Should I block it?

98%
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryInfoKeyA, RegCreateKeyExA, RegDeleteValueA, RegCloseKey, RegQueryValueExA, RegSetValueExA, RegEnumValueA, RegEnumKeyExA, RegQueryInfoKeyW, RegDeleteKeyA, GetTokenInformation, GetSidSubAuthorityCount, GetSidSubAuthority, OpenProcessToken, LookupPrivilegeValueA, AdjustTokenPrivileges, RegOpenKeyExA
gdiplus.dll
GdiplusShutdown
kernel32.dll
FreeLibrary, LoadLibraryA, CloseHandle, GetLastError, GetCurrentProcess, OpenProcess, Sleep, TerminateProcess, WaitForSingleObject, CreateThread, RaiseException, EnterCriticalSection, LeaveCriticalSection, FlushInstructionCache, SetLastError, WideCharToMultiByte, LocalFree, FormatMessageA, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, MultiByteToWideChar, UnmapViewOfFile, SetEvent, MapViewOfFile, OpenFileMappingA, CreateFileMappingA, CreateEventA, lstrcpyA, LocalAlloc, InitializeCriticalSection, WriteFile, ReadFile, SetFilePointer, GetFileSize, CreateFileA, lstrlenW, ReleaseMutex, lstrcmpiA, DisableThreadLibraryCalls, GetModuleFileNameA, GetModuleHandleW, IsDBCSLeadByte, SizeofResource, LoadResource, FindResourceA, LoadLibraryExA, GetCurrentProcessId, CreateMutexA, FindClose, FindNextFileA, lstrlenA, GetVersion, ExpandEnvironmentStringsA, GetFileType, SetHandleCount, FlushFileBuffers, GetConsoleMode, GetConsoleCP, GetTimeZoneInformation, HeapDestroy, HeapCreate, GetLocaleInfoW, GetModuleFileNameW, GetStdHandle, ExitProcess, HeapSize, GetStringTypeW, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, LCMapStringW, GetCommandLineA, VirtualQuery, GetSystemInfo, VirtualProtect, HeapReAlloc, GetLocalTime, GetSystemTimeAsFileTime, RtlUnwind, DecodePointer, EncodePointer, InterlockedExchange, InterlockedPopEntrySList, VirtualAlloc, GetCurrentThreadId, OutputDebugStringA, DebugBreak, InterlockedIncrement, OpenMutexA, InterlockedDecrement, GetModuleHandleA, GetProcAddress, GetStartupInfoW, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetTickCount, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, LoadLibraryW, SetStdHandle, WriteConsoleW, CreateFileW, LCMapStringA, SetEndOfFile, VirtualFree, IsProcessorFeaturePresent, HeapAlloc, GetProcessHeap, HeapFree, InterlockedPushEntrySList, InterlockedCompareExchange, CompareStringW, SetEnvironmentVariableA, GetStringTypeExA, FindFirstFileA
ole32.dll
CoTaskMemFree, CoGetClassObject, CLSIDFromProgID, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateGuid, StringFromGUID2, CoCreateInstance
oleacc.dll
AccessibleObjectFromWindow
shell32.dll
ShellExecuteExA, ShellExecuteA, SHGetFolderPathA
urlmon.dll
CoInternetGetSession, URLDownloadToCacheFileA
user32.dll
CharNextA, PostMessageA, GetWindowThreadProcessId, EnumWindows, SetWindowLongA, GetClassInfoExA, LoadCursorA, DefWindowProcA, RegisterClassExA, CreateWindowExA, GetWindowLongA, CallWindowProcA, DestroyWindow, GetDesktopWindow, DestroyIcon, SendMessageA, GetWindowRect, LoadStringA, SetWindowPos, GetParent, FindWindowExA, UnhookWindowsHookEx, SetTimer, KillTimer, CharNextW, MessageBoxA, CharLowerA, GetWindowTextA, IsWindowVisible, wvsprintfA, UnregisterClassA
wininet.dll
InternetSetOptionA, InternetOpenA, InternetReadFile, InternetGetCookieA, InternetSetCookieA, HttpSendRequestA, HttpQueryInfoA, InternetCloseHandle, InternetConnectA, InternetCrackUrlA, HttpOpenRequestA
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

Coupon Companion.dll

Coupon Companion by Awesome Apps (Signed)

Remove Coupon Companion.dll
Version:   1.1.151.40
MD5:   6d31ee38ef24e0079c194cc387691124
SHA1:   6425be114e8817e7b2951ea9cda530344f30d582
SHA256:   f659c022453950817df216afb179e2fe5b38367f0dd7ea9aceff431fd85ffd1a
Warning 3 antivirus scanners has detected malware.

What is Coupon Companion.dll?

Coupon Companion BHO is the Browser Helper Object installed into Internet Explorer which has the ability to access and monitor all loaded and requested web pages and content. Coupon Companion is an adware type program that has causes serious performance issues to your PC by installing a number of plug-ins and add-ins to your web browser and Windows. It injects ads directly by modifying web pages based on your surfing habits.

About Coupon Companion.dll (from Awesome Apps)

The Coupon Companion shopping companion will help save you money by finding and presenting the top active coupons for the site you're browsing. After installation Coupon Companion will let you know wh

DetailsDetails

File name:coupon companion.dll
Publisher:215 Apps
Product name:Coupon Companion
Description:Coupon Companion BHO
Typical file path:C:\Program Files\coupon companion\coupon companion.dll
File version:1.1.151.40
Size:602.88 KB (617,344 bytes)
Certificate
Issued to:Awesome Apps
Authority (CA):Thawte
Effective date:Tuesday, August 28, 2012
Expiration date:Thursday, August 29, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
215 Apps
  86% remove
Coupon Companion by Awesome Apps (215 Apps/ run by 50OnRed) is a Browser Helper Object installed into Internet Explorer that monitors web pages for possible affiliate merchant partners. Coupon Companion will let you know when there are coupons by showing a counter in the top right of Web sites. Coupon Companion is an adware type program that has causes serious performance issues to your PC by installing a number of plug-ins and add-ins ...

BehaviorsBehaviors

Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
  • BHO CLSID: {11111111-1111-1111-1111-110011441193}

MalwareMalware detections

Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
Antivirus engineEngine versionDetection
ESET NOD32 7.7679 a variant of Win32/Toolbar.CrossRider.A
Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.RCBH1K5
VIPRE Antivirus 13922 GamePlayLabs (v)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate N 75.00%
Windows 7 Home Premium 25.00%

Distribution by countryDistribution by country

United States installs about 100.00% of Coupon Companion.
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE