Home Malware Programs Adware Adware.MediaPlayerplus

Adware.MediaPlayerplus

Posted: March 26, 2014

Threat Metric

Ranking: 1,430
Threat Level: 2/10
Infected PCs: 94,014
First Seen: March 26, 2014
Last Seen: March 8, 2025
OS(es) Affected: Windows


Adware.MediaPlayerplus is adware that may show non-stop pop-up ads, discount coupons, offers, sponsored links, deals and sales via a pop-up box on various online shopping websites or other websites that are visited by computer users. The pop-up ads of Adware.MediaPlayerplus may be shown as boxes, which may carry numerous discount coupons and sale deals which, if clicked, may show pop-up advertisements and banners on the PC that may state to supposedly come to the PC user by Adware.MediaPlayerplus. Adware.MediaPlayerplus may embed a browser extension, plug-in or add-on in Internet Explorer, Mozilla Firefox and Google Chrome Web browsers when the computer user installs various free programs from questionable download websites that might had packed into their installation Adware.MediaPlayerplus. When the PC user installs a free tool, he may also install Adware.MediaPlayerplus on the computer system.

Aliases

Generic5.AULN [AVG]Generic PUA DK [Sophos]Adware/CrossRider.A.6391 [AntiVir]Trojan.Crossrider.17967 [DrWeb]Artemis!8DDC4132DAD0 [McAfee]Win32.Application.Plush.A [GData]Adware/CrossRider.A.6462 [AntiVir]Trojan.Crossrider.18512 [DrWeb]Artemis!7B2E54655F93 [McAfee]GrayWare[AdWare:not-a-virus]/Win32.Lyckriks [Antiy-AVL]AppRider [Sophos]Adware/CrossRider.A.6374 [AntiVir]Trojan.Crossrider.17730 [DrWeb]Win32:Adware-gen [Adw] [Avast]Adware.Crossid [Symantec]
More aliases (37)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Media_Play_AIR+_1.1\Media_Play_AIR+_1.1-codedownloader.exe File name: Media_Play_AIR+_1.1-codedownloader.exe
Size: 509.76 KB (509760 bytes)
MD5: 2fad4a95a355d49acdd90b9664e2face
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\Media_Play_AIR+\5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-2.exe File name: 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-2.exe
Size: 363.84 KB (363840 bytes)
MD5: 53de7c5aa8ff56b7196467d2b55fd583
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Media_Play_AIR+
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+_1.1\cb7f5cd8-7b5e-477e-b472-a69047b1f0b1-2.exe File name: cb7f5cd8-7b5e-477e-b472-a69047b1f0b1-2.exe
Size: 362.3 KB (362304 bytes)
MD5: 2a647d365c0f5ed03264bfbedf3956a1
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+_1.1\Media_Play_AIR+_1.1-nova.exe File name: Media_Play_AIR+_1.1-nova.exe
Size: 591.68 KB (591680 bytes)
MD5: 8e68359467e82f4708e30685a52a33cc
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+_1.1\57f693fe-1ae0-425d-a3cd-94abd7f1eede-3.exe File name: 57f693fe-1ae0-425d-a3cd-94abd7f1eede-3.exe
Size: 1.89 MB (1895232 bytes)
MD5: 7b40a9f65786424086691619b4be13a6
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+_1.1\Media_Play_AIR+_1.1-novainstaller.exe File name: Media_Play_AIR+_1.1-novainstaller.exe
Size: 509.76 KB (509760 bytes)
MD5: 7b82194d11956f661cd88e58b021a482
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+_1.1\Media_Play_AIR+_1.1-bho64.dll File name: Media_Play_AIR+_1.1-bho64.dll
Size: 735.04 KB (735040 bytes)
MD5: a25f8bc52bd8ce14db778589cd680f5e
Detection count: 30
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%APPDATA%\ZSJYYTO.exe File name: ZSJYYTO.exe
Size: 1.98 MB (1984928 bytes)
MD5: 470eeafcd32db0ecdb32e7dae8d37b9d
Detection count: 30
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: September 9, 2014
%PROGRAMFILES%\Media_Play_AIR+_1.1\57f693fe-1ae0-425d-a3cd-94abd7f1eede-2.exe File name: 57f693fe-1ae0-425d-a3cd-94abd7f1eede-2.exe
Size: 362.3 KB (362304 bytes)
MD5: 2cda5953295f4da683b530c606633efc
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\Media_Play_AIR+_1.1\57f693fe-1ae0-425d-a3cd-94abd7f1eede-4.exe File name: 57f693fe-1ae0-425d-a3cd-94abd7f1eede-4.exe
Size: 835.39 KB (835392 bytes)
MD5: 6992f649af1df6b3647d638213d39a4e
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%APPDATA%\JVA.exe File name: JVA.exe
Size: 1.53 MB (1536928 bytes)
MD5: bae6f618ae7d5312eef0f0e1e8141949
Detection count: 23
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: September 9, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+\Media_Play_AIR+-codedownloader.exe File name: Media_Play_AIR+-codedownloader.exe
Size: 511.8 KB (511808 bytes)
MD5: d2125ccf84c9dd6d642a3286f6158ae0
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+\91b456c1-be2d-4c3a-a875-6101ffc02aa9-5.exe File name: 91b456c1-be2d-4c3a-a875-6101ffc02aa9-5.exe
Size: 460.09 KB (460096 bytes)
MD5: 56a8ebcd7df85094e3e749a9826e2b26
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\Media_Play_AIR+_1.1\Media_Play_AIR+_1.1-bho.dll File name: Media_Play_AIR+_1.1-bho.dll
Size: 540.48 KB (540480 bytes)
MD5: 6c2b0eab23a5b1635b332053735b61f4
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Media_Play_AIR+_1.1
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+\91b456c1-be2d-4c3a-a875-6101ffc02aa9-2.exe File name: 91b456c1-be2d-4c3a-a875-6101ffc02aa9-2.exe
Size: 364.35 KB (364352 bytes)
MD5: da4e7f4bc309a0adf667cf1daf87cf26
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES(x86)%\Media_Play_AIR+\91b456c1-be2d-4c3a-a875-6101ffc02aa9-4.exe File name: 91b456c1-be2d-4c3a-a875-6101ffc02aa9-4.exe
Size: 836.41 KB (836416 bytes)
MD5: a894edaced779a8b713c4760b25c4202
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Media_Play_AIR+
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\Media_Play_AIR+\5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-4.exe File name: 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-4.exe
Size: 837.95 KB (837952 bytes)
MD5: cb443784fc8c64c70b128537abe6b9be
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Media_Play_AIR+
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\Media_Play_AIR+\5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-3.exe File name: 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-3.exe
Size: 1.89 MB (1897280 bytes)
MD5: f980161b53470074c3f2d49fe487d02e
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Media_Play_AIR+
Group: Malware file
Last Updated: June 24, 2019
%PROGRAMFILES%\Media_Play_AIR+\5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-5.exe File name: 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-5.exe
Size: 459.58 KB (459584 bytes)
MD5: abc6afdebdb9077690140990ef529165
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Media_Play_AIR+
Group: Malware file
Last Updated: June 5, 2014
%PROGRAMFILES%\media_play_air+\media_play_air+-bg.exe File name: media_play_air+-bg.exe
Size: 560.44 KB (560448 bytes)
MD5: b0b3e5eaa2baab969bba90ff19453fa0
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\media_play_air+
Group: Malware file
Last Updated: June 5, 2014

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{11111111-1111-1111-1111-110511421146}{11111111-1111-1111-1111-110511801124}{11111111-1111-1111-1111-110511841188}{22222222-2222-2222-2222-220522422246}{22222222-2222-2222-2222-220522802224}{22222222-2222-2222-2222-220522842288}{44444444-4444-4444-4444-440544424446}{44444444-4444-4444-4444-440544804424}{44444444-4444-4444-4444-440544844488}{55555555-5555-5555-5555-550555425546}{55555555-5555-5555-5555-550555805524}{55555555-5555-5555-5555-550555845588}{66666666-6666-6666-6666-660566426646}{66666666-6666-6666-6666-660566806624}{66666666-6666-6666-6666-660566846688}HKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\Crossrider\onBeforeNavigate\58024Software\AppDataLow\Software\Crossrider\onBeforeNavigate\58488Software\AppDataLow\Software\Crossrider\onRequest\58024Software\AppDataLow\Software\Crossrider\onRequest\58488Software\AppDataLow\Software\Media_Play_AIR+Software\AppDataLow\Software\Media_Play_AIR+_1.1Software\AppDataLow\Software\MediaPlayer+Software\AppDataLow\Software\MediaPlayerplusSoftware\AppDataLow\Software\videos MediaPlayer+SOFTWARE\Classes\CrossriderApp0054246.BHOSOFTWARE\Classes\CrossriderApp0054246.BHO.1SOFTWARE\Classes\CrossriderApp0054246.SandboxSOFTWARE\Classes\CrossriderApp0054246.Sandbox.1SOFTWARE\Classes\CrossriderApp0058024.BHOSOFTWARE\Classes\CrossriderApp0058024.BHO.1SOFTWARE\Classes\CrossriderApp0058024.SandboxSOFTWARE\Classes\CrossriderApp0058024.Sandbox.1SOFTWARE\Classes\CrossriderApp0058488.BHOSOFTWARE\Classes\CrossriderApp0058488.BHO.1SOFTWARE\Classes\CrossriderApp0058488.SandboxSOFTWARE\Classes\CrossriderApp0058488.Sandbox.1Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Media_Play_AIR+Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\Media_Play_AIR+_1.1Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\MediaPlayer+Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\MediaPlayerplusSoftware\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\windows_ie_ac_001\Software\videos MediaPlayer+Software\InstalledBrowserExtensions\21636\54246Software\InstalledBrowserExtensions\enter\58024Software\InstalledBrowserExtensions\enter\58488Software\InstalledBrowserExtensions\enter\64201SOFTWARE\MediaPlayerplusSoftware\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511421146}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511801124}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110511841188}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33dccc52-db81-4504-a0d5-1efd5b614a15}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5aa214cd-4fed-4aeb-b23f-ab4871d5ba55}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{601f51d6-3ec0-4162-a5e8-afe8d0aa5c15}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a26a1c38-20d9-4b07-be91-51d897026f14}SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Media_Play_AIR+_1.1-bg.exeSOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\MediaPlayerplus-bg.exeSOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\videos MediaPlayer+-bg.exeSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-chromeinstaller.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-chromeinstaller.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-codedownloader.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-codedownloader.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-enabler.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-enabler.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-firefoxinstaller.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-firefoxinstaller.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-updater.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\MediaPlayerplus-updater.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MediaPlayerplus-chromeinstallerSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MediaPlayerplus-codedownloaderSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MediaPlayerplus-enablerSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MediaPlayerplus-firefoxinstallerSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\MediaPlayerplus-updaterSOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421146}SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511841188}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511421146}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511801124}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11111111-1111-1111-1111-110511841188}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511421146}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511801124}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11111111-1111-1111-1111-110511841188}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421146}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511801124}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511841188}Software\Mozilla\Firefox\Extensions\{6619DA4C-9029-1D7C-EFCE-B6F88505E646}SOFTWARE\videos MediaPlayer+-nvSOFTWARE\Wow6432Node\InstalledBrowserExtensions\21636\54246SOFTWARE\Wow6432Node\Media_Play_AIR+SOFTWARE\Wow6432Node\Media_Play_AIR+_1.1SOFTWARE\Wow6432Node\MediaPlayer+SOFTWARE\Wow6432Node\MediaPlayerplusSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33dccc52-db81-4504-a0d5-1efd5b614a15}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5aa214cd-4fed-4aeb-b23f-ab4871d5ba55}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{601f51d6-3ec0-4162-a5e8-afe8d0aa5c15}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{a26a1c38-20d9-4b07-be91-51d897026f14}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Media_Play_AIR+-bg.exeSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Media_Play_AIR+_1.1-bg.exeSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\MediaPlayerplus-bg.exeSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\videos MediaPlayer+-bg.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511421146}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{11111111-1111-1111-1111-110511841188}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511421146}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511801124}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110511841188}SOFTWARE\Wow6432Node\videos MediaPlayer+SOFTWARE\Wow6432Node\videos MediaPlayer+-nvHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Media_Play_AIR+MediaPlayer+MediaPlayerplus

Additional Information

The following directories were created:
%PROGRAMFILES%\MediaPlayer+%PROGRAMFILES%\MediaPlayerplus%PROGRAMFILES%\Media_Play_AIR+%PROGRAMFILES%\Media_Play_AIR+_1.1%PROGRAMFILES%\video MediaPlay-Air%PROGRAMFILES%\videos MediaPlayer+%PROGRAMFILES(X86)%\Media_Play_AIR+%PROGRAMFILES(x86)%\MediaPlayer+%PROGRAMFILES(x86)%\MediaPlayerplus%PROGRAMFILES(x86)%\Media_Play_AIR+_1.1%PROGRAMFILES(x86)%\video MediaPlay-Air%PROGRAMFILES(x86)%\videos MediaPlayer+
The following URL's were detected:
MediaPlayerplusmediaplayer10.com
Loading...