Should I block it?

No, this file is 100% safe to run.

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExW, RegCloseKey, RegOpenKeyExW, RegCreateKeyExW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, GetSecurityDescriptorSacl, ConvertStringSecurityDescriptorToSecurityDescriptorW
kernel32.dll
LocalFree, GetModuleHandleW, CreateEventW, SetEvent, QueueUserWorkItem, DeleteFileW, Sleep, InterlockedDecrement, InterlockedIncrement, GetCommandLineW, SetEnvironmentVariableA, CompareStringW, IsValidLocale, EnumSystemLocalesA, GetLocaleInfoA, GetUserDefaultLCID, IsValidCodePage, GetOEMCP, WriteConsoleW, GetProcAddress, InterlockedCompareExchange, SizeofResource, LockResource, LoadResource, FindResourceW, GetModuleFileNameW, CloseHandle, WaitForSingleObject, DuplicateHandle, GetCurrentProcess, GetCurrentProcessId, GetTickCount, ReleaseMutex, GetLastError, SetLastError, CreateProcessW, CreateMutexW, SetFilePointer, CreateFileW, WriteFile, OutputDebugStringA, FormatMessageA, GetModuleHandleA, UnmapViewOfFile, GetFileAttributesW, CreateDirectoryW, GetTempPathW, GetCurrentDirectoryW, MapViewOfFile, CreateFileMappingW, ReadFile, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, QueryPerformanceCounter, GetSystemTimeAsFileTime, GetNativeSystemInfo, GetVersionExW, SetEnvironmentVariableW, GetEnvironmentVariableW, LocalAlloc, ExpandEnvironmentStringsW, SetEndOfFile, FlushFileBuffers, GetLocaleInfoW, GetUserDefaultUILanguage, IsDebuggerPresent, RaiseException, GetCurrentThreadId, OpenProcess, HeapSetInformation, GetStdHandle, SetUnhandledExceptionFilter, TerminateProcess, GetProcessTimes, InterlockedExchangeAdd, GetSystemDirectoryW, GetWindowsDirectoryW, TlsGetValue, TlsFree, TlsSetValue, TlsAlloc, UnregisterWaitEx, RegisterWaitForSingleObject, InterlockedExchange, ResetEvent, UnregisterWait, ConnectNamedPipe, GetOverlappedResult, DisconnectNamedPipe, InitializeCriticalSection, CreateNamedPipeW, ReadProcessMemory, LoadLibraryW, FreeLibrary, GetSystemTime, MultiByteToWideChar, WideCharToMultiByte, GetThreadLocale, GetACP, LoadLibraryA, CreateFileA, GetTimeZoneInformation, GetStringTypeW, EncodePointer, DecodePointer, UnhandledExceptionFilter, HeapFree, GetCPInfo, GetStartupInfoW, GetConsoleCP, GetConsoleMode, HeapAlloc, GetProcessHeap, ExitProcess, SetStdHandle, GetFileType, HeapReAlloc, RtlUnwind, LCMapStringW, IsProcessorFeaturePresent, HeapCreate, SetHandleCount, FreeEnvironmentStringsW, GetEnvironmentStringsW, HeapSize
ole32.dll
CoCreateInstance, CoSetProxyBlanket, CoTaskMemFree
user32.dll
CharUpperW, MessageBoxW, PostQuitMessage, DefWindowProcW, UpdateWindow, CreateWindowExW, RegisterClassExW, DispatchMessageW, TranslateMessage, GetMessageW, PostMessageW
wininet.dll
InternetCloseHandle, InternetReadFile, InternetQueryDataAvailable, HttpQueryInfoW, HttpSendRequestW, InternetCrackUrlW, InternetOpenW, InternetConnectW, HttpAddRequestHeadersW, InternetSetOptionW, HttpOpenRequestW
winmm.dll
timeGetTime

crash_service.exe

By OOO Yandex (Signed)

Remove crash_service.exe
MD5:   6ecb3a6717a66c5ac886c82060135dde
SHA1:   ed3c1fc86f353673f7def999ccf453f02edec690
SHA256:   4c90bdb0370bafec6a1afa9c3064dd4c8f08bd3fed3881d6debf716ce43f2648

Overview

crash_service.exe executes as a process with the local user's privileges typically within the context of its parent browser.exe (Yandex by OOO Yandex). The file is digitally signed by OOO Yandex which was issued by the VeriSign certificate authority (CA). This particular version is usually found on Microsoft Windows XP (5.1.2600.196608).

DetailsDetails

File name:crash_service.exe
Typical file path:C:\Documents and Settings\user\Application data\yandex\yandexbrowser\application\22.0.1105.412\crash_service.exe
Size:922.79 KB (944,936 bytes)
Certificate
Issued to:OOO Yandex
Authority (CA):VeriSign
Effective date:Sunday, May 2, 2010
Expiration date:Thursday, May 2, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00065234%
0.028634%
Kernel CPU:0.00021272%
0.013761%
User CPU:0.00043962%
0.014873%
Kernel CPU time:15,625 ms/min
100,923,805ms/min
Memory
Private memory:784 KB
21.59 MB
Private (maximum):2.89 MB
Private (minimum):276 KB
Non-paged memory:784 KB
21.59 MB
Virtual memory:36.55 MB
140.96 MB
Virtual memory (peak):43.66 MB
169.69 MB
Working set:776 KB
18.61 MB
Working set (peak):2.9 MB
37.95 MB
Resource allocations
Threads:4
12
Handles:73
600
GUI GDI count:12
103
GUI USER count:5
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:crash_service.exe --max-reports=999
Owner:User
Parent process:browser.exe (Yandex by OOO Yandex)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 100.00%

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 100.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE