Browsers App

Browsers App

Known Adware

by Sailor Project

What is Browsers App?

Browsers App is software application developed by Sailor Project. It is most commonly found on computers running Windows 10 with nearly 48.00% of installations running this operating system. Browsers App's installer is typically 10.00 MB in size and installs around 57 files. The most common release is 1.34.7.29 with 64.00% of all installations currently using this version.

Browsers App is most popular in the United States with 39.39% of installations residing in this country.

About Browsers App?

The browsers application developed by Freeven and digitally signed by Sailor Project is an adware web browser application intended to deliver banner ads and contextual link ads to users while browsing the internet. These ads are injected by the web browser plugin (IE, FF and Chrome) and will appear on websites, even those unrelated to the application's publisher. The software is commonly distributed through bundling with third-party download managers that utilize deceptive advertising techniques to install the application on the user's computer. In addition to displaying advertisements, the app may alter browser settings, including lowering security settings and changing the home page and search provider (referred to as browser hijacking).

Multiple virus scanners have detected malware in Browsers App.

e718ee3f-6152-4040-b87f-308c7fa81035-5.exe (MD5: 07e145b6b09beb347fb894375f0a24dc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider.27015
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
TrendMicro-HouseCall Suspicious_GEN.F47V0726
e718ee3f-6152-4040-b87f-308c7fa81035-4.exe (MD5: 8214ace86314118b100b093d429ff502) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
F-Prot W32/A-eb9ef301!Eldorado
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-2.exe (MD5: 4b5c7e3b7d83d8087374c5851f22a2db) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAJ
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-11.exe (MD5: 0e1cf1c109e047c9167b4f1cf0830fcc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
Bitdefender Gen:Variant.Adware.Kazy.374062
Dr.Web Trojan.Crossrider.27015
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
Rising Antivirus PE:Malware.Obscure!1.9C59
TrendMicro-HouseCall Suspicious_GEN.F47V0726
AhnLab-V3 PUP/Win32.CrossRider
c4b68ea3-5bb4-441c-8b8b-5204a4805be3-5.exe (MD5: 3fb59c3676d8ff70e07fa5bf3181069d) has been flagged by 33 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossRider.bAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
K7 AntiVirus Trojan ( 0049c6af1 )
K7GW Trojan ( 0049c6af1 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
McAfee Artemis!3FB59C3676D8
McAfee-GW-Edition Artemis!3FB59C3676D8
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FD
Symantec Trojan.ADH.2
TrendMicro-HouseCall Suspicious_GEN.F47V0726
VIPRE Antivirus Crossrider (fs)
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
Dr.Web Trojan.Crossrider.17413
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.qg
Qihoo-360 HEUR/Malware.QVM10.Gen
avast! Win32:Adware-gen [Adw]

Startup Entries

Startup tasks:
  • Browsers App-codedownloader.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-7.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-6.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-6.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-5.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-5_user.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-4.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-4.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-11.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-3.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-2.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-2.

Software Details

URL:
https://crossrider.com/install/61787-browsers-app
Support:
–
Installation path:
C:\Program Files\browsers app
Uninstaller:
C:\Program Files\Browsers App\Uninstall.exe /fcp=1
Size:
10.00 MB
Language:
English

Browsers App Executable Details

Primary executable:
Browsers App-bg.exe
Name:
Browsers App
Path:
C:\Program Files\browsers app\Browsers App-bg.exe
MD5:
33e774385db57ecd7a096471b7983ad1
SHA-1:
–
SHA-256:
–
Files installed by Browsers App
File Type Filename MD5
DLL
c5ca8fc08b8c8970e47aa4c15bcfa4be
EXE
33e774385db57ecd7a096471b7983ad1
EXE
dbae25c2bf00990184754ceec959bf16
EXE
06aba96b8af894e01bba7bb0e119e65c
EXE
74902900621fe9c4c74a201bec1d582e
EXE
5e774278eeed29ce43d530b4b7c8756d
EXE
5ac3e6a281c082c4a0d887e777284cd8
EXE
43ed7eea3f6d3c93ffdb9352a1c1a58b
EXE
52e5e346c197309e211de41726af7737
EXE
d30a6c4bd64d8036e421188a37f5f14a