Global Search

Not sure what a file is? Sort through the possibilities with a quick search of all of the lists.
Or get more accurate results by browsing and searching by list.
CLSID List Results
BHOs, Toolbars, SHs, Explorer Bars

CLSID Name Filename Description Status
{11111111-1111-1111-1111-110411361128}CrossriderApp0043628, weDownload Manager ProweDownload Manager Pro-bho.dll, weDownload Manager Pro-bho64.dllCrossrider cross-browser plugin, often bundled with third party software or part of an adware bundle - detected as Adware.CrossRider and by Malwarebytes Anti-Malware as "PUP.Optional.CrossRider" or "PUP.Optional.WeDownload.A"X BHO
{11111111-1111-1111-1111-110411901174}CrossriderApp0049074, The weDownload ManagerThe weDownload Manager-bho.dll , The weDownload Manager-bho64.dll Crossrider cross-browser plugin, often bundled with third party software or part of an adware bundle - detected as Adware.CrossRider and by Malwarebytes Anti-Malware as PUP.Optional.CrossRider.M or PUP.Optional.WeDownload.A - also see hereX BHO
{11111111-1111-1111-1111-110611181162}CrossriderApp0061862, The weDownload Manager, 7635d2e0f3990131f3574578a53
c5ebc0061862
The weDownload Manager-bho.dll, The weDownload Manager-bho64.dll, The weDownloads Manager+-bho.dllCrossrider cross-browser plugin, often bundled with third party software or part of an adware bundle - detected as Adware.CrossRider and by Malwarebytes Anti-Malware as "PUP.Optional.CrossRider" or "PUP.Optional.weDownload.A" - also see hereX BHO
{0EA99306-BC87-4930-9E1D-1D1EA32A7E4E}Credential Manager for HP ProtectTools, ASUS Security Protect ManagerITIEAddin64.dllHP ProtectTools security manager or ASUS Security Protect ManagerL BHO
{DF21F1DB-80C6-11D3-9483-B03D0EC10000}HP Credential Manager for ProtectTools, VeriSoft Access ManagerItIeAddIN.dllHP ProtectTools security manager or Bioscrypt VeriSoft Access ManagerL BHO

Startup List Results
Startup Entry

Name Filename Description Status
MSN P2P Managermsnp2pmgr.exeAdded by a variant of the IRCBOT Note: Located in \%WINDIR%\System32\ Note: Use SDFix under supervision.X
DCE Managerdcemgr.exeAdded by the TUMAG.A TROJAN!X
DLL Managerdllmngr32.exeAdded by a variant of the WIN32.RBOT WORM!X
Bug ManagerBugManager.exe Related to Fitbug Limited Fitness, Sleep and Activity Tracker. Note: Located in \%Program Files%\Fitbug Limited\Bug Manager\U
FW Managerfwcheck.exeAdded by the W32/Delbot-H Spyware WORM! Note: Located in C:\Windows\System (Win9x/Me), C:\%WINDIR%\System32 (XP/WinNT/2K).X

O9 List Results
Internet Explorer Buttons

CLSID Name Filename Description Status
{DE365254-2F9B-4908-9E3A-7AAA6EC90BCC}WinAVI FLV ManagerFLVTune.dllRelated to WinAVI FLV Manager WinAVI FLV Converter is an easy-to-use software to download/convert FLV video files from Internet. Note: Located in \%Program Files%\WinAVI FLV Converter\L
{D5AD327A-A089-4F04-89FD-4EA9812B3913}Download all with DF Managerdfmanager.exeRelated to Deposit Files The program uses the FTP protocol for upload your files. Note: Located in \%Program Files%\DepositFiles\DF Manager\L
{0045D4BC-5189-4b67-969C-83BB1906C421}ThinkVantage Password Manager...Installed on ThinkVantage portable computers by Lenovo previously IBM.L
{F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3}Lenovo Password Manager...tvtpwm_ie_com.dllRelated to Password Manager found on Lenovo computers. Note: Located in \%Program Files%\Lenovo\Client Security Solution\L
{755B05A7-0770-4185-B5F6-E75A2CA527E2}Signature Manager optionsSubsHelper.dllAdded by the Generic.dx!bbnx!3A1DC46D7F59 TROJAN! Note: Located in \%Program Files%\X

O23 List Results
Windows Services

Name Filename Description Status
Desktop Window Manager Session Manager (UxSms)svchost.exe -k LocalSystemNetworkRestrictedPart of Windows Vista Note: Located in C:\%WINDIR%\System32L
Manager (Windows XP Manager)msnmgr.exeAdded by the W32/Kassbot-L Note: Read the link, rootkit type stealth involved.X
FLEXnet Licensing Manager for Adobe Products (FLEXnet Licensing Manager)regw2.exeRelated to Flexera Software, Inc The Flexnet Licensing service is used by most Adobe products to prevent piracy. Note: Located in \%WINDIR%\%System%\L
RANOPT Task Manager (RT Task Manager)rt_TaskManager.exeRelated to AIRCOM International RANOPT is extremely easy to use. Flexible yet powerful, it is truly database driven, with no need to reload data each time it is used, meaning KPIs can be analysed quickly and easily. Note: Located in \%Program Files%\AIRCOM International\ENTERPRISE 6.2\common\ Note: Now owned by TEOCO Corporation.L
Install Driver Manager (Install Driver Table Manager)wpablan.exeAdded by the W32/Sdbot-CWR TROJAN! Note: This worm\trojan is located in C:\%WINDIR%\TEMP\ folder.X

SEH List Results
ShellExecuteHook

CLSID Name Filename Description Status
{88485281-8b4b-4f8d-9ede-82e29a064277}MarkAny Contents Safer Manager 1.0%ProgramFiles%\MarkAny\ContentSafer
\MACSMANAGER.dll, MACSMA~1.DLL
MarkAny Content Safer copy protection softwareL
{56F9679E-7826-4C84-81F3-532071A8BCC5}Windows Desktop Search Namespace Manager%ProgramFiles%\Windows Desktop Search\MSNLNamespaceMgr.dllWindows Desktop SearchL
Drivers List Results
Driver Entry

Name Filename Description Status
Task-ManagerSystems.exeInfostealer trojan, detected by Kaspersky antivirus as Backdoor.Win32.Iroffer.jlX
LiveUpdateWPP ManagerLiveUpdateWPP.exeAdded by the Live WPPUpdate Win32/Adware.SimilagroX
CST License Managerlmgrd.exeRelated to the lmgrd.exe 3D EM simulation software from CST Computer Simulation Technology AG.L
OneDayon Managerupdate_one.exeParasite of Korean origin hailing from onedayon.com and detected by Microsoft as Adware:Win32/OnedayX
NWSvc Managernswsrv.exeAdded by the "Windows NS Assist", a parasite of Korean origin hailing from newswide.net and detected by Bitdefender as "Trojan.Generic.7734702"X

FF Extensions List Results
Firefox Extension

CLSID Name Filename Description Status
{008abed2-b43a-46c9-9a5b-a771c87b82da}weDownload Manager ProAdded by the PUP.Optional.WeDownload.AX
{72CA2996-F580-47DF-98FF-0B853D09CEC8}Password Manager Autofill Engine, Password Manager plugin, Plug-in für Passwort Manager, Plug-in du Gestionnaire de mots de passe, Wtyczka Menedżera haseł, Плагин Менеджера паролей, etc.Kaspersky Password Manager 5.0 and 7.0 integration with Firefox. This is a rebranded variant of Sticky Password. Note: Old unsigned add-on. Replaced with newer version 8.0 using the following ID: kpm_win_add_on@kaspersky. Note: Windows Registry (user-level) extension installed outside of the Firefox profile - no Remove button in the Add-ons Manager.L
pwm-id50@identos.comID50 Passwort Manager, IDENTOS PW Manager ID50pwm-id50@identos.com.xpiID50 Password Manager stores authentication data on a hardware-encrypted USB device and allows you to fill out log-in forms automatically.L
KeeperFFStoreExtension@KeeperSecurityIncKeeper® Password Manager, Keeper® Password Manager & Digital Vault, Keeper Browser ExtensionKeeperFFStoreExtension@KeeperSecuri
tyInc.xpi
Keeper® Password Manager & Digital Vault (alias KeeperFill) is a browser extension that lets you autofill your login credentials in your favorite websites.L
{94285e43-a27b-4f51-b280-ff763ae7cd81}Open Download Manager Desktop, Premier Download Manager Desktop{94285e43-a27b-4f51-b280-ff763ae7cd81}.xpiFirefox integration with undesirable "download managers". Two versions using the same ID: Note: Open Download Manager Desktop hosted on Mozilla Add-ons, but to be avoided. See here and here. Note: Premier Download Manager Desktop is an older version. Windows Registry (machine-level) extension installed outside of the Firefox profile - no Remove button in the Add-ons Manager.X

Active Setup List Results
Active Setup - Installed Component

CLSID Name Filename Description Status
{117BCF0D-7850-4DF8-A943-410E0426F18D}Transaction Manager, GDI Managerzxvd32.dll, kwbn45.dllInfostealer trojan, a variant of TrojanSpy:Win32/Ambler - detected by Symantec as Trojan.BanksunX
{8F0CA0E5-4537-4A58-AB72-1080AA41D903}GDI Managerhwdhy.dllInfostealer trojan, detected as TrojanSpy:Win32/Ambler - also see hereX
{97A64740-06B5-447E-BB7E-1F38EAD0DB10}GDI Managerjbrv2.dllInfostealer trojan, detected as TrojanSpy:Win32/AmblerX
{8C642234-68A0-47A8-AB31-A9D6C764304D}GDI Managerfrenjrupf6.dllInfostealer trojan, detected as TrojanSpy:Win32/AmblerX
{F2479B8C-979D-41AE-B28B-20526B1B3AAA}GDI Managerxdjspyhte.dllInfostealer trojan, detected as TrojanSpy:Win32/AmblerX

Powered by SystemLookup Engine. © 2008-2018 BrightFort. All Rights Reserved. | Privacy Policy | Terms of Use