Threat Database Trojans Trojan:win64/Sirefef.E

Trojan:win64/Sirefef.E

By SpideyMan in Trojans

The Trojan:Win64/Sirefef.E Trojan is a kind of Trojan that is specifically designed to install a rootkit on the infected computer system. Trojan:Win64/Sirefef.E is particularly linked to the ZeroAccess rootkit, a malware infection that is notorious for being associated with various browser hijackers and online scams. Since rootkits are particularly difficult to remove, it is important to stop Trojan:Win64/Sirefef.E in its tracks, before it manages to deliver its dangerous payload. Once the rootkit infection associated with Trojan:Win64/Sirefef.E is delivered, Trojan:win64/Sirefef.E will often not be removable, except with the aid of a specialized anti-rootkit tool. This is why ESG PC security researchers recommend prevention as the most effective way of dealing with Trojan:Win64/Sirefef.E and its associated Trojans. By making sure that your security software is updated to include the latest malware definitions and remember to browse the Internet safely, you can drastically reduce the chances that your computer system will become infected with Trojan:Win64/Sirefef.E and its associated rootkit threats.

Characteristics of Trojan:Win64/Sirefef.E

There are several variants of Trojan:Win64/Sirefef.E, typically identified by the last letter in their detection. While Trojan:Win64/Sirefef.E is the "E" variant, there are also variants "A" through "D". Trojan:Win64/Sirefef.E seems to be evolving rapidly, and it is possible that more variants will continue to be discovered in the future. Variants of Trojan:Win64/Sirefef.E are released in order to bypass security measures and to stay one step ahead of malware analysts. Since rootkits are among the most dangerous malware infections, as well as notoriously difficult to remove, creating variants of Trojan:Win64/Sirefef.E is worth the effort for the criminals behind this infection. Trojan:Win64/Sirefef.E attacks computer systems with a 64-bit operating system. Other variants of Trojan:Win64/Sirefef.E, such as the "B" variant are designed to attack 32-bit operating system or operating systems with different characteristics. Trojan:Win64/Sirefef.E detection is fairly generic and applies to a variety of rootkit-dropper Trojans. However, keeping your anti-malware software fully updated should ensure that you do not become infected with any variants of this dangerous threat. Once installed, symptoms of a Trojan:win64/Sirefef.E Trojan include browser redirects, obvious computer problems with no indication from your installed security programs and access to anti-malware programs is blocked and to websites associated with computer security and security applications.

SpyHunter Detects & Remove Trojan:win64/Sirefef.E

File System Details

Trojan:win64/Sirefef.E may create the following file(s):
# File Name MD5 Detections
1. %AllUsersProfile%\Application Data\.dll
2. %AllUsersProfile%\Application Data\.exe(looks like Trojan:win64/sirefef.E)
3. file.dll a33aaf0cdf24d47dad05a5cebab5c78c 0
4. file.dll 4fbece69abd1f1f54dc0a39c8873a581 0
5. file.dll 1ff93acdae2dba88eda8581ed07fd091 0
6. file.dll e59112b8f0e0dc8d72cf131c0d9969eb 0

Registry Details

Trojan:win64/Sirefef.E may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Wow6432Node
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Trojan:win64/sirefef.E"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run ".exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run "Trojan:win64/sirefef.E"

Trending

Most Viewed

Loading...