84,488,480 programs installed

Should I remove fassurun?

What percent of users and experts removed it?
85% remove it15% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Global Rank #48,442
United States Rank #32,630
Reach 0.0016%
Lifespan of installation (until removal)
< 6.34 days
187.03 days >
Average installed length: 98.27 days

Versions

VersionDistribution
2014.03.20.233601 9.68%
2014.03.18.224705 16.13%
2014.03.15.013120 19.35%
2014.03.11.234342 6.45%
2014.03.10.230909 3.23%
2014.03.07.185813 6.45%
2014.02.26.051729 19.35%
2014.02.21.042329 6.45%
2014.02.14.180054 3.23%
2014.02.10.054018 3.23%
2014.02.05.153917 3.23%
2014.01.10.201400 3.23%

fassurun

What is fassurun?

This adware program injects advertisements with its affiliate ad providers in order to serve a number of ad types including banner, inline text links and popups. These ads
are aimed to promote the installation of additional questionable content including web browser toolbars, optimization utilities and other products, all so the publisher
can generate pay-per-click revenue.

Once infected by this common symptoms include:
- Random web page text is turned into hyperlinks.
- Browser popups appear which recommend fake updates or other software.
- Ads with red click here button will pop up when those links are hovered on.
- Other unwanted adware programs might get installed without the user's knowledge.
- Web pages become extremely slow to download due to the multiple ads.

About  (from Yontoo Technology)

Get the best results faster - fassurun.
Overview
  • Possible malware installed by this program
  • Loads into the web browser
  • Installs a Windows Service
  • Typically distributed through a pay-per-install bundle
  • Injects advertisements unassociated with the underlying web page
  • Generally known to have a low reputation
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in fassurun.
updatefassurun.exe (8c7260c606cf0afc8861f5730e841607) has been flagged by the following 26 scanners:
Anti-Virus softwareVersionDetection
Lavasoft Ad-Aware 662 Adware.BrowseFox.BO
AhnLab-V3 2015.01.30 PUP/Win32.BrowseFox
ALYac 1.0.1.4 Adware.BrowseFox.BO
AVG 2016.0.3140 Fasuru
Avira 7.11.205.220 ADWARE/BrowseFox.Gen7
AVware 1.5.0.21 Yontoo (fs)
Baidu-International 4.0.3.15413 Adware.MSIL.BrowseFox.H
Bitdefender 1.0.20.515 Adware.BrowseFox.BO
Emsisoft Anti-Malware 8.15.04.13.04 Adware.BrowseFox.BO
ESET-NOD32 9.11094 a variant of MSIL/BrowseFox.H
Fortinet FortiGate 4/13/2015 Adware/BrowseFox
F-Prot v6.4.7.1.166 W32/S-84f36521
F-Secure 11.2015-13-04_2 Adware.BrowseFox.BO
G Data 15.4.25 Adware.BrowseFox.BO
K7 AntiVirus 13.193.14803 Adware
K7GW 13.193.14802 Adware ( 700000121 )
McAfee 5600.6796 BrowseFox-FTQ
McAfee-GW-Edition 7.6796 BehavesLike.Win32.Backdoor.hm
MicroWorld-eScan 16.0.0.309 Adware.BrowseFox.BO
nProtect 15.01.29.01 Adware.BrowseFox.BO
Panda Antivirus 15.04.13.04 Trj/CI.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.708
Sophos 4.98 Generic PUA IB
Trend Micro 10.465.13 TROJ_GEN.R047C0PAQ15
TrendMicro-HouseCall 7.2.103 TROJ_GEN.R047C0PAQ15
VIPRE Antivirus 37076 Yontoo (fs)
fassurunBHO.dll (de9d959feea26f725246c7b4c9948406) has been flagged by the following 25 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 PUA.Agent!
Avira AntiVir 7.11.144.142 APPL/BrowseFox.Gen2
Antiy-AVL 0.1.0.1 GrayWare[AdWare:not-a-virus]/Win32.Agent
Baidu-International 3.5.1.41473 Adware.Win32.Agent.AM
CAT-QuickHeal 12.00 AdWare.Agent.r5 (Not a Virus)
Comodo Security 18138 Application.Win32.Altbrowse.AK
Dr.Web 7.00.9.04080 Trojan.BPlug.28
ESET-NOD32 9701 a variant of Win32/BrowseFox.F
Fortinet FortiGate 4 Adware/Agent
G Data 24 Win32.Application.BrowseFox.B
IKARUS anti.virus T3.1.6.1.0 not-a-virus:AdWare.Win32.Agent
Jiangmin 16.0.100 Adware/Agent.izz
K7 AntiVirus 9.176.11806 Unwanted-Program ( 00454f261 )
K7GW 9.176.11806 Unwanted-Program ( 00454f261 )
Kaspersky 12.0.0.1225 not-a-virus:AdWare.Win32.Agent.ahbx
Kingsoft AntiVirus 2013.04.09.267 Win32.Troj.Agent.ah.(kcloud)
Malwarebytes 1.75.0001 PUP.Optional.Fassurun.A
McAfee 6.0.4.564 Artemis!DE9D959FEEA2
McAfee-GW-Edition 2013 Artemis!DE9D959FEEA2
NANO AntiVirus 0.28.0.59288 Riskware.Win32.Agent.cuenda
Sophos 4.98.0 Generic PUA IC
SUPERAntiSpyware 5.6.0.1032 Adware.BrowseFox/Variant
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0322
Vba32 AntiVirus 3.12.26.0 AdWare.Agent
VIPRE Antivirus 28438 Yontoo (fs)
       View all 51 all detections
fassurun has been found to be bundled with 3rd party software. If you have not purposefully installed this, you should be safe uninstalling it.

Program detailsProgram details

Displayed publisher: fassurun
URL: fassurun.co/support
Help link: mailto:[email protected]
Installation folder: C:\Program Files\fassurun
Uninstaller: C:\Program Files\fassurun\fassurununinstall.exe
Estimated size: 2.1 MB

Program filesFiles installed by fassurun

Program executable:fassurun.FirstRun.exe
Name:FirstRun
Path:C:\Program Files\fassurun\fassurun.FirstRun.exe
MD5:1aba66dbed6a2e4a2ab565dfe6af8264
Additional files:
  • (Malware detected) fassurunBHO.dll - fassurun
  • 7za.exe (by Igor Pavlov) - 7-Zip (7-Zip Standalone Console)
  • fassurunUninstall.exe
  • (Malware detected) updatefassurun.exe

Program behaviorsBehaviors exhibited

Internet Explorer BHO
  • fassurunBHO.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'fassurun 1.0.0.7' with the class of {e6efad0c-2d79-4b0d-8996-3e759a9c7914}.
Service
  • updatefassurun.exe runs as a service named 'Update fassurun' (Update fassurun).

How do I remove fassurun?

You can uninstall fassurun from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program fassurun, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove fassurun.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by fassurun you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

OS VERSIONS
Win 7 (SP1) 65%
Win Vista 3%
 
HOW IT RUNS
Windows Service? Yes
(Installs a service)
 
USER ACTIONS
Uninstall it 85%
Keep it 15%

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 64.52%
Windows 10 19.35%
Windows Vista 9.68%
Windows XP 6.45%
Which OS releases does it run on?
Windows 7 Home Premium 48.39%
Windows Vista Home Premiu... 9.68%
Windows 8.1 Pro 6.45%
Windows 7 Professional 6.45%
Windows 8.1 6.45%
Microsoft Windows XP 6.45%

Distribution by countryGeography

84.44% of installs come from the United States
Which countries install it?
  United States 84.44%
  Israel 6.67%
  United Arab Emirates 2.22%
  France 2.22%
  Finland 2.22%
  Hong Kong 2.22%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Hewlett-Packard 37.04%
Dell 22.22%
Lenovo 14.81%
Toshiba 11.11%
Acer 7.41%
Intel 3.70%
Alienware 3.70%
Common models
HP Pavilion dv5 Notebook ... 3.45%
Dell OptiPlex 745 ... 3.45%
Dell Latitude D630 3.45%
CLEVO CO. B7130 ... 3.45%
Acer Aspire 7741 3.45%
TOSHIBA Satellite C655 3.45%

About Yontoo Technology

Yontoo, a subsidiary/alias of ad-hijacker Sambreel, is a publisher of ad-supported web browser extensions designed to inject and display advertisements within the browser.
Publisher URL: www.yontoo.com

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.