Home / Spyware Encyclopedia / IM.Snitch << Back

Recommendation to Automatically remove IM.Snitch


Our products can remove IM.Snitch and thousands of other Virus and Spyware automatically and instantly.

IM.Snitch Details


  • Category IM
  • Discovered 5/11/2009 9:37:54 AM
  • Modified 8/1/2023 4:12:20 PM
  • Threat Level Critical
  • Category Description
    A threat that is capable to cause Denial-Of-Service attacks against other instant messenger client systems.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
ash.dll 188416 1.0.0.1d0cdd523f2345aab207a1ac09c98c991 
winlogon32.dll 4096  eeeb593526585fb618ddee7065310507 
estsprt.sys 3872  db3575b29359cac1c1db2c4f302ef0d5 
svchost.dll 26112  cc5e87bef1c4f23cb6288e7eaa995197 
svchosthook.dll 5632  c3ecdb51a6a0efdf7c7f58acf4e86989 
mstscex.dll 53248  b63b244f482ae1e13a934a710d0cedc5 
svchost.dll 19456  99eeb7a04d5c22be27c800d917241c89 
svchost.dll 36352  8a7b788ff749b4113f89d4fe7329c52d 
winlogon32.exe 9728  85fa47045d59e2700554dad290a2e91d 
SVCHOST.DLL 96768  6cd4c9a499334a102c599f30faeac638 

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"WindowsUpdate"\"%WIN.SYS%\svchost.exe /s"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Service Host"\"%WIN.SYS32%\Services\{0E3A508A-560C-4C99-BFB7-544D2B28480D}\SVCHOST.EXE"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"IAMAPP32"\"%WIN.SYS32%\mstscs.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"AdsInfinity"\"%PF%\AdsInfinity\AdsInfinity.exe"
..\Software\Classes\Clsid\{F74B358E-6979-40a9-96CD-636C80B87AFF}\(Default)
..\System\CurrentControlSet\Services\estsprt\(Default)
..\Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\F8adsl\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"Systems Restart"\"Rundll32.exe boln.dll, DllRegisterServer"
..\Software\Microsoft\Internet Explorer\Toolbar\\"CLSID"\"{B75F75B8-93F3-429D-FF34-660B206D897A}"
..\Software\zsearchco\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware