ToolbarFR
by ReSoft Ltd.
What is ToolbarFR?
ToolbarFR is software application developed by ReSoft Ltd.. It is most commonly found on computers running Windows 7 with nearly 55.09% of installations running this operating system. ToolbarFR's installer is typically 19.00 MB in size and installs around 109 files.
ToolbarFR is most popular in France with 90.18% of installations residing in this country.
ToolbarFR adds 5 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, ToolbarFR is known to create 4 firewall exceptions to allow inbound and outbound connectivity.
About ToolbarFR?
This software is a web browser toolbar designed for use with Orange. Please note that this software may display advertisements as part of its functionality.
Multiple virus scanners have detected malware in ToolbarFR.
Scanner Software | Version | Result |
---|---|---|
ESET-NOD32 | 8.9339 | a variant of MSIL/Toolbar.Linkury.A |
TrendMicro-HouseCall | 7.2.26 | TROJ_GEN.F47V1225 |
VIPRE Antivirus | 25820 | Adware.Linkury (fs) |
Dr.Web | 7.00.7.12100 | Adware.Linkury.1 |
Kingsoft AntiVirus | 2013.04.09.267 | Win32.Troj.Generic.a.(kcloud) |
Scanner Software | Version | Result |
---|---|---|
Dr.Web | 7.00.7.12100 | Adware.Linkury.1 |
ESET-NOD32 | 9190 | a variant of Win32/Toolbar.Linkury.A |
Kingsoft AntiVirus | 2013.04.09.267 | Win32.Troj.Generic.a.(kcloud) |
TrendMicro-HouseCall | 9.700-1001 | TROJ_GEN.F47V1021 |
VIPRE Antivirus | 24764 | Adware.Linkury (fs) |
Software Behaviors
- Firewall:
-
- facebookvideocalling.exe is added as a firewall exception for 'C:\Documents and Settings\user\Application Data\Facebook\Video\Skype\FacebookVideoCalling.exe'.
- mynetview.exe is added as a firewall exception for 'C:\Program Files\Western Digital\My Net View\MyNetView.exe'.
- maconfservice.exe is added as a firewall exception for 'C:\Program Files\ma-config.com\maconfservice.exe'.
- hpwucli.exe is added as a firewall exception for 'C:\Program Files\HP\HP Software Update\HPWUCli.exe'.
- Scheduled tasks:
-
- javacpl.exe is scheduled as a task with the class '{4A96D4E3-15D0-4D39-A551-3EC96D94D3B5}' (runs on registration).
- issch.exe is scheduled as a task named 'InstallShield software-updateservice' (runs weekly on Mondays at 10:00).
- hpwuschd2.exe is scheduled as a task named 'hp digital imaging - hp all-in-one series MAGIX PCCT' (runs weekly on Wednesdays at 12:00 AM).
- mynetview.exe is scheduled as a task with the class '{96622AC3-F62B-4C5A-8BBE-D2CF58A167E6}' (runs on registration).
- ssbkgdupdate.exe is scheduled as a task named 'SSBkgdUpdate' (runs weekly on Mondays at 10:00).
Startup Entries
- Startup tasks:
-
- ssbkgdupdate.exe is automatically launched at startup through a scheduled task named 1.
- Registry entries:
-
- snapdo.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'Browser Infrastructure Helper' and executes as C:\Documents and Settings\user\Application Data\Smartbar\Application\SnapDo.exe startup.
- smartbar.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'Browser Infrastructure Helper' and executes as C:\users\user\appdata\Local\Smartbar\Application\Smartbar.exe startup.
Software Details
- URL:
- https://www.snap.do
- Support:
- –
- Installation path:
- C:\users\user\appdata\Local\smartbar
- Uninstaller:
- MsiExec.exe /X{A047FE02-C91C-41CB-898C-4ED21B86025A}
- Size:
- 19.00 MB
- Language:
- French
ToolbarFR Executable Details
- Primary executable:
- browserhelper.exe
- Name:
- ToolbarFR
- Path:
- C:\users\user\appdata\Local\smartbar\browserhelper.exe
- MD5:
- 697943b11eb0974c32acc82f585d8abb
- SHA-1:
- –
- SHA-256:
- –
File Type | Filename | MD5 |
---|---|---|
EXE
|
9ec141bd4f2bf3e25fde40fdd1bd651d | |
EXE
|
b2b5160e66df17170bce196ed954421b | |
DLL
|
fa344239fbac90574967756160b8d64e | |
DLL
|
c2b9eae482d9dff97f1aeda6bf8fea5a | |
DLL
|
e470988820fa0400b914d606cda2c41b | |
DLL
|
2dc5e5f847d5c52d9eeb373c48f873e4 | |
DLL
|
3cb76770ab668a17474df6e1f71fb4b2 | |
DLL
|
f336a15f54b6ed46104c965c98173f46 | |
DLL
|
e4d8723336a01806b287efa54277dab6 | |
DLL
|
2e8447685bc1164e773a77b154cb7967 |