Trojan.Patched.Sirefef.A is determined as Trojan infection that sneaks into target computer without any permission. It usually provides the attacker with unauthorized remote access to a compromised computer, infects files and damages the system, drops other dangerous parasites or steals user sensitive information. This tricky virus can locate in c:/windows/systems32/services.exe that it won’t allow you to quarantine it or delete it. It just disables all the security tools and performs many evil actions on downloaded.
This Trojan will drop malicious files under Windows system folder. Thus, your computer will be slower and slower. Sometimes you will get some unwanted popups or error while browsing online. It may fetch other threats ranging from viruses, Trojans, and fake antivirus product as well. Such malicious virus is able to hide its presence on the system by injecting its code to legitimate processes called services.exe to avoid the detection of antivirus programs. Moreover, Trojan.Patched.Sirefef.A is capable of allowing a remote attacker to access the infected computer and gain control of it. It compromised your privacy so that it has to be removed as soon as possible.
1. Show hidden files and folders.
Open Folder Options by clicking the Start button, clicking Control Panel, clicking Appearance and Personalization, and then clicking Folder Options.
Click the View tab.
Under Advanced settings, click Show hidden files and folders, uncheck Hide protected operating system files (Recommended) and then click OK.
2. Open Registry entries. Find out the malicious files and entries and then delete all.
Attention: Always be sure to back up your PC before making any changes.
a. Press the “Start” button and then choose the option “Run”. In the “Open” field, type “regedit” and click the “OK” button.
b. All malicious files and registry entries that should be deleted:
%AllUsersProfile%\[random]
%AppData%\Roaming\Microsoft\Windows\Templates\[random]
%AllUsersProfile%\Application Data\.exe
%UserProfile%\Desktop\
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Settings “net
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\Current\Winlogon\”Shell” = “{ Trojan.Patched.Sirefef.A}.exe”
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableRegedit” = 0
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System “DisableRegistryTools” = 0e”
If you failed to remove this Trojan with the instructions above or need any assistant, you are welcome to contact YooCare experts to resolve all the problems completely.
Published by on July 16, 2012 7:37 am, last updated on July 16, 2012 7:37 am
Leave a Reply
You must be logged in to post a comment.