PriceDownloader
What is PriceDownloader?
PriceDownloader is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 (SP1) with nearly ~99% of installations running this operating system. PriceDownloader's installer is typically 1.00 MB in size and installs around 3 files.
PriceDownloader is most popular in the United States with 83.33% of installations residing in this country.
About PriceDownloader?
Price Downloader is a web browser extension that displays additional advertisements in search engines such as Bing and Google. It installs itself as an extension for Internet Explorer, Chrome, and Firefox, and runs as a background process. Although it creates an entry in Add or Remove Programs, removing this entry might stop the adware from running but will not stop ads from displaying. Once installed, it injects new ads into search results and various web pages that use 3rd party advertising, replacing existing ads with its own. The program utilizes the InstalleRex download manager from WebPicks Holdings for installation. InstalleRex is known for distributing potentially unwanted applications, web browser toolbars, and ad-supported extensions. The software is a variant of known adware (also known as SaveAs, SaveNShare, DownloadKeeper), but is re-branded to mask its origin, although it includes many of the same components.
Multiple virus scanners have detected malware in PriceDownloader.
| Scanner Software | Version | Result |
|---|---|---|
| AhnLab-V3 | 2014.01.10.04 | Adware/Win32.Graftor |
| Avira AntiVir | 7.11.124.148 | ADWARE/Adware.A.2611 |
| AVG | 13.0.0.3169 | Generic5.AKZD |
| Baidu-International | 3.5.1.41473 | Adware.Win32.BHO.77 |
| Bkav FE | 1.3.0.4613 | W32.Clod3d2.Trojan.2e5d |
| Comodo Security | 17587 | ApplicUnwnt |
| ESET-NOD32 | 9273 | a variant of Win32/AdWare.MultiPlug.N |
| K7 AntiVirus | 9.175.10794 | Adware ( 004923a41 ) |
| K7GW | 9.175.10794 | Adware ( 004923a41 ) |
| Malwarebytes | 1.75.0.1 | PUP.Optional.MultiPlug.A |
| McAfee | 5.600.0.1067 | Artemis!E1D330228DB3 |
| McAfee-GW-Edition | 2013 | Heuristic.BehavesLike.Win32.Suspicious.H |
| Rising Antivirus | 25.0.0.11 | PE:Malware.Adware!6.1293 |
| TrendMicro-HouseCall | 9.700.0.1001 | TROJ_GEN.F47V1222 |
| VIPRE Antivirus | 25282 | JustPlugIt (fs) |
| Scanner Software | Version | Result |
|---|---|---|
| Lavasoft Ad-Aware | 1104 | Application.Generic.582628 |
| Agnitum Outpost | 7.1.1 | Adware.MegaSearch |
| AhnLab-V3 | 2014.01.26 | Trojan/Win32.Preloader |
| Avira AntiVir | 7.11.127.54 | SPR/Tool.498176 |
| Antiy-AVL | 2.0.3.7 | AdWare/Win32.MegaSearch |
| avast! | 2014.9-140126 | Win32:Malware-gen |
| AVG | 2015.0.3582 | Generic5 |
| Baidu-International | 4.0.3.14126 | Adware.Win32.MegaSearch.40 |
| Bitdefender | 1.0.20.130 | Application.Generic.582628 |
| Bkav FE | 1.3.0.4923 | W32.WonintLTD.Trojan |
| CAT-QuickHeal | 1.14.12.00 | Adware.Megasearch.at (Not a Virus) |
| Comodo Security | 17672 | ApplicUnwnt |
| ESET-NOD32 | 8.9337 | a variant of Win32/AdWare.MultiPlug.K.gen |
| Fortinet FortiGate | 1/26/2014 | Adware/Megasearch |
| G Data | 14.1.24 | Application.Generic.582628 |
| IKARUS anti.virus | t3scan.2.2.29 | Win32.AdWare |
| K7 AntiVirus | 13.175.10963 | Adware |
| K7GW | 13.175.10963 | Adware ( 00490ca81 ) |
| Kaspersky | 14.0.0.4407 | not-a-virus:AdWare.Win32.MegaSearch |
| Kingsoft AntiVirus | 331020.49267 | Win32.Troj.MegaSearch.at.(kcloud) |
| Malwarebytes | v2014.01.26.03 | PUP.Optional.MultiPlug.A |
| McAfee | 5600.7238 | PUP-FFY!06CFEAA6556D |
| McAfee-GW-Edition | 7.7238 | Heuristic.BehavesLike.Win32.Suspicious.H |
| MicroWorld-eScan | 15.0.0.78 | Application.Generic.582628 |
| NANO AntiVirus | 0.28.0.57380 | Riskware.Win32.MegaSearch.cscrfp |
| Panda Antivirus | 14.01.26.03 | Trj/Genetic.gen |
| Qihoo-360 | 1.0.0.1015 | Win32/Virus.Adware.422 |
| Sophos | 4.97 | Generic PUA BA |
| Trend Micro | 10.465.26 | TROJ_GEN.F0C2C00LT13 |
| TrendMicro-HouseCall | 7.2.26 | TROJ_GEN.F0C2C00LT13 |
| Vba32 AntiVirus | 3.12.24.3 | AdWare.MegaSearch |
| VIPRE Antivirus | 25786 | Trojan.Win32.Generic!BT |
| ViRobot | 2011.4.7.4223 | Adware.Agent.498176.A |
| Rising Antivirus | 25.0.0.11 | PE:Malware.Adware!6.1293 |
Software Details
- URL:
- https://justplug.it
- Support:
- –
- Installation path:
- C:\ProgramData\pricedownloader
- Uninstaller:
- "C:\ProgramData\PriceDownloader\OQdgDn.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
- Size:
- 1.00 MB
- Language:
- English
PriceDownloader Executable Details
- Primary executable:
- OQdgDn.exe
- Name:
- PriceDownloader
- Path:
- C:\ProgramData\pricedownloader\OQdgDn.exe
- MD5:
- 06cfeaa6556d9264ef303884935ddfe2
- SHA-1:
- –
- SHA-256:
- –
| File Type | Filename | MD5 |
|---|---|---|
|
DLL
|
5a525639bc99f2961bf96f39a08b3f59 | |
|
DLL
|
OQdgDn.dll
Malware
|
e1d330228db3f4aab5582d1a294163f3 |
|
EXE
|
OQdgDn.exe
Adware
|
06cfeaa6556d9264ef303884935ddfe2 |