yandexdisksetupru.exe

Яндекс.Диск

YANDEX LLC

This is a self-extracting archive and installer. The file has been seen being downloaded from downloader.disk.yandex.ru and multiple other hosts.
Publisher:
Яндекс  (signed by YANDEX LLC)

Product:
Яндекс.Диск

Description:
YandexDiskSetup

Version:
1.4.1.4724

MD5:
d13a985daa53c415cef70dd4221091e1

SHA-1:
a068d720b85d504a05c060d483da06a15ed28188

SHA-256:
9971529cd1021c2a993e261dc0b48f4bdad44e1e86947c5ca1e3217d67ea6023

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
8/14/2025 7:33:32 AM UTC  (today)

File size:
1.5 MB (1,538,848 bytes)

Product version:
1.4.1.4841

Copyright:
© 2012-2015 ООО "ЯНДЕКС"

Original file name:
YandexDiskSetup.dll

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\yandexdisksetupru.exe

Digital Signature
Signed by:

Authority:
VeriSign, Inc.

Valid from:
1/15/2013 3:00:00 AM

Valid to:
1/16/2016 2:59:59 AM

Subject:
CN=YANDEX LLC, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=YANDEX LLC, L=Moscow, S=Moscow, C=RU

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
3667E158B524C8FFBFE538172786F1E2

File PE Metadata
Compilation timestamp:
9/4/2015 5:38:32 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
24576:UbLFTWRpGPAhXcZeNjjuPFPlFTrw/1lxjUN:0Mc0NnuPFNFTE/1vjUN

Entry address:
0x750F1

Entry point:
E8, 77, B8, 00, 00, E9, 79, FE, FF, FF, CC, CC, CC, CC, CC, 8B, 54, 24, 0C, 8B, 4C, 24, 04, 85, D2, 74, 69, 33, C0, 8A, 44, 24, 08, 84, C0, 75, 16, 81, FA, 00, 01, 00, 00, 72, 0E, 83, 3D, A8, CE, 55, 00, 00, 74, 05, E9, 2E, B9, 00, 00, 57, 8B, F9, 83, FA, 04, 72, 31, F7, D9, 83, E1, 03, 74, 0C, 2B, D1, 88, 07, 83, C7, 01, 83, E9, 01, 75, F6, 8B, C8, C1, E0, 08, 03, C1, 8B, C8, C1, E0, 10, 03, C1, 8B, CA, 83, E2, 03, C1, E9, 02, 74, 06, F3, AB, 85, D2, 74, 0A, 88, 07, 83, C7, 01, 83, EA, 01, 75, F6, 8B, 44...
 
[+]

Code size:
749 KB (766,976 bytes)

The file yandexdisksetupru.exe has been seen being distributed by the following 26 URLs.

https://downloader.disk.yandex.ru/share/4c193e7de55cacda9d847cd0ea0f24c8fad597c37ba3cc9db837c5de31953cf4/561a8289/.../x-msdownload&fsize=1538848&hid=79c7ec60ff69a6021b75c44925fbeb47&media_type=executable&tknv=v2&etag=d13a985daa53c415cef70dd4221091e1

https://downloader.disk.yandex.ru/share/c63783b0397a73c2d959d79029f2d5da3e8216d686be18aab6a4727619dbd575/5609c710/.../x-msdownload&fsize=1538848&hid=79c7ec60ff69a6021b75c44925fbeb47&media_type=executable&tknv=v2&etag=d13a985daa53c415cef70dd4221091e1

https://downloader.disk.yandex.ru/share/c418e79375de0d5625c61441b34d2413f2e4633d438d00fe81fce0ef48ee5159/55facc42/.../x-msdownload&fsize=1538848&hid=79c7ec60ff69a6021b75c44925fbeb47&media_type=executable&tknv=v2&etag=d13a985daa53c415cef70dd4221091e1

https://downloader.disk.yandex.ru/share/f0338ba4c506aa5e760bf36898be115fdde9d9223c3c52bf095ce43ed78afefe/560d984d/.../x-msdownload&fsize=1538848&hid=79c7ec60ff69a6021b75c44925fbeb47&media_type=executable&tknv=v2&etag=d13a985daa53c415cef70dd4221091e1

https://downloader.disk.yandex.ru/share/ddfebaccbfd67a0d819bd58998d1d8c3fa14ce5ac19d5f8122606e27e0262582/56032225/.../x-msdownload&fsize=1538848&hid=79c7ec60ff69a6021b75c44925fbeb47&media_type=executable&tknv=v2&etag=d13a985daa53c415cef70dd4221091e1

https://downloader.disk.yandex.ru/share/6d5925d8c97b7718d940e0119a7a984fddf4bb1cc9b58efbeff155f3beaf7613/56191fe8/.../x-msdownload&fsize=1538848&hid=79c7ec60ff69a6021b75c44925fbeb47&media_type=executable&tknv=v2&etag=d13a985daa53c415cef70dd4221091e1

https://downloader.disk.yandex.ru/share/770612376c717ba262328e9735783900e3eb6603cc1e55ca655b1b4562f398b3/5602b9a5/.../x-msdownload&fsize=1538848&hid=79c7ec60ff69a6021b75c44925fbeb47&media_type=executable&tknv=v2&etag=d13a985daa53c415cef70dd4221091e1

Scan yandexdisksetupru.exe - Powered by Reason Core Security