84,488,480 programs installed

Should I remove Pricora?

What percent of users and experts removed it?
88% remove it12% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Global Rank #16,336
Reach 0.0159%
Lifespan of installation (until removal)
< 24.24 days
715.08 days >
Average installed length: 375.72 days

Versions

VersionDistribution
1.34.4.10 0.64%
1.34.2.13 1.27%
1.29.153.3 2.55%
1.28.153.3 6.69%
1.28.153.2 57.96%
1.27.153.7 30.89%

Other programs by Kreapixel

Pricora

What is Pricora?

Pricora is a web browser extension that changes the browsers search and home pages as well as delivers. In order to provide search advertising revenue, the software is designed not only to modify the search provider but to protect it so that it remains the default browser search engine. It is typically installed via a bundled offer within a third-party software distribution. As for distribution, the toolbar is typically bundled with 3rd party publishers in order to try to maximize install revenue as typically payouts per installation is between a few cents and a couple dollars depending on the geographical location of the host.

What the toolbar does:
- Change of the default search engine, including the Browser's built-in search box, and address bar.
- Change of the default Home Page and/or New Tabs, and protect your search settings.
- Addition of alternative error page functionality, such as “Page Not Found”.

The toolbar and browser extension uses the Crossrider platform.

About  (from Kreapixel)

Pricora is a free price comparison and easy to use: type in the product or brand you want, and let yourself be guided by Pricora. You will always find what you are looking at the best market prices.
Overview
  • Malware detected in the program
  • Automatically starts with Windows
  • Integrates into the web browser
  • Uses the Crossrider toolbar framework
  • During install it may hijack/modify the browser's homepage and search provider
  • Runs disconnected from the browser as a background process
  • Known to reinstall itself
  • Typically distributed through a pay-per-install bundle
  • Hijacks the web browser's home page
  • Hijacks the browser's default search provider
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in Pricora.
utils.exe (a75b85924ed1c5f1ee31855ff9ce13ac) has been flagged by the following 11 scanners:
Anti-Virus softwareVersionDetection
Antiy-AVL 2.0.3.7 AdWare/Win32.Lyckriks
avast! 2014.9-131024 Win32:Dropper-gen [Drp]
Baidu-International 4.0.3.131024 Trojan.Win32.Agent.aTNv
Dr.Web 9.0.0.0297 Adware.Plugin.73
ESET-NOD32 7.8944 Win32/Packed.ScrambleWrapper.C
Fortinet FortiGate 10/24/2013 Adware/Lyckriks
Jiangmin KV131024 AdWare/Lyckriks.bf
Kaspersky 14.0.0.4258 not-a-virus:AdWare.Win32.Lyckriks
NANO AntiVirus 0.26.0.55532 Trojan.Win32.Plugin.cfnbjq
TrendMicro-HouseCall 7.2.297 TROJ_GEN.R0C1H07I613
Vba32 AntiVirus 3.12.24.3 AdWare.Lyckriks
Pricora-chromeinstaller.exe (a4867262fad7107158ec3879f74a6d33) has been flagged by the following 24 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Adware.Generic.620958
AhnLab-V3 2013.12.30.00 Adware/Win32.Lyckriks
Antiy-AVL 2.0.3.7 AdWare/Win32.Lyckriks
AVG 13.0.0.3169 Generic5.AIIQ
Baidu-International 3.5.1.41473 Adware.Win32.Lyckriks.azL
Bitdefender 7.2.5028.0 Adware.Generic.620958
Emsisoft Anti-Malware 3.0.0.596 Adware.Generic.620958 (B)
ESET-NOD32 9190 a variant of Win32/Toolbar.CrossRider.K
Fortinet FortiGate 5.1.147.0 Adware/Lyckriks
F-Secure 11.0.19100.45 Adware.Generic.620958
G Data 22 Adware.Generic.620958
Jiangmin 16.0.100 AdWare/Lyckriks.dm
K7 AntiVirus 9.174.10656 Trojan ( 0048e2021 )
K7GW 9.174.10661 Trojan ( 0048e2021 )
Kaspersky 12.0.0.1221 not-a-virus:AdWare.Win32.Lyckriks.ly
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 5.600.0.1067 Artemis!A4867262FAD7
McAfee-GW-Edition 2013 Artemis!A4867262FAD7
MicroWorld-eScan 12.0.250.0 Adware.Generic.620958
Sophos 4.96.0 Generic PUA NK
Symantec 20131.1.5.61 Adware.FindLyrics
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0C1H05JF13
Vba32 AntiVirus 3.12.24.3 AdWare.Lyckriks
VIPRE Antivirus 24876 Crossrider (fs)
Pricora-updater.exe (38d5a3a91582699f43193e3d754dece9) has been flagged by the following 17 scanners:
Anti-Virus softwareSoftware versionDetection
avast! 8.0.1489.320 Win32:Dropper-gen [Drp]
AVG 13.0.0.3169 Generic_r.GS
Baidu-International 3.5.1.41473 HackTool.Win32.CrossRider.J
Bkav FE 1.3.0.4613 W32.Clod92f.Trojan.1d68
Dr.Web Trojan.Crossrider.32
ESET-NOD32 9244 a variant of Win32/Toolbar.CrossRider.J
Fortinet FortiGate 5.1.147.0 Riskware/Fam.NB
G Data 22 Win32.Trojan.Agent.AXRG70
IKARUS anti.virus T3.1.5.6.0 Virus.Win32.Dropper
K7 AntiVirus 9.174.10720 Trojan ( 0048c68d1 )
K7GW 9.174.10720 Trojan ( 0048c68d1 )
McAfee 5.600.0.1067 RDN/Generic.dx!csh
McAfee-GW-Edition 2013 RDN/Generic.dx!csh
Panda Antivirus 10.0.3.5 Suspicious file
Sophos 4.96.0 Mal/Generic-S
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CBH06JQ13
VIPRE Antivirus 25040 Crossrider (fs)
Pricora-bho.dll (97d6857070a76acc3530e7da80e0a741) has been flagged by the following 15 scanners:
Anti-Virus softwareSoftware versionDetection
Antiy-AVL 2.0.3.7 AdWare/Win32.Lyckriks
AVG 13.0.0.3169 Generic5.AIKL
Baidu-International 3.5.1.41473 Adware.Win32.Lyckriks.AY
Bkav FE 1.3.0.4613 W32.Clodd68.Trojan.f258
Dr.Web Trojan.Crossrider.7
ESET-NOD32 9244 a variant of Win32/Toolbar.CrossRider.H
Fortinet FortiGate 5.1.147.0 Adware/Lyckriks
K7 AntiVirus 9.174.10720 Riskware ( 0040eff71 )
K7GW 9.174.10720 Riskware ( 0040eff71 )
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
NANO AntiVirus 0.28.0.57029 Trojan.Win32.Crossrider.cjzgqu
Symantec 20131.1.5.61 Adware.Crossid
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0C9H07IH13
Vba32 AntiVirus 3.12.24.3 AdWare.Lyckriks
VIPRE Antivirus 25040 Crossrider (fs)
Pricora-firefoxinstaller.exe (90c77712976c0de19d64935346afdb43) has been flagged by the following 11 scanners:
Anti-Virus softwareSoftware versionDetection
Baidu-International 3.5.1.41473 Trojan.Win32.Toolbar.CrossRider.J
ESET-NOD32 9028 a variant of Win32/Toolbar.CrossRider.J
K7 AntiVirus 9.173.10137 Trojan
K7GW 12.7.0.14 Trojan
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
McAfee 5.600.0.1067 Artemis!90C77712976C
McAfee-GW-Edition 2013 Artemis!90C77712976C
Sophos 4.94.0 Generic PUA KI
Symantec 20131.1.5.61 Adware.FindLyrics
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0C1H05JQ13
VIPRE Antivirus 23230 Crossrider (fs)
Pricora-enabler.exe (a78ba70748627e0cdec3f56231ec2629) has been flagged by the following 8 scanners:
Anti-Virus softwareSoftware versionDetection
Antiy-AVL 0.1.0.1 Trojan/Win32.SGeneric
AVG 13.0.0.3169 Generic5.ANCJ
Baidu-International 3.5.1.41473 Adware.Win32.CrossRider.X
Dr.Web 7.00.8.02260 Trojan.Crossrider.7519
ESET-NOD32 9672 a variant of Win32/Toolbar.CrossRider.X
NANO AntiVirus 0.28.0.59048 Trojan.Win32.Crossrider.cwggpx
Symantec 20131.1.5.61 Adware.Crossid
VIPRE Antivirus 28214 Crossrider (fs)
Pricora-codedownloader.exe (d68d26c1bd7689866e1d152c342b94f2) has been flagged by the following 6 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 13.0.0.3169 Generic_r.GS
Baidu-International 3.5.1.41473 Trojan.Win32.Toolbar.alF
ESET-NOD32 8944 a variant of Win32/Toolbar.CrossRider.J
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V0930
VIPRE Antivirus 22592 Crossrider (fs)
Pricora-bho64.dll (906c54f99336fd4829623a18f409f3e4) has been flagged by the following 4 scanners:
Anti-Virus softwareSoftware versionDetection
Baidu-International 3.5.1.41473 Trojan.Win32.Win64.Toolbar.Crossrider
ESET-NOD32 8963 a variant of Win64/Toolbar.Crossrider.A
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.F47V1019
VIPRE Antivirus 22702 Crossrider (fs)
       View all 96 all detections
Pricora has been found to be bundled with 3rd party software. If you have not purposefully installed this, you should be safe uninstalling it.

Program detailsProgram details

Displayed publisher: Corporate Inc
Installation folder: C:\Program Files\pricora
Uninstaller: C:\Program Files\Pricora\Uninstall.exe /fromcontrolpanel=1
Estimated size: 6.78 MB

Program filesFiles installed by Pricora

Program executable:utils.exe (Malware detected)
Name:Pricora
Pricora Installer
Path:C:\Program Files\pricora\utils.exe
MD5:a75b85924ed1c5f1ee31855ff9ce13ac
Additional files:
  • ac516c89-ffce-40ee-8006-d9d923418e0b-2.exe (by Corporate Inc) - Pricora (Pricora exe)
  • ac516c89-ffce-40ee-8006-d9d923418e0b-3.exe (by Corporate Inc)
  • ac516c89-ffce-40ee-8006-d9d923418e0b-4.exe
  • ac516c89-ffce-40ee-8006-d9d923418e0b-5.exe
  • Pricora-bg.exe
  • (Malware detected) Pricora-bho.dll - Pricora BHO
  • (Malware detected) Pricora-bho64.dll
  • Pricora-buttonutil.exe
  • Pricora-buttonutil64.exe
  • (Malware detected) Pricora-chromeinstaller.exe
  • (Malware detected) Pricora-codedownloader.exe
  • (Malware detected) Pricora-enabler.exe
  • (Malware detected) Pricora-firefoxinstaller.exe
  • Pricora-nova.exe
  • (Malware detected) Pricora-updater.exe
  • Pricora-buttonutil.dll
  • Pricora-buttonutil64.dll
  • Pricora-helper.exe
  • Uninstall.exe

Program behaviorsBehaviors exhibited

2 Internet Explorer BHOs
  • Pricora-bho.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'Pricora' with the class of {11111111-1111-1111-1111-110311531129} (CrossriderApp0035329).
  • Pricora-bho64.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'Pricora' with the class of {11111111-1111-1111-1111-110311531129} (CrossriderApp0035329).
3 Scheduled Tasks
  • Pricora-codedownloader.exe is scheduled as a task named 'ac516c89-ffce-40ee-8006-d9d923418e0b-6'.
  • ac516c89-ffce-40ee-8006-d9d923418e0b-4.exe is scheduled as a task named 'ac516c89-ffce-40ee-8006-d9d923418e0b-4'.
  • Pricora-enabler.exe is scheduled as a task named 'temp_Pricora-enabler'.
9 Scheduled Tasks (Boot/Login)
  • Pricora-firefoxinstaller.exe is automatically launched at startup through a scheduled task named Pricora-firefoxinstaller.
  • Pricora-nova.exe is automatically launched at startup through a scheduled task named ac516c89-ffce-40ee-8006-d9d923418e0b-7.
  • Pricora-codedownloader.exe is automatically launched at startup through a scheduled task named ac516c89-ffce-40ee-8006-d9d923418e0b-1.
  • ac516c89-ffce-40ee-8006-d9d923418e0b-5.exe is automatically launched at startup through a scheduled task named ac516c89-ffce-40ee-8006-d9d923418e0b-5.
  • ac516c89-ffce-40ee-8006-d9d923418e0b-3.exe is automatically launched at startup through a scheduled task named ac516c89-ffce-40ee-8006-d9d923418e0b-3.
  • ac516c89-ffce-40ee-8006-d9d923418e0b-2.exe is automatically launched at startup through a scheduled task named ac516c89-ffce-40ee-8006-d9d923418e0b-2.
  • Plus 3 more

How do I remove Pricora?

You can uninstall Pricora from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program Pricora, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove Pricora.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by Pricora you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

OS VERSIONS
Win 7 (SP1) 51%
Win 7 0%
 
HOW IT STARTS
Scheduled task? Yes
(Runs on Windows boot)
 
USER ACTIONS
Uninstall it 88%
Keep it 12%

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 59.24%
Windows 10 26.11%
Windows XP 8.28%
Windows Vista 6.37%
Which OS releases does it run on?
Windows 7 Home Premium 33.97%
Windows 8 14.10%
Windows 7 Ultimate 13.46%
Windows 7 Professional 10.90%
Microsoft Windows XP 8.01%
Windows 8.1 5.77%

Distribution by countryGeography

34.53% of installs come from France
Which countries install it?
  France 34.53%
  Italy 18.71%
  MA 11.51%
  Germany 7.91%
  Spain 7.55%
  United States 4.68%
  TN 2.88%
  Belgium 2.52%
  DZ 2.52%
  Canada 1.44%
  Switzerland 0.72%
  PF 0.72%
  United Kingdom 0.72%
  RW 0.36%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Acer 26.79%
Hewlett-Packard 25.00%
ASUS 13.84%
Dell 9.82%
Toshiba 8.48%
Samsung 7.59%
Lenovo 2.68%
Sony 2.23%
GIGABYTE 1.79%
Packard Bell 0.89%
American Megatrends 0.89%
Common models
HP Pavilion dv6 Notebook ... 5.44%
HP Pavilion g6 Notebook P... 4.08%
HP Pavilion g7 Notebook P... 3.40%
HP Pavilion dv7 Notebook ... 2.72%
HP 630 Notebook PC 2.04%
Packard Bell ENLE11BZ 2.04%

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.