Funmoods

Funmoods

Known Toolbar

by Volonet Ltd

What is Funmoods?

Funmoods is software application developed by Volonet Ltd. It is most commonly found on computers running Windows 7 with nearly 76.61% of installations running this operating system. Funmoods's installer is typically 1.00 MB in size and installs around 12 files.

Funmoods is most popular in Brazil with 59.58% of installations residing in this country.

Funmoods adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About Funmoods?

Funmoods is a web browser toolbar and extension that may be categorized as potentially unwanted software. This application is designed to modify the user's browser settings and redirect web searches to specific search engines in order to generate revenue through sponsored advertising. Its features include changing the default home page and search provider, modifying the browser's search functionality, and providing automatic updates without user initiation. Additionally, Funmoods has the ability to inject advertising in the form of context ads, pop-ups, and pop-unders. It also has the capability to access the HTML of visited pages and capture URLs and search terms. This software has additional functionalities aimed at protecting the search and home page settings.

Multiple virus scanners have detected malware in Funmoods.

uninstall.exe (MD5: fc7acf05a4677ecef25a09ac8080d6c8) has been flagged by 15 scanners:
Scanner Software Result
Commtouch SDK W32/Dropper.I.gen!Eldorado
F-Prot W32/Dropper.I.gen!Eldorado
K7 AntiVirus Riskware
McAfee-GW-Edition Heuristic.BehavesLike.Win32.Suspicious-BAY.K
NANO AntiVirus Trojan.Win32.Delf.bchlje
TrendMicro-HouseCall TROJ_GEN.RC1H1AR
Dr.Web Adware.Funmoods.1
eSafe Win32.Trojan
ESET-NOD32 Win32/Toolbar.Funmoods
Malwarebytes PUP.FunMoods
Sophos Funmoods Toolbar
Baidu-International Adware.Win32.DealPly.40
Qihoo-360 HEUR/Malware.QVM05.Gen
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
ViRobot JS.A.Iframe.85504.F
escortShld.dll (MD5: 337ea7bb94f14aa9faa39059f3abfdc0) has been flagged by 2 scanners:
Scanner Software Result
Dr.Web Adware.Funmoods.1
ESET-NOD32 Win32/Toolbar.Funmoods
escorTlbr.dll (MD5: 5757860dc188218396fe9e5d1d7d0f58) has been flagged by 10 scanners:
Scanner Software Result
Dr.Web Adware.Funmoods.1
eSafe Win32.Trojan
ESET-NOD32 Win32/Toolbar.Funmoods
Malwarebytes PUP.FunMoods
Sophos Funmoods Toolbar
Baidu-International Adware.Win32.DealPly.40
Qihoo-360 HEUR/Malware.QVM05.Gen
TrendMicro-HouseCall TROJ_GEN.F47V0213
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
ViRobot JS.A.Iframe.85504.F
escortEng.dll (MD5: 5c8cbd98a90e5b8007be9e63720d38a5) has been flagged by 7 scanners:
Scanner Software Result
Dr.Web Adware.Funmoods.1
ESET-NOD32 Win32/Toolbar.Funmoods
Malwarebytes PUP.FunMoods
Sophos Funmoods Toolbar
TrendMicro-HouseCall TROJ_GEN.F47V0301
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
ViRobot JS.A.Iframe.85504.F
escortApp.dll (MD5: c635c31ac95e139a1fddd314c3cb3776) has been flagged by 7 scanners:
Scanner Software Result
Dr.Web Adware.Funmoods.1
Malwarebytes PUP.FunMoods
Sophos Funmoods Toolbar
TrendMicro-HouseCall TROJ_GEN.F47V0301
ESET-NOD32 Win32/Toolbar.Funmoods
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
ViRobot JS.A.Iframe.85504.F

Software Behaviors

Scheduled tasks:
  • UpdateTask.exe is scheduled as a task named 'At5' (runs weekly on Thursdays at 7:20 PM).

Software Details

URL:
https://www.volo-net.com
Support:
Installation path:
C:\Program Files\funmoods\1.8.11.0
Uninstaller:
"C:\Program Files\Funmoods\1.8.11.0\uninstall.exe"
Size:
1.00 MB
Language:
English

Funmoods Executable Details

Primary executable:
funmoodsTlbr.dll
Name:
Funmoods
Path:
C:\Program Files\funmoods\1.8.11.0\funmoodsTlbr.dll
MD5:
12d7ac0716cc49d1749ef11e69ef1f64
SHA-1:
SHA-256:
Files installed by Funmoods
File Type Filename MD5
EXE
fc7acf05a4677ecef25a09ac8080d6c8
DLL
5405413fff79b8d9c747aa900f60f082
DLL
337ea7bb94f14aa9faa39059f3abfdc0
DLL
5757860dc188218396fe9e5d1d7d0f58
DLL
5c8cbd98a90e5b8007be9e63720d38a5
DLL
c635c31ac95e139a1fddd314c3cb3776
EXE
c076c8e973da52b34f79f646072e5868
EXE
16cc30a248a08a50b7a79692629b2a22
EXE
3448e0ccc4b4b4aa91ed8402415ad8d7
DLL
12d7ac0716cc49d1749ef11e69ef1f64