Happy2Soave

Happy2Soave

Known Toolbar

by InstalleRex-WebPick

What is Happy2Soave?

Happy2Soave is software application developed by InstalleRex-WebPick. It is most commonly found on computers running Windows 7 (SP1) with nearly ~99% of installations running this operating system. Happy2Soave's installer is typically 1.00 MB in size and installs around 3 files.

Happy2Soave is most popular in the United States with 100.00% of installations residing in this country.

About Happy2Soave?

Happy2Save is a browser extension designed to display additional advertisements in search engines such as Bing and Google. It is compatible with Internet Explorer, Chrome, and Firefox. Operating as a background process, it installs itself as a BHO/plugin and continues to run despite attempts to remove it from Add or Remove Programs. Once installed, the adware injects new ads into search results and web pages using third-party advertising, replacing existing ads with its own. It utilizes the InstalleRex download manager from WebPicks Holdings to install itself on the user's PC, a platform associated with the distribution of potentially unwanted applications including browser toolbars and ad-supported extensions. While re-branded, Happy2Save shares many components with other known adware variants such as SaveAs, SaveNShare, and DownloadKeeper.

Multiple virus scanners have detected malware in Happy2Soave.

EUjZk5.x64.dll (MD5: 9e0383fb82ce83bd785951c20f3fe959) has been flagged by 4 scanners:
Scanner Software Result
AhnLab-V3 Trojan/Win32.Preloader
Baidu-International Adware.Win64.MultiPlug.A
ESET-NOD32 a variant of Win64/Adware.MultiPlug.A
Malwarebytes PUP.Optional.MultiPlug.A
EUjZk5.dll (MD5: 1550537f5aee53fec3b74eb4605f8483) has been flagged by 12 scanners:
Scanner Software Result
Avira AntiVir ADWARE/Adware.Gen
AVG Generic5.ALFJ
Baidu-International Adware.Win32.MultiPlug.40
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.N
K7 AntiVirus Adware ( 004923a41 )
K7GW Adware ( 004923a41 )
Malwarebytes PUP.Optional.MultiPlug.A
Rising Antivirus PE:Malware.Adware!6.1293
TrendMicro-HouseCall TROJ_GEN.F47V1230
VIPRE Antivirus JustPlugIt (fs)
AhnLab-V3 Trojan/Win32.Preloader
EUjZk5.exe (MD5: f5bff621c4c58358b36f8526dec8a264) has been flagged by 27 scanners:
Scanner Software Result
Agnitum Outpost Adware.MegaSearch
AhnLab-V3 Trojan/Win32.Preloader
Antiy-AVL AdWare/Win32.MegaSearch
avast! Win32:Adware-gen [Adw]
AVG Generic5
Baidu-International Adware.Win32.MegaSearch.aBc
Bkav FE W32.Clod3fd.Trojan
Comodo Security ApplicUnwnt
ESET-NOD32 a variant of Win32/AdWare.MultiPlug.K.gen
Fortinet FortiGate Adware/Megasearch
IKARUS anti.virus Win32.AdWare
K7 AntiVirus Adware
K7GW Adware ( 00490ca81 )
Kaspersky not-a-virus:AdWare.Win32.MegaSearch
Kingsoft AntiVirus Win32.Troj.MegaSearch.at.(kcloud)
Malwarebytes PUP.Optional.CRXDrop.A
McAfee Artemis!F5BFF621C4C5
McAfee-GW-Edition Artemis!F5BFF621C4C5
Panda Antivirus Trj/Genetic.gen
Sophos Generic PUA BJ
Symantec Trojan.Gen
Trend Micro TROJ_GEN.F0C2C00A414
TrendMicro-HouseCall TROJ_GEN.F0C2C00A414
Vba32 AntiVirus BScope.Trojan.Agent
VIPRE Antivirus Trojan.Win32.Generic!BT
Avira AntiVir ADWARE/Adware.Gen
Rising Antivirus PE:Malware.Adware!6.1293

Software Details

URL:
https://justplug.it
Support:
Installation path:
C:\ProgramData\happy2soave
Uninstaller:
"C:\ProgramData\Happy2Soave\EUjZk5.exe" /s /n /C:"ExecuteCommands;UninstallCommands" ""
Size:
1.00 MB
Language:
English

Happy2Soave Executable Details

Primary executable:
EUjZk5.exe
Name:
Happy2Soave
Path:
C:\ProgramData\happy2soave\EUjZk5.exe
MD5:
f5bff621c4c58358b36f8526dec8a264
SHA-1:
SHA-256:
Files installed by Happy2Soave
File Type Filename MD5
DLL
9e0383fb82ce83bd785951c20f3fe959
DLL
EUjZk5.dll
Malware
1550537f5aee53fec3b74eb4605f8483
EXE
f5bff621c4c58358b36f8526dec8a264