Home Malware Programs Potentially Unwanted Programs (PUPs) BrowserAir

BrowserAir

Posted: July 17, 2015

Threat Metric

Ranking: 9,252
Threat Level: 1/10
Infected PCs: 38,720
First Seen: July 16, 2015
Last Seen: February 12, 2025
OS(es) Affected: Windows

BrowserAir is one of those applications that offer numerous positive features, but end up getting deleted soon after the installation. This Potentially Unwanted Program (PUP) comes as a brand-new Chromium-based Internet client. It promises the users a very fast browsing speed, friendly design and a reliable protection of the private data. Although this functionality may seem appealing, the PUP comes with a range of other traits that are not explained adequately. You may notice that the webpages, accessed by BrowserAir, contain many more advertisements than usual. These sponsored materials are not hosted on the pages themselves but are instead created by the PUP. The suspicious browser tries to take advantage of its clients by exposing them to vast amounts of pop-ups, banners, in-text ads and interstitial ads. The philosophy behind this behavior is simple: with each redirection to the third-party affiliate sites, the developers of BrowserAir earn revenues. However, there is no guarantee whatsoever that the links will lead you to safe sites. There is a real risk that you may be redirected to phishing, fraudulent or frankly malicious pages, so you should stay away from the ads. In addition, the PUP may offer you some low-quality search engine that displays inaccurate results. Some users find it hard to remove BrowserAir manually. If you are not happy with the performance of this application, you should use a special security program to delete it.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Users\<username>\AppData\Local\BrowserAir\47.0.0.5\is-0PHTV.tmp File name: is-0PHTV.tmp
Size: 342.01 KB (342016 bytes)
MD5: b96c1ae2ef0138fa50b6848b31665843
Detection count: 1,120
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Local\BrowserAir\47.0.0.5\is-0PHTV.tmp
Group: Malware file
Last Updated: November 27, 2024
C:\Users\<username>\AppData\Local\BrowserAir\Application\BrowserAir.exe File name: BrowserAir.exe
Size: 730.11 KB (730112 bytes)
MD5: 6b5e8f677d452ced4714fc3616c0f0c5
Detection count: 759
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\BrowserAir\Application\BrowserAir.exe
Group: Malware file
Last Updated: November 28, 2023
C:\Users\<username>\AppData\Local\BrowserAir\Application\Uninstall.exe File name: Uninstall.exe
Size: 120.34 KB (120344 bytes)
MD5: da680305dca0718b4171a54de144428b
Detection count: 169
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\BrowserAir\Application\Uninstall.exe
Group: Malware file
Last Updated: November 19, 2022
C:\Users\<username>\AppData\Local\TECHP-BrowserAir\prtsvc.exe File name: prtsvc.exe
Size: 360.96 KB (360960 bytes)
MD5: 1734577abc3ddaccbaed6e65a854bb33
Detection count: 59
File type: Executable File
Mime Type: unknown/exe
Path: C:\Users\<username>\AppData\Local\TECHP-BrowserAir\prtsvc.exe
Group: Malware file
Last Updated: July 10, 2021
C:\WINDOWS\System32\drivers\sdfhgdf.sys File name: sdfhgdf.sys
Size: 23.72 KB (23720 bytes)
MD5: 5d8a755d139adb61242c0b33c2b9adfe
Detection count: 19
File type: System file
Mime Type: unknown/sys
Path: C:\WINDOWS\System32\drivers\sdfhgdf.sys
Group: Malware file
Last Updated: February 16, 2022
%LOCALAPPDATA%\brsrv\brsrv.exe File name: brsrv.exe
Size: 104.44 KB (104448 bytes)
MD5: d7c9b727bc0b6f2bd671b4b5c25e9a0b
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%\brsrv
Group: Malware file
Last Updated: May 5, 2020
%TEMP%\BrowserAirInst.exe File name: BrowserAirInst.exe
Size: 39.55 MB (39557295 bytes)
MD5: 06f7209c69a48a0a948505037e8aeb88
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: April 10, 2020

More files

Registry Modifications

The following newly produced Registry Values are:

File name without pathbraiegut_gutbl_setup.exeBrowserAir.lnkBrowserAirInst.exeRegexp file mask%WINDIR%\System32\drivers\sdfhgdf.sys%WINDIR%\System32\Tasks\BAUpd%WINDIR%\System32\Tasks\IBUpd2%WINDIR%\System32\Tasks\Installer_browserAirHKEY..\..\..\..{RegistryKeys}Software\__SP__browser_name__SP__Software\BrowserAirSOFTWARE\Microsoft\MediaPlayer\ShimInclusionList\BrowserAir.exeSOFTWARE\Microsoft\RADAR\HeapLeakDetection\DiagnosedApplications\BrowserAir.exeSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IBUpd2SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\BrowserAir.exeSOFTWARE\RegisteredApplications\BrowserAir.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\TECHPSOFTWARE\Wow6432Node\BrowserAirSOFTWARE\Wow6432Node\Microsoft\MediaPlayer\ShimInclusionList\BrowserAir.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\App Paths\BrowserAir.exeSOFTWARE\Wow6432Node\RegisteredApplications\BrowserAir.NSJA6BHDA3NCFCFMXW3QSCUYUQSOFTWARE\Wow6432Node\TECHPSYSTEM\ControlSet001\Enum\Root\LEGACY_SDFHGDFSYSTEM\ControlSet001\services\sdfhgdfSYSTEM\ControlSet002\Enum\Root\LEGACY_SDFHGDFSYSTEM\ControlSet002\services\sdfhgdfSYSTEM\CurrentControlSet\Enum\Root\LEGACY_SDFHGDFSYSTEM\CurrentControlSet\services\sdfhgdfHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}BrowserAir{773203C3-05CD-4137-A55E-C0A2B168562B}_is1

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\BrowserAir%LOCALAPPDATA%\BrowserAir%LOCALAPPDATA%\TECHP-BrowserAir%UserProfile%\Local Settings\Application Data\BrowserAir
Loading...