Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2.8.9.7 20.00%
2.8.6.56 20.00%
2.8.6.51 40.00%
2.8.5.30 20.00%

Relationships

Parent process
Child processes
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumKeyExW, RegQueryValueExW, RegCloseKey, RegOpenKeyW, RegEnumKeyW, RegQueryValueExA, RegDeleteKeyW, RegSetValueExA, AdjustTokenPrivileges, OpenProcessToken, LookupPrivilegeValueW, RegCreateKeyExA, RegOpenKeyExW, RegQueryInfoKeyW, RegDeleteValueW, RegOpenKeyExA, RegSetValueExW, RegCreateKeyExW
comctl32.dll
ImageList_Create, ImageList_AddMasked, ImageList_GetImageInfo, ImageList_Draw, ImageList_Add, _TrackMouseEvent, ImageList_GetIconSize, ImageList_GetImageCount, ImageList_Destroy, InitCommonControlsEx
comdlg32.dll
GetOpenFileNameW, GetSaveFileNameW
dbghelp.dll
MiniDumpWriteDump, MakeSureDirectoryPathExists
gdi32.dll
CombineRgn, SetTextAlign, Arc, SetPixel, GetCurrentObject, OffsetRgn, RestoreDC, SetBrushOrgEx, PtInRegion, SaveDC, CreateDIBSection, SetDIBColorTable, GetPixel, SetStretchBltMode, CreateBitmap, GetDIBColorTable, DPtoLP, StretchBlt, GetTextMetricsW, CreatePatternBrush, CreateFontIndirectW, GetTextExtentPoint32W, LineTo, MoveToEx, CreateRoundRectRgn, RoundRect, TextOutW, ExtTextOutW, SetBkColor, SetTextColor, SetBkMode, Rectangle, ExcludeClipRect, CreateCompatibleDC, CreateCompatibleBitmap, BitBlt, GetStockObject, GetObjectW, GetDeviceCaps, SelectObject, CreatePen, CreateSolidBrush, DeleteObject, CreateRectRgn, DeleteDC
gdiplus.dll
GdiplusShutdown, GdipDrawImageI, GdipDeleteGraphics, GdipCreateFromHDC, GdipDisposeImage, GdipFree, GdipAlloc, GdipCloneImage, GdipCreateBitmapFromScan0, GdipBitmapUnlockBits, GdipBitmapLockBits, GdipGetImagePalette, GdipGetImagePaletteSize, GdipGetImageWidth, GdipGetImageHeight, GdipGetImagePixelFormat, GdipCreateBitmapFromStream, GdipCreateBitmapFromStreamICM, GdiplusStartup, GdipDrawImageRectI, GdipDrawImagePointRectI, GdipLoadImageFromFileICM, GdipLoadImageFromFile, GdipSetSolidFillColor, GdipCreateSolidFill, GdipFillRectangleI, GdipCloneBrush, GdipDeleteBrush, GdipCreateTextureIAI, GdipDrawImageRectRectI, GdipBitmapGetPixel, GdipCreateBitmapFromFileICM, GdipCreateBitmapFromFile, GdipLoadImageFromStreamICM, GdipLoadImageFromStream, GdipDrawImageRectRect, GdipRotateWorldTransform, GdipTranslateWorldTransform, GdipGetImageGraphicsContext
iphlpapi.dll
GetAdaptersInfo, GetIfEntry, GetBestInterface
kernel32.dll
DllMain
msimg32.dll
TransparentBlt, GradientFill, AlphaBlend
ole32.dll
OleUninitialize, CoTaskMemAlloc, StringFromGUID2, OleLockRunning, CreateStreamOnHGlobal, CoCreateInstance, CoGetClassObject, CLSIDFromProgID, CLSIDFromString, OleInitialize, CoInitialize, CoUninitialize, OleCreate, OleSetContainedObject, CoTaskMemFree, CoCreateGuid, StgOpenStorageEx, OleDraw, CoTaskMemRealloc
psapi.dll
GetProcessMemoryInfo
rpcrt4.dll
UuidToStringW, UuidCreate
shell32.dll
SHGetMalloc, SHChangeNotify, SHGetPathFromIDListW, DragQueryFileW, SHAppBarMessage, ShellExecuteExW, SHBrowseForFolderW, ShellExecuteW, Shell_NotifyIconW, SHGetSpecialFolderPathW, SHGetFolderPathW, SHGetSpecialFolderPathA, SHCreateDirectoryExW
shlwapi.dll
StrCatW, PathRemoveExtensionW, PathAddExtensionW, PathRenameExtensionW, PathAppendW, PathRemoveFileSpecW, PathRemoveFileSpecA, PathFileExistsA, PathFileExistsW, PathIsRelativeW, PathRemoveBackslashW
urlmon.dll
URLDownloadToFileA, CoInternetSetFeatureEnabled, UrlMkGetSessionOption
user32.dll
DllMain
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW
wininet.dll
InternetQueryDataAvailable, InternetReadFile, HttpQueryInfoA, FindFirstUrlCacheEntryA, FindCloseUrlCache, HttpAddRequestHeadersA, DeleteUrlCacheEntryA, InternetGetCookieW, InternetGetCookieExW, InternetSetCookieW, InternetCloseHandle, InternetOpenA, HttpEndRequestW, HttpSendRequestExW, FindNextUrlCacheEntryA, HttpOpenRequestA, InternetQueryOptionW, InternetSetOptionW, InternetConnectA, InternetGetConnectedState, InternetSetOptionA, InternetOpenUrlW, HttpOpenRequestW, HttpSendRequestW, HttpQueryInfoW
winmm.dll
mixerGetLineControlsW, waveOutGetVolume, waveOutSetVolume, mixerGetLineInfoW, mixerGetControlDetailsW, mixerOpen, mixerClose, timeGetTime

Funshion.exe

Funshion by Beijing Funshion Online Technologies Ltd. (Signed)

Remove Funshion.exe
Version:   2.8.6.56
MD5:   a08cd8d6d8c78d7c4f7b3aadacb31546
SHA1:   fcfb741ec71ea8a31ad6fc6852623b6b2c0c07bd

Overview

funshion.exe executes as a process with the local user's privileges usually within the context of Windows Explorer. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The file is digitally signed by Beijing Funshion Online Technologies Ltd. which was issued by the Thawte certificate authority (CA).

DetailsDetails

File name:funshion.exe
Publisher:Funshion Online Technologies Ltd.
Product name:Funshion
Typical file path:C:\Program Files\funshion online\2.8.6.51\funshion.exe
File version:2.8.6.56
Size:4.06 MB (4,255,368 bytes)
Build date:9/26/2013 7:37 PM
Certificate
Issued to:Beijing Funshion Online Technologies Ltd.
Authority (CA):Thawte
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Funshion' → "C:\Program Files\Funshion Online\2.8.6.51\Funshion.exe" startbywindows tray
Network connections
  • [UDP] listens on port 62679

  • ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.00041883%
    0.028634%
    Kernel CPU:0.00007812%
    0.013761%
    User CPU:0.00034071%
    0.014873%
    Kernel CPU time:326,245 ms/min
    100,923,805ms/min
    Memory
    Private memory:206.83 MB
    21.59 MB
    Private (maximum):155.08 MB
    Private (minimum):28.71 MB
    Non-paged memory:206.83 MB
    21.59 MB
    Virtual memory:510.11 MB
    140.96 MB
    Virtual memory (peak):516.34 MB
    169.69 MB
    Working set:127.05 MB
    18.61 MB
    Working set (peak):159.29 MB
    37.95 MB
    Resource allocations
    Threads:60
    12
    Handles:4211
    600
    GUI GDI count:814
    103
    GUI GDI peak:875
    142
    GUI USER count:326
    49
    GUI USER peak:375
    71

    BehaviorsProcess properties

    Integrety level:High
    Platform:32-bit
    Command line:"C:\Program Files\funshion online\2.8.6.56\funshion.exe" startbywindows tray
    Owner:User
    Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

    ResourcesThreads

    Averages
     
    DSOUND.dll
    Total CPU:0.04324240%
    0.272967%
    Kernel CPU:0.01329854%
    0.107585%
    User CPU:0.02994387%
    0.165382%
    CPU cycles:1,562,558/sec
    5,741,424/sec
    Context switches:52/sec
    79/sec
    Memory:456 KB
    1.16 MB
    Funshion.exe (main module)
    Total CPU:0.04249305%
    Kernel CPU:0.02986482%
    User CPU:0.01262823%
    CPU cycles:40,304,267/sec
    Context switches:491/sec
    Memory:4.12 MB
    funshionplugin2.dll (FunshionPlugin by Funshion Online Technologies Ltd)
    Total CPU:0.00497670%
    Kernel CPU:0.00159373%
    User CPU:0.00338297%
    CPU cycles:1,930,741/sec
    Context switches:235/sec
    Memory:5.09 MB
    mshtml.dll (Windows Internet Explorer by Microsoft)
    Total CPU:0.00080842%
    Kernel CPU:0.00049240%
    User CPU:0.00031602%
    CPU cycles:3,471,374/sec
    Context switches:210/sec
    Memory:5.71 MB
    flash32_11_7_700_202.ocx (Shockwave Flash by Adobe Systems)
    Total CPU:0.00028110%
    Kernel CPU:0.00003891%
    User CPU:0.00024219%
    CPU cycles:26,108/sec
    Memory:16.12 MB
    CoreAVC.ax
    Total CPU:0.00019808%
    Kernel CPU:0.00000000%
    User CPU:0.00019808%
    CPU cycles:6,104/sec
    Memory:1.07 MB
    quartz.dll
    Total CPU:0.00017607%
    Kernel CPU:0.00008804%
    User CPU:0.00008804%
    CPU cycles:403,367/sec
    Context switches:10/sec
    Memory:1.46 MB
    WININET.dll
    Total CPU:0.00011756%
    Kernel CPU:0.00005878%
    User CPU:0.00005878%
    CPU cycles:21,171/sec
    Memory:980 KB
    evr.dll
    Total CPU:0.00004402%
    Kernel CPU:0.00004402%
    User CPU:0.00000000%
    CPU cycles:2,852/sec
    Memory:488 KB
    MMDevApi.dll
    Total CPU:0.00004402%
    Kernel CPU:0.00004402%
    User CPU:0.00000000%
    CPU cycles:120/sec
    Memory:228 KB
    dxtrans.dll (Windows Internet Explorer by Microsoft)
    Total CPU:0.00002940%
    Kernel CPU:0.00001470%
    User CPU:0.00001470%
    CPU cycles:913/sec
    Memory:228 KB

    Common loaded modules

    These are modules that are typiclaly loaded within the context of this process.

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate 40.00%
    Windows 7 Home Premium 20.00%
    Windows 8 20.00%
    Windows 8 Enterprise 20.00%

    Distribution by countryDistribution by country

    Taiwan installs about 60.00% of Funshion.

    OEM distributionDistribution by PC manufacturer

    PC Manufacturerdistribution
    GIGABYTE 40.00%
    Hewlett-Packard 40.00%
    Acer 20.00%
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE