Home Malware Programs Trojans Win64/Sirefef.G

Win64/Sirefef.G

Posted: May 4, 2012

Threat Metric

Threat Level: 8/10
Infected PCs: 56
First Seen: February 16, 2011
OS(es) Affected: Windows

Win64/Sirefef.G is a Trojan that usually comes bundled with the same family rootkit infection. Win64/Sirefef.G hijacks the targeted web browser and changes search results on any search engine to spam links. A rootkit associated with Win64/Sirefef.G makes this Trojan difficult to detect and remove by anti-malware programs. You should select a reputable and powerful security application in order to completely uninstall Win64/Sirefef.G and related malware threats.

Aliases

Win32.TRRootkit [eSafe]Rootkit-Agent [AVG]Win32/ZAccess.C!generic [eTrust-Vet]Rootkit.Sirefef.G [BitDefender]Virus.Win32.ZAccess.c [Kaspersky]Trojan.Zeroaccess!inf [Symantec]W32/ZAccess.C!tr.bdr [Fortinet]Trojan.SuspectCRC [Ikarus]Heuristic.BehavesLike.Win32.Rootkit.H [McAfee-GW-Edition]Win32:Sirefef [Rtk] [Avast]Trojan.Zeroaccess [Symantec]W32/Rootkit.M.gen!Eldorado [F-Prot]a variant of Win32/Rootkit.Agent.NUT [NOD32]Generic Rootkit.ev [McAfee]Generic22.AUPW [AVG]
More aliases (49)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



%WINDIR%\System32\DRIVERS\cdrom.sys File name: cdrom.sys
Size: 125.95 KB (125952 bytes)
MD5: 978ed592cda9b467c18ad3bba9046233
Detection count: 91
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: August 5, 2011
%WINDIR%\System32\DRIVERS\rasl2tp.sys File name: rasl2tp.sys
Size: 51.32 KB (51328 bytes)
MD5: 033299903d3ae0dff02a70ae96a42749
Detection count: 85
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: October 13, 2011
%WINDIR%\System32\drivers\i8042prt.sys File name: i8042prt.sys
Size: 52.73 KB (52736 bytes)
MD5: 49421d37d3738d68d11d9791bde22e7c
Detection count: 65
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: June 4, 2012
%WINDIR%\System32\DRIVERS\imapi.sys File name: imapi.sys
Size: 84.22 KB (84224 bytes)
MD5: e4449b9d55b4d91eb80550c692be28ad
Detection count: 28
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\DRIVERS
Group: Malware file
Last Updated: February 16, 2011
%WINDIR%\System32\drivers\msiscsi.sys File name: msiscsi.sys
Size: 180.71 KB (180712 bytes)
MD5: 99e592b806911ebe658a937fc27db6ba
Detection count: 9
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: March 19, 2011
%WINDIR%\System32\drivers\ipsec.sys File name: ipsec.sys
Size: 75.26 KB (75264 bytes)
MD5: becc04604fbbd632941e80d4c4780f9b
Detection count: 7
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: March 15, 2012
Loading...