4shared.com Toolbar

4shared.com Toolbar

Known Toolbar

by 4shared.com

What is 4shared.com Toolbar?

4shared.com Toolbar is software application developed by 4shared.com. It is most commonly found on computers running Windows 7 with nearly 76.72% of installations running this operating system. 4shared.com Toolbar's installer is typically 9.00 MB in size and installs around 21 files. The most common release is 6.9.0.16 with 33.46% of all installations currently using this version.

4shared.com Toolbar is most popular in Iran with 25.78% of installations residing in this country.

4shared.com Toolbar adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, 4shared.com Toolbar is known to create 1 firewall exception to allow inbound and outbound connectivity.

About 4shared.com Toolbar?

This software provides a browser extension that offers personalized services and targeted advertisements based on the user's online browsing activities. The extension is commonly integrated with the 4shared program during installation, and may persist on the user's system even after the removal of 4shared, necessitating manual uninstallation. Furthermore, if the extension alters the home page and search settings, the user is required to manually restore them to their original configurations.

Multiple virus scanners have detected malware in 4shared.com Toolbar.

uninstall.exe (MD5: b728fa6a309e5d18141947b95b730e95) has been flagged by 3 scanners:
Scanner Software Result
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
prxtb4sha.dll (MD5: e73a448c311cbea9951941a9d8bcb413) has been flagged by 7 scanners:
Scanner Software Result
Avira AntiVir TR/Trash.Gen
Dr.Web Trojan.Damaged.1
SUPERAntiSpyware Trojan.Agent/Gen-Nullo[Short]
Symantec Bloodhound.MalPE
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
VIPRE Antivirus Conduit (fs)
Panda Antivirus PUP/Conduit.A
prxtb4sh0.dll (MD5: 9117027aea464e41c60b87b9826e8447) has been flagged by 12 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International PUA.Win32.Conduit.BX
ESET-NOD32 a variant of Win32/Toolbar.Conduit.X
G Data Win32.Application.Conduit.F
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
Bkav FE W32.HfsAdware.C534
Dr.Web Adware.Conduit.300
IKARUS anti.virus PUA.ClientConnect
Avira AntiVir TR/Trash.Gen
SUPERAntiSpyware Trojan.Agent/Gen-Nullo[Short]
Symantec Bloodhound.MalPE
ldrtb4sha.dll (MD5: 5b9b1f88e9a9dcd1b1699b192aca297e) has been flagged by 3 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
VIPRE Antivirus Conduit (fs)
Panda Antivirus PUP/Conduit.A
ldrtb4sh0.dll (MD5: ce49528c9b0b3b3018ee2f70e76b362a) has been flagged by 2 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
VIPRE Antivirus Conduit (fs)

Software Behaviors

Firewall:
  • 4shared.comToolbarHelper.exe is added as a firewall exception for 'C:\Program Files\eTvOnline.ro\eTvOnline.roToolbarHelper.exe'.
Scheduled tasks:
  • uninstall.exe is scheduled as a task with the class '{42CD7A24-AF4B-44A0-A119-1C6F9B6E2A90}' (runs on registration).
  • 4shared.comToolbarHelper.exe is scheduled as a task with the class '{B8E8E278-F25D-478A-BAB2-24A5EDB01F6C}' (runs on registration).

Software Details

URL:
https://4sharedcom.ourtoolbar.com
Support:
https://4sharedcom.ourtoolbar.com/help
Installation path:
C:\Program Files\4shared.com
Uninstaller:
C:\Program Files\4shared.com\uninstall.exe toolbar
Size:
9.00 MB
Language:
English

4shared.com Toolbar Executable Details

Primary executable:
tb4sha.dll
Name:
4shared.com Toolbar
Path:
C:\Program Files\4shared.com\tb4sha.dll
MD5:
1c1d673fb3efc0643271226ea42a25d9
SHA-1:
SHA-256:
Files installed by 4shared.com Toolbar
File Type Filename MD5
DLL
tb4sha.dll
Malware
1c1d673fb3efc0643271226ea42a25d9
DLL
a0dde66878ceae5f7d164e3140e7f12d
DLL
e97e7e6ae64310cae5bfcb9207469103
DLL
c8430d0e3bd7707334f4f683f45d53f1
DLL
cde8336badeea1d98bf7229802b2483d
DLL
f94f664cce4212c85cdfa33e1527a036
DLL
48c08072826bd1efd29eb7b60e7f3b8f
DLL
7f746f20fb3904ad6e658573feb31608
DLL
5a1680af28a33363785ba03e2f368793
DLL
1a7875f205e5c00a8b8c1735eac591bd