Trojan

About “Trojan:Win32/Sirefef.BB” infection

Malware Removal

The Trojan:Win32/Sirefef.BB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Sirefef.BB virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Sirefef.BB?


File Info:

name: 5386BD2E3819E472F6AD.mlw
path: /opt/CAPEv2/storage/binaries/ae926bae20439f07713652a77c314fdfee81aa492289b890cbe878bfdabed926
crc32: 58188BDB
md5: 5386bd2e3819e472f6adf03a1a7f5cf0
sha1: ad0639cc46cb8c21a3747137fbd202ac0f87f302
sha256: ae926bae20439f07713652a77c314fdfee81aa492289b890cbe878bfdabed926
sha512: acba9212b14fdf4571e083b94ad588b9a9d1b42f0860c3a972f321383a22159bef8320608592aabbf7d686cfd4a8cdb43f23987dba59ed2abef9bfe2797590b0
ssdeep: 1536:BBavxEBcA2jcgR9FPw5UvRN759AwNYMlBp1L5NXEZjT:YxEBcA2IgReUIibrqjT
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15F73E182E62E3B9EE68F37301C76941734D87794D1284AAF97F04DBD28DD846E4B2D14
sha3_384: 1807f1ee43b592dd1e1419e34d23834d6f846a4020432ee18b07cda7f04d7cb7da8bad9c2272d3a8d86143277ff080c7
ep_bytes: 558bec81ec440200008d4c2468516a30
timestamp: 2005-11-23 12:39:52

Version Info:

0: [No Data]

Trojan:Win32/Sirefef.BB also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.FakeAV.llKo
MicroWorld-eScanGen:Variant.Sirefef.6766
CAT-QuickHealTrojan.Sirefef.B
SkyhighBehavesLike.Win32.VirRansom.lc
McAfeeTrojan-FAJA!5386BD2E3819
MalwarebytesMalware.AI.1480446678
ZillyaTrojan.FakeAV.Win32.49470
AlibabaTrojan:Win32/Sirefef.e7898334
Cybereasonmalicious.e3819e
VirITTrojan.Win32.Boxed.AUV
SymantecTrojan.FakeAV
Elasticmalicious (high confidence)
ESET-NOD32Win32/Sirefef.C
APEXMalicious
ClamAVWin.Trojan.Fakeav-2444
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Sirefef.6766
NANO-AntivirusTrojan.Win32.FakeAVIS.bxech
AvastWin32:Delf-OHT [Trj]
TencentMalware.Win32.Gencirc.10b44f38
EmsisoftGen:Variant.Sirefef.6766 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Sniff.130
VIPREGen:Variant.Sirefef.6766
TrendMicroBKDR_CYCBOT.SMIB
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.5386bd2e3819e472
SophosMal/FakeAV-IS
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=100)
JiangminTrojan/Fakeav.kwq
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Crypt.XPACK.Gen
VaristW32/Sirefef.C.gen!Eldorado
Antiy-AVLTrojan/Win32.FakeAV
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Sirefef.BB
XcitiumTrojWare.Win32.Rootkit.ZeroAccess.AC@4q6hgv
ArcabitTrojan.Sirefef.D1A6E
ViRobotTrojan.Win32.Generic.75264.B
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Sirefef.6766
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.FakeAV.R3104
BitDefenderThetaGen:NN.ZexaF.36802.eqW@aq!QvTgi
ALYacGen:Variant.Sirefef.6766
VBA32BScope.Trojan.Nagram
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallBKDR_CYCBOT.SMIB
RisingTrojan.Sirefef!8.137 (TFE:5:B1QffkFuRyQ)
YandexTrojan.GenAsa!TI3adAuIDwc
IkarusTrojan-Downloader.Win32.ZAccess
MaxSecureTrojan.Malware.1863630.susgen
FortinetW32/FakeAV.ALQ!tr
AVGWin32:Delf-OHT [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)
alibabacloudTrojan:Win/Sirefef.C

How to remove Trojan:Win32/Sirefef.BB?

Trojan:Win32/Sirefef.BB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment