Associated Malware Groups
The filename is associated with the malware groups:
- Fraudulent Security Program
- Cloaked Malware
File Behavior
KIPIHEBA.DLL has been seen to perform the following behavior:
- The Process is packed and/or encrypted using a software packing process
- Found on infected systems and resists interrogation by security products
- Uses low level functions to hide itself from the user and from system/security processes
KIPIHEBA.DLL has been the subject of the following behavior:
- Added as a Registry auto start to load Program on Boot up
Country Of Origin
The filename KIPIHEBA.DLL was first seen on Nov 26 2008 in the following geographical regions of the Prevx community:
- Italy on Nov 26 2008
- Spain on Jan 13 2009
- The United States on Oct 29 2009
- Taiwan on Jan 30 2010
File Name Aliases
KIPIHEBA.DLL can also use the following file names:
- DESIMUHO.DLL
- MIJEJABE.DLL
- NUSATOZA.DLL
- LOBURAKO.BAD
- FALOLOFU.DLL
- BERUVUFI.DLL
- FETUTUPI.DLL
- YAJOSOFO.DLL
- ROGUMIKE.DLL
- SAGUYEBA.DLL
- GILETISA.DLL
- RITUJUTE.DLL
- GAYUBOWU.DLL
- RAHUPEKE.DLL
- ZEVITEDU.DLL
- HULUJIGE.DLL
- MONIFAVE.DLL
- HUPEZIVU.DLL
- RATIFUYA.DLL
- MATIRATE.DLL
- SUJEHIHU.DLL
- DUSATALO.DLL
- VASUZASO.DLL
- VOSOLEDA.DLL
- RAYEFEKU.DLL
- BEKEHUTU.DLL
- NUNUPOFA.DLL
- YAGEPODO.DLL
- FUNUGIPI.DLL
- MUZURIMO.DLL
- DOBAFIGI.DLL
- VIPUKUNA.DLL
- SITIZEME.DLL
- LIWADEFI.DLL
- ZAVALADI.DLL
- SUYETEBO.DLL
- BUBEFANE.DLL
- GEBOBUYO.DLL
- MIWAJIHO.DLL
- LEVUSOPI.DLL
- TUSIHIVI.DLL
- LANABIYA.DLL
- VIWADEFO.DLL
- JOFUBAGU.DLL
- REGOHIBI.DLL
- WEPEJAPU.DLL
- DURUBANI.DLL
- LEROSUSI.DLL
- BAHOTOBE.DLL
- GILUHABU.DLL
- JETEBUSU.DLL
- JIMIKESU.DLL
- FEGUFULA.DLL
- ZAKISOHI.DLL
- 28202678.DLL
- 08618881.SVD
- 16735193.SVD
Filesizes
The following file size has been seen:
- 86,068 bytes
- 87,816 bytes
- 38,400 bytes
- 91,136 bytes
- 94,720 bytes
- 108,806 bytes
File Type
The filename KIPIHEBA.DLL refers to many versions of a dynamic link library.
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.