MedPlayerNewVersion

MedPlayerNewVersion

Known Generic

by BrightCircle Investments Limited

What is MedPlayerNewVersion?

MedPlayerNewVersion is software application developed by BrightCircle Investments Limited. It is most commonly found on computers running Windows 10 with nearly 58.82% of installations running this operating system. MedPlayerNewVersion's installer is typically 15.00 MB in size and installs around 27 files.

MedPlayerNewVersion is most popular in the United States with 53% of installations residing in this country.

Multiple virus scanners have detected malware in MedPlayerNewVersion.

utils.exe (MD5: 6c5e433781b556f8620857311da6d381) has been flagged by 32 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Application.Parj.1
Agnitum Outpost Riskware.VMDetector
AhnLab-V3 Win-PUP/CrossRider
avast! Win32:Malware-gen
AVG Crossrider
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.CrossAd.CF
Bitdefender Gen:Application.Parj.1
Dr.Web Trojan.Crossrider1.21388
ESET-NOD32 Win32/Packed.VMDetector.I potentially unwanted
Fortinet FortiGate PossibleThreat
F-Secure Gen:Application.Parj.1
G Data Gen:Application.Parj
K7 AntiVirus Trojan
K7GW Trojan ( 004b4e8d1 )
Kaspersky not-a-virus:AdWare.Win32.CrossRider
Malwarebytes PUP.Optional.CrossRider.A
McAfee Artemis!6C5E433781B5
McAfee-GW-Edition BehavesLike.Win32.Dropper.vc
MicroWorld-eScan Gen:Application.Parj.1
NANO AntiVirus Trojan.Win32.Crossrider1.doydjq
Norman Suspicious_Gen4.IBADI
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/QVM20.1.Malware.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA ND
Symantec Trojan.Gen
Tencent Win32.Adware.Crossrider.Wqdq
Trend Micro TROJ_GEN.R021C0ECO15
TrendMicro-HouseCall TROJ_GEN.R021C0ECO15
Vba32 AntiVirus AdWare.CrossRider
VIPRE Antivirus Trojan.Win32.Generic!BT

Startup Entries

Startup tasks:
  • f256d8ca-74bf-4972-9c59-b8fda1752708-5.exe is automatically launched at startup through a scheduled task named f256d8ca-74bf-4972-9c59-b8fda1752708-5_user.
  • f256d8ca-74bf-4972-9c59-b8fda1752708-10.exe is automatically launched at startup through a scheduled task named f256d8ca-74bf-4972-9c59-b8fda1752708-10_user.
  • f256d8ca-74bf-4972-9c59-b8fda1752708-1-7.exe is automatically launched at startup through a scheduled task named f256d8ca-74bf-4972-9c59-b8fda1752708-1-7.
  • f256d8ca-74bf-4972-9c59-b8fda1752708-1-6.exe is automatically launched at startup through a scheduled task named f256d8ca-74bf-4972-9c59-b8fda1752708-1-6.
  • fbdbdfc0-bb10-47dc-b85b-2facc9ef8491-4.exe is automatically launched at startup through a scheduled task named fbdbdfc0-bb10-47dc-b85b-2facc9ef8491-4.
  • fbdbdfc0-bb10-47dc-b85b-2facc9ef8491-5.exe is automatically launched at startup through a scheduled task named fbdbdfc0-bb10-47dc-b85b-2facc9ef8491-5_user.

Software Details

URL:
Support:
Installation path:
C:\Program Files\medplayernewversion
Uninstaller:
C:\Program Files\MedPlayerNewVersion\Uninstall.exe /fcp=1 /runexe='C:\Program Files\MedPlayerNewVersion\UninstallBrw.exe' /url='httC://static.gonotift
Size:
15.00 MB
Language:
English

MedPlayerNewVersion Executable Details

Primary executable:
utils.exe
Name:
MedPlayerNewVersion
Path:
C:\Program Files\medplayernewversion\utils.exe
MD5:
6c5e433781b556f8620857311da6d381
SHA-1:
SHA-256:
Files installed by MedPlayerNewVersion
File Type Filename MD5
EXE
1f6ddf89c628182214a3129a47802cb2
EXE
utils.exe
Malware
6c5e433781b556f8620857311da6d381
EXE
a71ea248b5f4eed6f77e5d3c6291a1d9
EXE
24c2bb6cbac59eb26989552a1ad5875d
EXE
e7ce92ccae021dbe7c57085e6c657502
EXE
7ff91233e02846a50dec15b75a5f7dd7
EXE
85b4d6ad0a1cc83cf7e2237188016000
EXE
0c09b73356538ab27208251667ff676f
EXE
104dfe6ca58905d4428bec145c5acf02
EXE
7eb277144249d223cd77be9cfd648329