pricefountainw.exe

Price Fountain

The application pricefountainw.exe has been detected as a potentially unwanted program by 16 anti-malware scanners. This file is typically installed with the program PriceFountain (remove only) by DealPly Technologies Ltd. which is a potentially unwanted software program.
Publisher:
Price Fountain

Product:
Price Fountain

Version:
1.0.3.0

MD5:
b7e7de8db0f6bf67c2930d9411440211

SHA-1:
56f9318a3dd86d54f8b027fb77ee87da09ed7850

Scanner detections:
16 / 68

Status:
Potentially unwanted

Analysis date:
4/24/2024 9:14:28 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.1911975
826

AegisLab AV Signature
Troj.NSIS.GoogUpdate
2.1.4+

Baidu Antivirus
Adware.Win32.DealPly
4.0.3.14111

Bitdefender
Trojan.GenericKD.1911975
1.0.20.1525

Emsisoft Anti-Malware
Trojan.GenericKD.1911975
8.14.11.01.08

ESET NOD32
Win32/DealPly (variant)
8.10652

Fortinet FortiGate
Riskware/DealPly
11/1/2014

F-Secure
Trojan.GenericKD.1911975
11.2014-01-11_7

G Data
Trojan.GenericKD.1911975
14.11.24

Kaspersky
not-a-virus:AdWare.Win32.DealPly
14.0.0.3013

McAfee
Artemis!B7E7DE8DB0F6
5600.6960

MicroWorld eScan
Trojan.GenericKD.1911975
15.0.0.915

nProtect
Trojan.GenericKD.1911975
14.10.31.01

Sophos
Generic PUA FG
4.98

Trend Micro House Call
Suspicious_GEN.F47V1028
7.2.305

VIPRE Antivirus
Trojan.Win32.Generic
34404

File size:
1.2 MB (1,257,472 bytes)

Product version:
1.0.3.0

Copyright:
Copyright (C) 2014

Original file name:
pricefountainw.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Documents and Settings\{user}\AppData\pricefountain\pricefountainw.exe

File PE Metadata
Compilation timestamp:
10/9/2014 7:23:18 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
24576:qG7Cru9OL+fUUHXDIosvGdX7aBv1h7gUc5Qj1mQsc:D7uu9OLkFztCGdoh0Uc5Qj1mM

Entry address:
0xB7486

Entry point:
E8, B1, F8, 00, 00, E9, 7B, FE, FF, FF, 55, 8B, EC, 8B, 55, 0C, A1, 18, 0B, 53, 00, 8B, 4D, 08, 23, 4D, 0C, F7, D2, 23, D0, 0B, D1, 89, 15, 18, 0B, 53, 00, 5D, C3, E8, BF, 06, 00, 00, 85, C0, 74, 08, 6A, 16, E8, 76, 07, 00, 00, 59, F6, 05, 18, 0B, 53, 00, 02, 74, 21, 6A, 17, E8, 82, C9, 01, 00, 85, C0, 74, 05, 6A, 07, 59, CD, 29, 6A, 01, 68, 15, 00, 00, 40, 6A, 03, E8, C3, 9E, 00, 00, 83, C4, 0C, 6A, 03, E8, 9B, 35, 00, 00, CC, 55, 8B, EC, 83, EC, 10, A1, 20, 0B, 53, 00, 33, C5, 89, 45, FC, 53, 56, 57, 8B...
 
[+]

Code size:
950.5 KB (973,312 bytes)

The file pricefountainw.exe has been discovered within the following program.

PriceFountain (remove only)  by DealPly Technologies Ltd.
Price Fountain (SaveSense) is an adware extension that will deliver ads to the browser on web pages that are not affiliated with the ads or the extension.
www.pricefountain.com
76% remove it
 
Powered by Should I Remove It?

Remove pricefountainw.exe - Powered by Reason Core Security