Easy  Deals

Easy Deals

Known Adware

by WebPick Internet Holdings Ltd.

What is Easy Deals?

Easy Deals is software application developed by WebPick Internet Holdings Ltd.. It is most commonly found on computers running Windows 7 with nearly 52.94% of installations running this operating system. Easy Deals's installer is typically 4.00 MB in size and installs around 101 files. The most common release is 1.34.5.12 with 50.00% of all installations currently using this version.

Easy Deals is most popular in the United States with 43.48% of installations residing in this country.

Easy Deals adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About Easy Deals?

Easy Deals is an advertising-supported browser extension, also known as adware, designed to deliver ads to the user's Internet browser in the form of banners, context text-links, and transitional ads. These injected ads are not affiliated with the underlying websites where they appear, and the program displays content by inserting advertisements, banners, or coupons onto web pages. The ad placements may contain links to further information about the ad ("About this Ad"). In addition to displaying ads, this adware component reports the user's browsing habits, URLs, and domain names visited in order to update and check for new offers and ad placements. It also monitors and records the advertisements appearing on web pages as well as the ads the user clicks on.

Multiple virus scanners have detected malware in Easy Deals.

Easy Deals-updater.exe (MD5: 2228c4ce314fbb8708c0be197ebcf2be) has been flagged by 6 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossRider.W
Dr.Web Trojan.Crossrider.950
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.W
Malwarebytes PUP.Optional.EasyDeals.A
Symantec Adware.Crossid
VIPRE Antivirus Crossrider (fs)
Easy Deals-firefoxinstaller.exe (MD5: 592389736b0fd21c641d3d3c3a07a816) has been flagged by 12 scanners:
Scanner Software Result
Baidu-International HackTool.Win32.CrossRider.J
Bkav FE W32.Clod99c.Trojan.f30b
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.J
K7 AntiVirus Trojan ( 0048c68d1 )
K7GW Trojan ( 0048c68d1 )
McAfee Artemis!592389736B0F
McAfee-GW-Edition Artemis!592389736B0F
Symantec Adware.FindLyrics
TrendMicro-HouseCall TROJ_GEN.R0C9H05JO13
VIPRE Antivirus Crossrider (fs)
Dr.Web Trojan.Crossrider.950
Malwarebytes PUP.Optional.EasyDeals.A
Easy Deals-enabler.exe (MD5: bdcc828caeb7da83f806dfdd7ecd7b6f) has been flagged by 3 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossRider.K
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.K
VIPRE Antivirus Crossrider (fs)
Easy Deals-codedownloader.exe (MD5: adc5d684db04438ea1bd2765da606505) has been flagged by 6 scanners:
Scanner Software Result
Baidu-International Adware.Win32.CrossRider.T
Dr.Web Trojan.Crossrider.950
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.T
Malwarebytes PUP.Optional.EasyDeals.A
Symantec Adware.Crossid
VIPRE Antivirus Crossrider (fs)
Easy Deals-bho.dll (MD5: 7e2126edbd8b294219413214c179adb6) has been flagged by 24 scanners:
Scanner Software Result
Lavasoft Ad-Aware Adware.Generic.616491
Antiy-AVL AdWare/Win32.Lyckriks
AVG Generic5
Baidu-International Trojan.Win32.Toolbar.AJJ
Bitdefender Adware.Generic.616491
Bkav FE W32.Clodd68.Trojan
Dr.Web Trojan.Crossrider.7
Emsisoft Anti-Malware Adware.Generic.616491
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.H
Fortinet FortiGate Adware/Lyckriks
F-Secure Adware.Generic.616491
G Data Adware.Generic.616491
K7 AntiVirus Riskware
K7GW Riskware ( 0040eff71 )
Kaspersky not-a-virus:AdWare.Win32.Lyckriks
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee Artemis!7E2126EDBD8B
McAfee-GW-Edition Artemis!7E2126EDBD8B
MicroWorld-eScan Adware.Generic.616491
Symantec Adware.Adpopup
TrendMicro-HouseCall TROJ_GEN.R0CBH07JD13
Vba32 AntiVirus AdWare.Lyckriks
VIPRE Antivirus Crossrider (fs)
Malwarebytes PUP.Optional.EasyDeals.A

Software Behaviors

Scheduled tasks:
  • 4687970a-3c72-4da9-ab9b-abc02e5fab8f-3.exe is scheduled as a task named '4687970a-3c72-4da9-ab9b-abc02e5fab8f-3'.

Startup Entries

Startup tasks:
  • e7268c7d-003a-46cf-b399-61e2202e670c-7.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-1.
  • e7268c7d-003a-46cf-b399-61e2202e670c-5.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-5_user.
  • e7268c7d-003a-46cf-b399-61e2202e670c-4.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-4.
  • e7268c7d-003a-46cf-b399-61e2202e670c-11.exe is automatically launched at startup through a scheduled task named e7268c7d-003a-46cf-b399-61e2202e670c-11.
  • Easy Deals-codedownloader.exe is automatically launched at startup through a scheduled task named 44e92dd9-4064-4d29-837c-c0ae7f0864c4-6.
  • Easy Deals-nova.exe is automatically launched at startup through a scheduled task named 44e92dd9-4064-4d29-837c-c0ae7f0864c4-7.

Software Details

URL:
https://installerex.com
Support:
Installation path:
C:\Program Files\easy deals
Uninstaller:
C:\Program Files\Easy Deals\Uninstall.exe /fcp=1
Size:
4.00 MB
Language:
English

Easy Deals Executable Details

Primary executable:
Easy Deals-nova.dll
Name:
Easy Deals
Path:
C:\Program Files\easy deals\Easy Deals-nova.dll
MD5:
SHA-1:
SHA-256:
Files installed by Easy Deals
File Type Filename MD5
DLL
371bd2a6cc1d8ad38be3e4537effddbd
DLL
0dadb3760193409042aa48a18b8508c8
CRX
af54fbbec9ef6871ce265641ab6b5e03
XPI
2696fe33fe67ac993f41ae92eb3e5931
DLL
ebfc054a81ddf78a1060412ad29be790
CRX
5b0bfeff90a996213b4453e50bcd56cc
DLL
e9723256e39e3d5a5df3e6a6686a3e3f
DLL
2e88bfb95f9be1d59e2a6ae0296ddd26
DLL
f184012c7eeceb6cd8319a8019c7ee5b
DLL
4ffcc7766d097939640e6d0c5e0fba73