Home Malware Programs Adware Dealz Ads

Dealz Ads

Posted: December 4, 2014

Threat Metric

Threat Level: 2/10
Infected PCs: 2,874
First Seen: December 4, 2014
Last Seen: April 19, 2023
OS(es) Affected: Windows

Dealz is one of those annoying adware-related programs that claim to be helpful to users' online shopping experience. Dealz application is developed by Dealz Technologies Ltd and classified as a PUP (an abbreviation for a Potentially Unwanted Program). An infection with Dealz might occur in cases when users download bundled free software packages since these packages are often based on pay-per-install marketing technique. As any other adware application, Dealz might generate tons of annoying ads such as pop-ups, banners, coupons and offers that might eventually get on your nerves. Adware-related programs such as Dealz are also capable of tracking users' browsing history and habits in order to generate relevant ads so users would be more likely to click them and thus generate online traffic.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\fhelper.exe File name: fhelper.exe
Size: 10.24 KB (10240 bytes)
MD5: f24b6c9258967f385da3f7883c18ba4c
Detection count: 553
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: May 8, 2020
C:\System Recovery\Repair\Backup\1DC5DA33968627D4383CC18D524845EEBFA830EA.exe File name: 1DC5DA33968627D4383CC18D524845EEBFA830EA.exe
Size: 10.24 KB (10240 bytes)
MD5: 48fdd397bec1c8d59ab4779d0ed38451
Detection count: 391
File type: Executable File
Mime Type: unknown/exe
Path: C:\System Recovery\Repair\Backup\1DC5DA33968627D4383CC18D524845EEBFA830EA.exe
Group: Malware file
Last Updated: July 7, 2021
%WINDIR%\fhelper.exe File name: fhelper.exe
Size: 9.72 KB (9728 bytes)
MD5: bbc802ec99d6afb9c4e52f600fc49909
Detection count: 101
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: September 7, 2016
%WINDIR%\fhelper.exe File name: fhelper.exe
Size: 37.88 KB (37888 bytes)
MD5: fe4071da68f9884da2994aa6da3f808d
Detection count: 84
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: September 7, 2016
%WINDIR%\fhelper.exe File name: fhelper.exe
Size: 10.24 KB (10240 bytes)
MD5: c7162fcd3ceaac8f58803c92d71cabdf
Detection count: 41
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: November 4, 2017

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%windir%\System32\drivers\winpacket.pac%WinDir%\System32\Tasks\EssentialUpdateMachineHKEY..\..\..\..{RegistryKeys}SOFTWARE\DealzSOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EssentialUpdateMachineSOFTWARE\Wow6432Node\DealzHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}Dealz1.0.1.7

Additional Information

The following directories were created:
%PROGRAMFILES%\Dealz%PROGRAMFILES(x86)%\Dealz
The following URL's were detected:
dealz.yourshoppingwizard.com

Related Posts

Loading...