Home Malware Programs Trojans Trojan.Sirefef.N

Trojan.Sirefef.N

Posted: August 6, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 131
First Seen: August 6, 2012
OS(es) Affected: Windows

Trojan.Sirefef.N (Trojan:WinNT/Sirefef.N) is a rootkit Trojan that restricts attacked web users from normal Internet surfing by modifying search results and using the pay-per-click technique to earn money for cybercriminals. Trojan.Sirefef.N downloads updates and additional components and disguises existing components on the infected computer. Trojan.Sirefef.N uses advanced stealthy techniques in an attempt to evade detection and removal from the affected computer. Trojan.Sirefef.N uses particular ports for its peer-to-peer communications.

Aliases

Trojan-FAFX!236DEB9E136F [McAfee]BackDoor.Generic16.COLI [AVG]Win32:Sirefef-BBW [GData]TR/Rootkit.Gen7 [AntiVir]TrojWare.Win32.Kryptik.AYPE [Comodo]Win32:Sirefef-BBW [Rtk] [Avast]Artemis!B05C0E30BB3D [McAfee]Trojan-FAFX!BCFB33878017 [McAfee]Generic.dx!b2ov [McAfee]Trojan-FAFX!C7FC0DB4C04E [McAfee]Generic30.CKJP [AVG]W32/ZeroAccess_FARL.D98425A0E63D!tr [Fortinet]Win32.SuspectCrc [Ikarus]Trojan/Win32.Genome [AhnLab-V3]TR/Barys.536.16 [AntiVir]
More aliases (104)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\System32\drivers\i8042prt.sys File name: i8042prt.sys
Size: 54.78 KB (54784 bytes)
MD5: bcfb33878017e5815c5d34d8a194ad6a
Detection count: 51
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: February 22, 2013
%WINDIR%\System32\drivers\redbook.sys File name: redbook.sys
Size: 57.6 KB (57600 bytes)
MD5: 9a3cc780983d12c5a834f681a590380f
Detection count: 42
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 16, 2013
%WINDIR%\System32\drivers\tdx.sys File name: tdx.sys
Size: 74.75 KB (74752 bytes)
MD5: d98425a0e63dcecb70eabd1286b0a5f1
Detection count: 37
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 21, 2013
%WINDIR%\System32\drivers\cdrom.sys File name: cdrom.sys
Size: 108.54 KB (108544 bytes)
MD5: b05c0e30bb3d99afa06283a14453bc23
Detection count: 19
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: May 8, 2013
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: 236deb9e136f1aa2ba7a178deb50b312
Detection count: 10
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: May 8, 2013
%WINDIR%\System32\drivers\serial.sys File name: serial.sys
Size: 64.51 KB (64512 bytes)
MD5: 081f95c2166032649605766d8d0877bf
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 6, 2012
%WINDIR%\System32\drivers\MpFilter.sys File name: MpFilter.sys
Size: 165.64 KB (165648 bytes)
MD5: cd75729b706466010cd6cbdd7d99ea86
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 6, 2012

More files
Loading...