84,488,480 programs installed

Should I remove Easy Deals?

What percent of users and experts removed it?
86% remove it14% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Global Rank #46,358
Reach 0.0017%
Lifespan of installation (until removal)
< 14.10 days
416.06 days >
Average installed length: 218.61 days

Versions

VersionDistribution
1.35.3.9 8.82%
1.34.8.12 11.76%
1.34.7.29 8.82%
1.34.7.1 5.88%
1.34.6.10 5.88%
1.34.5.12 50.00%
1.34.4.10 8.82%

Easy Deals

What is Easy Deals?

Easy Deals is an advertising supported browser extension also known as adware and is designed to deliver ads to the user's Internet browser as banners, context text-links and transitionals ads. The injected ads are not affiliated with the underlying website on which they appear. This program displays content by inserting into the web pages or displaying over parts of such web page advertisements, banner or coupons that would not otherwise appear. Injected ad placements may contain links to further information about the ad ("About this Ad"). This adware component will also report the browsing habits of the user as well as URLs and domain names the user visits so that it can update check for new offers and the placement of offers. It will also monitor and record that advertisements that appear on web pages as well as the ads the user clicks on.

Overview

The most common release is 1.34.5.12, with over 98% of all installations currently using this version. During setup, the program registers itself to launch on boot through a Windows Schedule Task in order to automatically start-up (this is typically done to avoid any UAC prompts). It adds a Browser Helper Object (BHO) to Internet Explorer. A scheduled task is added to Windows Task Scheduler in order to launch the program at various scheduled times (the schedule varies depending on the version). Once installed, it will add an extension to both the Firefox and Chrome web browsers. The primary executable is named Easy Deals-nova.dll. A majority of users end up uninstalling this less than a week of it being installed. The setup package generally installs about 92 files and is usually about 4.2 MB (4,399,378 bytes).

This browser extension utilizes Crossrider framework, a cross-browser toolbar/plugin platform used to develop, deploy and monetize web browser toolbars for Internet Explorer, Chrome and Firefox. Crossrider extension provide monetization options, mostly potentially unwanted apps, for toolbars including coupons, search assistant (home page and search hijacking) and in-text contextual advertising. Many adware programs (defined by a number of anti-virus vendors) are built using Crossrider as it provides a quick an easy way to deploy ad-supported features that will assist in browser search hijacking.
  • Malware detected in the program
  • Automatically starts with Windows
  • Adds a toolbar to IE and an extension to Chrome and Firefox
  • Uses the Crossrider toolbar framework
  • During install it may hijack/modify the browser's homepage and search provider
  • Runs disconnected from the browser as a background process
  • Typically distributed through a pay-per-install bundle
  • Injects advertisements unassociated with the underlying web page
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in Easy Deals.
5e0faaf0-e595-4968-bd6b-2e8d60133818-4.exe (9da20deac3c8ee3e19c0a1a26abc0875) has been flagged by the following 35 scanners:
Anti-Virus softwareVersionDetection
Lavasoft Ad-Aware 807 Gen:Variant.Adware.Kazy.433849
AhnLab-V3 2014.11.01 PUP/Win32.CrossRider
avast! 2014.9-141120 Win32:Crossrider-AP [PUP]
AVG 2015.0.3285 Generic
Avira 7.11.182.144 Adware/CrossRider.pm
AVware 1.5.0.21 Crossrider (fs)
Baidu-International 4.0.3.141120 Adware.Win32.GoogUpdate.ap
Bitdefender 1.0.20.1620 Gen:Variant.Adware.Kazy.433849
CAT-QuickHeal 11.14.14.00 Trojan.NSIS.g5
Clam AntiVirus 0.98/21411 Win.Adware.Agent-13776
Dr.Web 9.0.0.0324 Trojan.Crossrider.27969
Emsisoft Anti-Malware 8.14.11.20.11 Gen:Variant.Adware.Kazy.433849
ESET-NOD32 8.10651 a variant of Win32/Toolbar.CrossRider.AX
Fortinet FortiGate 11/20/2014 W32/GoogUpdate.AK!tr
F-Prot v6.4.7.1.166 W32/A-222a040e
F-Secure 11.2014-20-11_5 Gen:Variant.Adware.Kazy.433849
G Data 14.11.24 Gen:Variant.Adware.Kazy.433849
IKARUS anti.virus t3scan.1.8.3.0 Trojan.GoogUpdate
K7 AntiVirus 13.185.13866 Trojan
K7GW 13.185.13866 Trojan ( 0049ee4a1 )
Kaspersky 14.0.0.2918 Trojan.NSIS.GoogUpdate
Malwarebytes v2014.11.20.11 PUP.Optional.CrossRider.A
McAfee 5600.6941 Artemis!9DA20DEAC3C8
McAfee-GW-Edition 7.6941 BehavesLike.Win32.BadFile.th
MicroWorld-eScan 15.0.0.972 Gen:Variant.Adware.Kazy.433849
NANO AntiVirus 0.28.6.62995 Riskware.Win32.Crossrider.dechiw
nProtect 14.10.31.01 Trojan/W32.Agent.1418608
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Sophos 4.98 Generic PUA IH
Symantec 11/20/2014 rev. 5 Trojan.ADH
Tencent 1.0.0.1 Nsis.Trojan.Googupdate.Hxgc
Trend Micro 10.465.20 TROJ_SPNR.35JF14
TrendMicro-HouseCall 7.2.324 TROJ_SPNR.35JF14
VIPRE Antivirus 34404 Crossrider (fs)
Zillya 2.0.0.1973 Trojan.GoogUpdate.Win32.204
d5a090b9-e2fc-4649-93e4-6899a7d5068b-11.exe (a81c8f2878c5b916089017945257bb33) has been flagged by the following 31 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Plush.1
AhnLab-V3 2014.10.14.00 PUP/Win32.CrossRider
avast! 8.0.1489.320 Win32:Crossrider-AI [PUP]
AVG 14.0.0.4040 Derzany.BD6
Avira 7.11.177.228 Adware/Plush.geru
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 PUA.Win32.CrossRider.BAV
Bitdefender 7.2 Gen:Variant.Adware.Plush.1
Clam AntiVirus 0.98.4.0 Win.Adware.Agent-10610
Dr.Web 7.0.10.8210 Trojan.Crossrider.32067
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Plush.1 (B)
ESET-NOD32 10555 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate 5.1.152.0 Riskware/CrossRider
F-Prot 4.7.1.166 W32/A-fe3c301b!Eldorado
F-Secure 11.0.19100.45 Gen:Variant.Adware.Plush.1
G Data 24 Gen:Variant.Adware.Plush.1
IKARUS anti.virus T3.1.7.8.0 Trojan.GoogUpdate
K7 AntiVirus 9.183.13662 Unwanted-Program ( 004a9f381 )
K7GW 9.183.13662 Unwanted-Program ( 004a9f381 )
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Malwarebytes 1.75.0.1 PUP.Optional.CrossRider.A
McAfee 6.0.5.614 Artemis!A81C8F2878C5
McAfee-GW-Edition v2014.2 BehavesLike.Win32.BadFile.th
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Plush.1
NANO AntiVirus 0.28.2.62483 Riskware.Win32.Crossrider.deokow
Panda Antivirus 10.0.4.2 Trj/Chgt.H
Qihoo-360 1.0.0.1015 HEUR/QVM10.1.Malware.Gen
Sophos 4.98.0 Generic PUA BF
Symantec 20141.1.0.330 Adware.Crossid
Tencent 1.0.0.1 Nsis.Trojan.Googupdate.Lkxg
Zillya 2.0.0.1953 Trojan.GoogUpdate.Win32.2466
44e92dd9-4064-4d29-837c-c0ae7f0864c4-11.exe (4e670273f1c9d561522b7c96207e2b5f) has been flagged by the following 29 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11453572
Avira AntiVir 7.11.166.180 Adware/CrossRider.A.14331
Antiy-AVL 1.0.0.1 GrayWare[AdWare:not-a-virus]/Win32.AdLoad
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAK
Bitdefender 7.2 Trojan.Generic.11453572
Comodo Security 19159 ApplicUnwnt
Dr.Web 7.0.9.4080 Trojan.Crossrider.27028
Emsisoft Anti-Malware 3.0.0.600 Trojan.Generic.11453572 (B)
ESET-NOD32 10239 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Secure 11.0.19100.45 Trojan.Generic.11453572
G Data 24 Trojan.Generic.11453572
IKARUS anti.virus T3.1.6.1.0 not-a-virus:WebToolbar.CrossRider
K7 AntiVirus 9.183.13014 Trojan ( 0049c2ce1 )
K7GW 9.183.13014 Trojan ( 0049c2ce1 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CrossRider.agq
McAfee 6.0.4.564 Artemis!4E670273F1C9
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11453572
NANO AntiVirus 0.28.2.61519 Riskware.Win32.AdLoad.dbrfst
nProtect 2014-08-11.01 Trojan.Generic.11453572
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.7a4
Rising Antivirus 25.0.0.11 PE:Trojan.Win32.Generic.170F7B84!386890628
Sophos 4.98.0 Generic PUA OO
Symantec 20131.1.5.61 Trojan.Gen.2
Trend Micro 9.740.0.1012 TROJ_GEN.R0CBC0OG914
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CBC0OG914
VIPRE Antivirus 32134 Crossrider (fs)
Easy Deals-nova.exe (fcb05ebc73a578b34fd04cea460408d3) has been flagged by the following 29 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11444693
Agnitum Outpost 5.5.1.3 PUA.AdLoad!
AhnLab-V3 2014.08.12.00 PUP/Win32.Toolbar
Avira AntiVir 7.11.166.180 Adware/CrossRider.A.14518
Antiy-AVL 1.0.0.1 Trojan/Win32.TSGeneric
AVG 14.0.0.4007 Generic_r.PP
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BAE
Bitdefender 7.2 Trojan.Generic.11444693
Comodo Security 19159 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Trojan.Generic.11444693 (B)
ESET-NOD32 10239 a variant of Win32/Toolbar.CrossRider.AE
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Secure 11.0.19100.45 Trojan.Generic.11444693
G Data 24 Trojan.Generic.11444693
IKARUS anti.virus T3.1.6.1.0 PUA.PlusHD
K7 AntiVirus 9.183.13014 Trojan ( 00499dd31 )
K7GW 9.183.13014 Trojan ( 00499dd31 )
McAfee 6.0.4.564 RDN/Generic PUP.x!cj3
McAfee-GW-Edition 2013.2 RDN/Generic PUP.x!cj3
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11444693
nProtect 2014-08-11.01 Trojan.Generic.11444693
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.fca
Sophos 4.98.0 Generic PUA IK
Symantec 20131.1.5.61 Trojan.Gen.2
Trend Micro 9.740.0.1012 TROJ_GEN.R047C0EGR14
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R047C0EGR14
VIPRE Antivirus 32134 Crossrider (fs)
Easy Deals-codedownloader.exe (daf6915978632ae6123ba1545a3f355a) has been flagged by the following 28 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Kazy.402573
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
Avira AntiVir 7.11.166.180 Adware/CrossRider.A.14357
Antiy-AVL 1.0.0.1 Trojan/Win32.TSGeneric
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAJ
Bitdefender 7.2 Gen:Variant.Adware.Kazy.402573
Comodo Security 19159 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Kazy.402573 (B)
ESET-NOD32 10239 a variant of Win32/Toolbar.CrossRider.AJ
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Prot 4.7.1.166 W32/A-eb9ef301!Eldorado
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.402573
G Data 24 Gen:Variant.Adware.Kazy.402573
IKARUS anti.virus T3.1.6.1.0 not-a-virus:WebToolbar.CrossRider
K7 AntiVirus 9.183.13014 Trojan ( 0049bec01 )
K7GW 9.183.13014 Trojan ( 0049bec01 )
McAfee 6.0.4.564 RDN/Generic PUP.x!chw
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.402573
NANO AntiVirus 0.28.2.61519 Riskware.Win32.AdLoad.dbpnob
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.52a
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 AppRider
Symantec 20131.1.5.61 WS.Reputation.1
Trend Micro 9.740.0.1012 TROJ_GEN.R0CBC0PGK14
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CBC0PGK14
VIPRE Antivirus 32134 Crossrider (fs)
Easy Deals-bho.dll (603454418e7bbdeb27c910a06c05500f) has been flagged by the following 28 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11457336
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CroRi!
Avira AntiVir 7.11.160.166 Adware/CrossRider.A.14830
Antiy-AVL 1.0.0.1 Trojan/Win32.TSGeneric
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BAF
Bitdefender 7.2 Trojan.Generic.11457336
Comodo Security 18849 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Trojan.Generic.11457336 (B)
ESET-NOD32 10094 a variant of Win32/Toolbar.CrossRider.AF
Fortinet FortiGate 5.1.152.0 Riskware/CroRi
F-Prot 4.7.1.166 W32/A-eb9ef301!Eldorado
F-Secure 11.0.19100.45 Trojan.Generic.11457336
G Data 24 Trojan.Generic.11457336
IKARUS anti.virus T3.1.6.1.0 AdWare.CrossRider
K7 AntiVirus 9.180.12719 Trojan ( 0049b1a81 )
K7GW 9.180.12719 Trojan ( 0049b1a81 )
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CroRi.ez
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.CroRi.ez.(kcloud)
McAfee 6.0.4.564 RDN/Generic PUP.x!cgx
McAfee-GW-Edition 2014.2 BehavesLike.Win32.PUP.hh
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11457336
Panda Antivirus 10.0.3.5 Trj/Chgt.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.493
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 AppRider
Symantec 20131.1.5.61 WS.Reputation.1
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R092C0PG614
VIPRE Antivirus 31272 Crossrider (fs)
44e92dd9-4064-4d29-837c-c0ae7f0864c4-4.exe (0465a75802473b18c407e59c9e81a504) has been flagged by the following 27 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11439170
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
AhnLab-V3 2014.08.12.00 Trojan/Win32.Gen
Avira AntiVir 7.11.166.180 Adware/CrossRider.A.14202
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BAK
Bitdefender 7.2 Trojan.Generic.11439170
Comodo Security 19161 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Trojan.Generic.11439170 (B)
ESET-NOD32 10239 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Secure 11.0.19100.45 Trojan.Generic.11439170
G Data 24 Trojan.Generic.11439170
IKARUS anti.virus T3.1.6.1.0 not-a-virus:WebToolbar.CrossRider
K7 AntiVirus 9.183.13014 Trojan ( 0049c2ce1 )
K7GW 9.183.13014 Trojan ( 0049c2ce1 )
McAfee 6.0.4.564 RDN/Generic PUP.x!ch3
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11439170
nProtect 2014-08-11.01 Trojan.Generic.11439170
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.205
Rising Antivirus 25.0.0.11 PE:Trojan.Win32.Generic.170F79B9!386890169
Sophos 4.98.0 Generic PUA DD
Symantec 20131.1.5.61 Trojan.Gen.2
Trend Micro 9.740.0.1012 TROJ_GEN.R0CBC0EG914
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CBC0EG914
VIPRE Antivirus 32134 Crossrider (fs)
4687970a-3c72-4da9-ab9b-abc02e5fab8f-2.exe (110ef871cdb4efd6efb410e8dd96af49) has been flagged by the following 27 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11362819
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
Avira AntiVir 7.11.166.100 Adware/CrossRider.A.5369
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
AVG 14.0.0.4007 Generic_r.OG
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.40
Bitdefender 7.2 Trojan.Generic.11362819
Comodo Security 19144 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Trojan.Generic.11362819 (B)
ESET-NOD32 10232 a variant of Win32/Toolbar.CrossRider.AJ
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Prot 4.7.1.166 W32/A-eb9ef301!Eldorado
F-Secure 11.0.19100.45 Trojan.Generic.11362819
G Data 24 Trojan.Generic.11362819
K7 AntiVirus 9.183.12998 Trojan ( 004984e91 )
K7GW 9.183.12998 Trojan ( 004984e91 )
McAfee 6.0.4.564 RDN/Generic PUP.x!cg3
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11362819
nProtect 2014-08-10.01 Trojan.Generic.11362819
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.3c4
Sophos 4.98.0 AppRider
Symantec 20131.1.5.61 Trojan.Gen.2
Trend Micro 9.740.0.1012 TROJ_GEN.R0CBC0PGH14
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CBC0PGH14
VIPRE Antivirus 32094 Crossrider (fs)
44e92dd9-4064-4d29-837c-c0ae7f0864c4-5.exe (a5e9d2c344af7a7375c6aebe0519e3a6) has been flagged by the following 26 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11453064
AhnLab-V3 2014.08.12.00 PUP/Win32.CrossRider
Avira AntiVir 7.11.166.180 Adware/CrossRider.A.15366
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAH
Bitdefender 7.2 Trojan.Generic.11453064
Comodo Security 19159 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Trojan.Generic.11453064 (B)
ESET-NOD32 10239 a variant of Win32/Toolbar.CrossRider.AH
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Secure 11.0.19100.45 Trojan.Generic.11453064
G Data 24 Trojan.Generic.11453064
IKARUS anti.virus T3.1.6.1.0 not-a-virus:WebToolbar.CrossRider
K7 AntiVirus 9.183.13014 Trojan ( 0049b6e01 )
K7GW 9.183.13014 Trojan ( 0049b6e01 )
McAfee 6.0.4.564 RDN/Generic PUP.x!cjq
McAfee-GW-Edition 2013.2 RDN/Generic PUP.x!cjq
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11453064
NANO AntiVirus 0.28.2.61519 Riskware.Win32.AdLoad.dbrdvm
nProtect 2014-08-11.01 Trojan.Generic.11453064
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.7bd
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 Generic PUA PE
Symantec 20131.1.5.61 WS.Reputation.1
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R047B01GI14
VIPRE Antivirus 32134 Crossrider (fs)
5e0faaf0-e595-4968-bd6b-2e8d60133818-11.exe (0a4e023b2cbcf5bfde82803a4fa75e88) has been flagged by the following 25 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Plush.1
AhnLab-V3 2014.09.01.00 PUP/Win32.CrossRider
Avira AntiVir 7.11.170.74 Adware/CrossRider.pm
AVG 14.0.0.4015 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Bitdefender 7.2 Gen:Variant.Adware.Plush.1
Dr.Web 7.0.10.8210 Trojan.Crossrider.27972
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Plush.1 (B)
ESET-NOD32 10346 a variant of Win32/Toolbar.CrossRider.AK
F-Prot 4.7.1.166 W32/A-b38b90e7!Eldorado
F-Secure 11.0.19100.45 Gen:Variant.Adware.Plush.1
G Data 24 Gen:Variant.Adware.Plush.1
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
K7 AntiVirus 9.183.13218 Trojan ( 0049ee4a1 )
K7GW 9.183.13218 Trojan ( 0049ee4a1 )
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.ck.(kcloud)
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Plush.1
NANO AntiVirus 0.28.2.61861 Trojan.Win32.Crossrider.ddthyp
nProtect 2014-09-01.01 Trojan/W32.Agent.1888112
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Symantec 20141.1.0.330 WS.Reputation.1
VIPRE Antivirus 32728 Crossrider (fs)
Zillya 2.0.0.1907 Trojan.GoogUpdate.Win32.339
5e0faaf0-e595-4968-bd6b-2e8d60133818-5.exe (36a0b33b5d02b9183d3f3e6c36c5f879) has been flagged by the following 23 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Plush.2
Avira AntiVir 7.11.170.74 Adware/CrossRider.pm
AVG 14.0.0.4015 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Bitdefender 7.2 Gen:Variant.Adware.Plush.2
Dr.Web 7.0.10.8210 Trojan.Crossrider.27975
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Plush.2 (B)
ESET-NOD32 10346 a variant of Win32/Toolbar.CrossRider.AH
F-Secure 11.0.19100.45 Gen:Variant.Adware.Plush.2
G Data 24 Gen:Variant.Adware.Plush.2
IKARUS anti.virus T3.1.7.5.0 not-a-virus:WebToolbar.CroRi
K7 AntiVirus 9.183.13218 Trojan ( 0049ee411 )
K7GW 9.183.13218 Trojan ( 0049ee411 )
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.ck.(kcloud)
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Plush.2
NANO AntiVirus 0.28.2.61861 Trojan.Win32.Crossrider.ddtivz
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Symantec 20141.1.0.330 PUA.Gen
VIPRE Antivirus 32728 Crossrider (fs)
Zillya 2.0.0.1907 Trojan.GoogUpdate.Win32.210
d5a090b9-e2fc-4649-93e4-6899a7d5068b-2.exe (ff8537d22429963f953d2df7b5e52f06) has been flagged by the following 23 scanners:
Anti-Virus softwareSoftware versionDetection
avast! 8.0.1489.320 Win32:Crossrider-AG [PUP]
AVG 14.0.0.4040 Derzany.BD6
Avira 7.11.177.228 Adware/Plush.geru
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 PUA.Win32.CrossRider.bAV
Dr.Web 7.0.10.8210 Trojan.Crossrider.32368
ESET-NOD32 10555 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate 5.1.152.0 W32/GoogUpdate.AV!tr
G Data 24 Win32.Adware.Crossrider.L
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
McAfee 6.0.5.614 Artemis!FF8537D22429
McAfee-GW-Edition v2014.2 BehavesLike.Win32.BadFile.dh
NANO AntiVirus 0.28.2.62483 Trojan.Win32.GoogUpdate.devypv
Panda Antivirus 10.0.4.2 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Malware.Radar01.Gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 Generic PUA GD
Symantec 20141.1.0.330 Adware.Crossid
Tencent 1.0.0.1 Nsis.Trojan.Googupdate.Egxx
Vba32 AntiVirus 3.12.26.3 AdWare.Adwapper
VIPRE Antivirus 33888 Crossrider (fs)
Zillya 2.0.0.1953 Trojan.GoogUpdate.Win32.2233
4687970a-3c72-4da9-ab9b-abc02e5fab8f-4.exe (bdbbb2359754bf0248e4e81dbd6b441a) has been flagged by the following 21 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11434874
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
Avira AntiVir 7.11.166.100 Adware/CrossRider.A.5451
Antiy-AVL 1.0.0.1 Trojan/Win32.TSGeneric
avast! 8.0.1489.320 Win32:Malware-gen
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 PUA.Win32.CrossRider.bAK
Bitdefender 7.2 Trojan.Generic.11434874
Comodo Security 19146 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.600 Trojan.Generic.11434874 (B)
ESET-NOD32 10232 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
F-Secure 11.0.19100.45 Trojan.Generic.11434874
G Data 24 Trojan.Generic.11434874
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 6.0.4.564 RDN/Generic PUP.x!cgr
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11434874
nProtect 2014-08-10.01 Trojan.Generic.11434874
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0C1C0PGJ14
VIPRE Antivirus 32094 Crossrider (fs)
077c5e32-ee31-4d17-8208-4043bd048cc0-3.exe (594d816bcf763d86598548ab1153b25e) has been flagged by the following 21 scanners:
Anti-Virus softwareSoftware versionDetection
AegisLab 1.5 Troj.W32.Gen
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
AhnLab-V3 2014.11.10.00 PUP/Win32.CrossRider
avast! 8.0.1489.320 Win32:Crossrider-AP [PUP]
Avira 7.11.183.206 Adware/CrossRider.A.2585
AVware 1.5.0.21 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAD
Comodo Security 20033 Application.Win32.Plush.GRI
Dr.Web 7.0.10.8210 Trojan.Crossrider.27550
ESET-NOD32 10695 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.0.999.0 Riskware/Toolbar_CrossRider
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CrossRider.agq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.CrossRider.A
McAfee 6.0.5.614 Artemis!594D816BCF76
McAfee-GW-Edition v2014.2 BehavesLike.Win32.AdwareCross.th
NANO AntiVirus 0.28.6.62995 Trojan.Win32.Crossrider.dfxnsz
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.f08
Sophos 4.98.0 Generic PUA BF
Symantec 20141.1.0.330 PUA.Gen.2
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R002C0EJJ14
d5a090b9-e2fc-4649-93e4-6899a7d5068b-4.exe (79d1e5dfc8c1b12efc1d2b346bfa2107) has been flagged by the following 20 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.10.14.00 PUP/Win32.CrossRider
avast! 8.0.1489.320 Win32:Crossrider-AI [PUP]
AVG 14.0.0.4040 Derzany.BD6
Avira 7.11.177.228 Adware/Plush.geru
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 PUA.Win32.CrossRider.bAV
Dr.Web 7.0.10.8210 Trojan.Crossrider.32028
ESET-NOD32 10555 a variant of Win32/Toolbar.CrossRider.AV
F-Prot 4.7.1.166 W32/A-2da5f9d7!Eldorado
K7 AntiVirus 9.183.13662 Unwanted-Program ( 004a9f371 )
K7GW 9.183.13662 Unwanted-Program ( 004a9f371 )
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.CrossRider.A
NANO AntiVirus 0.28.2.62483 Riskware.Win32.Crossrider.deoiek
Panda Antivirus 10.0.4.2 Trj/Genetic.gen
Symantec 20141.1.0.330 Adware.Crossid
Tencent 1.0.0.1 Nsis.Trojan.Googupdate.Akyz
VIPRE Antivirus 33888 Crossrider (fs)
Zillya 2.0.0.1953 Trojan.GoogUpdate.Win32.2234
9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-7.exe (80f151e6106309676adc97b6bdd943d6) has been flagged by the following 20 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 14.0.0.4015 Derzany.BD6
Avira 7.11.171.172 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.GoogUpdate.AmeU
Comodo Security 19481 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.31757
ESET-NOD32 10401 a variant of Win32/Toolbar.CrossRider.AM
F-Prot 4.7.1.166 W32/S-9ad4719b!Eldorado
IKARUS anti.virus T3.1.7.8.0 Trojan.GoogUpdate
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
McAfee 6.0.4.564 Artemis!80F151E61063
McAfee-GW-Edition v2014.2 Artemis
NANO AntiVirus 0.28.2.61942 Trojan.Win32.Crossrider.denouv
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Sophos 4.98.0 Generic PUA HN
Symantec 20141.1.0.330 WS.Reputation.1
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0906
VIPRE Antivirus 33014 Crossrider (fs)
9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-4.exe (bb07247d71d367f1cfd3292966cca105) has been flagged by the following 19 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.09.12.00 PUP/Win32.CrossRider
AVG 14.0.0.4015 Derzany.BD6
Avira 7.11.171.172 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.GoogUpdate.AD
Comodo Security 19481 ApplicUnwnt
Dr.Web 7.0.10.8210 Trojan.Crossrider.31767
ESET-NOD32 10401 a variant of Win32/Toolbar.CrossRider.AQ
IKARUS anti.virus T3.1.7.8.0 Trojan.GoogUpdate
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
McAfee 6.0.4.564 Artemis!BB07247D71D3
McAfee-GW-Edition v2014.2 BehavesLike.Win32.Trojan.th
NANO AntiVirus 0.28.2.61942 Trojan.Win32.GoogUpdate.deofza
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Sophos 4.98.0 Generic PUA LJ
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0906
VIPRE Antivirus 33014 Crossrider (fs)
Zillya 2.0.0.1917 Trojan.GoogUpdate.Win32.2131
4687970a-3c72-4da9-ab9b-abc02e5fab8f-3.exe (1c21e9f3a11baaee481a7f8b0ea8273d) has been flagged by the following 19 scanners:
Anti-Virus softwareSoftware versionDetection
AegisLab 1.5 Troj.W32.Gen
AhnLab-V3 2014.11.10.00 PUP/Win32.CrossRider
avast! 8.0.1489.320 Win32:PUP-gen [PUP]
Avira 7.11.183.214 Adware/CrossRider.A.5455
AVware 1.5.0.21 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAK
Comodo Security 20033 Application.Win32.Plush.GRI
ESET-NOD32 10695 a variant of Win32/Toolbar.CrossRider.AK
Fortinet FortiGate 5.0.999.0 Riskware/Toolbar_CrossRider
Kaspersky 12.0.0.1225 not-a-virus:WebToolbar.Win32.CrossRider.agq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.CrossRider.A
McAfee 6.0.5.614 Artemis!1C21E9F3A11B
McAfee-GW-Edition v2014.2 BehavesLike.Win32.AdwareCross.th
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.0a4
Symantec 20141.1.0.330 Trojan.Gen.2
Trend Micro 9.740.0.1012 TROJ_GEN.R0C1C0EHP14
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0C1C0EHP14
VIPRE Antivirus 34640 Crossrider (fs)
05d235a7-2cad-4b22-ab50-6c66460006fe-5.exe (501f22a059c812c136ceb7422f392adc) has been flagged by the following 18 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Plush.2
Avira AntiVir 7.11.169.68 Adware/CrossRider.pm
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Bitdefender 7.2 Gen:Variant.Adware.Plush.2
Dr.Web 7.0.9.4080 Trojan.Crossrider.30805
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Plush.2 (B)
ESET-NOD32 10314 a variant of Win32/Toolbar.CrossRider.AH
F-Secure 11.0.19100.45 Gen:Variant.Adware.Plush.2
G Data 24 Gen:Variant.Adware.Plush.2
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.cq.(kcloud)
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Plush.2
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Malware.QVM10.Gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
VIPRE Antivirus 32544 Crossrider (fs)
05d235a7-2cad-4b22-ab50-6c66460006fe-11.exe (86041c389b9f3c508cc7ab49a0dede5f) has been flagged by the following 18 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Plush.1
AhnLab-V3 2014.08.26.00 PUP/Win32.CrossRider
Avira AntiVir 7.11.169.68 Adware/CrossRider.pm
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Bitdefender 7.2 Gen:Variant.Adware.Plush.1
Dr.Web 7.0.9.4080 Trojan.Crossrider.30846
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Plush.1 (B)
ESET-NOD32 10314 a variant of Win32/Toolbar.CrossRider.AK
F-Prot 4.7.1.166 W32/A-b38b90e7!Eldorado
F-Secure 11.0.19100.45 Gen:Variant.Adware.Plush.1
G Data 24 Gen:Variant.Adware.Plush.1
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.cq.(kcloud)
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Plush.1
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
VIPRE Antivirus 32544 Crossrider (fs)
9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-6.exe (c80f0126937339d7351397af59744e46) has been flagged by the following 18 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 14.0.0.4015 Derzany.BD6
Avira 7.11.171.168 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 Adware.Win32.GoogUpdate.aiJJ
Comodo Security 19477 ApplicUnwnt
ESET-NOD32 10399 a variant of Win32/Toolbar.CrossRider.AP
IKARUS anti.virus T3.1.7.8.0 PUA.PlusHD
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
McAfee 6.0.4.564 Artemis!C80F01269373
McAfee-GW-Edition v2014.2 BehavesLike.Win32.BadFile.jh
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Trojan.933
Sophos 4.98.0 Generic PUA NH
Symantec 20141.1.0.330 WS.Reputation.1
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0905
VIPRE Antivirus 33008 Crossrider (fs)
Zillya 2.0.0.1917 Trojan.GoogUpdate.Win32.2142
5e0faaf0-e595-4968-bd6b-2e8d60133818-7.exe (197f1e8d4bfa4cf4039ac45a4599b4da) has been flagged by the following 17 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.170.84 Adware/CrossRider.pm
AVG 14.0.0.4015 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Dr.Web 7.0.10.8210 Trojan.Crossrider.27978
ESET-NOD32 10348 a variant of Win32/Toolbar.CrossRider.AJ
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
K7 AntiVirus 9.183.13230 Trojan ( 0049ee4f1 )
K7GW 9.183.13230 Trojan ( 0049ee4f1 )
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
NANO AntiVirus 0.28.2.61942 Trojan.Win32.Crossrider.ddtiif
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Sophos 4.98.0 Generic PUA FF
Symantec 20141.1.0.330 WS.Reputation.1
Vba32 AntiVirus 3.12.26.3 Trojan.GoogUpdate
VIPRE Antivirus 32734 Crossrider (fs)
Zillya 2.0.0.1908 Trojan.GoogUpdate.Win32.307
5e0faaf0-e595-4968-bd6b-2e8d60133818-6.exe (faa8c491472fcce5a024d72ea1131ba3) has been flagged by the following 16 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 Trojan.GoogUpdate!
AhnLab-V3 2014.09.02.00 PUP/Win32.CrossRider
Avira AntiVir 7.11.170.84 Adware/CrossRider.pm
AVG 14.0.0.4015 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Dr.Web 7.0.10.8210 Trojan.Crossrider.29493
ESET-NOD32 10348 a variant of Win32/Toolbar.CrossRider.AE
IKARUS anti.virus T3.1.7.5.0 PUA.PlusHD
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
NANO AntiVirus 0.28.2.61942 Trojan.Win32.GoogUpdate.dedblg
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Trojan.cf5
Symantec 20141.1.0.330 WS.Reputation.1
Vba32 AntiVirus 3.12.26.3 Trojan.GoogUpdate
VIPRE Antivirus 32734 Crossrider (fs)
Zillya 2.0.0.1908 Trojan.GoogUpdate.Win32.280
d5a090b9-e2fc-4649-93e4-6899a7d5068b-5.exe (e8acb036cc272a024a5b8d4c9513f3ec) has been flagged by the following 15 scanners:
Anti-Virus softwareSoftware versionDetection
avast! 8.0.1489.320 Win32:Crossrider-AG [PUP]
AVG 14.0.0.4040 Derzany.BD6
Avira 7.11.177.228 Adware/Plush.geru
AVware 1.5.0.16 Crossrider (fs)
Baidu-International 3.5.1.41473 PUA.Win32.CrossAd.77
ESET-NOD32 10555 a variant of Win32/Toolbar.CrossRider.AV
G Data 24 Win32.Adware.Crossrider.L
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
NANO AntiVirus 0.28.2.62483 Riskware.Win32.Crossrider.depwpn
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Symantec 20141.1.0.330 Adware.Crossid
Tencent 1.0.0.1 Nsis.Trojan.Googupdate.Amci
Vba32 AntiVirus 3.12.26.3 AdWare.Adwapper
Zillya 2.0.0.1953 Trojan.GoogUpdate.Win32.2276
9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-11.exe (0be0a97fdc2f0dc12851596f6b7574c3) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Plush.1
AhnLab-V3 2014.09.04.00 PUP/Win32.CrossRider
Avira 7.11.170.208 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Bitdefender 7.2 Gen:Variant.Adware.Plush.1
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Plush.1 (B)
F-Secure 11.0.19100.45 Gen:Variant.Adware.Plush.1
G Data 24 Gen:Variant.Adware.Plush.1
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Plush.1
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
VIPRE Antivirus 32794 Crossrider (fs)
05d235a7-2cad-4b22-ab50-6c66460006fe-2.exe (33de4d5a83deeb02591c69cab06463c1) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.169.68 Adware/CrossRider.pm
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Dr.Web 7.0.9.4080 Trojan.Crossrider.30806
ESET-NOD32 10314 a variant of Win32/Toolbar.CrossRider.AJ
G Data 24 Win32.Adware.Crossrider.L
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.cq.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Symantec 20141.1.0.330 Adware.Crossid!gen1
VIPRE Antivirus 32544 Crossrider (fs)
9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-5.exe (5a2e2623c6b1c9994dcc6b280f0202a2) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Plush.2
Avira 7.11.170.208 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
Bitdefender 7.2 Gen:Variant.Adware.Plush.2
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Plush.2 (B)
F-Secure 11.0.19100.45 Gen:Variant.Adware.Plush.2
G Data 24 Gen:Variant.Adware.Plush.2
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Plush.2
Panda Antivirus 10.0.3.5 Trj/CI.A
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
VIPRE Antivirus 32794 Crossrider (fs)
0d244725-8fd0-4ce2-823d-bad1a419050f-5.exe (9bac61b545398d0df279232db7c92e64) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Kazy.374109
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Bitdefender 7.2 Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware 3.0.0.600 Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 10249 a variant of Win32/Toolbar.CrossRider.AH
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.374109
G Data 24 Gen:Variant.Adware.Kazy.374109
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.374109
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
VIPRE Antivirus 32176 Crossrider (fs)
5e0faaf0-e595-4968-bd6b-2e8d60133818-2.exe (ecd27a502516b169e12da2e13c039757) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.168.222 Adware/CrossRider.pm
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Dr.Web 7.0.9.4080 Trojan.Crossrider.28162
ESET-NOD32 10297 a variant of Win32/Toolbar.CrossRider.AJ
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
NANO AntiVirus 0.28.2.61721 Trojan.Win32.Crossrider.ddtjeb
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Symantec 20141.1.0.330 Adware.Crossid!gen1
VIPRE Antivirus 32444 Crossrider (fs)
Zillya 2.0.0.1899 Trojan.GoogUpdate.Win32.285
05d235a7-2cad-4b22-ab50-6c66460006fe-4.exe (31d8ddc2cde4f010775c7e45d57cfc70) has been flagged by the following 11 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.08.26.00 PUP/Win32.CrossRider
Avira AntiVir 7.11.169.68 Adware/CrossRider.pm
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Dr.Web 7.0.9.4080 Trojan.Crossrider.30811
ESET-NOD32 10314 a variant of Win32/Toolbar.CrossRider.AK
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.cq.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
VIPRE Antivirus 32544 Crossrider (fs)
05d235a7-2cad-4b22-ab50-6c66460006fe-7.exe (7466555780a8a90f8c7279a85a344cc1) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.169.68 Adware/CrossRider.pm
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
Dr.Web 7.0.9.4080 Trojan.Crossrider.30801
ESET-NOD32 10314 a variant of Win32/Toolbar.CrossRider.AJ
IKARUS anti.virus T3.1.7.5.0 AdWare.Adload
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.cq.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
VIPRE Antivirus 32544 Crossrider (fs)
05d235a7-2cad-4b22-ab50-6c66460006fe-6.exe (482716a4840c2ed3d880bd415e63e948) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.169.68 Adware/CrossRider.pm
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
ESET-NOD32 10314 a variant of Win32/Toolbar.CrossRider.AE
F-Prot 4.7.1.166 W32/A-04c00d5a!Eldorado
IKARUS anti.virus T3.1.7.5.0 PUA.PlusHD
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.cq.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
VIPRE Antivirus 32544 Crossrider (fs)
9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-2.exe (f3e8af19814e8001f3a8fa16d5f68286) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira 7.11.170.218 ADWARE/CrossRider.Gen2
AVware 1.5.0.16 Crossrider (fs)
G Data 24 Win32.Adware.Crossrider.L
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.da
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.da.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
Sophos 4.98.0 Generic PUA FF
VIPRE Antivirus 32800 Crossrider (fs)
0d244725-8fd0-4ce2-823d-bad1a419050f-6.exe (f767d710ce5aaa876f81fd9eb051f21b) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
ESET-NOD32 10265 a variant of Win32/Toolbar.CrossRider.AE
IKARUS anti.virus T3.1.7.5.0 PUA.PlusHD
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.ck.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 Win32/Trojan.cf5
VIPRE Antivirus 32270 Crossrider (fs)
0d244725-8fd0-4ce2-823d-bad1a419050f-2.exe (20c096d17282d6236586fb4719b82bae) has been flagged by the following 8 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
ESET-NOD32 10249 a variant of Win32/Toolbar.CrossRider.AJ
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.ck.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Rising Antivirus 25.0.0.11 PE:Malware.Obscure!1.9C59
VIPRE Antivirus 32176 Crossrider (fs)
0d244725-8fd0-4ce2-823d-bad1a419050f-7.exe (97fc304736af5861d4c15ce770fca3ae) has been flagged by the following 8 scanners:
Anti-Virus softwareSoftware versionDetection
avast! 8.0.1489.320 Win32:Malware-gen
AVG 14.0.0.4007 Generic.614
AVware 1.5.0.16 Crossrider (fs)
ESET-NOD32 10249 a variant of Win32/Toolbar.CrossRider.AJ
Kaspersky 12.0.0.1225 Trojan.NSIS.GoogUpdate.cq
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.NSIS.ck.(kcloud)
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
VIPRE Antivirus 32176 Crossrider (fs)
4687970a-3c72-4da9-ab9b-abc02e5fab8f-5.exe (b2ff11c142f0e7ec35b673f33aacfb8e) has been flagged by the following 4 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.96 Adware/CrossRider.A.5368
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.AA
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0524
VIPRE Antivirus 29856 Crossrider (fs)
       View all 687 all detections
Easy Deals has been found to be bundled with 3rd party software. If you have not purposefully installed this, you should be safe uninstalling it.

Program detailsProgram details

Displayed publisher: Adassistent
Installation folder: C:\Program Files\easy deals
Uninstaller: C:\Program Files\Easy Deals\Uninstall.exe /fcp=1
Estimated size: 4.2 MB

Program filesFiles installed by Easy Deals

Program module:Easy Deals-nova.dll
Path:C:\Program Files\easy deals\Easy Deals-nova.dll
MD5:dcb523b9b4f21e5438c6e700250f300b
Additional files:
  • (Malware detected) 05d235a7-2cad-4b22-ab50-6c66460006fe-11.exe (by Adassistent) - Easy Deals (Easy Deals exe)
  • (Malware detected) 05d235a7-2cad-4b22-ab50-6c66460006fe-2.exe (by Adassistent)
  • (Malware detected) 05d235a7-2cad-4b22-ab50-6c66460006fe-4.exe
  • (Malware detected) 05d235a7-2cad-4b22-ab50-6c66460006fe-5.exe
  • (Malware detected) 05d235a7-2cad-4b22-ab50-6c66460006fe-6.exe
  • 05d235a7-2cad-4b22-ab50-6c66460006fe-64.exe
  • (Malware detected) 05d235a7-2cad-4b22-ab50-6c66460006fe-7.exe
  • (Malware detected) 077c5e32-ee31-4d17-8208-4043bd048cc0-3.exe
  • 0d244725-8fd0-4ce2-823d-bad1a419050f-11.exe
  • (Malware detected) 0d244725-8fd0-4ce2-823d-bad1a419050f-2.exe
  • 0d244725-8fd0-4ce2-823d-bad1a419050f-4.exe
  • (Malware detected) 0d244725-8fd0-4ce2-823d-bad1a419050f-5.exe
  • (Malware detected) 0d244725-8fd0-4ce2-823d-bad1a419050f-6.exe
  • 0d244725-8fd0-4ce2-823d-bad1a419050f-64.exe
  • (Malware detected) 0d244725-8fd0-4ce2-823d-bad1a419050f-7.exe
  • (Malware detected) 44e92dd9-4064-4d29-837c-c0ae7f0864c4-11.exe
  • (Malware detected) 44e92dd9-4064-4d29-837c-c0ae7f0864c4-4.exe
  • (Malware detected) 44e92dd9-4064-4d29-837c-c0ae7f0864c4-5.exe
  • (Malware detected) 4687970a-3c72-4da9-ab9b-abc02e5fab8f-2.exe
  • (Malware detected) 4687970a-3c72-4da9-ab9b-abc02e5fab8f-3.exe
  • (Malware detected) 4687970a-3c72-4da9-ab9b-abc02e5fab8f-4.exe
  • (Malware detected) 4687970a-3c72-4da9-ab9b-abc02e5fab8f-5.exe
  • (Malware detected) 5e0faaf0-e595-4968-bd6b-2e8d60133818-11.exe
  • (Malware detected) 5e0faaf0-e595-4968-bd6b-2e8d60133818-2.exe
  • (Malware detected) 5e0faaf0-e595-4968-bd6b-2e8d60133818-4.exe
  • (Malware detected) 5e0faaf0-e595-4968-bd6b-2e8d60133818-5.exe
  • (Malware detected) 5e0faaf0-e595-4968-bd6b-2e8d60133818-6.exe
  • (Malware detected) 5e0faaf0-e595-4968-bd6b-2e8d60133818-7.exe
  • 8bd896b5-48bf-4ebb-91d3-b06fea16abdc-11.exe
  • 8bd896b5-48bf-4ebb-91d3-b06fea16abdc-2.exe
  • 8bd896b5-48bf-4ebb-91d3-b06fea16abdc-4.exe
  • 8bd896b5-48bf-4ebb-91d3-b06fea16abdc-5.exe
  • 8bd896b5-48bf-4ebb-91d3-b06fea16abdc-6.exe
  • 8bd896b5-48bf-4ebb-91d3-b06fea16abdc-64.exe
  • 8bd896b5-48bf-4ebb-91d3-b06fea16abdc-7.exe
  • (Malware detected) 9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-11.exe
  • (Malware detected) 9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-2.exe
  • (Malware detected) 9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-4.exe
  • (Malware detected) 9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-5.exe
  • (Malware detected) 9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-6.exe
  • 9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-64.exe
  • (Malware detected) 9ff11593-e98d-499a-ad1d-28bdb9b9f8ee-7.exe
  • b1ce5e73-9f2f-41a9-b753-8af26107755f-11.exe
  • b1ce5e73-9f2f-41a9-b753-8af26107755f-2.exe
  • b1ce5e73-9f2f-41a9-b753-8af26107755f-4.exe
  • (Malware detected) d5a090b9-e2fc-4649-93e4-6899a7d5068b-11.exe
  • (Malware detected) d5a090b9-e2fc-4649-93e4-6899a7d5068b-2.exe
  • (Malware detected) d5a090b9-e2fc-4649-93e4-6899a7d5068b-4.exe
  • (Malware detected) d5a090b9-e2fc-4649-93e4-6899a7d5068b-5.exe
  • e6b37079-07ab-43fe-b7a7-6480f6ca4776-64.exe
  • e7268c7d-003a-46cf-b399-61e2202e670c-11.exe
  • e7268c7d-003a-46cf-b399-61e2202e670c-4.exe
  • e7268c7d-003a-46cf-b399-61e2202e670c-5.exe
  • e7268c7d-003a-46cf-b399-61e2202e670c-7.exe
  • Easy Deals-bg.exe
  • (Malware detected) Easy Deals-bho.dll - Easy Deals BHO
  • Easy Deals-bho64.dll
  • (Malware detected) Easy Deals-codedownloader.exe
  • (Malware detected) Easy Deals-nova.exe
  • 360-39994.crx

Program behaviorsBehaviors exhibited

Internet Explorer BHO
  • Easy Deals-bho.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'Easy Deals' with the class of {11111111-1111-1111-1111-110311991194} (CrossriderApp0039994).
Scheduled Task
  • 4687970a-3c72-4da9-ab9b-abc02e5fab8f-3.exe is scheduled as a task named '4687970a-3c72-4da9-ab9b-abc02e5fab8f-3'.
40 Scheduled Tasks (Boot/Login)
  • e7268c7d-003a-46cf-b399-61e2202e670c-7.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-1.
  • e7268c7d-003a-46cf-b399-61e2202e670c-5.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-5_user.
  • e7268c7d-003a-46cf-b399-61e2202e670c-4.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-4.
  • e7268c7d-003a-46cf-b399-61e2202e670c-11.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-11.
  • Easy Deals-codedownloader.exe is automatically launched at startup through a scheduled task named 44e92dd9-4064-4d29-837c-c0ae7f0864c4-6.
  • Easy Deals-nova.exe is automatically launched at startup through a scheduled task named 44e92dd9-4064-4d29-837c-c0ae7f0864c4-7.
  • Plus 34 more

How do I remove Easy Deals?

You can uninstall Easy Deals from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program Easy Deals, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove Easy Deals.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by Easy Deals you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

OS VERSIONS
Win 7 (SP1) 50%
Win XP 3%
 
HOW IT STARTS
Scheduled task? Yes
(Runs on Windows boot)
 
USER ACTIONS
Uninstall it 86%
Keep it 14%

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 52.94%
Windows 10 44.12%
Windows XP 2.94%
Which OS releases does it run on?
Windows 7 Home Premium 26.47%
Windows 8.1 23.53%
Windows 7 Ultimate 14.71%
Windows 7 Home Basic 8.82%
Windows 8 5.88%
Windows 8.1 Single Langua... 5.88%

Distribution by countryGeography

43.48% of installs come from the United States
Which countries install it?
  United States 43.48%
  Brazil 28.26%
  Australia 15.22%
  Canada 4.35%
  United Kingdom 4.35%
  Norway 2.17%
  Italy 2.17%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Hewlett-Packard 30.77%
Dell 19.23%
Toshiba 15.38%
Acer 15.38%
Samsung 11.54%
ASUS 7.69%
Common models
Samsung 300V3A/300V4A/300... 6.67%
TOSHIBA Satellite C50-B 6.67%
Samsung RV415/RV515 6.67%
PHILCO 14D 3.33%
INTELBRAS IE-G31TM7 3.33%
HP Pavilion dv6 Notebook ... 3.33%

About (from WebPick Internet Holdings Ltd.)

The InstalleReX pay per install platform will help you promote your applications.
Publisher URL: installerex.com

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.