browsers app-bg.exe

Browsers App

Sailor Project

This potentially unwanted Internet browser extension is built upon and distributed using the free Crossrider platform and will deliver advertisements to the web browser in various formats such as banner, text hyper-links, inline text and transitional ads. The application browsers app-bg.exe by Sailor Project has been detected as adware by 17 anti-malware scanners. Part of the Corssrider web browser platform, the BG executable is a background process that manage various function of the installed extensions in user's browser including managing installation, updates and remote code downloads. It is distributed as part of the Brightcircle group of browser-extensions.
Publisher:
app  (signed by Sailor Project)

Product:
Browsers App

Description:
Browsers App exe

Version:
1000.1000.1000.1000

MD5:
b3b8a1606eee649286d34fb5d8d48246

SHA-1:
57b13f5fa43e87bfbc2524c0dd2bb86d11492075

SHA-256:
a9b9f0c80b4a9d52f3dca8fc505961198255fb9e0378a15aca57b671fc628ad5

Scanner detections:
17 / 68

Status:
Adware

Explanation:
The software may change the browser's home page and search provider settings as well as display advertisements. Distributed through the Brightcircle investments brand.

Note:
Crossrider is the owner of a platform that enables the creation of cross-browser extensions by developers but is not the owner of this detected application. The owner/publisher of this file is Sailor Project.

Analysis date:
4/19/2024 8:33:43 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
ADWARE/CrossRider.Gen2
7.11.164.78

avast!
Win32:Adware-gen [Adw]
2014.9-140920

AVG
Generic
2015.0.3345

Baidu Antivirus
Adware.Win32.CrossRider
4.0.3.14920

Dr.Web
Trojan.Crossrider.17413
9.0.1.0263

ESET NOD32
Win32/Toolbar.CrossRider.AL (variant)
8.10166

F-Prot
W32/A-eb9ef301
v6.4.7.1.166

herdProtect (fuzzy)
2014.12.3.10

IKARUS anti.virus
not-a-virus:WebToolbar.CrossRider
t3scan.1.6.1.0

Kaspersky
Trojan.NSIS.GoogUpdate
14.0.0.3220

Malwarebytes
PUP.Optional.TubeHD.A
v2014.09.20.10

NANO AntiVirus
Riskware.Win32.CrossRider.dcqfdx
0.28.2.61148

Panda Antivirus
Trj/Genetic.gen
14.09.20.10

Reason Heuristics
PUP.Crossrider.SailorProject.P
14.9.20.21

Rising Antivirus
PE:Malware.Obscure!1.9C59
23.00.65.14918

Sophos
AppRider
4.98

VIPRE Antivirus
Crossrider
31694

File size:
616.9 KB (631,656 bytes)

Product version:
1000.1000.1000.1000

Copyright:
Copyright 2011

Original file name:
Browsers App.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\browsers app\browsers app-bg.exe

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
7/17/2014 7:00:00 PM

Valid to:
7/18/2015 6:59:59 PM

Subject:
CN=Sailor Project, O=Sailor Project, STREET=Athinodorou 3, STREET=Dasoupoli Strovolos, L=Nicosia, S=Cyprus, PostalCode=2025, C=CY

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
47C5F145C734CD3D086C0A102176F0A1

File PE Metadata
Compilation timestamp:
7/28/2014 8:30:53 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
12288:puRpm+bTmi0xjbNVij5Z0DiUyRa4LBKTE5zzM:pSp/2WvQL2wTr

Entry address:
0x51D68

Entry point:
E8, 5F, CC, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 68, 36, 49, 00, E8, 52, 49, 00, 00, E8, C6, 1C, 00, 00, 0F, B7, F0, 6A, 02, E8, F2, CB, 00, 00, 59, B8, 4D, 5A, 00, 00, 66, 39, 05, 00, 00, 40, 00, 74, 04, 33, DB, EB, 33, A1, 3C, 00, 40, 00, 81, B8, 00, 00, 40, 00, 50, 45, 00, 00, 75, EB, B9, 0B, 01, 00, 00, 66, 39, 88, 18, 00, 40, 00, 75, DD, 33, DB, 83, B8, 74, 00, 40, 00, 0E, 76, 09, 39, 98, E8, 00, 40, 00, 0F, 95, C3, 89, 5D, E4, E8, 70, 51, 00, 00, 85, C0, 75, 08, 6A, 1C, E8, DC, 00, 00, 00, 59, E8...
 
[+]

Entropy:
6.4597

Code size:
490 KB (501,760 bytes)

Remove browsers app-bg.exe - Powered by Reason Core Security