Home / malwarePDF  

TrojanDropper:Win32/Sirefef.N


First posted on 17 February 2012.
Source: Microsoft

Aliases :

There are no other names known for TrojanDropper:Win32/Sirefef.N.

Explanation :

TrojanDropper:Win32/Sirefef.N is a trojan that drops Win32/Sirefef - a multi-component family of malware that moderates an affected user's Internet experience by modifying search results, and generating pay-per-click advertising revenue for its controllers. The family consists of multiple parts that perform different functions, such as downloading updates and additional components, hiding existing components or performing a payload.


Top

TrojanDropper:Win32/Sirefef.N is a trojan that drops Win32/Sirefef - a multi-component family of malware that moderates an affected user's Internet experience by modifying search results, and generating pay-per-click advertising revenue for its controllers. The family consists of multiple parts that perform different functions, such as downloading updates and additional components, hiding existing components or performing a payload.

When executed, TrojanDropper:Win32/Sirefef.N attempts to install and run a malicious DLL component detected as Trojan:Win32/Sirefef.P. This trojan component is responsible for downloading other malicious components.

In the wild, we have observed some samples of Trojan:Win32/Sirefef.P installed with other malware, such as variants of Win32/Vobfus and Win32/Cycbot.



Analysis by Jireh Sanico

Last update 17 February 2012

 

TOP