power app

power app

Known Adware

by Naruto Source

What is power app?

power app is software application developed by Naruto Source. It is most commonly found on computers running Windows 7 with nearly 50.00% of installations running this operating system. power app's installer is typically 18.00 MB in size and installs around 53 files.

power app is most popular in the United States with 94.12% of installations residing in this country.

power app adds 3 scheduled tasks to the Windows Task Scheduler launching the program at randomly scheduled times.

About power app?

Power App is an adware program that may display unwanted advertisements within the user's web browser. This includes the insertion of ads into web pages and overlaying existing page content with advertisements, banners, coupons, or text links. The program communicates with its servers to fetch new offers, and tracks the domain names of visited pages, the displayed ads, and the user's interaction with them.

Multiple virus scanners have detected malware in power app.

utils.exe (MD5: 37bf6234f2e7812b2554578491fdd1f3) has been flagged by 38 scanners:
Scanner Software Result
avast! Win32:Malware-gen
Bkav FE HW32.Paked
Dr.Web Trojan.Crossrider.32438
G Data NSIS.Adware.Crossrider
IKARUS anti.virus AdWare.CrossRider
Malwarebytes PUP.Optional.crossRider.A
McAfee Artemis!37BF6234F2E7
McAfee-GW-Edition Artemis
NANO AntiVirus Trojan.Win32.Crossrider.dewext
Qihoo-360 HEUR/QVM20.1.Malware.Gen
Rising Antivirus PE:Malware.Obscure!1.9C59
SUPERAntiSpyware Adware.Crossrider/Variant
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper.ai
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAR
CAT-QuickHeal AdWare.NSIS.r5 (Not a Virus)
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AR
Fortinet FortiGate Adware/Adwapper
F-Prot W32/A-ea13b6b6!Eldorado
K7 AntiVirus Unwanted-Program ( 004a9d071 )
K7GW Unwanted-Program ( 004a9d071 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
nProtect Trojan-Clicker/W32.Agent.901992.B
Sophos Generic PUA NC
Symantec PUA.Gen.2
Tencent Nsis.Adware.Adwapper.Ebrg
Trend Micro TROJ_GEN.R0C1C0EJI14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EJI14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Adware.Adwapper.Win32.201
Clam AntiVirus Win.Trojan.Crossrider-47
Panda Antivirus Trj/Genetic.gen
power app-codedownloader.exe (MD5: 5d1bcbe14a1e1e5c262135b2a2ac49cf) has been flagged by 35 scanners:
Scanner Software Result
AhnLab-V3 Win-PUP/CrossRider
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper.ai
avast! Win32:Crossrider-AI [PUP]
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAV
CAT-QuickHeal AdWare.NSIS.g5 (Not a Virus)
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31451
Fortinet FortiGate Adware/Adwapper
F-Prot W32/A-ea13b6b6!Eldorado
G Data Win32.Adware.Crossrider.M
K7 AntiVirus Unwanted-Program ( 004a9d071 )
K7GW Unwanted-Program ( 004a9d071 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.PowerApp.A
McAfee Artemis!5D1BCBE14A1E
McAfee-GW-Edition BehavesLike.Win32.PUP.th
NANO AntiVirus Riskware.Win32.Crossrider.devuka
nProtect Trojan-Clicker/W32.Agent.1075560.B
Qihoo-360 Win32/Virus.Adware.970
Sophos Generic PUA AN
Symantec PUA.Gen.2
Tencent Nsis.Adware.Adwapper.Swbj
TrendMicro-HouseCall TROJ_GEN.F0C2H00IT14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2797
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Rising Antivirus PE:Malware.Obscure!1.9C59
Trend Micro TROJ_GEN.R0C1C0EJK14
IKARUS anti.virus Trojan.GoogUpdate
Panda Antivirus Trj/Genetic.gen
power app-bho.dll (MD5: d1fc696b801adf4666010697ba18ea8e) has been flagged by 26 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.BHO
Antiy-AVL RiskWare[WebToolbar:not-a-virus]/Win32.CrossRider
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Dr.Web Trojan.Crossrider.30979
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AF
G Data Win32.Adware.Crossrider.K
IKARUS anti.virus AdWare.WebToolbar.CroRi
K7 AntiVirus Unwanted-Program ( 004a9d071 )
K7GW Trojan ( 020000001 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Malwarebytes PUP.Optional.PowerApp.A
NANO AntiVirus Riskware.Win32.Crossrider.dfefbf
Panda Antivirus Trj/Chgt.F
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos AppRider
Symantec Adware.Crossid
VIPRE Antivirus Crossrider (fs)
Zillya Adware.CrossRider.Win32.126
Baidu-International Adware.NSIS.Adwapper.aH
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee Artemis!3F450903DC63
McAfee-GW-Edition BehavesLike.Win32.BadFile.dh
Qihoo-360 Win32/Virus.Adware.970
Tencent Nsis.Adware.Adwapper.Lkdq
f8a94cd7-e773-4a50-8f01-fa86eb585fac-5.exe (MD5: 4b85e48fe4dd51e06ee10e1b109f0996) has been flagged by 35 scanners:
Scanner Software Result
AhnLab-V3 PUP/Win32.CrossRider
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper.ai
avast! Win32:Crossrider-AG [PUP]
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.BAV
CAT-QuickHeal AdWare.NSIS.r5 (Not a Virus)
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31451
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Adware/Adwapper
F-Prot W32/A-ea13b6b6!Eldorado
G Data Win32.Adware.Crossrider.L
K7 AntiVirus Unwanted-Program ( 004a9f361 )
K7GW Unwanted-Program ( 004a9f361 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Malwarebytes PUP.Optional.PowerApp.A
McAfee Artemis!4B85E48FE4DD
McAfee-GW-Edition BehavesLike.Win32.PUP.dh
NANO AntiVirus Riskware.Win32.Crossrider.deyvqc
nProtect Trojan-Clicker/W32.Agent.978280
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.970
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA GA
Symantec PUA.Gen.2
Tencent Nsis.Adware.Adwapper.Pezt
TrendMicro-HouseCall TROJ_GEN.F0C2H00IP14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Zillya Trojan.GoogUpdate.Win32.2794
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Trend Micro TROJ_GEN.R0C1C0EJE14
IKARUS anti.virus Trojan.GoogUpdate
f8a94cd7-e773-4a50-8f01-fa86eb585fac-2.exe (MD5: bd9bb9fb807a4a1f27c6bb98f60061d1) has been flagged by 35 scanners:
Scanner Software Result
AhnLab-V3 Win-PUP/CrossRider
Antiy-AVL GrayWare[AdWare:not-a-virus]/NSIS.Adwapper.ai
avast! Win32:Crossrider-AG [PUP]
AVG Generic.D77
Avira Adware/CrossRider.pq
AVware Crossrider (fs)
Baidu-International PUA.Win32.CrossRider.bAV
CAT-QuickHeal AdWare.NSIS.r5 (Not a Virus)
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.31451
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.AV
Fortinet FortiGate Adware/Adwapper
F-Prot W32/A-ea13b6b6!Eldorado
G Data Win32.Adware.Crossrider.L
IKARUS anti.virus Trojan.NSIS.GoogUpdate
K7 AntiVirus Unwanted-Program ( 004a9d071 )
K7GW Unwanted-Program ( 004a9d071 )
Kaspersky not-a-virus:AdWare.NSIS.Adwapper.ai
Malwarebytes PUP.Optional.PowerApp.A
McAfee Artemis!BD9BB9FB807A
McAfee-GW-Edition BehavesLike.Win32.Trojan.ch
NANO AntiVirus Riskware.Win32.Crossrider.deyujc
nProtect Trojan-Clicker/W32.Agent.901992
Panda Antivirus Trj/Genetic.gen
Qihoo-360 Win32/Virus.Adware.970
Rising Antivirus PE:Malware.Obscure!1.9C59
Sophos Generic PUA NB
Symantec PUA.Gen.2
Tencent Nsis.Adware.Adwapper.Pitv
Trend Micro TROJ_GEN.R0C1C0EKF14
TrendMicro-HouseCall TROJ_GEN.R0C1C0EKF14
Vba32 AntiVirus AdWare.Adwapper
VIPRE Antivirus Crossrider (fs)
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Zillya Trojan.GoogUpdate.Win32.2892

Software Behaviors

Scheduled tasks:
  • 8062332e-a62f-402b-a6a8-327ce378ef1c-5.exe is scheduled as a task named '8062332e-a62f-402b-a6a8-327ce378ef1c-5'.
  • 8062332e-a62f-402b-a6a8-327ce378ef1c-4.exe is scheduled as a task named '8062332e-a62f-402b-a6a8-327ce378ef1c-4'.
  • 8062332e-a62f-402b-a6a8-327ce378ef1c-11.exe is scheduled as a task named '8062332e-a62f-402b-a6a8-327ce378ef1c-3'.

Startup Entries

Startup tasks:
  • f72b67e1-57fc-4138-a4cc-a615d5287985-7.exe is automatically launched at startup through a scheduled task named f72b67e1-57fc-4138-a4cc-a615d5287985-1.
  • f72b67e1-57fc-4138-a4cc-a615d5287985-6.exe is automatically launched at startup through a scheduled task named f72b67e1-57fc-4138-a4cc-a615d5287985-6.
  • f72b67e1-57fc-4138-a4cc-a615d5287985-5.exe is automatically launched at startup through a scheduled task named f72b67e1-57fc-4138-a4cc-a615d5287985-5_user.
  • f72b67e1-57fc-4138-a4cc-a615d5287985-4.exe is automatically launched at startup through a scheduled task named f72b67e1-57fc-4138-a4cc-a615d5287985-4.
  • f72b67e1-57fc-4138-a4cc-a615d5287985-11.exe is automatically launched at startup through a scheduled task named f72b67e1-57fc-4138-a4cc-a615d5287985-3.
  • f72b67e1-57fc-4138-a4cc-a615d5287985-2.exe is automatically launched at startup through a scheduled task named f72b67e1-57fc-4138-a4cc-a615d5287985-2.

Software Details

URL:
https://crossrider.com/install/63439-power-app
Support:
Installation path:
C:\Program Files\power app
Uninstaller:
C:\Program Files\power app\Uninstall.exe /fcp=1
Size:
18.00 MB
Language:
English

power app Executable Details

Primary executable:
utils.exe
Name:
power app
Path:
C:\Program Files\power app\utils.exe
MD5:
37bf6234f2e7812b2554578491fdd1f3
SHA-1:
SHA-256:
Files installed by power app
File Type Filename MD5
EXE
f6bc1ce87fb36607b415e72a57fc7cc5
EXE
utils.exe
Malware
37bf6234f2e7812b2554578491fdd1f3
DLL
7daa7b4f93ff88c4c0782afd4afe3f5f
DLL
195c329acc8f173981a0d2822f93567c
EXE
5d1bcbe14a1e1e5c262135b2a2ac49cf
EXE
906e7a298148d18b2a49c56286987542
EXE
706501e16b777bb8b6dea194f9c6b4c1
DLL
66696ae51f8558ee5ed8e16dc5731588
DLL
d1fc696b801adf4666010697ba18ea8e
EXE
3fec9b77e11efa9d217cd86c45daa89d