Should I block it?

98%
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization

VersionsAdditional versions

1.1.150.20 50.00%
1.1.150.20 50.00%
(Note, Friendly Apps publishes each variation of this file with the same version, but the hashes are unique.)

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExA, RegQueryInfoKeyA, RegEnumKeyExA, RegQueryInfoKeyW, RegDeleteKeyA, GetTokenInformation, GetSidSubAuthorityCount, GetSidSubAuthority, OpenProcessToken, LookupPrivilegeValueA, AdjustTokenPrivileges, RegEnumValueA, RegSetValueExA, RegCloseKey, RegDeleteValueA, RegCreateKeyExA, RegOpenKeyExA
kernel32.dll
QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetProcAddress, GetModuleHandleA, lstrlenA, InterlockedDecrement, InterlockedIncrement, DebugBreak, OutputDebugStringA, GetCurrentThreadId, GetCurrentProcessId, FreeLibrary, LoadLibraryA, CloseHandle, GetLastError, GetCurrentProcess, OpenProcess, Sleep, TerminateProcess, WaitForSingleObject, RaiseException, EnterCriticalSection, LeaveCriticalSection, FlushInstructionCache, SetLastError, WideCharToMultiByte, LocalFree, FormatMessageA, LocalAlloc, DeleteCriticalSection, InitializeCriticalSection, MultiByteToWideChar, WriteFile, ReadFile, SetFilePointer, GetFileSize, CreateFileA, lstrlenW, ReleaseMutex, SetEvent, CreateThread, CreateEventA, InitializeCriticalSectionAndSpinCount, lstrcmpiA, DisableThreadLibraryCalls, GetTickCount, GetModuleHandleW, IsDBCSLeadByte, SizeofResource, LoadResource, FindResourceA, LoadLibraryExA, OpenMutexA, CreateMutexA, GetVersion, ExpandEnvironmentStringsA, GetStartupInfoW, GetFileType, SetHandleCount, FlushFileBuffers, GetConsoleMode, GetConsoleCP, GetTimeZoneInformation, HeapDestroy, HeapCreate, GetLocaleInfoW, GetModuleFileNameW, GetStdHandle, ExitProcess, HeapSize, GetStringTypeW, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, LCMapStringW, GetCommandLineA, VirtualQuery, GetSystemInfo, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, HeapFree, LoadLibraryW, SetStdHandle, WriteConsoleW, CreateFileW, SetEndOfFile, CompareStringW, SetEnvironmentVariableA, GetStringTypeExA, LCMapStringA, InterlockedPushEntrySList, GetModuleFileNameA, VirtualProtect, HeapReAlloc, GetLocalTime, GetSystemTimeAsFileTime, RtlUnwind, DecodePointer, EncodePointer, InterlockedExchange, InterlockedPopEntrySList, VirtualAlloc, VirtualFree, IsProcessorFeaturePresent, HeapAlloc, GetProcessHeap, InterlockedCompareExchange
ole32.dll
CoTaskMemRealloc, CoTaskMemAlloc, CoTaskMemFree, CLSIDFromProgID, CoCreateGuid, StringFromGUID2, CoCreateInstance, CoGetClassObject
oleacc.dll
AccessibleObjectFromWindow
shell32.dll
ShellExecuteA, SHGetFolderPathA, ShellExecuteExA
urlmon.dll
CoInternetGetSession, URLDownloadToCacheFileA
user32.dll
CharNextA, UnregisterClassA, LoadStringA, wvsprintfA, LoadCursorA, IsWindowVisible, GetWindowTextA, FindWindowExA, GetParent, SendMessageA, CharLowerA, MessageBoxA, CharNextW, PostMessageA, SetTimer, GetDesktopWindow, DestroyWindow, CallWindowProcA, GetWindowLongA, CreateWindowExA, RegisterClassExA, DefWindowProcA, KillTimer, GetClassInfoExA, SetWindowLongA, EnumWindows, GetWindowThreadProcessId
wininet.dll
HttpOpenRequestA, InternetSetCookieA, InternetReadFile, HttpQueryInfoA, HttpSendRequestA, InternetCloseHandle, InternetConnectA, InternetCrackUrlA, InternetOpenA, InternetGetCookieA
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer

Giant Savings.dll

Giant Savings by Friendly Apps (Signed)

Remove Giant Savings.dll
Version:   1.1.150.20
MD5:   89a9118d7757ac822b8facd45559cbce
SHA1:   e3a57a38ec2ce1d9c17ab594dfe865c998ab440b
SHA256:   3940dd3d5bbec5695053ed72b77d9fd26352daa32dad894a99521fe4a4a7ee9a
Warning 6 antivirus scanners has detected malware.

What is Giant Savings.dll?

Giant Savings BHO is the Browser Helper Object installed into Internet Explorer which has the ability to access and monitor all loaded and requested web pages and content. Giant Savings is an adware type program that has causes serious performance issues to your PC by installing a number of plug-ins and add-ins to your web browser and Windows. It injects ads directly by modifying web pages based on your surfing habits.

About Giant Savings.dll (from Friendly Apps)

Giant Savings takes couponing to the next level by providing users with an easy to use coupon list they can use to save as they browse. Savings in a single click. The sad truth about online shopping i

DetailsDetails

File name:giant savings.dll
Publisher:215 Apps
Product name:Giant Savings
Description:Giant Savings BHO
Typical file path:C:\Program Files\giant savings\giant savings.dll
File version:1.1.150.20
Size:559.38 KB (572,808 bytes)
Certificate
Issued to:Friendly Apps
Authority (CA):Thawte
Expiration date:Thursday, May 2, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
215 Apps
  85% remove
Giant Savings from 215 Apps (Amazing Apps/50onRed) installs a web browser extension (Internet Explorer Browser Helper Object) to view web pages loaded and looks for affiliated merchants in order to possibly provide better pricing or alternative deals on a given product or merchant. Basically if Giant Savings (215 Apps) has a pre-arranged affiliate relationship with a similar merchant it will alert you when you visit through your web bro...

BehaviorsBehaviors

Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
  • BHO CLSID: {11111111-1111-1111-1111-110011441179}

MalwareMalware detections

Based on 40+ industry antivirus scanners, 6 of them detected the following malware.
Antivirus engineEngine versionDetection
Dr.Web 7.0.4.09250 Adware.Bho.3871
ESET NOD32 7.7818 a variant of Win32/Toolbar.CrossRider.A
Sophos 4.84.0 AppRider
Symantec 20121.2.1.2 Adware.Crossid
Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.RCBH1IK
VIPRE Antivirus 14572 Adware.Crossid

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate N 50.00%
Microsoft Windows XP 50.00%

Distribution by countryDistribution by country

Malaysia installs about 100.00% of Giant Savings.
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE