VersionsAdditional versions 50.00% 25.00% 25.00%
(Note, Innovative Apps publishes each variation of this file with the same version, but the hashes are unique.)


PE structurePE file structure

Import table
RegEnumKeyExA, RegCreateKeyExA, RegDeleteValueA, RegCloseKey, RegQueryValueExA, RegSetValueExA, AdjustTokenPrivileges, RegEnumValueA, RegQueryInfoKeyA, RegQueryInfoKeyW, RegDeleteKeyA, GetTokenInformation, GetSidSubAuthorityCount, GetSidSubAuthority, OpenProcessToken, LookupPrivilegeValueA, RegOpenKeyExA
DebugBreak, OutputDebugStringA, GetCurrentThreadId, GetCurrentProcessId, FreeLibrary, LoadLibraryA, CloseHandle, GetLastError, GetCurrentProcess, OpenProcess, Sleep, TerminateProcess, WaitForSingleObject, CreateThread, RaiseException, EnterCriticalSection, LeaveCriticalSection, FlushInstructionCache, SetLastError, WideCharToMultiByte, LocalFree, FormatMessageA, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, MultiByteToWideChar, UnmapViewOfFile, SetEvent, MapViewOfFile, OpenFileMappingA, CreateFileMappingA, CreateEventA, lstrcpyA, LocalAlloc, WriteFile, ReadFile, SetFilePointer, GetFileSize, CreateFileA, GetVersion, lstrlenW, ReleaseMutex, lstrcmpiA, DisableThreadLibraryCalls, GetModuleFileNameA, GetModuleHandleW, IsDBCSLeadByte, SizeofResource, LoadResource, InterlockedIncrement, LoadLibraryExA, InitializeCriticalSection, GetStartupInfoW, CreateMutexA, FindClose, FindNextFileA, FindFirstFileA, ExpandEnvironmentStringsA, SetHandleCount, FlushFileBuffers, GetConsoleMode, GetConsoleCP, GetTimeZoneInformation, GetLocaleInfoW, GetModuleFileNameW, GetStdHandle, HeapDestroy, HeapCreate, ExitProcess, HeapSize, GetStringTypeW, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, LCMapStringW, GetCommandLineA, VirtualQuery, GetSystemInfo, VirtualProtect, HeapReAlloc, GetLocalTime, GetSystemTimeAsFileTime, RtlUnwind, DecodePointer, EncodePointer, InterlockedExchange, InterlockedPopEntrySList, VirtualAlloc, VirtualFree, InterlockedDecrement, lstrlenA, GetModuleHandleA, GetProcAddress, FindResourceA, GetFileType, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetTickCount, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, LoadLibraryW, SetStdHandle, WriteConsoleW, CreateFileW, SetEndOfFile, LCMapStringA, CompareStringW, SetEnvironmentVariableA, GetStringTypeExA, IsProcessorFeaturePresent, HeapAlloc, GetProcessHeap, HeapFree, InterlockedPushEntrySList, InterlockedCompareExchange, OpenMutexA
CoTaskMemFree, CoTaskMemRealloc, CoTaskMemAlloc, CoCreateGuid, CLSIDFromProgID, CoCreateInstance, StringFromGUID2, CoGetClassObject
SHGetFolderPathA, ShellExecuteExA, ShellExecuteA
URLDownloadToCacheFileA, CoInternetGetSession
UnregisterClassA, wvsprintfA, LoadStringA, CharNextA, PostMessageA, GetWindowThreadProcessId, EnumWindows, SetWindowLongA, GetClassInfoExA, LoadCursorA, DefWindowProcA, RegisterClassExA, CreateWindowExA, GetWindowLongA, CallWindowProcA, DestroyWindow, GetDesktopWindow, DestroyIcon, SendMessageA, GetWindowRect, SetWindowPos, GetParent, FindWindowExA, UnhookWindowsHookEx, CharNextW, SetTimer, KillTimer, MessageBoxA, CharLowerA, GetWindowTextA, IsWindowVisible
GetFileVersionInfoSizeA, GetFileVersionInfoA, VerQueryValueA
InternetConnectA, InternetCrackUrlA, InternetSetOptionA, InternetOpenA, InternetReadFile, HttpQueryInfoA, HttpOpenRequestA, HttpSendRequestA, InternetCloseHandle
Export table

Supreme Savings.dll

Supreme Savings by Innovative Apps (Signed)

MD5:   5ef04c3a1536a52749c56508e3c9cbeb
SHA1:   190f5b17feb957919ab787fd0e945c0d5ce2be9a
SHA256:   55c0dbc13579072207f8149c98e5752f74809facc6719d31b5f9c6728a1a783d


supreme savings.dll is loaded as dynamic link library that runs in the context of Internet Explorer. It is installed in Internet Explorer as a Browser Helper Object (BHO) which has full acess to the web browser's behaviors and content. This is typically installed with the program Supreme Savings published by 215 Apps and is most likely removed by most users once installed (82% removed). The file is digitally signed by Innovative Apps which was issued by the Thawte certificate authority (CA).


File name:supreme savings.dll
Publisher:215 Apps
Product name:Supreme Savings
Description:Supreme Savings BHO
Typical file path:C:\Program Files\supreme savings\supreme savings.dll
File version:
Size:687.88 KB (704,392 bytes)
Issued to:Innovative Apps
Authority (CA):Thawte
Effective date:Tuesday, January 8, 2013
Expiration date:Thursday, January 9, 2014
Digital DNA
File packed:No
More details


The following program will install this file
215 Apps
  82% remove
Supreme Savings by 50onRed is a web browser plugin that displays coupon deals and other advertisements when users visit various online shopping sites. When a user visits an online shopping site and the program has a pre-arranged affiliate relationship with a similar merchant it will alert the user that other deals or prices exist, or in many cases just shows adverts. It injects ads and affiliate codes in product links directly by modify...


Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
  • BHO CLSID: {11111111-1111-1111-1111-110111991162}

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 50.00%
Windows 7 Home Premium 25.00%
Windows 8 Pro 25.00%

Distribution by countryDistribution by country

United States installs about 75.00% of Supreme Savings.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 33.33%
Hewlett-Packard 33.33%
ASUS 33.33%
