Home Malware Programs Trojans Trojan:Win64/Sirefef.AF

Trojan:Win64/Sirefef.AF

Posted: January 16, 2013

Threat Metric

Threat Level: 8/10
Infected PCs: 7
First Seen: January 16, 2013
OS(es) Affected: Windows

Trojan:Win64/sirefef.AF is a rootkit Trojan that opens a backdoor on the targeted PC and downloads and installs another security threats onto the infected computer system. Trojan:Win64/Sirefef.AF spreads via malicious links, file-sharing networks, and spam email attachments, and invades the victimized computer system without a PC user's permission and knolwdge. Once installed on the corrupted machine, Trojan:Win64/Sirefef.AF slows down the targeted computer and makes it unstable. Trojan:Win64/Sirefef.AF compromises the affected computer and violates privacy. Trojan:Win64/Sirefef.AF will also hijack the web browser and cause annoying redirects to suspicious websites. Trojan:Win64/Sirefef.AF is difficult to detect and uninstall from the infected computer by many security applications.

Aliases

ZeroAccess.M [AVG]W32/Sirefef.DA [Fortinet]Trojan.ZeroAccess [Ikarus]TR/Sirefef.RF [AntiVir]Win32.TRSirefef.Rf [eSafe]Trojan.ADH.2 [Symantec]Trojan-FAFL!2CDD68758BAA [McAfee]Hider.PUW [AVG]W32/ZAccess.G [Fortinet]Rootkit.Win32.ZAccess [Ikarus]Win-Trojan/Zaccess.75264.C [AhnLab-V3]Trojan:Win32/Sirefef.AF [Microsoft]Virus/Win32.ZAccess.gen [Antiy-AVL]TR/Rootkit.Gen2 [AntiVir]UnclassifiedMalware [Comodo]
More aliases (31)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\System32\drivers\mrxsmb.sys File name: mrxsmb.sys
Size: 456.32 KB (456320 bytes)
MD5: 69a23ed79d3167e8331179b497b0cf76
Detection count: 18
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 16, 2013
%WINDIR%\System32\drivers\smb.sys File name: smb.sys
Size: 66.56 KB (66560 bytes)
MD5: 2cdd68758baaafb9a738dff177e374b8
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: February 11, 2013
Loading...