yandexdisksetupru.exe

Яндекс.Диск

YANDEX LLC

This is a self-extracting archive and installer. The file has been seen being downloaded from downloader.disk.yandex.ru and multiple other hosts.
Publisher:
Яндекс  (signed by YANDEX LLC)

Product:
Яндекс.Диск

Description:
YandexDiskSetup

Version:
1.4.2.4724

MD5:
fb726f831657ad0527dcd92e1cbfbd34

SHA-1:
810b9bb6d691e64c1fe4ca57776a23e18b069075

SHA-256:
1f93798c43315c44ff75f4fe9dddea1e0605418480cc0aedc4bbb45600fbcd0e

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
8/17/2025 10:17:23 AM UTC  (today)

File size:
1.5 MB (1,538,848 bytes)

Product version:
1.4.2.4852

Copyright:
© 2012-2015 ООО "ЯНДЕКС"

Original file name:
YandexDiskSetup.dll

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\yandexdisksetupru.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/15/2013 3:00:00 AM

Valid to:
1/16/2016 2:59:59 AM

Subject:
CN=YANDEX LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=YANDEX LLC, L=Moscow, S=Moscow, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3667E158B524C8FFBFE538172786F1E2

File PE Metadata
Compilation timestamp:
10/1/2015 6:17:24 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
12288:GWhY5lGqQGKLrSfspH1602VPlslyD26l2iQyIj3+8PZ1Oz1RfswzKnQchPURli/r:VhYqRLWlQlK6tyqz/Oz1xy/TrwzAELc

Entry address:
0x757E1

Entry point:
E8, 27, B8, 00, 00, E9, 79, FE, FF, FF, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84, C0, 75, 16, 81, FA, 00, 01, 00, 00, 72, 0E, 83, 3D, A8, CE, 55, 00, 00, 74, 05, E9, DE, B8, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10, 03, C1, 8B, CA, 83, E2, 03, C1, E9, 02, 74, 06, F3, AB, 85, D2, 74, 0A, 88, 07, 83, C7, 01, 83, EA, 01, 75, F6, 8B, 44...
 
[+]

Code size:
749 KB (766,976 bytes)

The file yandexdisksetupru.exe has been seen being distributed by the following 27 URLs.

https://downloader.disk.yandex.ru/share/4612979593832b9e3d58735ddd492c6615d599bd440519eacddee4c27608e411/563b97f4/.../x-msdownload&fsize=1538848&hid=5adeade1fc601adafd8f284abe4d9a2b&media_type=executable&tknv=v2&etag=fb726f831657ad0527dcd92e1cbfbd34

https://downloader.disk.yandex.ru/share/888a9186b11a1cef658d8e898ca2f02f6b2db25405b880139cfd694eef86464d/5624eced/.../x-msdownload&fsize=1538848&hid=5adeade1fc601adafd8f284abe4d9a2b&media_type=executable&tknv=v2&etag=fb726f831657ad0527dcd92e1cbfbd34

https://downloader.disk.yandex.ru/share/bc8749ac3bf59c40314e2c3048475e615faa9b2b7ef0607221d9abd90d6fda41/562ce5db/.../x-msdownload&fsize=1538848&hid=5adeade1fc601adafd8f284abe4d9a2b&media_type=executable&tknv=v2&etag=fb726f831657ad0527dcd92e1cbfbd34

https://downloader-default9h.disk.yandex.net/rshare/5e2177b3cd22082e88af46b1cabf8feaaea96ee7444b1ba632b3f24355590074/5630b75d/.../x-msdownload&fsize=1538848&hid=5adeade1fc601adafd8f284abe4d9a2b&media_type=executable&tknv=v2&etag=fb726f831657ad0527dcd92e1cbfbd34&rtoken=e941a8d055713c4fbbd9e927b5580bda&force_default=no&ycrid=na-4a1103a7fe57a4a05feada3592976ce1-downloader2g

Scan yandexdisksetupru.exe - Powered by Reason Core Security