Pl-usHD

Pl-usHD

Known Adware

by Kimahri Software inc.

What is Pl-usHD?

Pl-usHD is software application developed by Kimahri Software inc.. It is most commonly found on computers running Windows 7 with nearly 56.04% of installations running this operating system. Pl-usHD's installer is typically 5.00 MB in size and installs around 113 files. The most common release is 1.34.5.12 with 69.23% of all installations currently using this version.

Pl-usHD is most popular in the United States with 51.38% of installations residing in this country.

About Pl-usHD?

Pl-usHD is a cross-browser add-on for Internet Explorer, Firefox, and Chrome. This software is distributed through various monetization platforms during installation. While it offers ad-supported features such as banners, search-related ads, pop-ups, pop-unders, interstitial, and in-text link advertisements, it has been updated to ensure a non-intrusive user experience. It no longer turns random web page text into hyperlinks and does not lead to the installation of other unwanted adware programs without the user's knowledge.

Multiple virus scanners have detected malware in Pl-usHD.

8e3c0871-c4b0-4958-a233-1ded93a18b7e-2.exe (MD5: 443bf5dd8aea89030e7ecfd7b425d6f6) has been flagged by 28 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.3874
Antiy-AVL Trojan/Win32.TSGeneric
Baidu-International Adware.Win32.CrossRider.BAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate Riskware/Toolbar_CrossRider
G Data Win32.Application.Plush.A
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Malwarebytes PUP.Optional.PlusHD.A
McAfee Artemis!443BF5DD8AEA
McAfee-GW-Edition Artemis!443BF5DD8AEA
Panda Antivirus PUP/PlusHD
Sophos AppRider
Symantec Trojan.ADH.2
TrendMicro-HouseCall TROJ_GEN.F47V0515
VIPRE Antivirus Crossrider (fs)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
avast! Win32:Adware-gen [Adw]
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Qihoo-360 Win32/Virus.Adware.a3e
NANO AntiVirus Riskware.Win32.AdLoad.dbbesv
AVG Generic_r.OG
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-5.exe (MD5: c253463d885ef838a0e7622755e18225) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4848
Baidu-International Adware.Win32.CrossRider.bAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
Symantec Trojan.ADH.2
Qihoo-360 Win32/Virus.Adware.5eb
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-4.exe (MD5: b2e563c3ffde5126a87d70f9ba7168f2) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4750
Baidu-International Adware.Win32.CrossRider.BAD
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AD
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.5eb
VIPRE Antivirus Crossrider (fs)
Symantec Trojan.ADH.2
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-2.exe (MD5: 9972fa5f3da679b027e2910bfb1b62e2) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.5014
Baidu-International Adware.Win32.CrossRider.BAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
Sophos AppRider
Symantec Adware.BL
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan
Qihoo-360 Malware.QVM10.Gen
828b7858-3e09-4c6f-bd17-73ad515afec1-5.exe (MD5: d3072e2279c6887dde9e213e629a9c30) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4195
Baidu-International Adware.Win32.CrossRider.bAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
Symantec Trojan.ADH.2
VIPRE Antivirus Crossrider (fs)
Qihoo-360 Win32/Virus.Adware.5eb
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan

Startup Entries

Startup tasks:
  • Pl-usHD-nova.exe is automatically launched at startup through a scheduled task named 644a1e30-4fe0-4d58-8cf9-d6526c9bca45-7.
  • Pl-usHD-codedownloader.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-6.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-5.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-5.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-4.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-4.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-2.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-2.
  • e15dc7b8-9ef5-408d-a370-c54de08ecc3c-5.exe is automatically launched at startup through a scheduled task named e15dc7b8-9ef5-408d-a370-c54de08ecc3c-5.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\Pl-usHD
Uninstaller:
C:\Program Files\Pl-usHD\Uninstall.exe /fcp=1
Size:
5.00 MB
Language:
English

Pl-usHD Executable Details

Primary executable:
utils.exe
Name:
Pl-usHD
Path:
C:\Program Files\Pl-usHD\utils.exe
MD5:
–
SHA-1:
–
SHA-256:
–
Files installed by Pl-usHD
File Type Filename MD5
EXE
ab91a7350a5fddcdf0a7b0c60e8e4e71
EXE
a0bdc8051a740904d9e5f24d697f6875
XPI
2a5437839295184ce83bd652393cf5a2
CRX
d78f56aca15efce553aced619b9074b7
CRX
e760682ab1ea1eb3a86a8fcc261d7176
EXE
443bf5dd8aea89030e7ecfd7b425d6f6
EXE
c253463d885ef838a0e7622755e18225
EXE
b2e563c3ffde5126a87d70f9ba7168f2
EXE
9972fa5f3da679b027e2910bfb1b62e2
EXE
d3072e2279c6887dde9e213e629a9c30