HD-Quality-v3

HD-Quality-v3

Known Adware

by Motoko Group

What is HD-Quality-v3?

HD-Quality-v3 is software application developed by Motoko Group. It is most commonly found on computers running Windows 7 with nearly 49.12% of installations running this operating system. HD-Quality-v3's installer is typically 14.00 MB in size and installs around 203 files. The most common release is 1.34.8.12 with 59.65% of all installations currently using this version.

HD-Quality-v3 is most popular in the United States with 51.35% of installations residing in this country.

About HD-Quality-v3?

Cinema Plus is a browser extension supported by advertising. It is typically bundled by a third-party download manager and may involve potentially unwanted software offers in order to generate revenue through installs. Once installed, Cinema Plus delivers advertisements to the browser in various formats including banners, text hyper-links, inline text ads, and transitional ads. These advertisements are not endorsed by the website on which they appear and can replace legitimate ads or be injected into the header or footer of the page. Some of the ads may promote potentially harmful products or additional software downloads, including adware and bundlers, as well as price comparison and search ads. In some instances, the program's uninstaller may not function properly, leaving remnants of the program and ads even after removal.

Multiple virus scanners have detected malware in HD-Quality-v3.

utils.exe (MD5: 208397bbc39e3c988b59242890b877a7) has been flagged by 45 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.MulDrop
Bkav FE HW32.CDB
Dr.Web Trojan.Crossrider.27368
G Data NSIS.Adware.Crossrider
IKARUS anti.virus PUA.Plush
Malwarebytes PUP.Optional.CrossRider.A
McAfee Artemis!717CE10F19A1
Rising Antivirus PE:Malware.Obscure!1.9C59
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
avast! Win32:Crossrider-AP [PUP]
AVG Generic.22F
Avira Adware/CrossRider.gt
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAV
Bitdefender Gen:Variant.Adware.Plush.1
CAT-QuickHeal AdWare.NSIS.g5 (Not a Virus)
Clam AntiVirus Win.Adware.Plush-47
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Adware/Adwapper
F-Prot W32/A-1a27c920!Eldorado
F-Secure Gen:Variant.Adware.Plush.1
K7 AntiVirus Unwanted-Program ( 004a9f381 )
K7GW Unwanted-Program ( 004a9f381 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.au
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee-GW-Edition BehavesLike.Win32.BadFile.th
MicroWorld-eScan Gen:Variant.Adware.Plush.1
NANO AntiVirus Riskware.Win32.Crossrider.denvje
nProtect Trojan-Clicker/W32.Agent.1994136
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Trojan.Adware.486
Sophos Generic PUA CN
Symantec PUA.Gen.2
Tencent Nsis.Adware.Adwapper.Ajbi
Trend Micro TROJ_GEN.R0C1C0EJG14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJG14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2164
Agnitum Outpost PUA.Toolbar.CrossRider!
Avira AntiVir ADWARE/CrossRider.Gen2
Jiangmin Trojan.NSIS.GoogUpdate.br
43733802-6cc3-4e95-ba4b-21bdafa1c5b5-5.exe (MD5: 150813f675b98da45436aadfe01e84a5) has been flagged by 40 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.2
AVG Generic.22F
Avira ADWARE/CrossRider.Gen2
AVware Crossrider (fs)
Bitdefender Gen:Variant.Adware.Plush.2
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.2 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AN
F-Prot W32/S-9ad4719b!Eldorado
F-Secure Gen:Variant.Adware.Plush.2
G Data Gen:Variant.Adware.Plush.2
IKARUS anti.virus Trojan.GoogUpdate
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.au
Kingsoft AntiVirus Win32.Troj.NSIS.cz.(kcloud)
Malwarebytes PUP.Optional.HDQuality.A
MicroWorld-eScan Gen:Variant.Adware.Plush.2
NANO AntiVirus Riskware.Win32.Crossrider.denqib
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FK
Symantec WS.Reputation.1
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2163
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31757
Fortinet FortiGate Adware/Adwapper
McAfee Artemis!BB2BAA2DD818
McAfee-GW-Edition Artemis
Qihoo-360 HEUR/Malware.QVM10.Gen
Vba32 AntiVirus AdWare.Adwapper
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
Baidu-International Trojan.Win32.GoogUpdate.aDY
Jiangmin Trojan.NSIS.GoogUpdate.br
Tencent Nsis.Trojan.Googupdate.Pkrf
TrendMicro-HouseCall Suspicious_GEN.F47V0810
K7 AntiVirus Unwanted-Program ( 004a9d081 )
K7GW Unwanted-Program ( 004a9d081 )
nProtect Trojan-Clicker/W32.Agent.378776
AhnLab-V3 PUP/Win32.CrossRider
43733802-6cc3-4e95-ba4b-21bdafa1c5b5-4.exe (MD5: 646f13f44dd605ca941340349da4c65e) has been flagged by 40 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper
AVG Generic.22F
Avira ADWARE/CrossRider.Gen2
AVware Crossrider (fs)
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31767
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AQ
Fortinet FortiGate Adware/Adwapper
K7 AntiVirus Trojan ( 004a94a61 )
K7GW Trojan ( 004a94a61 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.au
Kingsoft AntiVirus Win32.Troj.NSIS.cz.(kcloud)
Malwarebytes PUP.Optional.HDQuality.A
McAfee Artemis!646F13F44DD6
McAfee-GW-Edition BehavesLike.Win32.PUP.th
NANO AntiVirus Trojan.Win32.GoogUpdate.deofza
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Sophos Generic PUA AF
Symantec WS.Reputation.1
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2131
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
Baidu-International Trojan.Win32.GoogUpdate.ANi
Bitdefender Gen:Variant.Adware.Kazy.374109
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Jiangmin Trojan.NSIS.GoogUpdate.br
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Rising Antivirus PE:Malware.Obscure!1.9C59
F-Prot W32/S-9ad4719b!Eldorado
Tencent Nsis.Adware.Adwapper.Pdls
TrendMicro-HouseCall Suspicious_GEN.F47V0909
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.2 (B)
nProtect Trojan-Clicker/W32.Agent.378776
43733802-6cc3-4e95-ba4b-21bdafa1c5b5-2.exe (MD5: 7090b6591201a7bbc998a6d145040824) has been flagged by 33 scanners:
Scanner Software Result
AVG Generic.22F
Avira ADWARE/CrossRider.Gen2
AVware Crossrider (fs)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AR
F-Prot W32/S-9ad4719b!Eldorado
G Data Win32.Adware.Crossrider.L
IKARUS anti.virus Trojan.GoogUpdate
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.au
Kingsoft AntiVirus Win32.Troj.NSIS.cz.(kcloud)
Malwarebytes PUP.Optional.HDQuality.A
NANO AntiVirus Riskware.Win32.Crossrider.derlvs
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA KO
Symantec WS.Reputation.1
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2129
K7 AntiVirus Unwanted-Program ( 004a9f351 )
K7GW Unwanted-Program ( 004a9f351 )
nProtect Trojan/W32.Agent.896920
Tencent Nsis.Adware.Adwapper.Pfjq
Vba32 AntiVirus AdWare.Adwapper
Avira AntiVir Adware/CrossRider.pl
Antiy-AVL Trojan/NSIS.GoogUpdate
Baidu-International Adware.Win32.GoogUpdate.aE
Dr.Web Trojan.Crossrider.30106
Fortinet FortiGate W32/GoogUpdate.AK!tr
McAfee Artemis!B43679679A38
avast! Win32:PUP-gen [PUP]
AhnLab-V3 PUP/Win32.Toolbar
McAfee-GW-Edition Artemis!30D6AD380F5E
Jiangmin Trojan.NSIS.GoogUpdate.br
43733802-6cc3-4e95-ba4b-21bdafa1c5b5-11.exe (MD5: 82a9120fc3942f7ec5d538aa15d20e6b) has been flagged by 44 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
avast! Win32:Crossrider-AP [PUP]
AVG Generic.22F
Avira Adware/CrossRider.gt
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAV
Bitdefender Gen:Variant.Adware.Plush.1
CAT-QuickHeal AdWare.NSIS.g5 (Not a Virus)
Clam AntiVirus Win.Adware.Plush-47
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31738
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
Fortinet FortiGate Adware/Adwapper
F-Prot W32/A-1a27c920!Eldorado
F-Secure Gen:Variant.Adware.Plush.1
G Data Gen:Variant.Adware.Plush.1
K7 AntiVirus Trojan ( 004a94a61 )
K7GW Trojan ( 004a94a61 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.au
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.HDQuality.A
McAfee Artemis!82A9120FC394
McAfee-GW-Edition BehavesLike.Win32.PUP.th
MicroWorld-eScan Gen:Variant.Adware.Plush.1
NANO AntiVirus Riskware.Win32.Crossrider.denvje
nProtect Trojan-Clicker/W32.Agent.1994136
Rising Antivirus PE:Trojan.Win32.Generic.17522418!391259160
Sophos Generic PUA JM
Symantec PUA.Gen.2
Tencent Nsis.Adware.Adwapper.Eadl
Trend Micro TROJ_GEN.R0C1C0EJG14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJG14
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2164
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
IKARUS anti.virus Trojan.GoogUpdate
Vba32 AntiVirus AdWare.Adwapper
Qihoo-360 Win32/Virus.Adware.654
Panda Antivirus Trj/Genetic.gen
Agnitum Outpost PUA.Toolbar.CrossRider!
Avira AntiVir ADWARE/CrossRider.Gen2
Jiangmin Trojan.NSIS.GoogUpdate.br

Startup Entries

Startup tasks:
  • HD-Quality-v3-codedownloader.exe is automatically launched at startup through a scheduled task named 7bc57f99-2456-4b39-b657-eb2abeb77dd8-1.
  • 7bc57f99-2456-4b39-b657-eb2abeb77dd8-5.exe is automatically launched at startup through a scheduled task named 7bc57f99-2456-4b39-b657-eb2abeb77dd8-5.
  • 7bc57f99-2456-4b39-b657-eb2abeb77dd8-4.exe is automatically launched at startup through a scheduled task named f80660c5-98f9-4983-8b13-fafee6b2b74b.
  • 68c06d15-49bf-44a2-b1b9-8525a569b4d6-7.exe is automatically launched at startup through a scheduled task named 68c06d15-49bf-44a2-b1b9-8525a569b4d6-1.
  • 68c06d15-49bf-44a2-b1b9-8525a569b4d6-6.exe is automatically launched at startup through a scheduled task named 68c06d15-49bf-44a2-b1b9-8525a569b4d6-6.
  • 68c06d15-49bf-44a2-b1b9-8525a569b4d6-5.exe is automatically launched at startup through a scheduled task named 68c06d15-49bf-44a2-b1b9-8525a569b4d6-5_user.

Software Details

URL:
https://crossrider.com/install/61788-cinema-plus-1-2c
Support:
–
Installation path:
C:\Program Files\hd-quality-v3
Uninstaller:
C:\Program Files\HD-Quality-v3\Uninstall.exe /fcp=1
Size:
14.00 MB
Language:
English

HD-Quality-v3 Executable Details

Primary executable:
utils.exe
Name:
HD-Quality-v3
Path:
C:\Program Files\hd-quality-v3\utils.exe
MD5:
208397bbc39e3c988b59242890b877a7
SHA-1:
–
SHA-256:
–
Files installed by HD-Quality-v3
File Type Filename MD5
EXE
b69f4ea517115b910797fce53cd05542
DLL
1f5a8e2a949c43344df511e115dd1ca5
EXE
5fbaaa5e115b8bde1ae5dcd66ae5ffb5
EXE
b174901a61f8b3ce1d6eb571ed3dacb9
EXE
bf2e371c92d7a0c8e9f63bdf20f5d271
EXE
f37921d4c16fd13889b60ec10b2edeec
EXE
9a0506554c4b8d0de2fc13c374e858c3
EXE
64e4c379faf00f44f8ada8bb8755c225
EXE
7f02fa9e3ea1e0e42b892e6292bb9a9a
CRX
55a903fc9de74acad81bc013e576ca12