goforfilesdl.exe
goforfilesdl Application by Righway Technologies (Signed)
Warning 7 antivirus scanners has detected malware in various versions of goforfilesdl.exe.
Overview
goforfilesdl.exe has 2 known versions, the most recent one is 2, 0, 0, 6. goforfilesdl.exe is run as a standard windows process with the logged in user's account privileges. The average file size is about 1.56 MB. It is an authenticode code-signed executable issued to Righway Technologies by the certification authority COMODO CA Limited. Some variations of the file have been seen to be installed with the program GoforFiles from Righway Technologies, Inc. During the process's lifecycle, the typical CPU resource utilization is about 0.0037% including both foreground and background operations, the average private memory consumption is about 35.36 MB with the maximum memory reaching around 41.45 MB. Addionally, typically read and write I/O disk operations is about 12.95 MB per minute for reads and 4.45 MB per minute for writes.
Details |
File name: | goforfilesdl.exe |
Publisher: | http://goforfiles.com/ |
Product name: | goforfilesdl Application |
Typical file path: | C:\Program Files\goforfiles\goforfilesdl.exe |
Certificate |
Issued to: | Righway Technologies |
Authority (CA): | COMODO CA Limited |
Effective date: | Tuesday, August 21, 2012 |
Expiration date: | Saturday, August 22, 2015 |
Programs installed in
(Note, the programs listed below are for all versions of goforfilesdl Application.)
|
Righway Technologies, Inc |
|
GoforFiles bundles various adware toolbars including the Delta Search Toolbar (an adware toolbar that modifies the user's web browser home page, search settings and other settings).
Behaviors
(Note, the behaviors below are for all versions of goforfilesdl.exe, select a unique version for details.)
Windows firewall allowed program
Exceptions allow programs to access to the Internet through an outbound connections
- Firewall exception for 'C:\Program Files\GoforFiles\goforfilesdl.exe'
Malware detections
Based on 40+ industry antivirus scanners, 7 of them detected the following malware.
Antivirus engine | Engine version | Detection | File version |
Dr.Web |
8.13.4.20 |
Tool.DownLoader.52 |
2, 0, 0, 6 |
Dr.Web |
7.00.7.12100 |
Adware.Downware.1204 |
2,0,0,0 |
Emsisoft Anti-Malware |
3.0.0.575 |
Trojan.Win32.YourFileDownloader.AMN (A) |
2, 0, 0, 6 |
ESET NOD32 |
7.8247 |
Win32/YourFileDownloader.B |
2, 0, 0, 6 |
Rising Antivirus |
25.0.0.11 |
PE:Malware.XPACK/RDM!5.1 |
2,0,0,0 |
Trend Micro HouseCall |
9.700.0.1001 |
TROJ_GEN.F47V0328 |
2, 0, 0, 6 |
VIPRE Antivirus |
24566 |
ExpressFiles Installer (fs) |
2,0,0,0 |
All file variations of goforfilesdl.exe