JDownloader Toolbar

JDownloader Toolbar

Known Toolbar

by Conduit Ltd.

What is JDownloader Toolbar?

JDownloader Toolbar is software application developed by Conduit Ltd.. It is most commonly found on computers running Windows 7 with nearly 81.25% of installations running this operating system. JDownloader Toolbar's installer is typically 7.00 MB in size and installs around 29 files. The most common release is 6.9.0.16 with 29.17% of all installations currently using this version.

JDownloader Toolbar is most popular in Germany with 46.15% of installations residing in this country.

JDownloader Toolbar adds 5 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, JDownloader Toolbar is known to create 3 firewall exceptions to allow inbound and outbound connectivity.

About JDownloader Toolbar?

The JDownloader Toolbar is a browser plugin developed by Conduit, compatible with Internet Explorer, Chrome and Firefox. This advertising-supported toolbar is intended to display ads and may modify the browser's home page and search settings to gather usage statistics. It is often included with third-party software to generate revenue. During installation, users may be prompted to modify their home and search pages, although this option is usually pre-selected. If the software is uninstalled, users will need to manually restore their settings. The End-User License Agreement (EULA) allows Conduit to automatically download and install remote updates and collect and store information about the user's web browsing activities for the purpose of suggesting additional services and targeted advertising. The EULA also grants Conduit access to a variety of information about the user's Internet Browser, browsing habits, and computer.

Multiple virus scanners have detected malware in JDownloader Toolbar.

uninstall.exe (MD5: b728fa6a309e5d18141947b95b730e95) has been flagged by 3 scanners:
Scanner Software Result
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
JDUpdate.exe (MD5: 1a4af1055c256611cefd2fe3730ebcb6) has been flagged by 7 scanners:
Scanner Software Result
Antiy-AVL Trojan[Banker]/Java.Qhost
CMC Antivirus Virus.Win32.Xpaj.1!O
Rising Antivirus PE:Malware.XPACK/RDM!5.1
Bkav FE W32.Clod7e3.Trojan.a222
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
JDUninstall.exe (MD5: 5ef0842e24b018ce45ee73dcb505cfde) has been flagged by 5 scanners:
Scanner Software Result
CMC Antivirus Virus.Win32.Xpaj.1!O
Rising Antivirus PE:Malware.XPACK/RDM!5.1
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
JDownloader.exe (MD5: 5061f57926d36662e4b139d2282d79d0) has been flagged by 6 scanners:
Scanner Software Result
Bkav FE W32.Clod7e3.Trojan.a222
Rising Antivirus PE:Malware.XPACK/RDM!5.1
CMC Antivirus Virus.Win32.Xpaj.1!O
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 a variant of Win32/Toolbar.Conduit.P
tbJDow.dll (MD5: 73406fa9287b36ca4163797c73a2cd04) has been flagged by 15 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/Toolbar.Conduit.B
VIPRE Antivirus Conduit (fs)
AVware Conduit (fs)
Baidu-International PUA.Win32.Conduit.BX
Fortinet FortiGate Riskware/Toolbar_Conduit
G Data Win32.Application.Conduit.F
Panda Antivirus PUP/Conduit.A
Comodo Security Application.Win32.Conduit.~A
Malwarebytes PUP.Optional.Conduit
TrendMicro-HouseCall TROJ_GEN.F47V1113
IKARUS anti.virus PUA.ClientConnect
Antiy-AVL Trojan[Banker]/Java.Qhost
CMC Antivirus Virus.Win32.Xpaj.1!O
Rising Antivirus PE:Malware.XPACK/RDM!5.1
Bkav FE W32.Clod7e3.Trojan.a222

Software Behaviors

Firewall:
  • JDUpdate.exe is added as a firewall exception for 'C:\Program Files\JDownloader\JDUpdate.exe'.
  • JDownloader.exe is added as a firewall exception for 'C:\Program Files\JDownloader\JDownloader.exe'.
  • JDownloaderToolbarHelper.exe is added as a firewall exception for 'C:\Program Files\eTvOnline.ro\eTvOnline.roToolbarHelper.exe'.
Scheduled tasks:
  • JDownloader.exe is scheduled as a task with the class '{B3BE288D-BA43-4606-8323-8BECE880993F}' (runs on registration).
  • JDownloaderD3D.exe is scheduled as a task with the class '{A9735997-A011-4E1B-82E7-29918C844BFD}' (runs on registration).
  • uninstall.exe is scheduled as a task with the class '{42CD7A24-AF4B-44A0-A119-1C6F9B6E2A90}' (runs on registration).
  • JDUninstall.exe is scheduled as a task with the class '{E68F46AD-A0B7-4EA1-B46A-4A9E699156DE}' (runs on registration).
  • JDownloaderToolbarHelper.exe is scheduled as a task with the class '{34C01E1F-1D33-4264-8F52-97E13432C5E2}' (runs on registration).

Startup Entries

Startup tasks:
  • JDownloaderBETA.exe is automatically launched at startup through a scheduled task named jdon.
Registry entries:
  • JDownloader.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'JDownloader.exe' and executes as C:\Program Files\JDownloader\JDownloader.exe.
  • JDownloaderD3D.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'jd' and executes as C:\Program Files\JDownloader\JDownloaderD3D.exe.

Software Details

URL:
https://jdownloader.ourtoolbar.com
Support:
https://jdownloader.ourtoolbar.com/help
Installation path:
C:\Program Files\jdownloader
Uninstaller:
C:\Program Files\JDownloader\uninstall.exe toolbar
Size:
7.00 MB
Language:
English

JDownloader Toolbar Executable Details

Primary executable:
tbJDow.dll
Name:
JDownloader Toolbar
Path:
C:\Program Files\jdownloader\tbJDow.dll
MD5:
73406fa9287b36ca4163797c73a2cd04
SHA-1:
SHA-256:
Files installed by JDownloader Toolbar
File Type Filename MD5
EXE
b728fa6a309e5d18141947b95b730e95
EXE
3b11e687e4ef565b84e76eae92fa6b81
DLL
951481adb319df0682ad0941e0772ff5
EXE
d5b080699d0a91edb87ab119e9b1fc1a
EXE
1a4af1055c256611cefd2fe3730ebcb6
EXE
5ef0842e24b018ce45ee73dcb505cfde
EXE
776f36bfdebc0f6d2dbe88aa5196b9da
EXE
e6d11ba458cd9146f6763259f9d59f97
EXE
5061f57926d36662e4b139d2282d79d0
DLL
tbJDow.dll
Malware
73406fa9287b36ca4163797c73a2cd04