PCWorld Forums

PCWorld Forums: Trojan:win64/sirefef.aa Trojan Messing My System Up! - PCWorld Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Trojan:win64/sirefef.aa Trojan Messing My System Up!

#1 User is offline   creamtheater 

  • Newbie
  • Pip
  • Group: New Member
  • Posts: 1
  • Joined: 11-July 12

Posted 11 July 2012 - 12:23 PM

Hello folks. i use windows 7 on my toshiba and the following variety of virus has crept into my system and isnt going away!

trojan:win64/sirefef.AA
trojan:win32/sirefef.AN

I have Security Essentials that's continuously detecting them and even though im doing a 'clean pc' and 'remove all' it comes back again in a second.
I tried looking up and it says it's a malware so i downloaded malwarebytes and did a full scan and cleaned the pc, yet the popup by security essentials isn't going away. I am getting so fedup with it, because it has slowed my system down greatly! .exe files that i want to install are taking ages, files of simple applications. Skype has become very slow too.. image quality is severely affected.

Is there anyway to get rid of it? Kindly help, im getting really upset cos of this.
0

#2 User is offline   coastie65 

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 19,685
  • Joined: 02-April 07
  • Location:Henrico, Va.

Posted 11 July 2012 - 12:52 PM

View Postcreamtheater, on 11 July 2012 - 12:23 PM, said:

Hello folks. i use windows 7 on my toshiba and the following variety of virus has crept into my system and isnt going away!

trojan:win64/sirefef.AA
trojan:win32/sirefef.AN

I have Security Essentials that's continuously detecting them and even though im doing a 'clean pc' and 'remove all' it comes back again in a second.
I tried looking up and it says it's a malware so i downloaded malwarebytes and did a full scan and cleaned the pc, yet the popup by security essentials isn't going away. I am getting so fedup with it, because it has slowed my system down greatly! .exe files that i want to install are taking ages, files of simple applications. Skype has become very slow too.. image quality is severely affected.

Is there anyway to get rid of it? Kindly help, im getting really upset cos of this.


Hi and welcome to the forums. Try www.malwarebytes.org ( The FREE version ) . Make sure it is updated then run it.
Coolermaster HAF 912 Case....ASUS P8Z68-VPro MOBO.....Intel Core i7 2600k Sandy Bridge ( 4.4 Ghz ).... Gelid Tranquillo cooler.... Samsung 830 256 GB SSD.... Primary HDD- WD 1TB Caviar Black SATA III /6.0 .... SECONDARY HDD - WD 1TB Caviar Black SATA II / 3.0....8Gb GSkill Ripjaws Series X 1600 Mhz Memory....Corsair AX850w PSU....EVGA GTX 680 Super Clocked Signature 2 Gb GDDR5 Video Card....Samsung CD/DVD RW, DL, DVD-Ram, w/ Lightscribe Optical Drive....Samsung SyncMaster 2243BWX 22" Monitor..... Windows 7 Home Premium 64 Bit OS


http://novabench.com/image/266589.png

______________________________________________________________

Gateway FX6800-01e----Intel Core i7 960 ( 3.2 GHz)---- Seagate Barracuda 750 Gb SATA II / 3.0 Hdd---- 6 Gb Crucial 1066 Mhz memory, running in Tri Channel conf-----Corsair TX650w PSU----- EVGA Nvidia GTX 560Ti 1gb GDDR5 Vram ----DVD +/- RW / CD ,RAM/DL Optical drive w/ Label Flash-----Gateway TBGM-01 Motherboard.... Vista Home Premium 64 bit OS w/ SP2; Samsung Synch Master 2243BWX 22" Monitor.
0

#3 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,369
  • Joined: 19-May 07
  • Location:Canada

Posted 11 July 2012 - 01:47 PM

Hey creamtheater!

Welcome to PCWorld Community.

I don't want to impose my views since our Mod has already asked you to run MBAM
but, this is a very nasty backdoor Trojan that steals sensitive info from your PC.

My recommendation is that you seek help where trained helpers can solve your
problem effectively. I know I am not making myself look very helpful and could
most likely save you the trouble but, I am not trained (yet) to have you execute
certain specialized programs which you will require to make this go away.

You can visit one of these sites for the removal of this offensive Trojan :

Malware Removal :

http://www.malwareremoval.com/

Bleeping Computers :

http://www.bleepingc...s/forum103.html

GeekstoGo :

http://www.geekstogo...alware-removal/

Any one of these sites will save your PC.

One thing I would recommend you do, find out if your credit cards have had transactions
that you didn't make. Also, if you Bank Online, make sure your accounts are all in order.

I don't want you to panic but, this Trojan is a piece of work.



FLASHORN.

This post has been edited by Flashorn: 11 July 2012 - 01:48 PM

Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#4 User is offline   coastie65 

  • Moderator
  • PipPipPipPipPipPipPipPip
  • Group: Moderators
  • Posts: 19,685
  • Joined: 02-April 07
  • Location:Henrico, Va.

Posted 11 July 2012 - 02:52 PM

View PostFlashorn, on 11 July 2012 - 01:47 PM, said:

Hey creamtheater!

Welcome to PCWorld Community.

I don't want to impose my views since our Mod has already asked you to run MBAM
but, this is a very nasty backdoor Trojan that steals sensitive info from your PC.

My recommendation is that you seek help where trained helpers can solve your
problem effectively. I know I am not making myself look very helpful and could
most likely save you the trouble but, I am not trained (yet) to have you execute
certain specialized programs which you will require to make this go away.

You can visit one of these sites for the removal of this offensive Trojan :

Malware Removal :

http://www.malwareremoval.com/

Bleeping Computers :

http://www.bleepingc...s/forum103.html

GeekstoGo :

http://www.geekstogo...alware-removal/

Any one of these sites will save your PC.

One thing I would recommend you do, find out if your credit cards have had transactions
that you didn't make. Also, if you Bank Online, make sure your accounts are all in order.

I don't want you to panic but, this Trojan is a piece of work.



FLASHORN.


Hey Flash, Maybe I should have checked that trojan as I didn't. Just assumed it was one of those everyday things you see ( none of which are welcome ).
Coolermaster HAF 912 Case....ASUS P8Z68-VPro MOBO.....Intel Core i7 2600k Sandy Bridge ( 4.4 Ghz ).... Gelid Tranquillo cooler.... Samsung 830 256 GB SSD.... Primary HDD- WD 1TB Caviar Black SATA III /6.0 .... SECONDARY HDD - WD 1TB Caviar Black SATA II / 3.0....8Gb GSkill Ripjaws Series X 1600 Mhz Memory....Corsair AX850w PSU....EVGA GTX 680 Super Clocked Signature 2 Gb GDDR5 Video Card....Samsung CD/DVD RW, DL, DVD-Ram, w/ Lightscribe Optical Drive....Samsung SyncMaster 2243BWX 22" Monitor..... Windows 7 Home Premium 64 Bit OS


http://novabench.com/image/266589.png

______________________________________________________________

Gateway FX6800-01e----Intel Core i7 960 ( 3.2 GHz)---- Seagate Barracuda 750 Gb SATA II / 3.0 Hdd---- 6 Gb Crucial 1066 Mhz memory, running in Tri Channel conf-----Corsair TX650w PSU----- EVGA Nvidia GTX 560Ti 1gb GDDR5 Vram ----DVD +/- RW / CD ,RAM/DL Optical drive w/ Label Flash-----Gateway TBGM-01 Motherboard.... Vista Home Premium 64 bit OS w/ SP2; Samsung Synch Master 2243BWX 22" Monitor.
0

#5 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,369
  • Joined: 19-May 07
  • Location:Canada

Posted 11 July 2012 - 05:38 PM

Hey coastie!

Yeah, those things pop-up like the plague and most are easily eradicated but, this one, I was reading about
in one of my news letters from NetWorld, is unlike the others. More like a rootkit. We have to use some pretty
powerful scanners and it's always risky.

Better let a trained eye do his/her work.


FLASHORN.
Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#6 User is offline   ElfBane 

  • Senior Member
  • PipPipPipPipPip
  • Group: Members
  • Posts: 571
  • Joined: 25-September 09
  • Location:Florida

Posted 12 July 2012 - 01:04 AM

Try running MSE and MBAM in Safe Mode.
0

#7 User is offline   Flashorn 

  • Expert
  • PipPipPipPipPipPip
  • Group: Members
  • Posts: 4,369
  • Joined: 19-May 07
  • Location:Canada

Posted 12 July 2012 - 05:44 AM

View PostElfBane, on 12 July 2012 - 01:04 AM, said:

Try running MSE and MBAM in Safe Mode.


Hey elfbane !

Maybe you didn't read my reply.

Neither are, first of all, meant to run in safe mode and this Trojan acts like
a Rootkit. Only deep cleaning of his/her PC will get rid of it.



FLASHORN.
Posted Image Posted Image

Posted Image

Eurocom Scorpius: 3840QM-2.8 GHz-Ivy Bridge ; ATI 7970M Crossfire ; Intel SSD 520 series 480GB ; Seagate Momentus XT 750 GB,7200RPM ; 16 GB Corsair Vengeance 9 9 9 24 ; Sound Blaster X-Fi MB2 ; THX True Studio Pro.

Patience is Life.
0

#8 User is offline   ElfBane 

  • Senior Member
  • PipPipPipPipPip
  • Group: Members
  • Posts: 571
  • Joined: 25-September 09
  • Location:Florida

Posted 13 July 2012 - 12:52 AM

View PostFlashorn, on 12 July 2012 - 05:44 AM, said:

View PostElfBane, on 12 July 2012 - 01:04 AM, said:

Try running MSE and MBAM in Safe Mode.


Hey elfbane !

Maybe you didn't read my reply.

Neither are, first of all, meant to run in safe mode and this Trojan acts like
a Rootkit. Only deep cleaning of his/her PC will get rid of it.



FLASHORN.

I read your reply. It didn't mention Safe mode. I am aware of their reduced functionality... but perhaps the Trojan's defenses have reduced functionality also.
0

Share this topic:


Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users