Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Trojan:Win32/Sirefef


  • Please log in to reply
1 reply to this topic

#1 ChristianRiske

ChristianRiske

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:09:12 AM

Posted 26 June 2012 - 08:07 AM

Hello to you,
i am actually at a friends PC who has several Versions of the Sirefef Trojan.

The MS Essentials could set a huge amount of them to quarantine (Sirefef.AL / .AG / and without .xx), at one actually found, MSE (Microsoft Security Essentials) trys to set quarantine to Sirefef.R (and .AH) and stucks after one Minute and two 'Minutes later computer is forced to shut down.

In the MSE-Window i can see, that services.exe in c:\windows\System32 of the Windows Vista Home Premium SP2 is infected.


I have seen, that Mods need DDS and FarbarRecoveryScantool-logs for supporting this?
I guess, taking the services.exe from a working VISTA hp SP2 and replacing the infected file is not enough?


Thanks and best regards, Chritian

PS can i put all needed Files to a 2GB USB-Stick and prevent the stick from beeing infected from Virus ? i had an older Stick with hardwareknob to make it writeprotect, but actual Sticks do not support this kind of protection?!

Edited by ChristianRiske, 26 June 2012 - 08:09 AM.


BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:02:12 AM

Posted 26 June 2012 - 01:40 PM

First run Panda USB Vaccine on the USB drive..

Please go here....Preparation Guide ,do steps 6-9.

Create a DDS log and post it in the new topic explained in step 9 which is here Virus, Trojan, Spyware, and Malware Removal Logs and not in this topic,thanks.
If GMER won't run (it may not on a 64 bit system) skip it and move on.

Let me know if that went well.

Edited by boopme, 26 June 2012 - 01:43 PM.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users