Deal4Me

Deal4Me

Known Toolbar

by InstalleRex-WebPick

What is Deal4Me?

Deal4Me is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 with nearly 65.28% of installations running this operating system. Deal4Me's installer is typically 1.00 MB in size and installs around 60 files.

Deal4Me is most popular in the United States with 50.00% of installations residing in this country.

About Deal4Me?

The Deal 4 Me web browser extension is a product of JustPlug.It and is distributed through the WebPick (InstalleRex) download and install manager. It is bundled with various adware offers and functions as a cross browser extension with multiple components, including a Windows service, an auto-starting feature, and a browser toolbar/plugin. This extension is specifically designed to deliver advertisements in the form of banner ads, hyper-text links, and pop-ups within the browser. In some cases, it may also hijack existing website advertising and inject affiliate codes in links as coupon offers. Additionally, the displayed advertisements may include deceptive malvertising ads for 'required' updates of common programs. Upon installation, the program may also install bundled adware utilities and additional browser extensions, as well as modify the browser's default security settings.

Multiple virus scanners have detected malware in Deal4Me.

EN.dll (MD5: 67ee6efc066c2d3a5bd277ba4b813e8b) has been flagged by 24 scanners:
Scanner Software Result
avast! Win32:Adware-gen [Adw]
AVG Generic5.BFGT
Baidu-International Adware.Win32.MultiPlug.bBN
Comodo Security Application.Win32.MultiPlug.AUAU
Dr.Web Trojan.Crossrider.29972
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
IKARUS anti.virus PUA.BHO
K7 AntiVirus Adware ( 004a01c51 )
K7GW Adware ( 004a01c51 )
TrendMicro-HouseCall Suspicious_GEN.F47V0815
Lavasoft Ad-Aware Gen:Variant.Adware.61989
AhnLab-V3 Trojan/Win32.Preloader
Avira AntiVir TR/Crypt.EPACK.Gen2
Bitdefender Gen:Variant.Adware.61989
Emsisoft Anti-Malware Gen:Variant.Adware.61989 (B)
F-Secure Gen:Variant.Adware.61989
G Data Gen:Variant.Adware.61989
Malwarebytes PUP.Optional.MultiPlug
MicroWorld-eScan Gen:Variant.Adware.61989
Kaspersky not-a-virus:AdWare.Win32.MultiPlug.bfk
Sophos Generic PUA GP
VIPRE Antivirus Trojan.Win32.Generic!BT
Qihoo-360 HEUR/Malware.QVM10.Gen
Trend Micro ADW_MULTIPLUG
L.exe (MD5: 0e7b4aef600f521c24a068e618019acb) has been flagged by 48 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Strictor.61989
AhnLab-V3 Trojan/Win32.Preloader
ALYac Gen:Variant.Adware.Strictor.61989
avast! Win32:Adware-gen [Adw]
AVG Generic5.BULU
Avira Adware/Strictor.61989.38
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.BBN
Bitdefender Gen:Variant.Adware.Strictor.61989
Comodo Security ApplicUnwnt
Dr.Web Trojan.Crossrider.37456
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
F-Prot W32/A-958929e9!Eldorado
F-Secure Gen:Variant.Adware.Strictor.61989
G Data Gen:Variant.Adware.Strictor.61989
K7 AntiVirus Adware ( 004a07251 )
K7GW Adware ( 004a07251 )
Malwarebytes PUP.Optional.MultiPlug
McAfee Artemis!0E7B4AEF600F
McAfee-GW-Edition BehavesLike.Win32.BadFile.jh
MicroWorld-eScan Gen:Variant.Adware.Strictor.61989
NANO AntiVirus Riskware.Win32.Strictor.dfywqx
Panda Antivirus Trj/Chgt.I
Sophos Generic PUA KI
Symantec Adware.Popuppers
Trend Micro TROJ_GEN.R02SC0EJ714
TrendMicro-HouseCall TROJ_GEN.R02SC0EJ714
VIPRE Antivirus Trojan.Win32.Generic!BT
AegisLab AdWare.W32.MegaSearch
Agnitum Outpost PUA.MultiPlug!
Antiy-AVL GrayWare[AdWare:not-a-virus,HEUR]/Win32.Agent
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.153998 (B)
Rising Antivirus PE:Trojan.Win32.Generic.175E7B5E!392067934
Bkav FE W32.ToolbarEscort.Adware
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
IKARUS anti.virus Win32.SuspectCrc
Kaspersky not-a-virus:AdWare.Win32.BHO.bdnc
Vba32 AntiVirus AdWare.BHO
Tencent Win32.Adware.Agent.Aiio
Avira AntiVir ADWARE/Adware.Gen
Norman Multiplug.A
nProtect Adware.Agent.NYS
SUPERAntiSpyware Adware.Multiplug/Variant
Qihoo-360 Win32/Trojan.Adware.273
Zillya Adware.MultiPlug.Win64.10
ViRobot Adware.MultiPlug.398336
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
tEx.dll (MD5: 6bdd2b931e45fa910c821a3beb07928c) has been flagged by 47 scanners:
Scanner Software Result
Lavasoft Ad-Aware Application.Generic.604038
Agnitum Outpost PUA.BHO!
Antiy-AVL Trojan/Win32.TGeneric
avast! Win32:Dropper-gen [Drp]
AVG Generic5.APQB
Baidu-International Adware.Win32.BHO.71
Bitdefender Application.Generic.604038
Bkav FE W32.ToolbarEscort.Adware
CAT-QuickHeal AdWare.BHO.r6 (Not a Virus)
Comodo Security ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.T
F-Secure Application.Generic.604038
G Data Application.Generic.604038
IKARUS anti.virus Win32.SuspectCrc
K7 AntiVirus Adware ( 004976341 )
K7GW Adware ( 004976341 )
Kaspersky not-a-virus:AdWare.Win32.BHO.bdnc
Malwarebytes PUP.Optional.MultiPlug.A
McAfee RDN/Generic PUP.x!cf3
McAfee-GW-Edition RDN/Generic PUP.x!cf3
MicroWorld-eScan Application.Generic.604038
NANO AntiVirus Riskware.Win32.BHO.dbdfeq
Panda Antivirus Trj/CI.A
Sophos Generic PUA IO
Symantec Adware.BL
Trend Micro ADW_MULTIPLUG
TrendMicro-HouseCall ADW_MULTIPLUG
Vba32 AntiVirus AdWare.BHO
VIPRE Antivirus Trojan.Win32.Generic!BT
AegisLab AdWare.W32.MegaSearch
AhnLab-V3 Adware/Win32.Agent
Avira TR/Graftor.151492.2
AVware Trojan.Win32.Generic!BT
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.151492 (B)
Fortinet FortiGate Riskware/MultiPlug
Tencent Win32.Adware.Agent.Aiio
Avira AntiVir ADWARE/Adware.Gen
Norman Multiplug.A
nProtect Adware.Agent.NYS
Rising Antivirus PE:Trojan.Win32.Generic.1686F646!377943622
SUPERAntiSpyware Adware.Multiplug/Variant
Qihoo-360 Win32/Trojan.Adware.273
Zillya Adware.MultiPlug.Win64.10
Dr.Web Trojan.Crossrider.8415
ViRobot Adware.MultiPlug.398336
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
F-Prot W32/A-4a0379ef!Eldorado
83S3PmrAxO.exe (MD5: d39594b39e884ec8a901b37ef37b98f0) has been flagged by 33 scanners:
Scanner Software Result
Lavasoft Ad-Aware Gen:Variant.Adware.Graftor.146103
AhnLab-V3 Trojan/Win32.Preloader
AVG Generic_r.QQ
Baidu-International Trojan.Win32.MultiPlug.bAG
Bitdefender Gen:Variant.Adware.Graftor.146103
Emsisoft Anti-Malware Gen:Variant.Adware.Graftor.146103 (B)
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.AG
F-Secure Gen:Variant.Adware.Graftor.146103
G Data Gen:Variant.Adware.Graftor.146103
Malwarebytes PUP.Optional.MultiPlug
MicroWorld-eScan Gen:Variant.Adware.Graftor.146103
Panda Antivirus Trj/Genetic.gen
Avira ADWARE/MultiPlug.Gen
McAfee-GW-Edition BehavesLike.Win32.Adware.jm
Sophos Generic PUA MP
avast! Win32:Adware-gen [Adw]
AVware Trojan.Win32.Generic!BT
Comodo Security Application.Win32.MultiPlug.AUAU
Fortinet FortiGate Riskware/MultiPlug
IKARUS anti.virus PUA.BHO
K7 AntiVirus Adware ( 004a01c51 )
K7GW Adware ( 004a01c51 )
TrendMicro-HouseCall Suspicious_GEN.F47V0816
VIPRE Antivirus Trojan.Win32.Generic!BT
McAfee RDN/Generic PUP.x!c2k
Symantec Adware.BL
Qihoo-360 Win32/Trojan.Adware.453
Tencent Win64.Adware.Multiplug.Lmbj
Avira AntiVir TR/Crypt.EPACK.Gen2
NANO AntiVirus Trojan.Win32.EPACK.ddxhzv
Dr.Web Trojan.Crossrider.29972
Kaspersky not-a-virus:AdWare.Win32.MultiPlug.bfk
Trend Micro ADW_MULTIPLUG
11og_CFkV.dll (MD5: f3147f862ab2fe690c49d6eed659cb57) has been flagged by 31 scanners:
Scanner Software Result
avast! Win32:Adware-gen [Adw]
AVG Generic5.BFGT
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.BBN
Comodo Security Application.Win32.MultiPlug.AUAU
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.BN
Fortinet FortiGate Riskware/MultiPlug
IKARUS anti.virus PUA.BHO
K7 AntiVirus Adware ( 004a01c51 )
K7GW Adware ( 004a01c51 )
TrendMicro-HouseCall Suspicious_GEN.F47V0816
VIPRE Antivirus Trojan.Win32.Generic!BT
AhnLab-V3 Trojan/Win64.Preloader
G Data Win64.Adware.Megasearch.C
Malwarebytes PUP.Optional.MultiPlug.A
McAfee RDN/Generic PUP.x!c2k
McAfee-GW-Edition RDN/Generic PUP.x!c2k
Symantec Adware.BL
Bitdefender Adware.Generic.939645
Emsisoft Anti-Malware Adware.Generic.939645 (B)
MicroWorld-eScan Adware.Generic.939645
Qihoo-360 Win32/Trojan.Adware.453
Tencent Win64.Adware.Multiplug.Lmbj
Avira AntiVir TR/Crypt.EPACK.Gen2
NANO AntiVirus Trojan.Win32.EPACK.ddxhzv
Sophos Generic PUA DE
Dr.Web Trojan.Crossrider.29972
Lavasoft Ad-Aware Gen:Variant.Adware.61989
F-Secure Gen:Variant.Adware.61989
Kaspersky not-a-virus:AdWare.Win32.MultiPlug.bfk
Trend Micro ADW_MULTIPLUG

Software Details

URL:
–
Support:
–
Installation path:
C:\ProgramData\deal4me
Uninstaller:
"C:\ProgramData\Deal4Me\Us.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Size:
1.00 MB
Language:
English

Deal4Me Executable Details

Primary executable:
us.exe
Name:
Deal4Me
Path:
C:\ProgramData\deal4me\us.exe
MD5:
bca52abb986cea83b447557b37342e49
SHA-1:
–
SHA-256:
–
Files installed by Deal4Me
File Type Filename MD5
DLL
f3147f862ab2fe690c49d6eed659cb57
EXE
cb1441084f5025ea621c617f8295000f
DLL
54e21b7dae36a033b7e663765a15b095
DLL
374367ba293ed2c64cb7bfc4d1fe1417
EXE
1c20f01c2cd58b1fbdc61817a61996b4
DLL
zs_.dll
Malware
d8485f2cfe63ec47304bcdc6ccf6b8cc
EXE
c4d8dbb8cd5709640606480814f12450
DLL
7cd46176b71eda0ecb89413ed185e606
DLL
ChHD.dll
Malware
d316153e6feea98b96650c4f05e2f31a
DLL
6P.x64.dll
Malware
35eb114bc1702df83ee6e23a56b4df0e