Home Malware Programs Potentially Unwanted Programs (PUPs) HDview

HDview

Posted: January 23, 2015

Threat Metric

Threat Level: 2/10
Infected PCs: 152
First Seen: December 14, 2010
Last Seen: May 2, 2022
OS(es) Affected: Windows

HDview is an adware extension that is created using the Crossrider platform. Some computer users may get confused since there is a Browser Helper Object for Internet Explorer named HDView, but they can be assured that there's no connection between them. Once HDview enters your system, HDview installs as a web browser extension that is, in fact, a monetization platform for adware creators. Crossrider extensions such as HDview are known to set a background process in order to monitor, look for updates and download such updates without directly interacting with users. For this reason, an adware application such as HDview might be back even after removing it from your browsers. An infection with HDview adware extension may include a number of annoying commercial ads, modification of homepage and default search engine and decreased computer performance.

Aliases

Heuristic: Suspicious Hijacker [Prevx1]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Program Files\HDview\HDview-bg.exe File name: C:\Program Files\HDview\HDview-bg.exe
MD5: b399b9ed5cc9669bd9330c6d17c460f0
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
412f2107-bbad-48f5-a473-42966bf52b04-2.exe File name: 412f2107-bbad-48f5-a473-42966bf52b04-2.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
HDview-bho.dll File name: HDview-bho.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
HDview-buttonutil.exe File name: HDview-buttonutil.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
HDview-codedownloader.exe File name: HDview-codedownloader.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
HDview-nova.exe File name: HDview-nova.exe
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
HDview-buttonutil.dll File name: HDview-buttonutil.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
HDview-buttonutil64.dll File name: HDview-buttonutil64.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
HDview-nova.dll File name: HDview-nova.dll
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\HDView-bg.exeSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\HDView-bg.exe
Loading...