Media_Play_er+

Media_Play_er+

Known Adware

by Kimahri Software inc.

What is Media_Play_er+?

Media_Play_er+ is software application developed by Kimahri Software inc.. It is most commonly found on computers running Windows 7 with nearly 61.90% of installations running this operating system. Media_Play_er+'s installer is typically 9.00 MB in size and installs around 15 files.

Media_Play_er+ is most popular in the United States with 67.57% of installations residing in this country.

About Media_Play_er+?

This software is designed to inject advertising into the user's web browser through the use of extensions and add-ons. The ads can take the form of search-related ads, banner and video ads, in-text ads and links, transitional, interstitial and full page ads. It should be noted that these ads and features are not affiliated with the website the user is currently visiting and are injected into the page. The ads are typically inserted in the header or footer area of the web page and may also convert words into hyperlinks linked to advertisements. It is important to categorize this application as adware and/or a potentially unwanted program (PUP) due to its behavior. Users should be aware that the software is often distributed through third-party download managers and installers, which may include it as an additional or sponsored offer, including adware.

Multiple virus scanners have detected malware in Media_Play_er+.

Media_Play_er+-nova.exe (MD5: 576369dfbc8f9789f137e813fc2a84d2) has been flagged by 19 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.6312
Baidu-International Adware.Win32.CrossRider.BAE
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AE
Fortinet FortiGate Riskware/Toolbar_CrossRider
G Data Win32.Application.Plush.A
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!576369DFBC8F
McAfee-GW-Edition Artemis!576369DFBC8F
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.c1c
Symantec Trojan.ADH.2
TrendMicro-HouseCall TROJ_GEN.F47V0530
VIPRE Antivirus Crossrider (fs)
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Sophos AppRider
Media_Play_er+-codedownloader.exe (MD5: 3137bd0ac6043f140e8ef26657732885) has been flagged by 24 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.PlusHD
Avira AntiVir Adware/CrossRider.A.6308
AVG Generic_r.OE
Baidu-International Adware.Win32.CrossRider.bAC
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
K7 AntiVirus Unwanted-Program ( 00454f261 )
K7GW Unwanted-Program ( 00454f261 )
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!3137BD0AC604
McAfee-GW-Edition Artemis!3137BD0AC604
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.3a6
Sophos AppRider
Symantec Adware.BL
TrendMicro-HouseCall TROJ_GEN.F47V0529
VIPRE Antivirus Crossrider (fs)
Media_Play_er+-bho.dll (MD5: b577cef6e7910a3b84213ae9c8628713) has been flagged by 7 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.6305
Baidu-International Adware.Win32.CrossAd.aai
G Data Win32.Application.Plush.B
Malwarebytes PUP.Optional.MediaPlayer.A
Panda Antivirus PUP/PlusHD
TrendMicro-HouseCall TROJ_GEN.F47V0529
VIPRE Antivirus Crossrider (fs)
Media_Play_er+-bg.exe (MD5: a98abae4daae967ddbc35276a41a49c2) has been flagged by 25 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.6295
Baidu-International Adware.Win32.CrossRider.bAA
ESET-NOD32 probably a variant of Win32/Toolbar.CrossRider.AA
Fortinet FortiGate Riskware/Toolbar_CrossRider
G Data Win32.Application.Plush
K7 AntiVirus Unwanted-Program
K7GW Unwanted-Program ( 00454f261 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!A98ABAE4DAAE
McAfee-GW-Edition Artemis!A98ABAE4DAAE
Panda Antivirus PUP/PlusHD
Qihoo-360 Win32/Virus.Adware.d3f
Sophos AppRider
Symantec Adware.BL
TrendMicro-HouseCall TROJ_GEN.F47V0529
VIPRE Antivirus Crossrider (fs)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.PlusHD
AVG Generic_r.OE
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
ecd21c27-0b1d-4666-bd85-dc7126ad3c01-5.exe (MD5: 49a8123bfd2098c313576584ac5ea0e4) has been flagged by 13 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossAd.aai
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
Malwarebytes PUP.Optional.MediaPlayer.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus PUP/PlusHD
VIPRE Antivirus Crossrider (fs)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AC
Sophos AppRider
Avira AntiVir Adware/CrossRider.A.6281
TrendMicro-HouseCall TROJ_GEN.F47V0529

Startup Entries

Startup tasks:
  • Media_Play_er+-codedownloader.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-6.
  • Media_Play_er+-nova.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-7.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-5.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-5.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-4.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-4.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-3.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-3.
  • ecd21c27-0b1d-4666-bd85-dc7126ad3c01-2.exe is automatically launched at startup through a scheduled task named ecd21c27-0b1d-4666-bd85-dc7126ad3c01-2.

Software Details

URL:
https://crossrider.com/install/58024-mediaplayer+
Support:
–
Installation path:
C:\Program Files\media_play_er+
Uninstaller:
C:\Program Files\Media_Play_er+\Uninstall.exe /fcp=1
Size:
9.00 MB
Language:
English

Media_Play_er+ Executable Details

Primary executable:
Media_Play_er+-bg.exe
Name:
Media_Play_er+
Path:
C:\Program Files\media_play_er+\Media_Play_er+-bg.exe
MD5:
a98abae4daae967ddbc35276a41a49c2
SHA-1:
–
SHA-256:
–
Files installed by Media_Play_er+
File Type Filename MD5
EXE
a98abae4daae967ddbc35276a41a49c2
EXE
49a8123bfd2098c313576584ac5ea0e4
EXE
b19b1856cdf68456959a9316ad67d184
EXE
383fa513df865ca3c7082dad7bedf594
EXE
0ae33fcd09571242632a04a656bae5c3