Yontoo Layers Runtime 1.10.01

Yontoo Layers Runtime 1.10.01

Known Toolbar

by Yontoo Technology, Inc.

What is Yontoo Layers Runtime 1.10.01?

Yontoo Layers Runtime 1.10.01 is software application developed by Yontoo Technology, Inc.. It is most commonly found on computers running Windows 7 with nearly 71.46% of installations running this operating system. Yontoo Layers Runtime 1.10.01's installer is typically 769.00 KB in size and installs around 6 files.

Yontoo Layers Runtime 1.10.01 is most popular in the United States with 67.30% of installations residing in this country.

Yontoo Layers Runtime 1.10.01 adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About Yontoo Layers Runtime 1.10.01?

Yontoo Layers Runtime is a web browser extension and toolbar designed to enhance the browsing experience of users on Internet Explorer, Mozilla Firefox, and Chrome by allowing for customization. Yontoo may collect and store information about browsing habits in order to provide personalized suggestions and advertising. Additionally, the software may automatically download upgrades, enable new features, and install fixes without additional notice. Key features of the toolbar include the ability to change the default search engine in the browser's built-in search box, modify the default home page, add alternative "page not found" functionality, enable search from the address bar, and facilitate software updates once a new version is released.

Multiple virus scanners have detected malware in Yontoo Layers Runtime 1.10.01.

YontooIEClient.dll (MD5: db21b43b40f73c1f2faa113cd7e660f4) has been flagged by 12 scanners:
Scanner Software Result
PC Tools SecurityRisk.Yontoo!rem
Symantec Yontoo
TrendMicro-HouseCall TROJ_GEN.RC1H1JE
VIPRE Antivirus Yontoo (v)
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.Y
Bkav FE W32.HfsAdware.C534
Dr.Web Adware.Conduit.299
G Data Win32.Application.Conduit.F
Panda Antivirus PUP/Conduit.A
ESET-NOD32 Win32/Toolbar.Conduit.Q
IKARUS anti.virus PUA.ClientConnect
prxtbPage.dll (MD5: d344cc84609a807ce92187c9662d392b) has been flagged by 9 scanners:
Scanner Software Result
AVware Conduit (fs)
Baidu-International Adware.Win32.Conduit.Y
Bkav FE W32.HfsAdware.C534
Dr.Web Adware.Conduit.299
G Data Win32.Application.Conduit.F
Panda Antivirus PUP/Conduit.A
VIPRE Antivirus Conduit (fs)
ESET-NOD32 Win32/Toolbar.Conduit.Q
IKARUS anti.virus PUA.ClientConnect
PageRageToolbarHelper.exe (MD5: da11d78d765e4b8fa4cfa5a37e8a94ff) has been flagged by 5 scanners:
Scanner Software Result
Baidu-International Adware.Win32.Conduit.45
ESET-NOD32 Win32/Toolbar.Conduit.Q
G Data Win32.Adware.Conduit.B
IKARUS anti.virus PUA.ClientConnect
Panda Antivirus PUP/Conduit.A

Software Behaviors

Scheduled tasks:
  • PageRageToolbarHelper.exe is scheduled as a task with the class '{34C01E1F-1D33-4264-8F52-97E13432C5E2}' (runs on registration).

Software Details

URL:
https://www.yontoo.com
Support:
Installation path:
C:\Program Files\Yontoo Layers Runtime
Uninstaller:
C:\Program Files3\TARMAI~1\{889DF~1\Setup.exe /remove /q0
Size:
769.00 KB
Language:
English

Yontoo Layers Runtime 1.10.01 Executable Details

Primary executable:
YontooIEClient.dll
Name:
Yontoo Layers Runtime 1.10.01
Path:
C:\Program Files\Yontoo Layers Runtime\YontooIEClient.dll
MD5:
db21b43b40f73c1f2faa113cd7e660f4
SHA-1:
SHA-256:
Files installed by Yontoo Layers Runtime 1.10.01
File Type Filename MD5
EXE
b7754d6963c1ae4fa66f60605618fd7a
EXE
b46339e412028bf0958ff41d39057896
DLL
db21b43b40f73c1f2faa113cd7e660f4
DLL
d344cc84609a807ce92187c9662d392b
EXE
da11d78d765e4b8fa4cfa5a37e8a94ff
DLL
0fb57d0f19daa0e52fbdae34bdf7c049