Browsers App

Browsers App

Known Adware

by Sailor Project

What is Browsers App?

Browsers App is software application developed by Sailor Project. It is most commonly found on computers running Windows 10 with nearly 48.00% of installations running this operating system. Browsers App's installer is typically 10.00 MB in size and installs around 57 files. The most common release is 1.34.7.29 with 64.00% of all installations currently using this version.

Browsers App is most popular in the United States with 39.39% of installations residing in this country.

About Browsers App?

The browsers application developed by Freeven and digitally signed by Sailor Project is an adware web browser application intended to deliver banner ads and contextual link ads to users while browsing the internet. These ads are injected by the web browser plugin (IE, FF and Chrome) and will appear on websites, even those unrelated to the application's publisher. The software is commonly distributed through bundling with third-party download managers that utilize deceptive advertising techniques to install the application on the user's computer. In addition to displaying advertisements, the app may alter browser settings, including lowering security settings and changing the home page and search provider (referred to as browser hijacking).

Multiple virus scanners have detected malware in Browsers App.

e718ee3f-6152-4040-b87f-308c7fa81035-5.exe (MD5: 07e145b6b09beb347fb894375f0a24dc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider.27015
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
TrendMicro-HouseCall Suspicious_GEN.F47V0726
e718ee3f-6152-4040-b87f-308c7fa81035-4.exe (MD5: 8214ace86314118b100b093d429ff502) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
F-Prot W32/A-eb9ef301!Eldorado
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-2.exe (MD5: 4b5c7e3b7d83d8087374c5851f22a2db) has been flagged by 15 scanners:
Scanner Software Result
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAJ
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.BrowsersApp.A
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
AhnLab-V3 PUP/Win32.Toolbar
e718ee3f-6152-4040-b87f-308c7fa81035-11.exe (MD5: 0e1cf1c109e047c9167b4f1cf0830fcc) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Avira AntiVir ADWARE/CrossRider.Gen2
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
Bitdefender Gen:Variant.Adware.Kazy.374062
Dr.Web Trojan.Crossrider.27015
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kingsoft AntiVirus Win32.Troj.NSIS.br.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
Comodo Security ApplicUnwnt
McAfee Artemis!788D79D9DFCF
McAfee-GW-Edition Artemis!788D79D9DFCF
Sophos Generic PUA HB
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.ue
Rising Antivirus PE:Malware.Obscure!1.9C59
TrendMicro-HouseCall Suspicious_GEN.F47V0726
AhnLab-V3 PUP/Win32.CrossRider
c4b68ea3-5bb4-441c-8b8b-5204a4805be3-5.exe (MD5: 3fb59c3676d8ff70e07fa5bf3181069d) has been flagged by 33 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossRider.bAH
Bitdefender Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
K7 AntiVirus Trojan ( 0049c6af1 )
K7GW Trojan ( 0049c6af1 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.BrowsersApp.A
McAfee Artemis!3FB59C3676D8
McAfee-GW-Edition Artemis!3FB59C3676D8
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Panda Antivirus Trj/Genetic.gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FD
Symantec Trojan.ADH.2
TrendMicro-HouseCall Suspicious_GEN.F47V0726
VIPRE Antivirus Crossrider (fs)
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
Dr.Web Trojan.Crossrider.17413
F-Prot W32/A-eb9ef301!Eldorado
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.qg
Qihoo-360 HEUR/Malware.QVM10.Gen
avast! Win32:Adware-gen [Adw]

Startup Entries

Startup tasks:
  • Browsers App-codedownloader.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-7.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-6.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-6.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-5.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-5_user.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-4.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-4.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-11.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-3.
  • da8fa2ef-3bbd-479e-b766-ff78b3117760-2.exe is automatically launched at startup through a scheduled task named da8fa2ef-3bbd-479e-b766-ff78b3117760-2.

Software Details

URL:
https://crossrider.com/install/61787-browsers-app
Support:
–
Installation path:
C:\Program Files\browsers app
Uninstaller:
C:\Program Files\Browsers App\Uninstall.exe /fcp=1
Size:
10.00 MB
Language:
English

Browsers App Executable Details

Primary executable:
Browsers App-bg.exe
Name:
Browsers App
Path:
C:\Program Files\browsers app\Browsers App-bg.exe
MD5:
33e774385db57ecd7a096471b7983ad1
SHA-1:
–
SHA-256:
–
Files installed by Browsers App
File Type Filename MD5
DLL
10427df741d000e90f952a5f7e9ae889
DLL
32d9024f7561c17a6c09e55445e0b773
CRX
dd37a27fc5304effb5d81df707990ebd
XPI
16cf06d0df57bac10aa0e27fc12f61ed
CRX
ad31e42acdbf1fab0646ebc290c06d85
XPI
de902de6ba8c2917481260605dbe9c26
CRX
c672194381a3d23cf5762541b08e22fd