Should I block it?

98%
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization

VersionsAdditional versions

1, 0, 0, 4 5.75%
1, 0, 0, 4 1.15%
1, 0, 0, 3 47.13%
1.0.0.1 44.83%
1.0.0.1 1.15%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
DuplicateTokenEx, GetTokenInformation, CreateProcessAsUserW, OpenProcessToken, ConvertSidToStringSidW
htmlayout.dll
HTMLayoutGetElementLocation, HTMLayoutWindowAttachEventHandler, HTMLayoutGetRootElement, HTMLayoutLoadHtml, HTMLayoutSetAttributeByName, HTMLayoutVisitElements, HTMLayoutSetCallback, HTMLayout_UseElement, HTMLayoutGetMinWidth, HTMLayoutProcND, HTMLayoutGetMinHeight, HTMLayout_UnuseElement, HTMLayoutUpdateElement, HTMLayoutDataReady, HTMLayoutSetElementHtml
kernel32.dll
LoadLibraryW, SetStdHandle, FlushFileBuffers, GetStringTypeW, WriteConsoleW, HeapReAlloc, GetConsoleMode, GetConsoleCP, QueryPerformanceCounter, HeapCreate, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetModuleFileNameA, GetStdHandle, LCMapStringW, SetLastError, TlsSetValue, TlsGetValue, TlsAlloc, IsValidCodePage, GetOEMCP, GetACP, InterlockedIncrement, GetCPInfo, RtlUnwind, InitializeCriticalSectionAndSpinCount, IsProcessorFeaturePresent, HeapAlloc, HeapFree, GetCurrentProcess, Sleep, GetLastError, Process32FirstW, ProcessIdToSessionId, Process32NextW, CreateToolhelp32Snapshot, CloseHandle, GetTickCount, GetTempPathW, InitializeCriticalSection, LeaveCriticalSection, VirtualAlloc, EnterCriticalSection, DeleteCriticalSection, CreateMutexW, VirtualFree, OpenProcess, SetFilePointer, VirtualQuery, WriteFile, WideCharToMultiByte, CreateFileW, DecodePointer, GetCurrentProcessId, InterlockedDecrement, GetModuleFileNameW, GetVersion, ExitProcess, DeleteFileW, CreateThread, FindResourceW, LoadResource, SizeofResource, LockResource, GetCurrentThreadId, LocalFree, GetSystemTimeAsFileTime, GetCommandLineA, HeapSetInformation, TlsFree, MultiByteToWideChar, GetModuleHandleW, GetProcAddress, HeapSize, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, RaiseException, EncodePointer, GetStartupInfoW
ole32.dll
CoInitializeSecurity, CoUninitialize, CoInitializeEx
shell32.dll
ShellExecuteW
shlwapi.dll
SHGetValueW, PathFindFileNameW
user32.dll
PostMessageW, LoadCursorW, RegisterClassExW, LoadIconW, SetWindowLongW, CreateWindowExW, GetSystemMetrics, SetTimer, GetWindowRect, KillTimer, SetForegroundWindow, PtInRect, GetWindowLongW, SetWindowPos, ShowWindow, FindWindowExW, SendMessageW, MapWindowPoints, DefWindowProcW, GetWindowThreadProcessId, DispatchMessageW, SetProcessWindowStation, GetMessageW, CloseWindowStation, OpenDesktopW, CloseDesktop, TranslateMessage, SetThreadDesktop, OpenWindowStationW, GetShellWindow
userenv.dll
DestroyEnvironmentBlock, CreateEnvironmentBlock
wininet.dll
HttpOpenRequestW, HttpSendRequestW, InternetConnectW, InternetReadFile, InternetCrackUrlW, InternetOpenW, InternetCloseHandle, HttpQueryInfoW
wtsapi32.dll
WTSQuerySessionInformationW, WTSQueryUserToken

yourfileupdater.exe

YourFile Downloader by Via Advertising Group Limited (Signed)

Remove yourfileupdater.exe
Version:   1, 0, 0, 4
MD5:   4fc0eee4656ee24151a0a4468c557908
SHA1:   2b80dbf8a847e125d635a73999769f8aa2aa36c9
SHA256:   8af3ecf4c07739afd32e627105fc000405872dfa65ae5e1124f9e926caf0a92d
Warning 4 antivirus scanners has detected malware.

What is yourfileupdater.exe?

The YourFile Downloader auto updater is a program which runs in the background of Windows and automatically starts up when your PC boots. It checks for software udpates and automatically downloads and installs them if found.

About yourfileupdater.exe (from Via Advertising Group Limited)

YourFileDownloader is designed to make your download experience easier and quicker than ever. Now you don’t have to spend your valuable time and energy for finding desired programs and get forwarded a

DetailsDetails

File name:yourfileupdater.exe
Publisher:http://yourfiledownloader.com
Product name:YourFile Downloader
Typical file path:C:\Program Files\yourfiledownloader\yourfileupdater.exe
Original name:YourFile.exe
File version:1, 0, 0, 4
Product version:1.0.0.1
Size:390.11 KB (399,472 bytes)
Build date:8/12/2013 9:34 AM
Certificate
Issued to:Via Advertising Group Limited
Authority (CA):VeriSign
Effective date:Monday, April 30, 2012
Expiration date:Wednesday, May 1, 2013
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
YourFile Downloader
  65% remove
YourFileDownloader provides the ability to download various software applications locally. It provides a list and search interface to locate and download appliations. The program does however automatically add itself to the Windows built-in Firewall.

BehaviorsBehaviors

Scheduled tasks
  • The job 'YourFile Update' runs on logon in the path '\YourFile Update'
  • The task 'Your File Updater' runs in the path '\Your File Updater'
  • The task 'YourFile DownloaderUpdate' runs on logon in the path '\YourFile DownloaderUpdate'
  • Entry path 'C:\WINDOWS\Tasks\Your File Updater.job'
  • Entry path 'C:\windows\Tasks\YourFile DownloaderUpdate.job'
  • Entry path '\YourFile DownloaderUpdate'
  • Entry path 'C:\WINDOWS\Tasks\YourFile Update.job'
  • Entry path '\YourFile Update'
  • Entry path '\Your File Updater'
Scheduled tasks startups
Set to load on user login (bypasses Windows UAC if enabled)
  • Login entry path 'C:\WINDOWS\Tasks\Your File Updater.job'
  • Login entry path 'C:\windows\Tasks\YourFile DownloaderUpdate.job'
  • Login entry path '\YourFile DownloaderUpdate'
  • Login entry path 'C:\WINDOWS\Tasks\YourFile Update.job'
  • Login entry path '\YourFile Update'
  • Login entry path '\Your File Updater'
Windows firewall allowed programs
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Program Files\YourFileDownloader\YourFileUpdater.exe'

MalwareMalware detections

Based on 40+ industry antivirus scanners, 4 of them detected the following malware.
Antivirus engineEngine versionDetection
avast! 8.0.1489.320 Win32:Downloader-UEO [PUP]
ESET NOD32 7.8772 a variant of Win32/YourFileDownloader.B
Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.F47V0812
VIPRE Antivirus 21242 Via Advertising (fs)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 36.78%
Windows 7 Home Premium 24.14%
Microsoft Windows XP 21.84%
Windows 8 Pro 6.90%
Windows 7 Professional 3.45%
Windows 7 Home Basic 3.45%
Windows 8 2.30%
Windows 8 Enterprise 1.15%

Distribution by countryDistribution by country

United States installs about 28.74% of YourFile Downloader.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 29.27%
Acer 21.95%
Dell 19.51%
Sony 14.63%
GIGABYTE 4.88%
Toshiba 4.88%
Alienware 2.44%
American Megatrends 2.44%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE