Fun2Save

Fun2Save

Known Toolbar

by InstalleRex-WebPick

What is Fun2Save?

Fun2Save is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 with nearly 66.67% of installations running this operating system. Fun2Save's installer is typically 1.00 MB in size and installs around 26 files.

Fun2Save is most popular in the United States with 35.05% of installations residing in this country.

About Fun2Save?

Fun2Save is a web browser extension developed by JustPlug.It and distributed through the WebPick (InstalleRex) download and install manager. It is commonly included in adware offer bundles and functions as a cross-browser extension with multiple components, including a Windows service, an auto-starting component, and a browser toolbar/plugin. This extension is designed to inject various forms of advertising into the browser, including banner ads, hyper-text links, and pop-ups. Some versions of Fun2Save may also hijack existing website advertising and inject affiliate codes into links as coupon offers. It should be noted that the advertisements displayed by Fun2Save may include deceptive malvertising ads for 'required' updates of common programs, as well as unwanted pop-ups. Users who download this software may inadvertently install a number of bundled adware utilities and additional browser extensions. Furthermore, components of Fun2Save may modify the browser's default security settings. Please exercise caution when downloading and installing software to avoid inadvertently installing adware or potentially unwanted programs.

Multiple virus scanners have detected malware in Fun2Save.

e.exe (MD5: 1b63b4e4fe4be0d8607d362c3d2f2677) has been flagged by 45 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.146103
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 Trojan/Win32.Preloader
Avira AntiVir Adware/Graftor.146103
Antiy-AVL Trojan/Win32.SGeneric
avast! Win32:Dropper-gen [Drp]
AVG Generic5.AZJV
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.81
Bitdefender Gen:Variant.Adware.Graftor.146103
Bkav FE W32.CanpaktiLTAAI.Adware
CAT-QuickHeal AdWare.MultiPlug.r5 (Not a Virus)
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.146103 (B)
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.AG
Fortinet FortiGate Riskware/MultiPlug
F-Secure Gen:Variant.Adware.Graftor.146103
G Data Gen:Variant.Adware.Graftor.146103
IKARUS anti.virus PUA.Generic
K7 AntiVirus Adware ( 0049c94b1 )
K7GW Adware ( 0049c94b1 )
Kaspersky not-a-virus:AdWare.Win32.MultiPlug.bqfl
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic.bfr!ho
MicroWorld-eScan Gen:Variant.Adware.Graftor.146103
NANO AntiVirus Riskware.Win32.Graftor.dcodwf
Panda Antivirus Trj/Genetic.gen
Sophos Generic PUA IB
Symantec WS.Reputation.1
Tencent Win32.Risk.Adware.Dzkd
Trend Micro TROJ_SPNR.14GN14
TrendMicro-HouseCall TROJ_SPNR.14GN14
Vba32 AntiVirus AdWare.MultiPlug
VIPRE Antivirus Trojan.Win32.Generic!BT
AegisLab Troj.W32.Gen
Avira TR/Crypt.EPACK.Gen2
McAfee-GW-Edition BehavesLike.Win32.Downloader.jh
Rising Antivirus PE:Trojan.Win32.Generic.172FA52D!388998445
ViRobot Adware.Strictor.642560
Norman Multiplug.A
nProtect Trojan.Generic.11089445
Qihoo-360 Win32/Trojan.Adware.273
SUPERAntiSpyware Adware.Multiplug/Variant
Dr.Web Trojan.Crossrider.8290
VyGD2UD.dll (MD5: adfdd9859a2e253863ad2841ed8bb460) has been flagged by 16 scanners:
Scanner Software Result
AhnLab-V3 Adware/Win32.Graftor
Avira AntiVir ADWARE/Adware.Gen
AVG Generic_r.GU
Baidu-International Adware.Win32.MultiPlug.40
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.N
Fortinet FortiGate Riskware/MultiPlug
Malwarebytes PUP.Optional.MultiPlug.A
Rising Antivirus PE:Malware.Adware!6.1293
VIPRE Antivirus JustPlugIt (fs)
IKARUS anti.virus PUA.Multiplug
McAfee Artemis!337519D300E7
McAfee-GW-Edition Artemis!337519D300E7
TrendMicro-HouseCall Suspicious_GEN.F47V0703
Qihoo-360 HEUR/Malware.QVM10.Gen
Trend Micro ADW_MULTIPLUG
Cp.x64.dll (MD5: 2a05aaa383857ecbdd6100c34595b5df) has been flagged by 42 scanners:
Scanner Software Result
Lavasoft Ad-Aware Trojan.Generic.11089445
AhnLab-V3 Trojan/Win32.Preloader
Avira AntiVir ADWARE/Adware.Gen
Antiy-AVL Trojan/Win32.SGeneric
avast! Win64:Adware-gen [Adw]
AVG Generic_r.GX
Baidu-International Adware.Win64.MultiPlug.A
Bitdefender Trojan.Generic.11089445
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Trojan.Generic.11089445 (B)
ESET-NOD32 a variant of Win64/Adware.MultiPlug.A
F-Secure Trojan.Generic.11089445
G Data Trojan.Generic.11089445
IKARUS anti.virus AdWare.MultiPlug
K7 AntiVirus Adware ( 004922f61 )
K7GW Adware ( 004922f61 )
Malwarebytes PUP.Optional.MultiPlug.A
McAfee Mplug!2A05AAA38385
McAfee-GW-Edition Mplug!2A05AAA38385
MicroWorld-eScan Trojan.Generic.11089445
Norman Multiplug.A
nProtect Trojan.Generic.11089445
Panda Antivirus Trj/CI.A
Qihoo-360 Win32/Trojan.Adware.273
Rising Antivirus PE:Adware.MultiPlug!6.166A
Sophos MultiPlug
SUPERAntiSpyware Adware.Multiplug/Variant
Symantec WS.Reputation.1
TrendMicro-HouseCall TROJ_GEN.R0CBH06DC14
VIPRE Antivirus MPlug
ViRobot Adware.Agent.474112
Agnitum Outpost PUA.BHO!
Bkav FE W32.ToolbarEscort.Adware
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
Kaspersky not-a-virus:AdWare.Win32.BHO.bdnc
NANO AntiVirus Riskware.Win32.BHO.dbdfeq
Trend Micro ADW_MULTIPLUG
Vba32 AntiVirus AdWare.BHO
Dr.Web Trojan.Crossrider.8290
Fortinet FortiGate Adware/Megasearch
Tencent Win32.Risk.Adware.Lmkl
AVware Trojan.Win32.Generic!BT
JnvkXb.exe (MD5: a3a7122be69f78be5482b8d8108c99ea) has been flagged by 35 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.146103
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 Trojan/Win32.Preloader
Avira AntiVir Adware/Graftor.146103.8
avast! Win32:Dropper-gen [Drp]
AVG Generic5.AYTX
Bitdefender Gen:Variant.Adware.Graftor.146103
Bkav FE W32.MultiPlugCG.Adware
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.146103 (B)
ESET-NOD32 Win32/AdWare.MultiPlug.AG
Fortinet FortiGate Riskware/MultiPlug
F-Secure Gen:Variant.Adware.Graftor.146103
G Data Gen:Variant.Adware.Graftor.146103
K7 AntiVirus Adware ( 0049c94b1 )
K7GW Adware ( 0049c94b1 )
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic.bfr!hk
McAfee-GW-Edition RDN/Generic.bfr!hk
MicroWorld-eScan Gen:Variant.Adware.Graftor.146103
Panda Antivirus Trj/CI.A
Qihoo-360 Win32/Trojan.Dropper.c9f
Tencent Win32.Risk.Adware.Lmkl
Trend Micro TROJ_GEN.R0CBC0PGO14
TrendMicro-HouseCall TROJ_GEN.R0CBC0PGO14
VIPRE Antivirus Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.N
IKARUS anti.virus AdWare.MegaSearch
NANO AntiVirus Riskware.Win32.MultiPlug.cvyxyu
Rising Antivirus PE:Malware.Adware!6.1293
Sophos MultiPlug
SUPERAntiSpyware Adware.Multiplug/Variant
Antiy-AVL Trojan/Win32.SGeneric
AVware Trojan.Win32.Generic!BT
Symantec Trojan.Gen
yjZt.dll (MD5: 6bdd2b931e45fa910c821a3beb07928c) has been flagged by 39 scanners:
Scanner Software Result
Lavasoft Ad-Aware Application.Generic.604038
Agnitum Outpost PUA.BHO!
Antiy-AVL Trojan/Win32.TGeneric
avast! Win32:Dropper-gen [Drp]
AVG Generic5.APQB
Baidu-International Adware.Win32.BHO.71
Bitdefender Application.Generic.604038
Bkav FE W32.ToolbarEscort.Adware
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
Comodo Security ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.T
F-Secure Application.Generic.604038
G Data Application.Generic.604038
IKARUS anti.virus Win32.SuspectCrc
K7 AntiVirus Adware ( 004976341 )
K7GW Adware ( 004976341 )
Kaspersky not-a-virus:AdWare.Win32.BHO.bdnc
Malwarebytes PUP.Optional.MultiPlug.A
McAfee RDN/Generic PUP.x!cf3
McAfee-GW-Edition RDN/Generic PUP.x!cf3
MicroWorld-eScan Application.Generic.604038
NANO AntiVirus Riskware.Win32.BHO.dbdfeq
Panda Antivirus Trj/CI.A
Sophos Generic PUA IO
Symantec Adware.BL
Trend Micro ADW_MULTIPLUG
TrendMicro-HouseCall ADW_MULTIPLUG
Vba32 AntiVirus AdWare.BHO
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Trojan/Win32.Preloader
Avira AntiVir ADWARE/Adware.Gen7
Dr.Web Trojan.Crossrider.8290
Fortinet FortiGate Adware/Megasearch
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.MegaSearch!6.17B2
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.146103 (B)
Tencent Win32.Risk.Adware.Lmkl
SUPERAntiSpyware Adware.Multiplug/Variant
AVware Trojan.Win32.Generic!BT

Software Details

URL:
–
Support:
–
Installation path:
C:\ProgramData\fun2save
Uninstaller:
"C:\ProgramData\Fun2Save\VyGD2UD.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Size:
1.00 MB
Language:
English

Fun2Save Executable Details

Primary executable:
VyGD2UD.exe
Name:
Fun2Save
Path:
C:\ProgramData\fun2save\VyGD2UD.exe
MD5:
113b8fc191b9149d08a92bb5914ff536
SHA-1:
–
SHA-256:
–
Files installed by Fun2Save
File Type Filename MD5
EXE
e.exe
Malware
1b63b4e4fe4be0d8607d362c3d2f2677
DLL
ea89a5cfcf37d160e1b20b40e5111e89
EXE
5779bbb0fe6c50419ddf9f84e73e4905
DLL
9275c02df9ed7b9ef5a4c59355281b45
DLL
adfdd9859a2e253863ad2841ed8bb460
DLL
ab04b3efcd0af8295ed588e3dcfba815
DLL
2f283db7b01263158629d1b0a46fa8ac
DLL
f22fa354a52e511d57c1759545a4aa86
DLL
2792527ae219bbfbec7a5a0c9f1676e0
DLL
Cp.x64.dll
Malware
2a05aaa383857ecbdd6100c34595b5df