Home Malware Programs Adware Coupon Monkey

Coupon Monkey

Posted: May 21, 2014

Threat Metric

Ranking: 17,055
Threat Level: 2/10
Infected PCs: 16,168
First Seen: May 21, 2014
Last Seen: July 30, 2023
OS(es) Affected: Windows


Coupon Monkey is a potentially unwanted program (PUP) categorized as adware that may state to enhance the quality of the PC user's online shopping by delivering best available deals and discounts. Coupon Monkey may circulate and install itself on Web browsers like Internet Explorer, Mozilla Firefox, Google Chrome as an additional tool packaged with numerous freeware that computer users download from untrustworthy download websites. Coupon Monkey may generate and display a variety of types of non-stop online ads such as transitional, comparison shopping, banner or in-text advertisements. Coupon Monkey may control the PC user's online surfing routine by recording multiple software and hardware information such as Web browser type, Internet Protocol (IP), operating system, location, and other similar data.

Aliases

Generic6.ARE [AVG]Riskware/Adpeak [Fortinet]PUA.Adpeak [Ikarus]PUP/Win32.MDA [AhnLab-V3]GrayWare[AdWare:not-a-virus]/Win32.AdPeak [Antiy-AVL]Trojan.DownLoad3.35130 [DrWeb]ApplicUnwnt [Comodo]Artemis!AAB683E4801D [McAfee]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\AdwCleaner\Quarantine\C\Windows\system32\drivers\netfilter.sys.vir File name: netfilter.sys.vir
Size: 39.05 KB (39056 bytes)
MD5: 80d0b9de186d6169e6916fab17220bb6
Detection count: 7,804
Mime Type: unknown/vir
Path: %SYSTEMDRIVE%\AdwCleaner\Quarantine\C\Windows\system32\drivers\netfilter.sys.vir
Group: Malware file
Last Updated: February 6, 2023
c:\windows\system32\drivers\netfilter.sys File name: netfilter.sys
Size: 54.8 KB (54800 bytes)
MD5: 6b9b4f995daa46a327f0e037a7bce37e
Detection count: 4,457
File type: System file
Mime Type: unknown/sys
Path: c:\windows\system32\drivers\netfilter.sys
Group: Malware file
Last Updated: March 27, 2022
C:\Arquivos de programas\007\nkdytjtjsw32.exe File name: nkdytjtjsw32.exe
Size: 683.84 KB (683848 bytes)
MD5: aab683e4801d29b4131be7e06bddde6a
Detection count: 1,642
File type: Executable File
Mime Type: unknown/exe
Path: C:\Arquivos de programas\007\nkdytjtjsw32.exe
Group: Malware file
Last Updated: December 12, 2021
C:\WINDOWS\System32\drivers\netfilter64.sys File name: netfilter64.sys
Size: 44.17 KB (44176 bytes)
MD5: 967dba9624b3da4dbe64aff9a6d2cd41
Detection count: 1,485
File type: System file
Mime Type: unknown/sys
Path: C:\WINDOWS\System32\drivers\netfilter64.sys
Group: Malware file
Last Updated: August 4, 2022
%PROGRAMFILES%\007\nkdytjtjsw32.exe File name: nkdytjtjsw32.exe
Size: 769.86 KB (769864 bytes)
MD5: 3272638f6558600a5c081848bcb0df00
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\007
Group: Malware file
Last Updated: December 22, 2014

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}SOFTWARE\C76D26E8-6482-46EB-9CFD-364D4E20F8C1SOFTWARE\coupon monkeySOFTWARE\couponmonkeySOFTWARE\Wow6432Node\C76D26E8-6482-46EB-9CFD-364D4E20F8C1SOFTWARE\Wow6432Node\couponmonkeySYSTEM\ControlSet001\services\CouponMonkeyService64SYSTEM\ControlSet001\services\nkdytjtjsw32SYSTEM\CurrentControlSet\services\CouponMonkeyService64SYSTEM\CurrentControlSet\services\nkdytjtjsw32HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}C76D26E8-6482-46EB-9CFD-364D4E20F8C1

Additional Information

The following directories were created:
%PROGRAMFILES%\C76D26E8-6482-46EB-9CFD-364D4E20F8C1%PROGRAMFILES%\CouponMonkey%PROGRAMFILES(x86)%\C76D26E8-6482-46EB-9CFD-364D4E20F8C1%PROGRAMFILES(x86)%\CouponMonkey
Loading...