Should I block it?
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization
Relationships
incehrsk.exe
Hotbar by Hotbar.com
Version: | 4.8.0.3010 |
MD5: | 702114e7bda9898f11fabb683da68139 |
SHA1: | 87748a92cf9690a4b16fe89f8ac065615dfde22f |
SHA256: | 6aa27056b9334d6aae1fb2bcb5691e4daedd9ed9f92c880afe77d31b36e3fd23 |
Warning 31 antivirus scanners has detected malware.
What is incehrsk.exe?
Hotbar adds graphical skins to Internet Explorer, Microsoft Outlook, and Outlook Express toolbars and also adds its own toolbar and search button. These custom toolbars have keyword-targeted advertisements built into them.
About incehrsk.exe (from Hotbar.com)
“For this popular advertising format, we don't put ads in front of consumers. We put consumers in front of our advertiser’s website. Here's how it works. An advertiser purchases keyword search terms. T”
Details
File name: | incehrsk.exe |
Publisher: | Hotbar.com Inc. |
Product name: | Hotbar |
Typical file path: | C:\Windows\System32\incehrsk.exe |
File version: | 4.8.0.3010 |
Size: | 248 KB (253,952 bytes) |
Digital DNA |
File packed: | No |
.NET CLR: | No |
More details
Behaviors
Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
- 'sfyhgvau' → C:\Windows\system32\incehrsk.exe
Malware detections
Based on 40+ industry antivirus scanners, 31 of them detected the following malware.
Antivirus engine | Engine version | Detection |
AhnLab V3 Internet Security |
2012.04.17.01 |
Win-Trojan/Xema.variant |
Avira AntiVir |
7.11.27.214 |
ADSPY/Hotbar.BE.9.B |
Antiy Labs AVL |
2.0.3.7 |
AdWare/Win32.HotBar.gen |
avast! |
6.0.1289.0 |
Win32:Adware-gen [Adw] |
AVG |
2014.0.3629 |
Generic.PLC |
BitDefender |
7.2 |
Adware.HotBar.BE |
Clam AntiVirus |
0.97.3.0 |
Adware.Agent-1502 |
Commtouch |
5.3.2.6 |
W32/Adware.KM |
Comodo Internet Security |
12089 |
UnclassifiedMalware |
Dr.Web |
7.0.1.02210 |
Adware.Hotbar |
Emsisoft Anti-Malware |
5.1.0.11 |
Riskware.AdWare.Win32.HotBar.bq!IK |
Fortinet |
4.3.392.0 |
Adware/Hotbar |
F-Prot |
v6.4.6.5.141 |
W32/Adware.KM |
F-Secure |
9.0.16440.0 |
Adware.HotBar.BE |
G Data |
13.4.22 |
Adware.HotBar.BE |
Ikarus |
T3.1.1.118.0 |
not-a-virus:AdWare.Win32.HotBar.bq |
K7 AntiVirus |
9.137.6671 |
Adware |
Kaspersky |
9.0.0.837 |
not-a-virus:AdWare.Win32.HotBar.bq |
McAfee |
5.400.1158 |
Adware-HotBar |
McAfee Gateway Anti-Malware |
v2012.1-dat |
Adware-HotBar |
Microsoft Security Essentials |
1.8202.0 |
Adware:Win32/Hotbar |
NOD32 |
7060 |
probably a variant of Win32/Adware.HotBar |
Norman |
6.08.03 |
W32/HotBar.FC |
nProtect |
2012-04-17.01 |
Adware.HotBar.BE |
PC Tools |
8.0.0.5 |
Adware.HotBar |
Sophos |
4.73.0 TP |
Hotbar |
Symantec |
20111.2.0.82 |
Adware.Hotbar |
The Hacker |
6.7.0.1.445 |
Adware/HotBar.bq |
VIPRE Antivirus |
11805 |
Hotbar |
ViRobot |
2012.4.17.5046 |
Adware.Hotbar |
VirusBuster |
14.2.28.0 |
Adware.Agent!vx37tOeKfmM |
Distribution by Windows OS
OS version | distribution |
Windows 7 Ultimate N |
100.00% |
|