Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9b047 55.56%
3c5f2 11.11%
4d072 11.11%
b5d4c 11.11%
cb402 11.11%
(Note, the developer publishes each variation of this file with the same version, but the hashes are unique.)

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExW, RegEnumKeyW, RegDeleteKeyW, RegQueryValueW, RegOpenKeyW, RegCreateKeyExW, CreateProcessAsUserW, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, RegQueryValueExW, RegOpenKeyExW, RegCloseKey, DeleteService, CreateServiceW, EnumDependentServicesW, ControlService, ChangeServiceConfigW, QueryServiceStatusEx, StartServiceW, OpenServiceW, OpenSCManagerW, CloseServiceHandle, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken
gdi32.dll
GetStockObject, DeleteDC, RestoreDC, SaveDC, CreateBitmap, SetBkColor, SetTextColor, GetClipBox, GetDeviceCaps, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SelectObject, Escape, ExtTextOutW, TextOutW, RectVisible, PtVisible, DeleteObject, SetMapMode
kernel32.dll
TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RtlUnwind, RaiseException, HeapReAlloc, ExitProcess, FlushFileBuffers, HeapSize, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetCPInfo, GetOEMCP, IsValidCodePage, LCMapStringW, GetConsoleCP, GetConsoleMode, HeapCreate, VirtualFree, VirtualAlloc, LCMapStringA, GetModuleFileNameA, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetSystemTimeAsFileTime, InitializeCriticalSectionAndSpinCount, GetStringTypeA, GetStringTypeW, GetLocaleInfoA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetStdHandle, CreateFileA, SetFilePointer, WriteFile, ReadFile, GlobalFlags, GetModuleHandleA, WritePrivateProfileStringW, lstrlenA, TlsFree, DeleteCriticalSection, LocalReAlloc, TlsSetValue, TlsAlloc, InitializeCriticalSection, GlobalHandle, GlobalReAlloc, EnterCriticalSection, TlsGetValue, LeaveCriticalSection, LocalAlloc, GetCurrentProcessId, InterlockedDecrement, InterlockedIncrement, GlobalAddAtomW, GlobalFindAtomW, LoadLibraryA, GetVersionExA, SetErrorMode, GlobalDeleteAtom, GetCurrentThread, GetCurrentThreadId, ConvertDefaultLocale, EnumResourceLanguagesW, lstrcmpA, GetLocaleInfoW, InterlockedExchange, lstrcmpW, SetLastError, GlobalFree, GlobalAlloc, GlobalLock, GlobalUnlock, lstrlenW, Process32NextW, OpenProcess, Process32FirstW, CreateToolhelp32Snapshot, LocalFree, FormatMessageW, WaitForMultipleObjects, CreateThread, ReleaseSemaphore, CreateSemaphoreW, WaitForSingleObject, SetEvent, CreateEventW, WideCharToMultiByte, GetACP, HeapFree, GetProcessHeap, HeapAlloc, Sleep, GetTickCount, GetModuleFileNameW, GetVersionExW, GetProcAddress, FreeLibrary, LoadLibraryW, DeviceIoControl, CreateFileW, CloseHandle, GetLastError, GetCurrentProcess, GetModuleHandleW, GetCommandLineW, MultiByteToWideChar, FindResourceW, LoadResource, LockResource, SizeofResource
setupapi.dll
CM_Get_DevNode_Status, SetupDiGetDeviceRegistryPropertyW, SetupDiEnumDeviceInfo, SetupDiGetDeviceInstanceIdW, SetupDiGetDeviceInterfaceDetailW, SetupDiEnumDeviceInterfaces, SetupDiGetClassDevsW, SetupDiDestroyDeviceInfoList
shlwapi.dll
PathFindExtensionW, PathFindFileNameW
user32.dll
DestroyMenu, ShowWindow, SetWindowTextW, ClientToScreen, GrayStringW, DrawTextExW, DrawTextW, TabbedTextOutW, SetCursor, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapW, ModifyMenuW, EnableMenuItem, CheckMenuItem, GetMessageW, TranslateMessage, GetActiveWindow, GetCursorPos, ValidateRect, GetWindowThreadProcessId, LoadCursorW, GetDC, ReleaseDC, GetSysColorBrush, RegisterWindowMessageW, WinHelpW, GetCapture, SetWindowsHookExW, CallNextHookEx, GetClassLongW, SetPropW, GetPropW, RemovePropW, GetFocus, GetWindowTextLengthW, GetWindowTextW, GetForegroundWindow, GetLastActivePopup, DispatchMessageW, GetDlgItem, GetTopWindow, DestroyWindow, LoadIconW, UnregisterDeviceNotification, IsWindow, UnhookWindowsHookEx, GetMessageTime, GetMessagePos, PeekMessageW, MapWindowPoints, GetKeyState, SetMenu, EnableWindow, SetForegroundWindow, GetClientRect, MessageBoxW, CreateWindowExW, GetClassInfoExW, GetClassInfoW, RegisterClassW, GetSysColor, AdjustWindowRectEx, GetParent, IsWindowEnabled, PostMessageW, RegisterDeviceNotificationW, IsWindowVisible, EnumChildWindows, GetClassNameW, SendMessageW, EnumWindows, GetSubMenu, GetMenuItemCount, GetMenuItemID, GetMenuState, PostQuitMessage, GetWindow, GetSystemMetrics, GetWindowRect, CopyRect, PtInRect, GetDlgCtrlID, DefWindowProcW, CallWindowProcW, GetMenu, GetWindowLongW, SetWindowLongW, SetWindowPos, SystemParametersInfoA, IsIconic, GetWindowPlacement
winspool.drv
DocumentPropertiesW, OpenPrinterW, ClosePrinter

heject.exe

Remove heject.exe
MD5:   3c5f2ad30890e2e58df1478b1c22acab
SHA1:   54a58c630bf1a4c70c0c390d166f496319d56491
SHA256:   acf3af8a690becd87e4a2a99fa960e72506e875cc826bbecd1e40a5a181fd461

Overview

heject.exe runs as a service under the name CDROM_Eject_H with extensive SYSTEM privileges (full administrator access). This is typically installed with the program Smartfren Connex CE682 UI published by Smartfren.

DetailsDetails

File name:heject.exe
Typical file path:C:\Program Files\smartfren connex ce682 ui\heject.exe
Size:261.5 KB (267,776 bytes)
Build date:9/6/2011 5:50 PM
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Smartfren
11% remove

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'CDROM_Eject_H'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00111598%
0.028634%
Kernel CPU:0.00086465%
0.013761%
User CPU:0.00025133%
0.014873%
Kernel CPU time:375 ms/min
100,923,805ms/min
Context switches:11/sec
284/sec
Memory
Private memory:3.6 MB
21.59 MB
Private (maximum):5.1 MB
Private (minimum):5.09 MB
Non-paged memory:3.6 MB
21.59 MB
Virtual memory:36.56 MB
140.96 MB
Virtual memory (peak):36.56 MB
169.69 MB
Working set:5.1 MB
18.61 MB
Working set (peak):5.11 MB
37.95 MB
Resource allocations
Threads:3
12
Handles:101
600
GUI GDI count:8
103
GUI USER count:1
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command line:"C:\Program Files\smartfren connex ce682 ui\heject.exe"
Owner:SYSTEM
Windows Service
Service name:CDROM_Eject_H
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 33.33%
Windows 7 Professional 22.22%
Windows 8 Pro with Media Center 11.11%
Windows 7 Starter 11.11%
Microsoft Windows XP 11.11%
Windows 7 Home Premium 11.11%

Distribution by countryDistribution by country

Indonesia installs about 100.00% of heject.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 57.14%
Acer 28.57%
GIGABYTE 14.29%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE