sssvc.exe

Search Snacks Client Service

Search Snacks, LLC

This is part of the InfoAtoms browser extension which will display variopus forms of advertising in the web browser by injecting new ads such as banner, text-links and search results. The application sssvc.exe by Search Snacks has been detected as adware by 26 anti-malware scanners. It runs as a separate (within the context of its own process) windows Service named “Search Snacks 1.10.0.7 Client Service”.
Publisher:
Search Snacks  (signed by Search Snacks, LLC)

Product:
Search Snacks Client Service

Version:
1.10.0.7

MD5:
1d0eb051456a140dc1f9ddbba72c9ba8

SHA-1:
d1edf14e9ea7018da6ab9112013f1851d03911d0

SHA-256:
ee2f8abf8be178d2eb670242f67f742dec61c423ded3520ea5c161a81587404b

Scanner detections:
26 / 68

Status:
Adware

Analysis date:
12/24/2024 1:58:37 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Vitruvian.B
741

Agnitum Outpost
PUA.Vitruvian
7.1.1

AhnLab V3 Security
PUP/Win32.Vitruvian
2015.01.25

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.204.248

AVG
Snacks
2016.0.3219

Baidu Antivirus
Adware.Win32.Vitruvian
4.0.3.15124

Bitdefender
Adware.Vitruvian.B
1.0.20.120

Comodo Security
ApplicUnwnt
20073

Emsisoft Anti-Malware
Adware.Vitruvian
8.15.01.24.09

ESET NOD32
Win32/AdWare.Vitruvian (variant)
9.11067

Fortinet FortiGate
Riskware/Vitruvian
1/24/2015

F-Secure
Adware.Vitruvian.B
11.2015-24-01_7

G Data
Adware.Vitruvian
15.1.24

IKARUS anti.virus
PUA.Vitruvian
t3scan.1.8.3.0

K7 AntiVirus
Unwanted-Program
13.192.14744

McAfee
Artemis!7E47D691FB83
5600.6875

MicroWorld eScan
Adware.Vitruvian.B
16.0.0.72

NANO AntiVirus
Riskware.Win32.Vitruvian.dlnscy
0.30.0.64448

nProtect
Adware.Vitruvian.B
15.01.23.01

Reason Heuristics
PUP.Service.InfoAtoms
15.1.24.21

Sophos
Generic PUA NM
4.98

Trend Micro House Call
TROJ_GEN.R08NC0OAB15
7.2.24

Trend Micro
TROJ_GEN.R08NC0OAB15
10.465.24

Vba32 AntiVirus
AdWare.Vitruvian
3.12.26.3

VIPRE Antivirus
InfoAtoms
36936

Zillya! Antivirus
Adware.Vitruvian.Win32.9
2.0.0.2032

File size:
271.1 KB (277,600 bytes)

Product version:
1.10.0.7

Copyright:
Copyright (C) 2015

Original file name:
sssvc.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\searchsnacks_1.10.0.7\service\sssvc.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/3/2014 2:07:56 PM

Valid to:
4/3/2016 2:07:56 PM

Subject:
E=support@search-snacks.com, CN="Search Snacks, LLC", O="Search Snacks, LLC", L=Dover, S=Delaware, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11213239AF4AE4C69B97F803376A194F08F4

File PE Metadata
Compilation timestamp:
1/16/2015 2:43:47 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

CTPH (ssdeep):
3072:MU3pQ1fCCuYk8rCkMxiW8h37o8gS7nSoL+2GUp7F5rze+dGpMHCTBfMAeo/4NYC9:MRxSkGYMoVPxDrzeVeHCTB7BwNY1Nk

Entry address:
0x21118

Entry point:
E8, 69, 56, 00, 00, E9, 7B, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 0C, 57, 85, C9, 0F, 84, 92, 00, 00, 00, 56, 53, 8B, D9, 8B, 74, 24, 14, F7, C6, 03, 00, 00, 00, 8B, 7C, 24, 10, 75, 0B, C1, E9, 02, 0F, 85, 85, 00, 00, 00, EB, 27, 8A, 06, 83, C6, 01, 88, 07, 83, C7, 01, 83, E9, 01, 74, 2B, 84, C0, 74, 2F, F7, C6, 03, 00, 00, 00, 75, E5, 8B, D9, C1, E9, 02, 75, 61, 83, E3, 03, 74, 13, 8A, 06, 83, C6, 01, 88, 07, 83, C7, 01, 84, C0, 74, 37, 83, EB, 01, 75, ED, 8B, 44...
 
[+]

Entropy:
6.3155

Code size:
180.5 KB (184,832 bytes)

Service
Display name:
Search Snacks 1.10.0.7 Client Service

Service name:
sssvc_1.10.0.7

Description:
This service enables Search Snacks 1.10.0.7 on HTTP websites

Type:
Win32OwnProcess


Remove sssvc.exe - Powered by Reason Core Security