Home Malware Programs Adware Adware.DiscountDragon

Adware.DiscountDragon

Posted: April 5, 2013

Threat Metric

Ranking: 10,383
Threat Level: 2/10
Infected PCs: 8,905
First Seen: April 5, 2013
Last Seen: October 11, 2023
OS(es) Affected: Windows

Discount Dragon Screenshot 1Discount Dragon is an adware application, which is created as a browser extension and is produced by 215 Apps. Discount Dragon displays annoying pop-up ads on numerous online shopping websites. Discount Dragon affects PC users of web browsers such as Mozilla Firefox, Google chrome, and Internet Explorer. Discount Dragon is able to change browser settings to execute its unwanted functions on the infected computer. Every time the PC user browses online shopping websites, Discount Dragon will reveal a pop-up box, which shows Discount Dragon coupons and ads. Affected computer users will get flooded with numerous links and offers. Discount Dragon gathers data such as the victim's browsing habits and search terms from the corrupted PC, and then, sends promos and discounts of many software products according to the attacked computer user's preferences. Discount Dragon shows ads and sponsored links of a variety of software products that the target computer user might purchase.

DiscountDragon Screenshot 2

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%LOCALAPPDATA%\Discount Dragon\repair.js File name: repair.js
Size: 1.73 KB (1735 bytes)
MD5: 8420123e490a28b0a19545e3a570a1fc
Detection count: 4,750
File type: JavaScript file
Mime Type: unknown/js
Path: %LOCALAPPDATA%\Discount Dragon
Group: Malware file
Last Updated: July 5, 2023
C:\Users\<username>\Desktop\DATOS RECUPERADOS\DATOS ACER\C\AdwCleaner\Quarantine\C\Program Files\Discount Dragon\FrameworkBHO.dll.vir File name: FrameworkBHO.dll.vir
Size: 258.08 KB (258088 bytes)
MD5: 9006ddefe11efa5bf631ca6509cd1ffb
Detection count: 159
Mime Type: unknown/vir
Path: C:\Users\<username>\Desktop\DATOS RECUPERADOS\DATOS ACER\C\AdwCleaner\Quarantine\C\Program Files\Discount Dragon\FrameworkBHO.dll.vir
Group: Malware file
Last Updated: February 27, 2022
%PROGRAMFILES%\Discount Dragon\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 9c7c4f7a17cbdb98bbe9eadca54be494
Detection count: 131
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Discount Dragon
Group: Malware file
Last Updated: January 18, 2019
%PROGRAMFILES%\Discount Dragon\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: b38d12dcb41f6b9a7f3c39aa3cd16738
Detection count: 84
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Discount Dragon
Group: Malware file
Last Updated: November 20, 2019
%PROGRAMFILES%\Discount Dragon\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: 90aa68e19743fe6e14ccf8ea068349e2
Detection count: 68
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Discount Dragon
Group: Malware file
Last Updated: June 11, 2014
%PROGRAMFILES%\Discount Dragon\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 258.08 KB (258088 bytes)
MD5: e3207837e737879114bfc69b1f178abd
Detection count: 56
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Discount Dragon
Group: Malware file
Last Updated: May 6, 2020
%PROGRAMFILES%\Discount Dragon\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 288.81 KB (288816 bytes)
MD5: d5f6ed8e3adea1c05e9e4df908d60536
Detection count: 49
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Discount Dragon
Group: Malware file
Last Updated: June 11, 2014

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110111271151}SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Discount Dragon-bg.exeSOFTWARE\Wow6432Node\Discount DragonSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Discount Dragon-bg.exeHKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}38900_Discount DragonDiscount Dragon

Additional Information

The following directories were created:
%LOCALAPPDATA%\Discount Dragon%LOCALAPPDATA%\Updater12751%PROGRAMFILES%\Discount Dragon%PROGRAMFILES(x86)%\Discount Dragon
The following URL's were detected:
Discount Dragon
Loading...