video MediaPlayer

video MediaPlayer

Known Adware

by Sailor Project

What is video MediaPlayer?

video MediaPlayer is software application developed by Sailor Project. It is most commonly found on computers running Windows 7 with nearly 57.21% of installations running this operating system. video MediaPlayer's installer is typically 8.00 MB in size and installs around 101 files.

video MediaPlayer is most popular in the United States with 36.27% of installations residing in this country.

video MediaPlayer adds 3 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About video MediaPlayer?

The video MediaPlayer software is a web browser application that includes banner ads and contextual link ads that can appear on any web page, regardless of affiliation with the publisher. These ads are injected by a web browser plugin for IE, FF, and Chrome, and may include up to 10 intext ads, 4 banner ads, and/or a transitional ad on a single page. The software is typically bundled with 3rd-party download managers that use deceptive advertising methods for installation. In addition to displaying ads, the program can modify browser settings, potentially compromising normal security settings, and can also change the home page and search provider, a practice known as web browser hijacking. Furthermore, the extension will report user behavior on the Internet, including visited URLs and domains, as well as interactions with displayed advertisements, back to a controlling server for analytics. This adware is commonly bundled with 3rd-party download managers, often along with a host of other potentially unwanted programs.

Multiple virus scanners have detected malware in video MediaPlayer.

utils.exe (MD5: db399c89e8127974aa55a15345e9f318) has been flagged by 45 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.MulDrop
Bkav FE HW32.CDB
IKARUS anti.virus PUA.PlusHD
Malwarebytes PUP.Optional.crossRider.A
Rising Antivirus PE:Malware.Obscure!1.9C59
Symantec WS.Reputation
TrendMicro-HouseCall Suspici.DB6BCC95
Lavasoft Ad-Aware Gen:Application.Heur.Hu1@mS@tiRgO
Antiy-AVL GrayWare[WebToolbar:not-a-virus]/Win32.CroRi.btj
avast! Win32:Crossrider-AB [PUP]
AVG Generic.332
Avira ADWARE/CrossRider.Gen2
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.AJ
Bitdefender Gen:Application.Heur.Hu1@mS@tiRgO
CAT-QuickHeal PUA.GoogleUpdate.A5
Comodo Security ApplicUnwnt
Cyren W32/S-a64d6097!Eldorado
Dr.Web Trojan.Crossrider1.5611
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ potentially unwanted
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/S-a64d6097!Eldorado
F-Secure Gen:Application.Heur.Hu1@mS@tiRgO
G Data Gen:Application.Heur.Hu1@mS@tiRgO
K7 AntiVirus Unwanted-Program ( 004b21d91 )
K7GW Unwanted-Program ( 004b21d91 )
Kaspersky not-a-virus:WebToolbar.Win32.CroRi.btj
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee Artemis!F64F076BF31D
MicroWorld-eScan Gen:Application.Heur.Hu1@mS@tiRgO
NANO AntiVirus Riskware.Win32.AdLoad.dbramc
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.b43
Sophos AppRider
Tencent Trojan.Win32.Qudamah.Gen.4
Trend Micro TROJ_GEN.R0C1C0EJB14
Vba32 AntiVirus AdWare.AdLoad
VIPRE Antivirus Crossrider (fs)
Zillya Backdoor.PePatch.Win32.38319
Jiangmin Adware/Adload.bja
McAfee-GW-Edition BehavesLike.Win32.PUP.fh
Agnitum Outpost PUA.AdLoad!
Avira AntiVir Adware/CrossRider.A.11089
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
Clam AntiVirus Win.Adware.Agent-7704
c313008b-3ab1-4e98-88f8-32b0f60e9da8-5.exe (MD5: ead0c2f84711b0c26f6d29f4d73bd042) has been flagged by 34 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.bAH
Clam AntiVirus Win.Adware.Agent-7475
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AH
IKARUS anti.virus AdWare.Adload
Malwarebytes PUP.Optional.VideoMediaPlayer.A
NANO AntiVirus Riskware.Win32.AdLoad.dbqwyf
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
G Data Gen:Variant.Adware.Kazy.374109
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Comodo Security ApplicUnwnt
McAfee Artemis!20EE3D9D188F
McAfee-GW-Edition Artemis!20EE3D9D188F
Sophos AppRider
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
TrendMicro-HouseCall Suspicious_GEN.F47V0703
Fortinet FortiGate Riskware/Toolbar_CrossRider
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Zillya Adware.AdLoad.Win32.110
Bkav FE W32.CrossRiderE.Adware
F-Prot W32/A-eb9ef301!Eldorado
Agnitum Outpost PUA.Toolbar.CroRi!
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CroRi
avast! Win32:Adware-gen [Adw]
c313008b-3ab1-4e98-88f8-32b0f60e9da8-4.exe (MD5: 357f2663c6adac3f47ebe5e0cd4b802d) has been flagged by 36 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.13930
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.bAK
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus AdWare.Adload
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
Malwarebytes PUP.Optional.VideoMediaPlayer.A
McAfee Artemis!357F2663C6AD
McAfee-GW-Edition Artemis!357F2663C6AD
NANO AntiVirus Riskware.Win32.AdLoad.dbtfnr
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Sophos Generic PUA NJ
TrendMicro-HouseCall Suspicious_GEN.F47V0701
VIPRE Antivirus Crossrider (fs)
Fortinet FortiGate Riskware/Toolbar_CrossRider
F-Prot W32/A-eb9ef301!Eldorado
Rising Antivirus PE:Malware.Obscure!1.9C59
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Zillya Adware.AdLoad.Win32.91
G Data Win32.Application.Plush.A
Jiangmin Adware/Adload.ayn
Symantec WS.Reputation.1
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Bitdefender Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
F-Secure Gen:Variant.Adware.Kazy.374062
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Antiy-AVL GrayWare[AdWare:not-a-virus]/Win32.AdLoad
avast! Win32:Adware-gen [Adw]
AhnLab-V3 PUP/Win32.CrossRider
Clam AntiVirus Win.Adware.Agent-7475
Bkav FE W32.CrossRiderE.Adware
Agnitum Outpost PUA.Toolbar.CroRi!
c313008b-3ab1-4e98-88f8-32b0f60e9da8-2.exe (MD5: 20ee3d9d188f69927e49e0d6b3a4b175) has been flagged by 33 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.14067
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.BAJ
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
Malwarebytes PUP.Optional.VideoMediaPlayer.A
McAfee Artemis!20EE3D9D188F
McAfee-GW-Edition Artemis!20EE3D9D188F
NANO AntiVirus Riskware.Win32.AdLoad.dbsoik
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
VIPRE Antivirus Crossrider (fs)
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
Panda Antivirus Trj/Genetic.gen
TrendMicro-HouseCall Suspicious_GEN.F47V0703
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Bitdefender Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
Qihoo-360 Win32/Virus.Adware.904
Fortinet FortiGate Riskware/Toolbar_CrossRider
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Clam AntiVirus Win.Adware.Agent-7606
Zillya Adware.AdLoad.Win32.110
Bkav FE W32.CrossRiderE.Adware
F-Prot W32/A-eb9ef301!Eldorado
IKARUS anti.virus AdWare.Adload
Agnitum Outpost PUA.Toolbar.CroRi!
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CroRi
avast! Win32:Adware-gen [Adw]
c313008b-3ab1-4e98-88f8-32b0f60e9da8-11.exe (MD5: 618f593b83ec1d09922691f8d9a4f238) has been flagged by 36 scanners:
Scanner Software Result
Avira AntiVir Adware/CrossRider.A.13925
AVG Generic.332
Baidu-International Adware.Win32.CrossRider.BAK
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus AdWare.Adload
K7 AntiVirus Trojan ( 0049c2ce1 )
K7GW Trojan ( 0049c2ce1 )
Malwarebytes PUP.Optional.VideoMediaPlayer.A
McAfee Artemis!618F593B83EC
McAfee-GW-Edition Artemis!618F593B83EC
NANO AntiVirus Riskware.Win32.AdLoad.dbrefy
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.77c
Sophos Generic PUA PM
TrendMicro-HouseCall Suspicious_GEN.F47V0701
VIPRE Antivirus Crossrider (fs)
Zillya Adware.AdLoad.Win32.113
Antiy-AVL Trojan/Win32.TSGeneric
Fortinet FortiGate Riskware/Toolbar_CrossRider
Rising Antivirus PE:Malware.Obscure!1.9C59
AhnLab-V3 PUP/Win32.PlusHD
Clam AntiVirus Win.Adware.Agent-7704
F-Prot W32/A-eb9ef301!Eldorado
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
G Data Win32.Application.Plush.A
Jiangmin Adware/Adload.ayn
Symantec WS.Reputation.1
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
Bitdefender Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
F-Secure Gen:Variant.Adware.Kazy.374062
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
avast! Win32:Adware-gen [Adw]
Bkav FE W32.CrossRiderE.Adware
Agnitum Outpost PUA.Toolbar.CroRi!

Software Behaviors

Scheduled tasks:
  • video MediaPlayer-nova.exe is scheduled as a task named '731b28ed-138e-45a5-af8b-7ef590e61293-6'.
  • 0c5e16cb-f37d-48a4-a577-49e50c627e8a-2.exe is scheduled as a task named 'temp_0c5e16cb-f37d-48a4-a577-49e50c627e8a-2'.
  • d5da2132-5fc4-4df1-9e78-5533f7681ac1-2.exe is scheduled as a task named 'temp_d5da2132-5fc4-4df1-9e78-5533f7681ac1-2'.

Startup Entries

Startup tasks:
  • video MediaPlayer-nova.exe is automatically launched at startup through a scheduled task named 5d2076bc-d559-4c68-aca0-29a2e5982b96-7.
  • 83c192df-4714-48fe-bbac-ea840271057f-4.exe is automatically launched at startup through a scheduled task named 83c192df-4714-48fe-bbac-ea840271057f-4.
  • 83c192df-4714-48fe-bbac-ea840271057f-11.exe is automatically launched at startup through a scheduled task named 83c192df-4714-48fe-bbac-ea840271057f-3.
  • video MediaPlayer-codedownloader.exe is automatically launched at startup through a scheduled task named f7171c92-4f0d-4b1b-9174-dc57592e165b-6.
  • f7171c92-4f0d-4b1b-9174-dc57592e165b-5.exe is automatically launched at startup through a scheduled task named f7171c92-4f0d-4b1b-9174-dc57592e165b-5_user.
  • f7171c92-4f0d-4b1b-9174-dc57592e165b-11.exe is automatically launched at startup through a scheduled task named f7171c92-4f0d-4b1b-9174-dc57592e165b-3.

Software Details

URL:
https://crossrider.com
Support:
–
Installation path:
C:\Program Files\video MediaPlayer
Uninstaller:
C:\Program Files\video MediaPlayer\Uninstall.exe /fcp=1
Size:
8.00 MB
Language:
English

video MediaPlayer Executable Details

Primary executable:
utils.exe
Name:
video MediaPlayer
Path:
C:\Program Files\video MediaPlayer\utils.exe
MD5:
db399c89e8127974aa55a15345e9f318
SHA-1:
–
SHA-256:
–
Files installed by video MediaPlayer
File Type Filename MD5
EXE
ea80fee4382ea93f0cc31dd24bce5cad
EXE
b946dfe94ad5697385d9b5d623f3dc7b
EXE
d15290a946963add083d5eb33c6adbc0
EXE
61bbe30a5b50184f05a70a28d7f20a7e
EXE
a7f18e79ccfaa77e64a87b36043e4582
EXE
c94290ce47dc808217ab55fb490e0b72
EXE
ee60b240dd6cca1d7a0bb8f30b98059c
EXE
7521c2c56625a55d90ab4ee4c1422363
EXE
c94e4d0cc7a3b5490a80e87dcda37ce1
EXE
eb42597b4a83a7597cbab6a05bc0597d