Browsers App

Browsers App

Known Adware

by Sailor Project

What is Browsers App?

Browsers App is software application developed by Sailor Project. It is most commonly found on computers running Windows 10 with nearly 48.00% of installations running this operating system. Browsers App's installer is typically 10.00 MB in size and installs around 57 files. The most common release is 1.34.7.29 with 64.00% of all installations currently using this version.

Browsers App is most popular in the United States with 39.39% of installations residing in this country.

About Browsers App?

The browsers application developed by Freeven and digitally signed by Sailor Project is an adware web browser application intended to deliver banner ads and contextual link ads to users while browsing the internet. These ads are injected by the web browser plugin (IE, FF and Chrome) and will appear on websites, even those unrelated to the application's publisher. The software is commonly distributed through bundling with third-party download managers that utilize deceptive advertising techniques to install the application on the user's computer. In addition to displaying advertisements, the app may alter browser settings, including lowering security settings and changing the home page and search provider (referred to as browser hijacking).

Multiple virus scanners have detected malware in Browsers App.

e718ee3f-6152-4040-b87f-308c7fa81035-5.exe (MD5: 07e145b6b09beb347fb894375f0a24dc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider.27015
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
TrendMicro-HouseCall Suspicious_GEN.F47V0726
e718ee3f-6152-4040-b87f-308c7fa81035-4.exe (MD5: 8214ace86314118b100b093d429ff502) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
F-Prot W32/A-eb9ef301!Eldorado
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-2.exe (MD5: 4b5c7e3b7d83d8087374c5851f22a2db) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAJ
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-11.exe (MD5: 0e1cf1c109e047c9167b4f1cf0830fcc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
Bitdefender Gen:Variant.Adware.Kazy.374062
Dr.Web Trojan.Crossrider.27015
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
Rising Antivirus PE:Malware.Obscure!1.9C59
TrendMicro-HouseCall Suspicious_GEN.F47V0726
AhnLab-V3 PUP/Win32.CrossRider
c4b68ea3-5bb4-441c-8b8b-5204a4805be3-5.exe (MD5: 3fb59c3676d8ff70e07fa5bf3181069d) has been flagged by 33 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossRider.bAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
K7 AntiVirus Trojan ( 0049c6af1 )
K7GW Trojan ( 0049c6af1 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
McAfee Artemis!3FB59C3676D8
McAfee-GW-Edition Artemis!3FB59C3676D8
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FD
Symantec Trojan.ADH.2
TrendMicro-HouseCall Suspicious_GEN.F47V0726
VIPRE Antivirus Crossrider (fs)
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
Dr.Web Trojan.Crossrider.17413
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.qg
Qihoo-360 HEUR/Malware.QVM10.Gen
avast! Win32:Adware-gen [Adw]

Startup Entries

Startup tasks:
  • Browsers App-codedownloader.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-7.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-6.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-6.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-5.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-5_user.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-4.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-4.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-11.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-3.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-2.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-2.

Software Details

URL:
https://crossrider.com/install/61787-browsers-app
Support:
–
Installation path:
C:\Program Files\browsers app
Uninstaller:
C:\Program Files\Browsers App\Uninstall.exe /fcp=1
Size:
10.00 MB
Language:
English

Browsers App Executable Details

Primary executable:
Browsers App-bg.exe
Name:
Browsers App
Path:
C:\Program Files\browsers app\Browsers App-bg.exe
MD5:
33e774385db57ecd7a096471b7983ad1
SHA-1:
–
SHA-256:
–
Files installed by Browsers App
File Type Filename MD5
EXE
bfa1d247b4f3450c4dfb82706aab26ad
EXE
5d7aa06d8a14f4f16d539631de124d2c
DLL
2dfdfbcd057850774a76212f0e682173
EXE
07e145b6b09beb347fb894375f0a24dc
EXE
8214ace86314118b100b093d429ff502
EXE
4b5c7e3b7d83d8087374c5851f22a2db
EXE
0e1cf1c109e047c9167b4f1cf0830fcc
EXE
1d258d78208c42f496ae07d942c31335
EXE
046dc25778b4804214fea37a6eb75264
EXE
0e588e8f265ee87482768597d7bcb6c7