Home Malware Programs Adware Giganticsavings Coupons

Giganticsavings Coupons

Posted: November 13, 2013

Threat Metric

Threat Level: 2/10
Infected PCs: 382
First Seen: November 13, 2013
Last Seen: May 2, 2022
OS(es) Affected: Windows

Giganticsavings Coupons Screenshot 1Giganticsavings Coupons is an adware add-on that may find its way on your system through freeware applications. The Giganticsavings Coupons is known to display repeated pop-up messages over your normal surfing of the internet. Some of the pop-up messages from Giganticsavings Coupons are coupon deals or online saving offers that may redirect you to unwanted sites where other offers are advertised. Removal of the Giganticsavings Coupons add-ons is necessary to stop the pop-ups from being displayed at random.

Aliases

Adware.Plugin.111 [DrWeb]

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%PROGRAMFILES(x86)%\Gigantic Savings\FrameworkBHO64.dll File name: FrameworkBHO64.dll
Size: 322.6 KB (322600 bytes)
MD5: 27bba70de5dc14d0afe20b05fa1541f7
Detection count: 103
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Gigantic Savings
Group: Malware file
Last Updated: November 15, 2013
%PROGRAMFILES(x86)%\Gigantic Savings\Gigantic Savings-bho64.dll File name: Gigantic Savings-bho64.dll
Size: 952.71 KB (952712 bytes)
MD5: 5e56c7ff45fe6ff4031bd530c4823a73
Detection count: 78
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES(x86)%\Gigantic Savings
Group: Malware file
Last Updated: November 15, 2013
GiganticSavings.exe File name: GiganticSavings.exe
Size: 3.87 MB (3879160 bytes)
MD5: 13400fda294f702a875863ee3fbf2864
Detection count: 65
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: August 17, 2022
%PROGRAMFILES(x86)%\Gigantic Savings\FrameworkEngine.exe File name: FrameworkEngine.exe
Size: 245.8 KB (245800 bytes)
MD5: 2091cc6adf383dc381bdf13316c8eeee
Detection count: 40
File type: Executable File
Mime Type: unknown/exe
Path: %PROGRAMFILES(x86)%\Gigantic Savings
Group: Malware file
Last Updated: November 15, 2013
%PROGRAMFILES%\Gigantic Savings\FrameworkBHO.dll File name: FrameworkBHO.dll
Size: 256.55 KB (256552 bytes)
MD5: 233d39c60d980004735d61129b367ff2
Detection count: 12
File type: Dynamic link library
Mime Type: unknown/dll
Path: %PROGRAMFILES%\Gigantic Savings
Group: Malware file
Last Updated: November 15, 2013

Registry Modifications

The following newly produced Registry Values are:

HKEY..\..\..\..{RegistryKeys}Software\Microsoft\Internet Explorer\Approved Extensions\{11111111-1111-1111-1111-110311211116}SOFTWARE\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Gigantic Savings-bg.exeSOFTWARE\Microsoft\Windows\CurrentVersion\Run\Gigantic Savings-repairJobSOFTWARE\Wow6432Node\Gigantic SavingsSOFTWARE\Wow6432Node\InstalledBrowserExtensions\Innovative Apps\Gigantic SavingsSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\MAIN\FeatureControl\FEATURE_BROWSER_EMULATION\Gigantic Savings-bg.exeSOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\Gigantic Savings-repairJob

Additional Information

The following directories were created:
%LOCALAPPDATA%\Google\Chrome\User Data\Default\Local Extension Settings\lgonohmgkgnaenpniebfdgaidchkgoke%LOCALAPPDATA%\Google\Chrome\User Data\Default\databases\chrome-extension_lgonohmgkgnaenpniebfdgaidchkgoke_0%LOCALAPPDATA%\Updater32116%LocalAppData%\Google\Chrome\User Data\Default\Extensions\lgonohmgkgnaenpniebfdgaidchkgoke%ProgramFiles%\Gigantic Savings%ProgramFiles(x86)%\Gigantic Savings%USERPROFILE%\AppData\LocalLow\Gigantic Savings
Loading...