enterprise 1.1

enterprise 1.1

Known Adware

by Naruto Source

What is enterprise 1.1?

enterprise 1.1 is software application developed by Naruto Source. It is most commonly found on computers running Windows 7 with nearly 52.05% of installations running this operating system. enterprise 1.1's installer is typically 10.00 MB in size and installs around 473 files. The most common release is 1.34.8.12 with 31.96% of all installations currently using this version.

enterprise 1.1 is most popular in the United States with 81.27% of installations residing in this country.

enterprise 1.1 adds 2 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About enterprise 1.1?

Enterprise Browser is a web browser plugin with advertising support, commonly bundled by third-party download managers and may include potentially unwanted software offers to generate revenue through installs or malvertising practices. This plugin delivers advertisements in various formats, such as banners, text hyperlinks, inline text ads, and transitionals, to the browser. These ads are not endorsed by the underlying website and are injected by the Enterprise Browser/Crossrider plugin, appearing in the header, footer, or replacing legitimate website ads. Additionally, the software communicates with a remote server to report user browsing habits, URLs, and domains visited, in order to tailor its advertisements.

Multiple virus scanners have detected malware in enterprise 1.1.

utils.exe (MD5: 400da6f4f23a646435fee11ffd6df002) has been flagged by 49 scanners:
Scanner Software Result
Bkav FE HW32.CDB
Dr.Web Trojan.Crossrider.28443
G Data NSIS.Adware.Crossrider
IKARUS anti.virus PUA.Plush
Malwarebytes PUP.Optional.crossRider.A
McAfee Artemis!400DA6F4F23A
Rising Antivirus PE:Malware.Obscure!1.9C59
Symantec WS.Reputation
TrendMicro-HouseCall Suspicious_GEN.F47V0815
Lavasoft Ad-Aware Gen:Application.Heur.ev1@mKoBu3pO
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL Trojan/NSIS.GoogUpdate.dx
avast! Win32:Crossrider-CG [PUP]
AVG Generic.C04
Avira ADWARE/CrossRider.Gen
AVware Crossrider (fs)
Baidu-International Adware.Win32.CrossAd.CD
Bitdefender Gen:Application.Heur.ev1@mKoBu3pO
CAT-QuickHeal PUA.BrightCircle.OD6
Comodo Security ApplicUnwnt
Cyren W32/A-6583813c!Eldorado
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.CD potentially unwanted
Fortinet FortiGate W32/GoogUpdate.AY!tr
F-Prot W32/A-6583813c!Eldorado
F-Secure Gen:Application.Heur.ev1@mKoBu3pO
Jiangmin AdWare/NSIS.cmj
K7 AntiVirus Unwanted-Program ( 0040f9861 )
K7GW Unwanted-Program ( 0040f9861 )
Kaspersky Trojan.NSIS.GoogUpdate.dx
McAfee-GW-Edition PUP-FTK
MicroWorld-eScan Gen:Application.Heur.ev1@mKoBu3pO
NANO AntiVirus Riskware.Win32.Crossrider.divinm
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.de5
Sophos Generic PUA EJ
Tencent Nsis.Trojan.Googupdate.Wqda
Trend Micro TROJ_GEN.R0C1C0EBN15
Vba32 AntiVirus Trojan.GoogUpdate
VIPRE Antivirus Crossrider (fs)
Zillya Adware.Adwapper.Win32.1101
Agnitum Outpost PUA.Toolbar.CroRi!
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.151676 (B)
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
nProtect Trojan-Clicker/W32.Agent.605544
Clam AntiVirus Win.Adware.Agent-29642
Arcabit Application.Heur.EB8A49
SUPERAntiSpyware Adware.CrossRider/Variant
Avira AntiVir Adware/Kazy.374062.430
ViRobot Adware.Agent.1965464.C
30d701c6-5c70-4e39-ac67-759e0796ff6d-2.exe (MD5: 32458a44eac13bc89bd30b0788422c72) has been flagged by 23 scanners:
Scanner Software Result
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Dr.Web Trojan.Crossrider.31451
G Data Win32.Adware.Crossrider.L
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.Enterprise.A
Rising Antivirus PE:Malware.Obscure!1.9C59
VIPRE Antivirus Crossrider (fs)
avast! Win32:Crossrider-AI [PUP]
IKARUS anti.virus Trojan.GoogUpdate
Panda Antivirus Trj/Genetic.gen
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AY
NANO AntiVirus Trojan.Win32.Crossrider.dgiaub
Zillya Adware.Adwapper.Win32.583
McAfee Artemis!5EDDD784E466
McAfee-GW-Edition Artemis
Avira AntiVir TR/Graftor.pqifh
Symantec WS.Reputation.1
Clam AntiVirus Win.Adware.Agent-12356
Baidu-International PUA.Win32.CrossRider.bAV
F-Prot W32/A-f841d724!Eldorado
30d701c6-5c70-4e39-ac67-759e0796ff6d-11.exe (MD5: bb48d9e8f0a5cf69d100fcabe92adcc0) has been flagged by 40 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
AhnLab-V3 PUP/Win32.CrossRider
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Bitdefender Gen:Variant.Adware.Plush.1
Dr.Web Trojan.Crossrider.31861
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
F-Prot W32/A-dc12a8d9!Eldorado
F-Secure Gen:Variant.Adware.Plush.1
G Data Gen:Variant.Adware.Plush.1
IKARUS anti.virus not-a-virus:WebToolbar.CrossRider
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.Enterprise.A
MicroWorld-eScan Gen:Variant.Adware.Plush.1
Panda Antivirus Trj/Genetic.gen
VIPRE Antivirus Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAX
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AX
McAfee Artemis!E2E796ED8469
McAfee-GW-Edition BehavesLike.Win32.Dropper.th
Sophos Generic PUA EB
Tencent Nsis.Adware.Adwapper.Alil
Antiy-AVL Trojan/NSIS.GoogUpdate
NANO AntiVirus Trojan.Win32.Crossrider.ddtjjo
Qihoo-360 HEUR/Malware.QVM10.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
Symantec WS.Reputation.1
TrendMicro-HouseCall Suspicious_GEN.F47V0814
Fortinet FortiGate Adware/Adwapper
K7 AntiVirus Trojan ( 0049c7071 )
K7GW Trojan ( 0049c7071 )
avast! Win32:Crossrider-AI [PUP]
Comodo Security Application.Win32.Plush.GRI
Avira AntiVir Adware/CrossRider.pq
Vba32 AntiVirus AdWare.Adwapper
Zillya Adware.Adwapper.Win32.511
Bkav FE W32.ATVC_ArtemisSense.Trojan
Clam AntiVirus Win.Adware.Crossrider-31
2798e358-f912-4000-ab8c-73e59e1fc1e7-7.exe (MD5: d9ddf4b7abc3d23d20d2c098a39776fc) has been flagged by 44 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper.ai
avast! Win32:Crossrider-AH [PUP]
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Baidu-International Adware.NSIS.Adwapper.AMUh
CAT-QuickHeal AdWare.NSIS.r5 (Not a Virus)
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31451
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Adware/Adwapper
F-Prot W32/S-9ad4719b!Eldorado
G Data Win32.Adware.Crossrider.M
K7 AntiVirus Trojan ( 0049ee4f1 )
K7GW Trojan ( 0049ee4f1 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.Enterprise.A
McAfee Artemis!D9DDF4B7ABC3
McAfee-GW-Edition BehavesLike.Win32.PUP.hh
NANO AntiVirus Riskware.Win32.Crossrider.dedrzv
Rising Antivirus PE:Trojan.Win32.Generic.17315BFC!389110780
Sophos AppRider
Symantec Trojan.Gen
Tencent Nsis.Adware.Adwapper.Wurd
Trend Micro TROJ_GEN.R0C1C0EJK14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJK14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.958
Lavasoft Ad-Aware Gen:Variant.Adware.Plush.1
Bitdefender Gen:Variant.Adware.Plush.1
Emsisoft Anti-Malware Gen:Variant.Adware.Plush.1 (B)
F-Secure Gen:Variant.Adware.Plush.1
IKARUS anti.virus PUA.Toolbar.CrossRider
MicroWorld-eScan Gen:Variant.Adware.Plush.1
Qihoo-360 Win32/Virus.Adware.0f5
Clam AntiVirus Win.Adware.Crossrider-21
Avira AntiVir Adware/Kazy.374109.306
Panda Antivirus Trj/Genetic.gen
nProtect Trojan/W32.Agent.1965464
ViRobot Adware.Agent.1965464.C
Bkav FE W32.ATVC_ArtemisSense.Trojan
2798e358-f912-4000-ab8c-73e59e1fc1e7-6.exe (MD5: 44d9a3271bf60da023c8d9da45d924a7) has been flagged by 40 scanners:
Scanner Software Result
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper
AVG Generic.D77
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAE
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AE
Fortinet FortiGate Adware/Adwapper
F-Prot W32/A-04c00d5a!Eldorado
IKARUS anti.virus PUA.PlusHD
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.Enterprise.A
McAfee Artemis!44D9A3271BF6
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
TrendMicro-HouseCall Suspicious_GEN.F47V0816
VIPRE Antivirus Crossrider (fs)
avast! Win32:Crossrider-AI [PUP]
Bkav FE W32.ATVC_ArtemisSense.Trojan
Dr.Web Trojan.Crossrider.33953
McAfee-GW-Edition BehavesLike.Win32.BadFile.th
Zillya Adware.Adwapper.Win32.503
G Data Win32.Adware.Crossrider.L
NANO AntiVirus Trojan.Win32.Crossrider.dgthhe
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA FF
AhnLab-V3 Win-PUP/CrossRider
Avira ADWARE/CrossRider.Gen
Vba32 AntiVirus AdWare.Adwapper
Symantec Adware.Crossid
Avira AntiVir Adware/CrossRider.pq
Tencent Nsis.Adware.Adwapper.Wofl
Lavasoft Ad-Aware Gen:Variant.Adware.Kazy.132996
Bitdefender Gen:Variant.Adware.Kazy.132996
Emsisoft Anti-Malware Gen:Variant.Adware.Kazy.132996 (B)
F-Secure Gen:Variant.Adware.Kazy.132996
MicroWorld-eScan Gen:Variant.Adware.Kazy.132996
K7 AntiVirus Trojan ( 0049c6eb1 )
K7GW Trojan ( 0049c6eb1 )
Comodo Security Application.Win32.Plush.GRI
Clam AntiVirus Win.Adware.Crossrider-31

Software Behaviors

Scheduled tasks:
  • dc266d83-9d99-49a1-9843-0d8b5493b410-6.exe is scheduled as a task named 'temp_dc266d83-9d99-49a1-9843-0d8b5493b410-6'.
  • 1cf129e9-7cd1-48cc-ad55-68968cf84538-2.exe is scheduled as a task named 'temp_1cf129e9-7cd1-48cc-ad55-68968cf84538-2'.

Startup Entries

Startup tasks:
  • 13625784-5e1a-48f9-810d-215da9c1f2c7-1-7.exe is automatically launched at startup through a scheduled task named 13625784-5e1a-48f9-810d-215da9c1f2c7-7.
  • 13625784-5e1a-48f9-810d-215da9c1f2c7-5.exe is automatically launched at startup through a scheduled task named 13625784-5e1a-48f9-810d-215da9c1f2c7-5_user.
  • 2a3357f5-e36f-4391-81e0-9d5847c24cc7-1-7.exe is automatically launched at startup through a scheduled task named 2a3357f5-e36f-4391-81e0-9d5847c24cc7-7.
  • 660ee569-720e-48fb-9e4d-cc09afeada81-7.exe is automatically launched at startup through a scheduled task named 660ee569-720e-48fb-9e4d-cc09afeada81-1.
  • f6e0bc37-ba43-4e42-8c62-c094fe81254f-1-7.exe is automatically launched at startup through a scheduled task named f6e0bc37-ba43-4e42-8c62-c094fe81254f-7.
  • f6e0bc37-ba43-4e42-8c62-c094fe81254f-6.exe is automatically launched at startup through a scheduled task named f6e0bc37-ba43-4e42-8c62-c094fe81254f-6.

Software Details

URL:
–
Support:
–
Installation path:
C:\Program Files\enterprise 1.1
Uninstaller:
C:\Program Files\enterprise 1.1\Uninstall.exe /fcp=1
Size:
10.00 MB
Language:
English

enterprise 1.1 Executable Details

Primary executable:
utils.exe
Name:
enterprise 1.1
Path:
C:\Program Files\enterprise 1.1\utils.exe
MD5:
400da6f4f23a646435fee11ffd6df002
SHA-1:
–
SHA-256:
–
Files installed by enterprise 1.1
File Type Filename MD5
EXE
c8a67a77a1425174412e31bd5ad61db3
EXE
12183b8ac0ec0c2932da9f056e12680c
EXE
e85192433c4ff7d8cb850aaff71a2c1e
EXE
29331336b2acb539ab2c044136848c56
EXE
c574bfcba8ce95d981db37f76b3c8d85
EXE
d60358653f3161b51c138789ce922416
DLL
e2381b62571b6eee53967e996d304867
DLL
f6f4dd858cfe2f30d332290b7a29308d
DLL
3c4a5053c9dbe8bd3e2623c9ebac31ef
EXE
7f8ed26843a338576a99168e37c5e307