Home Malware Programs Adware HahoMedia

HahoMedia

Posted: September 4, 2014

Threat Metric

Ranking: 6,325
Threat Level: 2/10
Infected PCs: 5,513
First Seen: September 3, 2014
Last Seen: October 4, 2023
OS(es) Affected: Windows


HahoMedia (Haho Media) is an application that may be technically described as adware, which is known for displaying random advertisements on a Windows computer. The Hahomedia ads may generate after you have installed a random freeware program or bundled software application from the internet. Once this takes place, Hahomedia is apt to loading several ads that attempt to offer various services or media add-ons. These components from Hahomedia are claimed to add functions for your web browser or assist with viewing of media from the internet. Using the Hahomedia ads may cause redirects to other pages or sites that prove to have unwanted content and have a questionable nature about it. Stopping Hahomedia ads from displaying as pop-ups or banners may require use of an antispyware application.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files (x86)\Hahomedia\Hahomedia\VersionUpdaterService.exe File name: VersionUpdaterService.exe
Size: 12.28 KB (12288 bytes)
MD5: 211eb4b123b7d8b8c621833864d06156
Detection count: 1,372
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Hahomedia\Hahomedia\VersionUpdaterService.exe
Group: Malware file
Last Updated: February 24, 2022
C:\Program Files (x86)\Hahomedia\Hahomedia\InjectorServiceProject.exe File name: InjectorServiceProject.exe
Size: 7.16 KB (7168 bytes)
MD5: c6680e3c3cd5bb45a623ffeaac927c0d
Detection count: 1,253
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Hahomedia\Hahomedia\InjectorServiceProject.exe
Group: Malware file
Last Updated: February 24, 2022
C:\Program Files (x86)\Hahomedia\Hahomedia\Injector.exe File name: Injector.exe
Size: 22.01 KB (22016 bytes)
MD5: 14477e1a023d5ff440f7043b00651235
Detection count: 492
File type: Executable File
Mime Type: unknown/exe
Path: C:\Program Files (x86)\Hahomedia\Hahomedia\Injector.exe
Group: Malware file
Last Updated: September 30, 2021
C:\Users\<username>\AppData\Local\Temp\DELA80F.tmp File name: DELA80F.tmp
Size: 471.17 KB (471175 bytes)
MD5: bf4c6bdc4a5d59c52225922337b854ce
Detection count: 33
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Local\Temp\DELA80F.tmp
Group: Malware file
Last Updated: September 30, 2021
C:\Users\<username>\AppData\Local\Temp\license.exe File name: license.exe
Size: 3.27 MB (3271753 bytes)
MD5: 24a657d8c999849768b3d83936c5e323
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\Temp\license.exe
Group: Malware file
Last Updated: August 17, 2022

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%WINDIR%\system32\policies\161011\policies.exe%WINDIR%\syswow64\policies\161011\policies.exeHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\Installer\Dependencies\{87aec404-40de-4732-86ab-e9861ca5d01b}SOFTWARE\Classes\Installer\Dependencies\{A36D9B44-D57A-4DC0-9D58-EEEC9757846F}SOFTWARE\HahomediaSOFTWARE\Wow6432Node\HahomediaHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}{746390A3-6C32-4253-ADDF-8F235AE19E7A}_is1{87aec404-40de-4732-86ab-e9861ca5d01b}

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Package Cache\{87aec404-40de-4732-86ab-e9861ca5d01b}%PROGRAMFILES%\Hahomedia%PROGRAMFILES(x86)%\Hahomedia
Loading...