Deals Interactive Media, LLC

Publisher Information

Deals Interactive Media, LLC is a software publisher located in Houston, Texas in the United States*. The company is a primary distributor of unwanted software. Deals Interactive Media is an adware distributor of ad-supported bundled software including Radsteroids run by Injekt LLC (and others) located at 640 Grand Ave Carlsbad, CA 92008. The company is/patners with various other adware publishers under the same team including Parallel Lines Development, Western Web Applications, Big Water, Mesa Roha Solutions, and Creative Island Media. The primary application that publisher distributes is web browser extesnsions that are bundled by 3rd-part download managers. There is one additional code signing certificate issued to this publisher.
Remove Deals Interactive Media, LLC Malware - Powered by Reason Core Security
Authority:
VeriSign, Inc.

Valid from:
5/30/2013 2:00:00 AM

Valid to:
5/31/2014 1:59:59 AM

Subject:
CN="Deals Interactive Media, LLC", OU=Digital ID Class 3 - Microsoft Software Validation v2, O="Deals Interactive Media, LLC", L=Houston, S=Texas, C=US

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1d6a627084ca20f5363e39971f838af2

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.DealsInteractiveMedia.F, PUP.DealsInteractiveMedia.G, PUP.DealsInteractiveMedia.X, PUP.Service.DealsInteractiveMedia.S, PUP.DealsInteractiveMedia.J, PUP.Injekt.DealsInteractiveMedia (M), PUP.Injekt.DealsInteractiveMedia.Installer (M)
100.00%

ESET NOD32
MSIL/Adware.PullUpdate, MSIL/Adware.PullUpdate (variant)
55.00%

Malwarebytes
PUP.Optional.Radsteroids.A, Adware.SaMon, PUP.Optional.ZombieAlert.A
45.00%

Agnitum Outpost
PUA.SaMon, PUA.PullUpdate
35.00%

VIPRE Antivirus
Adware.Win32.SaMon, SearchDonkey
35.00%

Kaspersky
not-a-virus:AdWare.Win32.SaMon
30.00%

Sophos
Generic PUA FC, Search Donkey, Generic PUA DE, Generic PUA LI, Generic PUA HE
30.00%

Antiy Labs AVL
GrayWare[AdWare:not-a-virus]/Win32.SaMon, Trojan/Win32.SGeneric
30.00%

IKARUS anti.virus
not-a-virus:AdWare.Win32.SaMon, AdWare.Agent
30.00%

Qihoo 360 Security
Win32/Trojan.Adware.988, Win32/Trojan.Adware.fdf
30.00%

1 / 68      (Adware)
uninstall.exe  (2218bb6424e511a6024aa3030a8051c4)

1 / 68      (Adware)
radsteroids.33aabcf1ad13.dll  (b711c915b9438c9c0c90d0a58abe3863)

1 / 68      (Adware)
uninstall.exe  (bf3ea4e45c64ce841ed67ef0ed17d1bb)

1 / 68      (Adware)

1 / 68      (Adware)
Radsteroids.exe (Radsteroids by Deals Interactive Media)  (d739f5a6c6533e22aa84f2510620ce0b)

1 / 68      (Adware)
radsteroids.33aabcf1ad13.dll  (6ce2619e5c57ee3ef385c8d927437c7a)

19 / 68    (Adware)
setup.exe  (19f4fe3e43a70ae21da614ade0952890)

2 / 68      (Adware)
uninstall.exe  (22929493f2ffca9dfc6f69bc24fba274)

21 / 68    (Adware)
setup.exe  (bcf02454fa7bf6c996131683a7f84d13)

1 / 68      (Adware)
uninstall.exe  (5043abedd86e0cdf3869aa9bf548ad99)

5 / 68      (Adware)

9 / 68      (Adware)
Radsteroids.exe (Radsteroids by Deals Interactive Media)  (b1d9589fdf20f9091b9261b09b2187d2)

15 / 68    (Adware)
setup.exe  (4138d0a4749f5143bbea59e01162994d)

24 / 68    (Adware)
radsteroids.33aabcf1ad13.dll  (8554da51f371741c9d7a81863fc10dab)

2 / 68      (Adware)
uninstall.exe  (6123b9560e1cafbe5d03518ae908cdcb)

3 / 68      (Adware)
Radsteroids.exe (Radsteroids by Deals Interactive Media)  (847475485e401de2d7cbf32195b6c997)

6 / 68      (Adware)

15 / 68    (Adware)
radsteroids.33aabcf1ad13.dll  (83a2b0a710ae79686e341c6d35706673)

2 / 68      (Adware)
helper.dll  (6c0c89fc6cef50133bc947ca08c7e8e8)

20 / 68    (Adware)
setup.exe  (3530df33ca8c70cfc2fa73671fb11127)

Downloads URLs for files signed by Deals Interactive Media, LLC.

15 / 68    (Adware)
http://d.radsteroids.com/Radsteroids/336/.../Setup.exe  (4138d0a4749f5143bbea59e01162994d)

The following websites host and distribute files published by Deals Interactive Media, LLC.

The following certificate is also signed by Deals Interactive Media, LLC.

293C89819F1335C143553D8C2A0EF766  (Apr 01, 2014 to Jul 02, 2015)

The following publishers (by Authenticode signature organization name) are related.

Remove Deals Interactive Media, LLC Malware - Powered by Reason Core Security
* Note, the details and description above are based on the code signing digital signature issued to Deals Interactive Media, LLC by VeriSign, Inc. on May 30, 2013 with the serial number '1d6a627084ca20f5363e39971f838af2'.