SearchSnacksClientIE.dll

Search Snacks Client BHO x86

Search Snacks, LLC

This is part of the InfoAtoms browser extension which will display variopus forms of advertising in the web browser by injecting new ads such as banner, text-links and search results. The module SearchSnacksClientIE.dll by Search Snacks has been detected as adware by 27 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘SearchSnacks’.
Publisher:
Search Snacks  (signed by Search Snacks, LLC)

Product:
Search Snacks Client BHO x86

Version:
1.10.0.3

MD5:
ea46f75d84faccdc812a41081f76710c

SHA-1:
58a1e0d555e876a89d6fe876f52b9254edbd57a3

SHA-256:
fe8887f1850d382877eb0ee3e95f8cecf543ea9ab6ca3b3d2d23d271942f9dc3

Scanner detections:
27 / 68

Status:
Adware

Analysis date:
4/25/2024 6:36:31 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Adware.Vitruvian.B
790

Avira AntiVirus
Adware/Vitruvian.149088
7.11.193.22

avast!
Win32:Adware-gen [Adw]
2014.9-141206

AVG
Snacks
2015.0.3268

Baidu Antivirus
Adware.Win32.Vitruvian
4.0.3.14126

Bitdefender
Adware.Vitruvian.B
1.0.20.1700

Comodo Security
ApplicUnwnt
20284

Dr.Web
Trojan.Damaged.1
9.0.1.0340

Emsisoft Anti-Malware
Adware.AdPage
8.14.12.06.04

ESET NOD32
Win32/AdWare.Vitruvian (variant)
8.10834

Fortinet FortiGate
Riskware/Vitruvian
12/6/2014

F-Secure
Adware.Vitruvian.B
11.2014-06-12_7

G Data
Adware.Vitruvian
14.12.24

IKARUS anti.virus
PUA.Vitruvian
t3scan.1.8.5.0

K7 AntiVirus
Adware
13.186.14254

McAfee
Artemis!EA46F75D84FA
5600.6924

MicroWorld eScan
Adware.Vitruvian.B
15.0.0.1020

NANO AntiVirus
Riskware.Win32.Plugin.dgyity
0.28.6.63850

nProtect
Adware.Vitruvian.B
14.12.05.01

Panda Antivirus
Trj/CI.A
14.12.06.04

Qihoo 360 Security
HEUR/QVM30.1.Malware.Gen
1.0.0.1015

Reason Heuristics
PUP.BHO.SearchSnacks.U
14.12.6.16

Sophos
Generic PUA FI
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Nullo[Short]
10194

Trend Micro House Call
TROJ_GEN.F0C2C00L314
7.2.340

Trend Micro
TROJ_GEN.F0C2C00L314
10.465.06

VIPRE Antivirus
InfoAtoms
35462

File size:
145.6 KB (149,088 bytes)

Product version:
1.10.0.3

Copyright:
Copyright (C) 2014

Original file name:
SearchSnacksClientIE.dll

File type:
Dynamic link library (Win32 DLL)

Language:
English (United States)

Common path:
C:\Program Files\searchsnacks_1.10.0.3\ie\searchsnacksclientie.dll

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
4/3/2014 5:07:56 PM

Valid to:
4/3/2016 5:07:56 PM

Subject:
E=support@search-snacks.com, CN="Search Snacks, LLC", O="Search Snacks, LLC", L=Dover, S=Delaware, C=US

Issuer:
CN=GlobalSign CodeSigning CA - G2, O=GlobalSign nv-sa, C=BE

Serial number:
11213239AF4AE4C69B97F803376A194F08F4

Registration
CLSID:
{EE57E1D3-8B9D-4237-A301-460F36CF42F1}

COM registered:
Yes

File PE Metadata
Compilation timestamp:
11/6/2014 1:35:16 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:64rfSRgMCwcl0qvl+GQvVvSxel3psWB6KsB5xaG+NVLszutfi9VFdeamRmt:/OgMCwG0qvl+GQvVvqel37BoBHEE6FR4

Entry address:
0xDFEC

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 7F, 45, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, C0, DA, 01, 10, E8, 45, 03, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, A8, 0A, 02, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, 18, 7C, 01, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 11, FE, FF, FF, 89, 45, E4...
 
[+]

Entropy:
6.3150

Developed / compiled with:
Microsoft Visual C++

Code size:
83.5 KB (85,504 bytes)

Internet Explorer BHO
Display name:
SearchSnacks

CLSID:
{EE57E1D3-8B9D-4237-A301-460F36CF42F1}


Remove SearchSnacksClientIE.dll - Powered by Reason Core Security