Easy  Deals

Easy Deals

Known Adware

by WebPick Internet Holdings Ltd.

What is Easy Deals?

Easy Deals is software application developed by WebPick Internet Holdings Ltd.. It is most commonly found on computers running Windows 7 with nearly 52.94% of installations running this operating system. Easy Deals's installer is typically 4.00 MB in size and installs around 101 files. The most common release is 1.34.5.12 with 50.00% of all installations currently using this version.

Easy Deals is most popular in the United States with 43.48% of installations residing in this country.

Easy Deals adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About Easy Deals?

Easy Deals is an advertising-supported browser extension, also known as adware, designed to deliver ads to the user's Internet browser in the form of banners, context text-links, and transitional ads. These injected ads are not affiliated with the underlying websites where they appear, and the program displays content by inserting advertisements, banners, or coupons onto web pages. The ad placements may contain links to further information about the ad ("About this Ad"). In addition to displaying ads, this adware component reports the user's browsing habits, URLs, and domain names visited in order to update and check for new offers and ad placements. It also monitors and records the advertisements appearing on web pages as well as the ads the user clicks on.

Multiple virus scanners have detected malware in Easy Deals.

Easy Deals-updater.exe (MD5: 2228c4ce314fbb8708c0be197ebcf2be) has been flagged by 6 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossRider.W
Dr.Web Trojan.Crossrider.950
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.W
Malwarebytes PUP.Optional.EasyDeals.A
Symantec Adware.Crossid
VIPRE Antivirus Crossrider (fs)
Easy Deals-firefoxinstaller.exe (MD5: 592389736b0fd21c641d3d3c3a07a816) has been flagged by 12 scanners:
Scanner Software Result
Baidu-International HackTool.Win32.CrossRider.J
Bkav FE W32.Clod99c.Trojan.f30b
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.J
K7 AntiVirus Trojan ( 0048c68d1 )
K7GW Trojan ( 0048c68d1 )
McAfee Artemis!592389736B0F
McAfee-GW-Edition Artemis!592389736B0F
Symantec Adware.FindLyrics
TrendMicro-HouseCall TROJ_GEN.R0C9H05JO13
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider.950
Malwarebytes PUP.Optional.EasyDeals.A
Easy Deals-enabler.exe (MD5: bdcc828caeb7da83f806dfdd7ecd7b6f) has been flagged by 3 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossRider.K
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.K
VIPRE Antivirus Crossrider (fs)
Easy Deals-codedownloader.exe (MD5: adc5d684db04438ea1bd2765da606505) has been flagged by 6 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossRider.T
Dr.Web Trojan.Crossrider.950
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.T
Malwarebytes PUP.Optional.EasyDeals.A
Symantec Adware.Crossid
VIPRE Antivirus Crossrider (fs)
Easy Deals-bho.dll (MD5: 7e2126edbd8b294219413214c179adb6) has been flagged by 24 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Generic.616491
Antiy-AVL AdWare/Win32.Lyckriks
AVG Generic5
Baidu-International Trojan.Win32.Toolbar.AJJ
Bitdefender Adware.Generic.616491
Bkav FE W32.Clodd68.Trojan
Dr.Web Trojan.Crossrider.7
Emsisoft Anti-Malware Adware.Generic.616491
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.H
Fortinet FortiGate Adware/Lyckriks
F-Secure Adware.Generic.616491
G Data Adware.Generic.616491
K7 AntiVirus Riskware
K7GW Riskware ( 0040eff71 )
Kaspersky not-a-virus:AdWare.Win32.Lyckriks
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee Artemis!7E2126EDBD8B
McAfee-GW-Edition Artemis!7E2126EDBD8B
MicroWorld-eScan Adware.Generic.616491
Symantec Adware.Adpopup
TrendMicro-HouseCall TROJ_GEN.R0CBH07JD13
Vba32 AntiVirus AdWare.Lyckriks
VIPRE Antivirus Crossrider (fs)
Malwarebytes PUP.Optional.EasyDeals.A

Software Behaviors

Scheduled tasks:
  • 4687970a-3c72-4da9-ab9b-abc02e5fab8f-3.exe is scheduled as a task named '4687970a-3c72-4da9-ab9b-abc02e5fab8f-3'.

Startup Entries

Startup tasks:
  • e7268c7d-003a-46cf-b399-61e2202e670c-7.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-1.
  • e7268c7d-003a-46cf-b399-61e2202e670c-5.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-5_user.
  • e7268c7d-003a-46cf-b399-61e2202e670c-4.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-4.
  • e7268c7d-003a-46cf-b399-61e2202e670c-11.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-11.
  • Easy Deals-codedownloader.exe is automatically launched at startup through a scheduled task named 44e92dd9-4064-4d29-837c-c0ae7f0864c4-6.
  • Easy Deals-nova.exe is automatically launched at startup through a scheduled task named 44e92dd9-4064-4d29-837c-c0ae7f0864c4-7.

Software Details

URL:
https://installerex.com
Support:
Installation path:
C:\Program Files\easy deals
Uninstaller:
C:\Program Files\Easy Deals\Uninstall.exe /fcp=1
Size:
4.00 MB
Language:
English

Easy Deals Executable Details

Primary executable:
Easy Deals-nova.dll
Name:
Easy Deals
Path:
C:\Program Files\easy deals\Easy Deals-nova.dll
MD5:
SHA-1:
SHA-256:
Files installed by Easy Deals
File Type Filename MD5
EXE
31d8ddc2cde4f010775c7e45d57cfc70
EXE
33de4d5a83deeb02591c69cab06463c1
EXE
86041c389b9f3c508cc7ab49a0dede5f
DLL
1adee48e6c1b48900fb47a652492d205
DLL
986ec594c59952c12252f258319a73f7
CRX
05b67c3cfd175c0b3e46ce9a405f6250
CRX
d31bc42f26df2b43e9975c0379666127
XPI
f63d5df5f7ef151d0a43ce86d2457111
DLL
587e29171c9926828c0aff9cec5a48ae
DLL
35f5c16f6202804d15d2ee35fcc5848b