Browsers App

Browsers App

Known Adware

by Sailor Project

What is Browsers App?

Browsers App is software application developed by Sailor Project. It is most commonly found on computers running Windows 10 with nearly 48.00% of installations running this operating system. Browsers App's installer is typically 10.00 MB in size and installs around 57 files. The most common release is 1.34.7.29 with 64.00% of all installations currently using this version.

Browsers App is most popular in the United States with 39.39% of installations residing in this country.

About Browsers App?

The browsers application developed by Freeven and digitally signed by Sailor Project is an adware web browser application intended to deliver banner ads and contextual link ads to users while browsing the internet. These ads are injected by the web browser plugin (IE, FF and Chrome) and will appear on websites, even those unrelated to the application's publisher. The software is commonly distributed through bundling with third-party download managers that utilize deceptive advertising techniques to install the application on the user's computer. In addition to displaying advertisements, the app may alter browser settings, including lowering security settings and changing the home page and search provider (referred to as browser hijacking).

Multiple virus scanners have detected malware in Browsers App.

e718ee3f-6152-4040-b87f-308c7fa81035-5.exe (MD5: 07e145b6b09beb347fb894375f0a24dc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider.27015
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
TrendMicro-HouseCall Suspicious_GEN.F47V0726
e718ee3f-6152-4040-b87f-308c7fa81035-4.exe (MD5: 8214ace86314118b100b093d429ff502) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
F-Prot W32/A-eb9ef301!Eldorado
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-2.exe (MD5: 4b5c7e3b7d83d8087374c5851f22a2db) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAJ
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-11.exe (MD5: 0e1cf1c109e047c9167b4f1cf0830fcc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
Bitdefender Gen:Variant.Adware.Kazy.374062
Dr.Web Trojan.Crossrider.27015
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
Rising Antivirus PE:Malware.Obscure!1.9C59
TrendMicro-HouseCall Suspicious_GEN.F47V0726
AhnLab-V3 PUP/Win32.CrossRider
c4b68ea3-5bb4-441c-8b8b-5204a4805be3-5.exe (MD5: 3fb59c3676d8ff70e07fa5bf3181069d) has been flagged by 33 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossRider.bAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
K7 AntiVirus Trojan ( 0049c6af1 )
K7GW Trojan ( 0049c6af1 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
McAfee Artemis!3FB59C3676D8
McAfee-GW-Edition Artemis!3FB59C3676D8
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FD
Symantec Trojan.ADH.2
TrendMicro-HouseCall Suspicious_GEN.F47V0726
VIPRE Antivirus Crossrider (fs)
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
Dr.Web Trojan.Crossrider.17413
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.qg
Qihoo-360 HEUR/Malware.QVM10.Gen
avast! Win32:Adware-gen [Adw]

Startup Entries

Startup tasks:
  • Browsers App-codedownloader.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-7.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-6.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-6.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-5.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-5_user.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-4.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-4.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-11.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-3.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-2.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-2.

Software Details

URL:
https://crossrider.com/install/61787-browsers-app
Support:
–
Installation path:
C:\Program Files\browsers app
Uninstaller:
C:\Program Files\Browsers App\Uninstall.exe /fcp=1
Size:
10.00 MB
Language:
English

Browsers App Executable Details

Primary executable:
Browsers App-bg.exe
Name:
Browsers App
Path:
C:\Program Files\browsers app\Browsers App-bg.exe
MD5:
33e774385db57ecd7a096471b7983ad1
SHA-1:
–
SHA-256:
–
Files installed by Browsers App
File Type Filename MD5
EXE
d182d7a7338bb37a58428bf064fc81af
EXE
4891188c974117f6926175b9e42183ae
EXE
8bfaf812b36b7a488bc5c3f1ba03b845
EXE
38f8d1fd2e1d3063948fb27accc1410c
EXE
60b35257546188ce91f68a786a199231
EXE
26aee43088f86a1e0c8a0ba9af6cc3b0
EXE
e13c062fc20b71b15bca121b4ed863c2
EXE
95495900648e1f60688c58f795690c89
EXE
9d32c8f14696bd5d4eff2ebbdbddb03e
EXE
c761435472beef33269c4e9ffe92a2b7