Help me. Can't get rid of sirefef trojan

Discussion in 'Malware Help (A Specialist Will Reply)' started by Gary101, Aug 11, 2012.

  1. Gary101

    Gary101 Private E-2

    PLz help me. I believe i have multiple trojans on my desktop. Windows defender started acting wierd and stopped and stated that it was deleted. I re-downloaded and installed most recent version from microsoft. instantly found 4 trojans.

    Win32/sirefef
    Win32/sirefef.AO
    Win32/sirefef.AG
    Win32/sirefef.AN

    Shortly after a message pops up with windows critical error will shut down in one minute, and so it does. Now every time i restart my computer within a minute that message pops up and my computer will restart over and over again.

    I found this forum and thought i would give it a try. I have looked at PLZ READ ME FIRST malware removal guide. I can't seem to get my computer to stay on long enough to do anything. I did get FARBAR and put on flash drive and ran a scan. I will attatch the log. Any help would be greatly appreciated.

    Thank You.
     

    Attached Files:

  2. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please download ComboFix to your desktop and run it. Do not do anything while it runs. Attach the log when it is finished. Disable any AV software before running it.

    Then run the C:\MGtools\GetLogs.bat file by double clicking on it (Note: if using Vista or Win7, don't double click, use right click and select Run As Administrator).

    Then attach the below logs:

    * C:\ComboFix.txt
    * C:\MGlogs.zip

    Make sure you tell me how things are working now!
     
  3. Gary101

    Gary101 Private E-2

    my computer wont stay on long enough to even get the programs on my desktop. It pops up the message saying it has suffered a critical error and windows will shut down in one minute. and then it does and it restarts and does it all over again.
     
  4. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    We need some additional information so that we can replace an infected system file.

    Boot to System Recovery Options and run FRST again.
    Type the below bolded text in the edit box after "Search:".

    services.exe

    Then click the Search button.

    It will make a log (Search.txt) on the flash drive. Please attach this log to your next reply.
     
  5. Gary101

    Gary101 Private E-2

    I hit f8, went to the advanced boot options, went down to Directory Services Restore Mode, clicked on that and tried to run FRST search in command prompt.

    The message still popped up and computer shutdown before it finished.

    Am i doing something wrong?
     
  6. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Did you follow these instructions:?
     
  7. Gary101

    Gary101 Private E-2

    there is no Repair Your Computer option.
    and it wont let me boot the disc
     
  8. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    How did you get Farbar to run in the first place?
     
  9. Gary101

    Gary101 Private E-2

    directory services restore mode
     
  10. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Let me consult with my colleagues.

    Do you have your install disc?
     
    Last edited: Aug 15, 2012
  11. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds