Associated Malware Groups
The filename is associated with the malware groups:
- Fraudulent Security Program
- Cloaked Malware
- Worm
File Behavior
JKSE73HEDFDGF.DLL has been seen to perform the following behavior:
- Enables an In Process Object/Server - Common with DLL Injections
- Creation and Registration of a Browser Helper Object in Internet Explorer
- Registers a Dynamic Link Libray (DLL) File
- The process hooks code into all running processes which could allow it to take control of the system or record keyboard input, mouse activity and screen contents
- Found on infected systems and resists interrogation by security products
- Adds a Registry Key (EXPLORER) to auto start Programs on system start Boot up
- Checks for the use of debuggers
- Reads email address and phone book details
JKSE73HEDFDGF.DLL has been the subject of the following behavior:
- Creation and Registered as a Browser Helper Object in Internet Explorer
- Created as a process on disk
- Registered as a Dynamic Link Libray (DLL) File
- Enabled as an In Process Object/Server - Common with DLL Injections
- Executed as a Process
- Registered as a Dynamic Link Library File
- The process is hooked into all running processes which could allow it to take control of the system or record keyboard input, mouse activity and screen contents
- Deleted as a process from disk
Country Of Origin
The filename JKSE73HEDFDGF.DLL was first seen on Dec 11 2008 in the following geographical regions of the Prevx community:
- Spain on Dec 11 2008
- Canada on Dec 17 2008
File Name Aliases
JKSE73HEDFDGF.DLL can also use the following file names:
- VIRUSES/JKSE73HEDFDGF.DLL
- DEVICE
- 01C96B9768DA8A5A_JKSE73HEDFDGF_DLL.PE
- 65183316.DAT
- 01177453.DLL
Filesizes
Files using the name JKSE73HEDFDGF.DLL have been seen with the following file size:
File Type
The filename JKSE73HEDFDGF.DLL refers to many versions of a dynamic link library.
PCMag.com Editors' Choice Award Logo is a trademark of Ziff Davis Publishing Holdings Inc. Used under license.