Should I block it?

60%
60% of PCs block this file from running.
Possible reason:
Performance resource utilization

VersionsAdditional versions

0.4.0.146 66.67%
0.2.2.113 13.33%
0.2.2.104 20.00%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
OpenProcessToken, GetTokenInformation, CryptDecrypt, CryptDestroyKey, CryptEncrypt, CryptImportKey, CryptReleaseContext, CryptAcquireContextW, GetUserNameW, RegCloseKey, RegQueryValueExW, RegNotifyChangeKeyValue, RegOpenKeyExW, RegDeleteKeyW, RegQueryInfoKeyW, RegCreateKeyExW, RegDeleteValueW, RegSetValueExW, RegEnumValueW, RegEnumKeyExW
comctl32.dll
InitCommonControlsEx
gdi32.dll
GetTextAlign, TextOutW, CreatePen, LineTo, MoveToEx, GetStockObject, SetWindowOrgEx, DeleteObject, CreateFontW, ExtTextOutW, SelectObject, SetTextAlign, SetTextColor, SetBkMode, GetTextExtentPoint32W
gdiplus.dll
GdipAlloc, GdipDisposeImage, GdipCreateFromHDC, GdipDeleteGraphics, GdipDrawImageRectRectI, GdipCloneImage, GdipCreateBitmapFromStream, GdiplusStartup, GdipGetImageHeight, GdipGetImageWidth, GdiplusShutdown, GdipFree
kernel32.dll
DllMain
msimg32.dll
GradientFill
ole32.dll
CoResumeClassObjects, CoSuspendClassObjects, StringFromGUID2, CoTaskMemAlloc, CoTaskMemRealloc, CoUninitialize, CoInitialize, OleRun, CoCreateInstance, CLSIDFromString, CoTaskMemFree, CoCreateGuid, CoRegisterClassObject, CoRevokeClassObject, CreateStreamOnHGlobal, StringFromCLSID
shell32.dll
ShellExecuteW, SHGetSpecialFolderPathW, SHFileOperationW, SHCreateDirectoryExW, CommandLineToArgvW
shlwapi.dll
UrlEscapeW
user32.dll
DispatchMessageW, TranslateMessage, PostThreadMessageW, PeekMessageW, IsWindow, DestroyWindow, GetActiveWindow, DialogBoxParamW, GetDlgItem, DefWindowProcW, CharNextW, CharLowerW, UnregisterClassA, GetMessageW, ShowWindow, MoveWindow, GetDesktopWindow, MonitorFromPoint, GetMonitorInfoW, ReleaseDC, SetFocus, MessageBeep, SetDlgItemTextW, GetWindowTextLengthW, EndDialog, EndPaint, BeginPaint, EnableWindow, DrawTextW, ScreenToClient, GetWindowTextW, SetWindowPos, GetDC, OffsetRect, ReleaseCapture, SetCapture, GetCapture, GetParent, PtInRect, GetWindowRect, ClientToScreen, InvalidateRect, GetClientRect, SetWindowTextW, CreateWindowExW, LoadCursorW, GetClassInfoExW, RegisterClassExW, KillTimer, SetTimer, CallWindowProcW, GetWindowLongW, SendMessageW, SetWindowLongW
version.dll
GetFileVersionInfoW, VerQueryValueW, GetFileVersionInfoSizeW

praetorian.exe

Yandex by OOO Yandex (Signed)

Remove praetorian.exe
Version:   0.2.2.113
MD5:   68af1c01341da23a1d01fc487fea8b6b
SHA1:   25f1ce303b3e118bd9bd8f1e27c4187c752d201a
SHA256:   ffc5977d9178bbb0c99465a3e6f6e628651b6f6879380f4e48f878ba28ecaa26

What is praetorian.exe?

praetorian.exe is the software updater program which runs in the background of Windows and automatically starts up when your PC boots. It checks for software udpates and automatically downloads and installs them if found.

Overview

praetorian.exe executes as a process with the local user's privileges. It is set to be run when the PC boots and the user logs into Windows (added to the Run registry key for the current user). The file is digitally signed by OOO Yandex which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:praetorian.exe
Publisher:Yandex LLC
Product name:Yandex
Typical file path:C:\users\user\appdata\local\yandex\updater\praetorian.exe
File version:0.2.2.113
Size:1.51 MB (1,582,976 bytes)
Certificate
Issued to:OOO Yandex
Authority (CA):VeriSign
Expiration date:Thursday, May 2, 2013
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Startup files (user) run
Runs under the registry key 'HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Praetorian' → C:\users\user\appdata\Local\Yandex\Updater\praetorian.exe

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 40.00%
Microsoft Windows XP 20.00%
Windows 7 Home Basic 13.33%
Windows 7 Home Premium 13.33%
Windows 8 Single Language 6.67%
Windows 7 Starter 6.67%

Distribution by countryDistribution by country

UA installs about 40.00% of Yandex.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 28.57%
Lenovo 19.05%
Dell 19.05%
Sony 9.52%
Hewlett-Packard 9.52%
Acer 4.76%
GIGABYTE 4.76%
Samsung 4.76%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE