CROSSRIDER.EXE STAGING.EXE is Tools Web Application by CROSSRIDER.COM

July 2, 2012 by NightWatcher
Filed under: Tools 
: Solved!

You should Download Removal Tool here...

The file CROSSRIDER.EXE is not a virus.
The program CROSSRIDER.EXE is a system security tool.
But the CROSSRIDER.EXE tool may be used to compromise computer security by the hacker.
Use the CROSSRIDER.EXE file at your own risk!
You can delete the CROSSRIDER.EXE program from your computer with problems.

Malware Analysis of CROSSRIDER.EXE
Full path on a computer: %Program Files%\CROSSRIDER\CROSSRIDER.exe

Detected by UnHackMe:

CROSSRIDER.EXE
Default location: %Program Files%\CROSSRIDER\CROSSRIDER.exe

CROSSRIDER.EXE is known as:

Tools.Web Application by CROSSRIDER.COM

CROSSRIDER.EXE hash:

  • MD5: 81025b1bd420fe9d5e13aca1dc0fb7c0
The file tries to download information from some web sites.
How to quickly detect CROSSRIDER.EXE presence?

Registry:
  • HKLM\Software\Classes\CLSID\{11111111-1111-1111-1111-110111161174}\InprocServer32\: “%Program Files%\CROSSRIDER\CROSSRIDER.dll”
  • HKLM\Software\Classes\CLSID\{11111111-1111-1111-1111-110111161174}\InprocServer32\ThreadingModel: “Apartment”
  • HKLM\Software\Classes\CLSID\{22222222-2222-2222-2222-220122162274}\InprocServer32\: “%Program Files%\CROSSRIDER\CROSSRIDER.dll”
  • HKLM\Software\Classes\CLSID\{22222222-2222-2222-2222-220122162274}\InprocServer32\ThreadingModel: “Apartment”
  • HKLM\Software\Classes\CLSID\{33333333-3333-3333-3333-330133163374}\InprocServer32\: “%Program Files%\CROSSRIDER\CROSSRIDER.dll”
  • HKLM\Software\Classes\CLSID\{33333333-3333-3333-3333-330133163374}\InprocServer32\ThreadingModel: “Apartment”
Folders:
  • %Program Files%\CROSSRIDER
Files:
  • %Appdata%\Microsoft\CryptnetUrlCache\Content\135BD6A358680A7BF1CCEC7C0172393D
  • %Appdata%\Microsoft\CryptnetUrlCache\MetaData\135BD6A358680A7BF1CCEC7C0172393D
  • %Appdata%\Microsoft\Protect\S-1-5-21-1659004503-1708537768-1801674531-500\cfb3c84f-0e1e-4979-9189-a84338e6c65e
  • %Temp%\CROSSRIDERInstaller_1341209665.log
  • %Program Files%\CROSSRIDER\CROSSRIDER.dll
  • %Program Files%\CROSSRIDER\CROSSRIDER.exe
  • %Program Files%\CROSSRIDER\CROSSRIDER.ico
  • %Program Files%\CROSSRIDER\CROSSRIDER.ini
  • %Program Files%\CROSSRIDER\CROSSRIDERGui.exe
  • %Program Files%\CROSSRIDER\CROSSRIDERInstaller.log
  • %Program Files%\CROSSRIDER\Uninstall.exe

  • Recommended: UnHackMe anti-rootkit and anti-malware

    Premium software: RegRun Security Suite (Good choice for removal and protection)

    Written by

    Malware Hunter.

    Comments

    Tell me what you're thinking...
    and oh, if you want a pic to show with your comment, go get a gravatar!

    You must be logged in to post a comment.