Associated Malware Groups
The filename is associated with the malware groups:
- Fraudulent Security Program
- Cloaked Malware
- Malicious Software
File Behavior
SSTTT.DLL has been seen to perform the following behavior:
- The Process is packed and/or encrypted using a software packing process
- The Process is polymorphic and can change its structure
- This Process uses Anti Dissasembly Tricks to avoid analysis by security products
SSTTT.DLL has been the subject of the following behavior:
- Registered as a Dynamic Link Library File
- The process is hooked into all running processes which could allow it to take control of the system or record keyboard input, mouse activity and screen contents
- Created as a process on disk
- Added as a Winlogon Notification DLL to automatically load on system start up
- Enabled as an In Process Object/Server - Common with DLL Injections
- Created and Registered as a Browser Helper Object in Internet Explorer
Country Of Origin
The filename SSTTT.DLL was first seen on Jun 20 2007 in the following geographical regions of the Webroot community:
- Singapore on Jun 20 2007
- Australia on Jun 26 2007
- on Oct 3 2007
- Netherlands on Oct 6 2007
- Germany on Oct 6 2007
- Spain on Oct 11 2007
- Europe on Jan 19 2008
File Name Aliases
SSTTT.DLL can also use the following file names:
- DDCYW.DLL
- GEEDC.DLL
- DDABC.DLL
- SSTTQ.DLL
- MLLMK.DLL
- DDAYX.DLL
- 66336103.SVD
Filesizes
The following file size has been seen:
- 283,232 bytes
- 285,268 bytes
- 325,728 bytes
- 244,832 bytes
- 266,336 bytes
- 334,336 bytes
File Type
The filename SSTTT.DLL refers to many versions of a dynamic link library.
Help the Webroot Community to fight cyber crime
We are always looking for ways to improve the quality and speed of research to help us protect you from malicious software and cyber crime.
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.