videos MediaPlay-Air

videos MediaPlay-Air

Known Adware

by Sailor Project

What is videos MediaPlay-Air?

videos MediaPlay-Air is software application developed by Sailor Project. It is most commonly found on computers running Windows 7 with nearly 51.37% of installations running this operating system. videos MediaPlay-Air's installer is typically 11.00 MB in size and installs around 225 files. The most common release is 1.34.8.12 with 64.74% of all installations currently using this version.

videos MediaPlay-Air is most popular in the United States with 34.62% of installations residing in this country.

videos MediaPlay-Air adds 4 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About videos MediaPlay-Air?

MediaPlay-Air is a web browser adware application that generates banner ads and contextual link ads on web pages through a browser plugin for IE, FF, and Chrome. These ads can appear on any website, regardless of affiliation with the publisher. Users may encounter up to 10 in-text ads, 4 banner ads, and/or a transitional ad on web pages while using the software.

Multiple virus scanners have detected malware in videos MediaPlay-Air.

5799cf62-35b8-4f36-9475-6852ca53dd51-4.exe (MD5: 53bc0f15681573e97a83bd18a2a44a7e) has been flagged by 17 scanners:
Scanner Software Result
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAK
Dr.Web Trojan.Crossrider.17413
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.MediaPlayer.A
VIPRE Antivirus Crossrider (fs)
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Symantec Adware.Crossid!gen1
avast! Win32:Malware-gen
Avira AntiVir ADWARE/CrossRider.Gen2
McAfee Artemis!0EBE450A1030
5799cf62-35b8-4f36-9475-6852ca53dd51-2.exe (MD5: 6b35026f6666f9c7c96e8bb09ebee4e8) has been flagged by 20 scanners:
Scanner Software Result
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAJ
Dr.Web Trojan.Crossrider.17413
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AJ
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.MediaPlayer.A
Qihoo-360 Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Panda Antivirus Trj/Genetic.gen
Symantec Adware.Crossid!gen1
AhnLab-V3 PUP/Win32.Toolbar
Avira AntiVir ADWARE/CrossRider.Gen2
F-Prot W32/A-7d811582!Eldorado
avast! Win32:Malware-gen
McAfee Artemis!459F6B557DAA
G Data Win32.Adware.Crossrider.L
5799cf62-35b8-4f36-9475-6852ca53dd51-11.exe (MD5: 6a428d2e1ab730601039a1f1bc533306) has been flagged by 38 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374062
avast! Win32:Adware-gen [Adw]
AVG Generic.16F
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAK
Bitdefender Gen:Variant.Adware.Kazy.374062
Dr.Web Trojan.Crossrider.17413
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AK
F-Secure Gen:Variant.Adware.Kazy.374062
G Data Gen:Variant.Adware.Kazy.374062
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!6A428D2E1AB7
McAfee-GW-Edition Artemis!6A428D2E1AB7
MicroWorld-eScan Gen:Variant.Adware.Kazy.374062
VIPRE Antivirus Crossrider (fs)
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Symantec Trojan.ADH.2
Fortinet FortiGate Riskware/CrossRider
Kaspersky not-a-virus:WebToolbar.Win32.CrossRider.aew
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA ON
TrendMicro-HouseCall Suspicious_GEN.F47V0803
NANO AntiVirus Trojan.Win32.Crossrider.ddtgol
Tencent Nsis.Adware.Adwapper.Ligx
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Zillya Trojan.GoogUpdate.Win32.1571
F-Prot W32/A-04c00d5a!Eldorado
K7 AntiVirus Trojan ( 0049c6b31 )
K7GW Trojan ( 0049c6b31 )
Avira ADWARE/CrossRider.Gen2
Trend Micro TROJ_GEN.R0C1C0OJE14
Vba32 AntiVirus AdWare.Adwapper
Antiy-AVL Trojan/NSIS.GoogUpdate
4ebd3a84-d0b8-478a-bd1c-cd0853512430-7.exe (MD5: 66192e998dae96d18b29252a664ceebd) has been flagged by 38 scanners:
Scanner Software Result
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Dr.Web Trojan.Crossrider.31451
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AM
F-Prot W32/S-9ad4719b!Eldorado
G Data Win32.Adware.Crossrider.M
IKARUS anti.virus Trojan.GoogUpdate
K7 AntiVirus Adware ( 004a90bb1 )
K7GW Adware ( 004a90bb1 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.MediaPlayer.A
NANO AntiVirus Riskware.Win32.Crossrider.dedohc
Panda Antivirus Trj/Chgt.D
Qihoo-360 HEUR/Malware.QVM10.Gen
Symantec Trojan.ADH
Tencent Nsis.Adware.Adwapper.Wmiz
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.451
Antiy-AVL Trojan/NSIS.GoogUpdate
avast! Win32:Crossrider-N [PUP]
Baidu-International Trojan.Win32.GoogUpdate.aO
Fortinet FortiGate Riskware/CrossRider
McAfee Artemis!2585F4967FB6
McAfee-GW-Edition Artemis!2585F4967FB6
Sophos Mal/Generic-S
TrendMicro-HouseCall Suspicious_GEN.F47V0811
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.374109
Bitdefender Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.374109 (B)
F-Secure Gen:Variant.Adware.Kazy.374109
MicroWorld-eScan Gen:Variant.Adware.Kazy.374109
Rising Antivirus PE:Malware.Obscure!1.9C59
AhnLab-V3 PUP/Win32.CrossRider
Avira AntiVir ADWARE/CrossRider.Gen2
Trend Micro TROJ_GEN.R0C1C0OJE14
4ebd3a84-d0b8-478a-bd1c-cd0853512430-6.exe (MD5: 7259701a11ed3e685e0662e94f6b4fbb) has been flagged by 45 scanners:
Scanner Software Result
AhnLab-V3 Win-PUP/CrossRider
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper.ai
avast! Win32:Crossrider-AI [PUP]
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Baidu-International Adware.NSIS.Adwapper.aC
CAT-QuickHeal AdWare.NSIS.r6 (Not a Virus)
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31452
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Adware/Adwapper
G Data Win32.Adware.Crossrider.M
K7 AntiVirus Unwanted-Program ( 004a9d061 )
K7GW Unwanted-Program ( 004a9d061 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Malwarebytes PUP.Optional.MediaPlayer.A
McAfee Artemis!7259701A11ED
McAfee-GW-Edition BehavesLike.Win32.PUP.jh
NANO AntiVirus Riskware.Win32.CrossRider.dednub
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.366
Sophos AppRider
Symantec Trojan.ADH.2
Tencent Nsis.Adware.Adwapper.Afhp
Trend Micro TROJ_GEN.R0C1C0EJH14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJH14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.439
F-Prot W32/S-9ad4719b!Eldorado
nProtect Trojan-Clicker/W32.Agent.520552
Rising Antivirus PE:Malware.Obscure!1.9C59
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.132996
Bitdefender Gen:Variant.Adware.Kazy.132996
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.132996 (B)
F-Secure Gen:Variant.Adware.Kazy.132996
IKARUS anti.virus Trojan.GoogUpdate
MicroWorld-eScan Gen:Variant.Adware.Kazy.132996
Agnitum Outpost PUA.Toolbar.CrossRider!
Bkav FE W32.ATVC_VuschekpoLTO.Trojan
Avira AntiVir ADWARE/CrossRider.Gen2
Clam AntiVirus Win.Trojan.Crossrider-92
Jiangmin Adware/Adload.ayk

Software Behaviors

Scheduled tasks:
  • 69a60bd4-3428-45e2-9fad-738dbaa592b7-6.exe is scheduled as a task named '731b28ed-138e-45a5-af8b-7ef590e61293-6'.
  • 69efcec7-d631-4282-9507-399ab4f32f1d-6.exe is scheduled as a task named 'temp_69efcec7-d631-4282-9507-399ab4f32f1d-6'.
  • 69efcec7-d631-4282-9507-399ab4f32f1d-2.exe is scheduled as a task named 'temp_69efcec7-d631-4282-9507-399ab4f32f1d-2'.
  • 9eb145f8-eba1-48d6-a2b4-521e2b12aaf5-2.exe is scheduled as a task named 'temp_9eb145f8-eba1-48d6-a2b4-521e2b12aaf5-2'.

Startup Entries

Startup tasks:
  • 69a60bd4-3428-45e2-9fad-738dbaa592b7-6.exe is automatically launched at startup through a scheduled task named 5d2076bc-d559-4c68-aca0-29a2e5982b96-7.
  • da88ba2e-9420-4d54-af4c-2f8b240e6716-7.exe is automatically launched at startup through a scheduled task named da88ba2e-9420-4d54-af4c-2f8b240e6716-1.
  • da88ba2e-9420-4d54-af4c-2f8b240e6716-6.exe is automatically launched at startup through a scheduled task named da88ba2e-9420-4d54-af4c-2f8b240e6716-6.
  • da88ba2e-9420-4d54-af4c-2f8b240e6716-5.exe is automatically launched at startup through a scheduled task named da88ba2e-9420-4d54-af4c-2f8b240e6716-5_user.
  • da88ba2e-9420-4d54-af4c-2f8b240e6716-4.exe is automatically launched at startup through a scheduled task named da88ba2e-9420-4d54-af4c-2f8b240e6716-4.
  • da88ba2e-9420-4d54-af4c-2f8b240e6716-11.exe is automatically launched at startup through a scheduled task named da88ba2e-9420-4d54-af4c-2f8b240e6716-3.

Software Details

URL:
https://crossrider.com
Support:
–
Installation path:
C:\Program Files\videos mediaplay-air
Uninstaller:
C:\Program Files\videos MediaPlay-Air\Uninstall.exe /fcp=1
Size:
11.00 MB
Language:
English

videos MediaPlay-Air Executable Details

Primary executable:
utils.exe
Name:
videos MediaPlay-Air
Path:
C:\Program Files\videos mediaplay-air\utils.exe
MD5:
–
SHA-1:
–
SHA-256:
–
Files installed by videos MediaPlay-Air
File Type Filename MD5
EXE
ab91a7350a5fddcdf0a7b0c60e8e4e71
EXE
a0bdc8051a740904d9e5f24d697f6875
EXE
53bc0f15681573e97a83bd18a2a44a7e
EXE
6b35026f6666f9c7c96e8bb09ebee4e8
EXE
6a428d2e1ab730601039a1f1bc533306
EXE
66192e998dae96d18b29252a664ceebd
EXE
7259701a11ed3e685e0662e94f6b4fbb
EXE
f5c4aa8e070524d1f6234f514b838034
EXE
782c663099b843fb15f801584f6e8631
EXE
548f436588086abcc061ef9d7c7d24c5