hka.dll

hka.dll

HOW SOFT

The module hka.dll by HOW SOFT has been detected as a potentially unwanted program by 8 anti-malware scanners.
Publisher:
HowSoft  (signed by HOW SOFT)

Product:
hka.dll

Version:
1.0.0.0

MD5:
96b6041af7db90b74e4c6cb0c83d80cb

SHA-1:
8a36627c1a7f6c54eba10d124143ec7072a06579

SHA-256:
3eaecc6c6df93fc18eaa5d59b230dea0ef5f3a301db16fe16759682bea788bd5

Scanner detections:
8 / 68

Status:
Potentially unwanted

Analysis date:
4/19/2024 6:00:35 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
Adware/Agent.199760
7.11.103.178

avast!
Win32:Installer-AA [PUP]
2014.9-151015

AVG
MalSign.Generic
2016.0.2955

Bkav FE
HW32.CDB
1.3.0.4246

Comodo Security
ApplicUnwnt
16986

Reason Heuristics
PUP.Hue Communication.HOWSOFT (M)
15.10.15.15

Trend Micro House Call
TROJ_GEN.RCBH1C9
7.2.288

VIPRE Antivirus
Trojan.Win32.Generic
21744

File size:
195.1 KB (199,760 bytes)

Product version:
1.0.0.1

Copyright:
Copyright (C) HowSoft Co. LTD., All rights reserved.

Original file name:
hka.dll

File type:
Dynamic link library (Win32 DLL)

Language:
Korean (Korea)

Common path:
C:\users\{user}\appdata\roaming\howcodec\hka.dll

Digital Signature
Signed by:

Authority:
Thawte, Inc.

Valid from:
11/28/2011 12:00:00 PM

Valid to:
1/27/2013 11:59:59 AM

Subject:
CN=HOW SOFT, O=HOW SOFT, L=Guro-gu, S=SEOUL, C=KR

Issuer:
CN=Thawte Code Signing CA - G2, O="Thawte, Inc.", C=US

Serial number:
567C8147E85208EFCE0495C1D8AC015F

File PE Metadata
Compilation timestamp:
6/26/2012 2:32:08 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
3072:KI4iUxFnEmotYs4kqmuArBlKFgyOg7ElL7eGj1YmvAClgSRlo/outdVI:KIDmFnBNvfmuolA7OL7VjZvnP8oSdO

Entry address:
0xA42A0

Entry point:
80, 7C, 24, 08, 01, 0F, 85, DE, 0B, 00, 00, 60, BE, 00, 70, 47, 00, 8D, BE, 00, A0, F8, FF, 57, 89, E5, 8D, 9C, 24, 80, C1, FF, FF, 31, C0, 50, 39, DC, 75, FB, 46, 46, 53, 68, 76, 24, 0A, 00, 57, 83, C3, 04, 53, 68, 96, D2, 02, 00, 56, 83, C3, 04, 53, 50, C7, 03, 03, 00, 02, 00, 90, 90, 55, 57, 56, 53, 83, EC, 7C, 8B, 94, 24, 90, 00, 00, 00, C7, 44, 24, 74, 00, 00, 00, 00, C6, 44, 24, 73, 00, 8B, AC, 24, 9C, 00, 00, 00, 8D, 42, 04, 89, 44, 24, 78, B8, 01, 00, 00, 00, 0F, B6, 4A, 02, 89, C3, D3, E3, 89, D9...
 
[+]

Entropy:
7.9642  (probably packed)

Code size:
184 KB (188,416 bytes)

Remove hka.dll - Powered by Reason Core Security