Should I block it?

98%
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization

VersionsAdditional versions

1.5.19.0 50.00%
1.5.11.0 50.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryInfoKeyA, RegQueryInfoKeyW, RegDeleteValueA, RegEnumKeyExA, RegSetValueExA, RegCloseKey, RegDeleteKeyA, RegCreateKeyExA, RegOpenKeyExA
gdi32.dll
GetStockObject, GetObjectA, CreateSolidBrush, GetDeviceCaps, BitBlt, CreateCompatibleDC, CreateCompatibleBitmap, SelectObject, DeleteObject, SetViewportOrgEx, OffsetWindowOrgEx, SetWindowOrgEx, DeleteDC
kernel32.dll
FindResourceA, LoadLibraryExA, SetThreadLocale, GetThreadLocale, lstrcmpA, MulDiv, GlobalUnlock, GlobalLock, GlobalAlloc, GetEnvironmentVariableA, SetEnvironmentVariableA, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, HeapCreate, GetModuleFileNameW, GetStdHandle, WriteFile, ExitProcess, GetCommandLineA, FreeLibrary, GetModuleHandleW, InitializeCriticalSection, CreateMutexA, ReleaseMutex, IsDBCSLeadByte, WaitForSingleObject, FlushFileBuffers, CloseHandle, CreateFileW, WriteConsoleW, SetStdHandle, GetStringTypeW, LCMapStringW, GetConsoleMode, SetLastError, InterlockedDecrement, InterlockedIncrement, GetCurrentThreadId, GetModuleFileNameA, lstrlenW, GetCurrentProcess, FlushInstructionCache, lstrcmpiA, MultiByteToWideChar, lstrlenA, GetModuleHandleA, GetProcAddress, FindResourceExW, FindResourceW, LoadResource, LockResource, SizeofResource, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, LeaveCriticalSection, EnterCriticalSection, GetLastError, RaiseException, WideCharToMultiByte, VirtualQuery, GetSystemInfo, GetConsoleCP, SetFilePointer, LoadLibraryW, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetStartupInfoW, GetFileType, SetHandleCount, Sleep, IsValidCodePage, VirtualProtect, GetSystemTimeAsFileTime, EncodePointer, DecodePointer, RtlUnwind, LocalFree, HeapSize, HeapReAlloc, HeapDestroy, InterlockedPopEntrySList, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, HeapAlloc, GetProcessHeap, HeapFree, InterlockedPushEntrySList, InterlockedCompareExchange, IsDebuggerPresent, GetCPInfo, GetACP, GetOEMCP
ole32.dll
CreateItemMoniker, CoTaskMemFree, StringFromCLSID, CoTaskMemAlloc, CoTaskMemRealloc, StringFromGUID2, CoCreateInstance, OleLockRunning, CoGetClassObject, CLSIDFromProgID, CLSIDFromString, CreateStreamOnHGlobal, OleInitialize, OleUninitialize, GetRunningObjectTable, OleRun
shell32.dll
SHGetFileInfoA
user32.dll
ClientToScreen, SendMessageA, GetWindowRect, KillTimer, SetTimer, DestroyWindow, SetWindowLongA, ShowWindow, IsWindow, GetClassInfoExA, LoadCursorA, CharNextA, RegisterClassExA, GetClientRect, CreateWindowExA, CharNextW, DefWindowProcA, GetWindowLongA, RegisterWindowMessageA, GetWindowTextLengthA, GetWindowTextA, SetWindowTextA, CreateAcceleratorTableA, GetDesktopWindow, SetFocus, GetFocus, DestroyAcceleratorTable, FillRect, ReleaseCapture, GetClassNameA, GetDlgItem, IsChild, SetCapture, RedrawWindow, InvalidateRgn, InvalidateRect, ReleaseDC, GetDC, MapWindowPoints, SetWindowPos, MoveWindow, GetSysColor, IsWindowVisible, ScreenToClient, GetCursorPos, BeginPaint, EndPaint, GetParent, GetWindow, UnregisterClassA, DispatchMessageA, TranslateMessage, PeekMessageA, MsgWaitForMultipleObjects, CallWindowProcA
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

funmoodstlbr.dll

Funmoods by Volonet Ltd (Signed)

Remove funmoodstlbr.dll
Version:   1.5.19.0
MD5:   e57ba941c5d1286d5ccb3fd36280b005
SHA1:   02da0922611ff7dd6a0d228efdaede46f75def4d
SHA256:   c1cc903567551bfd219d075432618ff0571d61de04ea38923bcd37bd32d70720
Warning 3 antivirus scanners has detected malware.

What is funmoodstlbr.dll?

FunMoods toolbar installs a Mindspark toolbar in your Web browser that collects and stores information about your web browsing habits and sends this information to Mindspark so they can suggest services or provide ads via the toolbar.

About funmoodstlbr.dll (from Volonet Ltd)

Funmoods is a free add-on for social networks Chat that gives you a huge collection of smileys, winks, text effects and more! Get funmoods smileys for social networks and start sending amazing, fun me

DetailsDetails

File name:funmoodstlbr.dll
Publisher:Funmoods
Product name:Funmoods
Typical file path:C:\Program Files\funmoods\funmoods\1.5.19.3\funmoodstlbr.dll
File version:1.5.19.0
Size:245.45 KB (251,344 bytes)
Certificate
Issued to:Volonet Ltd
Authority (CA):COMODO CA Limited
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Internet Explorer toolbar
Located in the registry at 'SOFTWARE\Microsoft\Internet Explorer\Toolbar'
  • CLSID: {A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3}

MalwareMalware detections

Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
Antivirus engineEngine versionDetection
Dr.Web 8.13.4.7 Adware.Funmoods.1
Malwarebytes 1.70.0.9 PUP.FunMoods
Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.F47V0207

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 50.00%
Microsoft Windows XP 50.00%

Distribution by countryDistribution by country

GM installs about 100.00% of Funmoods.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE