video MediaPlayer

video MediaPlayer

Known Adware

by Sailor Project

What is video MediaPlayer?

video MediaPlayer is software application developed by Sailor Project. It is most commonly found on computers running Windows 7 with nearly 57.21% of installations running this operating system. video MediaPlayer's installer is typically 8.00 MB in size and installs around 101 files.

video MediaPlayer is most popular in the United States with 36.27% of installations residing in this country.

video MediaPlayer adds 3 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About video MediaPlayer?

The video MediaPlayer software is a web browser application that includes banner ads and contextual link ads that can appear on any web page, regardless of affiliation with the publisher. These ads are injected by a web browser plugin for IE, FF, and Chrome, and may include up to 10 intext ads, 4 banner ads, and/or a transitional ad on a single page. The software is typically bundled with 3rd-party download managers that use deceptive advertising methods for installation. In addition to displaying ads, the program can modify browser settings, potentially compromising normal security settings, and can also change the home page and search provider, a practice known as web browser hijacking. Furthermore, the extension will report user behavior on the Internet, including visited URLs and domains, as well as interactions with displayed advertisements, back to a controlling server for analytics. This adware is commonly bundled with 3rd-party download managers, often along with a host of other potentially unwanted programs.

Multiple virus scanners have detected malware in video MediaPlayer.

utils.exe (MD5: db399c89e8127974aa55a15345e9f318) has been flagged by 45 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.MulDrop
Bkav FE HW32.CDB
IKARUS anti.virus PUA.PlusHD
Malwarebytes PUP.Optional.crossRider.A
Rising Antivirus PE:Malware.Obscure!1.9C59
Symantec WS.Reputation
TrendMicro-HouseCall Suspici.DB6BCC95
Lavasoft Ad-Aware Gen:Application.Heur.Hu1@mS@tiRgO
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CroRi.btj
avast! Win32:Crossrider-AB [PUP]
AVG Generic.332
Avira ADWARE/CrossRider.Gen2
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.AJ
Bitdefender Gen:Application.Heur.Hu1@mS@tiRgO
CAT-QuickHeal PUA.GoogleUpdate.A5
Comodo Security ApplicUnwnt
Cyren W32/S-a64d6097!Eldorado
Dr.Web Trojan.Crossrider1.5611
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ potentially unwanted
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/S-a64d6097!Eldorado
F-Secure Gen:Application.Heur.Hu1@mS@tiRgO
G Data Gen:Application.Heur.Hu1@mS@tiRgO
K7 AntiVirus Unwanted-Program ( 004b21d91 )
K7GW Unwanted-Program ( 004b21d91 )
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.btj
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee Artemis!F64F076BF31D
MicroWorld-eScan Gen:Application.Heur.Hu1@mS@tiRgO
NANO AntiVirus Riskware.Win32.AdLoad.dbramc
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.b43
Sophos AppRider
Tencent Trojan.Win32.Qudamah.Gen.4
Trend Micro TROJ_GEN.R0C1C0EJB14
Vba32 AntiVirus AdWare.AdLoad
VIPRE Antivirus Crossrider (fs)
Zillya Backdoor.PePatch.Win32.38319
Jiangmin Adware/Adload.bja
McAfee-GW-Edition BehavesLike.Win32.PUP.fh
Agnitum Outpost PUA.AdLoad!
Avira AntiVir Adware/CrossRider.A.11089
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
Clam AntiVirus Win.Adware.Agent-7704
c313008b-3ab1-4e98-88f8-32b0f60e9da8-5.exe (MD5: ead0c2f84711b0c26f6d29f4d73bd042) has been flagged by 34 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.bAH
Clam AntiVirus Win.Adware.Agent-7475
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
IKARUS anti.virus AdWare.Adload
Malwarebytes PUP.Optional.VideoMediaPlayer.A
NANO AntiVirus Riskware.Win32.AdLoad.dbqwyf
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
McAfee Artemis!20EE3D9D188F
McAfee-GW-Edition Artemis!20EE3D9D188F
Sophos AppRider
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
TrendMicro-HouseCall Suspicious_GEN.F47V0703
Fortinet FortiGate Riskware/Toolbar_CrossRider
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Zillya Adware.AdLoad.Win32.110
Bkav FE W32.CrossRiderE.Adware
F-Prot W32/A-eb9ef301!Eldorado
Agnitum Outpost PUA.Toolbar.CroRi!
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CroRi
avast! Win32:Adware-gen [Adw]
c313008b-3ab1-4e98-88f8-32b0f60e9da8-4.exe (MD5: 357f2663c6adac3f47ebe5e0cd4b802d) has been flagged by 36 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.13930
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.bAK
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus AdWare.Adload
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
Malwarebytes PUP.Optional.VideoMediaPlayer.A
McAfee Artemis!357F2663C6AD
McAfee-GW-Edition Artemis!357F2663C6AD
NANO AntiVirus Riskware.Win32.AdLoad.dbtfnr
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Sophos Generic PUA NJ
TrendMicro-HouseCall Suspicious_GEN.F47V0701
VIPRE Antivirus Crossrider (fs)
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Rising Antivirus PE:Malware.Obscure!1.9C59
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Zillya Adware.AdLoad.Win32.91
G Data Win32.Application.Plush.A
Jiangmin Adware/Adload.ayn
Symantec WS.Reputation.1
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Bitdefender Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
F-Secure Gen:Variant.Adware.Kazy.374062
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.AdLoad
avast! Win32:Adware-gen [Adw]
AhnLab-V3 PUP/Win32.CrossRider
Clam AntiVirus Win.Adware.Agent-7475
Bkav FE W32.CrossRiderE.Adware
Agnitum Outpost PUA.Toolbar.CroRi!
c313008b-3ab1-4e98-88f8-32b0f60e9da8-2.exe (MD5: 20ee3d9d188f69927e49e0d6b3a4b175) has been flagged by 33 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.14067
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.BAJ
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
Malwarebytes PUP.Optional.VideoMediaPlayer.A
McAfee Artemis!20EE3D9D188F
McAfee-GW-Edition Artemis!20EE3D9D188F
NANO AntiVirus Riskware.Win32.AdLoad.dbsoik
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
Panda Antivirus Trj/Genetic.gen
TrendMicro-HouseCall Suspicious_GEN.F47V0703
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Bitdefender Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Qihoo-360 Win32/Virus.Adware.904
Fortinet FortiGate Riskware/Toolbar_CrossRider
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Clam AntiVirus Win.Adware.Agent-7606
Zillya Adware.AdLoad.Win32.110
Bkav FE W32.CrossRiderE.Adware
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus AdWare.Adload
Agnitum Outpost PUA.Toolbar.CroRi!
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CroRi
avast! Win32:Adware-gen [Adw]
c313008b-3ab1-4e98-88f8-32b0f60e9da8-11.exe (MD5: 618f593b83ec1d09922691f8d9a4f238) has been flagged by 36 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.13925
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.BAK
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus AdWare.Adload
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
Malwarebytes PUP.Optional.VideoMediaPlayer.A
McAfee Artemis!618F593B83EC
McAfee-GW-Edition Artemis!618F593B83EC
NANO AntiVirus Riskware.Win32.AdLoad.dbrefy
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.77c
Sophos Generic PUA PM
TrendMicro-HouseCall Suspicious_GEN.F47V0701
VIPRE Antivirus Crossrider (fs)
Zillya Adware.AdLoad.Win32.113
Antiy-AVL Trojan/Win32.TSGeneric
Fortinet FortiGate Riskware/Toolbar_CrossRider
Rising Antivirus PE:Malware.Obscure!1.9C59
AhnLab-V3 PUP/Win32.PlusHD
Clam AntiVirus Win.Adware.Agent-7704
F-Prot W32/A-eb9ef301!Eldorado
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
G Data Win32.Application.Plush.A
Jiangmin Adware/Adload.ayn
Symantec WS.Reputation.1
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Bitdefender Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
F-Secure Gen:Variant.Adware.Kazy.374062
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
avast! Win32:Adware-gen [Adw]
Bkav FE W32.CrossRiderE.Adware
Agnitum Outpost PUA.Toolbar.CroRi!

Software Behaviors

Scheduled tasks:
  • video MediaPlayer-nova.exe is scheduled as a task named '731b28ed-138e-45a5-af8b-7ef590e61293-6'.
  • 0c5e16cb-f37d-48a4-a577-49e50c627e8a-2.exe is scheduled as a task named 'temp_0c5e16cb-f37d-48a4-a577-49e50c627e8a-2'.
  • d5da2132-5fc4-4df1-9e78-5533f7681ac1-2.exe is scheduled as a task named 'temp_d5da2132-5fc4-4df1-9e78-5533f7681ac1-2'.

Startup Entries

Startup tasks:
  • video MediaPlayer-nova.exe is automatically launched at startup through a scheduled task named 5d2076bc-d559-4c68-aca0-29a2e5982b96-7.
  • 83c192df-4714-48fe-bbac-ea840271057f-4.exe is automatically launched at startup through a scheduled task named 83c192df-4714-48fe-bbac-ea840271057f-4.
  • 83c192df-4714-48fe-bbac-ea840271057f-11.exe is automatically launched at startup through a scheduled task named 83c192df-4714-48fe-bbac-ea840271057f-3.
  • video MediaPlayer-codedownloader.exe is automatically launched at startup through a scheduled task named f7171c92-4f0d-4b1b-9174-dc57592e165b-6.
  • f7171c92-4f0d-4b1b-9174-dc57592e165b-5.exe is automatically launched at startup through a scheduled task named f7171c92-4f0d-4b1b-9174-dc57592e165b-5_user.
  • f7171c92-4f0d-4b1b-9174-dc57592e165b-11.exe is automatically launched at startup through a scheduled task named f7171c92-4f0d-4b1b-9174-dc57592e165b-3.

Software Details

URL:
https://crossrider.com
Support:
–
Installation path:
C:\Program Files\video MediaPlayer
Uninstaller:
C:\Program Files\video MediaPlayer\Uninstall.exe /fcp=1
Size:
8.00 MB
Language:
English

video MediaPlayer Executable Details

Primary executable:
utils.exe
Name:
video MediaPlayer
Path:
C:\Program Files\video MediaPlayer\utils.exe
MD5:
db399c89e8127974aa55a15345e9f318
SHA-1:
–
SHA-256:
–
Files installed by video MediaPlayer
File Type Filename MD5
EXE
ab91a7350a5fddcdf0a7b0c60e8e4e71
EXE
db399c89e8127974aa55a15345e9f318
CRX
d1029f437869602c1f5c9f99c354db5c
CRX
9c332427fe1e8232284267f155aef730
XPI
785f0497f19e8125f065d1eecc93471e
EXE
ead0c2f84711b0c26f6d29f4d73bd042
EXE
357f2663c6adac3f47ebe5e0cd4b802d
EXE
20ee3d9d188f69927e49e0d6b3a4b175
EXE
618f593b83ec1d09922691f8d9a4f238
EXE
f7211669cc9ba3d69b70ad3e83875f9d