DealPly

DealPly

Known Malware

by DealPly Technologies Ltd.

What is DealPly?

DealPly is software application developed by DealPly Technologies Ltd.. It is most commonly found on computers running Windows 7 with nearly 76.68% of installations running this operating system. DealPly's installer is typically 768.00 KB in size and installs around 15 files.

DealPly is most popular in Brazil with 30.33% of installations residing in this country.

DealPly adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About DealPly?

DealPly is a web browser extension that enhances the online shopping experience by identifying affiliated merchants and potentially offering better pricing or alternative deals on products or services. The software utilizes the installCore platform for installation bundling and advertising. According to the End User License Agreement (EULA), DealPly aims to improve the shopping experience by providing alternative products or services, comparing prices, and offering exclusive discounts through third party e-commerce websites.

Multiple virus scanners have detected malware in DealPly.

uninst.exe (MD5: 63904940b8a5889d604ac2ea38304eeb) has been flagged by 8 scanners:
Scanner Software Result
ESET-NOD32 Win32/DealPly.D
Malwarebytes PUP.Optional.Dealply
TrendMicro-HouseCall TROJ_GEN.F47V0808
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
VIPRE Antivirus Adware.DealPly (fs)
Baidu-International Trojan.Win32.DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyUpdate.exe (MD5: 9a3fbba103eec73f2e5221e16d2d809f) has been flagged by 24 scanners:
Scanner Software Result
avast! Win32:DealPly-A [PUP]
Bkav FE W32.Clod3d8.Trojan.ef56
ESET-NOD32 Win32/DealPly.D
Malwarebytes PUP.Optional.Dealply
TrendMicro-HouseCall TROJ_GEN.F47V0808
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
VIPRE Antivirus Adware.DealPly (fs)
Bitdefender Adware.DealPly.B
Dr.Web Adware.Shopper.348
F-Secure Adware.DealPly.B
G Data Adware.DealPly.B
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
MicroWorld-eScan Adware.DealPly.B
Symantec Adware.DealPly
Baidu-International Trojan.Win32.DealPly.D
Fortinet FortiGate W32/DealPly.D
McAfee Artemis!9A3FBBA103EE
McAfee-GW-Edition Artemis!9A3FBBA103EE
CAT-QuickHeal Adware.Crossid (Not a Virus)
K7 AntiVirus Trojan ( 0048bcdd1 )
K7GW Trojan ( 0048bcdd1 )
Norman Suspicious_Gen4.EYCEY
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyUpdateRun.exe (MD5: d3f1e810ce04b2c53293e0d72177e74f) has been flagged by 12 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/DealPly.C
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.Dealply
Symantec Adware.DealPly
VIPRE Antivirus Adware.DealPly
avast! Win32:DealPly-A [PUP]
Bkav FE W32.Clod3d8.Trojan.ef56
TrendMicro-HouseCall TROJ_GEN.F47V0808
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
Baidu-International Trojan.Win32.DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyGui.exe (MD5: 2cd9b5fcf956fb85b571a0d342278713) has been flagged by 6 scanners:
Scanner Software Result
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
Malwarebytes PUP.Optional.Dealply
VIPRE Antivirus Adware.DealPly (fs)
ESET-NOD32 Win32/DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyTune.dll (MD5: 670454c56f48d99bfb8dadcec6b3779a) has been flagged by 4 scanners:
Scanner Software Result
Malwarebytes PUP.Optional.Dealply
VIPRE Antivirus Adware.DealPly (fs)
ESET-NOD32 Win32/DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995

Software Behaviors

Scheduled tasks:
  • DealPlyUpdate.exe is scheduled as a task named 'DealPlyUpdate' (runs daily at 22:13).

Software Details

URL:
https://www.dealply.com
Support:
https://support.dealply.com
Installation path:
C:\Program Files\dealply
Uninstaller:
C:\Program Files\DealPly\uninst.exe
Size:
768.00 KB
Language:
English

DealPly Executable Details

Primary executable:
DealPlyIE.dll
Name:
DealPly
Path:
C:\Program Files\dealply\DealPlyIE.dll
MD5:
1fc57164693a65cdefe224a3dd77e52a
SHA-1:
SHA-256:
Files installed by DealPly
File Type Filename MD5
EXE
e032c7b940faf56003dba8eb437e8755
DLL
5cad5792bb209694db6e36baa2ca83ea
EXE
uninst.exe
Malware
63904940b8a5889d604ac2ea38304eeb
EXE
512de6b168d2621bb1015269bca7d3b5
EXE
9a3fbba103eec73f2e5221e16d2d809f
EXE
d3f1e810ce04b2c53293e0d72177e74f
EXE
822174f1df44c0e76c40d2bc4faf5e80
EXE
2cd9b5fcf956fb85b571a0d342278713
DLL
670454c56f48d99bfb8dadcec6b3779a
DLL
1fc57164693a65cdefe224a3dd77e52a