trolatunt

trolatunt

Known Adware

by Yontoo Technology, Inc.

What is trolatunt?

trolatunt is software application developed by Yontoo Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 63.89% of installations running this operating system. trolatunt's installer is typically 6.00 MB in size and installs around 27 files. The most common release is 2014.08.02.004801 with 1.26% of all installations currently using this version.

trolatunt is most popular in the United States with 16.25% of installations residing in this country.

About trolatunt?

This software is a modified version of the Yontoo adware browser addon that inserts itself into the user's web browser (including IE, Chrome, and Firefox) and presents irrelevant advertising on websites not linked to Yontoo or its partners. The ads may appear as banners, video ads, search-related ads, transitional and in-text ads, and links. The software will also regularly update itself and communicate with a remote server for updates, additional ad content, and reporting on user interactions and visited domains and web pages.

Multiple virus scanners have detected malware in trolatunt.

updatetrolatunt.exe (MD5: d861eb0395d26f60fa525c6f3e2cc304) has been flagged by 41 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.SwiftBrowse.CO
AhnLab-V3 PUP/Win32.BrowseFox
avast! Win32:Truntalol-C [PUP]
AVG Trolatunt.B88
Avira ADWARE/BrowseFox.ape
AVware Yontoo (fs)
Baidu-International Adware.MSIL.BrowseFox.H
Bitdefender Adware.SwiftBrowse.CO
Bkav FE W32.HfsAdware.6A98
Cyren W32/S-26365c9e!Eldorado
Dr.Web Trojan.Yontoo.1734
Emsisoft Anti-Malware Adware.SwiftBrowse.CO (B)
ESET-NOD32 a variant of MSIL/BrowseFox.H potentially unwanted
Fortinet FortiGate Adware/BrowseFox
F-Prot W32/S-26365c9e!Eldorado
F-Secure Adware.SwiftBrowse.CO
G Data Adware.SwiftBrowse.CO
IKARUS anti.virus PUA.MSIL.BrowseFox
K7 AntiVirus Unwanted-Program ( 0040f96b1 )
K7GW Unwanted-Program ( 0040f96b1 )
McAfee BrowseFox-FTQ
McAfee-GW-Edition BrowseFox-FTQ
MicroWorld-eScan Adware.SwiftBrowse.CO
NANO AntiVirus Trojan.Win32.Yontoo.dmkoly
nProtect Adware.SwiftBrowse.CO
Qihoo-360 Win32/Virus.Adware.fce
Sophos Browse Fox
Tencent Trojan.Win32.Qudamah.Gen.18
Trend Micro TROJ_GEN.R00UC0PBF15
TrendMicro-HouseCall TROJ_GEN.R00UC0PBF15
VIPRE Antivirus Yontoo (fs)
Agnitum Outpost PUA.Agent!
Avira AntiVir APPL/BrowseFox.Gen2
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security Application.Win32.Altbrowse.AK
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.Trolatunt.A
Panda Antivirus Trj/CI.A
SUPERAntiSpyware Adware.BrowseFox/Variant
Zillya Adware.Agent.Win32.9074
trolatunt.FirstRun.exe (MD5: 05fc7abb13985882c4bc87bb9df7ff39) has been flagged by 46 scanners:
Scanner Software Result
Avira AntiVir APPL/BrowseFox.Gen
ESET-NOD32 a variant of MSIL/BrowseFox.G
Malwarebytes PUP.Optional.Sambreel.A
Lavasoft Ad-Aware Gen:Variant.Adware.BHO.Agent.4
Agnitum Outpost PUA.Agent!
AhnLab-V3 Adware/Win32.Agent
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
AVG BHO.YAB
AVware Yontoo (fs)
Baidu-International Adware.Win32.BrowseFox.bF
Bitdefender Gen:Variant.Adware.BHO.Agent.4
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Clam AntiVirus Win.Adware.Agent-7714
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.17
Emsisoft Anti-Malware Gen:Variant.Adware.BHO.Agent.4 (B)
Fortinet FortiGate Adware/Agent
F-Secure Gen:Variant.Adware.BHO.Agent.4
G Data Gen:Variant.Adware.BHO.Agent.4
IKARUS anti.virus not-a-virus:AdWare.Win32.Agent
Jiangmin AdWare.Win32.Agent.ahbx
K7 AntiVirus Trojan ( 0049c6c51 )
K7GW Trojan ( 020000001 )
Kaspersky not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
McAfee Artemis!2E9F10FB8A5A
McAfee-GW-Edition Artemis!2E9F10FB8A5A
MicroWorld-eScan Gen:Variant.Adware.BHO.Agent.4
NANO AntiVirus Riskware.Win32.Agent.crkvek
nProtect Trojan-Clicker/W32.Agent.249632.B
Panda Antivirus Trj/CI.A
Qihoo-360 HEUR/Malware.QVM30.Gen
Sophos Generic PUA CG
SUPERAntiSpyware Adware.BrowseFox/Variant
Symantec Adware.Adpopup
TrendMicro-HouseCall TROJ_GEN.F0C2H00GL14
Vba32 AntiVirus AdWare.Agent
VIPRE Antivirus Yontoo (fs)
avast! Win32:Truntalol-C [PUP]
Avira ADWARE/BrowseFox.ape
Bkav FE W32.HfsAdware.6A98
Cyren W32/S-26365c9e!Eldorado
F-Prot W32/S-26365c9e!Eldorado
Tencent Trojan.Win32.Qudamah.Gen.18
Trend Micro TROJ_GEN.R00UC0PBF15
Zillya Adware.Agent.Win32.9074
078209A6-1172-4C5E-BC3E-838DCC77A653.dll (MD5: 9a3cd5b7d6a9999e4d0f5d065084e57d) has been flagged by 28 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.BHO.Agent.4
Agnitum Outpost PUA.Agent!
Avira AntiVir APPL/BrowseFox.Gen2
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.Agent
AVG BHO.YAB
Baidu-International Adware.Win32.BroseFox.45
Bitdefender Gen:Variant.Adware.BHO.Agent.4
CAT-QuickHeal AdWare.Agent.r5 (Not a Virus)
Comodo Security Application.Win32.Altbrowse.AK
Dr.Web Trojan.BPlug.17
Emsisoft Anti-Malware Gen:Variant.Adware.BHO.Agent.4 (B)
ESET-NOD32 a variant of Win32/BrowseFox.F
Fortinet FortiGate Adware/Agent
F-Secure Gen:Variant.Adware.BHO.Agent.4
G Data Gen:Variant.Adware.BHO.Agent.4
IKARUS anti.virus not-a-virus:AdWare.Win32.Agent
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Kingsoft AntiVirus Win32.Troj.Agent.ah.(kcloud)
Malwarebytes PUP.Optional.Trolatunt.A
McAfee Artemis!9A3CD5B7D6A9
McAfee-GW-Edition Artemis!9A3CD5B7D6A9
MicroWorld-eScan Gen:Variant.Adware.BHO.Agent.4
NANO AntiVirus Riskware.Win32.Agent.crkvek
Panda Antivirus Trj/CI.A
SUPERAntiSpyware Adware.BrowseFox/Variant
TrendMicro-HouseCall TROJ_GEN.F47V0603
Zillya Adware.Agent.Win32.9074

Software Behaviors

Services:
  • updatetrolatunt.exe runs as a service named 'Update trolatunt' (Update trolatunt).

Software Details

URL:
https://trolatunt.co/support
Support:
https://mailto:
Installation path:
C:\Program Files\trolatunt
Uninstaller:
C:\Program Files\trolatunt\trolatuntuninstall.exe
Size:
6.00 MB
Language:
English

trolatunt Executable Details

Primary executable:
trolatunt.FirstRun.exe
Name:
trolatunt
Path:
C:\Program Files\trolatunt\trolatunt.FirstRun.exe
MD5:
05fc7abb13985882c4bc87bb9df7ff39
SHA-1:
–
SHA-256:
–
Files installed by trolatunt
File Type Filename MD5
EXE
e92604e043f51c604b6d1ac3bcd3a202
EXE
c5bc3d856c77bc50fb4f06591205e1b1
EXE
8d31becb8cb931c69008858a565afb28
EXE
d861eb0395d26f60fa525c6f3e2cc304
EXE
62dfaad380472b0ec3b1801cad406a34
EXE
9ee2560a166a2b4f1c5fa857448058cf
EXE
05fc7abb13985882c4bc87bb9df7ff39
DLL
a28b9830fd8e0550c55bc7342c7fba8c
DLL
9a3cd5b7d6a9999e4d0f5d065084e57d
DLL
9a3cd5b7d6a9999e4d0f5d065084e57d