84,488,480 programs installed

Should I remove HDPlus-V?

What percent of users and experts removed it?
76% remove it24% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Global Rank #31,996
Reach 0.0042%
Lifespan of installation (until removal)
< 10.84 days
273.98 days >
Average installed length: 143.96 days

Versions

VersionDistribution
1.34.7.1 100.00%

Other programs by Bright circle investments

HDPlus-V1.9

What is HDPlus-V?

Freeven HDPlus is an adware program that runs within the user's web browser and will modify various browser settings such as changing the search provider. In addition, this adware will inject display ads in the browser either by inserting new banner ads that would otherwise not be displayed on webpages viewed by the user or by adding new advertisements on top of existing ads. It will also insert hyper-text links on pages to display popup ad formats. Ads that re displayed are typically low quality and are not associated with the underlying web site the user is visiting.

HDPlus is difficult to remove through the standard installer that is provided or will only remove some parts of the program and will not reset items such as the hijacked search and home pages.

Overview

During setup, the program registers itself to launch on boot through a Windows Schedule Task in order to automatically start-up (this is typically done to avoid any UAC prompts). It adds a Browser Helper Object (BHO) to Internet Explorer. A scheduled task is added to Windows Task Scheduler in order to launch the program at various scheduled times (the schedule varies depending on the version). Once installed, it will add an extension to both the Firefox and Chrome web browsers. The main program executable is utils.exe. Typically most users end up uninstalling this just after a few days. The software installer includes 23 files and is usually about 3.46 MB (3,631,573 bytes).

The program is built using the Crossrider framework, a cross browser monetization platform used to deploy a toolbar and extension for modern web browsers with monetization features including browser search and homepage redirection, contextual coupons and in-line text advertising. Crossrider extensions include background processes to monitor, update and automatically download new features/code without direct user interaction.
  • Possible malware installed by this program
  • Automatically starts with Windows
  • Runs in the Firefox, Chrome and Firefox web browsers
  • Built on the Crossrider toolbar platform and potentially unwanted
  • May inject ads in the web browser
  • 'Offers' to modify the browser's home and search pages by default
  • Difficult to remove as it will reinstall itself
  • Injects advertisements unassociated with the underlying web page
  • Hijacks the web browser's home page
  • Hijacks the browser's default search provider
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in HDPlus-V.
utils.exe (f3c5f72b7687052b5ecec4f6f3224594) has been flagged by the following 14 scanners:
Anti-Virus softwareVersionDetection
Agnitum Outpost 7.1.1 Trojan.Crossrider
AhnLab-V3 2014.09.15 PUP/Win32.Solimba
Avira 7.11.171.244 ADWARE/CrossRider.Gen2
Bkav FE 1.3.0.4959 HW32.Paked
Dr.Web 9.0.0.0324 Trojan.Crossrider.27982
G Data 14.11.24 NSIS.Adware.Crossrider
IKARUS anti.virus t3scan.1.7.8.0 AdWare.CrossRider
Malwarebytes v2014.11.20.01 PUP.Optional.CrossRider.A
NANO AntiVirus 0.28.2.61942 Trojan.Win32.Crossrider.deusvz
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM20.Gen
SUPERAntiSpyware 10227 Adware.Crossrider/Variant
Symantec 11/20/2014 rev. 5 WS.Reputation
Trend Micro 10.465.20 ADW_CROSSRIDER
TrendMicro-HouseCall 7.2.324 ADW_CROSSRIDER
HDPlus-V1.9-codedownloader.exe (61b095d5c8b2b88bc15bd697dab1c190) has been flagged by the following 36 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Kazy.444130
AhnLab-V3 2014.11.12.00 PUP/Win32.Solimba
Antiy-AVL 1.0.0.1 GrayWare[AdWare:not-a-virus]/Win32.AdLoad
avast! 8.0.1489.320 Win32:Crossrider-AB [PUP]
AVG 15.0.0.4189 Brightcircle.599
Avira 7.11.184.156 ADWARE/CrossRider.Gen2
AVware 1.5.0.21 Crossrider (fs)
Baidu-International 3.5.1.41473 PUA.Win32.CrossRider.BAJ
Bitdefender 7.2 Gen:Variant.Adware.Kazy.444130
Clam AntiVirus 0.98.4.0 Win.Adware.Agent-8181
Comodo Security 20059 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.27741
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Kazy.444130 (B)
ESET-NOD32 10709 a variant of Win32/Toolbar.CrossRider.AJ
Fortinet FortiGate 5.0.999.0 Riskware/Toolbar_CrossRider
F-Prot 4.7.1.166 W32/S-9ad4719b!Eldorado
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.444130
G Data 24 Gen:Variant.Adware.Kazy.444130
K7 AntiVirus 9.185.13980 Trojan ( 0049ee4f1 )
K7GW 9.185.13980 Trojan ( 0049ee4f1 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 6.0.5.614 Artemis!61B095D5C8B2
McAfee-GW-Edition v2014.2 BehavesLike.Win32.BadFile.hh
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.444130
NANO AntiVirus 0.28.6.62995 Riskware.Win32.AdLoad.dcbjmf
Panda Antivirus 4.6.4.1 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.d46
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 AppRider
Symantec 20141.1.0.330 Trojan.ADH.2
Trend Micro 9.740.0.1012 TROJ_FRS.PMA000I214
TrendMicro-HouseCall 9.700.0.1001 TROJ_FRS.PMA000I214
VIPRE Antivirus 34724 Crossrider (fs)
ViRobot 2011.4.7.4223 Adware.Agent.532024
Zillya 2.0.0.1981 Backdoor.PePatch.Win32.38322
c9d77c59-0ff5-4036-8806-71115fd01f45-5.exe (89327b1a69ba43343f050b1e47f606e6) has been flagged by the following 30 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Kazy.444130
AhnLab-V3 2014.09.11.00 PUP/Win32.CrossRider
Antiy-AVL 1.0.0.1 GrayWare[AdWare:not-a-virus]/Win32.AdLoad
AVG 14.0.0.4015 Brightcircle.599
Avira 7.11.171.170 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAH
Bitdefender 7.2 Gen:Variant.Adware.Kazy.444130
Comodo Security 19479 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Kazy.444130 (B)
ESET-NOD32 10400 a variant of Win32/Toolbar.CrossRider.AH
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Prot 4.7.1.166 W32/S-9ad4719b!Eldorado
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.444130
G Data 24 Gen:Variant.Adware.Kazy.444130
IKARUS anti.virus T3.1.7.8.0 PUA.CrossRider
K7 AntiVirus 9.183.13333 Trojan ( 0049bf081 )
K7GW 9.183.13333 Trojan ( 0049bf081 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
McAfee 6.0.4.564 Artemis!89327B1A69BA
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.gh
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.444130
NANO AntiVirus 0.28.2.61942 Riskware.Win32.AdLoad.dbqzhb
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.c52
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 Generic PUA OE
Trend Micro 9.740.0.1012 ADW_CRORI
TrendMicro-HouseCall 9.700.0.1001 ADW_CRORI
VIPRE Antivirus 33012 Crossrider (fs)
c9d77c59-0ff5-4036-8806-71115fd01f45-4.exe (cd618d6584e2ee04ac515fcdd8ab142b) has been flagged by the following 26 scanners:
Anti-Virus softwareSoftware versionDetection
Antiy-AVL 1.0.0.1 GrayWare[AdWare:not-a-virus]/Win32.AdLoad
AVG 14.0.0.4015 Brightcircle.599
Avira 7.11.171.180 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CroRi.aD
Clam AntiVirus 0.98.4.0 Win.Adware.961985
Comodo Security 19484 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.27984
ESET-NOD32 10403 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
IKARUS anti.virus T3.1.7.8.0 PUA.CrossRider
K7 AntiVirus 9.183.13345 Trojan ( 0049c2a41 )
K7GW 9.183.13333 Trojan ( 0049c2a41 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
McAfee 6.0.4.564 Artemis!CD618D6584E2
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.ch
NANO AntiVirus 0.28.2.61942 Trojan.Win32.Crossrider.ddthal
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.096
Sophos 4.98.0 Generic PUA GD
SUPERAntiSpyware 5.6.0.1032 Trojan.Agent/Gen-Plush
Symantec 20141.1.0.330 Trojan.ADH.2
Trend Micro 9.740.0.1012 ADW_RIDECROSS
TrendMicro-HouseCall 9.700.0.1001 ADW_RIDECROSS
VIPRE Antivirus 33024 Crossrider (fs)
Zillya 2.0.0.1917 Adware.AdLoad.Win32.265
HDPlus-V1.9-bho.dll (e2c0b161b0095af036e738dc1e93c5e2) has been flagged by the following 26 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.09.12.00 PUP/Win32.Toolbar
AVG 14.0.0.4015 Brightcircle.599
Avira 7.11.171.172 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAF
Comodo Security 19481 ApplicUnwnt
ESET-NOD32 10402 a variant of Win32/Toolbar.CrossRider.AF
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Prot 4.7.1.166 W32/A-60e5da54!Eldorado
G Data 24 Win32.Adware.Crossrider.K
IKARUS anti.virus T3.1.7.8.0 AdWare.Plush
K7 AntiVirus 9.183.13345 Trojan ( 0049b8981 )
K7GW 9.183.13333 Trojan ( 0049b8981 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 6.0.4.564 Artemis!E2C0B161B009
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.hh
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.bcb
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 AppRider
Symantec 20141.1.0.330 Trojan.ADH.2
Trend Micro 9.740.0.1012 ADW_RIDECROSS
TrendMicro-HouseCall 9.700.0.1001 ADW_RIDECROSS
VIPRE Antivirus 33014 Crossrider (fs)
Zillya 2.0.0.1917 Backdoor.PePatch.Win32.38483
HDPlus-V1.9-nova.exe (8162d28b5c288e9a8bce4d33253580da) has been flagged by the following 25 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.09.12.00 PUP/Win32.Toolbar
Antiy-AVL 1.0.0.1 GrayWare[AdWare:not-a-virus]/Win32.AdLoad
AVG 14.0.0.4015 Generic_r.PP
Avira 7.11.171.172 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAE
Clam AntiVirus 0.98.4.0 Win.Adware.961710
Comodo Security 19481 ApplicUnwnt
ESET-NOD32 10401 a variant of Win32/Toolbar.CrossRider.AE
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
IKARUS anti.virus T3.1.7.8.0 PUA.PlusHD
K7 AntiVirus 9.183.13345 Trojan ( 0049ad331 )
K7GW 9.183.13333 Trojan ( 0049ad331 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 6.0.4.564 Artemis!8162D28B5C28
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.jh
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.0ea
Sophos 4.98.0 Generic PUA LH
Symantec 20141.1.0.330 Trojan.ADH.2
Trend Micro 9.740.0.1012 ADW_CRORI
TrendMicro-HouseCall 9.700.0.1001 ADW_CRORI
VIPRE Antivirus 33014 Crossrider (fs)
Zillya 2.0.0.1917 Adware.AdLoad.Win32.266
c9d77c59-0ff5-4036-8806-71115fd01f45-11.exe (5907ac1c05a0c6841eb3da6ab93a8239) has been flagged by the following 24 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
AhnLab-V3 2014.09.12.00 PUP/Win32.CrossRider
AVG 14.0.0.4015 Brightcircle.599
Avira 7.11.171.172 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CroRi.ar
Comodo Security 19481 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.27985
ESET-NOD32 10401 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
IKARUS anti.virus T3.1.7.8.0 not-a-virus:WebToolbar.CrossRider
K7 AntiVirus 9.183.13345 Trojan ( 0049c2a41 )
K7GW 9.183.13333 Trojan ( 0049c2a41 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
McAfee 6.0.4.564 Artemis!5907AC1C05A0
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.th
NANO AntiVirus 0.28.2.61942 Riskware.Win32.AdLoad.dcbpei
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.f7f
Sophos 4.98.0 Generic PUA LL
Trend Micro 9.740.0.1012 ADW_RIDECROSS
TrendMicro-HouseCall 9.700.0.1001 ADW_RIDECROSS
VIPRE Antivirus 33014 Crossrider (fs)
Zillya 2.0.0.1917 Adware.CrossRider.Win32.80
c9d77c59-0ff5-4036-8806-71115fd01f45-2.exe (7625bb3ec101f611b6e0b14ef2329c80) has been flagged by the following 24 scanners:
Anti-Virus softwareSoftware versionDetection
Antiy-AVL 1.0.0.1 GrayWare[AdWare:not-a-virus]/Win32.AdLoad
AVG 14.0.0.4015 Brightcircle.599
Avira 7.11.172.2 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CroRi.Ahn
Comodo Security 19516 ApplicUnwnt
ESET-NOD32 10418 a variant of Win32/Toolbar.CrossRider.AJ
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Prot 4.7.1.166 W32/S-9ad4719b!Eldorado
G Data 24 Win32.Adware.Crossrider.L
IKARUS anti.virus T3.1.7.8.0 PUA.CrossRider
K7 AntiVirus 9.183.13358 Trojan ( 0049bf0b1 )
K7GW 9.183.13358 Trojan ( 0049bf0b1 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
McAfee 6.0.4.564 Artemis!7625BB3EC101
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.fh
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.cc4
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 AppRider
Symantec 20141.1.0.330 Trojan.ADH.2
Trend Micro 9.740.0.1012 ADW_CROSSID
TrendMicro-HouseCall 9.700.0.1001 ADW_CROSSID
VIPRE Antivirus 33132 Crossrider (fs)
076aded5-f718-45da-bdbb-b0e2050f5529-11.exe (ce85aeab3c7d8aecb2214bf346432fe8) has been flagged by the following 24 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
AhnLab-V3 2014.09.02.00 PUP/Win32.CrossRider
Avira AntiVir 7.11.170.84 ADWARE/CrossRider.Gen2
AVG 14.0.0.4015 Brightcircle.599
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BAK
Comodo Security 19389 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.27985
ESET-NOD32 10348 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
IKARUS anti.virus T3.1.7.5.0 PUA.CrossRider
K7 AntiVirus 9.183.13230 Trojan ( 0049c2ce1 )
K7GW 9.183.13230 Trojan ( 0049c2ce1 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
McAfee 6.0.4.564 Artemis!CE85AEAB3C7D
McAfee-GW-Edition v2014.2 BehavesLike.Win32.BadFile.th
NANO AntiVirus 0.28.2.61861 Riskware.Win32.AdLoad.dcbpei
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.f7f
Sophos 4.98.0 Generic PUA ON
Symantec 20141.1.0.330 Trojan.ADH.2
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0723
VIPRE Antivirus 32734 Crossrider (fs)
Zillya 2.0.0.1908 Adware.CrossRider.Win32.80
076aded5-f718-45da-bdbb-b0e2050f5529-4.exe (fb515a79c493a7846bf44c123da210fd) has been flagged by the following 24 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.170.84 ADWARE/CrossRider.Gen2
AVG 14.0.0.4015 Brightcircle.599
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BAK
Clam AntiVirus 0.98.4.0 Win.Adware.961985
Comodo Security 19389 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.27984
ESET-NOD32 10348 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
IKARUS anti.virus T3.1.7.5.0 PUA.CrossRider
K7 AntiVirus 9.183.13230 Trojan ( 0049c2ce1 )
K7GW 9.183.13230 Trojan ( 0049c2ce1 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 6.0.4.564 Artemis!FB515A79C493
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.ch
NANO AntiVirus 0.28.2.61861 Trojan.Win32.Crossrider.ddthal
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.096
Sophos 4.98.0 Generic PUA LN
Symantec 20141.1.0.330 Trojan.ADH.2
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0723
VIPRE Antivirus 32734 Crossrider (fs)
Zillya 2.0.0.1908 Adware.AdLoad.Win32.265
ea32a6d0-67de-418e-ac46-dd40f9ff034b-11.exe (68906c0e0ad7c98bd8126d9a6072b15c) has been flagged by the following 21 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
AhnLab-V3 2014.09.06.00 PUP/Win32.CrossRider
AVG 14.0.0.4015 Brightcircle.599
Avira 7.11.171.10 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 PUA.Win32.CrossRider.BAK
Comodo Security 19435 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.27985
ESET-NOD32 10375 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
IKARUS anti.virus T3.1.7.5.0 PUA.CrossRider
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.baz
McAfee 6.0.4.564 Artemis!68906C0E0AD7
McAfee-GW-Edition v2014.2 BehavesLike.Win32.PUP.th
NANO AntiVirus 0.28.2.61942 Riskware.Win32.AdLoad.dcbpei
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.f7f
Symantec 20141.1.0.330 Trojan.ADH.2
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0718
VIPRE Antivirus 32854 Crossrider (fs)
Zillya 2.0.0.1913 Adware.CrossRider.Win32.80
ea32a6d0-67de-418e-ac46-dd40f9ff034b-4.exe (84eaad6f03ef34b0d53461d546ab43e2) has been flagged by the following 19 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.165.30 Adware/CrossRider.A.18072
AVG 14.0.0.3986 Brightcircle.599
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAK
Comodo Security 19077 ApplicUnwnt
ESET-NOD32 10198 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
IKARUS anti.virus T3.1.6.1.0 not-a-virus:WebToolbar.CrossRider
K7 AntiVirus 9.182.12926 Trojan ( 0049c2ce1 )
K7GW 9.182.12926 Trojan ( 0049c2ce1 )
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 6.0.4.564 Artemis!84EAAD6F03EF
McAfee-GW-Edition 2013 Artemis!84EAAD6F03EF
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.096
Sophos 4.98.0 Generic PUA DN
Symantec 20131.1.5.61 Trojan.ADH.2
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0718
VIPRE Antivirus 31900 Crossrider (fs)
ea32a6d0-67de-418e-ac46-dd40f9ff034b-5.exe (06c380aa79ff24518e4f9de79f8371e7) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.07.18.00 PUP/Win32.CrossRider
Avira AntiVir 7.11.162.112 Adware/CrossRider.A.18034
AVG 14.0.0.3986 Brightcircle.599
ESET-NOD32 10114 a variant of Win32/Toolbar.CrossRider.AH
IKARUS anti.virus T3.1.6.1.0 AdWare.Adload
NANO AntiVirus 0.28.2.60881 Riskware.Win32.AdLoad.dbqzhb
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.c52
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
VIPRE Antivirus 31362 Crossrider (fs)
ea32a6d0-67de-418e-ac46-dd40f9ff034b-2.exe (8ed0edde75f2bc26d0c923d8dea5321c) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.162.112 Adware/CrossRider.A.18073
AVG 14.0.0.3986 Brightcircle.599
ESET-NOD32 10114 a variant of Win32/Toolbar.CrossRider.AJ
F-Prot 4.7.1.166 W32/A-eb9ef301!Eldorado
IKARUS anti.virus T3.1.6.1.0 AdWare.Adload
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 AppRider
VIPRE Antivirus 31362 Crossrider (fs)
       View all 312 all detections

Program detailsProgram details

Displayed publisher: HDPlus
Installation folder: C:\Program Files\hdplus-v1.9
Uninstaller: C:\Program Files\HDPlus-V1.9\Uninstall.exe /fcp=1
Estimated size: 3.46 MB

Program filesFiles installed by HDPlus-V1.9

Program executable:utils.exe (Malware detected)
Path:C:\Program Files\hdplus-v1.9\utils.exe
MD5:f3c5f72b7687052b5ecec4f6f3224594
Additional files:
  • (Malware detected) 076aded5-f718-45da-bdbb-b0e2050f5529-11.exe (by HDPlus) - HDPlus-V1.9 (HDPlus-V1.9 exe)
  • (Malware detected) 076aded5-f718-45da-bdbb-b0e2050f5529-4.exe (by HDPlus)
  • (Malware detected) c9d77c59-0ff5-4036-8806-71115fd01f45-11.exe
  • (Malware detected) c9d77c59-0ff5-4036-8806-71115fd01f45-2.exe
  • (Malware detected) c9d77c59-0ff5-4036-8806-71115fd01f45-4.exe
  • (Malware detected) c9d77c59-0ff5-4036-8806-71115fd01f45-5.exe
  • (Malware detected) ea32a6d0-67de-418e-ac46-dd40f9ff034b-11.exe
  • (Malware detected) ea32a6d0-67de-418e-ac46-dd40f9ff034b-2.exe
  • (Malware detected) ea32a6d0-67de-418e-ac46-dd40f9ff034b-4.exe
  • (Malware detected) ea32a6d0-67de-418e-ac46-dd40f9ff034b-5.exe
  • HDPlus-V1.9-bg.exe
  • (Malware detected) HDPlus-V1.9-bho.dll - HDPlus-V1.9 BHO
  • HDPlus-V1.9-bho64.dll
  • (Malware detected) HDPlus-V1.9-codedownloader.exe
  • (Malware detected) HDPlus-V1.9-nova.exe
  • 360-59570.crx
  • 59570.crx
  • 59570.xpi
  • HDPlus-V1.9-nova.dll
  • Uninstall.exe

Program behaviorsBehaviors exhibited

Internet Explorer BHO
  • HDPlus-V1.9-bho.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'HDPlus-V1.9' with the class of {11111111-1111-1111-1111-110511951170} (CrossriderApp0059570).
Scheduled Task
  • ea32a6d0-67de-418e-ac46-dd40f9ff034b-2.exe is scheduled as a task named 'temp_ea32a6d0-67de-418e-ac46-dd40f9ff034b-2'.
12 Scheduled Tasks (Boot/Login)
  • 076aded5-f718-45da-bdbb-b0e2050f5529-4.exe is automatically launched at startup through a scheduled task named 076aded5-f718-45da-bdbb-b0e2050f5529-4.
  • 076aded5-f718-45da-bdbb-b0e2050f5529-11.exe is automatically launched at startup through a scheduled task named 076aded5-f718-45da-bdbb-b0e2050f5529-3.
  • HDPlus-V1.9-codedownloader.exe is automatically launched at startup through a scheduled task named ea32a6d0-67de-418e-ac46-dd40f9ff034b-6.
  • HDPlus-V1.9-nova.exe is automatically launched at startup through a scheduled task named ea32a6d0-67de-418e-ac46-dd40f9ff034b-7.
  • ea32a6d0-67de-418e-ac46-dd40f9ff034b-5.exe is automatically launched at startup through a scheduled task named ea32a6d0-67de-418e-ac46-dd40f9ff034b-5_user.
  • ea32a6d0-67de-418e-ac46-dd40f9ff034b-4.exe is automatically launched at startup through a scheduled task named ea32a6d0-67de-418e-ac46-dd40f9ff034b-4.
  • Plus 6 more

How do I remove HDPlus-V?

You can uninstall HDPlus-V from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program HDPlus-V1.9, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove HDPlus-V.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by HDPlus-V1.9 you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

OS VERSIONS
Win 10 40%
Win Vista (SP1) 1%
 
HOW IT STARTS
Scheduled task? Yes
(Runs on Windows boot)
 
USER ACTIONS
Uninstall it 76%
Keep it 24%

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 47.56%
Windows 10 40.24%
Windows XP 8.54%
Windows Vista 3.66%
Which OS releases does it run on?
Windows 7 Ultimate 18.29%
Windows 7 Home Premium 14.63%
Windows 8.1 14.63%
Microsoft Windows XP 8.54%
Windows 8.1 Pro 7.32%
Windows 7 Home Basic 6.10%

Distribution by countryGeography

6.02% of installs come from Philippines
Which countries install it?
  Philippines 6.02%
  Saudi Arabia 6.02%
  Argentina 4.82%
  Portugal 4.82%
  United States 4.82%
  Chile 3.61%
  Spain 3.61%
  India 3.61%
  MA 3.61%
  Mexico 3.61%
  Netherlands 3.61%
  Norway 3.61%
  Colombia 2.41%
  Ecuador 2.41%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Hewlett-Packard 27.27%
Acer 22.73%
Dell 10.61%
Lenovo 10.61%
ASUS 9.09%
Toshiba 7.58%
GIGABYTE 6.06%
Intel 3.03%
Alienware 1.52%
American Megatrends 1.52%
Common models
Dell Inspiron 3521 2.94%
HP Pavilion dv6 Notebook ... 2.94%
TOSHIBA SATELLITE L855 2.94%
VIT VIT P2400 1.47%
TOSHIBA SATELLITE L755 1.47%
TOSHIBA Satellite L500 1.47%

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.