Media_Play_er+

Media_Play_er+

Known Adware

by Kimahri Software inc.

What is Media_Play_er+?

Media_Play_er+ is software application developed by Kimahri Software inc.. It is most commonly found on computers running Windows 7 with nearly 61.90% of installations running this operating system. Media_Play_er+'s installer is typically 9.00 MB in size and installs around 15 files.

Media_Play_er+ is most popular in the United States with 67.57% of installations residing in this country.

About Media_Play_er+?

This software is designed to inject advertising into the user's web browser through the use of extensions and add-ons. The ads can take the form of search-related ads, banner and video ads, in-text ads and links, transitional, interstitial and full page ads. It should be noted that these ads and features are not affiliated with the website the user is currently visiting and are injected into the page. The ads are typically inserted in the header or footer area of the web page and may also convert words into hyperlinks linked to advertisements. It is important to categorize this application as adware and/or a potentially unwanted program (PUP) due to its behavior. Users should be aware that the software is often distributed through third-party download managers and installers, which may include it as an additional or sponsored offer, including adware.

Multiple virus scanners have detected malware in Media_Play_er+.

Media_Play_er+-nova.exe (MD5: 576369dfbc8f9789f137e813fc2a84d2) has been flagged by 19 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.6312
Baidu-International Adware.Win32.CrossRider.BAE
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AE
Fortinet FortiGate Riskware/Toolbar_CrossRider
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!576369DFBC8F
McAfee-GW-Edition Artemis!576369DFBC8F
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.c1c
Symantec Trojan.ADH.2
TrendMicro-HouseCall TROJ_GEN.F47V0530
VIPRE Antivirus Crossrider (fs)
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Sophos AppRider
Media_Play_er+-codedownloader.exe (MD5: 3137bd0ac6043f140e8ef26657732885) has been flagged by 24 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.PlusHD
Avira AntiVir Adware/CrossRider.A.6308
AVG Generic_r.OE
Baidu-International Adware.Win32.CrossRider.bAC
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!3137BD0AC604
McAfee-GW-Edition Artemis!3137BD0AC604
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.3a6
Sophos AppRider
Symantec Adware.BL
TrendMicro-HouseCall TROJ_GEN.F47V0529
VIPRE Antivirus Crossrider (fs)
Media_Play_er+-bho.dll (MD5: b577cef6e7910a3b84213ae9c8628713) has been flagged by 7 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.6305
Baidu-International Adware.Win32.CrossAd.aai
G Data Win32.Application.Plush.B
Malwarebytes PUP.Optional.MediaPlayer.A
Panda Antivirus PUP/PlusHD
TrendMicro-HouseCall TROJ_GEN.F47V0529
VIPRE Antivirus Crossrider (fs)
Media_Play_er+-bg.exe (MD5: a98abae4daae967ddbc35276a41a49c2) has been flagged by 25 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.6295
Baidu-International Adware.Win32.CrossRider.bAA
ESET-NOD32 probably a variant of Win32/Toolbar.CrossRider.AA
Fortinet FortiGate Riskware/Toolbar_CrossRider
G Data Win32.Application.Plush
K7 AntiVirus Unwanted-Program
K7GW Unwanted-Program ( 00454f261 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!A98ABAE4DAAE
McAfee-GW-Edition Artemis!A98ABAE4DAAE
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.d3f
Sophos AppRider
Symantec Adware.BL
TrendMicro-HouseCall TROJ_GEN.F47V0529
VIPRE Antivirus Crossrider (fs)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.PlusHD
AVG Generic_r.OE
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
ecd21c27-0b1d-4666-bd85-dc7126ad3c01-5.exe (MD5: 49a8123bfd2098c313576584ac5ea0e4) has been flagged by 13 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossAd.aai
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
Malwarebytes PUP.Optional.MediaPlayer.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
Sophos AppRider
Avira AntiVir Adware/CrossRider.A.6281
TrendMicro-HouseCall TROJ_GEN.F47V0529

Startup Entries

Startup tasks:
  • Media_Play_er+-codedownloader.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-6.
  • Media_Play_er+-nova.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-7.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-5.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-5.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-4.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-4.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-3.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-3.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-2.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-2.

Software Details

URL:
https://crossrider.com/install/58024-mediaplayer+
Support:
–
Installation path:
C:\Program Files\media_play_er+
Uninstaller:
C:\Program Files\Media_Play_er+\Uninstall.exe /fcp=1
Size:
9.00 MB
Language:
English

Media_Play_er+ Executable Details

Primary executable:
Media_Play_er+-bg.exe
Name:
Media_Play_er+
Path:
C:\Program Files\media_play_er+\Media_Play_er+-bg.exe
MD5:
a98abae4daae967ddbc35276a41a49c2
SHA-1:
–
SHA-256:
–
Files installed by Media_Play_er+
File Type Filename MD5
EXE
f219c77c28c507b0c04f2ce4eda5b6bb
EXE
8185ccd1f191c1f17324006c722b7713
XPI
228afaf078c84f30013b7a05a83d97ba
CRX
5d9c0c1bb357a01e021785025f7f6e15
CRX
06efbc554291b601c0a79efd9b8e9bdb
DLL
b325652e0bdf254967f3d033e1fb22d3
EXE
576369dfbc8f9789f137e813fc2a84d2
EXE
3137bd0ac6043f140e8ef26657732885
DLL
e130052d10df5f729474fc7e06e2a03a
DLL
b577cef6e7910a3b84213ae9c8628713