utils.exe

${randomstring1} LTD

The application utils.exe has been detected as a potentially unwanted program by 26 anti-malware scanners. This file is typically installed with the program TheHDvid-Codec V10 by Joseph CM which is a potentially unwanted software program. It is built using the Crossrider cross-browser extension platform. While the file utilizes the Crossrider framework and delivery services, it is not owned by Crossrider.
Publisher:
${randomstring1} LTD

Description:
${randomstring4}

Version:
1.35.11.26

MD5:
9e7bdc7874268c986bc88286a4358ab6

SHA-1:
2a24a18236e09ce72bf5c2eb07a71d28a08081cd

SHA-256:
4bb8547f8fb5f6a526a245505e6cede8c747037a2a9de79fbbc1d42f7ff5e418

Scanner detections:
26 / 68

Status:
Potentially unwanted

Explanation:
The software may change the browser's home page and search provider settings as well as display advertisements.

Analysis date:
4/19/2024 10:11:01 PM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.BHO
7.1.1

AhnLab V3 Security
Trojan/Win32.Genome
2013.06.04

Avira AntiVirus
ADWARE/Adware.Gen
7.11.82.160

avast!
Win32:MalOb-FH [Cryp]
2014.9-141128

AVG
Generic19
2015.0.3277

Baidu Antivirus
PUA.Win32.VMDetector
4.0.3.141128

Comodo Security
UnclassifiedMalware
16370

Dr.Web
infected with Trojan.Crossrider.44342
9.0.1.05190

ESET NOD32
Win32/Packed.VMDetector.I potentially unwanted application
7.0.302.0

Fortinet FortiGate
W32/Dx.UGL!tr
11/28/2014

F-Prot
W32/Sefnit.C.gen
v6.4.7.1.166

G Data
Win32:MalOb-FH
14.11.22

IKARUS anti.virus
Trojan.Win32.Genome
t3scan.2.0.3.0

K7 AntiVirus
Riskware
13.170.8800

Kaspersky
Trojan.Win32.Genome
14.0.0.2879

Malwarebytes
v2014.11.28.04

McAfee
Sefnit.l
5600.6933

Microsoft Security Essentials
Trojan:Win32/Sefnit.A
1.163.1557.0

NANO AntiVirus
Trojan.Win32.Genome.bpulhv
0.24.0.52593

Norman
Suspicious_Gen2.DVSXN
11.20141128

Panda Antivirus
Trj/CI.A
14.11.28.04

Reason Heuristics
Threat.Win.Reputation.IMP
14.11.28.4

Rising Antivirus
PE:Malware.Obscure!1.9C59
23.00.65.141126

Trend Micro House Call
TROJ_GEN.R01C2JS
7.2.332

Trend Micro
TROJ_GEN.RCBCCE4
10.465.28

VIPRE Antivirus
Trojan.Win32.Generic
18392

File size:
2.8 MB (2,950,018 bytes)

Copyright:
Copyright ${randomstring3}

Trademarks:
${randomstring2} is a trademark of ${randomstring6}

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\Program Files\thehdvid-codec v10\utils.exe

File PE Metadata
Compilation timestamp:
12/4/2012 3:55:02 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.22

CTPH (ssdeep):
49152:3vDU/iCiLeXNAW26wqnmc5zzyO93GyPIWTjArQP/Njh7DZaEATHr0wxIiXP:/AKBiXuW2yWOsyLvAr0tPRWHPXP

Entry address:
0x4323

Entry point:
55, 89, E5, 57, 56, 53, 81, EC, AC, 01, 00, 00, FF, 15, 74, C3, 44, 00, C7, 04, 24, 01, 80, 00, 00, FF, 15, 58, C4, 44, 00, 53, C7, 04, 24, 00, 00, 00, 00, FF, 15, 98, C4, 44, 00, 56, A3, 40, 3B, 44, 00, C7, 04, 24, 08, 00, 00, 00, E8, 8D, 3B, 00, 00, A3, 9C, 3B, 44, 00, 8D, 85, 84, FE, FF, FF, 57, C7, 44, 24, 10, 00, 00, 00, 00, C7, 44, 24, 0C, 60, 01, 00, 00, 89, 44, 24, 08, C7, 44, 24, 04, 00, 00, 00, 00, C7, 04, 24, 01, B3, 40, 00, FF, 15, AC, C4, 44, 00, 83, EC, 14, C7, 44, 24, 04, 02, B3, 40, 00, C7...
 
[+]

Code size:
34.5 KB (35,328 bytes)

The file utils.exe has been discovered within the following program.

TheHDvid-Codec V10  by Joseph CM
TheHDvid-Codec is an advertising supported (adware) extension that runs in the context of the user's web browser as well as a process in the background.
crossrider.com/install/61180-thehdvid-codec-v10
83% remove it
 
Powered by Should I Remove It?

Remove utils.exe - Powered by Reason Core Security