Home Malware Programs Adware PricePeep

PricePeep

Posted: December 3, 2012

Threat Metric

Ranking: 2,944
Threat Level: 2/10
Infected PCs: 63,691
First Seen: December 3, 2012
Last Seen: October 16, 2023
OS(es) Affected: Windows

PricePeep is an adware program that displays its own ads on eBay, Amazon and other websites. These advertisements will be displayed as boxes including various coupons that are available or as underlined keywords, which when clicked will show an advertisement that claims it is brought to the C user by PricePeep. PricePeep can be installed on the compromised PC by another application that had bundled in its installer the PricePeep adware. Software installers of some programs include optional installs, such as the actual PricePeep. Computer users should be very careful what they agree to install. They should always select for the custom installation and deselect anything that is not familiar, especially optional programs that they never wanted to download and install on their PCs.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\Windows.old.002\Program Files (x86)\PricePeep\pricepeep.dll File name: pricepeep.dll
Size: 491 KB (491008 bytes)
MD5: 572617912b3b0cc34af0abe6bd1a7c7d
Detection count: 115
File type: Dynamic link library
Mime Type: unknown/dll
Path: C:\Windows.old.002\Program Files (x86)\PricePeep\pricepeep.dll
Group: Malware file
Last Updated: October 24, 2022
PricePeepSetup.exe File name: PricePeepSetup.exe
Size: 129.92 KB (129920 bytes)
MD5: 83936f4f95dabc176f8b0e357784dace
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 17, 2022

Registry Modifications

The following newly produced Registry Values are:

CLSID{1B97A696-5576-43AC-A73B-E1D2C78F21E8}{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408}{75BF416E-4326-45B5-8A2D-AE32D05B930B}{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}File name without pathhttps_static.pricepeep00.pricepeep.net_0.localstoragehttps_static.pricepeep00.pricepeep.net_0.localstorage-journalstatic.pricepeep00.pricepeep[1].xmlRegexp file mask%LOCALAPPDATA%\PricePeep.exeHKEY..\..\..\..{RegistryKeys}Software\AppDataLow\Software\PricePeepSOFTWARE\Classes\AppID\PricePeep.DLLSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\pricepeep.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\static.pricepeep00.pricepeep.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\pricepeep.netSOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\static.pricepeep00.pricepeep.netSOFTWARE\Classes\PricePeep.PricePeepBhoSOFTWARE\Classes\PricePeep.PricePeepBho.1SOFTWARE\Classes\Wow6432Node\AppID\PricePeep.DLLSoftware\Microsoft\Internet Explorer\DOMStorage\pricepeep.netSOFTWARE\Microsoft\Internet Explorer\DOMStorage\static.pricepeep00.pricepeep.netSOFTWARE\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pricepeep.netSoftware\Microsoft\Windows\CurrentVersion\Ext\Settings\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}SOFTWARE\Wow6432Node\Classes\AppID\PricePeep.DLLSOFTWARE\Wow6432Node\Microsoft\Tracing\PricePeepSetup_RASAPI32SOFTWARE\Wow6432Node\Microsoft\Tracing\PricePeepSetup_RASMANCSSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}PricePeep

Additional Information

The following directories were created:
%PROGRAMFILES%\PricePeep%PROGRAMFILES(x86)%\PricePeep
The following URL's were detected:
PricePeep
Loading...