Should I block it?
60% of PCs block this file from running.
Possible reason:
Performance resource utilization
Additional versions
Relationships
Parent process
Related files
PE file structure |
Show functions |
Import table
mscoree.dll
DllMain
YontooDesktop.exe
Yontoo Desktop by Yontoo LLC (Signed)
Version: | 1.0.4779.20430 |
MD5: | 6bc2b7ff6ae90d8fc4d081272d08ed30 |
SHA1: | 659a112e94dbc80c01d0b30581d4f75787eeab60 |
SHA256: | 9044e656a770e04f030d90be7f42c9b352b67c335880c894241a2e68be92e04d |
What is YontooDesktop.exe?
Yontoo Runtime for Yontoo is a web browser toolbar and extension. Yontoo collects and stores information about your web browsing habits so they can suggest services or provide advertising. The plugin commonly displays ads and deals from affiliated merchants and clicking on such links some times ends up in installing other unwanted browser add-ons or even malware.
About YontooDesktop.exe (from Yontoo LLC)
“Yontoo is a browser add-on that horizontally crosses the internet rather than the standard vertical website archive. Yontoo LLC was founded by a small group of people that had worked together on previ”
Details
File name: | yontoodesktop.exe |
Publisher: | Yontoo LLC |
Product name: | Yontoo Desktop |
Typical file path: | C:\users\user\appdata\roaming\yontoo\yontoodesktop.exe |
File version: | 1.0.4779.20430 |
Size: | 41.78 KB (42,784 bytes) |
Certificate |
Issued to: | Yontoo LLC |
Authority (CA): | VeriSign |
Digital DNA |
PE subsystem: | Windows GUI |
File packed: | No |
Code language: | Microsoft Visual C# / Basic .NET |
.NET CLR: | Yes |
.NET NGENed: | No |
More details
Behaviors
Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'Yontoo Desktop' → "C:\users\user\appdata\Roaming\Yontoo\YontooDesktop.exe"
Resource utilization
(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
CPU |
Total CPU: | 0.06629403% | |
Kernel CPU: | 0.00746410% | |
User CPU: | 0.05882993% | |
Kernel CPU time: | 94 ms/min | |
Context switches: | 4/sec | |
Memory |
Private memory: | 19.34 MB | |
Private (maximum): | 20.08 MB | |
Private (minimum): | 14.31 MB | |
Non-paged memory: | 19.34 MB | |
Virtual memory: | 161.99 MB | |
Virtual memory (peak): | 164.99 MB | |
Working set: | 14.33 MB | |
Working set (peak): | 20.36 MB | |
Resource allocations |
Threads: | 14 | |
Handles: | 433 | |
GUI GDI count: | 4 | |
GUI GDI peak: | 4 | |
GUI USER count: | 1 | |
GUI USER peak: | 1 | |
Process properties
Threads
Averages
mscorwks.dll |
Total CPU: | 0.04153291% | |
Kernel CPU: | 0.00244325% | |
User CPU: | 0.03908966% | |
CPU cycles: | 815,805/sec | |
Memory: | 5.67 MB | |
YontooDesktop.exe (main module) |
Total CPU: | 0.03879504% | |
Kernel CPU: | 0.00969876% | |
User CPU: | 0.02909628% | |
CPU cycles: | 773,670/sec | |
Context switches: | 1/sec | |
Memory: | 64 KB | |
Distribution by Windows OS
OS version | distribution |
Windows 7 Ultimate |
37.50% |
|
Windows 8 Pro |
20.83% |
|
Microsoft Windows XP |
16.67% |
|
Windows 8 |
8.33% |
|
Windows 7 Home Premium |
8.33% |
|
Windows 7 Professional |
8.33% |
|
Distribution by country
United Kingdom installs about 16.67% of Yontoo Desktop.
Distribution by PC manufacturer
PC Manufacturer | distribution |
Acer |
26.09% |
|
Hewlett-Packard |
17.39% |
|
Dell |
17.39% |
|
Lenovo |
17.39% |
|
Samsung |
8.70% |
|
GIGABYTE |
8.70% |
|
American Megatrends |
4.35% |
|