Should I block it?

No, this file is 100% safe to run.

Relationships

Child process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegQueryInfoKeyW, RegCloseKey, RegEnumKeyExW, RegOpenKeyExW, RegCreateKeyExW, CreateProcessAsUserW, GetTokenInformation, OpenProcessToken, GetTraceEnableLevel, GetTraceEnableFlags, GetTraceLoggerHandle, UnregisterTraceGuids, TraceEvent, RegisterTraceGuidsW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, SetEntriesInAclW, GetSecurityInfo, CreateWellKnownSid, CopySid, LookupPrivilegeValueW, EqualSid, DuplicateToken, DuplicateTokenEx, CreateRestrictedToken, SetThreadToken, ConvertStringSidToSidW, GetLengthSid, SetTokenInformation, RevertToSelf, RegDisablePredefinedCache
kernel32.dll
DllMain
shlwapi.dll
PathRemoveFileSpecW, PathFileExistsW
user32.dll
CreateDesktopW, SetProcessWindowStation, GetThreadDesktop, GetUserObjectInformationW, GetProcessWindowStation, CharUpperW, CreateWindowStationW, CloseDesktop, CloseWindowStation, MessageBoxW
userenv.dll
GetProfileType
version.dll
GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW
winmm.dll
timeGetTime
Export table
CrashForException
DumpProcess
DumpProcessWithoutCrash
InjectDumpProcessWithoutCrash
SetActiveURL
SetClientId
SetCommandLine2
SetExperimentList2
SetExtensionID
SetGpuInfo
SetNumberOfExtensions
SetNumberOfViews
SetPrinterInfo
SetUserId

browser.exe

Yandex by OOO Yandex (Signed)

Remove browser.exe
Version:   22.0.1105.412
MD5:   cd799753cff3bbd5fc93bd47fe55674d
SHA1:   d571a20cbb5ea20cd96a78a7f44f9c1bd42ed9c0
SHA256:   82b02ae67233d023149b3e37ec89e19acea768dbe4c61603d01c05304bd5a0ea

Overview

browser.exe executes as a process with the local user's privileges. This is typically installed with the program Yandex published by Yandex. The file is digitally signed by OOO Yandex which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Microsoft Windows XP (5.1.2600.196608).

DetailsDetails

File name:browser.exe
Publisher:YANDEX LLC
Product name:Yandex
Typical file path:C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\browser.exe
File version:22.0.1105.412
Size:1.25 MB (1,310,504 bytes)
Certificate
Issued to:OOO Yandex
Authority (CA):VeriSign
Effective date:Sunday, May 2, 2010
Expiration date:Thursday, May 2, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Yandex
1% remove
The software is typically bundled with third party installers such as Open Candy. "Offer your users Yandex Elements for fast access to Yandex search, visual bookmarks, and much more. Note: Sets homepage, search default, and new tab to Yandex search."

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.10944790%
0.028634%
Kernel CPU:0.06294761%
0.013761%
User CPU:0.04650028%
0.014873%
Kernel CPU time:18,671,875 ms/min
100,923,805ms/min
Context switches:103/sec
284/sec
Memory
Private memory:51.65 MB
21.59 MB
Private (maximum):51.87 MB
Private (minimum):25.69 MB
Non-paged memory:51.65 MB
21.59 MB
Virtual memory:170.44 MB
140.96 MB
Virtual memory (peak):177.76 MB
169.69 MB
Working set:37.06 MB
18.61 MB
Working set (peak):56.49 MB
37.95 MB
Resource allocations
Threads:10
12
Handles:227
600
GUI GDI count:100
103
GUI USER count:17
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command lines:
  • "C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\browser.exe" --type=plugin --plugin-path="C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\22.0.1105.412\plugins\npswf32_11_5_502_146.dll" --lang=tr --channel="8492.9.529422080\1501972567" --user-id=bfb270f5-7486-43ba-aa3b-edd127b5890b /prefetcC:4
  • "C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\browser.exe" --type=renderer --lang=tr --user-id=bfb270f5-7486-43ba-aa3b-edd127b5890b --disable-client-side-phishing-detection --brand-id=tb --disable-webgl --disable-pepper-3d-for-untrusted-use --disable-gl-multisampling --disable-accelerated-compositing --disable-accelerated-2d-canvas --channel="8492.8.1614970853\724675577" /prefetcC:3
  • "C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\browser.exe" --type=renderer --lang=tr --user-id=bfb270f5-7486-43ba-aa3b-edd127b5890b --extension-process --disable-client-side-phishing-detection --brand-id=tb --disable-webgl --disable-pepper-3d-for-untrusted-use --disable-gl-multisampling --disable-accelerated-compositing --disable-accelerated-2d-canvas --channel="8492.3.171476898\412826596" /prefetcC:3
  • "C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\browser.exe" --type=renderer --lang=tr --user-id=bfb270f5-7486-43ba-aa3b-edd127b5890b --extension-process --disable-client-side-phishing-detection --brand-id=tb --disable-webgl --disable-pepper-3d-for-untrusted-use --disable-gl-multisampling --disable-accelerated-compositing --disable-accelerated-2d-canvas --channel="8492.1.1413309360\1539317564" /prefetcC:3
  • "C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\browser.exe"
Owner:User
Parent processes:

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE