84,488,480 programs installed

Should I remove Media_Play_AIR+?

What percent of users and experts removed it?
83% remove it17% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Global Rank #26,633
United States Rank #23,844
Reach 0.0061%
Lifespan of installation (until removal)
< 7.71 days
227.43 days >
Average installed length: 119.50 days

Versions

VersionDistribution
1.34.5.29 100.00%

Media_Play_AIR+

What is Media_Play_AIR+?


This adware injects itself into the user's web browser (IE, Chrome and Firefox) and will display out-of context advertising on web sites that are not associated with the software or its affiliate partners. Advertisements will be displayed as banner and video ads, search related ads, transitional and in-text ads and links. The software will also periodically self-update and call home for instructions as well as additional ad feeds and reporting of how the user interacts with the software as well as what domains and web pages the user visits.

Overview

During setup, the program registers itself to launch on boot through a Windows Schedule Task in order to automatically start-up (this is typically done to avoid any UAC prompts). It adds a Browser Helper Object (BHO) to Internet Explorer. A scheduled task is added to Windows Task Scheduler in order to launch the program at various scheduled times (the schedule varies depending on the version). Once installed, it will add an extension to both the Firefox and Chrome web browsers. The main program executable is Media_Play_AIR+-bho.dll. Typically most users end up uninstalling this just after a few days. The software installer includes 32 files and is usually about 10.03 MB (10,518,865 bytes). Media_Play_AIR+-updater.exe is the automatic update component of the software designed to download and apply new updates should new versions be released.

The program is built using the Crossrider framework, a cross browser monetization platform used to deploy a toolbar and extension for modern web browsers with monetization features including browser search and homepage redirection, contextual coupons and in-line text advertising. Crossrider extensions include background processes to monitor, update and automatically download new features/code without direct user interaction.
  • Possible malware installed by this program
  • Starts automatically
  • Runs in the Firefox, Chrome and Firefox web browsers
  • Built on the Crossrider toolbar platform and potentially unwanted
  • May inject ads in the web browser
  • 'Offers' to modify the browser's home and search pages by default
  • Difficult to remove as it will reinstall itself
  • Installed as part of a co-bundle
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in Media_Play_AIR+.
Media_Play_AIR+-bho.dll (f96729ea90e8bf309e943f9ca80577c5) has been flagged by the following 8 scanners:
Anti-Virus softwareVersionDetection
Avira AntiVir 7.11.154.122 Adware/CrossRider.A.138
AVG 2015.0.3438 Generic
ESET-NOD32 8.9928 a variant of Win32/Toolbar.CrossRider.AF
IKARUS anti.virus t3scan.1.6.1.0 AdWare.Plush
Malwarebytes v2014.06.20.09 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.f12
TrendMicro-HouseCall 7.2.171 TROJ_GEN.F47V0602
VIPRE Antivirus 30190 Crossrider (fs)
Media_Play_AIR+-codedownloader.exe (2f08c8aa1b23b5b072517edc5feb5e6a) has been flagged by the following 20 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.70 Adware/CrossRider.A.6374
Antiy-AVL 0.1.0.1 GrayWare[AdWare:not-a-virus]/Win32.Lyckriks
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BX
Bitdefender 7.2 Gen:Variant.Adware.Kazy.374109
Dr.Web 7.00.9.04080 Trojan.Crossrider.17730
Emsisoft Anti-Malware 3.0.0.599 Gen:Variant.Adware.Kazy.374109 (B)
ESET-NOD32 9875 a variant of Win32/Toolbar.CrossRider.X
Fortinet FortiGate 4 Riskware/Toolbar_CrossRider
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.374109
G Data 24 Gen:Variant.Adware.Kazy.374109
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.374109
NANO AntiVirus 0.28.0.59921 Riskware.Win32.Lyckriks.czgnsf
Panda Antivirus 10.0.3.5 PUP/PlusHD
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.e9c
Sophos 4.98.0 AppRider
Symantec 20131.1.5.61 Adware.Crossid
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0530
VIPRE Antivirus 29806 Crossrider (fs)
Media_Play_AIR+-enabler.exe (7b2e54655f9316bbfc6d345c699b7d55) has been flagged by the following 15 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.70 Adware/CrossRider.A.6462
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BX
Dr.Web 7.00.9.04080 Trojan.Crossrider.18512
ESET-NOD32 9875 a variant of Win32/Toolbar.CrossRider.X
Fortinet FortiGate 4 Riskware/Toolbar_CrossRider
G Data 24 Win32.Application.Plush.A
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
McAfee 6.0.4.564 Artemis!7B2E54655F93
McAfee-GW-Edition 2013 Artemis!7B2E54655F93
Panda Antivirus 10.0.3.5 PUP/PlusHD
Sophos 4.98.0 AppRider
Symantec 20131.1.5.61 Adware.Crossid
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0530
VIPRE Antivirus 29806 Crossrider (fs)
Media_Play_AIR+-chromeinstaller.exe (e332a9b6d173f99cdd86e0b5b8d58baf) has been flagged by the following 15 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.50 Adware/CrossRider.A.6390
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BAD
Bitdefender 7.2 Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware 3.0.0.599 Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 9872 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 4 Riskware/Toolbar_CrossRider
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.374062
G Data 24 Gen:Variant.Adware.Kazy.374062
McAfee 6.0.4.564 Artemis!E332A9B6D173
McAfee-GW-Edition 2013 Artemis!E332A9B6D173
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.374062
Panda Antivirus 10.0.3.5 PUP/PlusHD
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.2df
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0530
VIPRE Antivirus 29780 Crossrider (fs)
Media_Play_AIR+-nova.exe (b6d6bfbceaa142b503a2fe19fa5607bd) has been flagged by the following 15 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 PUA.Toolbar.CrossRider!
Avira AntiVir 7.11.155.214 Adware/CrossRider.A.6742
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAE
ESET-NOD32 9973 a variant of Win32/Toolbar.CrossRider.AE
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
G Data 24 Win32.Application.Plush.A
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
McAfee 6.0.4.564 Artemis!B6D6BFBCEAA1
McAfee-GW-Edition 2013 Artemis!B6D6BFBCEAA1
Panda Antivirus 10.0.3.5 PUP/PlusHD
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.0ea
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0601
VIPRE Antivirus 30474 Crossrider (fs)
2c878fba-4668-491f-8140-950acbbefcfd-5.exe (caf7e710343cc1e4dca921a7a5854418) has been flagged by the following 14 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Gen:Variant.Adware.Kazy.374109
Avira AntiVir 7.11.152.208 Adware/CrossRider.A.6788
Baidu-International 3.5.1.41473 Adware.Win32.CrossAd.aai
Bitdefender 7.2 Gen:Variant.Adware.Kazy.374109
Emsisoft Anti-Malware 3.0.0.599 Gen:Variant.Adware.Kazy.374109 (B)
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.374109
G Data 24 Gen:Variant.Adware.Kazy.374109
IKARUS anti.virus T3.1.6.1.0 Win32.SuspectCrc
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.374109
Panda Antivirus 10.0.3.5 PUP/PlusHD
Tencent 1.0.0.1 Win32.Risk.Adware.Tcvv
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0602
VIPRE Antivirus 29894 Crossrider (fs)
91b456c1-be2d-4c3a-a875-6101ffc02aa9-2.exe (da4e7f4bc309a0adf667cf1daf87cf26) has been flagged by the following 14 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.134 Adware/CrossRider.A.5056
AVG 14.0.0.3964 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9931 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
K7 AntiVirus 9.179.12374 Unwanted-Program ( 00454f261 )
K7GW 9.179.12374 Unwanted-Program ( 00454f261 )
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
McAfee 6.0.4.564 Artemis!DA4E7F4BC309
McAfee-GW-Edition 2013 Artemis!DA4E7F4BC309
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.014
Sophos 4.98.0 AppRider
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0604
VIPRE Antivirus 30202 Crossrider (fs)
2c878fba-4668-491f-8140-950acbbefcfd-2.exe (1e9871b10b956b289d78f17ec8eee9bb) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.208 Adware/CrossRider.A.6744
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAC
ESET-NOD32 9887 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate 4 Riskware/Toolbar_CrossRider
G Data 24 Win32.Application.Plush.A
K7 AntiVirus 9.178.12292 Unwanted-Program ( 00454f261 )
K7GW 9.178.12292 Unwanted-Program ( 00454f261 )
Kingsoft AntiVirus 2013.04.09.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
Panda Antivirus 10.0.3.5 PUP/PlusHD
Sophos 4.98.0 AppRider
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0601
VIPRE Antivirus 29894 Crossrider (fs)
Media_Play_AIR+-firefoxinstaller.exe (8ddc4132dad0c4d65c057ef183b48627) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.50 Adware/CrossRider.A.6391
AVG 14.0.0.3955 Generic5.AULN
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAD
Dr.Web 7.00.9.04080 Trojan.Crossrider.17967
ESET-NOD32 9872 a variant of Win32/Toolbar.CrossRider.AD
G Data 24 Win32.Application.Plush.A
McAfee 6.0.4.564 Artemis!8DDC4132DAD0
McAfee-GW-Edition 2013 Artemis!8DDC4132DAD0
Panda Antivirus 10.0.3.5 PUP/PlusHD
Sophos 4.98.0 Generic PUA DK
Symantec 20131.1.5.61 Adware.Crossid
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0530
VIPRE Antivirus 29780 Crossrider (fs)
Media_Play_AIR+-novainstaller.exe (d2125ccf84c9dd6d642a3286f6158ae0) has been flagged by the following 12 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.153.220 Adware/CrossRider.A.1637
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9909 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate 5.1.147.0 Riskware/Toolbar_CrossRider
K7 AntiVirus 9.179.12333 Unwanted-Program ( 00454f261 )
K7GW 9.179.12333 Unwanted-Program ( 00454f261 )
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
McAfee 6.0.4.564 Artemis!D2125CCF84C9
McAfee-GW-Edition 2013 Artemis!D2125CCF84C9
Sophos 4.98.0 AppRider
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0604
VIPRE Antivirus 30052 Crossrider (fs)
dca6915e-c188-42e3-ae3b-6edb861f0320-2.exe (effdf2781ee0f123a0c5614a137dd8ab) has been flagged by the following 12 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.46 Adware/CrossRider.A.1501
AVG 14.0.0.3955 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9922 a variant of Win32/Toolbar.CrossRider.AC
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
K7 AntiVirus 9.179.12358 Unwanted-Program ( 00454f261 )
K7GW 9.179.12358 Unwanted-Program ( 00454f261 )
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.537
Sophos 4.98.0 AppRider
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0604
VIPRE Antivirus 30152 Crossrider (fs)
dca6915e-c188-42e3-ae3b-6edb861f0320-5.exe (00d7305d637b5cdb188a5a89132e4afb) has been flagged by the following 11 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.155.70 Adware/CrossRider.A.1449
Antiy-AVL 1.0.0.1 Trojan/Win32.TSGeneric
AVG 14.0.0.3972 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9958 a variant of Win32/Toolbar.CrossRider.AH
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
NANO AntiVirus 0.28.0.60253 Riskware.Win32.AdLoad.dbayto
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.088
Symantec 20131.1.5.61 WS.Reputation.1
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0604
VIPRE Antivirus 30356 Crossrider (fs)
2c878fba-4668-491f-8140-950acbbefcfd-3.exe (2b0dc580f6b3dbb110c263f14fd8e909) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAD
Bitdefender 7.2 Gen:Variant.Adware.Kazy.374062
Emsisoft Anti-Malware 3.0.0.599 Gen:Variant.Adware.Kazy.374062 (B)
ESET-NOD32 9877 a variant of Win32/Toolbar.CrossRider.AD
F-Secure 11.0.19100.45 Gen:Variant.Adware.Kazy.374062
G Data 24 Gen:Variant.Adware.Kazy.374062
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
MicroWorld-eScan 12.0.250.0 Gen:Variant.Adware.Kazy.374062
Panda Antivirus 10.0.3.5 PUP/PlusHD
VIPRE Antivirus 29836 Crossrider (fs)
5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-3.exe (f980161b53470074c3f2d49fe487d02e) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.8 Adware/CrossRider.A.112
Antiy-AVL 1.0.0.1 Trojan/Win32.TSGeneric
AVG 14.0.0.3955 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9920 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.a3e
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0602
VIPRE Antivirus 30144 Crossrider (fs)
2c878fba-4668-491f-8140-950acbbefcfd-4.exe (d250ecb22b6906c8f89cb34e7fd8b749) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.208 Adware/CrossRider.A.6649
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.bAD
ESET-NOD32 9887 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 4 Riskware/Toolbar_CrossRider
G Data 24 Win32.Application.Plush.A
Kingsoft AntiVirus 2013.04.09.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
Panda Antivirus 10.0.3.5 PUP/PlusHD
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0601
VIPRE Antivirus 29894 Crossrider (fs)
91b456c1-be2d-4c3a-a875-6101ffc02aa9-3.exe (08d2a43054fa4d27d0f676074e977637) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.130 Adware/CrossRider.A.1639
AVG 14.0.0.3964 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9930 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.077
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0604
VIPRE Antivirus 30202 Crossrider (fs)
5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-2.exe (53de7c5aa8ff56b7196467d2b55fd583) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.152.208 Adware/CrossRider.A.466
ESET-NOD32 9886 a variant of Win32/Toolbar.CrossRider.AC
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
McAfee 6.0.4.564 Artemis!53DE7C5AA8FF
McAfee-GW-Edition 2013 Artemis!53DE7C5AA8FF
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.ca3
Sophos 4.98.0 AppRider
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.F47V0603
VIPRE Antivirus 29894 Crossrider (fs)
91b456c1-be2d-4c3a-a875-6101ffc02aa9-4.exe (a894edaced779a8b713c4760b25c4202) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.136 Adware/CrossRider.A.1659
AVG 14.0.0.3964 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9931 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.b81
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0605
VIPRE Antivirus 30210 Crossrider (fs)
5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-4.exe (cb443784fc8c64c70b128537abe6b9be) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.153.246 Adware/CrossRider.A.120
AVG 14.0.0.3955 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9919 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.17d
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0602
VIPRE Antivirus 30130 Crossrider (fs)
dca6915e-c188-42e3-ae3b-6edb861f0320-3.exe (28a61f812efef94079c3456319abbe8b) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.102 Adware/CrossRider.A.761
AVG 14.0.0.3955 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
Comodo Security 18507 ApplicUnwnt
ESET-NOD32 9926 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0604
VIPRE Antivirus 30182 Crossrider (fs)
dca6915e-c188-42e3-ae3b-6edb861f0320-4.exe (df44a918168f11645e47904ae77364cd) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.46 Adware/CrossRider.A.686
AVG 14.0.0.3955 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9923 a variant of Win32/Toolbar.CrossRider.AD
Fortinet FortiGate 5.1.152.0 Riskware/Toolbar_CrossRider
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.0d9
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0603
VIPRE Antivirus 30154 Crossrider (fs)
91b456c1-be2d-4c3a-a875-6101ffc02aa9-5.exe (56a8ebcd7df85094e3e749a9826e2b26) has been flagged by the following 8 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.136 Adware/CrossRider.A.4258
AVG 14.0.0.3964 Generic.BEF
Baidu-International 3.5.1.41473 Trojan.Win32.VMDetector.108
ESET-NOD32 9931 a variant of Win32/Toolbar.CrossRider.AH
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.3b2
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0605
VIPRE Antivirus 30210 Crossrider (fs)
5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-5.exe (abc6afdebdb9077690140990ef529165) has been flagged by the following 8 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.154.44 Adware/CrossRider.A.634
AVG 14.0.0.3955 Generic.BEF
Baidu-International 3.5.1.41473 Adware.Win32.ToolBar.108
ESET-NOD32 9921 a variant of Win32/Toolbar.CrossRider.AH
Malwarebytes 1.75.0.1 PUP.Optional.MediaPlayerPlus.A
Qihoo-360 1.0.0.1015 Win32/Virus.Adware.949
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0603
VIPRE Antivirus 30146 Crossrider (fs)
Media_Play_AIR+-bho64.dll (531e952973dc5fb8b6344d885f9b0dec) has been flagged by the following 6 scanners:
Anti-Virus softwareSoftware versionDetection
Baidu-International 3.5.1.41473 Adware.Win64.Crossrider.BD
ESET-NOD32 9875 a variant of Win64/Toolbar.Crossrider.D
Malwarebytes 1.75.0001 PUP.Optional.MediaPlayerPlus.A
Panda Antivirus 10.0.3.5 PUP/PlusHD
Symantec 20131.1.5.61 Trojan.Gen.2
VIPRE Antivirus 29806 Crossrider (fs)
Media_Play_AIR+-updater.exe (e3f9e7e66bbf3ab08023cb85a8a352cf) has been flagged by the following 6 scanners:
Anti-Virus softwareSoftware versionDetection
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.BX
ESET-NOD32 9872 a variant of Win32/Toolbar.CrossRider.X
G Data 24 Win32.Application.Plush.A
Panda Antivirus 10.0.3.5 PUP/PlusHD
Symantec 20131.1.5.61 Adware.Crossid
VIPRE Antivirus 29780 Crossrider (fs)
Uninstall.exe (2e2979c126ed108a46c9dc38d5a80477) has been flagged by the following 5 scanners:
Anti-Virus softwareSoftware versionDetection
Baidu-International 3.5.1.41473 Adware.Win32.CrossAd.aai
G Data 24 Win32.Application.Plush.A
Panda Antivirus 10.0.3.5 PUP/PlusHD
Vba32 AntiVirus 3.12.26.0 suspected of Trojan.Downloader.gen.h
VIPRE Antivirus 29854 Crossrider (fs)
       View all 279 all detections
Media_Play_AIR+ has been found to be bundled with 3rd party software. If you have not purposefully installed this, you should be safe uninstalling it.

Program detailsProgram details

Displayed publisher: enter
URL: crossrider.com/install/58488-med-play-air-++
Installation folder: C:\Program Files\media_play_air+
Uninstaller: C:\Program Files\Media_Play_AIR+\Uninstall.exe /fcp=1
Estimated size: 10.03 MB

Program filesFiles installed by Media_Play_AIR+

Program module:Media_Play_AIR+-bho.dll (Malware detected)
Name:Media_Play_AIR+
Media_Play_AIR+ BHO
Path:C:\Program Files\media_play_air+\Media_Play_AIR+-bho.dll
MD5:f96729ea90e8bf309e943f9ca80577c5
Additional files:
  • (Malware detected) 2c878fba-4668-491f-8140-950acbbefcfd-2.exe (by enter) - Media_Play_AIR+ (Media_Play_AIR+ exe)
  • (Malware detected) 2c878fba-4668-491f-8140-950acbbefcfd-3.exe (by enter)
  • (Malware detected) 2c878fba-4668-491f-8140-950acbbefcfd-4.exe
  • (Malware detected) 2c878fba-4668-491f-8140-950acbbefcfd-5.exe
  • (Malware detected) 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-2.exe
  • (Malware detected) 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-3.exe
  • (Malware detected) 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-4.exe
  • (Malware detected) 5d34f10d-076a-4b95-8a7b-2e7c7e1940b5-5.exe
  • (Malware detected) 91b456c1-be2d-4c3a-a875-6101ffc02aa9-2.exe
  • (Malware detected) 91b456c1-be2d-4c3a-a875-6101ffc02aa9-3.exe
  • (Malware detected) 91b456c1-be2d-4c3a-a875-6101ffc02aa9-4.exe
  • (Malware detected) 91b456c1-be2d-4c3a-a875-6101ffc02aa9-5.exe
  • (Malware detected) dca6915e-c188-42e3-ae3b-6edb861f0320-2.exe
  • (Malware detected) dca6915e-c188-42e3-ae3b-6edb861f0320-3.exe
  • (Malware detected) dca6915e-c188-42e3-ae3b-6edb861f0320-4.exe
  • (Malware detected) dca6915e-c188-42e3-ae3b-6edb861f0320-5.exe
  • Media_Play_AIR+-bg.exe
  • (Malware detected) Media_Play_AIR+-bho.dll - Media_Play_AIR+ BHO
  • Media_Play_AIR+-bho64.dll
  • (Malware detected) Media_Play_AIR+-chromeinstaller.exe
  • (Malware detected) Media_Play_AIR+-codedownloader.exe
  • (Malware detected) Media_Play_AIR+-enabler.exe
  • (Malware detected) Media_Play_AIR+-firefoxinstaller.exe
  • (Malware detected) Media_Play_AIR+-nova.exe
  • (Malware detected) Media_Play_AIR+-novainstaller.exe
  • (Malware detected) Media_Play_AIR+-updater.exe
  • 360-58488.crx
  • 58488.crx
  • 58488.xpi
  • Media_Play_AIR+-nova.dll
  • (Malware detected) Uninstall.exe
  • utils.exe

Program behaviorsBehaviors exhibited

2 Internet Explorer BHOs
  • Media_Play_AIR+-bho64.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'Media_Play_AIR+' with the class of {11111111-1111-1111-1111-110511841188} (CrossriderApp0058488).
  • Media_Play_AIR+-bho.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'Media_Play_AIR+' with the class of {11111111-1111-1111-1111-110511841188} (CrossriderApp0058488).
Scheduled Task
  • Uninstall.exe is scheduled as a task with the class '{D72B0399-7CA2-435A-8296-7856C8114B5E}' (runs on registration).
23 Scheduled Tasks (Boot/Login)
  • dca6915e-c188-42e3-ae3b-6edb861f0320-3.exe is automatically launched at startup through a scheduled task named dca6915e-c188-42e3-ae3b-6edb861f0320-3.
  • Media_Play_AIR+-nova.exe is automatically launched at startup through a scheduled task named dca6915e-c188-42e3-ae3b-6edb861f0320-7.
  • 2c878fba-4668-491f-8140-950acbbefcfd-3.exe is automatically launched at startup through a scheduled task named 2c878fba-4668-491f-8140-950acbbefcfd-3.
  • Media_Play_AIR+-codedownloader.exe is automatically launched at startup through a scheduled task named Media_Play_AIR+-novainstaller.
  • 2c878fba-4668-491f-8140-950acbbefcfd-5.exe is automatically launched at startup through a scheduled task named 2c878fba-4668-491f-8140-950acbbefcfd-5.
  • 2c878fba-4668-491f-8140-950acbbefcfd-4.exe is automatically launched at startup through a scheduled task named 2c878fba-4668-491f-8140-950acbbefcfd-4.
  • Plus 17 more

How do I remove Media_Play_AIR+?

You can uninstall Media_Play_AIR+ from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program Media_Play_AIR+, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove Media_Play_AIR+.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by Media_Play_AIR+ you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

OS VERSIONS
Win 7 (SP1) 61%
Win XP 1%
 
HOW IT STARTS
Scheduled task? Yes
(Runs on Windows boot)
 
USER ACTIONS
Uninstall it 83%
Keep it 17%

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 64.75%
Windows 10 24.59%
Windows Vista 7.38%
Windows XP 3.28%
Which OS releases does it run on?
Windows 7 Home Premium 45.83%
Windows 8.1 13.33%
Windows 7 Professional 8.33%
Windows 7 Ultimate 7.50%
Windows Vista Home Premiu... 5.83%
Windows 8 3.33%

Distribution by countryGeography

50.00% of installs come from the United States
Which countries install it?
  United States 50.00%
  Australia 9.03%
  France 6.25%
  Brazil 5.56%
  Italy 5.56%
  United Kingdom 5.56%
  Germany 4.86%
  Canada 2.78%
  Belgium 2.08%
  Netherlands 1.39%
  Uruguay 0.69%
  Colombia 0.69%
  Finland 0.69%
  Mexico 0.69%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Acer 26.14%
Hewlett-Packard 25.00%
Dell 19.32%
ASUS 7.95%
Samsung 7.95%
Toshiba 4.55%
Lenovo 3.41%
Medion 2.27%
Apple 1.14%
GIGABYTE 1.14%
Gateway 1.14%
Common models
Digibras NH4CU53 1.96%
Gigabyte B85M-D3H 1.96%
Acer Aspire 5250 1.96%
Gigabyte H67MA-USB3-B3 1.96%
TOSHIBA Satellite C655 1.96%
Gigabyte EP35-DS3 0.98%

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.