",
"FILES": " Pnie.dll",
"NAME": "Guard-IE",
"URL": " http://www.downloadatoz.com/guardie/ ",
"modified": 0
},
{
"CLSID": "{D319662B-D5BF-4538-ADF3-8D3E36362608}",
"RISK": "high",
"FILES": " x0ff.dll, X0ff*.dll (* = random digit)",
"NAME": "ClearStream Accelerator by X10.com",
"modified": 0
},
{
"CLSID": "{D34F641F-5210-4EB0-8ED5-9179F47E15B7}",
"RISK": "high",
"FILES": " blckbho.dll",
"NAME": "BrowserPal Toolbar",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{D3919E1A-D6A5-11D6-AC3E-00B0D094B576}",
"RISK": "none",
"FILES": " IEPlugIn.dll",
"NAME": "Systran",
"URL": " http://www.systransoft.com/Products/Features.html ",
"modified": 0
},
{
"CLSID": "{D3EA3B57-9A3E-4E80-BFF0-595F7A91D55E}",
"RISK": "medium",
"FILES": " XenoBar.dll",
"NAME": "XenoBar popupblocker",
"URL": " <a href=\\\"http://www.ultrasoftware.net/archive/detail.asp?id=2459\\\" target=\\\"_blank\\\">XenoBar popupblocker</a>",
"modified": 0
},
{
"CLSID": "{D3F01312-8A3D-4D41-A4FA-FB61D295CB6B}",
"RISK": "high",
"FILES": " Surebar.dll",
"NAME": "EZCybersearch/Surebar",
"URL": " http://www.doxdesk.com/parasite/ezCyberSearch.html ",
"modified": 0
},
{
"CLSID": "{D4003A01-9B2C-4e24-9CD2-8D7DB1BDE096}",
"RISK": "none",
"FILES": " DGSToolbar.dll",
"NAME": "De Gule Sider toolbar",
"modified": 0
},
{
"CLSID": "{D44B5436-B3E4-4595-B0E9-106690E70A58}",
"RISK": "high",
"FILES": " plg_ie0.dll, *********. dll (random chars)",
"NAME": "Lop.com",
"URL": " http://www.doxdesk.com/parasite/lop.html ",
"modified": 0
},
{
"CLSID": "{D44BBB61-E17F-4AE6-A502-8D7E0B29E616}",
"RISK": "none",
"FILES": " Stumble.dll, STUMBL~1.DLL",
"NAME": "Stumbleupon toolbar",
"modified": 0
},
{
"CLSID": "{D48F2E28-68E2-4920-9848-D6E6C7AB3EB7}",
"RISK": "high",
"FILES": " Redirector.dll",
"NAME": "Xupiter Orbitexplorer",
"URL": " http://www.doxdesk.com/parasite/Xupiter.html ",
"modified": 0
},
{
"CLSID": "{D4D505DF-D582-400c-91B6-84921012AFE3}",
"RISK": "high",
"FILES": " pdfupd.dll PDF****.dll",
"NAME": "PopUpDefence hijacker",
"modified": 0
},
{
"CLSID": "{D4E7C68D-37FD-11D4-9D32-0000A00B0B0B}",
"RISK": "none",
"FILES": " Cpbrhelp.dll",
"NAME": "Cookie Pal",
"URL": " http://www.kburra.com/cpal.html ",
"modified": 0
},
{
"CLSID": "{D593DE91-7B41-45C2-830E-E9A99AB142AA}",
"RISK": "none",
"FILES": " 1ClickPicGrabber.dll",
"NAME": "1ClickPicGrabber",
"URL": " <a href=\\\"http://www.zabersoft.com/products.php?id=3\\\" target=\\\"_blank\\\">1ClickPicGrabber</a>",
"modified": 0
},
{
"CLSID": "{D5B72AED-E54A-11D6-B1B2-444553540000}",
"RISK": "high",
"FILES": " Bho.dll, other, random file names",
"NAME": "Whazit",
"URL": " http://www.doxdesk.com/parasite/Whazit.html ",
"modified": 0
},
{
"CLSID": "{D5C778F1-CF13-4E70-ADF0-45A953E7CB8B}",
"RISK": "high",
"FILES": " Ne.dll",
"NAME": "SmartPops - Network Essentials",
"URL": " http://www.doxdesk.com/parasite/NetworkEssentials.html ",
"modified": 0
},
{
"CLSID": "{D6223CBC-A263-4CB1-B35E-1AE40FEF3B3B}",
"RISK": "high",
"FILES": " ietoolbar.dll",
"NAME": "power-linking-profits.com toolbar",
"modified": 0
},
{
"CLSID": "{D6862A22-1DD6-11D3-BB7C-444553540000}",
"RISK": "high",
"FILES": " Bho.dll",
"NAME": "InetSpeak",
"URL": " http://www.doxdesk.com/parasite/InetSpeak.html ",
"modified": 0
},
{
"CLSID": "{D6DFF6D8-B94B-4720-B730-1C38C7065C3B}",
"RISK": "high",
"FILES": " Btlink.dll",
"NAME": "HuntBar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{D6E66235-7AA6-44ED-A06C-6F2033B1D993}",
"RISK": "high",
"FILES": " Msiein.dll",
"NAME": "HuntBar",
"URL": " http://www.doxdesk.com/parasite/HuntBar.html ",
"modified": 0
},
{
"CLSID": "{D6FC35D1-04AB-4D40-94CF-2E5AE4D0F8D2}",
"RISK": "high",
"FILES": " llch.dll",
"NAME": "Qcbar/AdultLinks",
"URL": " http://www.doxdesk.com/parasite/AdultLinks.html ",
"modified": 0
},
{
"CLSID": "{D7258ABE-571F-4DC2-ABD1-8393B13B1269}",
"RISK": "high",
"FILES": " RSSToolbar.dll",
"NAME": "Related Site Search (BrowserAid)",
"URL": " http://www.doxdesk.com/parasite/BrowserAid.html ",
"modified": 0
},
{
"CLSID": "{D7D7004C-A763-4F8C-B0D4-55A7E017E69D}",
"RISK": "high",
"FILES": " newones.dll",
"NAME": "Whazit",
"URL": " http://www.doxdesk.com/parasite/Whazit.html ",
"modified": 0
},
{
"CLSID": "{D7F30B62-8269-41AF-9539-B2697FA7D77E}",
"RISK": "none",
"FILES": " PnEL.dll",
"NAME": "Earthlink Pop-Up blocker",
"URL": " http://www.earthlink.net/home/software/popupblocker/totalaccessdownload/ ",
"modified": 0
},
{
"CLSID": "{D8073790-84C7-4602-BF77-C6ACBF1612E4}",
"RISK": "none",
"FILES": " IBToolBar.dll",
"NAME": "IncrediBar",
"URL": " http://www.incredibar.com/home.asp ",
"modified": 0
},
{
"CLSID": "{D80E1356-AC78-4218-961C-A7689B4CB7FE}",
"RISK": "high",
"FILES": " Ttbbho.dll",
"NAME": "Comodo Trust Toolbar",
"URL": " http://www.trusttoolbar.com/ ",
"modified": 0
},
{
"CLSID": "{D81AB57B-7327-4347-B7C7-9EF7CA87CE09}",
"RISK": "none",
"FILES": " Slimbho2.dll",
"NAME": "Orbiscom Online Secure Payments",
"URL": " http://www.orbiscom.com/products/ocard.html ",
"modified": 0
},
{
"CLSID": "{D848A3CA-0BFB-4DE0-BA9E-A57F0CCA1C13}",
"RISK": "high",
"FILES": " Dealhlpr.dll",
"NAME": "Dealhelper.com adware",
"modified": 0
},
{
"CLSID": "{D879A0F1-2B3B-4409-8879-FAD6E49E1EA9}",
"RISK": "high",
"FILES": " mshtmpre.dll",
"NAME": "Unidentified hijacker",
"modified": 0
},
{
"CLSID": "{D8E25C53-9508-4f5c-9249-D98D438891D5}",
"RISK": "high",
"FILES": " ssurf022.dll",
"NAME": "MediaUpdate/SafeSurfing",
"URL": " http://www.doxdesk.com/parasite/MediaUpdate.html ",
"modified": 0
},
{
"CLSID": "{D8FA0364-7866-40A7-B340-A6069265AD9F}",
"RISK": "high",
"FILES": " Csearch.dll",
"NAME": "CSearch",
"modified": 0
},
{
"CLSID": "{D97287B6-4018-4060-948D-54D2122FC5C3}",
"RISK": "high",
"FILES": " 0002C00.dll",
"NAME": "SubSearch parasite variant",
"modified": 0
},
{
"CLSID": "{D985E70B-97F1-477E-AF6C-66E496DEDBD6}",
"RISK": "high",
"FILES": " 2ndpower.dll",
"NAME": "SecondPower Multimedia Speedbar",
"URL": " http://support.microsoft.com/default.aspx?kbid=320159 ",
"modified": 0
},
{
"CLSID": "{D9A5A49C-60EB-4C07-8570-8FB8FE825E7C}",
"RISK": "high",
"FILES": " sbsrch_v2.dll",
"NAME": "Subsearch",
"URL": " http://www.doxdesk.com/parasite/SubSearch.html ",
"modified": 0
},
{
"CLSID": "{DB0018A2-F7D9-4B71-9651-640143DF23F9}",
"RISK": "high",
"FILES": " ctap7.dll",
"NAME": "ezSearching",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/ezSearching.html\\\" target=\\\"_blank\\\">ezSearching</a>",
"modified": 0
},
{
"CLSID": "{DB43E4E6-FF8A-4018-8C8E-F68587A44A73}",
"RISK": "none",
"FILES": " PopUpCop.dll",
"NAME": "PopUpCop",
"URL": " http://www.botspot.com/Intelligent_Agent/1972.html ",
"modified": 0
},
{
"CLSID": "{DB96792F-834A-40FC-97CD-9A8ECDF484FE}",
"RISK": "none",
"FILES": " MapStanIETB.dll",
"NAME": "MapStan toolbar",
"URL": " http://www.mapstan.net/en/predownload.jsp ",
"modified": 0
},
{
"CLSID": "{DD41D66E-CE4F-11D2-8DA9-00A0249EABF4}",
"RISK": "none",
"FILES": " Formwhiz.dll",
"NAME": "FormWhiz",
"URL": " http://www.pcmag.com/article2/041495753000.asp ",
"modified": 0
},
{
"CLSID": "{DE614603-6320-4046-A7A7-6A69CEC26F14}",
"RISK": "high",
"FILES": " 4b_1,0,0,5_navpmc.dll, 4b_1,0,0,6_mslagent.dll, 4b_1,0,0,7_mslagent.dll ",
"NAME": "MagicControl variant",
"modified": 0
},
{
"CLSID": "{DEDEDE03-0000-0000-C000-00A300000043}",
"RISK": "none",
"FILES": " MantaCL.dll",
"NAME": "MantaDB Utilities",
"URL": " <a target=_top href=\"http://www.mantadb.com/\">MantaDB Utilities</a>",
"modified": 0
},
{
"CLSID": "{E0000C3F-8DE9-4FCB-9294-22FC06851B37}",
"RISK": "none",
"FILES": " SmartSMS.dll",
"NAME": "SmartSMS",
"modified": 0
},
{
"CLSID": "{E01D96AB-DBBD-451D-BDCB-0EE420BC91B1}",
"RISK": "none",
"FILES": " Zibbar.dll",
"NAME": "Zibb.nl Toolbar",
"URL": " http://www.zibb.nl/dossier.asp?portal=0&sctr=21&dossier=1100&bt=A&portalnaam=home ",
"modified": 0
},
{
"CLSID": "{E02E86EB-220B-4B59-A251-F849405E1D64}",
"RISK": "none",
"FILES": " inetLockBho.dll",
"NAME": "PC Magazine Password Profiler",
"modified": 0
},
{
"CLSID": "{E0B9B5FE-B66E-4FB0-A1D9-726F0E743CFD}",
"RISK": "high",
"FILES": " SurfairyPP.dll",
"NAME": "Divago Surfairy",
"URL": " http://www.doxdesk.com/parasite/Surfairy.html ",
"modified": 0
},
{
"CLSID": "{E0E899AB-F487-11D5-8D29-0050BA6940E3}",
"RISK": "none",
"FILES": " fgiebar.dll",
"NAME": "FlashGet",
"URL": " http://www.amazesoft.com/ ",
"modified": 0
},
{
"CLSID": "{E0F0E0E1-5D45-11D4-BC00-2DCC73302D70}",
"RISK": "high",
"FILES": " cpr.dll",
"NAME": "AdRoar adware",
"modified": 0
},
{
"CLSID": "{E166B4A2-83E7-11D3-B4FD-004005A47AAA}",
"RISK": "none",
"FILES": " iec.dll",
"NAME": "Powermarks Bookmark manager",
"URL": " http://www.kaylon.com/power.html ",
"modified": 0
},
{
"CLSID": "{E19569C7-DBCA-4576-96A6-97DE7C5A22EF}",
"RISK": "none",
"FILES": " FREESE~1.DLL",
"NAME": "FreeSearchPal",
"URL": " http://www.freesearchpal.com/toolbar.html ",
"modified": 0
},
{
"CLSID": "{E24AD748-155E-4254-B674-4EDF86E7E1DF}",
"RISK": "none",
"FILES": " POP-UP~1.DLL",
"NAME": "Acronis Privacy Expert Suite",
"modified": 0
},
{
"CLSID": "{E26FDEC1-053B-11D6-B969-CEEBA9E95046}",
"RISK": "none",
"FILES": " Ieband3.dll",
"NAME": "FirstStop WebSearch",
"URL": " http://www.firststopwebsearch.com/ ",
"modified": 0
},
{
"CLSID": "{E2B1672A-DA31-4F7D-A2BF-C18C50BF8F6F}",
"RISK": "high",
"FILES": " Searchbosstoolbar.dll",
"NAME": "SearchBoss toolbar",
"URL": " http://www.searchboss.com/tools/searchbar/ ",
"modified": 0
},
{
"CLSID": "{E2DDF680-9905-4dee-8C64-0A5DE7FE133C}",
"RISK": "high",
"FILES": " mssearch.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{E3215F20-3212-11D6-9F8B-00D0B743919D}",
"RISK": "none",
"FILES": " StopzillaBHO.dll, SZIEBHO.dll ",
"NAME": "StopZilla",
"URL": " http://www.stopzilla.com/site/ ",
"modified": 0
},
{
"CLSID": "{E3EEBBE8-9CAB-4C76-B26A-747E25EBB4C6}",
"RISK": "high",
"FILES": " coolwebsearch-info.dll, COOLWE~1.DLL",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{E479EDE1-923E-11D3-B82B-00E09871521B}",
"RISK": "none",
"FILES": " CompassIE.dll, CmpsIE.dll",
"NAME": "Compass",
"URL": " http://www.softgauge.com/compass/ ",
"modified": 0
},
{
"CLSID": "{E539DEA3-BA67-4F1F-A897-5F2F4F29A063}",
"RISK": "high",
"FILES": " winenc32.dll",
"NAME": "i-Lookup/GlobalWebSearch",
"URL": " <a href=\\\"http://www.doxdesk.com/parasite/ILookup.html\\\" target=\\\"_blank\\\">i-Lookup/GlobalWebSearch</a>",
"modified": 0
},
{
"CLSID": "{E5E4E352-6947-44EE-A420-DB84EFD3FE93}",
"RISK": "high",
"FILES": " ehelper.dll",
"NAME": "CnsMin related",
"URL": " http://www.doxdesk.com/parasite/CnsMin.html ",
"modified": 0
},
{
"CLSID": "{E626DA33-FCDD-4918-833D-FD39900B11F0}",
"RISK": "none",
"FILES": " IECompanion.dll",
"NAME": "IECompanion",
"URL": " http://www.bados.com/modules.php?name=Products&prod=IECompanion ",
"modified": 0
},
{
"CLSID": "{E6B64F67-B100-4636-8D51-D113E1F5FF93}",
"RISK": "none",
"FILES": " CSShell.dll",
"NAME": "ContentSaver Offline Browser",
"URL": " http://www.macropool.com/en/index.html ",
"modified": 0
},
{
"CLSID": "{E720B458-B65A-438C-9FF3-B1DF65D7DB3E}",
"RISK": "high",
"FILES": " LocatorS.dll",
"NAME": "LocatorS toolbar",
"modified": 0
},
{
"CLSID": "{E720B458-B65A-438C-9FF3-B1DF65D7DB3F}",
"RISK": "high",
"FILES": " shdocvw.dll ",
"NAME": "LocatorS toolbar",
"modified": 0
},
{
"CLSID": "{E75B287F-2D04-11D5-BBE0-0050047AA3D1}",
"RISK": "none",
"FILES": " AimAtSite.dll",
"NAME": "AimAtSite Toolbar",
"modified": 0
},
{
"CLSID": "{E7AFFF2A-1B57-49C7-BF6B-E5123394C970}",
"RISK": "high",
"FILES": " webinfo.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{E7DC02F7-A213-4866-B800-FDCB4555FB79}",
"RISK": "none",
"FILES": " BO.DLL",
"NAME": "MECA instant messenger client",
"URL": " http://www.meca.com/Default.htm ",
"modified": 0
},
{
"CLSID": "{E868656B-F0D3-4A61-8FE8-F47C90119E39}",
"RISK": "medium",
"FILES": " Meca Plugin.dll",
"NAME": "Meca Messenger",
"URL": " http://www.meca.com/Default.htm ",
"modified": 0
},
{
"CLSID": "{E8B4F3AA-9509-4081-9A85-914D5E9BEC81}",
"RISK": "high",
"FILES": " bpv1a.dll",
"NAME": "Best Phrases adware",
"modified": 0
},
{
"CLSID": "{E8C0F153-B768-4e68-B14F-40F0E8531675}",
"RISK": "none",
"FILES": " BhoCiti.dll",
"NAME": "Citibank Virtual Account software",
"URL": " https://www.accountonline.com/CB/integrity/learn.jsp ",
"modified": 0
},
{
"CLSID": "{E9147A0A-A866-4214-B47C-DA821891240F}",
"RISK": "high",
"FILES": " ngsw31.dll",
"NAME": "ESD Technologies/Adblaster adware",
"modified": 0
},
{
"CLSID": "{E915E62E-41DA-40D0-8106-3438B4D24394}",
"RISK": "none",
"FILES": " SurfBar.dll",
"NAME": "WinSweep",
"modified": 0
},
{
"CLSID": "{E97DAE80-0305-427e-ABA1-BDD775EF53B0}",
"RISK": "none",
"FILES": " Ietb.dll",
"NAME": "SearchSpot",
"URL": " http://www.searchspot.com/toolbar.html ",
"modified": 0
},
{
"CLSID": "{EA4587EB-3106-448a-8B31-F1572E981765}",
"RISK": "none",
"FILES": " MYLOGO.DLL",
"NAME": "EDENSOFT MYLOGO",
"URL": " http://www.edensoft.com/mylogo/ ",
"modified": 0
},
{
"CLSID": "{EA7F9A52-0A05-11D2-98C5-00104B7229C2}",
"RISK": "none",
"FILES": " Waveie.dll",
"NAME": "WebTV Wave Top",
"URL": " http://www.aitech.com/support/specialtechnlgs.htm ",
"modified": 0
},
{
"CLSID": "{EAD0B31D-9DAE-42CE-9821-EF9794AEC515}",
"RISK": "high",
"FILES": " CGLBAR.DLL",
"NAME": "CamGirlsLive Toolbar",
"modified": 0
},
{
"CLSID": "{EAE191BA-FB87-40CA-80D2-D639A2595150}",
"RISK": "none",
"FILES": " Iemdl.dll",
"NAME": "IE Middle Clicker",
"URL": " http://www.cs.huji.ac.il/~gadam/ ",
"modified": 0
},
{
"CLSID": "{EBB03E3E-020A-418D-B322-761B730CA860}",
"RISK": "none",
"FILES": " ANWBTOOLBAR.DLL",
"NAME": "Dutch Autoclub",
"URL": " <a href=\\\"http://route.anwb.nl/zoek_plattegrond.html\\\" target=\\\"_blank\\\">Dutch Autoclub</a>",
"modified": 0
},
{
"CLSID": "{EBBD88E5-C372-469D-B4C5-1FE00352AB9B}",
"RISK": "high",
"FILES": " ss32.dll",
"NAME": "FavoriteMan/SpyAssault",
"URL": " http://www.doxdesk.com/parasite/FavoriteMan.html ",
"modified": 0
},
{
"CLSID": "{EBBFE27C-BDF0-11D2-BBE5-00609419F467}",
"RISK": "high",
"FILES": " amcis.dll",
"NAME": "Aureate/Radiate",
"URL": " http://www.cexx.org/aureate.htm ",
"modified": 0
},
{
"CLSID": "{EBCDDA60-2A68-11D3-8A43-0060083CFB9C}",
"RISK": "medium",
"FILES": " Nzdd.dll, Nzdd*dll (* = digit), Rdxph.dll, Sdph20.dll",
"NAME": "Netzip",
"URL": " Real Download Netscape Smart Download http://editor.actrix.co.nz/byarticle/spyw.htm ",
"modified": 0
},
{
"CLSID": "{EBDCEF51-9973-49E5-BBE8-5CC880CE2030}",
"RISK": "none",
"FILES": " ebh.dll",
"NAME": "Web Highlighter",
"URL": " http://www.pcmag.com/article2/04149311400.asp ",
"modified": 0
},
{
"CLSID": "{EC1EB3CD-9916-4869-9AAF-441BD28F462D}",
"RISK": "none",
"FILES": " adiefltr.dll",
"NAME": "AdIEFiltr",
"URL": " http://www.utils32.com/adiefiltr.htm ",
"modified": 0
},
{
"CLSID": "{EC2D89DE-6936-4CB3-A641-94DB2CAAF67F}",
"RISK": "none",
"FILES": " BndFltr.dll",
"NAME": "AdIEFiltr",
"URL": " http://www.utils32.com/adiefiltr.htm AdIEFiltr ",
"modified": 0
},
{
"CLSID": "{EC788B03-A743-4274-AC9E-DB4F2A03F515}",
"RISK": "high",
"FILES": " Wst.dll",
"NAME": "SearchAndBrowse toolbar",
"URL": " http://www.doxdesk.com/parasite/SearchAndBrowse.html ",
"modified": 0
},
{
"CLSID": "{ED24BB32-17E8-422E-993F-159800A392E7}",
"RISK": "none",
"FILES": " MapStanIETB.dll",
"NAME": "MapStan toolbar",
"URL": " http://www.mapstan.net/en/predownload.jsp ",
"modified": 0
},
{
"CLSID": "{ED657BAF-1EE5-4A07-9D2E-6D0525EFC69B}",
"RISK": "high",
"FILES": " icoourlext.dll ",
"NAME": "P2P Networking",
"modified": 0
},
{
"CLSID": "{ED8DB0FD-D8F4-4b2c-BB5B-9EF040FE104D}",
"RISK": "high",
"FILES": " Ucmie.dll",
"NAME": "UCmore toolbar",
"URL": " http://www.doxdesk.com/parasite/UCmore.html ",
"modified": 0
},
{
"CLSID": "{EDFB8B62-59EE-11d5-86C2-00E02975242F}",
"RISK": "none",
"FILES": " Ilorbar.dll",
"NAME": "iLOR Toolbar",
"URL": " http://www.ilor.com/ILSToolBeta.htm ",
"modified": 0
},
{
"CLSID": "{EE392A64-F30B-47C8-A363-CDA1CEC7DC1B}",
"RISK": "high",
"FILES": " Bar.dll",
"NAME": "NewtonKnows search bar",
"URL": " http://www.doxdesk.com/parasite/NewtonKnows.html ",
"modified": 0
},
{
"CLSID": "{EE392A64-F30B-47C8-A363-CDA1CEC7DC1B}",
"RISK": "none",
"FILES": " Widgetbar.dll",
"NAME": "Widget Toolbar",
"URL": " http://www.widgetsworld.co.uk/toolbar.php?PHPSESSID=191d3fbca9bc393f6fcad96959fd8729 ",
"modified": 0
},
{
"CLSID": "{EE9DD090-902D-4623-9360-FB7D8666202B}",
"RISK": "none",
"FILES": " AbsoluteBar.dll ",
"NAME": "AbsoluteShield Internet Eraser",
"modified": 0
},
{
"CLSID": "{EF99BD32-C1FB-11D2-892F-0090271D4F88}",
"RISK": "none",
"FILES": " Ycomp*_*_*_*.dll",
"NAME": "Yahoo Companion!",
"URL": " http://companion.yahoo.com/ ",
"modified": 0
},
{
"CLSID": "{EFA24E62-B078-11d0-89E4-00C04FC9E26E}",
"RISK": "none",
"NAME": " IE History Band",
"modified": 0
},
{
"CLSID": "{EFD440C0-0943-11d3-9D65-00A0CC22CBC4}",
"RISK": "none",
"FILES": " Qphelper.dll",
"NAME": "Compaq Quick Print Helper",
"modified": 0
},
{
"CLSID": "{EFD84954-6B46-42f4-81F3-94CE9A77052D}",
"RISK": "high",
"FILES": " lbbho.dll",
"NAME": "RelatedLinks adware",
"modified": 0
},
{
"CLSID": "{F0DC0CFE-D11A-489B-84C0-63748AFAABF3}",
"RISK": "high",
"FILES": " Cmctl.dll",
"NAME": "ZyncosMark",
"URL": " http://www.tek-tips.com/gviewthread.cfm/lev2/8/lev3/57/pid/538/qid/221627 ",
"modified": 0
},
{
"CLSID": "{F101D8F9-9E90-4401-9FBF-9B515CAA045F}",
"RISK": "none",
"FILES": " SGengine.dll",
"NAME": "SurfGhost",
"URL": " http://products.enterpriseitplanet.com/security/security/1059245261.html ",
"modified": 0
},
{
"CLSID": "{F104576A-91BA-40AD-91DE-2C20801339AB}",
"RISK": "medium",
"FILES": " Keywords001.dll",
"NAME": "KazaaMate",
"modified": 0
},
{
"CLSID": "{F14AABDD-0232-4e5a-9B52-4178AC0A62B5}",
"RISK": "none",
"FILES": " adsubtb.dll",
"NAME": "AdSubtract",
"URL": " <a href=\\\"http://www.adsubtract.com/index.html\\\" target=\\\"_blank\\\">AdSubtract</a>",
"modified": 0
},
{
"CLSID": "{F16E9E5F-92DD-4000-8701-FBDD48F24B86}",
"RISK": "none",
"FILES": " Iebarget.dll",
"NAME": "GameScanner",
"URL": " http://www.gamescanner.com/iebar/ ",
"modified": 0
},
{
"CLSID": "{F16E9E5F-92DD-4000-8701-FBDD48F24B86}",
"RISK": "none",
"FILES": " Iebarget.dll",
"NAME": "Semiseek toolbar",
"URL": " http://www.semiseek.com/toolbar.htm ",
"modified": 0
},
{
"CLSID": "{F195A1A9-4033-4E5B-B85C-848C3E31A83A}",
"RISK": "high",
"FILES": " syslibie.dll",
"NAME": "Unidentified adware",
"modified": 0
},
{
"CLSID": "{F1FABE79-25FC-46de-8C5A-2C6DB9D64333}",
"RISK": "high",
"FILES": " AlxTB1.dll, AlxTB2.dll",
"NAME": "Alexa",
"URL": " http://www.safersite.com/PestInfo/a/Alexa_Toolbar.asp ",
"modified": 0
},
{
"CLSID": "{F264E777-7AB7-4BEB-8A42-5C37C8F4B6B4}",
"RISK": "none",
"FILES": " Enotebar.dll",
"NAME": "eNotes toolbar",
"modified": 0
},
{
"CLSID": "{F281FFC7-6C63-4bf9-83F2-AB7A6157B109}",
"RISK": "high",
"FILES": " kdpupd.dll",
"NAME": "SafeguardProtect hijacker",
"modified": 0
},
{
"CLSID": "{F2863EDE-7980-443A-AEA2-0F46076D590F}",
"RISK": "high",
"FILES": " Wat.dll",
"NAME": "Roings.com \\\"search enhancement\\\"",
"modified": 0
},
{
"CLSID": "{F2E259E8-0FC8-438C-A6E0-342DD80FA53E}",
"RISK": "none",
"FILES": " CopernicAgentExt.dll, COPERN~1.DLL",
"NAME": "Copernic",
"URL": " http://www.copernic.com/en/products/agent/index.html ",
"modified": 0
},
{
"CLSID": "{F325E940-45EE-11D7-A420-444553540000}",
"RISK": "high",
"FILES": " M030206POHS.DLL",
"NAME": "WurldMedia",
"URL": " http://www.doxdesk.com/parasite/WurldMedia.html ",
"modified": 0
},
{
"CLSID": "{F34EA099-67D1-40c7-97A0-74E4C663E8DC}",
"RISK": "none",
"FILES": " iResolve.dll",
"NAME": "iResolve",
"URL": " http://www.i-dns.net/support_download/downloads/iResolve/iResolve_faq.html ",
"modified": 0
},
{
"CLSID": "{F36C1198-FC6B-4012-9928-DFA76FB56CC3}",
"RISK": "high",
"FILES": " GAMhelper.dll",
"NAME": "unknown hijacker",
"URL": " produces popups and -unders",
"modified": 0
},
{
"CLSID": "{F4A27D22-E603-4B1B-B8D0-1CF7D57E56F2}",
"RISK": "none",
"FILES": " IEExt.dll",
"NAME": "NetLeech",
"modified": 0
},
{
"CLSID": "{F4A645D0-D4D5-439E-9DBC-B31BBD9CB890}",
"RISK": "high",
"FILES": " BPV2s.dll",
"NAME": "BestPhrases variant",
"URL": " http://www.pestpatrol.com/PestInfo/b/bpv1a_dll.asp ",
"modified": 0
},
{
"CLSID": "{F50CE767-AE72-45EB-AECD-E8786C240373}",
"RISK": "none",
"FILES": " Petoolbar***.dll, * = a random digit)",
"NAME": "Popup Eliminator",
"URL": " http://www.popupeliminator.info/ ",
"modified": 0
},
{
"CLSID": "{F5528ECB-D64C-479D-AFEB-89C90FA191A3}",
"RISK": "none",
"FILES": " TOOLBAR.DLL",
"NAME": "Pengs Toolbar",
"URL": " http://www.pengs.com/free_toolbar.htm ",
"modified": 0
},
{
"CLSID": "{F5735C15-1FB2-41FE-BA12-242757E69DDE}",
"RISK": "none",
"FILES": " toolbar.dll",
"NAME": "NetZero toolbar",
"modified": 0
},
{
"CLSID": "{F585D290-1BF4-480A-AEC2-4182593F1E32}",
"RISK": "high",
"FILES": " Webtool.dll",
"NAME": "Netguarder Web Cleaner",
"URL": " http://210.82.112.58/en/index.htm ",
"modified": 0
},
{
"CLSID": "{F757FBBF-10E5-4DDA-BBEA-2357E54BEA2B}",
"RISK": "none",
"FILES": " LLBHO3.dll",
"NAME": "LiveLink Explorer",
"URL": " http://www.opentext.net/livelink/ ",
"modified": 0
},
{
"CLSID": "{F760CB9E-C60F-4A89-890E-FAE8B849493E}",
"RISK": "high",
"FILES": " Madise.dll",
"NAME": "MagicAds adware",
"modified": 0
},
{
"CLSID": "{F79AD27F-8140-4E33-8B1D-C4FC6B663CCA}",
"RISK": "medium",
"FILES": " CopernicMeta.dll",
"NAME": "Copernic Meta toolbar",
"modified": 0
},
{
"CLSID": "{F7B040B5-307B-4FAC-BB93-556A08156BAC}",
"RISK": "medium",
"FILES": " Toolbar.dll",
"NAME": "ACSearch toolbar",
"modified": 0
},
{
"CLSID": "{F7F808F0-6F7D-442C-93E3-4A4827C2E4C8}",
"RISK": "high",
"FILES": " opti130.dll, nem***.dll, (* = digit)",
"NAME": "Dyfuca/Internet Optimizer",
"URL": " http://www.doxdesk.com/parasite/InternetOptimizer.html ",
"modified": 0
},
{
"CLSID": "{F8A53FBE-5846-11D2-A022-006097D2400E}",
"RISK": "none",
"FILES": " Ielink.dll",
"NAME": "Mindmaker",
"URL": " http://www.mindmaker.com/ ",
"modified": 0
},
{
"CLSID": "{F8AC5CE3-4B50-49D6-B632-FAEA1734FD29}",
"RISK": "medium",
"FILES": " Ferretband.dll",
"NAME": "WebFerret",
"URL": " http://www.ferretsoft.com/learn.htm ",
"modified": 0
},
{
"CLSID": "{F9765480-72D1-11D4-A75A-004F49045A87}",
"RISK": "high",
"FILES": " eXactToolbar.dll, Exacttoolbar*****.dll, (* = random digit)",
"NAME": "eXact Search Bar",
"URL": " http://www.doxdesk.com/parasite/eXactSearch.html ",
"modified": 0
},
{
"CLSID": "{F998DBF2-AA30-4599-8901-490F433E2ABC}",
"RISK": "none",
"FILES": " zkstlbr.dll",
"NAME": "Freedom WebSecure",
"URL": " http://www.freedom.net/products/websecure/index.html ",
"modified": 0
},
{
"CLSID": "{F9B9480F-8BE3-4117-985D-350ACEF1897A}",
"RISK": "none",
"FILES": " KudoZnetBar.dll ",
"NAME": "KudoZ.NET toolbar",
"modified": 0
},
{
"CLSID": "{FA79FA22-8DB3-43D1-997B-6DBFD8845569}",
"RISK": "high",
"FILES": " Myaccess.dll",
"NAME": "Meridian popupper",
"URL": " http://www.doxdesk.com/parasite/Meridian.html ",
"modified": 0
},
{
"CLSID": "{FA91B828-F937-4568-82C1-843627E63ED7}",
"RISK": "none",
"FILES": " BandObjs.dll",
"NAME": "Zero Knowledge Freedom Popup Killer",
"URL": " http://www.freedom.net/ ",
"modified": 0
},
{
"CLSID": "{FAC6E0E1-5D45-4907-BC00-302D702DCC73}",
"RISK": "high",
"FILES": " cpr.dll",
"NAME": "AdRoar adware",
"modified": 0
},
{
"CLSID": "{FB2961FD-DD24-4F8A-8A92-6F9325FF6F11}",
"RISK": "high",
"FILES": " Toolbar.dll",
"NAME": "Supaseek toolbar",
"modified": 0
},
{
"CLSID": "{FB986A68-EAE4-11D4-9BD1-0080C6F60B6A}",
"RISK": "medium",
"FILES": " CouponBar.dll",
"NAME": "CouponBar",
"modified": 0
},
{
"CLSID": "{FBAA0B9E-A059-43E4-9699-76EB0AEB975B}",
"RISK": "high",
"FILES": " Gws.dll",
"NAME": "i-lookup search bar",
"URL": " http://www.doxdesk.com/parasite/ILookup.html ",
"modified": 0
},
{
"CLSID": "{FBED6A02-71FB-11D8-86B0-0002441A9695}",
"RISK": "high",
"FILES": " 5_0_1browserhelper5.dll",
"NAME": "BlazeFind hijacker variant",
"modified": 0
},
{
"CLSID": "{FC4C5EAE-66EE-11D4-BC67-0000E8E582D2}",
"RISK": "high",
"FILES": " e2bho.dll",
"NAME": "Hijacker",
"URL": " as yet unidentified",
"modified": 0
},
{
"CLSID": "{FCADDC14-BD46-408A-9842-CDBE1C6D37EB}",
"RISK": "high",
"FILES": " browserhelpere******.dll (* = random digit), Ms****.dll (* = random char), Tagger~*.dll",
"NAME": "ClientMan",
"URL": " http://www.doxdesk.com/parasite/ClientMan.html ",
"modified": 0
},
{
"CLSID": "{FCADDC14-BD46-408A-9842-CDBE1C6D37EB}",
"RISK": "none",
"FILES": " adflr.dll",
"NAME": "IE Doctor toolbar",
"URL": " http://www.axesoft.com/iedr/ ",
"modified": 0
},
{
"CLSID": "{FD7D6851-616E-48DE-AF55-EE2E34F389B0}",
"RISK": "high",
"FILES": " SearchScoutToolbar.dll",
"NAME": "SearchScout (Gator)",
"URL": " http://www.doxdesk.com/parasite/Gator.html ",
"modified": 0
},
{
"CLSID": "{FD9BC004-8331-4457-B830-4759FF704C22}",
"RISK": "high",
"FILES": " Msiesh.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{FDD3B846-8D59-4ffb-8758-209B6AD74ACC}",
"RISK": "medium",
"FILES": " mnyviewer.dll",
"NAME": "Microsoft Money",
"URL": " http://www.microsoft.com/money/default.asp ",
"modified": 0
},
{
"CLSID": "{FE6BC4EF-5676-484B-88AE-883323913256}",
"RISK": "high",
"FILES": " Csietb.dll",
"NAME": "Comet Cursor",
"URL": " http://www.doxdesk.com/parasite/CometCursor.html ",
"modified": 0
},
{
"CLSID": "{FEFAFFDD-573B-4795-BDB7-85F2D68743D8}",
"RISK": "medium",
"FILES": " nHook10.dll",
"NAME": "linked to www.netpia.com",
"modified": 0
},
{
"CLSID": "{FF1BF4C7-4E08-4A28-A43F-9D60A9F7A880}",
"RISK": "high",
"FILES": " Mshelper.dll",
"NAME": "CoolWebSearch parasite variant",
"modified": 0
},
{
"CLSID": "{FF284F5C-7CF9-4682-8701-D467C1DBB99F}",
"RISK": "unknown",
"FILES": " prmtie.dll",
"NAME": "Translator (unknown)",
"modified": 0
},
{
"CLSID": "{FF7FD490-34E7-4FA1-927A-F5799E6AAD7B}",
"RISK": "high",
"FILES": " win32.dll",
"NAME": "Surferbar hijacker",
"URL": " http://forums.spywareinfo.com/index.php?showtopic=10456 ",
"modified": 0
},
{
"CLSID": "{FF905E0C-CFE9-4A90-AFFF-C13AF5D908F0}",
"RISK": "high",
"FILES": " CasinoRewardsExplorerToolbar.dll",
"NAME": "CasinoRewards software",
"modified": 0
},
{
"CLSID": "{FFCBEECE-FB0C-11D2-AB16-00104B9BBBD2}",
"RISK": "none",
"FILES": " Ahiehelp.Dll",
"NAME": "Excite/@Home ISP proxy software",
"modified": 0
},
{
"CLSID": "{FFD2825E-0785-40C5-9A41-518F53A8261F}",
"RISK": "high",
"FILES": " SiteHlpr.dll",
"NAME": "VX2 Variant",
"URL": " http://www.doxdesk.com/parasite/Transponder.html ",
"modified": 0
},
{
"CLSID": "{FFFFFEF0-5B30-21D4-945D-000000000000}",
"RISK": "none",
"FILES": " SDIEInt.dll",
"NAME": "Stardownloader",
"URL": " http://www.stardownloader.com/index.php ",
"modified": 0
},
{
"CLSID": "{FFFFFFFF-FFFF-FFFF-FFFF-5F8507C5F4E9}",
"RISK": "high",
"FILES": " iempg.dll, iempg2.dll",
"NAME": "MPGcom toolbar",
"modified": 0
},
{
"CLSID": "{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}",
"RISK": "none",
"FILES": " AcroIEhelper.ocx, AcroIEhelper.dll",
"NAME": "Adobe Acrobat reader",
"URL": " http://www.adobe.com/products/acrobat/readstep2.html ",
"modified": 0
},
{
"CLSID": "{E5A1691B-D188-4419-AD02-90002030B8EE}",
"RISK": "none",
"FILES": "IEFlash.dll",
"NAME": "FlashFXP Plugin",
"modified": 0
},
{
"CLSID": "{21FFB6C0-0DA1-11D5-A9D5-00500413153C}",
"RISK": "high",
"FILES": "gain.dll",
"NAME": "GAIN adware",
"modified": 0
},
{
"CLSID": "{42132494-F48F-4187-ABC8-0F343AD2E465}",
"RISK": "high",
"FILES": "Pbshmd.dll",
"NAME": "Pbar",
"URL": "http://www.pbar.net",
"modified": 0
},
{
"CLSID": "{549B5CA7-4A86-11D7-A4DF-000874180BB3}",
"RISK": "none",
"NAME": "No name BHO",
"modified": 0
},
{
"CLSID": "{463DF89F-A163-4DF6-A25F-9E4126267F03}",
"modified": 0
},
{
"CLSID": "{4D568F0F-8AC9-40AB-88B7-415134C78777}",
"RISK": "high",
"FILES": "winb2s32.dll",
"NAME": "Begin2Search bar, iLookup variant",
"URL": "http://www.doxdesk.com/parasite/ILookup.html",
"modified": 0
},
{
"CLSID": "{E8EAEB34-F7B5-4C55-87FF-720FAF53D841}",
"RISK": "high",
"FILES": " midaddle.dll, *****.dll (* = random char/digit)",
"NAME": "MidAddle adware",
"URL": "http://www.adrants.com/2004/06/adspyre-launches-midaddle-ad-system.php",
"modified": 0
},
{
"CLSID": "{046D6EA4-15E3-4b27-8010-45BD78A9219E}",
"RISK": "high",
"FILES": "inetkw.dll",
"NAME": "Actual Names (AdvSearch) Internet Keywords",
"URL": "http://www.pestpatrol.com/pestinfo/a/actualnames.asp",
"modified": 0
},
{
"CLSID": "{01F44A8A-8C97-4325-A378-76E68DC4AB2E}",
"RISK": "high",
"FILES": "systb.dll",
"NAME": "IEPlugin variant",
"URL": "http://www.doxdesk.com/parasite/IEPlugin.html",
"modified": 0
},
{
"CLSID": "{00000000-0000-0000-BFA1-D7EE6696B865}",
"RISK": "high",
"FILES": "icdd7ee6.dll",
"NAME": " LZIO Free Community adware",
"modified": 0
},
{
"CLSID": "{49E0E0F0-5C30-11D4-945D-000000000003}",
"RISK": "none",
"FILES": "popup.dll",
"NAME": "Ashampoo WinOptimizer",
"URL": "http://www.ashampoo.com/frontend/products/php/product.php?idstring=0106&session_langid=2",
"modified": 0
},
{
"CLSID": "{00320615-B6C2-40A6-8F99-F1C52D674FAD}",
"RISK": "high",
"FILES": "localNRD.dll",
"NAME": "Transponder parasite variant",
"URL": "http://www.doxdesk.com/parasite/Transponder.html",
"modified": 0
},
{
"CLSID": "{3EC8E271-FAB9-418a-8A8E-65AEB4029E64}",
"RISK": "medium",
"NAME": "VirtuMonde Adware",
"modified": 0
},
{
"CLSID": "{36B0A261-EA24-6BE5-6027-7FC4035DD69B}",
"RISK": "high",
"FILES": "sdkpj32.dll",
"NAME": "TrojanDownloader.Win32.Agent.an",
"modified": 0
},
{
"CLSID": "{EC29DB06-7594-67B6-AD29-44125C744D4C}",
"RISK": "none",
"FILES": "winit.dll",
"NAME": "WinIt",
"modified": 0
},
{
"CLSID": "{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}",
"RISK": "none",
"FILES": "msntb.dll",
"NAME": "MSN Toolbar",
"URL": "http://toolbar.msn.com/",
"modified": 0
},
{
"CLSID": "{9394EDE7-C8B5-483E-8773-474BF36AF6E4}",
"RISK": "none",
"FILES": "stmain.dll",
"NAME": "MSN Toolbar",
"URL": "http://toolbar.msn.com/",
"modified": 0
},
{
"CLSID": "{********-****-****-****-***********}2",
"RISK": "high",
"FILES": " WinNB42.dll, (random Class ID)",
"NAME": "NetNucleus/Mirar webband",
"modified": 0
},
{
"CLSID": "{********-****-****-****-************}1",
"RISK": "high",
"FILES": " WinNB41.dll, (random Class ID)",
"NAME": "NetNucleus/Mirar webband",
"modified": 0
},
{
"CLSID": "{********-****-****-****-************}0",
"RISK": "high",
"FILES": " SuperBar.dll , (random Class ID)",
"NAME": "SuperBar",
"URL": " http://www.doxdesk.com/parasite/SuperBar.html ",
"modified": 0
},
{
"CLSID": "{CF7C3CF0-4B15-11D1-ABED-709549C10000}",
"RISK": "none",
"FILES": "IEHelper.dll",
"NAME": "Advanced System Optimizer",
"URL": "http://www.systweak.com/",
"modified": 0
},
{
"CLSID": "{467FAEB2-5F5B-4c81-BAE0-2A4752CA7F4E}",
"RISK": "high",
"FILES": " (random chars/digits).dll",
"NAME": "CoolWebSearch parasite variant",
"URL": "http://www.wilderssecurity.com/showpost.php?p=229285&postcount=28",
"modified": 0
},
{
"CLSID": "{28CAEFF3-0F18-4036-B504-51D73BD81C3A}",
"RISK": "high",
"FILES": "Elitebar.dll, ELITEB~*.DLL (* = digit)",
"NAME": "EliteBar, SearchMiracle",
"modified": 0
}
]
}