Should I block it?

No, this file is 100% safe to run.

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
GetUserNameW, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, RegLoadKeyW, RegUnLoadKeyW, RegNotifyChangeKeyValue, RegQueryValueExW, GetSecurityDescriptorLength, RegSetValueExA, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW
kernel32.dll
LoadResource, FindResourceW, LoadLibraryExW, GetModuleHandleW, CloseHandle, Process32NextW, Process32FirstW, CreateToolhelp32Snapshot, ReadProcessMemory, WriteProcessMemory, VirtualFreeEx, VirtualAllocEx, OpenProcess, GetCurrentProcessId, WaitForSingleObject, Sleep, CreateThread, CreateEventW, GetCommandLineW, GetProcAddress, LoadLibraryW, GetVersionExW, LockResource, FindResourceExW, GetCurrentThreadId, SetEvent, ExpandEnvironmentStringsW, LocalFree, FindClose, FindNextFileW, FindFirstFileW, GetCurrentProcess, CreateFileW, CreateDirectoryW, LocalAlloc, ReleaseMutex, UnmapViewOfFile, MapViewOfFile, CreateFileMappingW, OpenFileMappingW, lstrcpyW, WideCharToMultiByte, GetTempPathW, lstrcatW, GetComputerNameW, OpenEventW, CreateMutexW, WaitForMultipleObjects, GetTickCount, WriteFile, GetStringTypeW, GetStringTypeA, LoadLibraryA, QueryPerformanceCounter, GetCommandLineA, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, SetFilePointer, ReadFile, GetStartupInfoA, GetFileType, SizeofResource, MultiByteToWideChar, FreeLibrary, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, InterlockedDecrement, InterlockedIncrement, lstrcmpiW, GetLastError, DeleteCriticalSection, InitializeCriticalSection, RaiseException, lstrlenW, WriteConsoleW, SetEndOfFile, SetHandleCount, LCMapStringW, LCMapStringA, IsValidCodePage, GetOEMCP, GetCPInfo, GetConsoleOutputCP, WriteConsoleA, FlushFileBuffers, SetStdHandle, CreateFileA, GetConsoleMode, GetConsoleCP, SetLastError, TlsFree, TlsSetValue, TlsAlloc, TlsGetValue, GetModuleFileNameA, GetStdHandle, ExitProcess, GetModuleHandleA, HeapCreate, VirtualAlloc, VirtualFree, GetStartupInfoW, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, GetVersionExA, HeapDestroy, HeapAlloc, HeapFree, HeapReAlloc, HeapSize, GetProcessHeap, RtlUnwind, GetSystemTimeAsFileTime, TerminateProcess
ole32.dll
StringFromGUID2, CoTaskMemFree, CoCreateGuid, CoTaskMemAlloc, CoCreateInstance, CoUninitialize, CoRevokeClassObject, CoRegisterClassObject, CoInitialize, CoTaskMemRealloc
shell32.dll
SHGetFolderPathW, SHGetSpecialFolderPathW, SHGetSpecialFolderLocation, SHGetPathFromIDListW, SHGetMalloc
shlwapi.dll
SHCopyKeyW, SHDeleteKeyW
user32.dll
PeekMessageW, MsgWaitForMultipleObjects, wsprintfW, UnregisterClassA, PostThreadMessageW, GetMessageW, DispatchMessageW, TranslateMessage, SendMessageW, GetWindowThreadProcessId, IsWindow, CharNextW, CharUpperW
version.dll
VerQueryValueW, GetFileVersionInfoW, GetFileVersionInfoSizeW
wininet.dll
InternetCrackUrlW

yspservice.exe

Yahoo! Search Protection by Yahoo! Inc. (Signed)

Remove yspservice.exe
Version:   2010, 4, 1, 01
MD5:   2e206188b1117410a54ae9def4f9268d
SHA1:   89404567ca2f5903aa5134e8df9ec3b83590440e
SHA256:   b2c8d4441200ca67a9c319337770bd86861306d7d009d2dcdf33a6b778b55124

Overview

yspservice.exe executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). It is installed with a couple of know programs including Yahoo! Search Protection published by Yahoo! Inc. and Yahoo! Install Manager published by Yahoo! Inc.. The file is digitally signed by Yahoo! Inc. which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Microsoft Windows XP (5.1.2600.131072).

DetailsDetails

File name:yspservice.exe
Publisher:Yahoo! Inc.
Product name:Yahoo! Search Protection
Typical file path:C:\Program Files\yahoo!\search protection\yspservice.exe
File version:2010, 4, 1, 01
Product version:2, 0, 1, 13
Size:237.3 KB (243,000 bytes)
Certificate
Issued to:Yahoo! Inc.
Authority (CA):VeriSign
Effective date:Wednesday, August 12, 2009
Expiration date:Sunday, September 2, 2012
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Yahoo! Inc.
  56% remove
When a third party attempts to change Yahoo! as your default search engine, Yahoo! Search Protection will ask you to confirm the change and will prevent the change until you confirm it. When enabled, Yahoo! Search Protection logs changes you make to your default search settings as well as third party attempts to change your default search engine settings. If you choose to modify your default search engine from Yahoo! to another engine, ...
Yahoo! Inc.
20% remove
Yahoo Install Manager manages Yahoo program downloads and installations. The install manager keeps track of such programs and assists in the installations to put things in their proper places.

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'YSearchProtection' → C:\Program Files\Yahoo!\Search Protection\YspService.exe

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00008337%
0.028634%
Kernel CPU:0.00007531%
0.013761%
User CPU:0.00000807%
0.014873%
Kernel CPU time:141 ms/min
100,923,805ms/min
Memory
Private memory:1 MB
21.59 MB
Private (maximum):3.05 MB
Private (minimum):56 KB
Non-paged memory:1 MB
21.59 MB
Virtual memory:34.57 MB
140.96 MB
Virtual memory (peak):36.57 MB
169.69 MB
Working set:68 KB
18.61 MB
Working set (peak):3.05 MB
37.95 MB
Page faults:1,242/min
2,039/min
I/O
I/O read transfer:36 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:149 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:3
12
Handles:97
600
GUI GDI count:5
103
GUI USER count:5
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\yahoo!\search protection\yspservice.exe"
Owner:User
Parent process:Explorer.EXE (Windows Explorer by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE