84,488,480 programs installed

Should I remove JoniCoupon?

What percent of users and experts removed it?
77% remove it23% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Reach 0.0011%

JoniCoupon

What is JoniCoupon?

This is a JustPlug.It web browser extension that is delivered via the WebPick (InstalleRex) download and install manager. It is included with various adware offer bundles and is a cross browser extension that runs with multiple parts including a Windows service, an auto-starting component and the browser toolbar/plugin which is designed to inject advertisements in the browser in form of banner ads, hyper-text links and popups. In addition, some versions might hijack existing advertising on web sites as well as inject affiliate codes in links as coupon offers. The advertisements that are displayed in the browser could include deceptive malvertising ads for 'required' updates of known common programs as well as unwanted pop-ups advertisements. If downloaded these programs install a number of bundled adware utilities and additional browser extensions. Additionally components of the program will modify the browser's default security levels.

Overview

It adds a Browser Helper Object (BHO) to Internet Explorer. The primary executable is named Q.exe. A majority of users end up uninstalling this less than a week of it being installed. The setup package generally installs about 26 files and is usually about 914.6 KB (936,552 bytes).
  • Malware detected in the program
  • Integrates into the web browser
  • Installs bundled adware using the WebPick InstalleRex
  • Lowers the security level of the web browser
  • May inject additional advertising in the browser
  • Injects advertisements unassociated with the underlying web page
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in JoniCoupon.
GNi.exe (1b63b4e4fe4be0d8607d362c3d2f2677) has been flagged by the following 35 scanners:
Anti-Virus softwareVersionDetection
Lavasoft Ad-Aware 912 Gen:Variant.Adware.Graftor.146103
Agnitum Outpost 7.1.1 PUA.MultiPlug
AhnLab-V3 2014.08.05 Trojan/Win32.Preloader
Avira AntiVir 7.11.165.68 Adware/Graftor.146103
Antiy-AVL 1.0.0.1 Trojan/Win32.SGeneric
avast! 2014.9-140806 Win32:Dropper-gen [Drp]
AVG 2015.0.3390 Generic5
AVware 1.5.0.16 Trojan.Win32.Generic!BT
Baidu-International 4.0.3.1486 Adware.Win32.MultiPlug.81
Bitdefender 1.0.20.1090 Gen:Variant.Adware.Graftor.146103
Bkav FE 1.3.0.4959 W32.CanpaktiLTAAI.Adware
CAT-QuickHeal 8.14.14.00 AdWare.MultiPlug.r5 (Not a Virus)
Comodo Security 19086 ApplicUnwnt
Emsisoft Anti-Malware 8.14.08.06.09 Gen:Variant.Adware.Graftor.146103
ESET-NOD32 8.10205 a variant of Win32/AdWare.MultiPlug.AG
Fortinet FortiGate 8/6/2014 Riskware/MultiPlug
F-Secure 11.2014-06-08_4 Gen:Variant.Adware.Graftor.146103
G Data 14.8.24 Gen:Variant.Adware.Graftor.146103
IKARUS anti.virus t3scan.1.6.1.0 PUA.Generic
K7 AntiVirus 13.182.12951 Adware
K7GW 13.182.12951 Adware ( 0049c94b1 )
Kaspersky 14.0.0.3446 not-a-virus:AdWare.Win32.MultiPlug
Kingsoft AntiVirus 331020.49267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes v2014.08.06.09 PUP.Optional.MultiPlug
McAfee 5600.7046 RDN/Generic.bfr!ho
MicroWorld-eScan 15.0.0.654 Gen:Variant.Adware.Graftor.146103
NANO AntiVirus 0.28.2.61349 Riskware.Win32.Graftor.dcodwf
Panda Antivirus 14.08.06.09 Trj/Genetic.gen
Sophos 4.98 Generic PUA IB
Symantec 8/6/2014 rev. 4 WS.Reputation
Tencent 1.0.0.1 Win32.Risk.Adware.Dzkd
Trend Micro 10.465.06 TROJ_SPNR.14GN14
TrendMicro-HouseCall 7.2.218 TROJ_SPNR.14GN14
Vba32 AntiVirus 3.12.26.3 AdWare.MultiPlug
VIPRE Antivirus 31936 Trojan.Win32.Generic!BT
C5J9.x64.dll (2a05aaa383857ecbdd6100c34595b5df) has been flagged by the following 31 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Trojan.Generic.11089445
AhnLab-V3 None Trojan/Win32.Preloader
Avira AntiVir 7.11.149.28 ADWARE/Adware.Gen
Antiy-AVL 0.1.0.1 Trojan/Win32.SGeneric
avast! 8.0.1489.320 Win64:Adware-gen [Adw]
AVG 14.0.0.3931 Generic_r.GX
Baidu-International 3.5.1.41473 Adware.Win64.MultiPlug.A
Bitdefender 7.2 Trojan.Generic.11089445
Comodo Security 18259 ApplicUnwnt
Emsisoft Anti-Malware 3.0.0.596 Trojan.Generic.11089445 (B)
ESET-NOD32 9787 a variant of Win64/Adware.MultiPlug.A
F-Secure 11.0.19100.45 Trojan.Generic.11089445
G Data 24 Trojan.Generic.11089445
IKARUS anti.virus T3.1.6.1.0 AdWare.MultiPlug
K7 AntiVirus 9.177.12041 Adware ( 004922f61 )
K7GW 9.177.12041 Adware ( 004922f61 )
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 Mplug!2A05AAA38385
McAfee-GW-Edition 2013 Mplug!2A05AAA38385
MicroWorld-eScan 12.0.250.0 Trojan.Generic.11089445
Norman 7.04.04 Multiplug.A
nProtect 2014-05-11.01 Trojan.Generic.11089445
Panda Antivirus 10.0.3.5 Trj/CI.A
Qihoo-360 1.0.0.1015 Win32/Trojan.Adware.273
Rising Antivirus 25.0.0.11 PE:Adware.MultiPlug!6.166A
Sophos 4.98.0 MultiPlug
SUPERAntiSpyware 5.6.0.1032 Adware.Multiplug/Variant
Symantec 20131.1.5.61 WS.Reputation.1
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.R0CBH06DC14
VIPRE Antivirus 29122 MPlug
ViRobot 2011.4.7.4223 Adware.Agent.474112
f.dll (6bdd2b931e45fa910c821a3beb07928c) has been flagged by the following 29 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.604038
Agnitum Outpost 5.5.1.3 PUA.BHO!
Antiy-AVL 1.0.0.1 Trojan/Win32.TGeneric
avast! 8.0.1489.320 Win32:Dropper-gen [Drp]
AVG 14.0.0.3972 Generic5.APQB
Baidu-International 3.5.1.41473 Adware.Win32.BHO.71
Bitdefender 7.2 Application.Generic.604038
Bkav FE 1.3.0.4959 W32.ToolbarEscort.Adware
CAT-QuickHeal 14.00 AdWare.BHO.r6 (Not a Virus)
Comodo Security 18598 ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 9968 a variant of Win32/AdWare.MultiPlug.T
F-Secure 11.0.19100.45 Application.Generic.604038
G Data 24 Application.Generic.604038
IKARUS anti.virus T3.1.6.1.0 Win32.SuspectCrc
K7 AntiVirus 9.180.12463 Adware ( 004976341 )
K7GW 9.180.12463 Adware ( 004976341 )
Kaspersky 12.0.0.1225 not-a-virus:AdWare.Win32.BHO.bdnc
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 RDN/Generic PUP.x!cf3
McAfee-GW-Edition 2013 RDN/Generic PUP.x!cf3
MicroWorld-eScan 12.0.250.0 Application.Generic.604038
NANO AntiVirus 0.28.0.60253 Riskware.Win32.BHO.dbdfeq
Panda Antivirus 10.0.3.5 Trj/CI.A
Sophos 4.98.0 Generic PUA IO
Symantec 20131.1.5.61 Adware.BL
Trend Micro 9.740.0.1012 ADW_MULTIPLUG
TrendMicro-HouseCall 9.700.0.1001 ADW_MULTIPLUG
Vba32 AntiVirus 3.12.26.3 AdWare.BHO
VIPRE Antivirus 30454 Trojan.Win32.Generic!BT
N0UJ.exe (5779bbb0fe6c50419ddf9f84e73e4905) has been flagged by the following 28 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 PUA.MegaSearch!
AhnLab-V3 None Trojan/Win32.Preloader
Avira AntiVir 7.11.143.202 ADWARE/Adware.Gen7
Antiy-AVL 0.1.0.1 GrayWare[AdWare:not-a-virus]/Win32.MegaSearch
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
AVG 13.0.0.3169 Generic_r.GV
Baidu-International 3.5.1.41473 Adware.Win32.MegaSearch.81
CAT-QuickHeal 12.00 Adware.Megasearch.at (Not a Virus)
Comodo Security 18114 ApplicUnwnt
Dr.Web 7.00.9.04080 Trojan.Crossrider.8290
ESET-NOD32 9684 a variant of Win32/AdWare.MultiPlug.K.gen
Fortinet FortiGate 4 Adware/Megasearch
IKARUS anti.virus T3.1.6.1.0 Win32.AdWare
K7 AntiVirus 9.176.11777 Adware ( 00490ca81 )
K7GW 9.176.11777 Adware ( 00490ca81 )
Kaspersky 12.0.0.1225 not-a-virus:AdWare.Win32.MegaSearch.at
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 PUP-FFY!5779BBB0FE6C
McAfee-GW-Edition 2013 PUP-FFY!5779BBB0FE6C
NANO AntiVirus 0.28.0.59288 Riskware.Win32.MegaSearch.cvwfkf
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Rising Antivirus 25.0.0.11 PE:Malware.MegaSearch!6.17B2
Sophos 4.98.0 MultiPlug
Trend Micro 9.740-1012 TROJ_GEN.R0CBC0PDE14
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.R0CBC0PDE14
Vba32 AntiVirus 3.12.26.0 BScope.Trojan.Agent
VIPRE Antivirus 28282 MegaSearch Toolbar
N0UJ.dll (ea89a5cfcf37d160e1b20b40e5111e89) has been flagged by the following 26 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.607493
Agnitum Outpost 5.5.1.3 PUA.MultiPlug!
AhnLab-V3 None Adware/Win32.Graftor
Avira AntiVir 7.11.144.142 ADWARE/Adware.Gen
AVG 13.0.0.3169 Generic_r.GU
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.N
Bitdefender 7.2 Application.Generic.607493
Comodo Security 18139 ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 9702 a variant of Win32/AdWare.MultiPlug.N
Fortinet FortiGate 4 Riskware/MultiPlug
F-Secure 11.0.19100.45 Application.Generic.607493
G Data 24 Application.Generic.607493
IKARUS anti.virus T3.1.6.1.0 AdWare.MegaSearch
K7 AntiVirus 9.176.11806 Adware ( 004923a41 )
K7GW 9.176.11806 Adware ( 004923a41 )
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 Adware-FHP
McAfee-GW-Edition 2013 Adware-FHP
MicroWorld-eScan 12.0.250.0 Application.Generic.607493
NANO AntiVirus 0.28.0.59288 Riskware.Win32.MultiPlug.cvyxyu
Panda Antivirus 10.0.3.5 Trj/CI.A
Rising Antivirus 25.0.0.11 PE:Malware.Adware!6.1293
Sophos 4.98.0 MultiPlug
SUPERAntiSpyware 5.6.0.1032 Adware.Multiplug/Variant
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.R047H06CO14
VIPRE Antivirus 28442 JustPlugIt (fs)
FsP.dll (230c8ce3c37ae8b366d3d28ed9a56001) has been flagged by the following 23 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.02.28.02 Adware/Win32.Graftor
Avira AntiVir 7.11.133.250 ADWARE/Adware.Gen
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
AVG 13.0.0.3169 Generic_r.GU
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.N
Comodo Security 17860 ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 9482 a variant of Win32/AdWare.MultiPlug.N
Fortinet FortiGate 4 Riskware/MultiPlug
G Data 24 Win32.Trojan.Multiplug.A
IKARUS anti.virus T3.1.5.6.0 not-a-virus:AdWare.Win32.MegaSearch
K7 AntiVirus 9.176.11292 Adware ( 004923a41 )
K7GW 9.176.11292 Adware ( 004923a41 )
Kingsoft AntiVirus 2013.04.09.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 Adware-FHP
McAfee-GW-Edition 2013 Adware-FHP
NANO AntiVirus 0.28.0.58101 Riskware.Win32.MultiPlug.cthsbt
Rising Antivirus 25.0.0.11 PE:Malware.Adware!6.1293
Sophos 4.98.0 Generic PUA NC
Symantec 20131.1.5.61 Trojan.Gen.2
Trend Micro 9.740-1012 ADW_MULTIPLG
TrendMicro-HouseCall 9.700-1001 ADW_MULTIPLG
VIPRE Antivirus 26926 JustPlugIt (fs)
s6L5hi4M.exe (83c728a3d4b56127985b096478a943f8) has been flagged by the following 21 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.623657
Agnitum Outpost 5.5.1.3 PUA.MultiPlug!
AhnLab-V3 2014.05.30.00 Dropper/Win32.Preloader
Avira AntiVir 7.11.152.10 SPR/Tool.460800.1
AVG 14.0.0.3955 Generic_r.JW
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.81
Bitdefender 7.2 Application.Generic.623657
Bkav FE 1.3.0.4959 W32.PatgeasM.Trojan
Comodo Security 18367 Application.Win32.MultiPlug.SJ
Fortinet FortiGate 4 Riskware/MultiPlug
F-Secure 11.0.19100.45 Application.Generic.623657
G Data 24 Application.Generic.623657
K7 AntiVirus 9.178.12244 Adware ( 004976341 )
K7GW 9.178.12244 Adware ( 004976341 )
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 RDN/Generic.dx!dcf
McAfee-GW-Edition 2013 Heuristic.BehavesLike.Win32.Suspicious.H
MicroWorld-eScan 12.0.250.0 Application.Generic.623657
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.R0CBH06ES14
VIPRE Antivirus 29736 Trojan.Win32.Generic!BT
IHEyZT5.exe (2630a201d10e9285fc9bf4458c66d8d7) has been flagged by the following 19 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.667238
AhnLab-V3 2014.07.08.00 Dropper/Win32.Preloader
Avira AntiVir 7.11.158.210 Adware/MultiPlug.AB.3
AVG 14.0.0.3986 Generic5.AYJX
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.bAB
Bitdefender 7.2 Application.Generic.667238
Comodo Security 18803 ApplicUnwnt
ESET-NOD32 10060 a variant of Win32/AdWare.MultiPlug.AB
Fortinet FortiGate 5.1.152.0 Riskware/MultiPlug
F-Secure 11.0.19100.45 Application.Generic.667238
G Data 24 Application.Generic.667238
Malwarebytes 1.75.0.1 PUP.Optional.Multiplug
McAfee 6.0.4.564 RDN/Generic.bfr!hk
McAfee-GW-Edition 2013 Heuristic.BehavesLike.Win32.Suspicious.H
MicroWorld-eScan 12.0.250.0 Application.Generic.667238
Panda Antivirus 10.0.3.5 Trj/CI.A
Sophos 4.98.0 Generic PUA II
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0630
VIPRE Antivirus 31068 Trojan.Win32.Generic!BT
Igs9x7B75a.exe (fc0eaafdbd35030fe72d1b5fad87cef2) has been flagged by the following 19 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.654450
AhnLab-V3 2014.06.26.00 Dropper/Win32.Preloader
Avira AntiVir 7.11.157.6 SPR/Tool.642560.1
Antiy-AVL 1.0.0.1 Trojan/Win32.TSGeneric
AVG 14.0.0.3972 Generic5.AWYZ
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.BY
Bitdefender 7.2 Application.Generic.654450
ESET-NOD32 10003 a variant of Win32/AdWare.MultiPlug.Y
Fortinet FortiGate 5.1.152.0 Riskware/MultiPlug
F-Secure 11.0.19100.45 Application.Generic.654450
G Data 24 Application.Generic.654450
K7 AntiVirus 9.180.12524 Adware ( 0049b4c51 )
K7GW 9.180.12524 Adware ( 0049b4c51 )
McAfee 6.0.4.564 RDN/Generic PUP.x!cgm
McAfee-GW-Edition 2013 Heuristic.BehavesLike.Win32.Suspicious.H
MicroWorld-eScan 12.0.250.0 Application.Generic.654450
Sophos 4.98.0 Generic PUA ME
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0616
VIPRE Antivirus 30672 Trojan.Win32.Generic!BT
HCgNHWhJf.exe (692b15082eeaa2006c68b39d78f49dbf) has been flagged by the following 18 scanners:
Anti-Virus softwareSoftware versionDetection
Lavasoft Ad-Aware 12.0.163.0 Application.Generic.649799
AhnLab-V3 2014.06.19.00 Dropper/Win32.Preloader
Avira AntiVir 7.11.155.148 SPR/Tool.643072.7
AVG 14.0.0.3972 Generic5.AVZR
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.81
Bitdefender 7.2 Application.Generic.649799
Comodo Security 18592 ApplicUnwnt
ESET-NOD32 9963 a variant of Win32/AdWare.MultiPlug.Y
Fortinet FortiGate 5.1.152.0 Riskware/MultiPlug
F-Secure 11.0.19100.45 Application.Generic.649799
G Data 24 Application.Generic.649799
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 Artemis!692B15082EEA
McAfee-GW-Edition 2013 Heuristic.BehavesLike.Win32.Suspicious.H
MicroWorld-eScan 12.0.250.0 Application.Generic.649799
Sophos 4.98.0 Generic PUA EI
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0611
VIPRE Antivirus 30426 Win32.Malware!Drop
GNi.dll (938a58a18228d9c556965deb4f74e494) has been flagged by the following 18 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.08.02.00 Adware/Win32.Agent
avast! 8.0.1489.320 Win32:Dropper-gen [Drp]
AVG 14.0.0.3986 Generic5.AZJT
AVware 1.5.0.16 Trojan.Win32.Generic!BT
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.81
Comodo Security 19052 ApplicUnwnt
ESET-NOD32 10192 a variant of Win32/AdWare.MultiPlug.AY
Fortinet FortiGate 5.1.152.0 Riskware/MultiPlug
IKARUS anti.virus T3.1.6.1.0 PUA.Generic
K7 AntiVirus 9.182.12926 Adware ( 0049c94b1 )
K7GW 9.182.12926 Adware ( 0049c94b1 )
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug
McAfee 6.0.4.564 RDN/Generic PUP.x!chv
McAfee-GW-Edition 2013 RDN/Generic PUP.x!chv
Sophos 4.98.0 Generic PUA NF
Trend Micro 9.740.0.1012 ADW_MULTIPLUG
TrendMicro-HouseCall 9.700.0.1001 ADW_MULTIPLUG
VIPRE Antivirus 31840 Trojan.Win32.Generic!BT
FsP.exe (19e5eb31641597fa245deb887aa25817) has been flagged by the following 15 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.02.05.00 Trojan/Win32.Preloader
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
AVG 13.0.0.3169 Generic_r.GV
Baidu-International 3.5.1.41473 Adware.Win32.MegaSearch.Asdt
ESET-NOD32 9380 a variant of Win32/AdWare.MultiPlug.K.gen
IKARUS anti.virus T3.1.5.6.0 not-a-virus:AdWare.Win32.MegaSearch
Kaspersky 12.0.0.1225 not-a-virus:AdWare.Win32.MegaSearch.at
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 PUP-FFY!19E5EB316415
McAfee-GW-Edition 2013 PUP-FFY!19E5EB316415
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Sophos 4.97.0 Generic PUA EC
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.R08NH06B314
VIPRE Antivirus 26130 MegaSearch Toolbar
HCgNHWhJf.x64.dll (f304e79ecc51db8c3bbc11388ff4548a) has been flagged by the following 14 scanners:
Anti-Virus softwareSoftware versionDetection
AegisLab 1.5 AdWare.Win64.MegaSearch
AhnLab-V3 2014.10.27.04 Trojan/Win64.Preloader
AVG 14.0.0.4040 Generic_r.KM
AVware 1.5.0.21 Win64.Adware.MultiPlug
Baidu-International 3.5.1.41473 Adware.Win64.MultiPlug.81
Comodo Security 19918 ApplicUnwnt
ESET-NOD32 10625 a variant of Win64/Adware.MultiPlug.B
K7 AntiVirus 9.185.13813 Adware ( 004a86af1 )
K7GW 9.185.13813 Adware ( 004a86af1 )
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug
McAfee 6.0.5.614 RDN/Generic PUP.x!cf3
McAfee-GW-Edition v2014.2 BehavesLike.Win64.Downloader.fm
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0E6H06J614
VIPRE Antivirus 34276 Win64.Adware.MultiPlug
p.dll (aeaabad27e02f3d715bb5eaafab1e6e0) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.01.07.00 Adware/Win32.Graftor
Avira AntiVir 7.11.123.202 ADWARE/Adware.Gen
AVG 13.0.0.3169 Generic5.ALGE
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.N
Comodo Security 17566 ApplicUnwnt
ESET-NOD32 9257 a variant of Win32/AdWare.MultiPlug.N
K7 AntiVirus 9.175.10750 Adware ( 004923a41 )
K7GW 9.175.10750 Adware ( 004923a41 )
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Generic.a.(kcloud)
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug.A
McAfee 5.600.0.1067 Artemis!AEAABAD27E02
McAfee-GW-Edition 2013 Artemis!AEAABAD27E02
VIPRE Antivirus 25164 JustPlugIt (fs)
nHr0.dll (1305e75a5e77ece0845806814d753836) has been flagged by the following 12 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.08.05.00 Adware/Win32.Agent
AVG 14.0.0.3986 Generic5.AYSX
AVware 1.5.0.16 Trojan.Win32.Generic!BT
Comodo Security 19086 ApplicUnwnt
ESET-NOD32 10205 a variant of Win32/AdWare.MultiPlug.AY
Fortinet FortiGate 5.1.152.0 Riskware/MultiPlug
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug
McAfee 6.0.4.564 RDN/Generic PUP.x!chv
McAfee-GW-Edition 2013.2 RDN/Generic PUP.x!chv
Sophos 4.98.0 Generic PUA KF
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0C9H06GB14
VIPRE Antivirus 31942 Trojan.Win32.Generic!BT
GNi.x64.dll (1fa387fdb51a2204bdc2bbf808b583d5) has been flagged by the following 12 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.08.02.00 Trojan/Win64.Preloader
avast! 8.0.1489.320 Win64:Malware-gen
AVG 14.0.0.3986 Generic_r.QB
AVware 1.5.0.16 Win64.Adware.MultiPlug
Baidu-International 3.5.1.41473 PUA.Win32.CRXDrop.77
ESET-NOD32 10190 a variant of Win64/Adware.MultiPlug.D
IKARUS anti.virus T3.1.6.1.0 PUA.Multiplug
Malwarebytes 1.75.0.1 PUP.Optional.Preload
McAfee 6.0.4.564 Artemis!1FA387FDB51A
McAfee-GW-Edition 2013 Artemis!1FA387FDB51A
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0708
VIPRE Antivirus 31820 Win64.Adware.MultiPlug
R_7_.x64.dll (600ff6994d8cddce04773e8c738d303d) has been flagged by the following 12 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.06.11.00 Trojan/Win64.Preloader
Baidu-International 3.5.1.41473 Adware.Win64.MultiPlug.81
Comodo Security 18507 ApplicUnwnt
ESET-NOD32 9926 a variant of Win64/Adware.MultiPlug.C
G Data 24 Win64.Adware.Megasearch.C
IKARUS anti.virus T3.1.6.1.0 AdWare.MultiPlug
Malwarebytes 1.75.0.1 PUP.Optional.MultiPlug.A
McAfee 6.0.4.564 RDN/Generic PUP.x!c2k
McAfee-GW-Edition 2013 RDN/Generic PUP.x!c2k
Symantec 20131.1.5.61 Adware.BL
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0E6H05EU14
VIPRE Antivirus 30178 Trojan.Win32.Generic!BT
nHr0.exe (80d691f736b42440928faba7ec88cf78) has been flagged by the following 10 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.07.16.00 Trojan/Win32.Preloader
AVG 14.0.0.3986 Generic5.AYTB
Comodo Security 18866 ApplicUnwnt
ESET-NOD32 10104 a variant of Win32/AdWare.MultiPlug.AG
Fortinet FortiGate 5.1.152.0 Riskware/MultiPlug
McAfee 6.0.4.564 RDN/Generic PUP.x!c2a
McAfee-GW-Edition 2013 RDN/Generic PUP.x!c2a
Sophos 4.98.0 Generic PUA AO
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.R0CBH06G714
VIPRE Antivirus 31320 Trojan.Win32.Generic!BT
s6L5hi4M.dll (5337ab32d06451b51b031fad03674a73) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 14.0.0.3955 Generic_r.KL
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.81
Comodo Security 18367 ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 9866 a variant of Win32/AdWare.MultiPlug.T
Kaspersky 12.0.0.1225 not-a-virus:AdWare.Win32.MultiPlug.bfk
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
Sophos 4.98.0 Generic PUA GP
TrendMicro-HouseCall 9.700-1001 TROJ_GEN.R03WH07EQ14
VIPRE Antivirus 29736 Trojan.Win32.Generic!BT
nHr0.x64.dll (9b44cf590f064eaf267c2fe11a2f6d7a) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.08.07.00 Trojan/Win64.Preloader
AVG 14.0.0.3986 Generic_r.QB
Baidu-International 3.5.1.41473 Trojan.Win64.MultiPlug.BD
ESET-NOD32 10216 a variant of Win64/Adware.MultiPlug.D
IKARUS anti.virus T3.1.6.1.0 PUA.Multiplug
Malwarebytes 1.75.0.1 PUP.Optional.Preload
McAfee 6.0.4.564 Artemis!9B44CF590F06
McAfee-GW-Edition 2013.2 Artemis!9B44CF590F06
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0702
HCgNHWhJf.dll (bd9fb537d3d37af56a526b60e5ab0166) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Antiy-AVL 1.0.0.1 Trojan/Win32.TGeneric
avast! 8.0.1489.320 Win32:Adware-gen [Adw]
AVG 14.0.0.3964 Generic_r.KL
Baidu-International 3.5.1.41473 Adware.Win32.MultiPlug.81
ESET-NOD32 9954 a variant of Win32/AdWare.MultiPlug.Y
McAfee 6.0.4.564 Artemis!BD9FB537D3D3
McAfee-GW-Edition 2013 Artemis!BD9FB537D3D3
Symantec 20131.1.5.61 Trojan.Gen.2
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0611
DU0Avn.exe (584cad63d062e99c0a4b07d334fbd440) has been flagged by the following 8 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.06.18.00 Dropper/Win32.Preloader
Antiy-AVL 1.0.0.1 Trojan/Win32.TGeneric
AVG 14.0.0.3972 Generic5.AVYG
ESET-NOD32 9962 a variant of Win32/AdWare.MultiPlug.Y
McAfee 6.0.4.564 Artemis!584CAD63D062
McAfee-GW-Edition 2013 Artemis!584CAD63D062
TrendMicro-HouseCall 9.700.0.1001 Suspicious_GEN.F47V0611
VIPRE Antivirus 30414 Trojan.Win32.Generic!BT
p.exe (e9c3be6e0e6901ae682850d667190e1c) has been flagged by the following 7 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2014.01.02.00 Trojan/Win32.Preloader
Baidu-International 3.5.1.41473 Adware.Win32.MegaSearch.AGL
ESET-NOD32 9239 a variant of Win32/AdWare.MultiPlug.K.gen
Kaspersky 12.0.0.1221 not-a-virus:AdWare.Win32.MegaSearch.at
Malwarebytes 1.75.0.1 PUP.Optional.CRXDrop.A
Panda Antivirus 10.0.3.5 Trj/Genetic.gen
Vba32 AntiVirus 3.12.24.3 BScope.Trojan.Agent
BC7P3t7Tzu.exe (ef38514253e4dafb6823f236bc47bb5f) has been flagged by the following 7 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 13.0.0.3169 Generic5.AOBP
Comodo Security 17878 ApplicUnwnt
ESET-NOD32 9495 a variant of Win32/AdWare.MultiPlug.S
Malwarebytes 1.75.0001 PUP.Optional.MultiPlug.A
Qihoo-360 1.0.0.1015 HEUR/Malware.QVM10.Gen
Trend Micro 9.740-1012 ADW_MULTIPLUG
TrendMicro-HouseCall 9.700-1001 ADW_MULTIPLUG
       View all 404 all detections

Program detailsProgram details

Displayed publisher: JoNICoupOn
Installation folder: C:\ProgramData\jonicoupon
Uninstaller: "C:\ProgramData\JoniCoupon\Q.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Estimated size: 914.6 KB

Program filesFiles installed by JoniCoupon

Program executable:Q.exe
Path:C:\ProgramData\jonicoupon\Q.exe
MD5:b6592b81da0e55d1823f6b8e44b9f5ed
Additional files:
  • (Malware detected) nHr0.exe (by and Successful application engineering database) - and Successful application engineering database (of)
  • (Malware detected) BC7P3t7Tzu.exe (by system Retrieval cluster) - system Retrieval cluster (often)
  • (Malware detected) FsP.exe (by Setup)
  • (Malware detected) N0UJ.exe (by Setup)
  • (Malware detected) p.exe
  • Q.exe
  • (Malware detected) s6L5hi4M.dll (by memory Databases) - memory Databases (managing dedicated are database)
  • (Malware detected) DU0Avn.exe (by of of comprise) - of of comprise (requirements)
  • (Malware detected) GNi.dll (by or is software) - or is software (management)
  • (Malware detected) GNi.exe (by its particular) - its particular (concerned)
  • (Malware detected) GNi.x64.dll (by or is software)
  • (Malware detected) HCgNHWhJf.exe (by with is system) - with is system (used so connected into)
  • (Malware detected) HCgNHWhJf.dll (by DBMS is a a) - DBMS is a a
  • (Malware detected) HCgNHWhJf.x64.dll (by DBMS is a a)
  • (Malware detected) IHEyZT5.exe (by tool Other) - tool Other (quantities)
  • (Malware detected) nHr0.dll (by right IDE) - right IDE (data)
  • (Malware detected) nHr0.x64.dll (by right IDE)
  • (Malware detected) s6L5hi4M.exe (by computers) - computers (also)
  • (Malware detected) f.dll (by large) - large (Obtaining operating database with)
  • (Malware detected) R_7_.x64.dll (by large)
  • (Malware detected) Igs9x7B75a.exe (by data) - data (standard may)
  • (Malware detected) C5J9.x64.dll
  • (Malware detected) FsP.dll
  • (Malware detected) N0UJ.dll
  • (Malware detected) p.dll
  • Q.dll

Program behaviorsBehaviors exhibited

13 Internet Explorer BHOs
  • s6L5hi4M.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'TicTACooupona' with the class of {83E1DFAE-322A-8D10-05FB-E4C2E70B8930}.
  • nHr0.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'ExtraShuopper' with the class of {03377F79-0DFC-5409-5604-9CCAE2D85F97}.
  • GNi.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'RanddomiPraice' with the class of {B358B6D3-476B-9DAD-17F1-1B7799A31D4A}.
  • N0UJ.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'SaveNeewaApppz' with the class of {0C088AAD-7B29-D2B1-9BF7-6C5CCBE822FB}.
  • f.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'MiinimumoPPrice' with the class of {6E3E8E43-56D8-BDB1-B926-A20075067189}.
  • GNi.x64.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'EnjeOyCoupOn' with the class of {A015F795-836A-E45C-75AD-49D76A6EAA44}.
  • Plus 7 more

How do I remove JoniCoupon?

You can uninstall JoniCoupon from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program JoniCoupon, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove JoniCoupon.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by JoniCoupon you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

OS VERSIONS
Win 7 (SP1) 50%
Win XP 5%
 
USER ACTIONS
Uninstall it 77%
Keep it 23%
 
COUNTRY POPULARITY
41.94%
United States

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 63.64%
Windows Vista 18.18%
Windows 10 13.64%
Windows XP 4.55%
Which OS releases does it run on?
Windows 7 Ultimate 36.36%
Windows 7 Home Premium 22.73%
Windows Vista Home Premiu... 18.18%
Windows 8 4.55%
Windows 8 Pro 4.55%
Windows 7 Home Basic 4.55%

Distribution by countryGeography

41.94% of installs come from the United States
Which countries install it?
  United States 41.94%
  Hong Kong 3.23%
  Kazakstan 3.23%
  Vietnam 3.23%
  Singapore 3.23%
  Brazil 3.23%
  Taiwan 3.23%
  Dominican Republic 3.23%
  Australia 3.23%
  Sweden 3.23%
  Argentina 3.23%
  Portugal 3.23%
  BD 3.23%
  Romania 3.23%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Toshiba 21.05%
Acer 21.05%
ASUS 15.79%
Dell 10.53%
Packard Bell 5.26%
Lenovo 5.26%
Hewlett-Packard 5.26%
GIGABYTE 5.26%
Gateway 5.26%
Alienware 5.26%
Common models
TOSHIBA Satellite L645D 5.88%
TOSHIBA SATELLITE C660 5.88%
TOSHIBA Satellite A300 5.88%
TOSHIBA Satellite A200 5.88%
Sony VGN-SR210J 5.88%
PACKARD BELL BV IMEDIA A5... 5.88%

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.