Get a virus = Trojen Win32 Sirefef.AH.

Have tried to use essential Windows and Malwarebytes and they confirm their action that cleaned, but seems nothing to remove it permanently. Help

Hello

I deleted successfully this virus today from XP Home. I'm expecting the same procedure to work on Vista but cannot guarantee this. The latest definitions for the MSE and MBAM were ineffective (MSE found but couldn't get rid of it, just MBAM did not) but I was able to clean with SUPERAntiSpyware. However, I do this kind of thing for a living and what I've done is not possible for you...

  • Get any browser to download whatever it is that may be useful proved impossible, so I removed the hard drive and plugged into one of my PC (which I use only for occasions like this), so that the boot partition, it is now a data partition in my PC.
  • I ran SAS full scan on the boot partition (after making sure has been updated) and it found and removed several items.
  • I replaced the drive in the original PC and the PC booted OK, only found MSE sirefef in restore points so I disabled the system restore and then turned it back to make sure that all other instances of sirefef would be eliminated.
  • Connectivity Internet could not be established, it's becase SAS has deleted the file as part of its disinfection netbt.sys.
  • I restored this file to C:\Windows\System32\Drivers of internet connectivity and returned C:\Windows\System32\dllcache. This piece will be different under Vista.
  • I removed MSE, downloaded and installed the AIRLOCK and did a full scan which found no other trace of sirefef

I hope this helps. If you have questions about any step please after return.

It may be possible for you to download SAS to another PC and install it on your PC as an alternative to remove the hard drive and insert into another PC. Do not try to transfer the hard drive to another PC yourself unless you are comfortable doing so. If you decide to do you should stop both PC and unplug the power outlet and also take precautions to avoid damage to static electricity.

Even though my PC is not affected by this, doesn't mean that it will be OK for you - there may be variants of sirefef here or there may be other malware and more sirefef on your drive.

Tricky

Tags: Windows

Similar Questions

Maybe you are looking for