Home / malwarePDF  

Trojan:Win32/Sirefef.AA


First posted on 09 March 2012.
Source: Microsoft

Aliases :

Trojan:Win32/Sirefef.AA is also known as TR/Sirefef.BP.1 (Avira), Trojan.Sirefef.BP (BitDefender), Win32/Sirefef.ER trojan (ESET), ZeroAccess.dr.gen.d (McAfee), Troj/ZAccess-AB (Sophos), Trojan.Zeroaccess!inf (Symantec), TROJ_SIREFEF.KN (Trend Micro).

Explanation :

Trojan:Win32/Sirefef.AA is a component of Win32/Sirefef that that starts or stops the Sirefef malicious service and communicates the malicious service's current status back to the Microsoft Windows Service Control Manager.


Top

Trojan:Win32/Sirefef.AA is a component of Win32/Sirefef - a multi-component family of malware that moderates an affected user's Internet experience by modifying search results, and generates pay-per-click advertising revenue for its controllers. The family consists of multiple parts that perform different functions, such as downloading updates and additional components, hiding existing components, or performing the payload.

Trojan:Win32/Sirefef.AA is the service control program used by Win32/Sirefef that starts or stops the Sirefef malicious service and communicates the malicious service's current status back to the Microsoft Windows Service Control Manager.



Analysis by Jireh Sanico

Last update 09 March 2012

 

TOP