Home Malware Programs Adware Coupon Marvel

Coupon Marvel

Posted: October 21, 2014

Threat Metric

Ranking: 17,097
Threat Level: 2/10
Infected PCs: 2,588
First Seen: October 16, 2014
Last Seen: October 10, 2023
OS(es) Affected: Windows

Coupon Marvel is an adware-related application created to help users have a better online shopping experience by offering coupons and discounts based on their online shopping preferences. Coupon Marvel may generate various types of ads such as pop-ups, coupons, special offers, in-text ads, etc. Ad-related extensions such as Coupon Marvel may also cause your browser to switch default search engine and homepage and display advertisement not only on shopping websites. In general, Coupon Marvel might infiltrate your system via bundling. Such marketing methods are quite popular because users do not pay attention to every program in the bundle. Computer threat analysts advise users to read the 'Terms and Conditions' carefully when installing free software. What they also advise is to check what is included in the bundle since there are times when people do not bother to check.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Coupon Marvel\bin\CouponMarvel.exe File name: CouponMarvel.exe
Size: 678.4 KB (678400 bytes)
MD5: 4589c3f54abc3e303efe330cf874417d
Detection count: 56
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Coupon Marvel\bin
Group: Malware file
Last Updated: October 22, 2015
%PROGRAMFILES(x86)%\Coupon Marvel\bin\CouponMarvel32.dll File name: CouponMarvel32.dll
Size: 804.86 KB (804864 bytes)
MD5: 6ac0183a74e805a123a0a0241bc7211f
Detection count: 54
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Coupon Marvel\bin
Group: Malware file
Last Updated: October 22, 2015
%PROGRAMFILES(x86)%\Coupon Marvel\bin\CouponMarvel64.dll File name: CouponMarvel64.dll
Size: 1.01 MB (1013248 bytes)
MD5: 6ef59219ae9f9468994c5cb79967c3d5
Detection count: 53
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Coupon Marvel\bin
Group: Malware file
Last Updated: October 22, 2015

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%WINDIR%\System32\Tasks\Coupon Marvel%WINDIR%\Tasks\Coupon Marvel.jobHKEY..\..\..\..{RegistryKeys}SOFTWARE\Coupon MarvelSoftware\Microsoft\Internet Explorer\Approved Extensions\{B3E3F753-EF08-4A62-9FB9-43A83CB0818B}SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Coupon Marvel.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Coupon MarvelSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{b3e3f753-ef08-4a62-9fb9-43a83cb0818b}SOFTWARE\Wow6432Node\Coupon MarvelHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Coupon Marvel

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Application Data\Service1291%ALLUSERSPROFILE%\Service1291%LOCALAPPDATA%\Google\Chrome\User Data\Default\Extensions\ldoelldhnadjajbpdkgajifamomngnmc%PROGRAMFILES%\Coupon Marvel%PROGRAMFILES(x86)%\Coupon Marvel
Loading...