Home Malware Programs Trojans Trojan:Win64/Sirefef.C

Trojan:Win64/Sirefef.C

Posted: December 6, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 162
First Seen: December 6, 2011
Last Seen: June 6, 2022
OS(es) Affected: Windows

Trojan:Win64/Sirefef.C is a Trojan-dropper which is installed by a similar Trojan, another Trojan-dropper, Trojan:Win64/Sirefef.J. Trojan:Win64/Sirefef.C infects the targeted computer system by exploiting security vulnerabilities. The main aim of Trojan:Win64/Sirefef.C is to access the kernel mode, which would compromise the PC and allow hackers to obtain access and control over the affected machine. Trojan:Win64/Sirefef.C can also download and install additional malware threats. Trojan:Win64/Sirefef.C may also try to avoid detection and removal by security software. Trojan:Win64/Sirefef.C may collect your personal information and send it to remote attackers. Get rid of Trojan:Win64/Sirefef.C as soon as possible.

Aliases

Downloader.Generic12.SJF [AVG]Win32/ZAccess.X [eTrust-Vet]Trojan.Generic.6807105 [BitDefender]Win32:Sirefef-AV [Drp] [Avast]WS.Reputation.1 [Symantec]Win64/Sirefef.C [NOD32]Generic Trojan [Panda]W64/Sirefef.I [Fortinet]Trojan/Win64.Zeroaccess [AhnLab-V3]Trojan/win32.agent.gen [Antiy-AVL]HEUR:Backdoor.Win64.Generic [Kaspersky]Win32.TRDownloader [eSafe]Win32:Sirefef-JQ [Trj] [Avast]Win64/Sirefef.I [NOD32]Generic.dx!bc3n [McAfee]
More aliases (160)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\system32\config\systemprofile\Local Settings\Temp\332120sys.dll File name: 332120sys.dll
Size: 116.24 KB (116248 bytes)
MD5: 029cba18bd7b95e70c6fe7c30d4f0a22
Detection count: 74
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32\config\systemprofile\Local Settings\Temp
Group: Malware file
Last Updated: December 8, 2011
%TEMP%\igfxtrey.exe File name: igfxtrey.exe
Size: 23.04 KB (23040 bytes)
MD5: ede045096826961e99e16947f886ddce
Detection count: 71
File type: Executable File
Mime Type: unknown/exe
Path: %TEMP%
Group: Malware file
Last Updated: December 7, 2011
%WINDIR%\System32\drivers\i8042prt.sys File name: i8042prt.sys
Size: 54.78 KB (54784 bytes)
MD5: 921581c833f0bf071a6cfe8b3f7d0a13
Detection count: 64
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 12, 2011
%LOCALAPPDATA%\ba51f720\X File name: X
Size: 41.98 KB (41984 bytes)
MD5: 19c4b4657a8b9ce41711b21769bfa3fa
Detection count: 46
Path: %LOCALAPPDATA%\ba51f720
Group: Malware file
Last Updated: March 21, 2013
C:\Qoobox\Quarantine\C\Users\<username>\AppData\Local\2aecbf38\X.vir File name: X.vir
Size: 42.49 KB (42496 bytes)
MD5: 686b479b0ee164cf1744a8be359ebb7d
Detection count: 40
Mime Type: unknown/vir
Path: C:\Qoobox\Quarantine\C\Users\<username>\AppData\Local\2aecbf38\X.vir
Group: Malware file
Last Updated: May 20, 2021
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 185.85 KB (185856 bytes)
MD5: 1354f9630a38c5fc2a72370d8a304d81
Detection count: 26
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 7, 2011
%LOCALAPPDATA%\84c72de9\X File name: X
Size: 39.93 KB (39936 bytes)
MD5: 637afbfb8b64d99ea55e5896e7d0f5d4
Detection count: 16
Path: %LOCALAPPDATA%\84c72de9
Group: Malware file
Last Updated: December 6, 2011
%WINDIR%\System32\drivers\smb.sys File name: smb.sys
Size: 66.56 KB (66560 bytes)
MD5: 58a8e2f69395757cb83015e9cdd63935
Detection count: 12
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 8, 2011
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 185.85 KB (185856 bytes)
MD5: 780ad60738607d383fbebe006f82d1cd
Detection count: 12
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 12, 2011
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 187.9 KB (187904 bytes)
MD5: 639555df61917d90d6d9562d7ee55182
Detection count: 9
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 12, 2011
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 75.26 KB (75264 bytes)
MD5: 1aff6ec8ec2538bf22fc12b7d6a5013e
Detection count: 9
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 12, 2011
%WINDIR%\System32\drivers\cdrom.sys File name: cdrom.sys
Size: 67.07 KB (67072 bytes)
MD5: 80c3460c8df995980488fe3bcb62afaa
Detection count: 7
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 8, 2011
C:\Users\<username>\AppData\Local\f60161b6\X File name: X
Size: 42.49 KB (42496 bytes)
MD5: be40a2578e862f1cecc9b9194f524201
Detection count: 7
Path: C:\Users\<username>\AppData\Local\f60161b6\X
Group: Malware file
Last Updated: June 6, 2022
%APPDATA%\ydze.exe File name: ydze.exe
Size: 135.68 KB (135680 bytes)
MD5: 33a0ce99c5b02058fe6a3eff83c8627e
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%
Group: Malware file
Last Updated: December 12, 2011
Loading...