Adware
. Adware.DealHelper (Summary)
Software Name: Adware.DealHelper
Company Name: DealHelper
Product Name: Adware.DealHelper
Classification: Adware
Website: http://www.dealhelper.com
Brief:
Displays popup advertisings. Downloads and installs additional Adware and Hijackers to your computer.
IMPORTANT!
Some of the Adware.Adware.DealHelper components are listed below. The
list is compiled as a reference. The list might not be complete
and it doesn't represent instructions for manual removal.
We DO NOT recommend manual removal. Incorrect
removal of certain software might make your computer unstable
or even unusable.
Removal of adware component might affect the related ad-supported
software.
If you suspect that you have an unwanted instance
of Adware.DealHelper installed on your
computer we recommend a free
audit of your system with INAC Anti Spyware.
Adware.DealHelper might create following folders
(and inject its files inside the folders):
- %SYSTEM%\DealHelper
- %PROGRAM_FILES%\DealHelper.com Inc
- %PROGRAM_FILES%\TimeSync
- %COMMON_PROGRAMS%\D-Helper Web Driver
Adware.DealHelper might create following
files (some of the files might be loaded in memory while
the software is running):
- %SYSTEM%\secure.exe
- %PROFILE%\Local Settings\Temp\TimeSync.log
- %PROFILE%\Local Settings\Temp\_Setupx.dll
- %PROFILE%\Local Settings\Temp\_Tix.log
- %WINDOWS%\AppsInstalled.htm
- %WINDOWS%\dealhlpr.dll
- %WINDOWS%\dhbrwsr.exe
- %WINDOWS%\dhdom1.bin
- %WINDOWS%\dhdomp1.bin
- %WINDOWS%\dhkw1.bin
- %WINDOWS%\dhp.dll
- %WINDOWS%\Dhsigned.ocx
- %WINDOWS%\dhsvr.exe
- %WINDOWS%\dhupdt.exe
- %WINDOWS%\download.exe
- %WINDOWS%\dsearch1.bin
- %WINDOWS%\TimeSynchronize.exe
- %WINDOWS%\Downloaded Program Files\Dealhelper.inf
- %PROFILE%\Local Settings\Temp\dealhelper.exe
- %SYSTEM%\Brzsah.exe
- %SYSTEM%\dun.exe
Adware.DealHelper is often accompanied by the following
tracking cookies:
Adware.DealHelper might create following registry
keys (and inject subkeys and values):
- HKEY_CLASSES_ROOT\AppID\dhbrwsr.EXE
- HKEY_CLASSES_ROOT\AppID\dhsvr.EXE
- HKEY_CLASSES_ROOT\AppID\{A1F53F1D-FB2D-4FE0-8EE8-7BBE69999D9F}
- HKEY_CLASSES_ROOT\AppID\{A57AFB0F-C63E-4AE2-8A7B-BCA01BA32CC5}
- HKEY_CLASSES_ROOT\CLSID\{54A41AE7-B358-4D41-98BD-BBBFFDF5186B}
- HKEY_CLASSES_ROOT\CLSID\{6DD8B352-21A7-4C24-AC49-E9B4730C1823}
- HKEY_CLASSES_ROOT\CLSID\{7BC3EC59-A4A0-4638-A3BF-C20B0665947F}
- HKEY_CLASSES_ROOT\CLSID\{8B477303-698C-4EED-B9F6-C715842FBE33}
- HKEY_CLASSES_ROOT\CLSID\{8EE1AAF5-ED6B-4601-B333-CD30FFB8B39D}
- HKEY_CLASSES_ROOT\CLSID\{B8E910B5-7452-4A29-B121-08E8CF09EC07}
- HKEY_CLASSES_ROOT\CLSID\{D848A3CA-0BFB-4DE0-BA9E-A57F0CCA1C13}
- HKEY_CLASSES_ROOT\CLSID\{F00586DE-A432-4B9F-877D-E29CD87EFDD6}
- HKEY_CLASSES_ROOT\CLSID\{FE4BBEA8-1EFD-4B8A-BD1B-341CCDBEEAA6}
- HKEY_CLASSES_ROOT\Dealhlpr.Band
- HKEY_CLASSES_ROOT\Dealhlpr.Band.1
- HKEY_CLASSES_ROOT\Dhbrwsr.BrowserWindows
- HKEY_CLASSES_ROOT\Dhbrwsr.BrowserWindows.1
- HKEY_CLASSES_ROOT\DHP.DHEvents
- HKEY_CLASSES_ROOT\DHP.DHEvents.1
- HKEY_CLASSES_ROOT\DHSIGNED.DhsignedCtrl.1
- HKEY_CLASSES_ROOT\Dhsvr.CFileDatabase
- HKEY_CLASSES_ROOT\Dhsvr.CFileDatabase.1
- HKEY_CLASSES_ROOT\Dhsvr.DBHelper
- HKEY_CLASSES_ROOT\Dhsvr.DBHelper.1
- HKEY_CLASSES_ROOT\Dhsvr.Even
- HKEY_CLASSES_ROOT\Dhsvr.Even.1
- HKEY_CLASSES_ROOT\Dhsvr.WebDealEvents
- HKEY_CLASSES_ROOT\Dhsvr.WebDealEvents.1
- HKEY_CLASSES_ROOT\Interface\{06E53101-654C-45EB-BFF6-E37E13B5972A}
- HKEY_CLASSES_ROOT\Interface\{0B16B278-B2E3-4CBF-85B5-E058878F728F}
- HKEY_CLASSES_ROOT\Interface\{1DA40091-14B4-4C21-8170-A2CEEDE90B10}
- HKEY_CLASSES_ROOT\Interface\{3AFAE37A-56A3-4850-B599-4DA9A9104B82}
- HKEY_CLASSES_ROOT\Interface\{3D89A731-9F4A-418F-A997-2D633C7C404C}
- HKEY_CLASSES_ROOT\Interface\{81739076-56B7-42EC-A0AA-692794FDED1A}
- HKEY_CLASSES_ROOT\Interface\{A2CDAFB4-EB9C-4EFC-BCFC-A7AA6745FF7E}
- HKEY_CLASSES_ROOT\Interface\{B5146C72-3328-4240-97ED-3A23DCB656CF}
- HKEY_CLASSES_ROOT\Interface\{BF9EE3A0-1A02-4265-A65F-AC4D4447F6BF}
- HKEY_CLASSES_ROOT\Interface\{DEBA1742-2BEC-4B78-A987-5837971193F7}
- HKEY_CLASSES_ROOT\Interface\{E9468A08-F790-48CE-AD30-EADEEAB9B40C}
- HKEY_CLASSES_ROOT\Interface\{F3816084-9608-485A-B63B-CAD8F931577E}
- HKEY_CLASSES_ROOT\TypeLib\{25AB1639-3F81-45A8-8318-2DAFBA8B8F3D}
- HKEY_CLASSES_ROOT\TypeLib\{5E19A321-635E-4BA5-8828-A5B6427CC61D}
- HKEY_CLASSES_ROOT\TypeLib\{771262E0-8FEB-4E78-B292-B01C4071B9D1}
- HKEY_CLASSES_ROOT\TypeLib\{B82B9ECF-40AE-46F2-B98E-B87CF17F70D0}
- HKEY_CLASSES_ROOT\TypeLib\{C2E2F4D7-2C20-492F-B179-D15FF876AB83}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{FE4BBEA8-1EFD-4B8A-BD1B-341CCDBEEAA6}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D848A3CA-0BFB-4DE0-BA9E-A57F0CCA1C13}
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\*/Dhsigned.ocx*
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\D-Helper Web Driver
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TimeSync
- HKEY_USERS\*\Software\DealHelper
- HKEY_USERS\*\Software\TimeSynchonization
- HKEY_LOCAL_MACHINE\SOFTWARE\dealhelper
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Dealhelper
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinDH
- HKEY_LOCAL_MACHINE\SOFTWARE\Ddate
Adware.DealHelper might create following registry
values:
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|DealHelperUpdate
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|DealHelperBrwsr
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\Dhsigned.ocx
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\AppsInstalled.htm
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dealhlpr.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhbrwsr.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhp.dll
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhsvr.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\dhupdt.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs|*\TimeSynchronize.exe
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|version
Adware.DealHelper might create registry values with
following data:
- HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|version|*\Brzsah.exe
Adware.DealHelper might insert following entries
in the HOSTS file:
n/a
Click here to scan
your computer for Adware.DealHelper free of charge