Home Malware Programs Potentially Unwanted Programs (PUPs) Rich Media View

Rich Media View

Posted: May 16, 2014

Threat Metric

Ranking: 4,491
Threat Level: 2/10
Infected PCs: 28,733
First Seen: May 16, 2014
Last Seen: October 13, 2023
OS(es) Affected: Windows


Rich Media View is a browser extension that may state to make the Internet surfing quality better by displaying website content and advertisements linked to a PC user's interests. Rich Media View is categorized as adware or a potentially unwanted program (PUP). Rich Media View may spread and be installed on the computer system as an optional program bundled with freeware. After installation on the Web browsers such as Internet Explorer, Google Chrome, and Mozilla Firefox, Rich Media View may generate and display disturbing banner, pop-under, pop-up, and interstitial advertisements. Rich Media View may track the computer user's Internet surfing routine by recording Internet service providers allocated to the device, IP addresses, URLs of webpages visited, anti-virus software installed, and other information.

Aliases

Skodna.Generic_r.HW [AVG]Adware/Win32.BetterSurf [AhnLab-V3]Heuristic.BehavesLike.Win32.Suspicious.H [McAfee-GW-Edition]ADWARE/Adware.Gen [AntiVir]Application.Win32.AdWare.BetterSurf.C [Comodo]BetterSurf [Sophos]not-a-virus:AdWare.Win32.BetterSurf.b [Kaspersky]Adware-BetterSurf [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\richmediaplayer.exe File name: richmediaplayer.exe
Size: 54.47 MB (54479128 bytes)
MD5: 4b3804a0b990f709ca35b612ae66872a
Detection count: 7,766
File type: Executable File
Mime Type: unknown/exe
Path: %LOCALAPPDATA%
Group: Malware file
Last Updated: March 7, 2023
%PROGRAMFILES%\RichMediaViewV1\RichMediaViewV1release4004\ie\RichMediaViewV1release4004.dll File name: RichMediaViewV1release4004.dll
Size: 87.55 KB (87552 bytes)
MD5: 03aff03e5ee73519443645745ceff035
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\RichMediaViewV1\RichMediaViewV1release4004\ie
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\RichMediaViewV1\RichMediaViewV1release7051\ie\RichMediaViewV1release7051.dll File name: RichMediaViewV1release7051.dll
Size: 87.55 KB (87552 bytes)
MD5: 86125e747fb18236fcdb6a17122dd2c5
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\RichMediaViewV1\RichMediaViewV1release7051\ie
Group: Malware file
Last Updated: June 13, 2014
%PROGRAMFILES%\RichMediaViewV1\RichMediaViewV1release2655\ie\RichMediaViewV1release2655.dll File name: RichMediaViewV1release2655.dll
Size: 87.55 KB (87552 bytes)
MD5: 701189fba7f81302e4de4c89608ff1fc
Detection count: 9
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\RichMediaViewV1\RichMediaViewV1release2655\ie
Group: Malware file
Last Updated: June 13, 2014

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{e43fb0cb-fcdc-45d4-b693-1af634ba2cd7}SOFTWARE\RichMediaViewV1SOFTWARE\Wow6432Node\RichMediaViewV1

Additional Information

The following directories were created:
%PROGRAMFILES%\RichMediaViewV1%PROGRAMFILES(x86)%\RichMediaViewV1
Loading...