Pl-usHD

Pl-usHD

Known Adware

by Kimahri Software inc.

What is Pl-usHD?

Pl-usHD is software application developed by Kimahri Software inc.. It is most commonly found on computers running Windows 7 with nearly 56.04% of installations running this operating system. Pl-usHD's installer is typically 5.00 MB in size and installs around 113 files. The most common release is 1.34.5.12 with 69.23% of all installations currently using this version.

Pl-usHD is most popular in the United States with 51.38% of installations residing in this country.

About Pl-usHD?

Pl-usHD is a cross-browser add-on for Internet Explorer, Firefox, and Chrome. This software is distributed through various monetization platforms during installation. While it offers ad-supported features such as banners, search-related ads, pop-ups, pop-unders, interstitial, and in-text link advertisements, it has been updated to ensure a non-intrusive user experience. It no longer turns random web page text into hyperlinks and does not lead to the installation of other unwanted adware programs without the user's knowledge.

Multiple virus scanners have detected malware in Pl-usHD.

8e3c0871-c4b0-4958-a233-1ded93a18b7e-2.exe (MD5: 443bf5dd8aea89030e7ecfd7b425d6f6) has been flagged by 28 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.3874
Antiy-AVL Trojan/Win32.TSGeneric
Baidu-International Adware.Win32.CrossRider.BAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate Riskware/Toolbar_CrossRider
G Data Win32.Application.Plush.A
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Malwarebytes PUP.Optional.PlusHD.A
McAfee Artemis!443BF5DD8AEA
McAfee-GW-Edition Artemis!443BF5DD8AEA
Panda Antivirus PUP/PlusHD
Sophos AppRider
Symantec Trojan.ADH.2
TrendMicro-HouseCall TROJ_GEN.F47V0515
VIPRE Antivirus Crossrider (fs)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
avast! Win32:Adware-gen [Adw]
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Qihoo-360 Win32/Virus.Adware.a3e
NANO AntiVirus Riskware.Win32.AdLoad.dbbesv
AVG Generic_r.OG
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-5.exe (MD5: c253463d885ef838a0e7622755e18225) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4848
Baidu-International Adware.Win32.CrossRider.bAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
Symantec Trojan.ADH.2
Qihoo-360 Win32/Virus.Adware.5eb
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-4.exe (MD5: b2e563c3ffde5126a87d70f9ba7168f2) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4750
Baidu-International Adware.Win32.CrossRider.BAD
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AD
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.5eb
VIPRE Antivirus Crossrider (fs)
Symantec Trojan.ADH.2
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan
8e2251a4-7e1b-49f7-8598-5619a8eb664a-2.exe (MD5: 9972fa5f3da679b027e2910bfb1b62e2) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.5014
Baidu-International Adware.Win32.CrossRider.BAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
Sophos AppRider
Symantec Adware.BL
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan
Qihoo-360 Malware.QVM10.Gen
828b7858-3e09-4c6f-bd17-73ad515afec1-5.exe (MD5: d3072e2279c6887dde9e213e629a9c30) has been flagged by 14 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.4195
Baidu-International Adware.Win32.CrossRider.bAC
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.PlusHD.A
Panda Antivirus PUP/PlusHD
Symantec Trojan.ADH.2
VIPRE Antivirus Crossrider (fs)
Qihoo-360 Win32/Virus.Adware.5eb
Sophos AppRider
avast! Win32:Malware-gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Bkav FE W32.CrossRider.Trojan

Startup Entries

Startup tasks:
  • Pl-usHD-nova.exe is automatically launched at startup through a scheduled task named 644a1e30-4fe0-4d58-8cf9-d6526c9bca45-7.
  • Pl-usHD-codedownloader.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-6.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-5.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-5.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-4.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-4.
  • dba1c78b-b3c1-43aa-9baa-6d258490dccb-2.exe is automatically launched at startup through a scheduled task named dba1c78b-b3c1-43aa-9baa-6d258490dccb-2.
  • e15dc7b8-9ef5-408d-a370-c54de08ecc3c-5.exe is automatically launched at startup through a scheduled task named e15dc7b8-9ef5-408d-a370-c54de08ecc3c-5.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\Pl-usHD
Uninstaller:
C:\Program Files\Pl-usHD\Uninstall.exe /fcp=1
Size:
5.00 MB
Language:
English

Pl-usHD Executable Details

Primary executable:
utils.exe
Name:
Pl-usHD
Path:
C:\Program Files\Pl-usHD\utils.exe
MD5:
–
SHA-1:
–
SHA-256:
–
Files installed by Pl-usHD
File Type Filename MD5
EXE
d9648fe069147da3a5d2eaa9182b08a8
EXE
6903ab2c4ea506765aa142efa64b6dbb
EXE
05a258d78dc3781b599e72d515f111b8
EXE
4638313246fb82d7a726f09d5fe585fd
EXE
3f622307f31665526e943800c3a5d4d5
EXE
ff52f5d112ebf0720584b935d8a80f2b
EXE
0d806d37dbe79830afe246495ea526ff
EXE
58912eb4b1c4c4ac9325fbd17d103cb3
EXE
039ecc25b746d9377095f14f42074040
EXE
d670e91d8f3c4806858c488e8771ed3f