CinemaD-V1

CinemaD-V1

Known Adware

by Robokid Technologies

What is CinemaD-V1?

CinemaD-V1 is software application developed by Robokid Technologies. It is most commonly found on computers running Windows XP with nearly 50.00% of installations running this operating system. CinemaD-V1's installer is typically 3.00 MB in size and installs around 14 files.

CinemaD-V1 is most popular in the United States with 83.33% of installations residing in this country.

About CinemaD-V1?

CinemaD is a web browser extension designed to deliver advertisements to the user's web browser. The advertisements can take the form of traditional banners and contextually relevant hyperlinks. This software injects ads onto various web pages, not limited to those associated with the software or its affiliates. It's important to note that the ads displayed are not endorsed by the underlying websites. Additionally, the program communicates with remote servers to download new ad feeds and collects information related to the user's browsing activity, including visited domains, URLs, and interactions with ads and links. It is often bundled with third-party download managers that may include unwanted additional programs.

Multiple virus scanners have detected malware in CinemaD-V1.

dfd070af-6ca3-4301-b060-06acefa871ad-2.exe (MD5: e91e58abd0811304894630d35e1a8928) has been flagged by 11 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.332
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
NANO AntiVirus Riskware.Win32.CrossRider.dcuuij
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
Symantec WS.Reputation.1
VIPRE Antivirus Crossrider (fs)
dfd070af-6ca3-4301-b060-06acefa871ad-10.exe (MD5: b5288a64fa99e7302bb6f1b2e811f69a) has been flagged by 20 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.20152
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.BAG
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AG
Fortinet FortiGate Riskware/Toolbar_CrossRider
IKARUS anti.virus AdWare.Adload
K7 AntiVirus Trojan ( 0049b45e1 )
K7GW Trojan ( 0049b45e1 )
Panda Antivirus Trj/Genetic.gen
Sophos Generic PUA KD
Symantec WS.Reputation.1
TrendMicro-HouseCall Suspicious_GEN.F47V0715
VIPRE Antivirus Crossrider (fs)
Agnitum Outpost PUA.Toolbar.CroRi!
AVware Crossrider (fs)
Comodo Security ApplicUnwnt
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.tr
F-Prot W32/A-eb9ef301!Eldorado
NANO AntiVirus Riskware.Win32.CrossRider.dcuuij
Rising Antivirus PE:Malware.Obscure!1.9C59
CinemaD-V1-bho64.dll (MD5: c0bbc3932436db1ec86ed1d78c4c5574) has been flagged by 17 scanners:
Scanner Software Result
Agnitum Outpost PUA.Toolbar.CroRi!
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.332
AVware Crossrider (fs)
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win64/Toolbar.Crossrider.F
Fortinet FortiGate Adware/Toolbar_CrossRider
IKARUS anti.virus PUA.CrossRider
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.tr
Panda Antivirus Trj/Chgt.C
Sophos AppRider
TrendMicro-HouseCall Suspicious_GEN.F47V0728
VIPRE Antivirus Crossrider (fs)
F-Prot W32/A-eb9ef301!Eldorado
NANO AntiVirus Riskware.Win32.CrossRider.dcuuij
Rising Antivirus PE:Malware.Obscure!1.9C59
Symantec WS.Reputation.1
CinemaD-V1-bho.dll (MD5: 5dd18247c1d0dd1c0611f5ec74143032) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.146232
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.332
Bitdefender Gen:Variant.Adware.Graftor.146232
Dr.Web DLOADER.Trojan
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.146232 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AF
F-Prot W32/A-eb9ef301!Eldorado
F-Secure Gen:Variant.Adware.Graftor.146232
G Data Gen:Variant.Adware.Graftor.146232
MicroWorld-eScan Gen:Variant.Adware.Graftor.146232
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Baidu-International Adware.Win32.CrossRider.BAK
Comodo Security ApplicUnwnt
Fortinet FortiGate Riskware/Toolbar_CrossRider
IKARUS anti.virus AdWare.Adload
McAfee Artemis!9F09FD805F47
McAfee-GW-Edition Artemis!9F09FD805F47
Panda Antivirus Trj/Genetic.gen
Symantec Trojan.ADH.2
TrendMicro-HouseCall Suspicious_GEN.F47V0720
K7 AntiVirus Trojan ( 0049b45e1 )
K7GW Trojan ( 0049b45e1 )
Agnitum Outpost PUA.Toolbar.CroRi!
AVware Crossrider (fs)
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.tr
NANO AntiVirus Riskware.Win32.CrossRider.dcuuij
CinemaD-V1-bg.exe (MD5: 8c826b3a8e2e310a0caac7edbba1292e) has been flagged by 31 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.Agent
AVG Generic
AVware Crossrider (fs)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AL
F-Prot W32/A-eb9ef301
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
NANO AntiVirus Riskware.Win32.CrossRider.dclbxm
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
Symantec WS.Reputation
VIPRE Antivirus Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAG
Comodo Security ApplicUnwnt
Fortinet FortiGate Riskware/Toolbar_CrossRider
K7 AntiVirus Trojan ( 0049b45e1 )
K7GW Trojan ( 0049b45e1 )
Malwarebytes PUP.Optional.Cinema.A
McAfee Artemis!BFFA2BAAB013
McAfee-GW-Edition Artemis!BFFA2BAAB013
TrendMicro-HouseCall Suspicious_GEN.F47V0720
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.146232
Bitdefender Gen:Variant.Adware.Graftor.146232
Dr.Web DLOADER.Trojan
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.146232 (B)
F-Secure Gen:Variant.Adware.Graftor.146232
G Data Gen:Variant.Adware.Graftor.146232
MicroWorld-eScan Gen:Variant.Adware.Graftor.146232
Agnitum Outpost PUA.Toolbar.CroRi!
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.tr

Startup Entries

Startup tasks:
  • ac6c7461-7cca-430e-86d4-3dd3fc0815e9-4.exe is automatically launched at startup through a scheduled task named ac6c7461-7cca-430e-86d4-3dd3fc0815e9-4.
  • ac6c7461-7cca-430e-86d4-3dd3fc0815e9-11.exe is automatically launched at startup through a scheduled task named ac6c7461-7cca-430e-86d4-3dd3fc0815e9-3.
  • ac6c7461-7cca-430e-86d4-3dd3fc0815e9-2.exe is automatically launched at startup through a scheduled task named ac6c7461-7cca-430e-86d4-3dd3fc0815e9-2.
  • ac6c7461-7cca-430e-86d4-3dd3fc0815e9-10.exe is automatically launched at startup through a scheduled task named ac6c7461-7cca-430e-86d4-3dd3fc0815e9-10.
  • dfd070af-6ca3-4301-b060-06acefa871ad-2.exe is automatically launched at startup through a scheduled task named dfd070af-6ca3-4301-b060-06acefa871ad-2.
  • dfd070af-6ca3-4301-b060-06acefa871ad-10.exe is automatically launched at startup through a scheduled task named dfd070af-6ca3-4301-b060-06acefa871ad-10.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\CinemaD-V1
Uninstaller:
C:\Program Files\CinemaD-V1\Uninstall.exe /fcp=1
Size:
3.00 MB
Language:
English

CinemaD-V1 Executable Details

Primary executable:
CinemaD-V1-bg.exe
Name:
CinemaD-V1
Path:
C:\Program Files\CinemaD-V1\CinemaD-V1-bg.exe
MD5:
8c826b3a8e2e310a0caac7edbba1292e
SHA-1:
–
SHA-256:
–
Files installed by CinemaD-V1
File Type Filename MD5
EXE
21af3fcb5827f5edbca7fce0283b391c
EXE
e43292837eba019d1eb2d46d0006bded
XPI
c5e936ebd5091be2fe17b35ba53960a9
CRX
d72143801ffaec205f6ddc6cd34556fe
CRX
a0ade7906c6df8606723ef9638757c42
EXE
e91e58abd0811304894630d35e1a8928
EXE
b5288a64fa99e7302bb6f1b2e811f69a
DLL
c0bbc3932436db1ec86ed1d78c4c5574
DLL
5dd18247c1d0dd1c0611f5ec74143032
EXE
8c826b3a8e2e310a0caac7edbba1292e