Should I block it?

98%
Yes, 98% block recommendation.
Possible reasons:
Multiple malware detections
Performance resource utilization

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegEnumKeyExA, GetSidSubAuthorityCount, GetTokenInformation, OpenProcessToken, RegCreateKeyExA, RegCloseKey, RegSetValueExA, RegEnumValueA, RegQueryValueExA, RegQueryInfoKeyW, RegDeleteValueA, RegDeleteKeyA, RegOpenKeyExA, LookupPrivilegeValueA, AdjustTokenPrivileges, GetSidSubAuthority
comctl32.dll
ImageList_GetImageCount, ImageList_Remove, ImageList_ReplaceIcon
gdi32.dll
CreateFontA, SelectObject, GetTextExtentPoint32A, DeleteObject, GetObjectA
gdiplus.dll
GdipFillPath, GdipGraphicsClear, GdipDrawPath, GdipSetInterpolationMode, GdipGetImageGraphicsContext, GdipCreatePathGradientFromPath, GdipWindingModeOutline, GdipAddPathEllipseI, GdipAddPathRectangleI, GdipSetStringFormatTrimming, GdipSetStringFormatAlign, GdipCreateSolidFill, GdipCreateHICONFromBitmap, GdipCreateBitmapFromScan0, GdipCloneBitmapAreaI, GdipCreateBitmapFromStream, GdipGetImagePixelFormat, GdipGetImageHeight, GdipGetImageWidth, GdipDrawString, GdipDeleteFont, GdipDeleteGraphics, GdipSetPathGradientFocusScales, GdipSetPathGradientSurroundColorsWithCount, GdipGetPathGradientPointCount, GdipSetPathGradientCenterColor, GdipDeletePath, GdipCreatePath, GdipDeleteStringFormat, GdipCreateStringFormat, GdipDeletePen, GdipCreatePen1, GdipDeleteBrush, GdipAlloc, GdipFree, GdipCloneBrush, GdipCloneImage, GdiplusStartup, GdipMeasureString, GdiplusShutdown, GdipDrawImageRectI, GdipCreateFontFromDC, GdipDisposeImage, GdipCreateFontFromLogfontA, GdipCreateBitmapFromStreamICM
kernel32.dll
CreateThread, GetCurrentThreadId, GetCurrentProcessId, FindClose, FindNextFileA, FindFirstFileA, lstrlenW, EnterCriticalSection, LeaveCriticalSection, GetModuleFileNameA, GetProcAddress, LoadLibraryA, GetLastError, ReleaseMutex, OpenMutexA, CreateMutexA, Sleep, SetEvent, CreateEventA, RaiseException, FlushInstructionCache, GetCurrentProcess, SetLastError, LocalFree, FormatMessageA, GetModuleHandleA, InitializeCriticalSectionAndSpinCount, DeleteCriticalSection, GlobalFlags, GlobalFree, GlobalUnlock, GlobalLock, GlobalAlloc, UnmapViewOfFile, MapViewOfFile, OpenFileMappingA, CreateFileMappingA, lstrcpyA, LocalAlloc, InitializeCriticalSection, WriteFile, ReadFile, SetFilePointer, GetFileSize, CreateFileA, lstrcmpiA, IsDBCSLeadByte, FreeLibrary, SizeofResource, LoadResource, FindResourceA, LoadLibraryExA, GetExitCodeProcess, CreateRemoteThread, VirtualFreeEx, WaitForSingleObject, VirtualAllocEx, OpenProcess, CreateDirectoryA, RemoveDirectoryA, Process32Next, WideCharToMultiByte, TerminateProcess, GetVersion, MoveFileExA, GetTempPathA, CopyFileExA, ExpandEnvironmentStringsA, LoadLibraryW, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetTimeZoneInformation, LCMapStringW, GetFileType, SetHandleCount, FlushFileBuffers, GetConsoleMode, GetConsoleCP, ExitProcess, HeapSize, GetStringTypeW, GetLocaleInfoW, GetModuleFileNameW, GetStdHandle, IsProcessorFeaturePresent, HeapCreate, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TlsFree, TlsSetValue, TlsGetValue, TlsAlloc, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, GetStartupInfoW, HeapSetInformation, GetCommandLineA, MoveFileA, DeleteFileA, HeapReAlloc, VirtualQuery, GetSystemInfo, CloseHandle, OutputDebugStringA, DebugBreak, InterlockedIncrement, WriteProcessMemory, MultiByteToWideChar, lstrlenA, InterlockedDecrement, GetUserDefaultLCID, GetLocaleInfoA, EnumSystemLocalesA, IsValidLocale, InterlockedExchange, SetStdHandle, WriteConsoleW, CreateFileW, SetEndOfFile, GetProcessHeap, CompareStringW, LCMapStringA, SetEnvironmentVariableA, InterlockedCompareExchange, InterlockedPushEntrySList, GetModuleHandleW, VirtualAlloc, VirtualProtect, HeapAlloc, GetLocalTime, GetSystemTimeAsFileTime, RtlUnwind, EncodePointer, DecodePointer, HeapFree, VirtualFree, InterlockedPopEntrySList, GetStringTypeExA, CreateToolhelp32Snapshot
ole32.dll
CoInitialize, CoCreateInstance, CoUninitialize, CLSIDFromProgID, CoTaskMemAlloc, CoTaskMemRealloc, CoTaskMemFree, CreateStreamOnHGlobal
oleacc.dll
AccessibleObjectFromWindow
shell32.dll
SHGetFolderPathA, ShellExecuteExA
urlmon.dll
URLDownloadToCacheFileA
user32.dll
CharLowerA, MessageBoxA, PostMessageA, CharNextA, SetWindowLongA, GetClassInfoExA, LoadCursorA, DefWindowProcA, RegisterClassExA, CreateWindowExA, GetWindowLongA, CallWindowProcA, UnregisterClassA, GetDesktopWindow, GetWindowThreadProcessId, DestroyIcon, InvalidateRect, SendMessageA, GetWindowRect, ReleaseDC, LoadStringA, SetWindowPos, GetParent, FindWindowExA, UnhookWindowsHookEx, CallNextHookEx, SetWindowsHookExA, SetTimer, KillTimer, DispatchMessageA, TranslateMessage, GetMessageA, GetWindowTextA, EnumWindows, GetForegroundWindow, SetFocus, BringWindowToTop, SetForegroundWindow, AttachThreadInput, IsWindowVisible, GetDC, wvsprintfA, DestroyWindow
wininet.dll
HttpOpenRequestA, InternetConnectA, InternetCrackUrlA, InternetOpenA, InternetGetCookieA, InternetSetCookieA, InternetSetOptionA, InternetReadFile, HttpSendRequestA, HttpQueryInfoA, InternetCloseHandle

coupon companion-bg.exe

Coupon Companion by Awesome Apps (Signed)

Remove coupon companion-bg.exe
Version:   1.1.151.40
MD5:   afb53df06a408cb1165089d5becd7790
SHA1:   95623fe83a9486595034a869149ef2c4cc4d9f7b
SHA256:   95938eb21bf4d57eb4a02b0172ad4204b53bd11eec299bd5bb69e53be74f1a78
Warning 3 antivirus scanners has detected malware.

What is coupon companion-bg.exe?

Coupon Companion exe (coupon companion-bg.exe) is a background process that is loaded with Internet Explorer via the Coupon Companion BHO. Coupon Companion is an adware type program that has causes serious performance issues to your PC by installing a number of plug-ins and add-ins to your web browser and Windows. It injects ads directly by modifying web pages based on your surfing habits.

About coupon companion-bg.exe (from Awesome Apps)

The Coupon Companion shopping companion will help save you money by finding and presenting the top active coupons for the site you're browsing. After installation Coupon Companion will let you know wh

DetailsDetails

File name:coupon companion-bg.exe
Publisher:215 Apps
Product name:Coupon Companion
Description:Coupon Companion exe
Typical file path:C:\Program Files\coupon companion\coupon companion-bg.exe
Original name:Coupon Companion.exe
File version:1.1.151.40
Size:926.38 KB (948,608 bytes)
Certificate
Issued to:Awesome Apps
Authority (CA):Thawte
Effective date:Tuesday, August 28, 2012
Expiration date:Thursday, August 29, 2013
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
215 Apps
  86% remove
Coupon Companion by Awesome Apps (215 Apps/ run by 50OnRed) is a Browser Helper Object installed into Internet Explorer that monitors web pages for possible affiliate merchant partners. Coupon Companion will let you know when there are coupons by showing a counter in the top right of Web sites. Coupon Companion is an adware type program that has causes serious performance issues to your PC by installing a number of plug-ins and add-ins ...
Network connections
  • [TCP] LB140.NYNY.COTENDO.net (208.93.143.190:80)
  • [UDP] listens on port 52573
  • [UDP] listens on port 55588
  • [UDP] listens on port 57326

  • MalwareMalware detections

    Based on 40+ industry antivirus scanners, 3 of them detected the following malware.
    Antivirus engineEngine versionDetection
    AVG 2014.0.3629 Suspicion: unknown virus
    Trend Micro HouseCall 9.700.0.1001 TROJ_GEN.RCBH1K5
    VIPRE Antivirus 14954 GamePlayLabs (v)

    ResourcesResource utilization

    (Note: statistics below are averages based on a minimum sample size of 200 unique participants)
    Averages
     
    CPU
    Total CPU:0.53190988%
    0.028634%
    Kernel CPU:0.32614968%
    0.013761%
    User CPU:0.20576020%
    0.014873%
    Kernel CPU time:1,282 ms/min
    100,923,805ms/min
    Context switches:4/sec
    284/sec
    Memory
    Private memory:5.72 MB
    21.59 MB
    Private (maximum):10.25 MB
    Private (minimum):8.98 MB
    Non-paged memory:5.72 MB
    21.59 MB
    Virtual memory:78.75 MB
    140.96 MB
    Virtual memory (peak):82.09 MB
    169.69 MB
    Working set:7.88 MB
    18.61 MB
    Working set (peak):13.91 MB
    37.95 MB
    Resource allocations
    Threads:10
    12
    Handles:273
    600
    GUI GDI count:9
    103
    GUI GDI peak:11
    142
    GUI USER count:6
    49
    GUI USER peak:9
    71

    BehaviorsProcess properties

    Integrety level:Low
    Platform:32-bit
    Command line:"C:\Program Files\coupon companion\coupon companion-bg.exe" /createbg
    Owner:User
    Parent process:iexplore.exe (by Microsoft)

    ResourcesThreads

    Averages
     
    coupon companion-bg.exe (main module)
    Total CPU:0.38946190%
    0.272967%
    Kernel CPU:0.27495423%
    0.107585%
    User CPU:0.11450768%
    0.165382%
    CPU cycles:13,121,983/sec
    5,741,424/sec
    Context switches:11/sec
    79/sec
    Memory:944 KB
    1.16 MB
    WININET.dll
    Total CPU:0.01186812%
    Kernel CPU:0.00551118%
    User CPU:0.00635694%
    CPU cycles:212,903/sec
    Context switches:1/sec
    Memory:980 KB
    ntdll.dll
    Total CPU:0.00860540%
    Kernel CPU:0.00860540%
    User CPU:0.00000000%
    CPU cycles:107,567/sec
    Memory:1.23 MB

    Windows OS versionsDistribution by Windows OS

    OS versiondistribution
    Windows 7 Ultimate N 100.00%

    Distribution by countryDistribution by country

    United States installs about 100.00% of Coupon Companion.
    Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

    Download it for FREE