sssvc.exe

Search Snacks Client Service

Search Snacks, LLC

This is part of the InfoAtoms browser extension which will display variopus forms of advertising in the web browser by injecting new ads such as banner, text-links and search results. The application sssvc.exe by Search Snacks has been detected as adware by 26 anti-malware scanners. It runs as a separate (within the context of its own process) windows Service named “Search Snacks 1.10.0.6 Client Service”.
Publisher:
Search Snacks  (signed by Search Snacks, LLC)

Product:
Search Snacks Client Service

Version:
1.10.0.6

MD5:
fea5922c93cc05bb50baa3f0e00f3cf2

SHA-1:
fbd5f9be7abdfac47fffb15d699e735f5fd2b552

SHA-256:
aa35621f1d0065dd7b842a5b23cca38bbe5f314c1cc4b5824ace77375b85a5ba

Scanner detections:
26 / 68

Status:
Adware

Analysis date:
12/24/2024 2:10:36 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Vitruvian.B
738

Agnitum Outpost
PUA.Vitruvian
7.1.1

AhnLab V3 Security
PUP/Win32.Vitruvian
2015.01.25

Avira AntiVirus
ADWARE/Adware.Gen7
7.11.200.126

AVG
Snacks
2016.0.3216

Baidu Antivirus
Adware.Win32.Vitruvian
4.0.3.15128

Bitdefender
Adware.Vitruvian.B
1.0.20.140

Comodo Security
ApplicUnwnt
20073

Emsisoft Anti-Malware
Adware.Vitruvian
8.15.01.28.11

ESET NOD32
Win32/AdWare.Vitruvian (variant)
9.10993

Fortinet FortiGate
Riskware/Vitruvian
1/28/2015

F-Secure
Adware.Vitruvian.B
11.2015-28-01_4

G Data
Adware.Vitruvian
15.1.24

IKARUS anti.virus
PUA.Vitruvian
t3scan.1.8.3.0

K7 AntiVirus
Unwanted-Program
13.192.14744

McAfee
Artemis!7E47D691FB83
5600.6872

MicroWorld eScan
Adware.Vitruvian.B
16.0.0.84

NANO AntiVirus
Riskware.Win32.Vitruvian.dlnscy
0.30.0.64448

nProtect
Adware.Vitruvian.B
15.01.09.01

Reason Heuristics
PUP.Service.InfoAtoms
15.1.28.11

Sophos
Generic PUA NM
4.98

Trend Micro House Call
TROJ_GEN.R08NC0OAB15
7.2.28

Trend Micro
TROJ_GEN.R08NC0OAB15
10.465.28

Vba32 AntiVirus
AdWare.Vitruvian
3.12.26.3

VIPRE Antivirus
InfoAtoms
36532

Zillya! Antivirus
Adware.Vitruvian.Win32.9
2.0.0.2032

File size:
271.1 KB (277,600 bytes)

Product version:
1.10.0.6

Copyright:
Copyright (C) 2015

Original file name:
sssvc.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\searchsnacks_1.10.0.6\service\sssvc.exe

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/4/2014 1:37:56 AM

Valid to:
4/4/2016 1:37:56 AM

Subject:
E=support@search-snacks.com, CN="Search Snacks, LLC", O="Search Snacks, LLC", L=Dover, S=Delaware, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11213239AF4AE4C69B97F803376A194F08F4

File PE Metadata
Compilation timestamp:
1/8/2015 2:43:54 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
11.0

CTPH (ssdeep):
3072:5U3pQ1fCCuYk8rCkMxiW8h37o8gS7nSoL+2GUp7F5rz6+dGpCHCTBfwAeo9VNYCu:5RxSkGYMoVPxDrz6VcHCTBvBbNY1Nj

Entry address:
0x21118

Entry point:
E8, 69, 56, 00, 00, E9, 7B, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 0C, 57, 85, C9, 0F, 84, 92, 00, 00, 00, 56, 53, 8B, D9, 8B, 74, 24, 14, F7, C6, 03, 00, 00, 00, 8B, 7C, 24, 10, 75, 0B, C1, E9, 02, 0F, 85, 85, 00, 00, 00, EB, 27, 8A, 06, 83, C6, 01, 88, 07, 83, C7, 01, 83, E9, 01, 74, 2B, 84, C0, 74, 2F, F7, C6, 03, 00, 00, 00, 75, E5, 8B, D9, C1, E9, 02, 75, 61, 83, E3, 03, 74, 13, 8A, 06, 83, C6, 01, 88, 07, 83, C7, 01, 84, C0, 74, 37, 83, EB, 01, 75, ED, 8B, 44...
 
[+]

Entropy:
6.3155

Code size:
180.5 KB (184,832 bytes)

Service
Display name:
Search Snacks 1.10.0.6 Client Service

Service name:
sssvc_1.10.0.6

Description:
This service enables Search Snacks 1.10.0.6 on HTTP websites

Type:
Win32OwnProcess


Remove sssvc.exe - Powered by Reason Core Security