Help - Search - Members - Calendar
Full Version: Hrtla.EXE in widnows defender
Malwarebytes Forum > Malwarebytes' Anti-Malware Support > General Malwarebytes' Anti-Malware Forum
DavidFrost
Hi all,

I was trying to remove some of the startup programs from the windows defender explorer when i same this one listed.
Tried lookig it up on google but found nothing.


File Name: hrtla.exe
Display Name: JolF5NNCtLa
Description: Not Available
Publisher: SOb4YpXlDWJQ3
Digitally Signed By: NOT SIGNED
File Type: Application
Startup Value: C:\Windows\system32\hrtla.exe
File Path: C:\Windows\system32\hrtla.exe
File Size: 81920
File Version: 1.35.0028
Date Installed: 24/Sep/2009 02:14:50
Startup Type: Registry: Local Machine
Location: Software\Microsoft\Windows\CurrentVersion\Run
Classification: Not yet classified
Ships with Operating System: No
SpyNet Voting: In Progress

Can someone let me know if they have the same on their system or would it be ok to disbale/delete it.

Regards,
Dave
AdvancedSetup
You can upload it to http://virustotal.com and they can scan it for you to make sure.
DavidFrost
Uploaded the filr for Scan,

Waiting for results

regards,
Dave
DavidFrost
This is what they sent me back

[VirusTotal] Server notification
From:scan@virustotal.com [Add]
To:david_frost@fastmail.fm [Add]
Date:Mon, 28 Sep 2009 12:52 AM (5 mins 26 secs ago)
Show originalShow full headerComplete scanning result of "hrtla.exe", processed in VirusTotal at 09/28/2009 09:52:30 (CET).

[ file data ]
* name..: hrtla.exe
* size..: 106496
* md5...: 8b7cfdf6bd452f99f99ddebf86e44c3a
* sha1..: 094686cbefc763bea62440c14b261366b8d39d4c
* peid..: -

[ scan result ]
a-squared 4.5.0.24/20090928 found nothing
AhnLab-V3 5.0.0.2/20090928 found nothing
AntiVir 7.9.1.27/20090928 found nothing
Antiy-AVL 2.0.3.7/20090928 found nothing
Authentium 5.1.2.4/20090927 found nothing
Avast 4.8.1351.0/20090927 found nothing
AVG 8.5.0.412/20090927 found nothing
BitDefender 7.2/20090928 found nothing
CAT-QuickHeal 10.00/20090926 found nothing
ClamAV 0.94.1/20090928 found nothing
Comodo 2457/20090928 found [Heur.Suspicious]
DrWeb 5.0.0.12182/20090928 found nothing
eSafe 7.0.17.0/20090924 found nothing
eTrust-Vet 31.6.6763/20090927 found nothing
F-Prot 4.5.1.85/20090927 found nothing
F-Secure 8.0.14470.0/20090928 found nothing
Fortinet 3.120.0.0/20090928 found nothing
GData 19/20090928 found nothing
Ikarus T3.1.1.72.0/20090928 found nothing
Jiangmin 11.0.800/20090927 found nothing
K7AntiVirus 7.10.855/20090926 found nothing
Kaspersky 7.0.0.125/20090928 found nothing
McAfee 5754/20090927 found nothing
McAfee+Artemis 5754/20090927 found nothing
McAfee-GW-Edition 6.8.5/20090928 found nothing
Microsoft 1.5005/20090923 found [VirTool:Win32/VBInject.gen!BW]
NOD32 4462/20090927 found nothing
Norman 6.01.09/20090926 found nothing
nProtect 2009.1.8.0/20090927 found nothing
Panda 10.0.2.2/20090927 found nothing
PCTools 4.4.2.0/20090928 found nothing
Prevx 3.0/20090928 found nothing
Rising 21.49.01.00/20090928 found nothing
Sophos 4.45.0/20090928 found nothing
Sunbelt 3.2.1858.2/20090927 found nothing
Symantec 1.4.4.12/20090928 found nothing
TheHacker 6.5.0.2.019/20090926 found nothing
TrendMicro 8.950.0.1094/20090925 found nothing
VBA32 3.12.10.11/20090927 found nothing
ViRobot 2009.9.28.1959/20090928 found nothing
VirusBuster 4.6.5.0/20090927 found nothing

Is this file needed on my system or can i delete it ??

Thanx for your help
AdvancedSetup
If I had to guess I'd say no. Only half a dozen hit on Google for that file name. If in doubt move it to a new folder that you create and leave it there for a while and if no problems encountered on your system after a while then decide if you want to delete it or not.
DavidFrost
Done what you suggested.

Will keep an eye out and if i donn see anything funny willl delete it

Thx for your help

Regards,
Dave
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.
Invision Power Board © 2001-2010 Invision Power Services, Inc.