Home Malware Programs Adware Coupon Alerts

Coupon Alerts

Posted: November 13, 2013

Threat Metric

Ranking: 9,619
Threat Level: 2/10
Infected PCs: 9,347
First Seen: November 13, 2013
Last Seen: October 13, 2023
OS(es) Affected: Windows

Coupon Alerts Screenshot 1Coupon Alerts is an adware application known to display several pop-up ads attempting to offer users online savings our coupon deals. Coupon Alerts may be display at random causing an interruption of surfing the internet where it could have saving deals related to the site you are visiting. Additionally, Coupon Alerts ads may redirect users to unwanted sites where other ad deals are displayed. Stopping the constant Coupon Alerts ad pop-ups usually requires that the Coupon Alerts adware be removed from the system completely.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkBHO64.dll File name: FrameworkBHO64.dll
Size: 325.16 KB (325160 bytes)
MD5: db43de3274353edccce6be0395074cfe
Detection count: 590
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 3008f326e54c6d3bb4406eb61d830eb1
Detection count: 354
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 88819eb899f95f895a32144508537dfc
Detection count: 319
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkEngine.exe File name: FrameworkEngine.exe
Size: 247.84 KB (247848 bytes)
MD5: 93be7084ff413c580fb2fc978841a8ee
Detection count: 133
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkBHO64.dll File name: FrameworkBHO64.dll
Size: 325.16 KB (325160 bytes)
MD5: f999bd4c04ad616459d5e99b2b1a96b0
Detection count: 101
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkBHO64.dll File name: FrameworkBHO64.dll
Size: 325.16 KB (325160 bytes)
MD5: 2cb274734bc432fd455db05ab285c26c
Detection count: 87
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: c2cf485c03a7670bc55e2803b11b3ba3
Detection count: 77
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 256.55 KB (256552 bytes)
MD5: b8069b1f86aeb701d0105154988377f3
Detection count: 42
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkEngine.exe File name: FrameworkEngine.exe
Size: 247.84 KB (247848 bytes)
MD5: ac5a0e8f7240c0a392213269deffcfce
Detection count: 42
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 256.55 KB (256552 bytes)
MD5: 6ae454119ab8c1ea350f1d43f26f7093
Detection count: 28
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkEngine.exe File name: FrameworkEngine.exe
Size: 247.84 KB (247848 bytes)
MD5: 872e8cf5b30cba42e1c9923ad095422f
Detection count: 28
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 86500a830ae73cee9784b1012714c0bf
Detection count: 28
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkBHO64.dll File name: FrameworkBHO64.dll
Size: 345.64 KB (345648 bytes)
MD5: f2eee6b25a65383c5fde2cd99ea2f0b4
Detection count: 26
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 0e054352cc8036e43aba7c7dc9c28a02
Detection count: 23
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 73fcdd7bdf2da7322ec435ec98cf5b63
Detection count: 23
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 288.81 KB (288816 bytes)
MD5: 805f02b088b36c2bfd87c08bbd84cb01
Detection count: 21
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES(x86)%\Coupon Alerts\FrameworkEngine.exe File name: FrameworkEngine.exe
Size: 247.84 KB (247848 bytes)
MD5: 3c8b53c8209ea3f51a4c2fcc5b23e7d1
Detection count: 19
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkEngine.exe File name: FrameworkEngine.exe
Size: 247.84 KB (247848 bytes)
MD5: 4623134c8b1b00aaf6b26fe203fe54f7
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Coupon Alerts\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 3aa07f8e31821a561773284826f58a98
Detection count: 16
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Coupon Alerts
Group: Malware file
Last Updated: June 11, 2014
CouponAlerts.exe File name: CouponAlerts.exe
Size: 3.89 MB (3899072 bytes)
MD5: 289cb6772a047f057b562a0c3270cd69
Detection count: 9
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 17, 2022
CouponAlerts.exe File name: CouponAlerts.exe
Size: 1.09 MB (1092632 bytes)
MD5: 2fd16a287970bd63473619cd57f25e7b
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 17, 2022

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{00B595DF-8592-45F8-A3A8-577D0497F0F6}{3BAD286E-058C-4D50-BEBF-14A4FDEC82E1}{3BDB28B6-0521-4D80-BB7C-E2A47BECC0E1}{60405004-E845-421D-B5B1-2038E04A9313}{CA201357-7C61-4A7F-B689-D044B70F3949}{CACB139B-7C2C-4A99-A4EE-72449D0FF549}{F791D8AE-47E8-40A5-A913-EB2D2AF29602}{F7E7D81D-4750-40CF-8498-4C2DE8F2EA02}HKEY..\..\..\..{RegistryKeys}SOFTWARE\37436SOFTWARE\Coupon AlertsSoftware\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110311581142}Software\Microsoft\Internet Explorer\Approved Extensions\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60405004-E845-421D-B5B1-2038E04A9313}SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{11111111-1111-1111-1111-110311581142}SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}SOFTWARE\Wow6432Node\37436SOFTWARE\Wow6432Node\Coupon AlertsSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60405004-E845-421D-B5B1-2038E04A9313}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Coupon Alerts-bg.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}

Additional Information

The following directories were created:
%APPDATA%\Microsoft\Windows\Start Menu\Programs\Coupon Alerts%LOCALAPPDATA%\Coupon Alerts%PROGRAMFILES%\Coupon Alerts%PROGRAMFILES(X86)%\Coupon Alerts%USERPROFILE%\AppData\LocalLow\{F791D8AE-47E8-40A5-A913-EB2D2AF29602}
Loading...