Browsers App

Browsers App

Known Adware

by Sailor Project

What is Browsers App?

Browsers App is software application developed by Sailor Project. It is most commonly found on computers running Windows 10 with nearly 48.00% of installations running this operating system. Browsers App's installer is typically 10.00 MB in size and installs around 57 files. The most common release is 1.34.7.29 with 64.00% of all installations currently using this version.

Browsers App is most popular in the United States with 39.39% of installations residing in this country.

About Browsers App?

The browsers application developed by Freeven and digitally signed by Sailor Project is an adware web browser application intended to deliver banner ads and contextual link ads to users while browsing the internet. These ads are injected by the web browser plugin (IE, FF and Chrome) and will appear on websites, even those unrelated to the application's publisher. The software is commonly distributed through bundling with third-party download managers that utilize deceptive advertising techniques to install the application on the user's computer. In addition to displaying advertisements, the app may alter browser settings, including lowering security settings and changing the home page and search provider (referred to as browser hijacking).

Multiple virus scanners have detected malware in Browsers App.

e718ee3f-6152-4040-b87f-308c7fa81035-5.exe (MD5: 07e145b6b09beb347fb894375f0a24dc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider.27015
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
TrendMicro-HouseCall Suspicious_GEN.F47V0726
e718ee3f-6152-4040-b87f-308c7fa81035-4.exe (MD5: 8214ace86314118b100b093d429ff502) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
F-Prot W32/A-eb9ef301!Eldorado
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-2.exe (MD5: 4b5c7e3b7d83d8087374c5851f22a2db) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAJ
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-11.exe (MD5: 0e1cf1c109e047c9167b4f1cf0830fcc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
Bitdefender Gen:Variant.Adware.Kazy.374062
Dr.Web Trojan.Crossrider.27015
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
Rising Antivirus PE:Malware.Obscure!1.9C59
TrendMicro-HouseCall Suspicious_GEN.F47V0726
AhnLab-V3 PUP/Win32.CrossRider
c4b68ea3-5bb4-441c-8b8b-5204a4805be3-5.exe (MD5: 3fb59c3676d8ff70e07fa5bf3181069d) has been flagged by 33 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossRider.bAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
K7 AntiVirus Trojan ( 0049c6af1 )
K7GW Trojan ( 0049c6af1 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
McAfee Artemis!3FB59C3676D8
McAfee-GW-Edition Artemis!3FB59C3676D8
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FD
Symantec Trojan.ADH.2
TrendMicro-HouseCall Suspicious_GEN.F47V0726
VIPRE Antivirus Crossrider (fs)
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
Dr.Web Trojan.Crossrider.17413
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.qg
Qihoo-360 HEUR/Malware.QVM10.Gen
avast! Win32:Adware-gen [Adw]

Startup Entries

Startup tasks:
  • Browsers App-codedownloader.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-7.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-6.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-6.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-5.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-5_user.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-4.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-4.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-11.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-3.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-2.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-2.

Software Details

URL:
https://crossrider.com/install/61787-browsers-app
Support:
–
Installation path:
C:\Program Files\browsers app
Uninstaller:
C:\Program Files\Browsers App\Uninstall.exe /fcp=1
Size:
10.00 MB
Language:
English

Browsers App Executable Details

Primary executable:
Browsers App-bg.exe
Name:
Browsers App
Path:
C:\Program Files\browsers app\Browsers App-bg.exe
MD5:
33e774385db57ecd7a096471b7983ad1
SHA-1:
–
SHA-256:
–
Files installed by Browsers App
File Type Filename MD5
EXE
5acaed73b84bfed6daa719b9c897b0fc
EXE
45849462d4567296203ebd58e7e77b8b
EXE
4810acbeae6c580645438b5685250adf
EXE
3fb59c3676d8ff70e07fa5bf3181069d
EXE
3148f22b3b2db96701c7a58266e225fc
EXE
19c88ae5ee2d1c87cb4e80312fd02380
EXE
788d79d9dfcfeeebdba6386897e409db
EXE
76d7a8c499b5a4895b19c1757670a662
EXE
4f8ca47d324dd2923d5a0758f393514b
DLL
478371bec541965ed29e64ff41ab560e