Home Malware Programs Trojans Trojan.Sirefef.J

Trojan.Sirefef.J

Posted: December 7, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 2,309
First Seen: December 7, 2011
Last Seen: December 14, 2022
OS(es) Affected: Windows

Trojan.Sirefef.J (Trojan:WinNT/Sirefef.J) is a rootkit Trojan that prevents affected web users from normal Internet surfing by changing search results in any legal search engine and creating pay-per-click advertising revenue for scammers. Trojan.Sirefef.J downloads updates and additional components and hides existing components on the compromised PC. Trojan.Sirefef.J uses advanced surreptitious techniques in an attempt to avoid detection and removal from the infected computer system. Trojan.Sirefef.J uses certain ports for its peer-to-peer communications.

Aliases

Generic.dx!b2c4 [McAfee]Gen:Variant.Graftor.25614 [BitDefender]Win32:Sirefef-WM [Rtk] [Avast]Trojan-FAHW!C8E3E7545E64 [McAfee]Trojan-FAHM!CBFDB9BAF82F [McAfee]Trojan-FAHM!718799C91EF9 [McAfee]Trojan.Sirefef.C [CAT-QuickHeal]Trojan-FAHM!3D3C16F3D89A [McAfee]Hider.OMW [AVG]Troj/ZAccess-AA [Sophos]TR/Sirefef.22 [AntiVir]TrojWare.Win32.Rootkit.ZAccess.A [Comodo]Win32:Malware-gen [Avast]Win32/Sirefef.DM [NOD32]RootKit [K7AntiVirus]
More aliases (773)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 187.9 KB (187904 bytes)
MD5: 3a1802dde25d2e8b95d30bb1dd289422
Detection count: 96
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: February 7, 2013
%WINDIR%\System32\DRIVERS\ipsec.sys File name: ipsec.sys
Size: 75.26 KB (75264 bytes)
MD5: 28be2d6f10205cbe35a1f943f8bcee8d
Detection count: 92
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: January 21, 2013
%WINDIR%\System32\drivers\afd.sys File name: afd.sys
Size: 138.49 KB (138496 bytes)
MD5: eb7a55967f8413b089fb0292ab7f5d82
Detection count: 86
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 27, 2012
%WINDIR%\System32\drivers\afd.sys File name: afd.sys
Size: 138.36 KB (138368 bytes)
MD5: 36c7cb7f40cecdff7c5c7491bf126046
Detection count: 80
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 6, 2012
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 162.81 KB (162816 bytes)
MD5: ce6d23d96afcdd5251228c93cb05ee92
Detection count: 44
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 8, 2012
%WINDIR%\System32\drivers\redbook.sys File name: redbook.sys
Size: 57.6 KB (57600 bytes)
MD5: d7b78bdb3feb1ed447a739ae46216146
Detection count: 32
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 3, 2012
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 75.26 KB (75264 bytes)
MD5: 6b8fa42242be1454243aebdbf10357f7
Detection count: 32
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 18, 2012
%WINDIR%\System32\drivers\afd.sys File name: afd.sys
Size: 270.33 KB (270336 bytes)
MD5: aaa8b13389d8c71cb073c42e054d227c
Detection count: 31
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: September 25, 2012
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 162.81 KB (162816 bytes)
MD5: 8c44bf89c9359c9623bc784281e67aed
Detection count: 30
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: July 20, 2012
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 185.85 KB (185856 bytes)
MD5: 7d65e94df92d2a7b06f25b31337e7bb2
Detection count: 30
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: March 1, 2013
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: de1615aa322de9bbd56f5ac1d33f6a0a
Detection count: 23
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: March 4, 2013
%WINDIR%\System32\DRIVERS\tdx.sys File name: tdx.sys
Size: 71.68 KB (71680 bytes)
MD5: e3beeb00b1aa93fc48ae6af78fc693ff
Detection count: 19
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: December 17, 2012
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 162.81 KB (162816 bytes)
MD5: c8e3e7545e642689bce4aa9452c38d1d
Detection count: 14
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: April 8, 2013
%WINDIR%\System32\drivers\mrxsmb.sys File name: mrxsmb.sys
Size: 451.45 KB (451456 bytes)
MD5: d3e5303de61482ccf10a27bce6ec7a53
Detection count: 14
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: February 6, 2013
%WINDIR%\System32\DRIVERS\netbt.sys File name: netbt.sys
Size: 187.9 KB (187904 bytes)
MD5: c4acc41f8f5f2a3bd8fdfe0fc5f18791
Detection count: 12
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: August 30, 2012
%WINDIR%\System32\drivers\ipsec.sys File name: ipsec.sys
Size: 75.26 KB (75264 bytes)
MD5: 3bd30a66a9bd086fa8966c18409725d9
Detection count: 12
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 13, 2012
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 185.85 KB (185856 bytes)
MD5: f82482009bc43f93fdfdfb5a6ed9a28d
Detection count: 7
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: May 15, 2013
%WINDIR%\System32\DRIVERS\serial.sys File name: serial.sys
Size: 64.51 KB (64512 bytes)
MD5: 91db9c3d5cabf92f2442cb58b730ed55
Detection count: 7
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: March 4, 2013
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: 440769d37646aa9fe6870e827e06a828
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 1, 2012
%WINDIR%\System32\drivers\csc.sys File name: csc.sys
Size: 387.58 KB (387584 bytes)
MD5: 718799c91ef914ed0282a936542f7c06
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: April 2, 2013
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 187.9 KB (187904 bytes)
MD5: 9a4e0de62fdc4c1953226e43eca1792d
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: July 30, 2012
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 162.81 KB (162816 bytes)
MD5: 40e65c560013869f14eceb904f15390d
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: March 12, 2013
%WINDIR%\System32\DRIVERS\ipsec.sys File name: ipsec.sys
Size: 74.75 KB (74752 bytes)
MD5: cbfdb9baf82f84b1a555bfa559dea745
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: April 2, 2013
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: 4163e068f8ce38d7a43d145611da6d13
Detection count: 1
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: November 26, 2012

More files
Loading...