DealPly

DealPly

Known Malware

by DealPly Technologies Ltd.

What is DealPly?

DealPly is software application developed by DealPly Technologies Ltd.. It is most commonly found on computers running Windows 7 with nearly 76.68% of installations running this operating system. DealPly's installer is typically 768.00 KB in size and installs around 15 files.

DealPly is most popular in Brazil with 30.33% of installations residing in this country.

DealPly adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About DealPly?

DealPly is a web browser extension that enhances the online shopping experience by identifying affiliated merchants and potentially offering better pricing or alternative deals on products or services. The software utilizes the installCore platform for installation bundling and advertising. According to the End User License Agreement (EULA), DealPly aims to improve the shopping experience by providing alternative products or services, comparing prices, and offering exclusive discounts through third party e-commerce websites.

Multiple virus scanners have detected malware in DealPly.

uninst.exe (MD5: 63904940b8a5889d604ac2ea38304eeb) has been flagged by 8 scanners:
Scanner Software Result
ESET-NOD32 Win32/DealPly.D
Malwarebytes PUP.Optional.Dealply
TrendMicro-HouseCall TROJ_GEN.F47V0808
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
VIPRE Antivirus Adware.DealPly (fs)
Baidu-International Trojan.Win32.DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyUpdate.exe (MD5: 9a3fbba103eec73f2e5221e16d2d809f) has been flagged by 24 scanners:
Scanner Software Result
avast! Win32:DealPly-A [PUP]
Bkav FE W32.Clod3d8.Trojan.ef56
ESET-NOD32 Win32/DealPly.D
Malwarebytes PUP.Optional.Dealply
TrendMicro-HouseCall TROJ_GEN.F47V0808
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
VIPRE Antivirus Adware.DealPly (fs)
Bitdefender Adware.DealPly.B
Dr.Web Adware.Shopper.348
F-Secure Adware.DealPly.B
G Data Adware.DealPly.B
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
MicroWorld-eScan Adware.DealPly.B
Symantec Adware.DealPly
Baidu-International Trojan.Win32.DealPly.D
Fortinet FortiGate W32/DealPly.D
McAfee Artemis!9A3FBBA103EE
McAfee-GW-Edition Artemis!9A3FBBA103EE
CAT-QuickHeal Adware.Crossid (Not a Virus)
K7 AntiVirus Trojan ( 0048bcdd1 )
K7GW Trojan ( 0048bcdd1 )
Norman Suspicious_Gen4.EYCEY
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyUpdateRun.exe (MD5: d3f1e810ce04b2c53293e0d72177e74f) has been flagged by 12 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/DealPly.C
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.Dealply
Symantec Adware.DealPly
VIPRE Antivirus Adware.DealPly
avast! Win32:DealPly-A [PUP]
Bkav FE W32.Clod3d8.Trojan.ef56
TrendMicro-HouseCall TROJ_GEN.F47V0808
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
Baidu-International Trojan.Win32.DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyGui.exe (MD5: 2cd9b5fcf956fb85b571a0d342278713) has been flagged by 6 scanners:
Scanner Software Result
Emsisoft Anti-Malware AdWare.Agent!IK
IKARUS anti.virus AdWare.Agent
Malwarebytes PUP.Optional.Dealply
VIPRE Antivirus Adware.DealPly (fs)
ESET-NOD32 Win32/DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995
DealPlyTune.dll (MD5: 670454c56f48d99bfb8dadcec6b3779a) has been flagged by 4 scanners:
Scanner Software Result
Malwarebytes PUP.Optional.Dealply
VIPRE Antivirus Adware.DealPly (fs)
ESET-NOD32 Win32/DealPly.D
ViRobot Trojan.Win32.A.Swizzor.456995

Software Behaviors

Scheduled tasks:
  • DealPlyUpdate.exe is scheduled as a task named 'DealPlyUpdate' (runs daily at 22:13).

Software Details

URL:
https://www.dealply.com
Support:
https://support.dealply.com
Installation path:
C:\Program Files\dealply
Uninstaller:
C:\Program Files\DealPly\uninst.exe
Size:
768.00 KB
Language:
English

DealPly Executable Details

Primary executable:
DealPlyIE.dll
Name:
DealPly
Path:
C:\Program Files\dealply\DealPlyIE.dll
MD5:
1fc57164693a65cdefe224a3dd77e52a
SHA-1:
SHA-256:
Files installed by DealPly
File Type Filename MD5
EXE
591f7c7bde59e71e362699683e91b471
DLL
49421c33096d95890bd2d70128ba4fc6
DLL
e35d3ccfe309d7b29b8b219ff27582a4
CRX
2693369290efdfa9253d47a205e05b9d
XPI
17341e61e7196134cca3d929c68d7c83