Home Malware Programs Trojans Trojan.Sirefef.N

Trojan.Sirefef.N

Posted: August 6, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 131
First Seen: August 6, 2012
OS(es) Affected: Windows

Trojan.Sirefef.N (Trojan:WinNT/Sirefef.N) is a rootkit Trojan that restricts attacked web users from normal Internet surfing by modifying search results and using the pay-per-click technique to earn money for cybercriminals. Trojan.Sirefef.N downloads updates and additional components and disguises existing components on the infected computer. Trojan.Sirefef.N uses advanced stealthy techniques in an attempt to evade detection and removal from the affected computer. Trojan.Sirefef.N uses particular ports for its peer-to-peer communications.

Aliases

Trojan-FAFX!236DEB9E136F [McAfee]BackDoor.Generic16.COLI [AVG]Win32:Sirefef-BBW [GData]TR/Rootkit.Gen7 [AntiVir]TrojWare.Win32.Kryptik.AYPE [Comodo]Win32:Sirefef-BBW [Rtk] [Avast]Artemis!B05C0E30BB3D [McAfee]Trojan-FAFX!BCFB33878017 [McAfee]Generic.dx!b2ov [McAfee]Trojan-FAFX!C7FC0DB4C04E [McAfee]Generic30.CKJP [AVG]W32/ZeroAccess_FARL.D98425A0E63D!tr [Fortinet]Win32.SuspectCrc [Ikarus]Trojan/Win32.Genome [AhnLab-V3]TR/Barys.536.16 [AntiVir]
More aliases (104)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: 6d793d536e1e9aa2dc8a007c75f816ba
Detection count: 94
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 28, 2013
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: f7c8492e9b274d828602bcee2c5e104d
Detection count: 54
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: October 12, 2012
%WINDIR%\System32\drivers\i8042prt.sys File name: i8042prt.sys
Size: 54.78 KB (54784 bytes)
MD5: bcfb33878017e5815c5d34d8a194ad6a
Detection count: 51
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: February 22, 2013
%WINDIR%\System32\drivers\redbook.sys File name: redbook.sys
Size: 57.6 KB (57600 bytes)
MD5: 9a3cc780983d12c5a834f681a590380f
Detection count: 42
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 16, 2013
%WINDIR%\System32\drivers\tdx.sys File name: tdx.sys
Size: 74.75 KB (74752 bytes)
MD5: d98425a0e63dcecb70eabd1286b0a5f1
Detection count: 37
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 21, 2013
%WINDIR%\System32\drivers\cdrom.sys File name: cdrom.sys
Size: 67.07 KB (67072 bytes)
MD5: 42d6792546bd9bad3214e516a5390fa3
Detection count: 26
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 18, 2012
%WINDIR%\System32\drivers\tdx.sys File name: tdx.sys
Size: 72.19 KB (72192 bytes)
MD5: 74b2764208c3863ac1cc3d83c1dffe92
Detection count: 19
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: October 5, 2012
%WINDIR%\System32\drivers\cdrom.sys File name: cdrom.sys
Size: 108.54 KB (108544 bytes)
MD5: b05c0e30bb3d99afa06283a14453bc23
Detection count: 19
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: May 8, 2013
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 78.33 KB (78336 bytes)
MD5: 236deb9e136f1aa2ba7a178deb50b312
Detection count: 10
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: May 8, 2013
%WINDIR%\System32\drivers\netbt.sys File name: netbt.sys
Size: 185.85 KB (185856 bytes)
MD5: be8707fce53130deaa464b57c89f22b0
Detection count: 9
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: October 5, 2012
%WINDIR%\System32\drivers\serial.sys File name: serial.sys
Size: 64.51 KB (64512 bytes)
MD5: 081f95c2166032649605766d8d0877bf
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 6, 2012
%WINDIR%\System32\drivers\MpFilter.sys File name: MpFilter.sys
Size: 165.64 KB (165648 bytes)
MD5: cd75729b706466010cd6cbdd7d99ea86
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: August 6, 2012
%WINDIR%\System32\drivers\dfsc.sys File name: dfsc.sys
Size: 75.26 KB (75264 bytes)
MD5: 09eeeed37495fca783998a43084e5764
Detection count: 5
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: December 20, 2012
Loading...