Home / Spyware Encyclopedia / IM.Snitch << Back

Recommendation to Automatically remove IM.Snitch


Our products can remove IM.Snitch and thousands of other Virus and Spyware automatically and instantly.

IM.Snitch Details


  • Category IM
  • Discovered 5/11/2009 9:37:54 AM
  • Modified 8/1/2023 4:12:20 PM
  • Threat Level Critical
  • Category Description
    A threat that is capable to cause Denial-Of-Service attacks against other instant messenger client systems.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
ash.dll 188416 1.0.0.1d0cdd523f2345aab207a1ac09c98c991 
winlogon32.dll 4096  eeeb593526585fb618ddee7065310507 
svchost.dll 26112  cc5e87bef1c4f23cb6288e7eaa995197 
MSplg7.dll 10240  c4364654b42bcf598e802af04b7070a5 
winloadhh.dll 6144  c1f7f431d59a802044c05d3e8d42cf99 
Trojan-Dropper.Win32.Small.vv.exe 10240  bf991fdcf11124b54889817db421da8d 
estsprt.sys 17664  9e25612cb3702c9adbfb79b91c98abe0 
svchost.dll 19456  99eeb7a04d5c22be27c800d917241c89 
svchost.dll 36352  8a7b788ff749b4113f89d4fe7329c52d 
winlogon32.exe 432640    

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"WindowsUpdate"\"%WIN.SYS%\svchost.exe /s"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Service Host"\"%WIN.SYS32%\Services\{0E3A508A-560C-4C99-BFB7-544D2B28480D}\SVCHOST.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"IAMAPP32"\"%WIN.SYS32%\mstscs.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"AdsInfinity"\"%PF%\AdsInfinity\AdsInfinity.exe"
..\Software\Classes\Clsid\{F74B358E-6979-40a9-96CD-636C80B87AFF}\(Default)
..\System\CurrentControlSet\Services\estsprt\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\F8adsl\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Systems Restart"\"Rundll32.exe boln.dll, DllRegisterServer"
..\Software\Microsoft\Internet Explorer\Toolbar\\"CLSID"\"{B75F75B8-93F3-429D-FF34-660B206D897A}"
..\Software\zsearchco\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware