hxjhgdplrs.exe

The application hxjhgdplrs.exe has been detected as a potentially unwanted program by 9 anti-malware scanners. According to AVG, this software downloads additional adware offers during setup.
MD5:
2fa9aa972b862bf19e9124a9c1206cad

SHA-1:
a2ccb30d595e71d36aa519f82bba18806aa454b1

SHA-256:
8ec4291deef3f45e490f00eb801ba7cabe5aa1b30b442480503207e1b9c89cd0

Scanner detections:
9 / 68

Status:
Potentially unwanted

Analysis date:
4/25/2024 6:11:16 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Trash.Gen
7.11.214.42

AVG
Potentially harmful program Downloader
2016.0.3080

Baidu Antivirus
Adware.MSIL.PullUpdate
4.0.3.15612

Dr.Web
Adware.Yontoo.56
9.0.1.0163

ESET NOD32
MSIL/Adware.PullUpdate.G.gen application
9.7.0.302.0

herdProtect (fuzzy)
2015.6.12.18

IKARUS anti.virus
PUA.Downloader
t3scan.1.8.6.0

Malwarebytes
PUP.Optional.HealthAlert.A
v2015.06.12.06

NANO AntiVirus
Trojan.Win64.Downware.dhdcgg
0.30.0.64812

File size:
48.8 KB (49,984 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\ProgramData\dqbzktuand\dat\hxjhgdplrs.exe

File PE Metadata
Compilation timestamp:
1/26/2015 6:55:17 AM

OS version:
4.0

OS bitness:
Win64

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:jWhYmvcSE//FHtGDBJ8Soj5ZAvszi4wdd1WRUjUBc7X:+Eb5thSG5ZAUzijdZpX

Entry address:
0xBF6E

Entry point:
48, A1, 00, 20, 00, 40, 00, 00, 00, 00, FF, E0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Code size:
40 KB (40,960 bytes)

Remove hxjhgdplrs.exe - Powered by Reason Core Security