Content

FDoS-Keke

Type
Malware
SubType
Denial Of Svc
Discovery Date
09/16/2003
Length
26,624 bytes
Minimum DAT
4295 (09/24/2003)
Updated DAT
4295 (09/24/2003)
Minimum Engine
5.1.00
Description Added
09/16/2003
Description Modified
10/02/2003 12:48 AM (PT)
Risk Assessment
Corporate User
Low
Home User
Low

Tab Navigation

Characteristics

The entry for FDoS-Keke was added to cover for a malicious file called keke.exe (name might vary). The filesize was 26,624 bytes.

FDoS-Keke doesn't have a GUI, it runs in console mode. Keke runs in an interactive  mode.  FDoS-Keke v2.11 is an e-mail bomber/flooder program.

Symptoms

Presence of a file called keke.exe (name might vary). The filesize was 26,624 bytes.

Receiving multiple similar e-mail messages/being flooded.

Method of Infection

Manually running the malicious keke.exe starts the flooder program.

Removal

All Users:
Use current engine and DAT files for detection and removal.

Modifications made to the system Registry and/or INI files for the purposes of hooking system startup, will be successfully removed if cleaning with the recommended engine and DAT combination (or higher).

Additional Windows ME/XP removal considerations

Variants

Variants

    N/A

All Information

Overview -

Characteristics

Characteristics -

The entry for FDoS-Keke was added to cover for a malicious file called keke.exe (name might vary). The filesize was 26,624 bytes.

FDoS-Keke doesn't have a GUI, it runs in console mode. Keke runs in an interactive  mode.  FDoS-Keke v2.11 is an e-mail bomber/flooder program.

Symptoms

Symptoms -

Presence of a file called keke.exe (name might vary). The filesize was 26,624 bytes.

Receiving multiple similar e-mail messages/being flooded.

Method of Infection

Method of Infection -

Manually running the malicious keke.exe starts the flooder program.

Removal -

Removal -

All Users:
Use current engine and DAT files for detection and removal.

Modifications made to the system Registry and/or INI files for the purposes of hooking system startup, will be successfully removed if cleaning with the recommended engine and DAT combination (or higher).

Additional Windows ME/XP removal considerations

Variants

Variants -

    N/A