Threat Database Trojans Win32/Sirefef.DT

Win32/Sirefef.DT

By Domesticus in Trojans

Threat Scorecard

Ranking: 16,359
Threat Level: 90 % (High)
Infected Computers: 735
First Seen: December 19, 2011
Last Seen: July 11, 2023
OS(es) Affected: Windows

Win32/Sirefef.DT is a hazardous Trojan which aims at generating income on creating forced traffic to certain web pages. Win32/Sirefef.DT tries to obtain control over web browsing to close access to applications that are able to remove Win32/Sirefef.DT. Win32/Sirefef.DT restrains genuine software programs in favor of illegal ones. Win32/Sirefef.DT adds rogue security applications into Windows PCs and satisfies its installation and post-installation needs. Remove Win32/Sirefef.DT before it harms your machine.

File System Details

Win32/Sirefef.DT may create the following file(s):
# File Name Detections
1. %TEMP%\.exe
2. %UserProfile%\Start Menu\Programs\Win32/Sirefef.DT\Uninstall Win32/Sirefef.DT.lnk
3. %UserProfile%\Start Menu\Programs\Win32/Sirefef.DT\
4. %UserProfile%\Desktop\Win32/Sirefef.DT.lnk
5. %UserProfile%\Start Menu\Programs\Win32/Sirefef.DT\Win32/Sirefef.DT.lnk

Registry Details

Win32/Sirefef.DT may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "WarnonBadCertRecving" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments "SaveZoneInformation" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main "Use FormSuggest" = 'yes'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "CertificateRevocation" = '0'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations "LowRiskFileTypes" = '/{hq:/s's:/ogn:/uyu:/dyd:/c'u:/bnl:/ble:/sdf:/lrh:/iul:/iulm:/fhg:/clq:/kqf:/'wh:/lqf:/lqdf:/lnw:/lq2:/l2t:/v'w:/rbs:'
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = 'no'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "ShowSuperHidden" = 0'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableTaskMgr" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop "NoChangingWallPaper" = '1'
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system "DisableTaskMgr" = '1'
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced "Hidden" = '0'

Trending

Most Viewed

Loading...