I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
We received the file UTILS.EXE and detected thatUTILS.EXE is not good.
UTILS.EXE is Adware. You should remove the file UTILS.EXE.
Kill the process UTILS.EXE and remove MediaPlayerVid2.4 from Windows.
Malware Analysis of MediaPlayerVid2.4
Full path on a computer: %Program Files%\MediaPlayerVid2.4\
Detected by UnHackMe:
UTILS.EXE
Default location: %Program Files%\MediaPlayerVid2.4\
Removal Results: Success
Number of reboot: 1
UTILS.EXE is known as:
Adware.CrossRider
UTILS.EXE hash:
- MD5: fc1e27784c1055aeb95617123035b1bd
The file tries to connect to the dangerous web site.
How to quickly detect UTILS.EXE presence?
Registry:
- HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\MediaPlayerVid2.4\DisplayName: “MediaPlayerVid2.4”
- HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\MediaPlayerVid2.4\UninstallString: “%Program Files%\MediaPlayerVid2.4\Uninstall.exe /fcp=1 “
Folders:
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\defaults
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\defaults\preferences
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\userCode
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\locale
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\locale\en-US
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin
- %Program Files%\MediaPlayerVid2.4
Files:
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\3d292e02bd9b9ee716a30865a5b3d4f1.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\7110ec07e689380efbb91a2de0b63037.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\89f4da6903b28aad4da1b6ab1c0b00e2.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\19ec83b8adccd4044a0826301acbcc18.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\23198f0ef6779b67173c88a140e1d030.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\3a37d0e89ac4f3922f8dad525217d851.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\45f92739ad7d2fbf277569cdf4c83583.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\496bf70fcf0f10a2329205014c8ca98a.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\4ed1ead269d5b9fbaa51603ed4d0c73d.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\56dcd85998f95e393b20fb9513936d61.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\652ce01b6b5a148e2ff5f984a5ef5f05.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\680edc423435dd8b49dce37168bc4bb2.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\8c8ee8b663dcf323b90e835e417df3c8.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\bb073761e94bf5f9102b2354376cde9f.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\ceb97779063550aba38eede97e633273.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\ceefffcf7d5ee8341558c0ddf54ab240.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\d422e3f8a3babe11d2aaa442b1a4de66.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\e3b9d836f50b62e55e17be689962be9c.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\api\eed544495a549c8f4e399014299fae1f.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\background.html
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\browser.xul
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\cd0da012ee78413cd7bdec8613401fea.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\07e6f9e1ab5c7dc320c51531a8c18a91.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\097b744bf172320920a5c446f807946c.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\0abc74dd9b787f665186a6ebc1177d5c.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\1621b028776bbd4c7ed442344a3588a9.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\198262f7344ef3cb7717056ec633f27a.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\3091115c918d633d0619a3da1a5f3306.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\3e4daafe1dbd702b8853f6ed78f799c3.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\45a5904fab4762a19b84b7ef88e063a0.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\6050053618f32f07dc2ee55ae129e8c9.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\6d4385a5f1e982c0b34053ab93248dcc.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\6f9291ce662a728eb2f893a6b06778a6.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\7bf9ed11d5f297e8fe52c118d8855694.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\a4a729bb8a3569dec4f881f6967360f0.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\a8dd11191b7d6fe19cdae895e61e4a0f.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\c42f9e557ce5d526d5709d718ac8e43e.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\c49e4a8268da553c63c566374553b132.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\ca5bd2b250166cca6ead90fbed7c3df9.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\d6617b2071c543a452f9d667f0df63f7.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\f0ff66e82cae2e3fa4584b5b1ea59b5a.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\ff54c924645ad74ca732379566aa4328.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\core\installer.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\dialog.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\e374b1a70d656c42e65330038f6a4318.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\f95cc5973a006a8184df74c6dad77670.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\ffCoreFilesIndex.txt
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\options.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\options.xul
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome\content\search_dialog.xul
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\chrome.manifest
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\defaults\preferences\prefs.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\manifest.xml
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\102.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\13.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\14.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\16.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\17.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\180.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\184.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\192.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\195.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\200.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\220.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\221.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\223.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\242.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\246.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\253.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\273.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\281.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\288.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\339.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\345.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\354.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\376.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\380.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\390.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\391.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\4.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\47.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\64.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\7.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\78.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\9.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins\91.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\plugins.json
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\userCode\background.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\extensionData\userCode\extension.js
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\install.rdf
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\locale\en-US\translations.dtd
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\button1.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\button2.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\button3.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\button4.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\button5.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\crossrider_statusbar.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\icon128.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\icon16.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\icon24.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\icon48.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\panelarrow-up.png
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\popup.html
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\skin.css
- %Appdata%\Mozilla\Firefox\Profiles\gi17c3pt.default\extensions\WQNKK59573794@WAYA30227232.com\skin\update.css
- %Program Files%\MediaPlayerVid2.4\016c0c3a-b99c-4ad5-bafe-992f78912099-4.exe
- %Program Files%\MediaPlayerVid2.4\016c0c3a-b99c-4ad5-bafe-992f78912099-5.exe
- %Program Files%\MediaPlayerVid2.4\016c0c3a-b99c-4ad5-bafe-992f78912099.xpi
- %Program Files%\MediaPlayerVid2.4\Uninstall.exe
- %Program Files%\MediaPlayerVid2.4\utils.exe
- %WinDir%\Tasks\016c0c3a-b99c-4ad5-bafe-992f78912099-5.job