Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

9b047 55.56%
3c5f2 11.11%
4d072 11.11%
b5d4c 11.11%
cb402 11.11%
(Note, the developer publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Child process

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegSetValueExW, RegEnumKeyW, RegDeleteKeyW, RegQueryValueW, RegOpenKeyW, RegCreateKeyExW, CreateProcessAsUserW, SetServiceStatus, RegisterServiceCtrlHandlerExW, StartServiceCtrlDispatcherW, RegQueryValueExW, RegOpenKeyExW, RegCloseKey, DeleteService, CreateServiceW, EnumDependentServicesW, ControlService, ChangeServiceConfigW, QueryServiceStatusEx, StartServiceW, OpenServiceW, OpenSCManagerW, CloseServiceHandle, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken
gdi32.dll
GetStockObject, DeleteDC, RestoreDC, SaveDC, CreateBitmap, SetBkColor, SetTextColor, GetClipBox, GetDeviceCaps, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, SelectObject, Escape, ExtTextOutW, TextOutW, RectVisible, PtVisible, DeleteObject, SetMapMode
kernel32.dll
TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RtlUnwind, RaiseException, HeapReAlloc, ExitProcess, FlushFileBuffers, HeapSize, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetCPInfo, GetOEMCP, IsValidCodePage, LCMapStringW, GetConsoleCP, GetConsoleMode, HeapCreate, VirtualFree, VirtualAlloc, LCMapStringA, GetModuleFileNameA, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetSystemTimeAsFileTime, InitializeCriticalSectionAndSpinCount, GetStringTypeA, GetStringTypeW, GetLocaleInfoA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetStdHandle, CreateFileA, SetFilePointer, WriteFile, ReadFile, GlobalFlags, GetModuleHandleA, WritePrivateProfileStringW, lstrlenA, TlsFree, DeleteCriticalSection, LocalReAlloc, TlsSetValue, TlsAlloc, InitializeCriticalSection, GlobalHandle, GlobalReAlloc, EnterCriticalSection, TlsGetValue, LeaveCriticalSection, LocalAlloc, GetCurrentProcessId, InterlockedDecrement, InterlockedIncrement, GlobalAddAtomW, GlobalFindAtomW, LoadLibraryA, GetVersionExA, SetErrorMode, GlobalDeleteAtom, GetCurrentThread, GetCurrentThreadId, ConvertDefaultLocale, EnumResourceLanguagesW, lstrcmpA, GetLocaleInfoW, InterlockedExchange, lstrcmpW, SetLastError, GlobalFree, GlobalAlloc, GlobalLock, GlobalUnlock, lstrlenW, Process32NextW, OpenProcess, Process32FirstW, CreateToolhelp32Snapshot, LocalFree, FormatMessageW, WaitForMultipleObjects, CreateThread, ReleaseSemaphore, CreateSemaphoreW, WaitForSingleObject, SetEvent, CreateEventW, WideCharToMultiByte, GetACP, HeapFree, GetProcessHeap, HeapAlloc, Sleep, GetTickCount, GetModuleFileNameW, GetVersionExW, GetProcAddress, FreeLibrary, LoadLibraryW, DeviceIoControl, CreateFileW, CloseHandle, GetLastError, GetCurrentProcess, GetModuleHandleW, GetCommandLineW, MultiByteToWideChar, FindResourceW, LoadResource, LockResource, SizeofResource
setupapi.dll
CM_Get_DevNode_Status, SetupDiGetDeviceRegistryPropertyW, SetupDiEnumDeviceInfo, SetupDiGetDeviceInstanceIdW, SetupDiGetDeviceInterfaceDetailW, SetupDiEnumDeviceInterfaces, SetupDiGetClassDevsW, SetupDiDestroyDeviceInfoList
shlwapi.dll
PathFindExtensionW, PathFindFileNameW
user32.dll
DestroyMenu, ShowWindow, SetWindowTextW, ClientToScreen, GrayStringW, DrawTextExW, DrawTextW, TabbedTextOutW, SetCursor, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapW, ModifyMenuW, EnableMenuItem, CheckMenuItem, GetMessageW, TranslateMessage, GetActiveWindow, GetCursorPos, ValidateRect, GetWindowThreadProcessId, LoadCursorW, GetDC, ReleaseDC, GetSysColorBrush, RegisterWindowMessageW, WinHelpW, GetCapture, SetWindowsHookExW, CallNextHookEx, GetClassLongW, SetPropW, GetPropW, RemovePropW, GetFocus, GetWindowTextLengthW, GetWindowTextW, GetForegroundWindow, GetLastActivePopup, DispatchMessageW, GetDlgItem, GetTopWindow, DestroyWindow, LoadIconW, UnregisterDeviceNotification, IsWindow, UnhookWindowsHookEx, GetMessageTime, GetMessagePos, PeekMessageW, MapWindowPoints, GetKeyState, SetMenu, EnableWindow, SetForegroundWindow, GetClientRect, MessageBoxW, CreateWindowExW, GetClassInfoExW, GetClassInfoW, RegisterClassW, GetSysColor, AdjustWindowRectEx, GetParent, IsWindowEnabled, PostMessageW, RegisterDeviceNotificationW, IsWindowVisible, EnumChildWindows, GetClassNameW, SendMessageW, EnumWindows, GetSubMenu, GetMenuItemCount, GetMenuItemID, GetMenuState, PostQuitMessage, GetWindow, GetSystemMetrics, GetWindowRect, CopyRect, PtInRect, GetDlgCtrlID, DefWindowProcW, CallWindowProcW, GetMenu, GetWindowLongW, SetWindowLongW, SetWindowPos, SystemParametersInfoA, IsIconic, GetWindowPlacement
winspool.drv
DocumentPropertiesW, OpenPrinterW, ClosePrinter

heject.exe

Remove heject.exe
MD5:   4d0720c65d082ab0dd5014696e8fb68a
SHA1:   ae553e8f277590161632923a593ab631fc888bb0
SHA256:   09883dc76f3f6ad065c2d7b3c0947f5e41e8fadad9a1ed5ef6fe95593d1b7661

Overview

heject.exe runs as a service under the name CDROM_Eject_H with extensive SYSTEM privileges (full administrator access). This is typically installed with the program Winamp Detector Plug-in published by Nullsoft, Inc.

DetailsDetails

File name:heject.exe
Typical file path:C:\Program Files\smartfren connex ce682 ui\heject.exe
Size:261.5 KB (267,776 bytes)
Build date:6/5/2012 8:33 AM
Digital DNA
PE subsystem:Windows Console
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Nullsoft, Inc
5% remove
Winamp Application Detect is a browser plugin for Internet Explorer and/or Firefox that allows Winamp.com and other participating sites to detect a Winamp installation and version when delivering content. It does not collect or send other information. Winamp is a free media player that can process several media file-types. It is a protocol winamp:// that allows partner sites (such as WinAmp, SHOut… etc.) to detect current music automat...

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'CDROM_Eject_H'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00273377%
0.028634%
Kernel CPU:0.00139953%
0.013761%
User CPU:0.00133424%
0.014873%
Kernel CPU time:3,432,022 ms/min
100,923,805ms/min
Memory
Private memory:1.81 MB
21.59 MB
Private (maximum):4.68 MB
Private (minimum):3.36 MB
Non-paged memory:1.81 MB
21.59 MB
Virtual memory:59.56 MB
140.96 MB
Virtual memory (peak):63.31 MB
169.69 MB
Working set:3.38 MB
18.61 MB
Working set (peak):4.68 MB
37.95 MB
Resource allocations
Threads:5
12
Handles:129
600

BehaviorsProcess properties

Integrety level:System
Platform:32-bit
Command line:"C:\Program Files\smartfren connex ce782 ui\heject.exe"
Owner:SYSTEM
Windows Service
Service name:CDROM_Eject_H
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 33.33%
Windows 7 Professional 22.22%
Windows 8 Pro with Media Center 11.11%
Windows 7 Starter 11.11%
Microsoft Windows XP 11.11%
Windows 7 Home Premium 11.11%

Distribution by countryDistribution by country

Indonesia installs about 100.00% of heject.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 57.14%
Acer 28.57%
GIGABYTE 14.29%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE