↓
 

Computer Aid

Ph: 0402 133 866

  • Home
  • Blog
  • Contact
  • Web Services
    • Websites
    • SEO
    • Hosting
    • Domain Names
    • Portfolio
Home→Tags sirfef.y

Tag Archives: sirfef.y

sirfef.y is very difficult to remove

Computer Aid Posted on 24 September, 2012 by Luigi Martin24 September, 2012

Back in June 2012, I was looking at an infected PC, and after running Malwarebytes, it looked like the PC was clean.

But after a restart, Microsoft Security Essentials reported that it had found sirfef.y, and that it would remove it.

After removal, the computer would give a 60 second grace period before restarting.

I first thought that the 60 seconds was MSE forcing a restart.

But it was actually sirfef.y restarting the PC to prevent anything from removing it.

Since sirfef.y is a rootkit, most standard security tools struggle to remove it.

I tried a few different tools (all had to be run from safe mode, to avoid the 60 seconds before a reboot), but tdsskiller and a few others either wouldn’t detect it, or would not be able to remove it.

After a lot of research, I eventually had to use a tool like gmer… then interpret the results, and then manually remove the rootkit files responsible for the infection.

Certainly not something an average (or even an advanced) PC user would be able to do.

With infections like this on the rise, I’m starting to wonder how much worse this can get, and if the PC security companies can do anything to improve their products, to defend against this type of infection?

Posted in Technical | Tagged removal, sirfef.y

Archives

Categories

Recent Comments

  • Sue Jones on outlook error 0X800ccc0e while sending emails
  • Blair Newmann on AdSmartMedia advertising
  • Private Investigator in GTA on Divorce, consent orders, and superannuation splits: getting the wording correct

Tags

802.11g ADSL amd android bigpond broadband bsod defender dell email exitjunction firefox firewall gmail Google google contacts ie7 infection internet connection ISP laptop Linux m1188a ntldr is missing office 2007 outlook outlook express password power supply problems ram registry repair install sata scam slow telstra thunderbird usb vista wifi windows 7 wireless wordpress xp
Copyright © 2005-2015 Computer Aid
↑