videos MediaPlayer+

videos MediaPlayer+

Known Adware

by Derzany Network

What is videos MediaPlayer+?

videos MediaPlayer+ is software application developed by Derzany Network. It is most commonly found on computers running Windows 7 with nearly 56.00% of installations running this operating system. videos MediaPlayer+'s installer is typically 17.00 MB in size and installs around 302 files. The most common release is 1.35.3.9 with 88.00% of all installations currently using this version.

videos MediaPlayer+ is most popular in the United States with 33.14% of installations residing in this country.

videos MediaPlayer+ adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About videos MediaPlayer+?

MediaPlayer+ (Freeven) is a software program that may display adware behavior within a user's web browser by modifying browser settings, including the search provider, and injecting display ads. This can include inserting new banner ads, adding new advertisements on top of existing ones, and inserting hyper-text links to display popup ad formats. These ads are typically low quality and do not originate from the website the user is visiting. Removing this adware through the standard installer provided may be challenging, as it may only partially remove the program and not reset hijacked search and home pages.

Multiple virus scanners have detected malware in videos MediaPlayer+.

utils.exe (MD5: 43d69f92512c99d4a755fe8d532a2fe8) has been flagged by 46 scanners:
Scanner Software Result
Bkav FE HW32.Paked
Dr.Web Trojan.Crossrider.32080
G Data NSIS.Adware.Crossrider
Malwarebytes PUP.Optional.crossRider.A
McAfee Artemis!43D69F92512C
McAfee-GW-Edition Artemis
Symantec WS.Reputation
TrendMicro-HouseCall Suspicious_GEN.F47V0911
Lavasoft Ad-Aware Gen:Application.Heur.Fy9@m8@qdSmi
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL Trojan/NSIS.GoogUpdate.da
avast! Win32:Adware-gen [Adw]
AVG Derzany.BD6
Avira Adware/Plush.geru
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.AF
Bitdefender Gen:Application.Heur.Fy9@m8@qdSmi
CAT-QuickHeal PUA.BrightCircle.OD6
Comodo Security ApplicUnwnt
Cyren W32/A-ee826839!Eldorado
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AF potentially unwanted
Fortinet FortiGate W32/GoogUpdate.AF!tr
F-Prot W32/A-ee826839!Eldorado
F-Secure Gen:Application.Heur.Fy9@m8@qdSmi
Jiangmin AdWare/NSIS.gig
K7 AntiVirus Trojan ( 0049eec71 )
K7GW Trojan ( 0049eec71 )
Kaspersky Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus Win32.Troj.NSIS.da.(kcloud)
MicroWorld-eScan Gen:Application.Heur.Fy9@m8@qdSmi
NANO AntiVirus Trojan.Win32.Crossrider.deuvhj
Panda Antivirus Trj/Chgt.E
Qihoo-360 Win32/Trojan.933
Sophos AppRider
Tencent Trojan.Win32.Qudamah.Gen.14
Trend Micro TROJ_GEN.R0C1C0EJE14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Adware.Adwapper.Win32.1306
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
IKARUS anti.virus Trojan.GoogUpdate
Rising Antivirus PE:Trojan.Win32.Generic.1751BC9E!391232670
nProtect Adware.Agent.OVD
Clam AntiVirus Win.Adware.Agent-10501
ALYac Adware.Agent.OVT
Agnitum Outpost PUA.Toolbar.CrossRider!
76612927-5ff1-4ac0-a73e-43143a6c9df1-2.exe (MD5: ac31e9934a269c4283112a808a0f54f9) has been flagged by 42 scanners:
Scanner Software Result
AhnLab-V3 Win-PUP/CrossRider
avast! Win32:Crossrider-AG [PUP]
AVG Generic.A3F
Avira ADWARE/CrossRider.Gen
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAV
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/A-ea13b6b6!Eldorado
G Data Win32.Adware.Crossrider.L
K7 AntiVirus Unwanted-Program ( 004aecdd1 )
K7GW Unwanted-Program ( 004aecdd1 )
Kaspersky Trojan.NSIS.GoogUpdate.dj
Malwarebytes PUP.Optional.VideosMediaPlayer.A
McAfee Artemis!AC31E9934A26
McAfee-GW-Edition BehavesLike.Win32.BadFile.dh
NANO AntiVirus Riskware.Win32.Crossrider.dhczbs
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA JL
Symantec Adware.Crossid
Tencent Nsis.Trojan.Googupdate.Lndx
Trend Micro TROJ_GEN.R0C1C0EJO14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJO14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2789
Clam AntiVirus Win.Adware.Crossrider-29
Dr.Web Trojan.Crossrider.33182
IKARUS anti.virus Trojan.GoogUpdate
Panda Antivirus Trj/Genetic.gen
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
nProtect Trojan-Clicker/W32.Agent.1484696
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper
Lavasoft Ad-Aware Adware.Generic.1029642
Agnitum Outpost PUA.Toolbar.CrossRider!
Bitdefender Adware.Generic.1029642
Bkav FE W32.ATVC_VuschekpoLTO.Trojan
Emsisoft Anti-Malware Adware.Generic.1029642 (B)
F-Secure Adware.Generic.1029642
MicroWorld-eScan Adware.Generic.1029642
76612927-5ff1-4ac0-a73e-43143a6c9df1-11.exe (MD5: b1e90dd0f21a5a194d6d941d60062ba1) has been flagged by 43 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL Trojan/NSIS.GoogUpdate
avast! Win32:Crossrider-AI [PUP]
AVG Generic.A3F
Avira Adware/CrossRider.gr
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.77
Bitdefender Gen:Variant.Adware.Plush.1
Comodo Security Application.Win32.Plush.GRI
Dr.Web Trojan.Crossrider.32724
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/A-1a27c920!Eldorado
F-Secure Gen:Variant.Adware.Plush.1
G Data Gen:Variant.Adware.Plush.1
IKARUS anti.virus Trojan.GoogUpdate
Kaspersky Trojan.NSIS.GoogUpdate.dj
Kingsoft AntiVirus Win32.Troj.NSIS.cz.(kcloud)
Malwarebytes PUP.Optional.VideosMediaPlayer.A
McAfee Artemis!B1E90DD0F21A
McAfee-GW-Edition BehavesLike.Win32.Trojan.th
MicroWorld-eScan Gen:Variant.Adware.Plush.1
NANO AntiVirus Trojan.Win32.GoogUpdate.deyuvr
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos Generic PUA OI
Symantec PUA.Gen.2
Tencent Nsis.Trojan.Googupdate.Pgcv
Trend Micro TROJ_SPNR.3AJJ14
TrendMicro-HouseCall TROJ_SPNR.3AJJ14
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2802
Panda Antivirus Trj/Genetic.gen
CAT-QuickHeal Trojan.NSIS.g5
K7 AntiVirus Unwanted-Program ( 004afae01 )
K7GW Unwanted-Program ( 004afae01 )
Rising Antivirus PE:Trojan.Win32.Generic.17888F08!394825480
Vba32 AntiVirus AdWare.Adwapper
Clam AntiVirus Win.Adware.Crossrider-40
nProtect Trojan-Clicker/W32.Agent.1105304.B
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.ATVC_VuschekpoLTO.Trojan
66cd09a5-83de-4e19-9860-f59e198933d0.exe (MD5: 2bbe254fb9f8e9908f0cbc3e1948714f) has been flagged by 15 scanners:
Scanner Software Result
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAM
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AG
F-Prot W32/S-9ad4719b!Eldorado
Malwarebytes PUP.Optional.VideosMediaPlayer.A
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Avira ADWARE/CrossRider.Gen2
G Data Win32.Adware.Crossrider.L
IKARUS anti.virus Trojan.GoogUpdate
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Zillya Adware.Adwapper.Win32.233
NANO AntiVirus Riskware.Win32.Crossrider.dewjjt
62f9e9c2-55b8-476f-b5d2-35cc93d5b1ca.exe (MD5: 5064e974a46c6459de448434883e1b13) has been flagged by 38 scanners:
Scanner Software Result
avast! Win32:Crossrider-AI [PUP]
AVG Generic.A9F
Avira ADWARE/CrossRider.Gen
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAG
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.32474
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AG
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/S-9ad4719b!Eldorado
G Data Win32.Adware.Crossrider.R
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.cwz
Malwarebytes PUP.Optional.VideosMediaPlayer.A
McAfee Artemis!5064E974A46C
McAfee-GW-Edition BehavesLike.Win32.BadFile.fh
NANO AntiVirus Trojan.Win32.Crossrider.devdmd
Qihoo-360 HEUR/Malware.QVM10.Gen
Sophos Generic PUA FN
Symantec Adware.Crossid
Trend Micro TROJ_GEN.R0C1C0EK514
TrendMicro-HouseCall TROJ_GEN.R0C1C0EK514
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2905
Clam AntiVirus Win.Adware.Crossrider-32
AhnLab-V3 PUP/Win32.CrossRider
Panda Antivirus Trj/Genetic.gen
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
nProtect Trojan-Clicker/W32.Agent.1075608
Rising Antivirus PE:Malware.Obscure!1.9C59
IKARUS anti.virus Trojan.GoogUpdate
Agnitum Outpost PUA.Toolbar.CrossRider!
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
Bitdefender Gen:Variant.Adware.Plush.1
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
F-Secure Gen:Variant.Adware.Plush.1
MicroWorld-eScan Gen:Variant.Adware.Plush.1
Tencent Nsis.Trojan.Googupdate.Aihu

Software Behaviors

Scheduled tasks:
  • 1b0f644d-eed6-49ff-8457-65d31f0f2af1-6.exe is scheduled as a task named '731b28ed-138e-45a5-af8b-7ef590e61293-6'.
  • 49800a2d-b64b-4411-9403-46ab153fe394-6.exe is scheduled as a task named 'temp_49800a2d-b64b-4411-9403-46ab153fe394-6'.

Startup Entries

Startup tasks:
  • 1b0f644d-eed6-49ff-8457-65d31f0f2af1-6.exe is automatically launched at startup through a scheduled task named 5d2076bc-d559-4c68-aca0-29a2e5982b96-7.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-6.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-6.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-5.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-5_user.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-4.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-4.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-11.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-3.
  • 42b548cb-88da-4580-9583-333292749074-7.exe is automatically launched at startup through a scheduled task named 42b548cb-88da-4580-9583-333292749074-1.

Software Details

URL:
https://crossrider.com/install/64201-videos-mediaplayer+
Support:
–
Installation path:
C:\Program Files\videos mediaplayer+
Uninstaller:
C:\Program Files\videos MediaPlayer+\Uninstall.exe /fcp=1
Size:
17.00 MB
Language:
English

videos MediaPlayer+ Executable Details

Primary executable:
utils.exe
Name:
videos MediaPlayer+
Path:
C:\Program Files\videos mediaplayer+\utils.exe
MD5:
43d69f92512c99d4a755fe8d532a2fe8
SHA-1:
–
SHA-256:
–
Files installed by videos MediaPlayer+
File Type Filename MD5
DLL
0900b6c72905788aca613f89fe739bd3
EXE
ab91a7350a5fddcdf0a7b0c60e8e4e71
DLL
5e8e81170731f5521bf540e5e374b011
DLL
06bef001533cc9b2aee78e0315432f94
EXE
utils.exe
Toolbar
43d69f92512c99d4a755fe8d532a2fe8
DLL
054eb97126c57f5476abc3c6f8586eab
DLL
55bbde7f48a5ef7a8254bfeb3a5a39d7
DLL
9161b2db6facc5aa59f5eae689ec05af
EXE
ac31e9934a269c4283112a808a0f54f9
EXE
b1e90dd0f21a5a194d6d941d60062ba1