84,488,480 programs installed

Should I remove SaveAs?

What percent of users and experts removed it?
82% remove it18% keep it
Overall Sentiment
Bad
What do people think about it?
(click star to rate)
How common is it?
Global Rank #13,677
United States Rank #17,646
Reach 0.0219%
Lifespan of installation (until removal)
< 32.71 days
964.96 days >
Average installed length: 507.01 days

SaveAs

What is SaveAs?

SaveAs is an adware program that is typically bundled with 3rd party software or installed via a browser exploit. It installs a Browser Helper Object (BHO) in Internet Explorer in order to inject advertising as well as hijack links and existing web page ads.

About  (from Save As (saveasapp.com))

One feature of the plugin that may be enabled for you is displaying relevant coupons, deals, and special offers. When you visit a website of a merchant or affiliate store that participates in the coupon program, the plugin is designed to recognize the website to determine whether there are coupons, deals, or special of...  Read more

Overview

It adds a Browser Helper Object (BHO) to Internet Explorer. The primary executable is named 510191cb4e9ce.dll. A majority of users end up uninstalling this less than a week of it being installed. The setup package generally installs about 8 files and is usually about 980.24 KB (1,003,769 bytes).
  • Malware detected in the program
  • Integrates into the web browser
  • Typically distributed through a pay-per-install bundle
  • The experts agree, you should remove it!
Warning, multiple anti-virus scanners have detected possible malware in SaveAs.
510191cb4e9ce.dll (44f1dc155d3d083b677f20ed0fab8404) has been flagged by the following 7 scanners:
Anti-Virus softwareVersionDetection
AVG 2014.0.3445 Generic_c
Clam AntiVirus 0.98/18155 WIN.Adware.Multiplug
Dr.Web 9.0.0.0143 Adware.Plugin.38
ESET-NOD32 7.8360 a variant of Win32/Adware.MultiPlug.I
Sophos 4.89 FastSave
Vba32 AntiVirus 3.12.22.1 BScope.Adware.MegaSearch
VIPRE Antivirus 17992 Trojan.Win32.Generic!BT
50d7369b58823.dll (6696822add17061dc0bb8ee5b42cc2d4) has been flagged by the following 19 scanners:
Anti-Virus softwareSoftware versionDetection
AhnLab-V3 2013.06.02.00 Win-Adware/BHO.Zoomex.118272
AVG 10.0.0.1190 Skodna.Generic.AIX
Clam AntiVirus 0.97.3.0 WIN.Adware.BHO-449
Comodo Security 16356 UnclassifiedMalware
Dr.Web Adware.Plugin.31
Emsisoft Anti-Malware 3.0.0.576 Adware.Win32.BHO.axtn.AMN (A)
ESET-NOD32 8399 Win32/Adware.MultiPlug.G
Fortinet FortiGate 5.0.43.0 Adware/BHO
Jiangmin 16.0.100 Adware/BHO.ega
McAfee 5.400.0.1158 Adware-WinAd.dldr
McAfee-GW-Edition 2012.1 Adware-WinAd.dldr
NANO AntiVirus 0.24.0.52593 Trojan.Win32.Plugin.bgdzjg
PC Tools 9.0.0.2 Adware.Adpopup!rem
Sophos 4.89.0 Generic PUA NE
Symantec 20131.1.0.101 Adware.Adpopup
Total Defense 37.0.10447 Win32/SillyBHO.HAV
Trend Micro 9.740.0.1012 ADW_MULTIPLUG
TrendMicro-HouseCall 9.700.0.1001 ADW_MULTIPLUG
VIPRE Antivirus 18322 Trojan.Win32.Generic!BT
50d110942cad6.ocx (582dca19bc19ee74e58625692d055b11) has been flagged by the following 14 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.79.122 ADWARE/Adware.Gen
AVG 10.0.0.1190 Generic_c.QK
Comodo Security 16295 UnclassifiedMalware
Emsisoft Anti-Malware 3.0.0.575 Adware.Win32.MultiPlug.AMN (A)
eSafe 7.0.17.0 Win32.Trojan
ESET-NOD32 8358 Win32/Adware.MultiPlug.E
F-Prot 4.7.1.166 W32/AdAgent.AL.gen!Eldorado
K7 AntiVirus 9.168.8730 Adware
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Agent.k.(kcloud)
MicroWorld-eScan 12.0.250.0 ADWARE/Adware.Gen (ES)
NANO AntiVirus 0.24.0.52214 Trojan.Win32.MultiPlug.bgdzhz
Trend Micro 9.740.0.1012 ADW_MULTIPLUG
TrendMicro-HouseCall 9.700.0.1001 ADW_MULTIPLUG
VIPRE Antivirus 17966 Trojan.Win32.Generic!BT
5096e01fbedf5.ocx (d637295a8426c7c4a8e9ef3e584839a2) has been flagged by the following 14 scanners:
Anti-Virus softwareSoftware versionDetection
Agnitum Outpost 5.5.1.3 Adware.MultiPlug!GWABRcNp/fU
Avira AntiVir 7.11.83.146 ADWARE/Adware.Gen
Clam AntiVirus 0.97.3.0 Win.Adware.Multiplug-1
Commtouch SDK 5.4.1.7 W32/FastSave.FQMW-6395
Comodo Security 16394 UnclassifiedMalware
eSafe 7.0.17.0 Win32.Trojan
ESET-NOD32 8424 Win32/Adware.MultiPlug.D
Fortinet FortiGate 5.0.43.0 Adware/MultiPlug
F-Prot 4.7.1.166 W32/FastSave.A
K7 AntiVirus 9.170.8831 Riskware
NANO AntiVirus 0.24.0.52697 Trojan.Win32.MultiPlug.bgdzmf
Sophos 4.89.0 FastSave
Trend Micro 9.740.0.1012 ADW_MULTIPLUG
TrendMicro-HouseCall 9.700.0.1001 ADW_MULTIPLUG
50f1ca3d2a38b.dll (da161da8bcb9b8032908cc303602f2ee) has been flagged by the following 13 scanners:
Anti-Virus softwareSoftware versionDetection
Avira AntiVir 7.11.84.68 ADWARE/Adware.Gen7
AVG 10.0.0.1190 Generic5.TWY
Dr.Web Adware.Plugin.37
eSafe 7.0.17.0 Win32.Trojan
ESET-NOD32 8439 Win32/Adware.MultiPlug.I
NANO AntiVirus 0.24.0.52848 Trojan.Win32.Plugin.bglnls
PC Tools 9.0.0.2 Adware.Adpopup!rem
Sophos 4.89.0 FastSave
Symantec 20131.1.0.101 Adware.Adpopup
Trend Micro 9.740.0.1012 ADW_MULTIPLUG
TrendMicro-HouseCall 9.700.0.1001 ADW_MULTIPLUG
Vba32 AntiVirus 3.12.22.2 BScope.Adware.MegaSearch
VIPRE Antivirus 18640 Trojan.Win32.Generic!BT
512242c6293f9.dll (00ce3831a16a62c6d7ea4b21049e4b22) has been flagged by the following 12 scanners:
Anti-Virus softwareSoftware versionDetection
AVG 10.0.0.1190 Generic_c.QF
CAT-QuickHeal 12.00 Adware.Saveas.gen (Not a Virus)
Comodo Security 16321 Application.Win32.AdWare.MultiPlug.~I
Dr.Web Adware.Plugin.49
ESET-NOD32 8375 a variant of Win32/Adware.MultiPlug.I
F-Prot 4.7.1.166 W32/MegaSearch.A
F-Secure 11.0.19020.35 Adware:W32/SaveAs
Kingsoft AntiVirus 2013.4.9.267 Win32.Troj.Agent.BV.(kcloud)
Malwarebytes 1.75.0.1 PUP.Adware.MultiPlug
NANO AntiVirus 0.24.0.52214 Trojan.Win32.Plugin.bnzmxw
Vba32 AntiVirus 3.12.22.1 BScope.Adware.MegaSearch
VIPRE Antivirus 18122 Trojan.Win32.Generic!BT
5073a9d605414.ocx (c78c6140cb88ef4dc94f999291bb5ab1) has been flagged by the following 9 scanners:
Anti-Virus softwareSoftware versionDetection
Comodo Security 16425 UnclassifiedMalware
ESET-NOD32 8445 Win32/Adware.MultiPlug.C
Fortinet FortiGate 5.1.146.0 Riskware/MultiPlug
F-Prot 4.7.1.166 W32/AdAgent.AL.gen!Eldorado
K7 AntiVirus 9.170.8860 Adware
NANO AntiVirus 0.24.0.52848 Trojan.Win32.MultiPlug.bgdzis
SUPERAntiSpyware 5.6.0.1008 Trojan.Agent/Gen-Malfem
TrendMicro-HouseCall 9.700.0.1001 TROJ_GEN.RCBH1EO
VIPRE Antivirus 18680 Trojan.Win32.Generic!BT
       View all 88 all detections
SaveAs has been found to be bundled with 3rd party software. If you have not purposefully installed this, you should be safe uninstalling it.

Program detailsProgram details

Displayed publisher: SaveAs
URL: saveasapp.com
Installation folder: C:\ProgramData\saveas
Uninstaller: "C:\ProgramData\SaveAs\uninstall.exe" /path=C:\ProgramData\SaveAs
Estimated size: 980.24 KB

Program filesFiles installed by SaveAs

Program module:510191cb4e9ce.dll (Malware detected)
Path:C:\ProgramData\saveas\510191cb4e9ce.dll
MD5:44f1dc155d3d083b677f20ed0fab8404
Additional files:
  • uninstall.exe
  • (Malware detected) 5073a9d605414.ocx
  • (Malware detected) 5096e01fbedf5.ocx
  • (Malware detected) 50d110942cad6.ocx
  • (Malware detected) 50d7369b58823.dll
  • (Malware detected) 50f1ca3d2a38b.dll
  • (Malware detected) 512242c6293f9.dll

Program behaviorsBehaviors exhibited

7 Internet Explorer BHOs
  • 512242c6293f9.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'Search-NewTAb' with the class of {6F4F20BB-AD84-CE48-C4C7-DE63E239F70B}.
  • 50f1ca3d2a38b.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'SaveByclick' with the class of {B6FCC81A-1940-9FD5-8A2E-BB3A0AD9F59E}.
  • 5096e01fbedf5.ocx is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'SaveAs Class' with the class of {EC95788C-AB1E-2DAB-C7CB-15D12209B146} (SaveAs).
  • 510191cb4e9ce.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'Search-NewTab' with the class of {E5EF775E-16F5-6157-C393-D75E9A9F5AEC}.
  • 50d110942cad6.ocx is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'SaveAs Class' with the class of {8B3658C5-42FD-304D-E004-C574E5EB25BE} (SaveAs).
  • 50d7369b58823.dll is installed in Internet Explorer as a BHO (Browser Helper Object) under the name 'continuetosave' with the class of {8B3A8F32-251D-F5D2-CB0A-D5A0696D51A9}.
  • Plus 1 more

How do I remove SaveAs?

You can uninstall SaveAs from your computer by using the Add/Remove Program feature in the Window's Control Panel.
  1. On the Start menu (for Windows 8, right-click the screen's bottom-left corner), click Control Panel, and then, under Programs, do one of the following:
    • Windows Vista/7/8/10: Click Uninstall a Program.
    • Windows XP: Click Add or Remove Programs.
  2. When you find the program SaveAs, click it, and then do one of the following:
    • Windows Vista/7/8/10: Click Uninstall.
    • Windows XP: Click the Remove or Change/Remove tab (to the right of the program).
  3. Follow the prompts. A progress bar shows you how long it will take to remove SaveAs.
  4. If for some reason uninstallation fails, please install Microsoft's uninstall fixer utility which will help fix problems with programs that can't be uninstalled at support.microsoft.com.

How do I reset my web browser?

If your web browser homepage and search settings have been modfied by SaveAs you can restore them to their previous default settings.
Microsoft Internet Explorer
Mozilla Firefox
Google Chrome

USER ACTIONS
Uninstall it 82%
Keep it 18%
 
GLOBAL RANK
#13,677
 
REACH
~0.02%
PC installation base

Windows OS versionsWindows

Which Windows OS versions does it run on?
Windows 7 74.01%
Windows XP 11.37%
Windows Vista 9.28%
Windows 10 5.10%
Windows Server 2003 0.23%
Which OS releases does it run on?
Windows 7 Home Premium 40.47%
Windows 7 Ultimate 13.49%
Microsoft Windows XP 11.16%
Windows 7 Professional 10.23%
Windows Vista Home Premiu... 6.74%
Windows 7 Home Basic 6.05%

Distribution by countryGeography

27.12% of installs come from the United States
Which countries install it?
  United States 27.12%
  United Kingdom 5.18%
  India 4.35%
  Canada 3.31%
  Australia 3.11%
  Israel 3.11%
  Brazil 2.90%
  Iran 2.90%
  Netherlands 2.69%
  Italy 2.69%
  Romania 2.28%
  Belgium 2.07%
  Spain 2.07%
  MK 1.86%

OEM distributionPC manufacturers

What PC manufacturers (OEMs) have it installed?
Hewlett-Packard 29.08%
Dell 18.09%
Acer 16.31%
Toshiba 10.28%
ASUS 7.80%
GIGABYTE 4.96%
Samsung 4.26%
Lenovo 3.55%
Intel 2.84%
American Megatrends 1.77%
Sony 1.06%
Common models
HP Pavilion dv6 Notebook ... 6.75%
HP Pavilion g6 Notebook P... 5.52%
Dell Inspiron N5010 2.45%
Dell Inspiron 1545 2.45%
HP Pavilion dv7 Notebook ... 2.45%
Dell Inspiron N5110 1.84%

commentsComments

user comment
No one has commented yet. Help others learn more about this software, share your comments.