videos MediaPlayer+

videos MediaPlayer+

Known Adware

by Derzany Network

What is videos MediaPlayer+?

videos MediaPlayer+ is software application developed by Derzany Network. It is most commonly found on computers running Windows 7 with nearly 56.00% of installations running this operating system. videos MediaPlayer+'s installer is typically 17.00 MB in size and installs around 302 files. The most common release is 1.35.3.9 with 88.00% of all installations currently using this version.

videos MediaPlayer+ is most popular in the United States with 33.14% of installations residing in this country.

videos MediaPlayer+ adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About videos MediaPlayer+?

MediaPlayer+ (Freeven) is a software program that may display adware behavior within a user's web browser by modifying browser settings, including the search provider, and injecting display ads. This can include inserting new banner ads, adding new advertisements on top of existing ones, and inserting hyper-text links to display popup ad formats. These ads are typically low quality and do not originate from the website the user is visiting. Removing this adware through the standard installer provided may be challenging, as it may only partially remove the program and not reset hijacked search and home pages.

Multiple virus scanners have detected malware in videos MediaPlayer+.

utils.exe (MD5: 43d69f92512c99d4a755fe8d532a2fe8) has been flagged by 46 scanners:
Scanner Software Result
Bkav FE HW32.Paked
Dr.Web Trojan.Crossrider.32080
G Data NSIS.Adware.Crossrider
Malwarebytes PUP.Optional.crossRider.A
McAfee Artemis!43D69F92512C
McAfee-GW-Edition Artemis
Symantec WS.Reputation
TrendMicro-HouseCall Suspicious_GEN.F47V0911
Lavasoft Ad-Aware Gen:Application.Heur.Fy9@m8@qdSmi
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL Trojan/NSIS.GoogUpdate.da
avast! Win32:Adware-gen [Adw]
AVG Derzany.BD6
Avira Adware/Plush.geru
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.AF
Bitdefender Gen:Application.Heur.Fy9@m8@qdSmi
CAT-QuickHeal PUA.BrightCircle.OD6
Comodo Security ApplicUnwnt
Cyren W32/A-ee826839!Eldorado
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AF potentially unwanted
Fortinet FortiGate W32/GoogUpdate.AF!tr
F-Prot W32/A-ee826839!Eldorado
F-Secure Gen:Application.Heur.Fy9@m8@qdSmi
Jiangmin AdWare/NSIS.gig
K7 AntiVirus Trojan ( 0049eec71 )
K7GW Trojan ( 0049eec71 )
Kaspersky Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus Win32.Troj.NSIS.da.(kcloud)
MicroWorld-eScan Gen:Application.Heur.Fy9@m8@qdSmi
NANO AntiVirus Trojan.Win32.Crossrider.deuvhj
Panda Antivirus Trj/Chgt.E
Qihoo-360 Win32/Trojan.933
Sophos AppRider
Tencent Trojan.Win32.Qudamah.Gen.14
Trend Micro TROJ_GEN.R0C1C0EJE14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Adware.Adwapper.Win32.1306
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
IKARUS anti.virus Trojan.GoogUpdate
Rising Antivirus PE:Trojan.Win32.Generic.1751BC9E!391232670
nProtect Adware.Agent.OVD
Clam AntiVirus Win.Adware.Agent-10501
ALYac Adware.Agent.OVT
Agnitum Outpost PUA.Toolbar.CrossRider!
76612927-5ff1-4ac0-a73e-43143a6c9df1-2.exe (MD5: ac31e9934a269c4283112a808a0f54f9) has been flagged by 42 scanners:
Scanner Software Result
AhnLab-V3 Win-PUP/CrossRider
avast! Win32:Crossrider-AG [PUP]
AVG Generic.A3F
Avira ADWARE/CrossRider.Gen
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAV
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/A-ea13b6b6!Eldorado
G Data Win32.Adware.Crossrider.L
K7 AntiVirus Unwanted-Program ( 004aecdd1 )
K7GW Unwanted-Program ( 004aecdd1 )
Kaspersky Trojan.NSIS.GoogUpdate.dj
Malwarebytes PUP.Optional.VideosMediaPlayer.A
McAfee Artemis!AC31E9934A26
McAfee-GW-Edition BehavesLike.Win32.BadFile.dh
NANO AntiVirus Riskware.Win32.Crossrider.dhczbs
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA JL
Symantec Adware.Crossid
Tencent Nsis.Trojan.Googupdate.Lndx
Trend Micro TROJ_GEN.R0C1C0EJO14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJO14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2789
Clam AntiVirus Win.Adware.Crossrider-29
Dr.Web Trojan.Crossrider.33182
IKARUS anti.virus Trojan.GoogUpdate
Panda Antivirus Trj/Genetic.gen
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
nProtect Trojan-Clicker/W32.Agent.1484696
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper
Lavasoft Ad-Aware Adware.Generic.1029642
Agnitum Outpost PUA.Toolbar.CrossRider!
Bitdefender Adware.Generic.1029642
Bkav FE W32.ATVC_VuschekpoLTO.Trojan
Emsisoft Anti-Malware Adware.Generic.1029642 (B)
F-Secure Adware.Generic.1029642
MicroWorld-eScan Adware.Generic.1029642
76612927-5ff1-4ac0-a73e-43143a6c9df1-11.exe (MD5: b1e90dd0f21a5a194d6d941d60062ba1) has been flagged by 43 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL Trojan/NSIS.GoogUpdate
avast! Win32:Crossrider-AI [PUP]
AVG Generic.A3F
Avira Adware/CrossRider.gr
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.77
Bitdefender Gen:Variant.Adware.Plush.1
Comodo Security Application.Win32.Plush.GRI
Dr.Web Trojan.Crossrider.32724
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/A-1a27c920!Eldorado
F-Secure Gen:Variant.Adware.Plush.1
G Data Gen:Variant.Adware.Plush.1
IKARUS anti.virus Trojan.GoogUpdate
Kaspersky Trojan.NSIS.GoogUpdate.dj
Kingsoft AntiVirus Win32.Troj.NSIS.cz.(kcloud)
Malwarebytes PUP.Optional.VideosMediaPlayer.A
McAfee Artemis!B1E90DD0F21A
McAfee-GW-Edition BehavesLike.Win32.Trojan.th
MicroWorld-eScan Gen:Variant.Adware.Plush.1
NANO AntiVirus Trojan.Win32.GoogUpdate.deyuvr
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos Generic PUA OI
Symantec PUA.Gen.2
Tencent Nsis.Trojan.Googupdate.Pgcv
Trend Micro TROJ_SPNR.3AJJ14
TrendMicro-HouseCall TROJ_SPNR.3AJJ14
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2802
Panda Antivirus Trj/Genetic.gen
CAT-QuickHeal Trojan.NSIS.g5
K7 AntiVirus Unwanted-Program ( 004afae01 )
K7GW Unwanted-Program ( 004afae01 )
Rising Antivirus PE:Trojan.Win32.Generic.17888F08!394825480
Vba32 AntiVirus AdWare.Adwapper
Clam AntiVirus Win.Adware.Crossrider-40
nProtect Trojan-Clicker/W32.Agent.1105304.B
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.ATVC_VuschekpoLTO.Trojan
66cd09a5-83de-4e19-9860-f59e198933d0.exe (MD5: 2bbe254fb9f8e9908f0cbc3e1948714f) has been flagged by 15 scanners:
Scanner Software Result
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAM
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AG
F-Prot W32/S-9ad4719b!Eldorado
Malwarebytes PUP.Optional.VideosMediaPlayer.A
Qihoo-360 HEUR/QVM10.1.Malware.Gen
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Avira ADWARE/CrossRider.Gen2
G Data Win32.Adware.Crossrider.L
IKARUS anti.virus Trojan.GoogUpdate
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Zillya Adware.Adwapper.Win32.233
NANO AntiVirus Riskware.Win32.Crossrider.dewjjt
62f9e9c2-55b8-476f-b5d2-35cc93d5b1ca.exe (MD5: 5064e974a46c6459de448434883e1b13) has been flagged by 38 scanners:
Scanner Software Result
avast! Win32:Crossrider-AI [PUP]
AVG Generic.A9F
Avira ADWARE/CrossRider.Gen
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAG
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.32474
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AG
Fortinet FortiGate Riskware/CrossRider
F-Prot W32/S-9ad4719b!Eldorado
G Data Win32.Adware.Crossrider.R
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.cwz
Malwarebytes PUP.Optional.VideosMediaPlayer.A
McAfee Artemis!5064E974A46C
McAfee-GW-Edition BehavesLike.Win32.BadFile.fh
NANO AntiVirus Trojan.Win32.Crossrider.devdmd
Qihoo-360 HEUR/Malware.QVM10.Gen
Sophos Generic PUA FN
Symantec Adware.Crossid
Trend Micro TROJ_GEN.R0C1C0EK514
TrendMicro-HouseCall TROJ_GEN.R0C1C0EK514
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2905
Clam AntiVirus Win.Adware.Crossrider-32
AhnLab-V3 PUP/Win32.CrossRider
Panda Antivirus Trj/Genetic.gen
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
nProtect Trojan-Clicker/W32.Agent.1075608
Rising Antivirus PE:Malware.Obscure!1.9C59
IKARUS anti.virus Trojan.GoogUpdate
Agnitum Outpost PUA.Toolbar.CrossRider!
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
Bitdefender Gen:Variant.Adware.Plush.1
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
F-Secure Gen:Variant.Adware.Plush.1
MicroWorld-eScan Gen:Variant.Adware.Plush.1
Tencent Nsis.Trojan.Googupdate.Aihu

Software Behaviors

Scheduled tasks:
  • 1b0f644d-eed6-49ff-8457-65d31f0f2af1-6.exe is scheduled as a task named '731b28ed-138e-45a5-af8b-7ef590e61293-6'.
  • 49800a2d-b64b-4411-9403-46ab153fe394-6.exe is scheduled as a task named 'temp_49800a2d-b64b-4411-9403-46ab153fe394-6'.

Startup Entries

Startup tasks:
  • 1b0f644d-eed6-49ff-8457-65d31f0f2af1-6.exe is automatically launched at startup through a scheduled task named 5d2076bc-d559-4c68-aca0-29a2e5982b96-7.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-6.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-6.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-5.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-5_user.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-4.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-4.
  • 0fb35dda-2671-4986-a490-9e4fa03415c5-11.exe is automatically launched at startup through a scheduled task named 0fb35dda-2671-4986-a490-9e4fa03415c5-3.
  • 42b548cb-88da-4580-9583-333292749074-7.exe is automatically launched at startup through a scheduled task named 42b548cb-88da-4580-9583-333292749074-1.

Software Details

URL:
https://crossrider.com/install/64201-videos-mediaplayer+
Support:
–
Installation path:
C:\Program Files\videos mediaplayer+
Uninstaller:
C:\Program Files\videos MediaPlayer+\Uninstall.exe /fcp=1
Size:
17.00 MB
Language:
English

videos MediaPlayer+ Executable Details

Primary executable:
utils.exe
Name:
videos MediaPlayer+
Path:
C:\Program Files\videos mediaplayer+\utils.exe
MD5:
43d69f92512c99d4a755fe8d532a2fe8
SHA-1:
–
SHA-256:
–
Files installed by videos MediaPlayer+
File Type Filename MD5
EXE
bf00517eb197d911610a114709be176d
EXE
2e39d7c86cb3be4f09334e6bfbbfd82e
EXE
e3f066df3fa3f5dab41798ec53e5ff7f
EXE
7e9b40ef29531b8692d5096c7e4408a1
EXE
b9a068797978062b65867d5f3a855667
EXE
c15ae4956a587d7b2bdae8cd8b54f29e
EXE
e07028cb87b79a236ce50733db9d98c5
EXE
28f532d0b6c766b7834f57223ed46058
EXE
ecd1d2f55b5909e3079f38d5720b0c6e
EXE
903b21309698b48bca0a3712b3baaa5d