Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExA, RegQueryValueExW, GetSecurityDescriptorLength, RegOpenKeyW, RegSetValueExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, RegCreateKeyExW, RegOpenKeyExW, RegQueryInfoKeyW, RegEnumKeyExW
kernel32.dll
GetModuleHandleW, lstrcmpiW, EnterCriticalSection, LeaveCriticalSection, GetModuleFileNameW, MultiByteToWideChar, SizeofResource, LoadResource, FindResourceW, CloseHandle, WaitForSingleObject, Sleep, CreateThread, CreateEventW, GetCommandLineW, ReleaseMutex, WideCharToMultiByte, lstrlenA, FindClose, FindNextFileW, FindFirstFileW, DeleteFileW, WriteFile, LockResource, FindResourceExW, CreateProcessW, LoadLibraryW, GetVersionExW, GetCurrentThreadId, SetEvent, LocalFree, GetTickCount, LocalAlloc, GetCurrentProcess, CreateFileW, CreateDirectoryW, SetFilePointer, ReadFile, GetProcAddress, CreateMutexW, WaitForMultipleObjects, RtlUnwind, GetSystemTimeAsFileTime, GetCurrentProcessId, QueryPerformanceCounter, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, ExitProcess, LCMapStringW, IsProcessorFeaturePresent, GetStdHandle, HeapCreate, SetLastError, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, IsValidCodePage, GetOEMCP, GetACP, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, InterlockedIncrement, InterlockedDecrement, lstrlenW, RaiseException, LoadLibraryExW, GetLastError, FreeLibrary, FlushFileBuffers, GetConsoleCP, GetConsoleMode, SetStdHandle, WriteConsoleW, GetFileSize, GetCPInfo, GetStringTypeW, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, GetStartupInfoW, HeapSetInformation, GetFileAttributesW, EncodePointer, DecodePointer, GetProcessHeap, HeapSize, HeapReAlloc, HeapFree, HeapAlloc, HeapDestroy
ole32.dll
CoRegisterClassObject, StringFromGUID2, CoCreateGuid, CoRevokeClassObject, CoReleaseServerProcess, CoUninitialize, CoInitialize, CoCreateInstance, CoTaskMemFree, CoAddRefServerProcess, CoTaskMemRealloc, CoTaskMemAlloc
oleacc.dll
AccessibleObjectFromWindow, AccessibleChildren, GetRoleTextW
shell32.dll
SHGetSpecialFolderPathW, ShellExecuteExW
shlwapi.dll
SHDeleteKeyW, StrStrIW
user32.dll
FlashWindowEx, TranslateMessage, DispatchMessageW, GetMessageW, PostThreadMessageW, wsprintfW, GetParent, GetDesktopWindow, LoadStringW, CharNextW, PeekMessageW, MsgWaitForMultipleObjects, CharUpperW, GetWindowPlacement, ShowWindow, SetForegroundWindow, PostMessageW, SendMessageW, SetCursorPos, SendInput, GetClassNameW
wininet.dll
InternetCrackUrlW

ytbb.exe

Yahoo! Toolbar by Yahoo! Inc. (Signed)

Remove ytbb.exe
Version:   2013, 8, 7, 02
MD5:   180b13b10cb018d7a30e806caa715825
SHA1:   13c81b30f78ed9970832e7b4ec82387c36174392
SHA256:   d92638bba4b3bedc80ade636765933aa7e0a6311b6db42aaa7f8b204388cbce1

Overview

ytbb.exe executes as a process with the local user's privileges. It is installed with a couple of know programs including Yahoo! Toolbar published by Yahoo! Inc., Yahoo! Toolbar from Yahoo! Inc. and Yahoo! Toolbar by Yahoo! Inc.. The file is digitally signed by Yahoo! Inc. which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Microsoft Windows XP (5.1.2600.196608).

DetailsDetails

File name:ytbb.exe
Publisher:Yahoo! Inc.
Product name:Yahoo! Toolbar
Typical file path:C:\Program Files\yahoo!\companion\installs\cpn2\ytbb.exe
File version:2013, 8, 7, 02
Product version:9, 1, 0, 18
Size:212.77 KB (217,880 bytes)
Build date:8/6/2013 11:35 PM
Certificate
Issued to:Yahoo! Inc.
Authority (CA):VeriSign
Effective date:Monday, July 23, 2012
Expiration date:Wednesday, September 2, 2015
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Yahoo! Inc.
  52% remove
Yahoo! Toolbar is a toolbar that installs on the Internet Explorer and Firefox browsers, within the context of internet access functions. It allows access to several functions, including Yahoo! Search and Yahoo! Mail. "Some versions of Yahoo! Toolbar allow you to share information with Yahoo! about sites you visit to improve Yahoo! services. Yahoo! Toolbar will transmit the following information to Yahoo!: complete web site addresses...
Yahoo! Inc.
5% remove
The most unique attribute of Yahoo! Browser Services is its ability to update and add new services on the fly without a browser restart or even reloading the page! As a user, this means no more installers to run or losing your place on the web. For developers, you can check for and activate new services with a single function call, pending user approval - we handle the complexity of software distribution and updates for you. Because we...

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00034709%
0.028634%
Kernel CPU:0.00020076%
0.013761%
User CPU:0.00014633%
0.014873%
Kernel CPU time:344 ms/min
100,923,805ms/min
Memory
Private memory:1.6 MB
21.59 MB
Private (maximum):4.8 MB
Private (minimum):48 KB
Non-paged memory:1.6 MB
21.59 MB
Virtual memory:53.68 MB
140.96 MB
Virtual memory (peak):56.76 MB
169.69 MB
Working set:1.12 MB
18.61 MB
Working set (peak):4.81 MB
37.95 MB
Page faults:2,349/min
2,039/min
I/O
I/O read transfer:32 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O write transfer:0 Bytes/sec
274.99 KB/min
I/O write operations:1/sec
227/min
I/O other transfer:24 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:3
12
Handles:124
600
GUI GDI count:5
103
GUI USER count:5
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\yahoo!\companion\installs\cpn2\ytbb.exe" -embedding
Owner:User
Parent process:svchost.exe (Generic Host Process for Win32 Services by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE