Gridinsoft Logo
File Icon

The browser.exe (Yandex with voice assistant Alice) File Analysis

Technical Analysis

File Name browser.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.217.174
Database Version 2025-05-29 12:00:18 UTC

Clean File

No threats detected by our scanner

0%
Detection Rate
5,778,008
File Size (bytes)
2025-05-29
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
2e2a929d5c558f65644b527e4842d759
SHA1
f5a20ac5dea8a8fe69ffbdf2334c5db78190bdc9
SHA256
03f1677ad3e39447e13c9f3e52ecd16fb26439d6e93d46b6ee1e8bac918ba7de
SHA512
2f805e3d04f1948f1721529b39ca9bd5d733bb389da7da745446af25e4ccb25273192fbbb52cb16ac9a2519e726f7fb0e919e4ffecbe2bf65c38f1181431a2cb
ImpHash
12687c9472a7a918f8d7f96d7ddd74ab

PE Analysis

Basic Information

Icon
Hash: 08600f039a86ef8e5995a95d831cd82d
Fuzzy: 31fd2d4002c2a4807f6144bd57cb3911
dHash: f0e8b2164d8ecce8
Image Base 0x140000000
Entry Point 0x140263bf0
Compilation Time 2025-05-21 12:21:42
Checksum 0x0058d3f4 (Actual: 0x0058d3f4)
OS Version 5.2
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
PDB Path browser.exe.pdb
Digital Signature OK
Imports 4 libraries
browser_elf, KERNEL32, VERSION, ntdll
Exports 7 functions
Resources 301 Resources
Sections 14 Sections

Version Information

CompanyName YANDEX LLC
FileDescription Yandex with voice assistant Alice
FileVersion 25.4.1.1055
InternalName yandexbrowser_exe
LegalCopyright Copyright (c) 2012-2025 YANDEX LLC. All Rights Reserved.
OriginalFilename browser.exe
ProductName Yandex
ProductVersion 25.4.1.1055
ProductChromiumVersion 134.0.6998.205
ProductYandexVersion 25.4.1.1055
CompanyShortName YANDEX LLC
ProductShortName Yandex
LastChange 0c49000f9453f556fd5bc644ba4fb4352b3a119f
Official Build 1
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 3,743,612 bytes 3,743,744 bytes 6.61 (Compressed) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 298B5B1E0DAAD9E592E2651E839FCDA9
.rdata 0x00393000 378,744 bytes 378,880 bytes 5.70 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6C220D4F092228DC5637E50C0B3A7DEB
.data 0x003f0000 121,908 bytes 62,464 bytes 1.47 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 511EAD8A24140A1F3393512286C5D193
.pdata 0x0040e000 71,976 bytes 72,192 bytes 6.08 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 57566320FC8A69DE1246E3392FB5C73A
.gxfg 0x00420000 11,552 bytes 11,776 bytes 5.18 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 6103889A78DD29E4CE06EB0C4B70CC51
.retplne 0x00423000 184 bytes 512 bytes 1.57 (Normal) 0x00000000 DF7262276313976D96C67575A19A5AB3
.rodata 0x00424000 2,528 bytes 2,560 bytes 4.32 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 956C856939278D142083BEF02B9DE040
.tls 0x00425000 593 bytes 1,024 bytes 0.21 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE FC6EA936F446674808868F4FC32583D4
CPADinfo 0x00426000 56 bytes 512 bytes 0.12 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE 60D3EA61D541C9BE2E845D2787FB9574
LZMADEC 0x00427000 4,593 bytes 4,608 bytes 6.06 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 05E9EAB8428A551A281AB278073669FA
_RDATA 0x00429000 500 bytes 512 bytes 4.17 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 129F037123208838F3546D66BDCF11E2
malloc_h 0x0042a000 1,890 bytes 2,048 bytes 6.13 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 4C9308373E2D8C350BF367B016157931
.rsrc 0x0042b000 1,469,320 bytes 1,469,440 bytes 4.11 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ B213022B9AA80E7577FAE695E96C975E
.reloc 0x00592000 11,112 bytes 11,264 bytes 5.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ B7050EF50C4727B43EC88B17EAAAA9E5
Entropy Analysis Alert

1 section(s) with elevated entropy (≥6.5) - possible compression

Resource Analysis

Total Resources: 301 (1,454,104 bytes)
Resource Type Count Total Size Percentage
GOOGLEUPDATEAPPLICATIONCOMMANDS 1 4 bytes
0%
SIGNATURE_DAT 1 130 bytes
0%
TRUSTED_JSON 1 2,678 bytes
0.2%
RT_CURSOR 23 56,516 bytes
3.9%
RT_ICON 220 1,388,668 bytes
95.5%
RT_GROUP_CURSOR 21 448 bytes
0%
RT_GROUP_ICON 32 3,272 bytes
0.2%
RT_VERSION 1 1,260 bytes
0.1%
RT_MANIFEST 1 1,128 bytes
0.1%

Certificate Chain Analysis

Certificate Information
Product Yandex
Description Yandex with voice assistant Alice
File Version 25.4.1.1055
Original Name browser.exe
Signing Date 08:19 PM 05/21/2025 (10 days ago)
Verification Status Signed
Signers YANDEX LLC; GlobalSign GCC R45 EV CodeSigning CA 2020; GlobalSign Code Signing Root R45
Counter Signers DigiCert Timestamp 2024; DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA; DigiCert Trusted Root G4; DigiCert
Internal Name yandexbrowser_exe
Copyright Copyright (c) 2012-2025 YANDEX LLC. All Rights Reserved.
Certificate Chain Summary
YANDEX LLC #1 Primary
Validity Period: 2025-02-20 07:28:46 → 2028-02-21 07:28:46
Signature Algorithm: sha256RSA
Serial Number: 65 17 2B 14 C0 A4 25 F2 54 06 6D C5
GlobalSign GCC R45 EV CodeSigning CA 2020 #2 Chain
Validity Period: 2020-07-28 00:00:00 → 2030-07-28 00:00:00
Signature Algorithm: sha256RSA
Serial Number: 77 BD 0E 05 B7 59 0B B6 1D 47 61 53 1E 3F 75 ED
GlobalSign Code Signing Root R45 #3 Chain
Validity Period: 2020-03-18 00:00:00 → 2045-03-18 00:00:00
Signature Algorithm: sha384RSA
Serial Number: 76 53 FE AC 75 46 48 93 F5 E5 D7 4A 48 3A 4E F8
DigiCert Trusted Root G4 #4 Chain
Validity Period: 2022-08-01 00:00:00 → 2031-11-09 23:59:59
Signature Algorithm: sha384RSA
Serial Number: 0E 9B 18 8E F9 D0 2D E7 EF DB 50 E2 08 40 18 5A
DigiCert Trusted G4 RSA4096 SHA256 TimeStamping CA #5 Chain
Validity Period: 2022-03-23 00:00:00 → 2037-03-22 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 07 36 37 B7 24 54 7C D8 47 AC FD 28 66 2A 5E 5B
DigiCert Timestamp 2024 #6 Chain
Validity Period: 2024-09-26 00:00:00 → 2035-11-25 23:59:59
Signature Algorithm: sha256RSA
Serial Number: 0B AE 66 BC 5A BA 7F 95 87 C6 F9 E9 04 E3 33 04

✓ This file has been digitally signed and the certificate chain has been verified

  • The signature ensures file integrity and authenticity from the publisher
  • Timestamping proves when the signature was applied
Certificate Verification Status

OK

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
This file passed all security checks, but stay vigilant. New malware variants appear daily that can evade detection. Always verify files come from official sources and check digital signatures when available.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware