Adware . Adware.DealHelper (Summary)
Software Name: Adware.DealHelper
Company Name: DealHelper
Product Name: Adware.DealHelper
Classification: Adware
Website: http://www.dealhelper.com
Brief:
Displays popup advertisings. Downloads and installs additional Adware and Hijackers to your computer.
IMPORTANT!
Some of the Adware.Adware.DealHelper components
are listed below. The list is compiled as a reference. The list might
not be complete and it doesn't represent instructions for manual removal.
We DO NOT recommend manual removal. Incorrect removal
of certain software might make your computer unstable or even unusable.
Removal of adware component might affect the related ad-supported software.
If you suspect that you have an unwanted instance of Adware.DealHelper
installed on your computer we recommend a free
audit of your system with INAC Anti Spyware.
Adware.DealHelper might create following folders (and inject its files inside
the folders):
- %SYSTEM%\DealHelper
- %PROGRAM_FILES%\DealHelper.com Inc
- %PROGRAM_FILES%\TimeSync
- %COMMON_PROGRAMS%\D-Helper Web Driver
Adware.DealHelper might create following files (some of the files might be
loaded in memory while the software is running):
- %SYSTEM%\secure.exe
- %PROFILE%\Local Settings\Temp\TimeSync.log
- %PROFILE%\Local Settings\Temp\_Setupx.dll
- %PROFILE%\Local Settings\Temp\_Tix.log
- %WINDOWS%\AppsInstalled.htm
- %WINDOWS%\dealhlpr.dll
- %WINDOWS%\dhbrwsr.exe
- %WINDOWS%\dhdom1.bin
- %WINDOWS%\dhdomp1.bin
- %WINDOWS%\dhkw1.bin
- %WINDOWS%\dhp.dll
- %WINDOWS%\Dhsigned.ocx
- %WINDOWS%\dhsvr.exe
- %WINDOWS%\dhupdt.exe
- %WINDOWS%\download.exe
- %WINDOWS%\dsearch1.bin
- %WINDOWS%\TimeSynchronize.exe
- %WINDOWS%\Downloaded Program Files\Dealhelper.inf
- %PROFILE%\Local Settings\Temp\dealhelper.exe
- %SYSTEM%\Brzsah.exe
- %SYSTEM%\dun.exe
Adware.DealHelper is often accompanied by the following tracking cookies:
Adware.DealHelper might create following registry keys (and inject subkeys
and values):
- HKEY_CLASSES_ROOT\AppID\dhbrwsr.EXE
- HKEY_CLASSES_ROOT\AppID\dhsvr.EXE
- HKEY_CLASSES_ROOT\AppID\{A1F53F1D-FB2D-4FE0-8EE8-7BBE69999D9F}
- HKEY_CLASSES_ROOT\AppID\{A57AFB0F-C63E-4AE2-8A7B-BCA01BA32CC5}
- HKEY_CLASSES_ROOT\CLSID\{54A41AE7-B358-4D41-98BD-BBBFFDF5186B}
- HKEY_CLASSES_ROOT\CLSID\{6DD8B352-21A7-4C24-AC49-E9B4730C1823}
- HKEY_CLASSES_ROOT\CLSID\{7BC3EC59-A4A0-4638-A3BF-C20B0665947F}
- HKEY_CLASSES_ROOT\CLSID\{8B477303-698C-4EED-B9F6-C715842FBE33}
- HKEY_CLASSES_ROOT\CLSID\{8EE1AAF5-ED6B-4601-B333-CD30FFB8B39D}
- HKEY_CLASSES_ROOT\CLSID\{B8E910B5-7452-4A29-B121-08E8CF09EC07}
- HKEY_CLASSES_ROOT\CLSID\{D848A3CA-0BFB-4DE0-BA9E-A57F0CCA1C13}
- HKEY_CLASSES_ROOT\CLSID\{F00586DE-A432-4B9F-877D-E29CD87EFDD6}
- HKEY_CLASSES_ROOT\CLSID\{FE4BBEA8-1EFD-4B8A-BD1B-341CCDBEEAA6}
- HKEY_CLASSES_ROOT\Dealhlpr.Band
- HKEY_CLASSES_ROOT\Dealhlpr.Band.1
- HKEY_CLASSES_ROOT\Dhbrwsr.BrowserWindows
- HKEY_CLASSES_ROOT\Dhbrwsr.BrowserWindows.1
- HKEY_CLASSES_ROOT\DHP.DHEvents
- HKEY_CLASSES_ROOT\DHP.DHEvents.1
- HKEY_CLASSES_ROOT\DHSIGNED.DhsignedCtrl.1
- HKEY_CLASSES_ROOT\Dhsvr.CFileDatabase
- HKEY_CLASSES_ROOT\Dhsvr.CFileDatabase.1
- HKEY_CLASSES_ROOT\Dhsvr.DBHelper
- HKEY_CLASSES_ROOT\Dhsvr.DBHelper.1
- HKEY_CLASSES_ROOT\Dhsvr.Even
- HKEY_CLASSES_ROOT\Dhsvr.Even.1
- HKEY_CLASSES_ROOT\Dhsvr.WebDealEvents
- HKEY_CLASSES_ROOT\Dhsvr.WebDealEvents.1
- HKEY_CLASSES_ROOT\Interface\{06E53101-654C-45EB-BFF6-E37E13B5972A}
- HKEY_CLASSES_ROOT\Interface\{0B16B278-B2E3-4CBF-85B5-E058878F728F}
- HKEY_CLASSES_ROOT\Interface\{1DA40091-14B4-4C21-8170-A2CEEDE90B10}
- HKEY_CLASSES_ROOT\Interface\{3AFAE37A-56A3-4850-B599-4DA9A9104B82}
- HKEY_CLASSES_ROOT\Interface\{3D89A731-9F4A-418F-A997-2D633C7C404C}
- HKEY_CLASSES_ROOT\Interface\{81739076-56B7-42EC-A0AA-692794FDED1A}
- HKEY_CLASSES_ROOT\Interface\{A2CDAFB4-EB9C-4EFC-BCFC-A7AA6745FF7E}
- HKEY_CLASSES_ROOT\Interface\{B5146C72-3328-4240-97ED-3A23DCB656CF}
- HKEY_CLASSES_ROOT\Interface\{BF9EE3A0-1A02-4265-A65F-AC4D4447F6BF}
- HKEY_CLASSES_ROOT\Interface\{DEBA1742-2BEC-4B78-A987-5837971193F7}
- HKEY_CLASSES_ROOT\Interface\{E9468A08-F790-48CE-AD30-EADEEAB9B40C}
- HKEY_CLASSES_ROOT\Interface\{F3816084-9608-485A-B63B-CAD8F931577E}
- HKEY_CLASSES_ROOT\TypeLib\{25AB1639-3F81-45A8-8318-2DAFBA8B8F3D}
- HKEY_CLASSES_ROOT\TypeLib\{5E19A321-635E-4BA5-8828-A5B6427CC61D}
- HKEY_CLASSES_ROOT\TypeLib\{771262E0-8FEB-4E78-B292-B01C4071B9D1}
- HKEY_CLASSES_ROOT\TypeLib\{B82B9ECF-40AE-46F2-B98E-B87CF17F70D0}
- HKEY_CLASSES_ROOT\TypeLib\{C2E2F4D7-2C20-492F-B179-D15FF876AB83}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{FE4BBEA8-1EFD-4B8A-BD1B-341CCDBEEAA6}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D848A3CA-0BFB-4DE0-BA9E-A57F0CCA1C13}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\*/Dhsigned.ocx*
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\D-Helper Web Driver
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TimeSync
- HKEY_USERS\*\Software\DealHelper
- HKEY_USERS\*\Software\TimeSynchonization
- HKEY_LOCAL_MACHINE\SOFTWARE\dealhelper
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Dealhelper
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinDH
- HKEY_LOCAL_MACHINE\SOFTWARE\Ddate
Adware.DealHelper might create following registry values:
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|DealHelperUpdate
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|DealHelperBrwsr
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\Dhsigned.ocx
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\AppsInstalled.htm
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dealhlpr.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhbrwsr.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhp.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhsvr.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhupdt.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\TimeSynchronize.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|version
Adware.DealHelper might create registry values with following data:
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|version|*\Brzsah.exe
Adware.DealHelper might insert following entries in the HOSTS file:
n/a
Click
here to scan your computer for Adware.DealHelper free of charge
|