Home>Tips & Articles>Remove Adware & Spyware>
Remove SAHAgent
About SAHAgent Adware
SAHAgent is an adware implemented as LSP ( Winsock 2 Layered Service Provider). It redirects visits to merchant sites in order to take the affiliate fees from them automatically. SAHAgent adware is also known as Golden Retriever, ShopAtHome, ShopAtHomeSelect. It may slow Opera or other applications, particularly when accessing its servers.
Remove this spyware using Spyware Doctor
How to Remove SAHAgent ?
SAHAgent is a Winsock2 Layered Service Provider. If you merely delete registry entries and files, you stand a good chance of losing your network and Internet connections.
Follow these removal instructions to remove SAHAgent from your computer:
- Click Start > Settings > Add/Remove Programs > Control Panel, and select the entry 'ShopAtHomeSelect Agent' and click 'Remove' to remove the software.
- Reboot your Windows.
- Once you have uninstalled via Add/Remove programs, you can delete the damaged '{30402FF4-3E71-4A1C-9B4B-1CD3486A9FB2}' entry inside your 'Downloaded Program Files' folder, the 'SAHUninstall.exe' file in the 'Windows' folder and 'SahAgent.log' in the root of the C: drive to clean up.
- If the entry for ShopAtHomeSelect remains in your Add/Remove Programs even though the software is uninstalled, you can remove it by opening the registry editor (Start > Run > regedit) and deleting the key:
'HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Uninstall \ ShopAtHomeSelect Agent'.
If the above procedures do not work for any reason, you may manually remove SAHAgent, but at great risk of losing your network and Internet connections:
- Open the registry editor (click Start > Open > regedit ).
- Navigate to the key : HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run.
In the right pane delete the 'SAHAgent' entry.
- Deregister the LSP part of ShopAtHomeSelect.
In the registry editor, find the key
HKEY_LOCAL_MACHINE \ SYSTEM \ CurrentControlSet \ Services \ WinSock2 \ Parameters \ Protocol_Catalog9. For each key in Catalog_Entries, open the 'PackedCatalogItem' value and check if it starts with 'lsp.dll'. If it does delete that entry. Renumber the remaining keys so that they count up from 000000000001 one at a time, and set the 'Num_Catalog_Entries' value in Protocol_Catalog9 to the highest key number you have.
- Open a DOS command prompt window (from Start > Programs > Accessories) and enter these commands:
cd "%WinDir%\System"
regsvr32 /u "..\Downloaded Program Files\WEBinstaller.dll"
cd "..\Downloaded Program Files"
del WEBinstaller.dll
del SAH*.exe
del setup.inf
del xmlparse_.inf
del xmltok_.inf
del C:\sahagent.log
Note: %WindDir% is a variable, by default this is c:\windows on Windows 95/98/Me/XP or c:\winnt on windows 2000/NT.
- Restart the computer.
- Open the System folder (inside the Windows folder; called 'System' on Windows 95/98/Me or 'System32' under Windows NT/2000/XP), delete the following files:
'tracking.tmp', 'vg.dat', 'v.dat', 'lsp.dll', 'SahDownloader.exe', 'SahAgent.exe' and 'SAHhtml.exe'
- Open Windows folder, delete the file SAHUninstall.exe.
- Delete the following registry keys to clean up:
HKEY_LOCAL_MACHINE\SOFTWARE\VGroup
HKEY_LOCAL_MACHINE\SOFTWARE\Winsock2\Layered Provider Sample (or the
entire Winsock2 key since it is a duplicate of the real key)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App
Management\ARPCache\ShopAtHomeSelect Agent
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\S
hopAtHomeSelect Agent
Remove spyware using Spyware Doctor
Remove other Spyware: