hddlifepro.exe

HDDlife

BinarySense, Inc.

The executable hddlifepro.exe, “HDDlife executable file” has been detected as malware by 10 anti-virus scanners.
Publisher:
BinarySense, Inc.

Product:
HDDlife

Description:
HDDlife executable file

Version:
4, 0, 0, 192

MD5:
d12b0124a5b14215bc50dd181600b1c8

SHA-1:
5602260a619174b2ec6e4dfbfa79b23bda004bd2

SHA-256:
ba2288f37277adeecc52fe1d521b92b4404fbeda81900c62f672a6e2eeb7c7d1

Scanner detections:
10 / 68

Status:
Malware

Analysis date:
5/13/2025 3:04:37 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Suspicious
7.1.1

Bkav FE
W32.HfsAutoB
1.3.0.4613

Comodo Security
UnclassifiedMalware
17527

McAfee
Artemis!D12B0124A5B1
5600.7265

NANO AntiVirus
Virus.Win32.Gen.ccmw
0.28.0.57029

Norman
Troj_Generic.GKPWD
11.20131230

Sophos
Mal/EncPk-JD
4.96

Trend Micro House Call
TROJ_GEN.R0CBC0EL313
7.2.364

Trend Micro
TROJ_GEN.R0CBC0EL313
10.465.30

VIPRE Antivirus
Trojan.Win32.Generic
24938

File size:
3.9 MB (4,115,456 bytes)

Product version:
4, 0, 0, 192

Copyright:
(c) 2004-2012, BinarySense, Inc.

Original file name:
HDDlife.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\binarysense\hddlife 4\hddlifepro.exe

File PE Metadata
Compilation timestamp:
9/10/1987 8:27:18 AM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

CTPH (ssdeep):
98304:MaQiRTQNQSKveQHvaQ38f5vIqFkswd75hl37UYrOvxW++O:aNBvI4G75hl37UYrg

Entry address:
0x70C000

Entry point:
68, C1, A3, 1D, 00, 60, 9C, E8, A4, 00, 00, 00, E8, 0E, 00, 00, 00, 41, 72, 6D, 61, 63, 63, 65, 73, 73, 2E, 64, 6C, 6C, 00, FF, 55, 5A, 8B, F8, 89, BD, 8C, 06, 00, 00, 85, FF, 75, 0C, 8D, B5, CB, 04, 00, 00, 56, E8, 1A, 04, 00, 00, E8, DE, 02, 00, 00, E8, 46, 00, 00, 00, 01, 44, 24, 24, B8, AE, FF, FF, FF, E8, 00, 00, 00, 00, 03, 04, 24, 8D, 88, 0A, 0A, 00, 00, 5E, 81, C6, 34, 00, 00, 00, BA, 03, 00, 00, 00, 8B, 1E, 89, 19, 83, EE, 04, 83, E9, 04, 4A, 85, D2, 75, F1, 33, D2, 51, 83, 04, 24, 04, C3, 89, 10...
 
[+]

Code size:
804 KB (823,296 bytes)

Remove hddlifepro.exe - Powered by Reason Core Security