HGGHFFD.DLL - Dangerous
What you should do about HGGHFFD.DLL:
You should urgently check your PC and remove any malicious software including HGGHFFD.DLL as soon as possible.
The free version of Prevx CSI will scan your PC for millions of spyware and malware infections in less than 2 minutes. Don't take the risk, check your PC now.
What we know about HGGHFFD.DLL:
HGGHFFD.DLL
AUTOMATED MALWARE PROFILE, ANALYSIS, REMOVAL AND SIGNATURE INFORMATION:
DEFINITION OF: HGGHFFD.DLL
- Safety Rating: Known Spyware, do not run
- Spyware Family: Part of Spyware group - SpywareQuake
- Determination: Automatically determined using Prevx centralized heuristics
- Malware Form: EXPLOIT
- Additional Info: Bogus antispyware application
- Protection: Prevx provides powerful security products that you can use to detect, remove and protect you from HGGHFFD.DLL and safeguard your PC against viruses, trojans, worms, spyware, rootkits and adware
- Why risk having spyware on your PC when it takes less than 2 minutes to thoroughly check it with Prevx CSI? Click here to check your PC with Prevx CSI Now.
- First seen: Dec 23 2006 (GMT)
- Last seen: Dec 23 2006 (GMT)
- File Size: 22,541 bytes
MALWARE ASSESSMENT: PREVX 4 AXES OF EVIL METHODOLOGY
1. COVERT ANALYSIS OF: HGGHFFD.DLL
- File Names Used: 22
- Paths Used: 5
- Common File Name: HGGHFFD.DLL
- Common Path: %WINDIR%\SYSTEM32\
- Vendor Information: No Vendor details specified
- HGGHFFD.DLL may use 22 or more path and file names, these are the most common:
- 1 :%honeypotroot%\EC793AACA697C8EE34E56FBB0EC3.....pmw
- 2 :%WINDIR%\SYSTEM32\BYXUUTQ.DLL
- 3 :%WINDIR%\SYSTEM32\CBXVUTQ.DLL
- 4 :%WINDIR%\SYSTEM32\CBXWTRP.DLL
- 5 :%WINDIR%\SYSTEM32\DDCCCAA.DLL
- 6 :%WINDIR%\SYSTEM32\FCCAAXV.DLL
- 7 :%WINDIR%\SYSTEM32\FCCAWUU.DLL
- 8 :%WINDIR%\SYSTEM32\IIFECAW.DLL
- 9 :%WINDIR%\SYSTEM32\LJJIGEC.DLL
- 10:%WINDIR%\SYSTEM32\LJJJKLM.DLL
- 11:%WINDIR%\SYSTEM32\MLJJIJK.DLL
- 12:%WINDIR%\SYSTEM32\QOMNKII.DLL
- 13:%WINDIR%\SYSTEM32\QOPOOPM.DLL
- 14:%WINDIR%\SYSTEM32\RQRSQOP.DLL
- 15:%WINDIR%\SYSTEM32\SSQNNKJ.DLL
- File Name Structure: Common
- File and Path Structure: Suspicious, unusually high number of file and path combinations
2. RELATIONSHIP ANALYSIS OF: HGGHFFD.DLL
- No relationship details available for this object
3. ACTIVITY ANALYSIS OF: HGGHFFD.DLL
- The following behaviors have been observed for this object:
- Invokes dll components.
- Packed Executable.
4. PROPAGATION ANALYSIS OF: HGGHFFD.DLL
- Malware Group Propagation Rate: Moderate (spreading)
- Malware Group: SpywareQuake
- Copyright Prevx Limited 2005, 2006
