Facemoods

By LoneStar in Adware

Threat Scorecard

Threat Level: 80 % (High)
Infected Computers: 4
First Seen: August 26, 2011
Last Seen: August 19, 2021
OS(es) Affected: Windows

Facemoods Image

Facemoods is marketed as a way to add fun emoticons and smiles to your Facebook chat and status updates. Facemoods also claims to improve the general Facebook experience by adding new functionality and convenient access through a browser toolbar. However, Facemoods engages in invasive practices that are more frequently associated with malware than with a legitimate application.

ESG PC security researchers consider that, while not technically a malware, Facemoods is a harmful application that can severely disrupt your computer's normal activities. Facemoods has several "features" that are frequently present in malicious browser helper objects, adware and spyware. Facemoods is also very difficult to remove through normal means, usually requiring a strong anti-malware utility to make sure that Facemoods is gone for good. Facemoods can make alterations on your Internet browser homepage, automatically redirect Internet activity, display malicious advertisements and pop-up windows, start and stop file processes without authorization and run in the background, without the computer user's knowledge. Due to its access to your Facebook account, Facemoods can also potentially give a third party access to your personal information, photos, videos, friends lists and other personal information contained in your Facebook account. ESG malware researchers warn against installing and using Facemoods; the many downsides to this abusive application are not worth the benefit of gaining a few smiles for your Facebook chats.

Protecting Yourself from Facemoods

With the huge popularity of the Facebook social network, many hackers are now attempting to exploit the large number of new Internet users that are relatively computer-illiterate. A common way of targeting this market of unwary Internet users is through offers of free smiles and emoticons, or through free game applications. ESG PC security researchers recommend running a simple Google search on any Facebook application you plan to install. Fraudulent programs like Facemoods will often display a large number of negative reviews and users complaining that they cannot uninstall or remove Facemoods from their computer. There are plenty of legitimate alternatives to Facemoods; legitimate programs that can give you smiles without the associated malware-like practices. Simply take some time to ascertain the reputation of any application you may want to install. To make sure that any endorsements and testimonials are from legitimate users and not from the creators of Facemoods is also important. The creators of shady applications like Facemoods will often hire writers to write fake testimonials and recommendations for their fraudulent software.

File System Details

Facemoods may create the following file(s):
# File Name Detections
1. C:Program Filesfacemoods.comfacemoods1.4.17.4facemoodsApp.dll
2. C:Program Filesfacemoods.comfacemoods1.4.17.4uninstall.exe
3. C:Program Filesfacemoods.comfacemoods1.4.17.4bhfacemoods.dll
4. C:Program Filesfacemoods.comfacemoods1.4.17.4facemoodssrv.exe
5. C:Program Filesfacemoods.comfacemoods1.4.17.4facemoodsTlbr.dll
6. C:Program Filesfacemoods.comfacemoods1.4.17.4facemoodsEng.dll
7. C:Program Filesfacemoods.comfacemoods1.4.17.4facemoods.png
8. C:Program Filesfacemoods.comfacemoods1.4.17.4facemoods.crx

Registry Details

Facemoods may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerToolbar "facemoods Toolbar"
HKEY_CURRENT_USERSoftwarefacemoods.com
HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerSearchScopes{0D7562AE-8EF6-416d-A838-AB665251703A} "Facemoods Search"
HKEY_LOCAL_MACHINESOFTWAREMicrosoftInternet ExplorerSearch "SearchAssistant"
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun "facemoods"
HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMain "http://start.facemoods.com/?a=w7th"
HKEY_CURRENT_USERSoftwareMicrosoftWindowsShellNoRoamMUICache "facemoodssrv"
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallfacemood
HKEY_CURRENT_USERSoftwarefacemoods.comfacemoodsinstl

Related Posts

Trending

Most Viewed

Loading...