HAppy2Save

HAppy2Save

Known Toolbar

by InstalleRex-WebPick

What is HAppy2Save?

HAppy2Save is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 (SP1) with nearly ~99% of installations running this operating system. HAppy2Save's installer is typically 1.00 MB in size and installs around 5 files.

HAppy2Save is most popular in the United States with 80.00% of installations residing in this country.

About HAppy2Save?

Happy2Save is a web browser extension developed by JustPlug.It and distributed via the WebPick (InstalleRex) download and install manager. It is commonly included in adware offer bundles and functions as a cross-browser extension with multiple components, including a Windows service, auto-starting feature, and a browser toolbar/plugin. This extension is designed to inject various forms of advertisements into the browser, such as banner ads, hyper-text links, and pop-ups. Some versions of Happy2Save may also modify existing advertising on websites and insert affiliate codes as coupon offers. Users may encounter deceptive malvertising ads prompting 'required' updates for common programs, as well as unwanted pop-up advertisements. If downloaded, Happy2Save may install bundled adware utilities and additional browser extensions. It also has the capability to modify the browser's default security settings.

Multiple virus scanners have detected malware in HAppy2Save.

2QAQu3yyh.x64.dll (MD5: bab49b61943c026b825a714d2175635a) has been flagged by 20 scanners:
Scanner Software Result
AhnLab-V3 Trojan/Win32.Preloader
Avira AntiVir ADWARE/Adware.Gen
AVG Generic_r.GX
Baidu-International Adware.Win64.MultiPlug.40
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win64/Adware.MultiPlug.A
G Data Win64.Trojan.Multiplug.B
IKARUS anti.virus not-a-virus:AdWare.Win32.MegaSearch
K7 AntiVirus Adware ( 004922f61 )
K7GW Adware ( 004922f61 )
Malwarebytes PUP.Optional.MultiPlug.A
McAfee RDN/Generic PUP.x!brl
McAfee-GW-Edition RDN/Generic PUP.x!brl
Norman Multiplug.A
Qihoo-360 Win32/Trojan.Adware.273
Sophos MultiPlug
SUPERAntiSpyware Adware.Multiplug/Variant
Trend Micro ADW_MULTIPLG
TrendMicro-HouseCall ADW_MULTIPLG
VIPRE Antivirus Win64.Adware.MultiPlug
2QAQu3yyh.dll (MD5: 230c8ce3c37ae8b366d3d28ed9a56001) has been flagged by 33 scanners:
Scanner Software Result
AhnLab-V3 Adware/Win32.Graftor
Avira AntiVir ADWARE/Adware.Gen
avast! Win32:Adware-gen [Adw]
AVG Generic_r.GU
Baidu-International Adware.Win32.MultiPlug.N
Comodo Security ApplicUnwnt.Win32.InstallRex.ALC
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.N
Fortinet FortiGate Riskware/MultiPlug
G Data Win32.Trojan.Multiplug.A
IKARUS anti.virus not-a-virus:AdWare.Win32.MegaSearch
K7 AntiVirus Adware ( 004923a41 )
K7GW Adware ( 004923a41 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.MultiPlug.A
McAfee Adware-FHP
McAfee-GW-Edition Adware-FHP
NANO AntiVirus Riskware.Win32.MultiPlug.cthsbt
Rising Antivirus PE:Malware.Adware!6.1293
Sophos Generic PUA NC
Symantec Trojan.Gen.2
Trend Micro ADW_MULTIPLG
TrendMicro-HouseCall ADW_MULTIPLG
VIPRE Antivirus JustPlugIt (fs)
Lavasoft Ad-Aware Application.Generic.676804
Agnitum Outpost PUA.MultiPlug!
AVware Trojan.Win32.Generic!BT
Bitdefender Application.Generic.676804
F-Secure Application.Generic.676804
MicroWorld-eScan Application.Generic.676804
Panda Antivirus Trj/CI.A
Norman Multiplug.A
Qihoo-360 Win32/Trojan.Adware.273
SUPERAntiSpyware Adware.Multiplug/Variant
Y_gdVVos.exe (MD5: c16252d1e226b9266c6ca054203f2e00) has been flagged by 27 scanners:
Scanner Software Result
Lavasoft Ad-Aware Application.Generic.679463
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 Trojan/Win32.Preloader
avast! Win32:Dropper-gen [Drp]
AVG Generic5.AYZO
Baidu-International Adware.Win32.MultiPlug.81
Bitdefender Application.Generic.679463
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.AG
Fortinet FortiGate Riskware/MultiPlug
F-Secure Application.Generic.679463
G Data Application.Generic.679463
K7 AntiVirus Adware ( 0049c94b1 )
K7GW Adware ( 0049c94b1 )
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic.bfr!ho
McAfee-GW-Edition RDN/Generic.bfr!ho
MicroWorld-eScan Application.Generic.679463
Sophos Generic PUA CC
TrendMicro-HouseCall TROJ_GEN.R0CBH06GI14
VIPRE Antivirus Trojan.Win32.Generic!BT
Avira AntiVir ADWARE/Adware.Gen
IKARUS anti.virus not-a-virus:AdWare.Win32.MegaSearch
Norman Multiplug.A
Qihoo-360 Win32/Trojan.Adware.273
SUPERAntiSpyware Adware.Multiplug/Variant
Trend Micro ADW_MULTIPLG
Y_gdVVos.dll (MD5: 6710e2de4c373aca84865f90c0eca5ee) has been flagged by 29 scanners:
Scanner Software Result
Lavasoft Ad-Aware Application.Generic.676804
Agnitum Outpost PUA.MultiPlug!
AhnLab-V3 Adware/Win32.Agent
AVG Generic5.AYZN
AVware Trojan.Win32.Generic!BT
Baidu-International Adware.Win32.MultiPlug.81
Bitdefender Application.Generic.676804
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.AY
Fortinet FortiGate Riskware/MultiPlug
F-Secure Application.Generic.676804
G Data Application.Generic.676804
IKARUS anti.virus PUA.Generic
K7 AntiVirus Adware ( 0049c94b1 )
K7GW Adware ( 0049c94b1 )
Malwarebytes PUP.Optional.MultiPlug
McAfee RDN/Generic PUP.x!chv
McAfee-GW-Edition RDN/Generic PUP.x!chv
MicroWorld-eScan Application.Generic.676804
Panda Antivirus Trj/CI.A
Sophos Generic PUA DE
TrendMicro-HouseCall TROJ_GEN.R0CBH06GI14
VIPRE Antivirus Trojan.Win32.Generic!BT
avast! Win32:Dropper-gen [Drp]
Avira AntiVir ADWARE/Adware.Gen
Norman Multiplug.A
Qihoo-360 Win32/Trojan.Adware.273
SUPERAntiSpyware Adware.Multiplug/Variant
Trend Micro ADW_MULTIPLG
2QAQu3yyh.exe (MD5: 19e5eb31641597fa245deb887aa25817) has been flagged by 34 scanners:
Scanner Software Result
AhnLab-V3 Trojan/Win32.Preloader
avast! Win32:Adware-gen [Adw]
AVG Generic_r
Baidu-International Adware.Win32.MegaSearch.Asdt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.K.gen
IKARUS anti.virus not-a-virus:AdWare.Win32.MegaSearch
Kaspersky not-a-virus:AdWare.Win32.MegaSearch
Malwarebytes PUP.Optional.MultiPlug.A
McAfee PUP-FFY!19E5EB316415
McAfee-GW-Edition PUP-FFY!19E5EB316415
Panda Antivirus Trj/Genetic.gen
Qihoo-360 HEUR/Malware.QVM10.Gen
Sophos Generic PUA EC
TrendMicro-HouseCall TROJ_GEN.R08NH06B314
VIPRE Antivirus MegaSearch Toolbar
Avira AntiVir ADWARE/Adware.Gen
Comodo Security ApplicUnwnt.Win32.InstallRex.ALC
Fortinet FortiGate Riskware/MultiPlug
G Data Win32.Trojan.Multiplug.A
K7 AntiVirus Adware ( 004923a41 )
K7GW Adware ( 004923a41 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
NANO AntiVirus Riskware.Win32.MultiPlug.cthsbt
Rising Antivirus PE:Malware.Adware!6.1293
Symantec Trojan.Gen.2
Trend Micro ADW_MULTIPLG
Lavasoft Ad-Aware Application.Generic.676804
Agnitum Outpost PUA.MultiPlug!
AVware Trojan.Win32.Generic!BT
Bitdefender Application.Generic.676804
F-Secure Application.Generic.676804
MicroWorld-eScan Application.Generic.676804
Norman Multiplug.A
SUPERAntiSpyware Adware.Multiplug/Variant

Software Details

URL:
Support:
Installation path:
C:\ProgramData\happy2save
Uninstaller:
"C:\ProgramData\HAppy2Save\2QAQu3yyh.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Size:
1.00 MB
Language:
English

HAppy2Save Executable Details

Primary executable:
2QAQu3yyh.exe
Name:
HAppy2Save
Path:
C:\ProgramData\happy2save\2QAQu3yyh.exe
MD5:
19e5eb31641597fa245deb887aa25817
SHA-1:
SHA-256:
Files installed by HAppy2Save
File Type Filename MD5
DLL
bab49b61943c026b825a714d2175635a
DLL
230c8ce3c37ae8b366d3d28ed9a56001
EXE
c16252d1e226b9266c6ca054203f2e00
DLL
6710e2de4c373aca84865f90c0eca5ee
EXE
19e5eb31641597fa245deb887aa25817