Should I block it?

98%
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization

VersionsAdditional versions

1.0.2.1 16.67%
1.0.2.1 83.33%
(Note, Blabbers Communications Ltd publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegDeleteValueW, RegQueryValueExW, EqualSid, CreateWellKnownSid, GetTokenInformation, OpenProcessToken, RegEnumKeyExW, RegDeleteKeyW, RegSetValueExW, RegCreateKeyExW, RegOpenKeyExW, RegCloseKey
kernel32.dll
SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetStringTypeW, Sleep, HeapCreate, GetModuleFileNameW, GetStdHandle, ExitProcess, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, IsDebuggerPresent, GetFileAttributesW, GetPrivateProfileStringW, GetPrivateProfileIntW, GetProcAddress, GetModuleHandleW, lstrlenW, CloseHandle, GetLastError, CreateFileW, GetFileSize, ReadFile, InterlockedDecrement, CreateDirectoryW, TerminateProcess, SetEndOfFile, SetFilePointer, WriteFile, GetFileType, DeleteFileW, FindResourceW, SizeofResource, LoadResource, LockResource, WideCharToMultiByte, FindResourceExW, GetCurrentProcess, HeapAlloc, GetProcessHeap, HeapFree, GetTempPathW, SetFileAttributesW, GetTickCount, GetVersionExW, SetLastError, GetStartupInfoW, RemoveDirectoryW, GetCurrentThreadId, CreateMutexW, WaitForSingleObject, GetCommandLineW, GetSystemTimeAsFileTime, DecodePointer, LoadLibraryW, EncodePointer, InterlockedExchange, FreeLibrary, DeleteCriticalSection, InitializeCriticalSectionAndSpinCount, LeaveCriticalSection, EnterCriticalSection, RaiseException, HeapSize, HeapReAlloc, HeapDestroy, MultiByteToWideChar, RtlUnwind, UnhandledExceptionFilter, SetUnhandledExceptionFilter, QueryPerformanceCounter, GetCurrentProcessId, IsProcessorFeaturePresent, LCMapStringW, GetConsoleCP, GetConsoleMode, SetStdHandle, WriteConsoleW, FlushFileBuffers, InterlockedIncrement, HeapSetInformation, LocalFree, OpenProcess
ole32.dll
CoCreateGuid, StringFromGUID2
shell32.dll
SHGetFolderLocation, SHGetPathFromIDListW, SHGetMalloc, CommandLineToArgvW, SHFileOperationW, SHGetFolderPathW
sqlite3.dll
sqlite3_prepare_v2, sqlite3_busy_timeout, sqlite3_close, sqlite3_open, sqlite3_errmsg, sqlite3_finalize, sqlite3_step, sqlite3_column_type, sqlite3_column_name, sqlite3_column_text, sqlite3_column_count, sqlite3_free, sqlite3_mprintf
user32.dll
DefWindowProcW, BeginPaint, KillTimer, SetTimer, UpdateWindow, PostQuitMessage, CreateWindowExW, RegisterClassExW, LoadCursorW, LoadIconW, TranslateAcceleratorW, GetMessageW, LoadAcceleratorsW, DispatchMessageW, TranslateMessage, ShowWindow, EndPaint, PeekMessageW, MsgWaitForMultipleObjects
wtsapi32.dll
WTSFreeMemory, WTSEnumerateProcessesW

BCHelper.exe

Browser Companion Helper by Blabbers Communications Ltd (Signed)

Remove BCHelper.exe
Version:   1.0.2.1
MD5:   236db979f8edfc4a6932909f2e92b8ca
SHA1:   e143b0301069e9192c05d0ae6f3e4b860fb02436
SHA256:   03b95f03f0c42fd8e34f906abeb24f3ac5a04c557cd10d384d6f50a285656bed
Warning 3 antivirus scanners has detected malware.

What is BCHelper.exe?

The Browser Companion Helper Verifier Module is the software updater program which runs in the background of Windows and automatically starts up when your PC boots. It checks for software udpates and automatically downloads and installs them if found.

About BCHelper.exe (from Blabbers Communications Ltd)

Blabbers allows users to change how they see the Web by altering the look of any Web page, adding layers of multimedia content or graphics and then sharing their experience with friends from their soc

DetailsDetails

File name:bchelper.exe
Publisher:Blabbers Communications LTD
Product name:Browser Companion Helper
Typical file path:C:\Program Files\browsercompanion\bchelper.exe
File version:1.0.2.1
Size:178.3 KB (182,576 bytes)
Certificate
Issued to:Blabbers Communications Ltd
Authority (CA):The USERTRUST Network
Effective date:Thursday, February 10, 2011
Expiration date:Saturday, February 11, 2012
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
Blabbers Communications LTD
  85% remove
BrowserCompanion is a third party web browser potentially unwanted add-in that used to be bundled with various freeware products including PC Performer. The maker of this program is a known adware distributor, so caution should be taken. The program deploys standard web browser hijacking techniques such as modifying the home page and search settings as well as providing a mechanism for automatic updates. Ginyas Browser Companion is ...
Blabbers Communications LTD
  61% remove
Ginyas Browser Companion is a browser extension (Browser Helper Object in IE) that promises to save time and money for users while shopping online. It is often install on a computer bundled with various third party programs. Once installed it will monitor web page activity and inject affiliate links within various shopping sites in order to collect revenue. The add-in also displays various forms of advertising such as popups, pop unders...

BehaviorsBehaviors

Startup files (all users) run
Runs under the registry key 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run'
  • 'Browser companion helper' → C:\Program Files\BrowserCompanion\BCHelper.exe /T=3 /CHI=onklpkebbeeimgojkmaccmhmoafknihh

MalwareMalware detections

Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
Antivirus engineEngine versionDetection
ESET NOD32 7.8186 a variant of Win32/BrowserCompanion.A
Malwarebytes 1.70.0.9 PUP.Blabbers
Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.F47V1206

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00002717%
0.028634%
Kernel CPU:0.00001358%
0.013761%
User CPU:0.00001358%
0.014873%
Kernel CPU time:16 ms/min
100,923,805ms/min
CPU cycles:2,583/sec
17,470,203/sec
Memory
Private memory:1.39 MB
21.59 MB
Private (maximum):4.52 MB
Private (minimum):3.86 MB
Non-paged memory:1.39 MB
21.59 MB
Virtual memory:49.1 MB
140.96 MB
Virtual memory (peak):50.97 MB
169.69 MB
Working set:4.26 MB
18.61 MB
Working set (peak):4.52 MB
37.95 MB
Page faults:5,747/min
2,039/min
I/O
I/O read transfer:0 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:0 Bytes/sec
448.09 KB/min
I/O other operations:1/sec
1,671/min
Resource allocations
Threads:1
12
Handles:109
600
GUI GDI count:12
103
GUI GDI peak:13
142
GUI USER count:5
49
GUI USER peak:6
71

BehaviorsProcess properties

Integrety level:Medium
Platform:32-bit
Command line:"C:\Program Files\browsercompanion\bchelper.exe" /t=3 /chi=onklpkebbeeimgojkmaccmhmoafknihh
Owner:User
Parent process:explorer.exe (Windows Explorer by Microsoft Corporation)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 50.00%
Windows 7 Ultimate 38.89%
Microsoft Windows XP 11.11%

Distribution by countryDistribution by country

NA installs about 11.11% of Browser Companion Helper.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Toshiba 36.36%
Hewlett-Packard 27.27%
American Megatrends 18.18%
Acer 18.18%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE