Associated Malware Groups
The filename is associated with the malware group:
- Fraudulent Security Program
File Behavior
JAKIBISE.DLL has been seen to perform the following behavior:
- The Process is packed and/or encrypted using a software packing process
- Executes a Dynamic Link Library File as a process
- Enables an In Process Object/Server - Common with DLL Injections
- Adds a Registry Key (EXPLORER) to auto start Programs on system start Boot up
- Adds a Registry Key (DELAY) to auto start Programs on system start up
- Modifies Windows Initialization And System Settings Used On Start up
- Adds a Registry Key (RUN) to auto start Programs on system start up
- Executes a Process
- Uses rootkit techniques to conceal its presence, interrogation or removal
- Found on infected systems and resists interrogation by security products
JAKIBISE.DLL has been the subject of the following behavior:
- Created as a process on disk
- Registered as a Dynamic Link Library File
- Executed as a process
- Enabled as an In Process Object/Server - Common with DLL Injections
- Added as a Registry Key (DELAY) to auto start Programs on system start up
- Added as a Registry auto start to load Program on Boot up
- Executed as a Process
- The process is hooked into all running processes which could allow it to take control of the system or record keyboard input, mouse activity and screen contents
Country Of Origin
The filename JAKIBISE.DLL was first seen on Dec 21 2008 in the following geographical region of the Prevx community:
- The United States on Dec 21 2008
File Name Aliases
JAKIBISE.DLL can also use the following file names:
- TEBUDATI.DLL
- KEMOLIHI.DLL
Filesizes
The following file size has been seen:
- 69,754 bytes
- 93,476 bytes
- 97,045 bytes
- 91,648 bytes
- 88,576 bytes
File Type
The filename JAKIBISE.DLL refers to many versions of a dynamic link library.
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.