Pl-usHD

Pl-usHD

Known Adware

by Kimahri Software inc.

What is Pl-usHD?

Pl-usHD is software application developed by Kimahri Software inc.. It is most commonly found on computers running Windows 7 with nearly 56.04% of installations running this operating system. Pl-usHD's installer is typically 5.00 MB in size and installs around 113 files. The most common release is 1.34.5.12 with 69.23% of all installations currently using this version.

Pl-usHD is most popular in the United States with 51.38% of installations residing in this country.

About Pl-usHD?

Pl-usHD is a cross-browser add-on for Internet Explorer, Firefox, and Chrome. This software is distributed through various monetization platforms during installation. While it offers ad-supported features such as banners, search-related ads, pop-ups, pop-unders, interstitial, and in-text link advertisements, it has been updated to ensure a non-intrusive user experience. It no longer turns random web page text into hyperlinks and does not lead to the installation of other unwanted adware programs without the user's knowledge.

Multiple virus scanners have detected malware in Pl-usHD.

8e3c0871-c4b0-4958-a233-1ded93a18b7e-2.exe (MD5: 443bf5dd8aea89030e7ecfd7b425d6f6) has been flagged by 28 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.3874
Antiy-AVL Trojan/Win32.TSGeneric
Baidu-International Adware.Win32.CrossRider.BAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate Riskware/Toolbar_CrossRider
G Data Win32.Application.Plush.A
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Malwarebytes PUP.Optional.PlusHD.A
McAfee Artemis!443BF5DD8AEA
McAfee-GW-Edition Artemis!443BF5DD8AEA
Panda Antivirus PUP/PlusHD
Sophos AppRider
Symantec Trojan.ADH.2
TrendMicro-HouseCall TROJ_GEN.F47V0515
VIPRE Antivirus Crossrider (fs)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
avast! Win32:Adware-gen [Adw]
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Qihoo-360 Win32/Virus.Adware.a3e
NANO AntiVirus Riskware.Win32.AdLoad.dbbesv
AVG Generic_r.OG
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-5.exe (MD5: c253463d885ef838a0e7622755e18225) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4848
Baidu-International Adware.Win32.CrossRider.bAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
Symantec Trojan.ADH.2
Qihoo-360 Win32/Virus.Adware.5eb
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-4.exe (MD5: b2e563c3ffde5126a87d70f9ba7168f2) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4750
Baidu-International Adware.Win32.CrossRider.BAD
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AD
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.5eb
VIPRE Antivirus Crossrider (fs)
Symantec Trojan.ADH.2
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-2.exe (MD5: 9972fa5f3da679b027e2910bfb1b62e2) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.5014
Baidu-International Adware.Win32.CrossRider.BAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
Sophos AppRider
Symantec Adware.BL
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan
Qihoo-360 Malware.QVM10.Gen
828b7858-3e09-4c6f-bd17-73ad515afec1-5.exe (MD5: d3072e2279c6887dde9e213e629a9c30) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4195
Baidu-International Adware.Win32.CrossRider.bAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
Symantec Trojan.ADH.2
VIPRE Antivirus Crossrider (fs)
Qihoo-360 Win32/Virus.Adware.5eb
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan

Startup Entries

Startup tasks:
  • Pl-usHD-nova.exe is automatically launched at startup through a scheduled task named 644a1e30-4fe0-4d58-8cf9-d6526c9bca45-7.
  • Pl-usHD-codedownloader.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-6.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-5.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-5.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-4.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-4.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-2.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-2.
  • e15dc7b8-9ef5-408d-a370-c54de08ecc3c-5.exe is automatically launched at startup through a scheduled task named e15dc7b8-9ef5-408d-a370-c54de08ecc3c-5.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\Pl-usHD
Uninstaller:
C:\Program Files\Pl-usHD\Uninstall.exe /fcp=1
Size:
5.00 MB
Language:
English

Pl-usHD Executable Details

Primary executable:
utils.exe
Name:
Pl-usHD
Path:
C:\Program Files\Pl-usHD\utils.exe
MD5:
–
SHA-1:
–
SHA-256:
–
Files installed by Pl-usHD
File Type Filename MD5
EXE
3f999288df273264db6258e0963fece1
EXE
87c41ed20b67eb9e03872a991ee2a0a2
EXE
afe5a12525121a0805af138f65966b09
EXE
0a16c76610f4b583bb7e82f8e022cae0
EXE
e534aea4426a6ade6593d30210c661c9
EXE
71e9d49cfaedf3c249535f03ff43f1b2
EXE
c1a26f8e8e7363e5dcced3d7210af01a
EXE
31e7cb6ad96e458c14c5b7f6d436b745
EXE
26c555ae75088dae3af181310d592d90
EXE
927f985ad777835a1e89dbb08b16c3c9