Home Malware Programs Adware DealPly

DealPly

Posted: June 1, 2012

Threat Metric

Ranking: 293
Threat Level: 2/10
Infected PCs: 2,666,921
First Seen: June 1, 2012
Last Seen: December 28, 2023
OS(es) Affected: Windows

Dealply is adware that displays shopping discount offers through your Web browser. Because Dealply's content can be considered advertisements, and because Dealply sometimes is installed without your consent, Dealply also can be classified as adware but doesn't contain any dedicated malicious functions. SpywareRemove.com malware experts do suggest that you engage with any Dealply offers with a reasonable amount of caution – and find that deleting Dealply usually is preferable to tolerating its presence if you've made the likely decision that you're uninterested in its shopping advice.

Dealply: Adware that's a Bit Too Enthusiastic to Jump Onto Your Browser

Dealply, also identified as Adware:Win32/Dealply or Adware.DealPly is a browser add-on that displays online shopping discounts for various major online retailers. By receiving a small revenue bump in exchange for redirecting traffic to these sites, Dealply profits off of every installation – assuming that you actually click on its shopping offers. Because these functions are very similar to those of adware, many anti-malware products prefer to classify Dealply as an adware program, although Dealply doesn't include any other unwanted features that SpywareRemove.com malware experts would suspect from adware (such as monitoring your online behavior or slowing down your browser with any behind-the-scene activities).

Dealply operates in most versions of Windows (including recent versions) and often is installed in bundles with separate programs. These bundled installers usually will request permission to install Dealply, but may do so in a way that SpywareRemove.com malware experts would consider exploitative – such as making vague or exaggerated claims about Dealply's capabilities, or not mentioning that its content is equivalent to shopping advertisements. Paying attention to application installation options usually will help keep your PC from dealing with an unwanted Dealply or other adware.

Keeping Your Browser from Being Played by Dealply

If you aren't seeing any benefits from Dealply's installation on your browser, SpywareRemove.com malware experts suggest that you use anti-malware products for removing Dealply – just to be certain that all of its components are deleted as completely as possible. Most adware tend to leave some components and settings changes on your PC even after they're uninstalled through normal methods, such as your browser's add-on manager.

Because Dealply sorts some of its offers according to profitability among affiliates, you also should bear in mind that not all of Dealply's shopping offers are necessarily guaranteed to offer the best discounts. However, SpywareRemove.com malware researchers are happy to verify that, at this point, Dealply has not been abused to promote malicious Web content of any type and should not be treated as a danger to your PC's safety.
Non-Windows OSes are incompatible with Dealply, but Dealply can be installed to most major Web browsers, including popular brands like IE or Chrome.

Aliases

Adware.DealPly [Symantec]SecurityRisk.Downldr [Symantec]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Paredimas\SynHelper.exe File name: SynHelper.exe
Size: 2.08 MB (2087936 bytes)
MD5: 2bc58df9963051b82a2fa1533f6373f0
Detection count: 609
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Paredimas\SynHelper.exe
Group: Malware file
Last Updated: August 21, 2020
c:\Users\<username>\appdata\roaming\fokada\syncversion.exe File name: syncversion.exe
Size: 524.28 KB (524288 bytes)
MD5: 831817c44705f2807365b70517275f7a
Detection count: 408
File type: Executable File
Mime Type: unknown/exe
Path: c:\Users\<username>\appdata\roaming\fokada
Group: Malware file
Last Updated: August 21, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Local\27249c7ce09ea0b7\syncversion.exe File name: syncversion.exe
Size: 625.66 KB (625664 bytes)
MD5: 27a9acd2dceb8ae6bb3971c3c501b52e
Detection count: 356
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Local\27249c7ce09ea0b7\syncversion.exe
Group: Malware file
Last Updated: August 21, 2020
c:\Users\<username>\appdata\local\76c2328f18c223c875322\synctask.exe File name: synctask.exe
Size: 603.13 KB (603136 bytes)
MD5: ba7587febeb162f216d1e9111103db13
Detection count: 333
File type: Executable File
Mime Type: unknown/exe
Path: c:\Users\<username>\appdata\local\76c2328f18c223c875322
Group: Malware file
Last Updated: August 21, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Lecocefoho\SynHelper.exe File name: SynHelper.exe
Size: 2.04 MB (2046464 bytes)
MD5: 5a60c488de67f2163e765139b59e1d7b
Detection count: 311
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Lecocefoho\SynHelper.exe
Group: Malware file
Last Updated: August 21, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Figedetoko\SynHelper.exe File name: SynHelper.exe
Size: 898.04 KB (898048 bytes)
MD5: d984de5e33d3c5beb2d613c40cfbb4ba
Detection count: 307
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Figedetoko\SynHelper.exe
Group: Malware file
Last Updated: August 21, 2020
%SYSTEMDRIVE%\Documents and Settings\NetworkService\Configuración local\Datos de programa\Tusamel\SyncTask.exe File name: SyncTask.exe
Size: 502.27 KB (502272 bytes)
MD5: f94668550e879b17f3cec998121fc41f
Detection count: 239
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Documents and Settings\NetworkService\Configuración local\Datos de programa\Tusamel\SyncTask.exe
Group: Malware file
Last Updated: August 21, 2020
c:\Users\<username>\appdata\roaming\kenamu\updane.exe File name: updane.exe
Size: 2.36 MB (2365952 bytes)
MD5: 80353796871c855e4470646fbcaa3d29
Detection count: 197
File type: Executable File
Mime Type: unknown/exe
Path: c:\Users\<username>\appdata\roaming\kenamu
Group: Malware file
Last Updated: August 21, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Fuhoru\SynHelper.exe File name: SynHelper.exe
Size: 780.98 KB (780986 bytes)
MD5: be085e509644ee94292d876a0e20769e
Detection count: 164
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Fuhoru\SynHelper.exe
Group: Malware file
Last Updated: August 21, 2020
%SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Naribodogis\UpdTask.exe File name: UpdTask.exe
Size: 1.95 MB (1953792 bytes)
MD5: b0410c3ce5f63407ecb10423eb5162c7
Detection count: 141
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\AppData\Roaming\Naribodogis\UpdTask.exe
Group: Malware file
Last Updated: August 21, 2020
c:\Users\<username>\appdata\roaming\mabodisaku\syncversion.exe File name: syncversion.exe
Size: 639.48 KB (639488 bytes)
MD5: 982b61432b504ff73b89e0f3eb045465
Detection count: 141
File type: Executable File
Mime Type: unknown/exe
Path: c:\Users\<username>\appdata\roaming\mabodisaku
Group: Malware file
Last Updated: August 21, 2020
c:\Users\<username>\appdata\roaming\bulisineg\productupdt.exe File name: productupdt.exe
Size: 486.4 KB (486400 bytes)
MD5: 51b2424c9c01977cd3314617ba1057dc
Detection count: 119
File type: Executable File
Mime Type: unknown/exe
Path: c:\Users\<username>\appdata\roaming\bulisineg
Group: Malware file
Last Updated: August 21, 2020
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\61ec9e34-09b4-b781-6da2-455c7bb2005d\synhelper.exe File name: synhelper.exe
Size: 1.12 MB (1123840 bytes)
MD5: b4d216147811aa07b3264466fcee6bc7
Detection count: 61
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\61ec9e34-09b4-b781-6da2-455c7bb2005d
Group: Malware file
Last Updated: August 5, 2020
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\1ccc70ad-d706-d012-7596-2847bbe382c7\syncversion.exe File name: syncversion.exe
Size: 808.98 KB (808984 bytes)
MD5: c4482d6180c2b8027976fc4a86b892bd
Detection count: 43
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\1ccc70ad-d706-d012-7596-2847bbe382c7
Group: Malware file
Last Updated: August 5, 2020
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\6951ab4131f565f9\synhelper.exe File name: synhelper.exe
Size: 924.23 KB (924231 bytes)
MD5: 980c22d20d98323ca3c709794e13fe23
Detection count: 7
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\6951ab4131f565f9
Group: Malware file
Last Updated: August 5, 2020
%SYSTEMDRIVE%\Users\<username>\appdata\roaming\22440f22a874\syncversion.exe File name: syncversion.exe
Size: 582.51 KB (582517 bytes)
MD5: 7c52f9e1a7eaa955539f1fc21c02dc5b
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %SYSTEMDRIVE%\Users\<username>\appdata\roaming\22440f22a874
Group: Malware file
Last Updated: August 5, 2020
C:\Users\<username>\AppData\Local\Hacalima\trzC6C4.tmp File name: trzC6C4.tmp
Size: 636.92 KB (636928 bytes)
MD5: 15c728b50c29701f9aea15456d4f96fb
Detection count: 5
File type: Temporary File
Mime Type: unknown/tmp
Path: C:\Users\<username>\AppData\Local\Hacalima\trzC6C4.tmp
Group: Malware file
Last Updated: December 9, 2021

More files

Registry Modifications

The following newly produced Registry Values are:

CLSID{04E432B8-204C-5E00-4DD4-7BE869BC8770}{0D89DE71-3D99-4288-84DC-F18F1047A7D8}{1E0C9B2A-6447-452C-B012-2314A0C29412}{34A8CEB6-89BB-49F1-B5E4-0D0D6C21F3B1}{3A4DBD3A-98CC-41CE-AD21-352D42B6F754}{4F8A50F6-69DE-4BE3-A33A-A1079B9AC0DB}{501CB57A-D4E2-4855-96AD-EDB0A9083395}{6FF2C4DD-77A4-4BB5-BA4C-B42DEFBF9137}{7F1796B2-BEC6-427B-B734-F9C75ED94A80}{80FABB17-63AF-4655-9F07-B6509EE37AF2}{83ABA270-8390-4CA6-AE48-FC089F55629E}{8B218A5F-1A3D-4347-94EF-A79575EB8094}{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1}{9BDB5E09-4BBA-4422-8C2B-529B281C32B8}{9cf699ca-2174-4ed8-bec1-ba82095edce0}{A6174F27-1FFF-E1D6-A93F-BA48AD5DD448}{ae48ed75-5a56-4c5f-bbce-6f1ac3875f66}{C536F080-57B7-46D6-8894-C647553F2889}{CA5D945F-E738-4D0B-A0B5-25AC51C64659}{EF7BD87A-8024-11E2-F316-F3E56188709B}{F48FC5B2-094A-44C7-B48C-289738C9582D}{F7698761-4ABA-45C2-A5BB-D2163922C725}{FFCC53E6-2655-47FC-A89B-54E8D7F305D1}File name without pathproductupdt.exesynctask.exesyncversion.exesynhelper.exeupdane.exeupdtask.exeRegexp file mask%APPDATA%\DealPly\UpdateProc\UpdateTask.exe%APPDATA%\Setup[NUMBERS].exe%APPDATA%\UpdateTask\productupdt.exe%APPDATA%\UpdateTask\Sync.exe%APPDATA%\UpdateTask\SyncTask.exe%APPDATA%\UpdateTask\syncversion.exe%APPDATA%\UpdateTask\SynHelper.exe%APPDATA%\UpdateTask\Updane.exe%APPDATA%\UpdateTask\updtask.exe%APPDATA%\w{3,30}.exe.dat%COMMONPROGRAMFILES%\UpdateTask\productupdt.exe%COMMONPROGRAMFILES%\UpdateTask\SyncTask.exe%COMMONPROGRAMFILES%\UpdateTask\syncversion.exe%COMMONPROGRAMFILES%\UpdateTask\SynHelper.exe%COMMONPROGRAMFILES%\UpdateTask\Updane.exe%COMMONPROGRAMFILES%\UpdateTask\updtask.exe%COMMONPROGRAMFILES(x86)%\UpdateTask\productupdt.exe%COMMONPROGRAMFILES(x86)%\UpdateTask\Sync.exe%COMMONPROGRAMFILES(x86)%\UpdateTask\SyncTask.exe%COMMONPROGRAMFILES(x86)%\UpdateTask\syncversion.exe%COMMONPROGRAMFILES(x86)%\UpdateTask\SynHelper.exe%COMMONPROGRAMFILES(x86)%\UpdateTask\Updane.exe%COMMONPROGRAMFILES(x86)%\UpdateTask\updtask.exe%LOCALAPPDATA%\UpdateTask\productupdt.exe%LOCALAPPDATA%\UpdateTask\Sync.exe%LOCALAPPDATA%\UpdateTask\SyncTask.exe%LOCALAPPDATA%\UpdateTask\syncversion.exe%LOCALAPPDATA%\UpdateTask\SynHelper.exe%LOCALAPPDATA%\UpdateTask\Updane.exe%LOCALAPPDATA%\UpdateTask\updtask.exe%UserProfile%\Local Settings\Application Data\UpdateTask\productupdt.exe%WinDir%\System32\Tasks\Dealply%WinDir%\System32\Tasks\DealPlyLiveUpdateTaskMachineCore%WinDir%\System32\Tasks\DealPlyLiveUpdateTaskMachineUA%WINDIR%\System32\Tasks\DealPlyUpdate%WinDir%\Tasks\Dealply.job%WinDir%\Tasks\DealPlyLiveUpdateTaskMachineCore.job%WinDir%\Tasks\DealPlyLiveUpdateTaskMachineUA.jobHKEY..\..\..\..{RegistryKeys}SOFTWARE\Classes\AppID\DealPlyLive.exeSOFTWARE\Classes\AppID\{80FABB17-63AF-4655-9F07-B6509EE37AF2}SOFTWARE\Classes\AppID\{F48FC5B2-094A-44C7-B48C-289738C9582D}SOFTWARE\Classes\DealPlyLive.OneClickCtrl.9SOFTWARE\Classes\DealPlyLive.OneClickProcessLauncherMachineSOFTWARE\Classes\DealPlyLive.OneClickProcessLauncherMachine.1.0SOFTWARE\Classes\DealPlyLive.Update3WebControl.3SOFTWARE\Classes\DealPlyLiveUpdate.CoCreateAsyncSOFTWARE\Classes\DealPlyLiveUpdate.CoCreateAsync.1.0SOFTWARE\Classes\DealPlyLiveUpdate.CoreClassSOFTWARE\Classes\DealPlyLiveUpdate.CoreClass.1SOFTWARE\Classes\DealPlyLiveUpdate.CoreMachineClassSOFTWARE\Classes\DealPlyLiveUpdate.CoreMachineClass.1SOFTWARE\Classes\DealPlyLiveUpdate.CredentialDialogMachineSOFTWARE\Classes\DealPlyLiveUpdate.CredentialDialogMachine.1.0SOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassMachineSOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassMachine.1.0SOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassMachineFallbackSOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassMachineFallback.1.0SOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassSvcSOFTWARE\Classes\DealPlyLiveUpdate.OnDemandCOMClassSvc.1.0SOFTWARE\Classes\DealPlyLiveUpdate.ProcessLauncherSOFTWARE\Classes\DealPlyLiveUpdate.ProcessLauncher.1.0SOFTWARE\Classes\DealPlyLiveUpdate.Update3COMClassServiceSOFTWARE\Classes\DealPlyLiveUpdate.Update3COMClassService.1.0SOFTWARE\Classes\DealPlyLiveUpdate.Update3WebMachineSOFTWARE\Classes\DealPlyLiveUpdate.Update3WebMachine.1.0SOFTWARE\Classes\DealPlyLiveUpdate.Update3WebMachineFallbackSOFTWARE\Classes\DealPlyLiveUpdate.Update3WebMachineFallback.1.0SOFTWARE\Classes\DealPlyLiveUpdate.Update3WebSvcSOFTWARE\Classes\DealPlyLiveUpdate.Update3WebSvc.1.0SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\dealply.comSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\www.dealply.comSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\dealply.comSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\www.dealply.comSOFTWARE\Classes\Wow6432Node\AppID\DealPlyLive.exeSOFTWARE\Classes\Wow6432Node\AppID\{80FABB17-63AF-4655-9F07-B6509EE37AF2}SOFTWARE\Classes\Wow6432Node\AppID\{F48FC5B2-094A-44C7-B48C-289738C9582D}Software\DealPlySoftware\DealPlyLiveSoftware\Microsoft\Internet Explorer\Approved Extensions\{ae48ed75-5a56-4c5f-bbce-6f1ac3875f66}Software\Microsoft\Internet Explorer\DOMStorage\dealply.comSOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C536F080-57B7-46D6-8894-C647553F2889}SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DealPlyLive.exeSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Dealply.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\Dealply.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\DealPlyLiveUpdateTaskMachineCore.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\DealPlyLiveUpdateTaskMachineCore.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\DealPlyLiveUpdateTaskMachineUA.jobSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\CompatibilityAdapter\Signatures\DealPlyLiveUpdateTaskMachineUA.job.fpSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlySOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyLiveUpdateTaskMachineCoreSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyLiveUpdateTaskMachineUASOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPlyUpdateSOFTWARE\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{EF7BD87A-8024-11E2-F316-F3E56188709B}SOFTWARE\Wow6432Node\Classes\AppID\{80FABB17-63AF-4655-9F07-B6509EE37AF2}SOFTWARE\Wow6432Node\Classes\AppID\{F48FC5B2-094A-44C7-B48C-289738C9582D}SOFTWARE\Wow6432Node\DealPlySOFTWARE\Wow6432Node\DealPlyLiveSOFTWARE\Wow6432Node\DealPlyLive\Update\Clients\{0d629f4e-4984-400f-addb-97a2cb6ae549}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F1796B2-BEC6-427B-B734-F9C75ED94A80}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C338DDB-19FC-4C1F-B74D-6931EE55F7A1}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C536F080-57B7-46D6-8894-C647553F2889}SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DealPlyLive.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{EF7BD87A-8024-11E2-F316-F3E56188709B}SOFTWARE\Wow6432Node\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=3SOFTWARE\Wow6432Node\MozillaPlugins\@tools.dpliveupdate.com/DealPlyLive Update;version=9SYSTEM\ControlSet001\services\dealplyliveSYSTEM\ControlSet001\services\dealplylivemSYSTEM\ControlSet002\services\dealplyliveSYSTEM\ControlSet002\services\dealplylivemSYSTEM\CurrentControlSet\services\dealplyliveSYSTEM\CurrentControlSet\services\dealplylivemHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}BFReportDealPly

Additional Information

The following directories were created:
%ALLUSERSPROFILE%\Application Data\DealPlyLive%ALLUSERSPROFILE%\DealPlyLive%ALLUSERSPROFILE%\Microsoft\Windows\Start Menu\Programs\DealPly%ALLUSERSPROFILE%\Start Menu\Programs\DealPly%ALLUSERSPROFILE%\cofrags%APPDATA%\DealPly%APPDATA%\Microsoft\Windows\Start Menu\Programs\DealPly%APPDATA%\bodor%APPDATA%\hodor%APPDATA%\wincbee%APPDATA%\wincy%COMMONPROGRAMFILES%\bodor%COMMONPROGRAMFILES%\hodor%COMMONPROGRAMFILES%\wincbee%COMMONPROGRAMFILES%\wincy%COMMONPROGRAMFILES(x86)%\bodor%COMMONPROGRAMFILES(x86)%\hodor%COMMONPROGRAMFILES(x86)%\wincbee%COMMONPROGRAMFILES(x86)%\wincy%LOCALAPPDATA%\DealPly%LOCALAPPDATA%\bodor%LOCALAPPDATA%\hodor%LOCALAPPDATA%\wincbee%LOCALAPPDATA%\wincy%LOCALAPPDATA%\{021D3441-26B5-58F9-4B2D-7D116F458189}%LOCALAPPDATA%\{57E4615F-72B6-0C29-1980-2BFBC552D6C5}%LocalAppData%\DealPlyLive%PROGRAMFILES%\DealPly%PROGRAMFILES%\DealPlyLive%PROGRAMFILES(x86)%\DealPly%PROGRAMFILES(x86)%\DealPlyLive%UserProfile%\Local Settings\Application Data\hodor%UserProfile%\Local Settings\Application Data\wincy%appdata%\opera_helper
Loading...