Versions
(Note, SelectionLinks publishes each variation of this file with the same version, but the hashes are unique.)
Relationships
bho.dll
SelectionLinks by SelectionLinks
Warning 34 antivirus scanners has detected malware in various versions of bho.dll.
Overview
bho.dll has 2 known versions, the most recent one is 1.0.0.1. It is installed as an Internet Explorer extension as a Browser Helper Object, often without any obvious user interface, and will start when IE loads. The average file size is about 90 KB. Some variations of the file have been seen to be installed with the program SelectionLinks from Objectify Media.
What is bho.dll?
SelectionLinks BHO (bho.dll) is the Browser Helper Object installed into Internet Explorer which has the ability to access and monitor all loaded and requested web pages and content. SelectionLinks is installed by other software like Optimum Installer without proper user consent.
About bho.dll (from SelectionLinks)
“Selection Links fetches all links inside a text selection for opening or downloading. Instead of the default behaviour of Mozilla Firefox, this add-on can also handle multiple links. It also gives you”
Details |
File name: | bho.dll |
Publisher: | SelectionLinks |
Product name: | SelectionLinks |
Typical file path: | C:\Program Files\oapps\bho.dll |
Original name: | sl.dll |
Programs installed in
(Note, the programs listed below are for all versions of SelectionLinks.)
SelectionLinks by Objectify Media is a web browser extension for Intenet Explorer and Firefox. SelectionLinks collects and stores information about your web browsing habits and sends this information ...
Behaviors
(Note, the behaviors below are for all versions of bho.dll, select a unique version for details.)
Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
- BHO CLSID: {E5A8800C-494B-4b8c-A32F-3640B1C77AB6}
- BHO CLSID: {F90A5A0D-CD98-49CC-9AA7-9CD11C7478BF}
Malware detections
Based on 40+ industry antivirus scanners, 34 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
Agnitum |
5.5.1.3 |
Adware.Facetheme!shgqFP12ADw |
1.0.0.1 |
Avira AntiVir |
7.11.60.198 |
ADWARE/Adware.Gen |
1.0.0.1 |
avast! |
6.0.1289.0 |
Win32:Adware-gen [Adw] |
1.0.0.1 |
avast! |
6.0.1289.0 |
Win32:Adware-gen [Adw] |
1.0.0.1 |
AVG |
2014.0.3629 |
Generic5.JCZ |
1.0.0.1 |
AVG |
2014.0.3629 |
Generic5.MCA |
1.0.0.1 |
BitDefender |
7.2 |
Trojan.Generic.KD.731175 |
1.0.0.1 |
Comodo Internet Security |
15235 |
ApplicUnwnt.Win32.AdWare.Facetheme.d |
1.0.0.1 |
Dr.Web |
6.0.300.1310 |
Adware.Bho.3868 |
1.0.0.1 |
Dr.Web |
7.0.4.09250 |
Adware.Bho.3895 |
1.0.0.1 |
Emsisoft Anti-Malware |
None |
Adware.Win32.Adkubru.AMN (A) |
1.0.0.1 |
eSafe |
7.0.17.0 |
Win32.Trojan |
1.0.0.1 |
ESET NOD32 |
7.7998 |
a variant of Win32/Adware.Facetheme.D |
1.0.0.1 |
ESET NOD32 |
7.7689 |
a variant of Win32/Adware.Facetheme.E |
1.0.0.1 |
Fortinet |
5.0.43.0 |
Riskware/Facetheme |
1.0.0.1 |
F-Secure |
11.0.19020.35 |
Trojan.Generic.KD.731175 |
1.0.0.1 |
G Data |
13.4.22 |
Trojan.Generic.KD.731175 |
1.0.0.1 |
G Data |
13.4.22 |
Win32:Adware-gen |
1.0.0.1 |
Ikarus |
T3.1.4.0.0 |
Win32.AdWare |
1.0.0.1 |
K7 AntiVirus |
9.160.8207 |
Riskware |
1.0.0.1 |
Kingsoft |
2013.1.8.219 |
Win32.Troj.Generic.kd.(kcloud) |
1.0.0.1 |
Malwarebytes |
1.62.0.140 |
PUP.FaceThemes |
1.0.0.1 |
McAfee |
5.400.1158 |
Generic PUP.x!bsb |
1.0.0.1 |
McAfee Gateway Anti-Malware |
v2012.1-dat |
Generic PUP.x!bsb |
1.0.0.1 |
Microsoft Security Essentials |
1.9103.0 |
Adware:Win32/Adkubru |
1.0.0.1 |
eScan by MicroWorld |
12.0.250.0 |
Trojan.Generic.KD.731175 |
1.0.0.1 |
NANO AntiVirus |
0.22.8.50287 |
Trojan.Win32.Facetheme.wlsba |
1.0.0.1 |
nProtect |
2013-02-11.01 |
Trojan.Generic.KD.731175 |
1.0.0.1 |
Panda Antivirus |
10.0.3.5 |
Trj/OCJ.A |
1.0.0.1 |
PC Tools |
8.0.0.5 |
Trojan.Adclicker!rem |
1.0.0.1 |
Symantec |
20121.3.0.76 |
Trojan.Adclicker |
1.0.0.1 |
Trend Micro |
9.740.0.1012 |
TROJ_GEN.RCBC7J7 |
1.0.0.1 |
Trend Micro HouseCall |
9.700.0.1001 |
TROJ_GEN.RCBC7J7 |
1.0.0.1 |
VIPRE Antivirus |
15500 |
Trojan.Win32.Generic!BT |
1.0.0.1 |
All file variations of bho.dll