Trojan.Sirefef virus, problems removing it

iDennisW

New member
Local time
9:59 AM
Messages
2
Since a couple of days, Microsoft Security Essentials has been giving alerts about Trojan.Win32(and 64)/Sirefef.(various shit)

Says it succeeds in removing them but they return every couple of minutes. Reboot after removal didn't help a thing, nor running Malwarebytes and TDSSkiller.

Any advice? Preferably some fancy combofix method with logs, conventional antivirus solutions haven't shown to help so far.

Thanks in advance!
 

My Computer

OS
Windows 7 Professional x64
Since a couple of days, Microsoft Security Essentials has been giving alerts about Trojan.Win32(and 64)/Sirefef.(various shit)

Says it succeeds in removing them but they return every couple of minutes. Reboot after removal didn't help a thing, nor running Malwarebytes and TDSSkiller.

Any advice? Preferably some fancy combofix method with logs, conventional antivirus solutions haven't shown to help so far.

Thanks in advance!
Try running Malwarebytes in Safe Mode and be sure to remove everything that comes up (make sure their checkboxes are enabled) Also, clear out all of your browser's cache. In Internet Explorer, click on the gear in the top right and select internet options. Then, find where it says browsing history in the middle of the page and click on delete. In the window that pops up, check all of the checkboxes except the one at the top that says "preserve favorite's website data" and select delete.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
HP Pavilion P7-1010
OS
Windows 7 Professional x64 Service Pack 1
CPU
AMD Athlon X4 645
Motherboard
Foxxcon N-Alvorix RS880
Memory
6GB DDR3 1066
Graphics Card(s)
Sapphire Radeon HD 5670 512MB GDDR5
Sound Card
Realtek Integrated Audio
Monitor(s) Displays
HP 2011x
Screen Resolution
1600x900
Hard Drives
1. Crucial M4 128GB SSD
2. 1TB Seagate Barracuda 7200.12 RPM
3. 1TB Western Digital Caviar Green 5400RPM
PSU
Seasonic S12 II Bronze 380 Watt
Case
HP OEM
Cooling
Coolermaster Heatsink, AVC Case Fan
Keyboard
HP OEM- Made by Chicony
Mouse
HP OEM- Made by Logitech
Internet Speed
20MBit Down/4 Up
Antivirus
Microsoft Security Essentials
Browser
Internet Explorer 10
Cleared the cache, went into safe mode to run MalwareBytes but it shut down the computer halfway through the scan twice in a row; weird.

Anyway, MSE is still detecting the trojans every couple of minutes, got any more suggestions?
 

My Computer

OS
Windows 7 Professional x64
In a case where a PC is compromised by a rootkit, your best & safest option is to do a clean install. Cleaning out a rootkit isn't easy and there's always the chance that something was left behind.

http://www.sevenforums.com/tutorials/1649-clean-install-windows-7-a.html

If however you do not have this option or wish to try & save the PC, have a look at this site & follow the directions:

How to completely remove ZeroAccess/Sirefef rootkit (Removal Guide)

If the infection is still present, try running one of these tools:

Trojan.Zeroaccess Removal Tool | Symantec

This tool is designed to remove the infections of Trojan.Zeroaccess and Trojan.Zeroaccess.B.

Norton Power Eraser (This tool includes a rootkit scan)

Norton Power Eraser | Free Tool |Easily remove scamware that traditional virus scanning can

Because Norton Power Eraser uses aggressive methods to detect threats, there is a risk that it can select some legitimate programs for removal. You should use this tool very carefully. If you accidently remove a legitimate program, you can run Norton Power Eraser to review past repair sessions and undo them.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Back
Top