CLSID |
Name |
Filename |
Description |
Status |
{2018eb71-06b5-4438-abf4-e40df31e0be5} | CouponFollow.BHO | mscoree.dll (Windows system file!) [codebase: Program Files\CouponFollow, LLC\Coupons at Checkout\CouponFollowAddon.dll] | Coupons at Checkout - "The Automatic Coupon Savings Tool" | L BHO |
{44ed99e2-16a6-4b89-80d6-5b21cf42e78b} | FriendsChecker, UnfriendApp, ExFriendAlert, Websteroids, BetterExperience, RecordChecker, SearchDonkey, InfoSeeker, Spy Alert, Safe Monitor, SecureWeb, TVGenie, TubeDimmer, Search Deals | common.dll | Foistware bundled with various third party software or as part of an adware bundle - detected by DrWeb as "Adware.Plugin.16" and by Nod32 as "Win32/ExFriendAlert.A" - also see hereand here | X BHO |
{B3A05538-8F91-49C1-8EE3-6EB142B41E2A} | HelloWorldBHO, Microsoft Help | Microsoft.System.Help.dll, Microsoft.System.Help.Object.dll, Microsoft.System.Help.Library.dll | Keyword hijacker redirecting to find.fm and bestsamara.org, detected by Kaspersky antivirus as Trojan.Win32.BHO.es | X BHO |
{6CB6FA9C-7125-401F-932B-ECF26BF0BF16} | (no name) | shared.dll | Parasite of Korean origin hailing from tabside.com and detected as Win-Adware/BHO.TabSide.198656.B | X BHO |
{AFD4AD01-58C1-47DB-A404-FBE00A6C5486} | Browser Helper Object, Shared Library | helper.dll, _helper.dll, lib.dll, _lib.dll, shared.dll, _shared.dll | DeepDive adware - also see here and here. Detected by Symantec as Trojan.Komplexad | X BHO |
{4EF9CC34-337D-46EF-AE27-7FB6FD3CDA01} | Inet Support Services | mscoree.dll (MS file!) - [codebase: %SYSTEMDRIVE%\Program\Inet2\inet.dl l] | Parasite hailing from qutria.com and redirecting searches to clearsearch.com - also see this ThreatExpert report and here | X BHO |
{F1749D0B-358F-4D40-85A0-D377759D12F5} | Microsoft.AccessibilityOpti ons 0 | Microsoft-HEWO.accoptions, Microsoft-****.accoptions | Keylogger, a variant of this_one | X BHO |
{62DF903E-2DD9-429E-83A4-4F4DC5E88B06} | Microsoft.AccessibilityOpti ons 0 | Microsoft-HEWO.accoptions, Microsoft-****.accoptions | Keylogger, a variant of this_one | X BHO |
{D65BAC9F-6E32-4EBF-A50A-3F35A7122022} | Microsoft.Defender 0 | Microsoft-DDRN.Defender, Microsoft-****.Defender | Keylogger, a variant of this_one | X BHO |
{3080B29A-04B0-4095-BEB7-B797B7D7F690} | (no name) | microsoft.dll | TROJ_ARTIEF.G trojan | X BHO |
{48AAFE68-BFE3-4E05-9451-6CF4DB7DAFB7} | ??? | microsoft.dll | Trojan/BHO.2B79 | X BHO |
{9FD401A7-8555-4E93-9B0F-BF63649BE1A8} | (no name) | microsoft.dll | TROJ_ARTIEF.E trojan | X BHO |
{A72414B2-0ED7-4F61-95B4-9CCEFC8A9A7C} | ??? | microsoft.dll | Downloader, detected as TROJ_BHO.KA | X BHO |
{20F49338-A318-478F-8F91-2C7C440E4C0E} | (no name) | microsoft.dll | Troj/BHO-DL trojan | X BHO |
{25816859-45C7-47AA-84D0-E3687F689585} | (no name) | microsoft.dll | TROJ_ARTIEF.G trojan | X BHO |
{1E0ABEA7-7385-4B5E-A23A-6E97BD9F3412} | (no name) | microsoft.dll | Infostealer.Banbot trojan | X BHO |
{C101D8A1-B645-4F6D-BD01-B48DBB18B84A} | (no name) | microsoft.dll | Variant of the Infostealer.Banbot trojan | X BHO |
{23B96105-E817-4D39-BCBF-18EBA9D5B711} | Download.Accelerator | microsoft.dll | Variant of the Infostealer.Banbot trojan | X BHO |
{872FDE30-ABB4-4AFA-AC1B-58231D973D14} | (no name) | microsoft.dll | Variant of the Infostealer.Banbot trojan | X BHO |
{2E0AF013-3655-4C2B-931D-5B999EFA246A} | (no name) | microsoft.dll | Detected by Sophos as Troj/Agent-GCW | X BHO |
{06D7D698-1ECD-407F-A1C9-EFA54860490A} | Microsoft Web Recorder Helper | Microsoft.Mom.RecorderBarBHO.dll | Web Recorder in Microsoft System Center Essentials 2007 Edition | L BHO |
{b924f0b4-0b3c-49c0-bab2-213fb9ebd1d3} | Microsoft Web Test Recorder 14.0 Helper | Microsoft.VisualStudio.QualityTools .RecorderBarBHO100.dll | Microsoft Visual Studio Web Test Recorder Helper | L BHO |
{432dd630-7e03-4c97-9d62-b99f52df4fc2} | Microsoft Web Test Recorder 12.0 Helper | Microsoft.VisualStudio.QualityTools .RecorderBarBHO100.dll | Microsoft Web Test Recorder, see here | L BHO |
{62355041-605D-4469-84FD-5D66ED67A7E3} | Microsoft Web Test Recorder Helper | Microsoft.VisualStudio.QualityTools .RecorderBarBHO.dll | Microsoft Visual Studio Web Test Recorder | L BHO |
{876d9f09-c6d6-4324-a2cc-04dd9a4de12f} | Microsoft Web Test Recorder 10.0 Helper | Microsoft.VisualStudio.QualityTools .RecorderBarBHO100.dll | Microsoft Visual Studio Web Test Recorder | L BHO |
{DDA57003-0068-4ed2-9D32-4D1EC707D94D} | Microsoft Web Test Recorder 10.0 Helper | Microsoft.VisualStudio.QualityTools .RecorderBarBHO100.dll | Microsoft Visual Studio Web Test Recorder | L BHO |
{E31CE47F-C268-41ba-897B-B415E613947D} | Microsoft Web Test Recorder 9.0 Helper | Microsoft.VisualStudio.QualityTools .RecorderBarBHO90.dll | Microsoft Visual Studio Web Test Recorder | L BHO |
{7ADEFB8E-B723-45E6-86E2-2B7841F5D6A5} | PerformancePack | mscoree.dll (MS file!) [codebase: %AppData%\Microsoft Extensions\MicrosoftUpdate.dll ] | Malware, see VirusTotalscan results for dropper and here | X BHO |